wp_posts
?and?wp_options
tables for any redirection links but found none. I got a serious malware attack on my website.
I checked my webiste with wordfence and it is showing so many malicious files. I just want to ask whether these files are core WP files or not is not?
Filename: wp-content/chitoge.php
Filename: wp-content/albedo.php
Filename: wp-content/404.php
Filename: lonT.php
Filename: ryukz.html
Filename: 4dfeed
Filename: wp-content/themes/novo/lonT.php
Filename: wp-content/themes/ryukz1/chitoge.php
Filename: wp-content/themes/ryukz1/lonT.php
Filename: wp-content/wp-uplods.php
Filename: wp-includes/Mobile.php
Filename: wp-zici.php
Any ideas please?
]]>Wordfence
iThemes Security
MalCare – Pro
Anti-Malware Security and Brute-Force Firewall
Earlier I had paid to build my CMS website from a professional Web Designing & Development company. We had paid for web hosting, domain name and website setup. Sahifa premium theme was used to built it.
Recently in May there was a malware attack on the site and it had to be taken down.
Now the company from which i got built site is recharging me to re build the website. Is it legal to charge me again? As it was malware attack and I think he was responsible to manage it.
Now I am learning on my own to setup wordpress theme and page setup. So I
asked him to provide me the same Sahifa theme as we had paid for it.
My question is can Sahifa premium theme can be reused for same domain name which had malware attack?
Please help me on this.
-Thanks,
Tapan
Safebrowsing.data file is inserted in ose-firewall/protected/data/tmp/safebrowsing.data.
Is it unknown activity? After installing this plugin also, i am facing malware attack when i view my website.
Can you help?
https://www.ads-software.com/plugins/ose-firewall/
]]>I am hoping that someone can help me. I received email from Google regarding the Malware attack. I have contacted the host company that I am using and they are trying to help me with that.
However, I am unable to login to my wordpress admin site https://www.chellebymichelle.co.uk/wp-admin. Therefore I am unable to change my password or delete any files.
Can someone please help me. Thank you.
]]>My problem: Every three days or so, three of my WordPress files are mysteriously re-written to append this code:
[malware code removed by moderator]
(full text at bottom)
The three files are:
default-embeds.php
default-filters.php
default-widgets.php
When this happens, the site cannot load, even to the login page, and throws an error on line 269 of default-filters.php. Avast anti-virus will show a warning for a Trojan redirect attack.
When I restore these three files, the site works normally, but usually within three days, the files are re-written as before, and the site goes down.
Any advice on how to solve this problem is greatly appreciated!
[malware code removed by moderator]
]]>