WordPress.org

Support

Support » Plugins and Hacks » Wordfence Security » [Resolved] [Plugin: Wordfence Security] Pharma Hack Completely Removes Wordfence

[Resolved] [Plugin: Wordfence Security] Pharma Hack Completely Removes Wordfence

Viewing 3 replies - 1 through 3 (of 3 total)
  • Plugin Author Wordfence

    @mmaunder

    We haven’t seen this before. Are the Wordfence files actually deleted by malicious code? Can you email me a sample of the code that does this? mark@wordfence.com

    Thanks.

    Mark.

    I blogged about it here. I tried posting the contents of the files here but WordPress didn’t allow it. I’ve included the files in a .docx file (wordpress.com doesn’t allow .zip uploads) at the end of my blog post. Note, class-sftp.php made Microsft Security Essentials freak out with a “Backdoor:PHP/WebShell.A” alert and removed it.

    I’m not sure if any of the plugins were part of the problem, I doubt it, but I don’t know. The blog post describes what I did to clean it up.

    Plugin Author Wordfence

    @mmaunder

    Thanks for the info.

    Regards,

    Mark.

Viewing 3 replies - 1 through 3 (of 3 total)
  • The topic ‘[Resolved] [Plugin: Wordfence Security] Pharma Hack Completely Removes Wordfence’ is closed to new replies.
Skip to toolbar