Is this a hack attempt?
-
Wordfence has flagged this as an issue
File appears to be malicious or unsafe: php.ini
Type: File
Issue Found April 18th, 2022 12:10 am
CriticalFilename: wp-content/php.ini
File Type: Not a core, theme, or plugin file from www.ads-software.com.
Details: This file contains an insecure configuration that may have been legitimately added by a developer for testing purposes or maliciously added by an attacker. Since it may make your site vulnerable we strongly recommend replacing it with a safer configuration as soon as possible. The matched text in this file is: safe_mode = Off\x0d\x0adisable_functions = NONE\x0d\x0asafe_mode_gid = OFF\x0d\x0aopen_basedir = OFF\x0d\x0aexec = ON \x0d\x0ashell_exec = ONThe issue type is: IOC:TXT/ini.unsafe.9269
Description: Insecure settings in a PHP.ini file. Often seen in conjunction with malwareI use all the below plugins together for security – so, I do not know if it is merely a conflict or a genuine hack attempt. Mind you, this site has been hacked barely a month ago and cleaned it up all over again.
- iThemes Security
Sucuri Security – Auditing, Malware Scanner and Hardening
Wordfence Security
- iThemes Security
- The topic ‘Is this a hack attempt?’ is closed to new replies.