• Hey guys I am not so new to WordPress so I know some stuff about it and recently all the websites on my Godaddy account got hacked (malicious codes was inserted). Here is the thing I secured everything as much as possible and changed all the passwords and restored websites with backup but the problem still persists. I went to Google webmaster and it showed me where the virus is in the source code and I found it here is a pic http://tinypic.com/view.php?pic=29vxyqt&s=6 the malicious code is inside the red box. My only question is how do I find this code in the FTP and delete it. I have tried looking for the answer all over the web for 2 days and can’t find an answer. If you have any ideas please help. Thanks.

Viewing 3 replies - 1 through 3 (of 3 total)
  • That file isn’t a standard WordPress file, so I’m not sure if WP has anything to do with your problem.

    The only real way that I’ve seen hacks like this work repeatedly is from insecure forms, or thorugh the TimThumb script. If your theme or a plugin uses timThumb, either updated it to the latest version and check your security settings very closely, or delete it completely and modify your theme to not use it.

    If that’s not the case, your account security has been compromised, so change ALL of your passwords on ALL of the different areas of the account (hosting, database, email, and anything else that you can).

    Thread Starter websitemaker11

    (@websitemaker11)

    Everything was updated to date. All the passwords were changed and my computer restored to computer factory restore. I called godaddy and they said it’s not from their side. But my question is how do I find where this code is in my FTP or database? Is there a way to find out where this code is.

Viewing 3 replies - 1 through 3 (of 3 total)
  • The topic ‘Can't find answer anywhere’ is closed to new replies.