2016-02-26 90 views
0

我使用Wordpress,並有Wordfence(免費)在我的網站上觀看,以確保人們沒有做他們不該做的任何事情。我最近收到一封來自Wordfence的電子郵件,提醒我有關修改過的插件文件,我想知道這是我應該擔心的事情嗎?我不認爲自己從未接受過電子郵件,只是做了我的正常插件更新。更新是否觸發了這個?還是更多?WordPress插件修改警報

的WordPress版本和這樣的:

-WordPress 4.4.2 
-Headway Theme v. 3.8.8 
-Wordfence (free) v. 6.0.24 
-Google Captcha (reCAPTCHA) by BestWebSoft v. 1.22 (this is on the login page, so it should help block automated attacks...) 
-My username is not a generic 'admin' or anything like that, and I have WordFence set to immediately lock out any invalid username login attempts. 
-and my password is decently strong. 
-I do have other various plugins that are up to date, I just mention the above because they are supposed to help with security. 

我得到的信息是:

Alert generated at Thursday 25th of February 2016 at 11:41:32 PM 

Warnings: 

* Modified plugin file: wp-content/plugins/google-captcha/bws_menu/bws_functions.php 

* Modified plugin file: wp-content/plugins/google-captcha/bws_menu/bws_menu.php 

* Modified plugin file: wp-content/plugins/google-captcha/bws_menu/css/general_style.css 

* Modified plugin file: wp-content/plugins/google-captcha/css/gglcptch.css 

* Modified plugin file: wp-content/plugins/google-captcha/google-captcha.php 

* Modified plugin file: wp-content/plugins/google-captcha/js/script.js 

* Modified plugin file: wp-content/plugins/google-captcha/languages/google-captcha-ar.mo 

* Modified plugin file: wp-content/plugins/google-captcha/languages/google-captcha-ar.po 

* Modified plugin file: wp-content/plugins/google-captcha/languages/google-captcha-bg_BG.mo 

* Modified plugin file: wp-content/plugins/google-captcha/languages/google-captcha-bg_BG.po 

* Modified plugin file: wp-content/plugins/google-captcha/languages/google-captcha-de_DE.mo 

* Modified plugin file: wp-content/plugins/google-captcha/languages/google-captcha-de_DE.po 

* Modified plugin file: wp-content/plugins/google-captcha/languages/google-captcha-el.mo 

* Modified plugin file: wp-content/plugins/google-captcha/languages/google-captcha-el.po 

* Modified plugin file: wp-content/plugins/google-captcha/languages/google-captcha-es_ES.mo 

* Modified plugin file: wp-content/plugins/google-captcha/languages/google-captcha-es_ES.po 

* Modified plugin file: wp-content/plugins/google-captcha/languages/google-captcha-fa_IR.mo 

* Modified plugin file: wp-content/plugins/google-captcha/languages/google-captcha-fa_IR.po 

* Modified plugin file: wp-content/plugins/google-captcha/languages/google-captcha-fr_FR.mo 

* Modified plugin file: wp-content/plugins/google-captcha/languages/google-captcha-fr_FR.po 

* Modified plugin file: wp-content/plugins/google-captcha/languages/google-captcha-hi.mo 

* Modified plugin file: wp-content/plugins/google-captcha/languages/google-captcha-hi.po 

* Modified plugin file: wp-content/plugins/google-captcha/languages/google-captcha-it_IT.mo 

* Modified plugin file: wp-content/plugins/google-captcha/languages/google-captcha-it_IT.po 

* Modified plugin file: wp-content/plugins/google-captcha/languages/google-captcha-pl_PL.mo 

* Modified plugin file: wp-content/plugins/google-captcha/languages/google-captcha-pl_PL.po 

* Modified plugin file: wp-content/plugins/google-captcha/languages/google-captcha-pt_BR.mo 

* Modified plugin file: wp-content/plugins/google-captcha/languages/google-captcha-pt_BR.po 

* Modified plugin file: wp-content/plugins/google-captcha/languages/google-captcha-ru_RU.mo 

* Modified plugin file: wp-content/plugins/google-captcha/languages/google-captcha-ru_RU.po 

* Modified plugin file: wp-content/plugins/google-captcha/languages/google-captcha-uk.mo 

* Modified plugin file: wp-content/plugins/google-captcha/languages/google-captcha-uk.po 

* Modified plugin file: wp-content/plugins/google-captcha/languages/google-captcha-zh_TW.mo 

* Modified plugin file: wp-content/plugins/google-captcha/languages/google-captcha-zh_TW.po 

* Modified plugin file: wp-content/plugins/google-captcha/readme.txt 

* Modified plugin file: wp-content/plugins/google-captcha/screenshot-5.png 

* Modified plugin file: wp-content/plugins/google-captcha/screenshot-6.png 

* Modified plugin file: wp-content/plugins/google-captcha/screenshot-7.png 

* Modified plugin file: wp-content/plugins/google-captcha/screenshot-8.png 

* Modified plugin file: wp-content/plugins/jetpack/_inc/jetpack-jitm.js 

* Modified plugin file: wp-content/plugins/jetpack/_inc/lib/admin-pages/class.jetpack-landing-page.php 

* Modified plugin file: wp-content/plugins/jetpack/_inc/lib/markdown/gfm.php 

* Modified plugin file: wp-content/plugins/jetpack/class.jetpack-modules-list-table.php 

* Modified plugin file: wp-content/plugins/jetpack/class.jetpack-network.php 

* Modified plugin file: wp-content/plugins/jetpack/class.jetpack.php 

* Modified plugin file: wp-content/plugins/jetpack/class.json-api-endpoints.php 

* Modified plugin file: wp-content/plugins/jetpack/class.json-api.php 

* Modified plugin file: wp-content/plugins/jetpack/class.photon.php 

* Modified plugin file: wp-content/plugins/jetpack/css/jetpack-admin.css.map 

* Modified plugin file: wp-content/plugins/jetpack/functions.opengraph.php 

* Modified plugin file: wp-content/plugins/jetpack/functions.photon.php 

* Modified plugin file: wp-content/plugins/jetpack/jetpack.php 

* Modified plugin file: wp-content/plugins/jetpack/json-endpoints/class.wpcom-json-api-delete-media-endpoint.php 

* Modified plugin file: wp-content/plugins/jetpack/json-endpoints/class.wpcom-json-api-delete-media-v1-1-endpoint.php 

* Modified plugin file: wp-content/plugins/jetpack/json-endpoints/class.wpcom-json-api-get-site-endpoint.php 

* Modified plugin file: wp-content/plugins/jetpack/json-endpoints/class.wpcom-json-api-post-endpoint.php 

* Modified plugin file: wp-content/plugins/jetpack/json-endpoints/class.wpcom-json-api-post-v1-1-endpoint.php 

* Modified plugin file: wp-content/plugins/jetpack/json-endpoints/class.wpcom-json-api-sharing-buttons-endpoint.php 

* Modified plugin file: wp-content/plugins/jetpack/json-endpoints/class.wpcom-json-api-update-post-endpoint.php 

* Modified plugin file: wp-content/plugins/jetpack/json-endpoints/class.wpcom-json-api-update-post-v1-1-endpoint.php 

* Modified plugin file: wp-content/plugins/jetpack/json-endpoints/class.wpcom-json-api-update-post-v1-2-endpoint.php 

* Modified plugin file: wp-content/plugins/jetpack/json-endpoints.php 

* Modified plugin file: wp-content/plugins/jetpack/locales.php 

* Modified plugin file: wp-content/plugins/jetpack/modules/contact-form/grunion-contact-form.php 

* Modified plugin file: wp-content/plugins/jetpack/modules/custom-post-types/comics.php 

* Modified plugin file: wp-content/plugins/jetpack/modules/custom-post-types/js/many-items.js 

* Modified plugin file: wp-content/plugins/jetpack/modules/custom-post-types/portfolios.php 

* Modified plugin file: wp-content/plugins/jetpack/modules/custom-post-types/testimonial.php 

* Modified plugin file: wp-content/plugins/jetpack/modules/latex.php 

* Modified plugin file: wp-content/plugins/jetpack/modules/minileven.php 

* Modified plugin file: wp-content/plugins/jetpack/modules/module-headings.php 

* Modified plugin file: wp-content/plugins/jetpack/modules/module-info.php 

* Modified plugin file: wp-content/plugins/jetpack/modules/publicize/ui.php 

* Modified plugin file: wp-content/plugins/jetpack/modules/related-posts/jetpack-related-posts.php 

* Modified plugin file: wp-content/plugins/jetpack/modules/related-posts/related-posts.js 

* Modified plugin file: wp-content/plugins/jetpack/modules/shortcodes/archives.php 

* Modified plugin file: wp-content/plugins/jetpack/modules/shortcodes/flickr.php 

* Modified plugin file: wp-content/plugins/jetpack/modules/shortcodes/instagram.php 

* Modified plugin file: wp-content/plugins/jetpack/modules/shortcodes/presentations.php 

* Modified plugin file: wp-content/plugins/jetpack/modules/shortcodes/scribd.php 

* Modified plugin file: wp-content/plugins/jetpack/modules/shortcodes/slideshare.php 

* Modified plugin file: wp-content/plugins/jetpack/modules/shortcodes/soundcloud.php 

* Modified plugin file: wp-content/plugins/jetpack/modules/shortcodes/ted.php 

* Modified plugin file: wp-content/plugins/jetpack/modules/shortcodes/twitter-timeline.php 

* Modified plugin file: wp-content/plugins/jetpack/modules/shortcodes/vimeo.php 

* Modified plugin file: wp-content/plugins/jetpack/modules/shortcodes/wufoo.php 

* Modified plugin file: wp-content/plugins/jetpack/modules/stats.php 

* Modified plugin file: wp-content/plugins/jetpack/modules/theme-tools/random-redirect.php 

* Modified plugin file: wp-content/plugins/jetpack/modules/theme-tools/site-logo/js/site-logo-control.js 

* Modified plugin file: wp-content/plugins/jetpack/modules/videopress/videopress.php 

* Modified plugin file: wp-content/plugins/jetpack/modules/widget-visibility/widget-conditions/widget-conditions.js 

* Modified plugin file: wp-content/plugins/jetpack/modules/widget-visibility/widget-conditions.php 

* Modified plugin file: wp-content/plugins/jetpack/modules/widgets/contact-info.php 

* Modified plugin file: wp-content/plugins/jetpack/modules/widgets/top-posts.php 

* Modified plugin file: wp-content/plugins/jetpack/modules/widgets/wordpress-post-widget.php 

* Modified plugin file: wp-content/plugins/jetpack/readme.txt 

* Modified plugin file: wp-content/plugins/jetpack/views/admin/my-jetpack-page.php 

* Modified plugin file: wp-content/plugins/youtube-channel/readme.txt 

是否有任何地方我可以檢查什麼,或者爲什麼會被修改?或者是IP做了什麼改變或者類似的事情?我是唯一可以訪問該網站的人,因爲我沒有任何朋友或家人或同事也可以進行更改。

回答

1

如果您不是進行更改的人,則應調查情況。有可能您的網站遭到黑客入侵。我也是WordFence的用戶,我查看任何我得到的通知

+0

我所做的唯一修改是通過WP儀表板中的更新工具進行更新。除此之外,我不做任何文件更改。我如何進一步調查?你會從這裏採取什麼措施? – Mxracer888

+0

檢查文件是否有惡意代碼,刪除插件並在必要時重新安裝。 –

1

如果我是你,我不會打擾類似Wordfence的事情。既然你無法理解這個工具是如何工作的,你覺得你從中得到了什麼好處?至於這份報告,它看起來像某種緩存正在進行。我敢打賭,這不是病毒,也不是任何惡意軟件。這是太多的文件。