Title: PHP.AGENT-180
Last modified: February 20, 2025

---

# PHP.AGENT-180

 *  Resolved [emiel9d](https://wordpress.org/support/users/emiel9d/)
 * (@emiel9d)
 * [1 year, 3 months ago](https://wordpress.org/support/topic/php-agent-180/)
 * Hello,
 * Our malware scanner is giving us the following information:
 * {hit} malware hit {CAV}SecuriteInfo.com.PUA.PHP.Agent-180 found for /domain/wp-
   content/plugins/widget-options/includes/extras.php
 * I thought this might be related to the recent Arbitrary Code Execution vulnerability
   which was fixed in the last patch but we are still getting this message. It might
   be a false positive but I would like to get this confirmed.
 * Many thanks.

Viewing 3 replies - 1 through 3 (of 3 total)

 *  Plugin Author [Mej de Castro](https://wordpress.org/support/users/mej/)
 * (@mej)
 * [1 year, 3 months ago](https://wordpress.org/support/topic/php-agent-180/#post-18324908)
 * Hi [@emiel9d](https://wordpress.org/support/users/emiel9d/),
 * Thanks for reaching out to us!
 * Could we kindly ask you to provide screenshots of the issue? Additionally, could
   you let us know which **malware scanner** you were using? This will help us better
   understand the situation and assist you more effectively.
 * Looking forward to your response!
 * Kind Regards,
   Mej, Widget Options Team
 *  Thread Starter [emiel9d](https://wordpress.org/support/users/emiel9d/)
 * (@emiel9d)
 * [1 year, 3 months ago](https://wordpress.org/support/topic/php-agent-180/#post-18325086)
 * Hi Mej,
 * I don’t have any screenshots, our maldet scanner runs daily and only gives us
   the information I provided. We are using Maldet (Linux Malware Detect) and the
   hit comes from [https://www.securiteinfo.com/](https://www.securiteinfo.com/).
 *  Plugin Author [Mej de Castro](https://wordpress.org/support/users/mej/)
 * (@mej)
 * [1 year, 3 months ago](https://wordpress.org/support/topic/php-agent-180/#post-18326770)
 * Hi [@emiel9d](https://wordpress.org/support/users/emiel9d/),
 * The recent malware detection appears to be a **false positive**. We’ve already
   asked our development team, and it seems this was triggered by the presence of**
   eval()** code within the detected file.
 * Rest assured, there’s no security risk associated with this. Please let us know
   if you have any other questions.
 * Kind Regards,
   Mej, Widget Options Team

Viewing 3 replies - 1 through 3 (of 3 total)

The topic ‘PHP.AGENT-180’ is closed to new replies.

 * ![](https://ps.w.org/widget-options/assets/icon-256x256.gif?rev=2513739)
 * [Widget Options – Advanced Conditional Visibility for Gutenberg Blocks & Classic Widgets](https://wordpress.org/plugins/widget-options/)
 * [Frequently Asked Questions](https://wordpress.org/plugins/widget-options/#faq)
 * [Support Threads](https://wordpress.org/support/plugin/widget-options/)
 * [Active Topics](https://wordpress.org/support/plugin/widget-options/active/)
 * [Unresolved Topics](https://wordpress.org/support/plugin/widget-options/unresolved/)
 * [Reviews](https://wordpress.org/support/plugin/widget-options/reviews/)

 * 3 replies
 * 2 participants
 * Last reply from: [Mej de Castro](https://wordpress.org/support/users/mej/)
 * Last activity: [1 year, 3 months ago](https://wordpress.org/support/topic/php-agent-180/#post-18326770)
 * Status: resolved