Domain Information
WordPress Version: 6.9 VULNERABLE
Theme: hello-elementor (used by 604,726 domains)
Last Checked: 2026-09-08 08:21:35
HTTPS: Yes
Server: Apache
Response time (TTFB): 2,441 ms slow
Hosting: IONOS SE (AS8560)
IP address: 217.160.0.xxx
PHP version: 8.2.33
Plugins (10)
| Plugin | Used By |
|---|---|
| all-in-one-seo-pack | 85,502 |
| elementor | 1,713,799 |
| elementor-pro | 1,021,839 |
| icon-element | 2,641 |
| jetpack | 416,614 |
| pixel-cat-premium | 727 |
| powerpack-elements | 14,829 |
| woocommerce | 791,879 |
| woocommerce-payments | 103,265 |
| wt-smart-coupons-for-woocommerce | 4,801 |
Security Headers
4 missing headers
Exposed Files & Configurations
This domain has publicly accessible security-sensitive files or configurations:
- Vulnerable WordPress Version (6.9) — wp2shell unauthenticated RCE (CVE-2026-63030). Update to 6.9.5 immediately.
- User enumeration exposed — Usernames are publicly discoverable via the REST API or author archives, aiding brute-force attacks ?
Need help securing your WordPress infrastructure? Contact us for a professional security audit.
Other WordPress domains on this IP (25+)
These WordPress domains are served from the same IP (217.160.0.xxx) — usually shared hosting or the same operator. Domains are obfuscated uniformly.
- a*v*n*u*e*t*e*a*y.org
- a*a*a*a*n*c.com
- a*d*o*a*r*l*.com
- a*d*s*h*l*.com
- a*g*l*k*h*r*a.com
- a*m*p.org
- a*n*r*t*r.com
- a*i.academy
- b*l*e*-*r*h*m*n*.de
- b*o*t*r*k*t*.com
- b*m*s.c*.uk
- c*a*o*a*a*.es
- d*l*a*a*r*d.com
- d*m*a*-*w*e*s.com
- d*n*y*a*l*u*i*.com
- d*n*a*e*l*r*o*o*o.com
- d*n*a*d*a*t*.com
- d*s*e*o*q*i*a.com
- d*s*g*s*u*i*-*u*t*r.de
- d*d*g*t*l*c*d*m*.com
- e*e*y*h*n*s*a*t*w*t*a*r*a*.com
- e*a*t*s.com
- e*p*r*e*c*a*a*z*.com
- e*p*r*o*e*s*g*r*d*d*c*r*a*e*i*.com
- f*m*n*n*-*u*c*s*.de