• Resolved jongraywb

    (@jongraywb)


    Hello. I am currently having a problem with my webpage (https://www.jongraywb.com/) where I think I’ve been hacked. I try to load it and my security immediately tells me this:

    This web page may contain dangerous content that can provide remote access to an infected device, leak sensitive data from the device or harm the targeted device.

    Threat: JS/Agent.RFQ trojan

    Access to the web page has been blocked. Your computer is safe.

    I believe my page is being redirected to some phishing site. I’ve run WordFence multiple times and including on high sensitivity with no luck. I’m at my wits end. Is there anything that anyone can do to help. Thanks.

    The page I need help with: [log in to see the link]

Viewing 1 replies (of 1 total)
  • Plugin Support wfpeter

    (@wfpeter)

    Hi @jongraywb, thanks for reaching out.

    Aside from the site being marked as “Not Secure” as there’s no SSL to give you an https address, I see the message seems to come from ESET rather than the inbuilt browser checks.

    There’s an outside chance it could be a false-positive but I checked a similar report and it appears on the ESET forum: https://forum.eset.com/topic/38756-wordpress-jsagentrfp-trojan-detected/

    In that case, an administrator was able to find reference to the offending JavaScript on their site to confirm the risk, although I don’t see the same snippet with basic page source or “inspect element” checks. They may be able to confirm that this is not a false-positive in your case too, but I would first try disabling all of your plugins and reverting to a default theme such as Twenty Twenty-Three. If you’re no longer getting the warning when visiting your site, enable your other plugins (and theme) one-by-one until the notice returns to find the possible source.

    Let us know what you find out,
    Peter.

Viewing 1 replies (of 1 total)
  • The topic ‘Trojan Detected’ is closed to new replies.