• Resolved WestWebcw

    (@westwebcw)


    A client has just forwarded a alert that includes the following and was wondering what would cause this?

    Is it malicious or a simple update?

    Warnings:
    * Modified plugin file: wp-content/plugins/wordfence/lib/wfIssues.php
    * Modified plugin file: wp-content/plugins/wordfence/lib/wfLog.php
    * Modified plugin file: wp-content/plugins/wordfence/lib/wfScanEngine.php
    * Modified plugin file: wp-content/plugins/wordfence/lib/wordfenceConstants.php
    * Modified plugin file: wp-content/plugins/wordfence/lib/wordfenceScanner.php

    https://ww.wp.xz.cn/plugins/wordfence/

Viewing 1 replies (of 1 total)
  • Plugin Author WFMattR

    (@wfmattr)

    There should not be any changes to these files. It could be malicious, or could be a change the host has made (though that is extremely rare).

    I would recommend removing the Wordfence plugin, installing a fresh copy, then enabling all of the options under “Scans to include” and running another scan.

    Though it might not be malicious, I would recommend reviewing our guide for cleaning hacked sites here, just in case:
    How to clean a hacked website

    -Matt R

Viewing 1 replies (of 1 total)

The topic ‘Wordfence plugin file modified’ is closed to new replies.