WordPress.org

Ready to get started?Download WordPress

Forums

Duplicator
[resolved] Duplicator plugin contains malware? (3 posts)

  1. lakersalex
    Member
    Posted 1 year ago #

    The security plugin wordfence just alerted me to potential malware on the Duplicator plugin:

    File contains suspected malware URL: /wp-content/plugins/duplicator/duplicator.php
    Filename: wp-content/plugins/duplicator/duplicator.php
    Bad URL: http://www.logiclord.com/backup-and-move/
    This file contains a suspected malware URL listed on Google's list of malware sites. Wordfence decodes base64 when scanning files so the URL may not be visible if you view this file. The URL is: http://www.logiclord.com/backup-and-move/ - More info available at Google Safe Browsing diagnostic page.

    Is this real or fake?

    http://wordpress.org/extend/plugins/duplicator/

  2. lakersalex
    Member
    Posted 1 year ago #

    More malware alerts on Duplicator from Wordfence!

    This file may contain malicious executable code
    Filename: wp-content/plugins/duplicator/files/installer.rescue.php
    File type: Not a core, theme or plugin file.
    This file is a PHP executable file and contains a line 1074 characters long without spaces that may be encoded data along with functions that may be used to execute that code. If you know about this file you can choose to ignore it to exclude it from future scans.

    and a similar one re: length of a line of code!

  3. Cory Lamle
    Member
    Plugin Author

    Posted 1 year ago #

    Hey lakersalex,

    The first one was a link to a contributor who had his site hacked. It has been fix (url removed) in the Development line and will be for the next version. If you want to update to the Development version that scan Warning should go away.

    The second one is triggered by the jquery min source included in the installer. Because the installer is standalone it requires jquery and the min version has this condition which triggers a wordfence warning. You can just ignore it.

Topic Closed

This topic has been closed to new replies.

About this Plugin

About this Topic