• Resolved devdaniel88

    (@devdaniel88)


    Hello InfiniteWP Team,

    today my hoster sent me an email that “php_worm_2.UNOFFICIAL” was found in you plugin folders.

    19:30:54 Virus "php_worm_2.UNOFFICIAL" found in file "/wp-content/plugins/iwp-client/lib/amazon/symfony/event-dispatcher/Symfony/Component/EventDispatcher/Debug/info.php" 
     -> File was renamed to "/wp-content/plugins/iwp-client/lib/amazon/symfony/event-dispatcher/Symfony/Component/EventDispatcher/Debug/VIRUS_php_worm_2.UNOFFICIAL_info.php" and locked (chmod: 0)
    
    19:30:54 Virus "php_worm_2.UNOFFICIAL" found in file "/wp-content/plugins/iwp-client/lib/amazon/symfony/event-dispatcher/Symfony/Component/EventDispatcher/DependencyInjection/help.php" 
    -> File was renamed to "/wp-content/plugins/iwp-client/lib/amazon/symfony/event-dispatcher/Symfony/Component/EventDispatcher/DependencyInjection/VIRUS_php_worm_2.UNOFFICIAL_help.php" and locked (chmod: 0)

    and

    19:30:54 Virus "php_worm_2.UNOFFICIAL" found in file "/wp-content/plugins/iwp-client/lib/amazon/guzzle/guzzle/src/Guzzle/Service/Command/LocationVisitor/Response/404.php" 
    -> File was renamed to "/wp-content/plugins/iwp-client/lib/amazon/guzzle/guzzle/src/Guzzle/Service/Command/LocationVisitor/Response/VIRUS_php_worm_2.UNOFFICIAL_404.php" and locked (chmod: 0)

    Could this be a false alarm or is something known from your side?
    Thank you for your help.

Viewing 1 replies (of 1 total)
  • Plugin Author infinitewp

    (@infinitewp)

    Hey Daniel,

    Something just isn’t right with your WordPress site. When a WP site gets hacked, they put these files in a random folder. We do not have these files in our IWP Client Plugin by default. Could you please FTP in or log into your cPanel account of your WordPress site installed server and delete the wp-content/plugins/iwp-client folder.

    Now, use this link and download the current version of IWP Client Plugin and upload it to your plugins folder.

    Also, do check your other folders for these find of files and remove them from your server.

    Feel free to write to us at [email protected] if you need any further assistance.

Viewing 1 replies (of 1 total)
  • The topic ‘Virus found in plugin folder’ is closed to new replies.