New Posts
Live Radio
Welcome guest, is this your first visit?
  • Login:
HighPulsePoker.com Affiliate Program
+ Reply to Thread
Results 1 to 2 of 2
  1. #1
    Wannabe Balla
    My Status
     

    Add as a friend
    Join Date
    Mar 2009
    Location
    Ireland
    Posts
    2,203
    Blog Entries
    1
    Feedback Score
    26 (96%)

    Default Wordpress Site Hacked

    Last night I left a virus scan running on my laptop and found that there was an iframe virus contained in the backup files of one of my sites. This was a newish site and I'd assumed up til now it had been penalised or was sandboxed. I downloaded a plugin called WP Exploit Scanner and found quite a few iframes that redirected to a known .ru malware site theanotherlife throughout the php files.

    However, there were also lots of other iframes that were picked up. I've no idea if they are malicious or otherwise. Maybe you guys can help out. Some examples are.

    /wp-admin/plugins.php:252
    Context
    <iframe style="border:0" width="100%" height="70px" src="<?php echo admin_url('plugins.php?action=error_scrape&plugin= ' . esc_attr($plugin) . '&_wpnonce=' . esc_attr($_GET['_error_nonce&#

    [ABSPATH]/wp-admin/plugin-editor.php:131
    Context
    <iframe style="border:0" width="100%" height="70px" src="<?php bloginfo('wpurl'); ?>/wp-admin/plugins.php?action=error_scrape&plugin=<?php echo esc_attr($file); ?>&_wpnonce=<?php echo esc_at

    [ABSPATH]/wp-includes/js/scriptaculous/controls.js:100
    Context
    '<iframe id="' + this.update.id + '_iefix" '+


    Before I send a reinclusion request to Google I want to make sure that all this garbage is cleaned off the site. Is there any quick fix or plugin that will help with this process. when it's an obvious one that links to a 3rd party domain it's easy for me but if it's doing something like a url lookup from a file it's palced on my server i dont really know how to spot em...

    Thanks.
    PM me for:

    English/Chinese translation.
    PSD to WP/Custom WP Plugin Creation
    Swap MB for Paypal

  2. #2
    Member
    My Status
     

    Add as a friend
    Join Date
    Nov 2008
    Location
    USA
    Posts
    75
    Feedback Score
    1 (100%)

    Default

    Sorry to hear about that, being hacked sucks. Those two you see there are ok though, scriptaculous is a well known utilties library (script.aculo.us - web 2.0 javascript) and the other handles errors on plugin activation.


 

Thread Information

Users Browsing this Thread

There are currently 1 users browsing this thread. (0 members and 1 guests)

     

Similar Threads

  1. Moneybookers Hacked
    By leporello in forum General Poker Affiliate Forum
    Replies: 10
    Last Post: 01-24-2010, 09:15 AM
  2. Site keeps getting hacked
    By NickM in forum Wordpress - Web Design - Coding - Technical
    Replies: 11
    Last Post: 10-30-2009, 04:29 AM
  3. Think my hotmail might have have been hacked
    By TheShortStack in forum PAL Coffee Shop
    Replies: 8
    Last Post: 10-20-2009, 08:28 PM
  4. Blog Hacked
    By JeremyM in forum General Poker Affiliate Forum
    Replies: 8
    Last Post: 09-17-2009, 03:52 PM
  5. Site Hacked - now has PR
    By kef272 in forum Poker SEO Forum
    Replies: 3
    Last Post: 07-06-2009, 06:37 AM

Posting Permissions

  • You may not post new threads
  • You may not post replies
  • You may not post attachments
  • You may not edit your posts
Powered by vBulletin® Version 4.1.5
Copyright © 2012 vBulletin Solutions, Inc. All rights reserved.
SEO by vBSEO 3.6.0
Affiliate Program Consultant