• Hi,

    In one of our WP websites, we found a DB injection activity through Flamingo plugin.

    This is the log file of our antimalware scanner:

    xxx
    xxx
    [email protected]
    xxxxxx
    viagra from the uk
      viagra lavitra viagra
     <a href="https://xxxxxx.com">viagra 100mg
    </a> - viagra softabs
     viagra uk buy
    1
    SUBMIT
    No
    39
    5.xxx.xxx.239
    Mozilla/5.0 (Windows NT 6.1) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/67.0.3396.99 Safari/537.36 Kinza/4.8.2
    https://www.xxx.com/en/contact/
    05/05/2020
    6:29 pm
    xxxx

    Furthermore we traced down this hacking activity, with Sucuri log files that shows:

    05/05/2020 - 19:29
    system Flamingo_contact status has been changed (details):
    ID: 37913, Old status: new, New status: publish, Title: [email protected]
    IP: 5.xxx.xxx.239

    Thanks for any feedback.

    Best regards

Viewing 1 replies (of 1 total)
Viewing 1 replies (of 1 total)
  • The topic ‘DB injection’ is closed to new replies.