1. Advertising
    y u no do it?

    Advertising (learn more)

    Advertise virtually anything here, with CPM banner ads, CPM email ads and CPC contextual links. You can target relevant areas of the site and show ads based on geographical location of the user if you wish.

    Starts at just $1 per CPM or $0.10 per CPC.

My Wordpress blog has been hacked - Can someone please help?!

Discussion in 'Security' started by kenny1, Sep 11, 2011.

  1. #1
    My wordpress blog, homesoftherich.net, has been hacked. After every post title in Google Searches, it says - "Buy Diclofenac Without Prescription" Can someone please help me wipe out this malaware? I'll pay ya. Thanks!!!

    Screen shot 2011-09-03 at 9.37.07 PM.jpg
     
    kenny1, Sep 11, 2011 IP
  2. kenny1

    kenny1 Well-Known Member

    Messages:
    507
    Likes Received:
    5
    Best Answers:
    0
    Trophy Points:
    130
    #2
    Does anyone know how I can fix this? :(
     
    kenny1, Oct 2, 2011 IP
  3. benjaminp

    benjaminp Notable Member

    Messages:
    1,212
    Likes Received:
    16
    Best Answers:
    2
    Trophy Points:
    230
    #3
    Check your .htaccess file. Sounds like a rewrite hack.
     
    benjaminp, Oct 2, 2011 IP
  4. game show network

    game show network Peon

    Messages:
    1
    Likes Received:
    0
    Best Answers:
    0
    Trophy Points:
    0
    #4
    Post your .htaccess here please !
     
    game show network, Oct 2, 2011 IP
  5. kenny1

    kenny1 Well-Known Member

    Messages:
    507
    Likes Received:
    5
    Best Answers:
    0
    Trophy Points:
    130
    #5
    Can you tell me how I check that? I'm not sure how to do that. Thanks!
     
    kenny1, Oct 3, 2011 IP
  6. sparek

    sparek Peon

    Messages:
    68
    Likes Received:
    6
    Best Answers:
    0
    Trophy Points:
    0
    #6
    What version of Wordpress were you running? What plugins did you have installed on the website.

    Keeping a website up-to-date with the latest versions of any script or plugin, it may seem like a hassle. But really, it is a whole lot easier to practice good security before, rather than have to try and clean up a hack after its already happened.

    When you FTP in your account, you should see a .htaccess file in your public_html folder. You can download that file and then open it with notepad to view its contents. If the malware is redirecting from there, then this may be easy to fix. However, if the redirects are embedded in your database, this can be much more complex to fix.
     
    sparek, Oct 3, 2011 IP
  7. !!* Soul Extractor *!!

    !!* Soul Extractor *!! Peon

    Messages:
    93
    Likes Received:
    0
    Best Answers:
    0
    Trophy Points:
    0
    #7
    Ask your webhost to disable symlink function.
     
    !!* Soul Extractor *!!, Oct 11, 2011 IP
  8. vpslist

    vpslist Peon

    Messages:
    88
    Likes Received:
    2
    Best Answers:
    0
    Trophy Points:
    0
    #8
    Definitely sounds like .htaccess rewrite, which is very common.
     
    vpslist, Oct 11, 2011 IP
  9. Bullten Webhosting

    Bullten Webhosting Peon

    Messages:
    28
    Likes Received:
    0
    Best Answers:
    0
    Trophy Points:
    0
    #9
    yes its a .htaccess rewrite hack.
     
    Bullten Webhosting, Oct 19, 2011 IP
  10. kenny1

    kenny1 Well-Known Member

    Messages:
    507
    Likes Received:
    5
    Best Answers:
    0
    Trophy Points:
    130
    #10
    Can somebody please fix this for me? =(

    PM me if you can help. Thanks!
     
    kenny1, Oct 22, 2011 IP