malicious or unsafe: stats/webalizer.current
-
I have repeatedly received the following security warnings after scans:
- Filename:?…/public_html/stats/webalizer.current
- File Type: Not a core, theme, or plugin file from www.remarpro.com.
- Details: This file appears to be installed or modified by a hacker to perform malicious activity. If you know about this file you can choose to ignore it to exclude it from future scans. The matched text in this file is: cat /etc/passwd
The issue type is: Backdoor:SH/passwdaccess.60
Description: Theft of server password information. Also sometimes seen in a backdoor known as Liz0ziM
Between each detection I deleted the file. Also, I visually examined the file to look for evidence of the passwd file info being inside but did not find it. Is there a way to know for sure if this is really malicious or a false positive?
Thanks for your help!
Viewing 6 replies - 1 through 6 (of 6 total)
Viewing 6 replies - 1 through 6 (of 6 total)
- The topic ‘malicious or unsafe: stats/webalizer.current’ is closed to new replies.