• Resolved indigetal

    (@indigetal)


    Hello,

    BitNinja flagged /wp-content/plugins/really-simple-ssl/class-admin.php for containing 2 malware types {SA-SNIPPET}PHP.Backdoor.x52Ss and {SA-SNIPPET}PHP.RCE.x45Ax44Ex52Sx5b. BitNinja quarantined the file but it looks like SSL is still working. I thought you guys should know!

    Cheers,
    Brandon

Viewing 3 replies - 1 through 3 (of 3 total)
  • Plugin Author Rogier Lankhorst

    (@rogierlankhorst)

    Thanks for contacting us. This is a known bug in bitninja’s system. It appears that BitNinja has a bug in their malware scanner, incorrectly reporting a malware infection in Really Simple SSL.

    We have been in contact with BitNinja and they have confirmed this is a FALSE POSITIVE and are working on a fix.
    In the meanwhile you can restore the the deleted files from the BitNinja dashboard or via CLI. If you have any further questions regarding this issue you can contact BitNinja support.

    Hi, I confirm that my site was broken after updating to the latest version of the plugin. Please check. Thank you

    Plugin Author Rogier Lankhorst

    (@rogierlankhorst)

    Hi @butred,

    As explained above, this is caused by a bug in the bitninja malware scanner. They are aware of this, and working on a fix.

    You can contact bitninja support for further assistance.

    In the meanwhile you can restore the deleted files from the BitNinja dashboard or via CLI.

    If you didn’t get a notice from the bitninja scanner, or if you’re not on bitninja at all, this is the wrong support thread, as that is what this thread is about. But in that case, I suspect your update wasn’t completed by your website and some files are missing. That can be fixed by re-installing the plugin from WordPress. There have been 600000 updates today without any reports of issues (including our own sites).

    Let me know if you have any questions.

Viewing 3 replies - 1 through 3 (of 3 total)
  • The topic ‘Malware found’ is closed to new replies.