I have a problem with the file changes, every time that I do a scan on Wordfence – this message comes up:
Please could you help me with this problem – I want this problem removed.
This week my website will go live, and I want to let Google know that I have a website. (SEO, etc.).
Kind Regards,
Aida Brink,
(https://affiliateadvicetoday.com)
]]>It stopped right after Server State phase. I need help because my server really vulnerable to malware and it keeps coming. Thanks
Here’s my development website:
https://kanda-development.on-dev.info/
We did not update or do anything at the websites at all. So maybe it really is something serious.
Better check and let us know.
In particular, the most recent update to Advanced Editor Tools (previously TinyMCE Advanced) is still showing seven errors after a week or so since the last update.
Modified plugin file: wp-content/plugins/tinymce-advanced/mce/wptadv/plugin.js
Modified plugin file: wp-content/plugins/tinymce-advanced/mce/wptadv/plugin.min.js
Modified plugin file: wp-content/plugins/tinymce-advanced/plugin-assets/tadv.css
Modified plugin file: wp-content/plugins/tinymce-advanced/plugin-assets/tadv.js
Modified plugin file: wp-content/plugins/tinymce-advanced/tadv_admin.php
Modified plugin file: wp-content/plugins/tinymce-advanced/tinymce-advanced.php
Modified plugin file: wp-content/plugins/tinymce-advanced/uninstall.php
And now I am now getting an error for Yoast SEO also.
Modified plugin file: wp-content/plugins/wordpress-seo/wp-seo-main.php
Is this a problem with Wordfence or is there another explanation?
]]>My l10n.php file is continually being flagged by WF scan as changing at line 249 from;
function __( $text, $domain = 'default' ) {
return translate( $text, $domain );
}
to;
if (!function_exists('__')) {
function __( $text, $domain = 'default' ) {
return translate( $text, $domain );
}
}
Each time I restore it, it changes back a few days later.
Has anyone experienced this and have any idea of the culprit?
I have the same plugins on other sites (different hosts), but the hosting company couldn’t provide much help.
Thanks in advance!
]]>What should I do if I didn’t do this?
]]>wflogs/attack-data.php
wflogs/config.php
wflogs/ips.php
It looks suspicious that the files are changing everyday even when there was no management activity.
Can some one tell me what’s going on, and how to detect this issue?
Thanks,
Alon
]]>Issue:
The project has been started recently. Over the past days, hackers have changed and added files using https://[not-in-this-forum]/wp-login.php.
The clean config has been restored and rechecked.
The issue needs to be fixed asap.