• Resolved Branky

    (@branky)


    Dear Gentlemans. After using All in one wp migration, I picked up “Hacker Sig Exploit” in database.sql
    Log:

    ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
    Feb 7 09:54:46 sodium cxs[502289]: [‘/home/fotohrco/public_html/wp-content/plugins/all-in-one-wp-migration/storage/y3ufh6czysao/database.sql’] – (quarantined to /home/quarantine/cxsuser/fotohrco/database.sql.1486457686_1) Known exploit = [Fingerprint Match] [Hacker Sig Exploit [P1271]] (md5sum:f6b4ab4f81c1c0bb2d61f08cbed9d9e0)
    ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~

Viewing 4 replies - 1 through 4 (of 4 total)
  • pluginvulnerabilities

    (@pluginvulnerabilities)

    Since that file should contain the contents of your database, that is likely either a false positive or you already had something malicious contained in your database. Unless whatever produced that result is designed to scan database backups, it would seem more likely to be a false positive. Have you checked with the source of that message to confirm that it is not a false positive?

    Thread Starter Branky

    (@branky)

    This message i received from official web hosting provider. their antivirus scanner reported it immediately. It is possible that is false positive. I already use this plugin before, without any troubles.

    Hi there! Having the same issue:

    ~/public_html/wp-content/cache/object/bca/e86/bcae8634ef2bb12c8d87563f1f4fa52e.php
    Known exploit = [Fingerprint Match] [Hacker Sig Exploit [P1271]]

    I used to use All-in-One WP Migration but deleted it about a month ago. Any progress here?

    Thank you

    Plugin Author Borislav Angelov

    (@bangelov)

    Hi

    When we do export, we archive the database and the files under ./wp-content directory so if that exploit exists on your source site, it will be imported on your destination site. We don’t have security check or any other scanning performed on export/import. To avoid these issues, please keep your WordPress up to date and you can use some of the other plugins that do scanning and protecting.

    Best Regards,
    Bobby

Viewing 4 replies - 1 through 4 (of 4 total)
  • The topic ‘Hacker Sig Exploit in database.sql’ is closed to new replies.