This plug-in keeps installing itself somehow and adding root users and admins. Repeated removals of this plug-in, but it keeps coming back, and we're not sure how. All other plug-ins are updated, and secure.
This message keeps coming from my host:
This is an urgent message concerning your 1&1 account. Our anti-virus scanner has reported that a malicious file has been uploaded to your 1&1 webspace.
Name of the file: ~/*****/wp-content/plugins/customize-admin/info.php
To protect you from hacker attacks, our anti-virus scanner checks every file that is uploaded or modified. If a file exhibits malicious patterns, it is automatically disabled.
The plug-in is malicious. Do NOT install.
You must log in to submit a review. You can also log in or register using the form near the top of this page.