but it will delete all infected files which are required for wordpress to function.its imunify 360 that will 100% work
He needs to scan with wordfence first and remove the malicious codes from the required files before scanning with imunify 360
but it will delete all infected files which are required for wordpress to function.its imunify 360 that will 100% work
----------- SCAN SUMMARY -----------
Known viruses: 2206551
Engine version: devel-clamav-0.99-beta1-632-g8a582c7
Scanned directories: 6378
Scanned files: 38937
Infected files: 0
Data scanned: 895.23 MB
Data read: 1903.41 MB (ratio 0.47:1)
Time: 1922.703 sec (32 m 2 s)
unfortunately the regular scan doesn't always show all infected filesGuys...
here is the simple method. ask your hosting provider for a full cPanel scan, that'll generate a log in root directory.
then use that report to find the infected files/folders and remove all.
here is my 2nd scan summary i did 30 mins ago.
Code:----------- SCAN SUMMARY ----------- Known viruses: 2206551 Engine version: devel-clamav-0.99-beta1-632-g8a582c7 Scanned directories: 6378 Scanned files: 38937 Infected files: 0 Data scanned: 895.23 MB Data read: 1903.41 MB (ratio 0.47:1) Time: 1922.703 sec (32 m 2 s)
thanks for the suggestion. I'll ask hostgator right away. i don't thik they'll use imunify 360, cuz they have sitelock managed by them.unfortunately the regular scan doesn't always show all infected files
scan with wordfence again using high sensitivity scan to make sure and ask your hosting provider to install imunify 360 extension if it's not installed, if it's installed use it from cPanel and make sure to change the proactive defence to kill mode
wordfence will detect files with malicious codes and then you have to fix them yourself !!!I can't help but laugh when someone says either that Wordfence (or whatever WP plugin) will protect them from hacking/solve any hacking and when someone blames something they had downloaded here to be the cause of the hack.
In this particular case, I've to admit, because of your URL I thought that it was something that I did to a client that didn't pay.
wordfence will detect files with malicious codes and then you have to fix them yourself !!!
imunify 360 will stop the execution of malicious files
That was what i said
try securityinfinity.comHey everyone, recently i've found some issues which is redirect issue and my WP index.php files got autometically modified and there are some some .php codes inserted.
I've scanned and fixed it with Wordfence but it got infected over and over.
how to prevent infection from happening again????
those are the examples of infected files.
find . -type f -name '*.php' | xargs grep -l " *Array();global*" |
find . -name "index.php" | xargs chattr +i |
find . -type f -name '*.php' -mtime -1 -ls |
Please how do we know those trusted sellers here on babiato? Is there any section for it?@YUCATAN.DANCE on production if you have a tight budget & it's a personal site, grab some legit activations from the trusted sellers here & for other plugins, like the backup ones and stuff, either do it manually yourself or use the free version. Wherever a free version + manual work can do the trick, do that. It'll save you from these headaches & give your site better performance (by reducing number of pplugin)
Check their post history, age on forum, number of sales & contributions. For example, for anything for sale by someone like @Medw1311 or @TassieNZ will be 100% legit beyond doubt. There are quite a few very legit sellers here who you can safely buy from without any worries at all. These examples should give you an idea on how you can judge.Please how do we know those trusted sellers here on babiato? Is there any section for it?
We make an effort to abide by the standards that have been set up in our community about new users contributing resources in threads. The best advise is to report any questionable comments made by new members because we moderators monitor an average of about 190,000 people, making it challenging to keep track of everything. If necessary, we'll evaluate the comments and take appropriate action. best recommendation at the moment is to use the download button on the page at all times, or make sure you're downloading from a trusted user who has the Nullmaster badge since Babiato has approved them.
Maybe since you already have the injector on your website it just inject all php codes ?!I really appreciate the efforts of the moderators and the admins. Unfortunately, with what i learnt here yesterday, i decided to check one of my website which was broken and i am still trying to fix it.
i got the woozone plugin from babiato using the download button which i believe was screened before upload as you suggested. However, this is my scanned result attached. The ironic part is i just downloaded the Wordfence to scan the website and discovered wordfence even detected itself as effected.
CC: @Tomz
i need advice pls.
I have just checked wordfence 7.7.1 and the infected file that you have in the screenshot is not even in the package !!I really appreciate the efforts of the moderators and the admins. Unfortunately, with what i learnt here yesterday, i decided to check one of my website which was broken and i am still trying to fix it.
i got the woozone plugin from babiato using the download button which i believe was screened before upload as you suggested. However, this is my scanned result attached. The ironic part is i just downloaded the Wordfence to scan the website and discovered wordfence even detected itself as effected.
CC: @Tomz
i need advice pls.