• Resolved emiel9d

    (@emiel9d)


    Hello,

    Our malware scanner is giving us the following information:

    {hit} malware hit {CAV}SecuriteInfo.com.PUA.PHP.Agent-180 found for /domain/wp-content/plugins/widget-options/includes/extras.php

    I thought this might be related to the recent Arbitrary Code Execution vulnerability which was fixed in the last patch but we are still getting this message. It might be a false positive but I would like to get this confirmed.

    Many thanks.

Viewing 3 replies - 1 through 3 (of 3 total)
  • Plugin Author Mej de Castro

    (@mej)

    Hi @emiel9d,

    Thanks for reaching out to us!

    Could we kindly ask you to provide screenshots of the issue? Additionally, could you let us know which malware scanner you were using? This will help us better understand the situation and assist you more effectively.

    Looking forward to your response!

    Kind Regards,
    Mej, Widget Options Team

    Thread Starter emiel9d

    (@emiel9d)

    Hi Mej,

    I don’t have any screenshots, our maldet scanner runs daily and only gives us the information I provided. We are using Maldet (Linux Malware Detect) and the hit comes from https://www.securiteinfo.com/.

    Plugin Author Mej de Castro

    (@mej)

    Hi @emiel9d,

    The recent malware detection appears to be a false positive. We’ve already asked our development team, and it seems this was triggered by the presence of eval() code within the detected file.

    Rest assured, there’s no security risk associated with this. Please let us know if you have any other questions.

    Kind Regards,
    Mej, Widget Options Team

Viewing 3 replies - 1 through 3 (of 3 total)

The topic ‘PHP.AGENT-180’ is closed to new replies.