• Resolved georgecarvill

    (@georgecarvill)


    Your scanner reports no e-mail addresses on this page — as it should. But the e-mail addresses that are on the page, and others on our site, have twice in the last month been used for scam e-mails.
    One might be tempted to say “buy the pro version.” But if the free version test tool says the free version is working, what confidence do I have that the paid version will do any better?

    The page I need help with: [log in to see the link]

Viewing 6 replies - 1 through 6 (of 6 total)
  • Plugin Author Till Krüss

    (@tillkruess)

    Hi George,

    the Pro version is a fair bit more aggressive with it’s obfuscation, but it is impossible to say where spammers got your email address from. It could also be a data leak, or a paid list.

    Thread Starter georgecarvill

    (@georgecarvill)

    Thank you for the quick reply.

    I agree that it is impossible to say where the spammers got the addresses. However…
    1 – All who received today’s scam have addresses on our page.
    2 – All the scam e-mails pretend to be our minister. who has an uncommon name.
    3 – I have polled the congregation and so far no one has reported getting the scam who does not have an e-mail address visible on our site.

    ergo, I’m pretty sure the addresses came from our “protected” site.

    Your thoughts?

    Thread Starter georgecarvill

    (@georgecarvill)

    Also, the page scanner returned the message below which makes me think it could be reporting fake negatives:
    /* <![CDATA[ */
    var pluploadL10n = {“queue_limit_exceeded”:”You have attempted to queue too many files.”,”file_exceeds_size_limit”:”%s exceeds the maximum upload size for this site.”,”zero_byte_file”:”This file is empty. Please try another.”,”invalid_filetype”:”Sorry, this file type is not permitted for security reasons.”,”not_an_image”:”This file is not an image. Please try another.”,”image_memory_exceeded”:”Memory exceeded. Please try another smaller file.”,”image_dimensions_exceeded”:”This is larger than the maximum size. Please try another.”,”default_error”:”An error occurred in the upload. Please try again later.”,”missing_upload_url”:”There was a configuration error. Please contact the server administrator.”,”upload_limit_exceeded”:”You may only upload 1 file.”,”http_error”:”Unexpected response from the server. The file may have been uploaded successfully. Check in the Media Library or reload the page.”,”http_error_image”:”Post-processing of the image failed likely because the server is busy or does not have enough resources. Uploading a smaller image may help. Suggested maximum size is 2500 pixels.”,”upload_failed”:”Upload failed.”,”big_upload_failed”:”Please try uploading this file with the %1$sbrowser uploader%2$s.”,”big_upload_queued”:”%s exceeds the maximum upload size for the multi-file uploader when used in your browser.”,”io_error”:”IO error.”,”security_error”:”Security error.”,”file_cancelled”:”File canceled.”,”upload_stopped”:”Upload stopped.”,”dismiss”:”Dismiss”,”crunching”:”Crunching\u2026″,”deleted”:”moved to the Trash.”,”error_uploading”:”\u201c%s\u201d has failed to upload.”,”unsupported_image”:”This image cannot be displayed in a web browser. For best results convert it to JPEG before uploading.”};
    /* ]]> */

    Plugin Author Till Krüss

    (@tillkruess)

    In that case I’d suggest the Pro version and using the ROT47 obfuscation technique.

    Thread Starter georgecarvill

    (@georgecarvill)

    OK, willing to look into that.

    But this page: https://encoder.till.im/guide

    Does not mention the ROT47 obfuscation technique. Where can I find information about that?

    Thread Starter georgecarvill

    (@georgecarvill)

    Curiously, the scanner finds this text “Please check your email and click on the link to access your complete donation history.”

    Which does not appear anywhere on our site.

Viewing 6 replies - 1 through 6 (of 6 total)
  • The topic ‘Plugin stopped working?’ is closed to new replies.