Forum Replies Created
-
AuthorPosts
-
It’s probably encrypted in the PHP files, so you may not be able to find that exact text anywhere on your site. If you have verified that Google has found this on your site since your last scan and you have the latest definition updates but the scan still does not find it then you should try to pin down where this URL is showing up in your HTML output on your page. If you can’t see it when you view the source on your site then you could try “Fetch as Googlebot” in your Webmaster Tools account.
I can’t see the details of each infected file from just that screenshot but it looks like those files listed in Red have all been infected with Known Threats. If you click the Automatic Fix button then the malicious code should be removed from those file, thus restoring those plugins to their intended functionality.
You can click on any one of those files to see the contents and highlight the malicious code.
If you register each site using the same email address then your donation will count for all site under that account
Aloha, Eli
Yes please, I would like to fix this ASAP. Can you please send your login info and FTP directly to this email address:
eli AT gotmls DOT netThat was my best guess with so little information to go on. Like I said, my plug is able to scan that file just fine on my server, so it must be something about your server that is limiting my plugin or otherwise preventing that file from being read.
You can check the file permission in-place, or check your error_log file to see if there is a relevant error reported every time you scan that file. you could also check the results of the phpinfo() function to be sure that your php.ini file is affecting the appropriate values that you have set.
You may also want to inquire about your servers processor and memory capacity and other server limitation with your hosting provider. If this (or any other issue with your hosting) are a real problem for you and you would like to switch to a better host then I would be happy to move your site to one of my servers. I do offer Super Secure Hosting for $12/month per site if you are interested.
I just had a problem with my database this morning which somehow allowed you to register your site/key multiple times. This was not supposed to be possible, and it was causing a conflict that resulted in your registration not showing up at all. I deleted the duplicate registrations and it looks fine now. Please refresh your admin page and let me know if it all works right on your end now.
I have it set to 512M on all my servers but it may depend on how much memory your server actually have and whether or not your host allows you to change that setting.
Yes, I did. Thanks for the DropBox link and sorry for my late reply, I was on Oahu this past weekend the Hawaii Open Fencing Tournament so I hadn’t really had a chance to get any work done
I took a look at this file though and it’s clean
This file was fairly large so I think your server was probably giving a read/write error because the memory_limit in your php.ini file is too low. I put this file on a testing site on one of my servers and I was able to scan it fine without any errors.
can you please email that file to me as an attachment so that I can inspect it?
It is something to be concerened about but it may not be malicious. If you are getting a read/write error and you also cannot delete this file then there is some kind of permission problem with the file. You may need to get your hosting provider to fix the permissions on the file or delete that plugin so that you can reinstall it.
So my plugin is finding and fixing these threats but you just keep getting hacked with more of them.
Look in the Quarantine for the exact time of the last infection that you cleaned, then check you acces_log file to see what scripts or URLs were being accessed at that exact time. Hopefully that will indicate how you are getting re-infected so that you can plug up the security hole.
You should have gotten a registration email with your login info at every email address that you used to register a site. You can login to gotmls.net with those accounts and then transfer your registrations to your main email account
If you are not sure what email you used it was probably your default admin email for that WordPress site.
If you don’t know what email it was or you cannot receive email at that address then you can email me directly with your registration details and I can help you reassign those domains to the account that you want them to be under.
Please just use the pre-filled form on the right side of the Anti-Malware Settings page in your wp-admin to register the key that is generated for each site after you click “Get FREE Key”.
This code is already in my definition updates but it is JavaScript so it is usually wrapped in a script tag. Can you send me the whole infected file so I can see how it is embedded in the file and verify that it matches the definition I have for it?
Thanks for the login
I found this in your core files and added this new variant to the definition updates.
Your site is now clean
-
AuthorPosts