otcme.wikaba.com
I have tried a server restore, wordfense, bpspro and now your plugin I just cannot seem to get ride of these hackers! your plugin in seems great though it did find some things that others did not but I am wondering if you might be able to look around at my site and see what i am missing?
Thanks!
I’d be happy to take a look if you email me your WP Admin credential. Just reply directly to this email (don’t post them on the forum).
I didnt receive an email from you. I do appreciate your help though!
scratch that I just received it and replied.
my email to you just bounced back. trying again
yeah your email address keeps bouncing back can you send me an alternative address?
Sorry about the bad email address, I just updated WP and the forum plugin and it screwed up the mail headers, but I think I’ve got it fixed now.
Anyway, your sites look clean now. I expanded the scan range to include the root public_html folder and scanned all the site on your shared host account. There were 2 backdoors and a few vulnerable timthumb scripts that I patched. Then I ran a Complete Scan and repaired all the .js files that had iframe injections in them.
It’s been over 12 hours and the Javascript files that were being re-infected every few minutes have stayed clean so I think I got them all.
Please let me know if you spot any more signs of infection.