WordPress.org

Ready to get started?Download WordPress

Forums

[resolved] 2 of my sites got hacked after installing Better WP Security Plugin (10 posts)

  1. Spyridon
    Member
    Posted 1 year ago #

    This is funny. I was doing fine with all my sites and After installing Better WP Security plugin in two of my sites both of them got hacked.

    Here is what I am seeing currently in my homepage -

    <iframe src="http://tazeeni.ir/ShowMessage.aspx?ID=3" style="width:1px; height:1px; border:none;"></iframe>

    I have discovered it while running google pagespeed insights. This tazeeni.ir site is slowing down my pagespeed in a greater level. here is an example -

    https://developers.google.com/speed/pagespeed/insights#url=http_3A_2F_2Fwww.mobiledokan.com_2F&mobile=false&rule=EnableGzipCompression

    You see that the webgozar.ir and tazeeni.ir are making my site slow. But I don't know what these sites are doing in my site.

    Should I remove the plugin? How to remove the codes from these sites in my site? Help is much apreciated, thanks!

  2. WPyogi
    Volunteer Moderator
    Posted 1 year ago #

  3. Spyridon
    Member
    Posted 1 year ago #

    Thank you for the resources. I just used the Sucuri SiteCheck and found the hidden iframe security warning. Now time to figure out how to remove them!

  4. Spyridon
    Member
    Posted 1 year ago #

    ok the plugin is not the cause of the hack as I see some of my other sites that doesn't have the plugin having the same issue now!

  5. Spyridon
    Member
    Posted 1 year ago #

    Ok I have installed the wordfence security plugin and scanned my system. It found one of the core php file was modified and someone put that hidden iframe code inside that file. I have restored the file using wordfence and now its all safe :)

  6. Spyridon
    Member
    Posted 1 year ago #

    Solved

  7. bottleneck
    Member
    Posted 1 year ago #

    Glad you are safe. :)

    Thanks for the great reference, just bookmarked it.

  8. tazeeni_IR
    Member
    Posted 1 year ago #

    @Spyridon : hi
    i'm Tazeeni.ir admin site

    how ru dear,

    i want to chat with u , ok???

  9. tazeeni_IR
    Member
    Posted 1 year ago #

    my contact email is: tazeeni.ir2@gmail.com

    with best regards

  10. WPyogi
    Volunteer Moderator
    Posted 1 year ago #

    @tazeeni_IR - if you need help, please start your own thread per : http://codex.wordpress.org/Forum_Welcome#Where_To_Post

Topic Closed

This topic has been closed to new replies.

About this Topic