• Resolved Robert

    (@bob23894)


    One of my website is protected with Sucuri Security.

    Occasionally, Sucuri scans the website.

    I’ve tried the backuply plugin recently, seems to work perfectly, but I had this message from the Sucuri after a “Sucuri scan” :

    wp-content/plugins/backuply/backup_ins.php php.malware.injector.072
    wp-content/plugins/backuply/lib/ftp.php php.hacktoot.ftp_client.001

    It seems that Sucuri scan “thinks” that there is a problem with these files.

    It asked me for a “Malware removal request”.

    I give you this info if you want to check with this company.

    We all know that sometimes we have false positives or negatives.

    Thank you !

Viewing 8 replies - 1 through 8 (of 8 total)
  • Plugin Contributor Backuply

    (@backuply)

    Hello,

    Sorry for the inconvenience caused, and we really appreciate that you brought that issue to us.
    We will look into the issue and will contact the Sucuri Security team.
    And it’s really good to know that our plugin is working well for you.

    We will get back to you when the issue gets resolved.

    Regards,
    Backuply Team

    Thread Starter Robert

    (@bob23894)

    Hi,

    I also wrote to Sucuri about the problem, here is a glimpse of their answer :

    “It looks like those cleaned files are false positives on our end. Although the ‘backuply’ plugin is no longer installed on your website (because, on my side, I want this question to be resolved before using the plugin), we have gone ahead and submitted the samples to our internal development team to ensure this doesn’t alert for you in the future.”

    In another words, it seems that Sucuri that has to adjust their scanning technology for these two files in Backuply plugin.

    If you have other infos about this, I would appreciate.

    A really nice and useful plugin. Planing to use it.

    Thank you !

    Robert

    Plugin Contributor Backuply

    (@backuply)

    Hello,

    We really appreciate that you put effort to contact the Sucuri team for the flags it was giving for Backuply. And as per the response it looks like they have taken actions to fix that.
    On our side we did contact Sucuri team and are waiting for their response. Hopefully, the issue would get resolved soon and will get back to you after we get a response from them.
    And thank you for your interest in our plugin.

    Regards,
    Backuply Team

    Thread Starter Robert

    (@bob23894)

    Hi,

    I can now confirm (from my part) that “wp-content/plugins/backuply/backup_ins.php” and “wp-content/plugins/backuply/lib/ftp.php” are now whitelisted on Sucuri Side.

    The problem is solved on my website and I’ve installed the backuply plugin on another website (also protected with Sucuri) and no problem in sight, or alert from Sucuri.

    It was a false alert from Sucuri and they adjusted their system.

    A good new for everybody using your plugin and Sucuri at the same time.

    Thank you !

    Robert

    Plugin Contributor Backuply

    (@backuply)

    Hello,

    Thank you for notifying us about that we really appreciate that, and we are sorry we were not able to update you about that as we didn’t got any response from their side but its good the issue has been fixed.

    We checked it too and aren’t getting any alerts either. We hope you wont face that issue again.

    Thank you

    Regards,
    Backuply Team

    Thread Starter Robert

    (@bob23894)

    Hi,

    Sorry to talk to you about this subject again.

    This is for your info.

    I installed your plugin on another website, also protected by Sucuri.

    I was surprised to discover that Sucuri still flags the same two files as “malware warnings” with the same message.

    And there is an invitation to “Submit a Malware Removal Request”.

    But, on our side, if we go to the control panel of our Sucuri account there is an option to “allow the path” of the files.

    On the next server side scan of Sucuri, the warnings will be cleared.

    Thank you,

    Robert

    Plugin Contributor Backuply

    (@backuply)

    Hello,

    Thank you for this information. As you mentioned you can whitelist our files as there is nothing to worry about them as Sucuri is showing false positives.

    If you face any other issues do let us know.

    Regards,
    Backuply Team

    Thread Starter Robert

    (@bob23894)

    Hi,

    Thank you for your answer and your excellent work.

    Robert

Viewing 8 replies - 1 through 8 (of 8 total)
  • The topic ‘Problem with Sucuri Scan ?’ is closed to new replies.