Thank you
]]>We’ve had problems with our sites getting hacked earlier this year, but we’ve set up a firewall and had the sites scanned/fixed, we thought things were better.
The problem is someone or something is inserting spam into our posts, like advertisements for jewelry and drugs and stuff like that. It’s usually in a div that doesn’t show on the website, but it’s still there in the code, and sometimes it does show on our website.
I’ve gone through the posts before and deleted them, but it keeps coming back. The posts also started showing the author as “root” instead of admin, or a users name.
Does anyone know how people are doing this and how I can stop it??
Thanks.
]]>i cannot edit them, even if i am logged in, on the page i am showed logged off.
example: https://explorish.net/2011/88/preppy-halloween-costumes/
so annoying. haven’t found any solution here or elsewhere, everyone is talking about “comment spam” – this is different.
i have the lastest version (problem started after upgrade), now installed all security plugins i could lay my hands on (except bad behavior, which won’t install), deleted admin user, talked to hosting, they recommended plugins etc, but i can’t get rid of those posts, and i have the impression new ones keep showing up.
would greatly appreciate a helping idea!
thank you in advance!
There doesn’t seem to be any additional users/authors and it’s an up-to-date version of wordpress. The only thing I can think is that a couple of post-to-twitter style plugins I added recently have created a way in. I’ve been turning off the plugins one by one to see what happens.
Anyone else having this problem? All the spam plugins seem to stop comment spam – I haven’t as yet found one for post spam.
M
]]>Can anyone suggest any ideas?
Thanks
Irfan
I’ve been reading up on possible causes and eliminating one after another:
eval(
or base64
There was a brief interval when theme files were left at 777, hence all my searching in there for anything alien. Can’t find anything. And until yesterday I hadn’t upgraded wp-config.php for years. Done that now… but since it could be a month before the next attack, I’ve no way of telling whether this will have made any difference.
I need help.
Anyone?
]]>