WordPress security plugin warns of “Suspicious eval with base64 decode”
-
Hello
Just a quick post to notify the plugin author as well as users of this plugin, that the Wordfence Security Plugin has flagged a file to be malicious:
The warning:
File appears to be malicious: wp-content/plugins/newsletter/js/ace/mode-php.js
“The text we found in this file that matches a known malicious file is:
“EvalError|InternalError|RangeError|ReferenceError|StopIteration|SyntaxError|TypeError|URIError|decodeURI|decodeURIComponent|encodeURI|encodeURIComponent|eval|isFinite|isNaN|parseFloat|parseInt|JSON|Ma…”.
The infection type is: Suspicious eval with base64 decode.. This file was detected because you have enabled “Scan images, binary, and other files as if they were executable”, which treats non-PHP files as if they were PHP code. This option is more aggressive than the usual scans, and may cause false positives.”Could someone confirm, if this warning is to be taken serious?
Many thanks
- The topic ‘WordPress security plugin warns of “Suspicious eval with base64 decode”’ is closed to new replies.