https://uxdivi.com

Analyzed on July 30, 2025, 6:21 a.m. Click "Rescan Website" to get the latest data

Analysis Successful
Network Information
IP Address: 148.135.128.204
IP WHOIS Information:
  • ASN: 47583
  • ASN Description: AS-HOSTINGER, CY
  • Country: US
  • CIDR: 148.135.128.0/21
Domain Information
  • Registrar: GoDaddy.com, LLC
  • Created: June 05, 2018
  • Last Updated: July 28, 2024
  • Name Servers:
    • NS1.DNS-PARKING.COM
    • NS2.DNS-PARKING.COM
DNS Records
Learn about DNS Records
A Records (IPv4 Addresses)
Domain IP Address
uxdivi.com 77.37.76.99
uxdivi.com 148.135.128.76
MX Records (Mail Servers)
Priority Mail Server
10 alt3.aspmx.l.google.com.
5 alt1.aspmx.l.google.com.
5 alt2.aspmx.l.google.com.
10 alt4.aspmx.l.google.com.
1 aspmx.l.google.com.
TXT Records
Domain Text Record
uxdivi.com "v=spf1 include:_spf.mlsend.com include:_spf.mlsend.com include:_spf.google.com include:_spf.mlsend.com include:_spf.mail.hostinger.com ~all"
WWW Subdomain Records
Subdomain Type Value
www.uxdivi.com A 148.135.128.23
www.uxdivi.com A 147.79.120.109
Services Detected (1 found)
Google Workspace
Google Workspace

Email hosted on Google Workspace

Learn More
Blocklisting Status
Learn about Blocklisting Status
Overall Status: CLEAN No blocklisting detected
Services Checked: 2
Google Safe Browsing: CLEAN
Domain is not blocklisted by Google Safe Browsing
No threats detected
VirusTotal: CLEAN
Domain is clean according to 0 scanners
No threats detected by any security scanner
Hosting Information
Provider: Hostinger (medium confidence)
Detection Method: HTTP Headers
Matched Headers:
  • platform: hostinger
Company Information:

Affordable web hosting with shared, VPS, and cloud hosting solutions, known for competitive pricing and user-friendly control panel.

Contact:
Social Media:
SSL/TLS Security
Learn about SSL/TLS Security
TLS Version: TLSv1.3
SSL Certificate:
  • Certificate Type: DV (Domain Validated - Basic Security)
  • Subject: uxdivi.com
  • Certificate Authority (CA): R10
    Let's Encrypt
    US
  • Valid From: Jul 25 17:02:20 2025 GMT
  • Valid Until: Oct 23 17:02:19 2025 GMT
  • Serial Number: 06F8B8F4C016DF0BC4658EE62A44F8E0D85F
SSL Certificate Expiring Soon!
Your SSL certificate expires in 84 days.
Please renew your certificate before Oct 23 17:02:19 2025 GMT to avoid service interruption.
WordPress Security Analysis
FAILED
Learn about WordPress Security Analysis
XMLRPC.php Security Test FAILED

XMLRPC.php is accessible and vulnerable

HTTP Status: 200

Recommendation: Protect xmlrpc.php via firewall rules or disable it completely. Consider using security plugins or server-level blocking.
WP-Login.php Security Test PASSED

WP-Login page has CAPTCHA protection: recaptcha, simple_captcha, custom_captcha

HTTP Status: 200

CAPTCHA Types Found: Recaptcha Simple_Captcha Custom_Captcha

Recommendation: WP-Login page is properly protected with CAPTCHA.
User Enumeration Test FAILED

User enumeration is possible via WordPress REST API

Test Results:

Endpoint: https://uxdivi.com/wp-json/wp/v2/users

Status: FAILED

Message: User enumeration possible - 8 users found

HTTP Status: 200

Endpoint: https://uxdivi.com/?rest_route=/wp/v2/users

Status: FAILED

Message: User enumeration possible - 8 users found

HTTP Status: 200

Users Found:
ID Name Slug Link
22402555 Angel Sánchez Espinoza angelsanchez314 https://uxdivi.com/author/angelsanchez314
22402581 Cristopher Peraza uxcristopher https://uxdivi.com/author/uxcristopher
22402327 Frank Calderon profesorfrankcalderon https://uxdivi.com/author/profesorfrankcalderon
1 Jefferson Maldonado uxdivi https://uxdivi.com/author/uxdivi
22402281 Jerry Castillo Alcántara devjerryman8e https://uxdivi.com/author/devjerryman8e
22404954 Ken Castillo ken_uxdivi_asist https://uxdivi.com/author/ken_uxdivi_asist
22404595 Raúl Martinez raulmtzmx https://uxdivi.com/author/raulmtzmx
52 Sergio Alanis sergioalanis2 https://uxdivi.com/author/sergioalanis2
Recommendation: Require authentication for WordPress REST API or disable user enumeration. Consider using security plugins or server-level restrictions.
Failed Security Tests:
  • XMLRPC
  • User Enumeration
Security Headers Analysis
Need help understanding security headers? View our comprehensive documentation to learn about each header and how to implement them.
Present Security Headers

No security headers detected

Missing Security Headers
Strict-Transport-Security
X-Content-Type-Options
X-Frame-Options
X-XSS-Protection
Referrer-Policy
Content-Security-Policy
Permissions-Policy
Cross-Origin-Embedder-Policy
Cross-Origin-Opener-Policy
Cross-Origin-Resource-Policy
External JavaScripts Detected
Only scripts from different domains are shown
Domain Script URL Type
assets.mailerlite.com https://assets.mailerlite.com/js/universal.js Inline Reference
player.vimeo.com https://player.vimeo.com/api/player.js?ver=1.2.47 External
tally.so https://tally.so/widgets/embed.js External
tracker.metricool.com https://tracker.metricool.com/resources/be.js Inline Reference
www.google.com https://www.google.com/recaptcha/api.js?render=6LeXXhMpAAAAANdOlT09klcJbd3vKRvtmPWuWJVv&ver=4.27.4?ver=1.2.47 External
www.googletagmanager.com https://www.googletagmanager.com/gtm.js Inline Reference
www.youtube.com https://www.youtube.com/iframe_api?ver=1.2.47 External
HTTP Headers
Learn about HTTP Headers
HTTP Response Code
200 OK - Request successful
Information Disclosure: Server Version

Header: x-powered-by
Value: PHP/8.2.28

Server Type: PHP

The X-Powered-By header reveals server version information, which can be used by attackers to identify vulnerabilities.
Gzip Compression Enabled 👍

Great! This site is using Gzip compression to improve performance and reduce bandwidth usage.

Header Value
Date Wed, 30 Jul 2025 06:21:35 GMT
Content-Type text/html; charset=UTF-8
Transfer-Encoding chunked
Connection keep-alive
Vary Accept-Encoding
x-powered-by PHP/8.2.28
set-cookie __wpdm_client=5eabad288992041882759da29757b2e1; path=/; secure; HttpOnly, wmc_ip_info=eyJjb3VudHJ5IjoiTVgiLCJjdXJyZW5jeV9jb2RlIjoiTVhOIn0%3D; expires=Thu, 31 Jul 2025 06:21:36 GMT; Max-Age=86400; path=/; secure, wmc_current_currency=MXN; expires=Thu, 31 Jul 2025 06:21:36 GMT; Max-Age=86400; path=/; secure, wmc_current_currency_old=MXN; expires=Thu, 31 Jul 2025 06:21:36 GMT; Max-Age=86400; path=/; secure
link <https://uxdivi.com/wp-json/>; rel="https://api.w.org/", <https://uxdivi.com/wp-json/wp/v2/pages/14>; rel="alternate"; title="JSON"; type="application/json", <https://uxdivi.com/>; rel=shortlink
content-encoding gzip
platform hostinger
panel hpanel
content-security-policy upgrade-insecure-requests
Server hcdn
alt-svc h3=":443"; ma=86400
x-hcdn-request-id e1efae9ec3fe5e9a1b45d6cc0db1352c-phx-edge7
x-hcdn-cache-status DYNAMIC
x-hcdn-upstream-rt 1.621
Service Disclaimer

Free Service: This website security analyzer is provided as a free service to help website owners and administrators identify potential security issues and improve their website's security posture.

Donations: We welcome and appreciate donations to help us maintain and improve this service. Your support helps us keep this tool free and continuously enhance its capabilities.

Affiliate Links: We may use affiliate links for various security services, hosting providers, and security tools mentioned throughout this analysis. If you choose to purchase any of these services through our links, we may receive a small commission at no additional cost to you. This helps support the development and maintenance of this free service.

Support Our Service

Help us keep this tool free and improve it further

Please wait, running the scan...
This may take a few moments