Domain Information
WordPress Version: 6.9.4 VULNERABLE
Theme: architect 1.3.2· 100% conf. (theme used by 141 domains)
Last Checked: 2026-09-10 07:22:07
HTTPS: Yes
Server: nginx
Response time (TTFB): 951 ms
Hosting: Unified Layer (AS46606)
IP address: 207.174.215.xxx
Plugins (9)
| Plugin | Version | Used By |
|---|---|---|
| 3d-flipbook-dflip-lite | 1.7.6.1· 85% conf. | 42,484 |
| buttonizer-multifunctional-button | — | 3,861 |
| contact-form-7 | 6.0.6· 85% conf. | 1,698,348 |
| gm-woocommerce-quote-popup | 1.0.0· 85% conf. | 373 |
| js_composer | 7.9· 85% conf. | 401,781 |
| megamenu | 3.3.1· 60% conf. | 77,204 |
| newsletter | 8.8.5· 85% conf. | 44,987 |
| revslider | 6.3.0· 85% conf. | 582,336 |
| woocommerce | 10.0.6· 85% conf. | 783,975 |
Security Headers
6 missing headers
Missing headers:
- Strict-Transport-Security (HSTS) — Forces HTTPS connections ?
- Content-Security-Policy (CSP) — Prevents XSS attacks ?
- X-Content-Type-Options — Prevents MIME sniffing ?
- X-Frame-Options — Prevents clickjacking ?
- Referrer-Policy — Controls referrer information ?
- Permissions-Policy — Limits browser features ?
Exposed Files & Configurations
This domain has publicly accessible security-sensitive files or configurations:
- Vulnerable WordPress Version (6.9.4) — wp2shell unauthenticated RCE (CVE-2026-63030). Update to 6.9.5 immediately.
Need help securing your WordPress infrastructure? Contact us for a professional security audit.
Other WordPress domains on this IP (19)
These WordPress domains are served from the same IP (207.174.215.xxx) — usually shared hosting or the same operator. Domains are obfuscated uniformly.
- b*i*e*o*o*u*i*n*.com
- d*r*e*s*s*e*s.com
- d*s*o*u*i*n*-*r*u*.com
- d*a*a*n*.com
- d*d*i*s.com
- d*v*l*p*r*h*r*g.com
- d*a*a*x.com
- e*p*d*r*t*l*t*n*.com
- f*n*t*r*p*a*.com
- g*s*i*n*i*i*.com
- k*m*c.com
- k*n*s*a*f*c*l*t*m*n*g*m*n*.com
- m*x*e*.com
- m*x*e*.us
- m*d*o*r*e*t*.com
- o*g*a*r*c*.org
- r*v*o*0*0.com
- s*c*p*e*t*r.com
- s*o*d*n.net