Sucuri Blog
  • Products
    • Website Security Platform
    • Website Firewall (WAF)
    • Multi-Site plans
    • Custom & Enterprise Plans
    • Partnerships
  • Features
    • Detection
      Website Monitoring & Alerts
    • Protection
      Future Website Hacks
    • Performance
      Speed Up Your Website
    • Response
      Help For Hacked Websites
    • Backups
      Disaster Recovery Plan
  • Resources
    • Guides
    • Webinars
    • Infographics
    • Blog
    • SiteCheck
    • Reports
    • Email Courses
  • Pricing
  • Immediate Help
  • Login
Sucuri Blog
  • Products
    • Website Security Platform
    • Website Firewall (WAF)
    • Multi-Site plans
    • Custom & Enterprise Plans
    • Partnerships
  • Features
    • Detection
      Website Monitoring & Alerts
    • Protection
      Future Website Hacks
    • Performance
      Speed Up Your Website
    • Response
      Help For Hacked Websites
    • Backups
      Disaster Recovery Plan
  • Resources
    • Guides
    • Webinars
    • Infographics
    • Blog
    • SiteCheck
    • Reports
    • Email Courses
  • Pricing
  • Immediate Help
  • Login
  • Immediate Help
Login
Login

New Customer?

Sign up now.
  • Submit a ticket
  • Knowledge base
  • Chat now

Krasimir Konov

66 posts
Krasimir Konov is Sucuri's Malware Analyst who joined the company in 2014. Krasimir's main responsibilities include analyzing malicious code, signature creation and documentation of malware. His professional experience covers more than 10 years in the IT field, with nine years involved in IT/cyber security. When he’s not analyzing malware or writing Labs notes, you might find Krasimir riding his motorcycle and traveling the world. Connect with him on Twitter or LinkedIn.
Labs Note
  • Sucuri Labs

Geo location and Credit Card data been stolen from Magento

  • Krasimir Konov
  • November 30, 2016
Lately, we’ve uncovered and detailed lots of techniques being used against e-commerce platforms to steal sensitive information, mostly credit card and login credentials. With the…
Read the Post
Labs Note
  • Sucuri Labs

Malware DB Injection called via theme file

  • Krasimir Konov
  • November 24, 2016
Attackers use different techniques to distribute SPAM in a compromised website. Most of the time they choose the file structure to inject the malicious code…
Read the Post
  • Security Advisory
  • Website Malware Infections
  • WordPress Security

A Plugin’s Expired Domain Poses a Security Threat to Websites

  • Krasimir Konov
  • August 3, 2016
Do you keep all of your website software (including third-party themes, plugins, and components) up to date? You should! We always recommend this to our…
Read the Post
Labs Note
  • Sucuri Labs

Blacklist Monitoring for Hackers and Webmasters

  • Krasimir Konov
  • June 9, 2016
An infected site can be efficient for cyber-criminals unless it gets blacklisted. Traffic significantly drops when a URL is on the Google’s Safe Browsing list.…
Read the Post
Labs Note
  • Sucuri Labs

Mobile conditional redirect hidden in the database

  • Krasimir Konov
  • May 19, 2016
We recently found a website that was redirecting mobile users to a third-party site called chickenkiller&nbsp.com, after further investigation we found that the malware was…
Read the Post
Labs Note
  • Sucuri Labs

Malicious Cron Jobs

  • Krasimir Konov
  • April 14, 2016
You may remove malware from files and a database, close all security holes, change all passwords, but your site still gets reinfected regularly. It may…
Read the Post
Labs Note
  • Sucuri Labs

Yet another spam mailer

  • Krasimir Konov
  • September 21, 2015
Here is a mailer script we recently found that appears to be designed to send spam emails. These kind of scripts are pretty common, there…
Read the Post
Labs Note
  • Sucuri Labs

Magento script stealing credit card details

  • Krasimir Konov
  • September 14, 2015
We recently found another malicious script used to steal credit cards that appears to be injected into compromised websites running Magento, it appears to be…
Read the Post
Labs Note
  • Sucuri Labs

Secondtds.mooo[.]com .htaccess redirects

  • Krasimir Konov
  • September 2, 2015
We are finding many sites infected with malicious redirects inside the .htaccess file, to secondtds.mooo[.]com/go.php?sid=3. That domain is a TDS (traffic controller) which redirects visitors…
Read the Post
  • Vulnerability Disclosure
  • Website Security

Webutation Distributing Malware Through Safety Badge

  • Krasimir Konov
  • July 16, 2015
If you are using the Webutation badge on your site, remove it now. It appears they got hacked and are distributing malware to mobile devices…
Read the Post
  • Security Education
  • Website Security

Websites Hacked Via Website Backups

  • Krasimir Konov
  • June 23, 2015
For the past few months, we’ve spent a good deal of time talking about backups. This is for good reason: backups are your safety net…
Read the Post
Search
Sucuri Sidebar Malware Removal to Signup Page
Sucuri Logo

Let’s Connect

Products
Website Firewall Website Security Platform WordPress Security Website Backups Hack Assistance Pricing
Solutions
DDoS Protection Malware Detection Malware Removal Malware Prevention Blacklist Removal SEO Spam Removal
USE CASES
Developers Ecommerce Agency Plans Enterprise Services HTTPS/2 Virtual Patching
Support
Knowledge Base SiteCheck Guides Research Labs Report Abuse Status Report
Company
About Sucuri Contact Blog Referral Partners Testimonials
Terms of Use Privacy Policy Do Not Sell My Personal Information Frequently Asked Questions

© 2025 GoDaddy Mediatemple, Inc., d/b/a Sucuri. All rights reserved.

back to top

'