Title: Malware
Last modified: August 31, 2016

---

# Malware

 *  [jordanorich](https://wordpress.org/support/users/jordanorich/)
 * (@jordanorich)
 * [10 years, 3 months ago](https://wordpress.org/support/topic/malware-56/)
 * I believe this plugin has been compromised by malware. My site was broken and
   after extensive investigation I isolated the issue to this plugin. I disabled
   each of my plugins and re-enabled them one-by-one. The malware came from akamaihd.
   net and caused certain pages of my site to redirect to the URL + “/null” or “/
   none”
 * [https://wordpress.org/plugins/wp-retina-2x/](https://wordpress.org/plugins/wp-retina-2x/)

Viewing 4 replies - 1 through 4 (of 4 total)

 *  Plugin Author [Jordy Meow](https://wordpress.org/support/users/tigroumeow/)
 * (@tigroumeow)
 * [10 years, 3 months ago](https://wordpress.org/support/topic/malware-56/#post-7062610)
 * This is the first time I hear about this. How do you know the malware comes from
   akamaihd.net? What happened exactly? What the files of the plugin modified?
 *  Plugin Author [Jordy Meow](https://wordpress.org/support/users/tigroumeow/)
 * (@tigroumeow)
 * [10 years, 3 months ago](https://wordpress.org/support/topic/malware-56/#post-7062611)
 * By the way akamaihd is a CDN service used by Facebook. Are you really sure this
   is a malware problem? Maybe it’s a bug or an issue somewhere and not an attack
   at all 😉 Attacks usually send you to bad websites or add a lot of backlinks.
 *  Thread Starter [jordanorich](https://wordpress.org/support/users/jordanorich/)
 * (@jordanorich)
 * [10 years, 3 months ago](https://wordpress.org/support/topic/malware-56/#post-7062621)
 * I see.
 * I saw the “akamaihd.net” in the lower portion of the browser window and did not
   recognize it, assumed it was malware. My site doesn’t have any connection to 
   Facebook so not sure why that would happen.
 * Basically, when the plugin was active, the page would load, then, at the very
   end of the load, I saw the message “read cdncache-a.akamaihd.net” at the bottom
   of the page and the page would then redirect to “/null” resulting in a 404.
 * FYI, I just re-activated your plugin (v 4.4.4) and tested again, same thing.
   
   With your plugin deactivated, no error.
 * Screenshots:
    [http://jordanrichardson.com/wp-content/uploads/2016/02/error1.png](http://jordanrichardson.com/wp-content/uploads/2016/02/error1.png)
   [http://jordanrichardson.com/wp-content/uploads/2016/02/error2.png](http://jordanrichardson.com/wp-content/uploads/2016/02/error2.png)
 * Good luck.
 *  Plugin Author [Jordy Meow](https://wordpress.org/support/users/tigroumeow/)
 * (@tigroumeow)
 * [10 years, 3 months ago](https://wordpress.org/support/topic/malware-56/#post-7062648)
 * Ok, this is definitely not a malware then 🙂 No idea why this URL is being accessed
   but as you know, the plugin and associated scripts are looking for the @2x images.
   The plugin itself has not link to “akamaihd.net” anywhere however, so that link
   comes from another image or plugin. Then WP Retina 2x tries to get the Retina
   for it. I looked at your websites and your theme a lot of scripts (and there 
   are also a few links to Facebook) so it might really come from any of them.

Viewing 4 replies - 1 through 4 (of 4 total)

The topic ‘Malware’ is closed to new replies.

 * ![](https://ps.w.org/wp-retina-2x/assets/icon-256x256.png?rev=2597316)
 * [Perfect Images: Regenerate Thumbnails, Image Sizes, WebP & AVIF](https://wordpress.org/plugins/wp-retina-2x/)
 * [Frequently Asked Questions](https://wordpress.org/plugins/wp-retina-2x/#faq)
 * [Support Threads](https://wordpress.org/support/plugin/wp-retina-2x/)
 * [Active Topics](https://wordpress.org/support/plugin/wp-retina-2x/active/)
 * [Unresolved Topics](https://wordpress.org/support/plugin/wp-retina-2x/unresolved/)
 * [Reviews](https://wordpress.org/support/plugin/wp-retina-2x/reviews/)

 * 4 replies
 * 2 participants
 * Last reply from: [Jordy Meow](https://wordpress.org/support/users/tigroumeow/)
 * Last activity: [10 years, 3 months ago](https://wordpress.org/support/topic/malware-56/#post-7062648)
 * Status: not resolved