Japan hack - How can i remove indexed pages?

alessio98

Registered Member
Joined
Jul 21, 2018
Messages
64
Reaction score
16
Hi, a month ago few of my sites were attacked from the japan hack.

It creates thousands of pages with japan content and index them.

I stopped it in the beginning, but it indexed 100 pages (there were other 100.000). I removed all the malwares and all the backdoor, but i still have indexed those pages.

Now all these pages are 404 (i know they do cloak, i checked with live test on gsc).

How can I deindex them? I thought of creating a sitemap with all of these ulrs and send to google, since they're nofollow i think they will be deindexed.

Some idea?
 
I had the same thing. Let me know what you do to resolve it.
 
I had the same thing. Let me know what you do to resolve it.

You have to delete all of these pages first.

I paid an expert of IT security, he cleaned all my wordpress installations and now all the pages are 404 (you have to test with live test in the search consolle)

If I can deindex them fastly i will let you know
 
I did the same thing, just restored a backup from before the attack. I also used a WordPress plugin to make the 404s into 410s. It cleared most of them out of the SERP. Unfortunately, a few of my current URLs show up in Japanese in the SERP.
 
Many Website owners are worried about Japanese SEO spams that can hack the pages in search engines. Japanese SEO spam is a new technique that has being a source of trouble for many website owners. Japanese SEO spam creates the auto generated Japanese text in search results by hijacking Google Search results. Japanese text is displayed in title and description of the pages that have been hijacked.

This spam is also known as the “Japanese Keyword Hack”, “Japanese Search Spam” or the “Japanese Symbol Spam”.

Usually, while using a Content Management System (CMS) like OpenCart, Magento, Drupal or WordPress auto generated Japanese SEO Spam pages are displayed. Sale brand merchandise is sold by these pages as these fake pages include the links to store. Revenue is generated from outbound links from the store by using these ‘Spamvetised’ products.

You should also prevent your website from malicious attacks by scanning your sites regularly and changing the passwords frequently. You can also use Two-Factor Authentication, and keep your CMS, plugins, modules and extensions up to date in order to prevent attacks. Moreover, you can also subscribe to a security service that will keep a check on your website.
 
Many Website owners are worried about Japanese SEO spams that can hack the pages in search engines. Japanese SEO spam is a new technique that has being a source of trouble for many website owners. Japanese SEO spam creates the auto generated Japanese text in search results by hijacking Google Search results. Japanese text is displayed in title and description of the pages that have been hijacked.

This spam is also known as the “Japanese Keyword Hack”, “Japanese Search Spam” or the “Japanese Symbol Spam”.

Usually, while using a Content Management System (CMS) like OpenCart, Magento, Drupal or WordPress auto generated Japanese SEO Spam pages are displayed. Sale brand merchandise is sold by these pages as these fake pages include the links to store. Revenue is generated from outbound links from the store by using these ‘Spamvetised’ products.

You should also prevent your website from malicious attacks by scanning your sites regularly and changing the passwords frequently. You can also use Two-Factor Authentication, and keep your CMS, plugins, modules and extensions up to date in order to prevent attacks. Moreover, you can also subscribe to a security service that will keep a check on your website.

Mine was hacked through the host. They got two websites on that host and set up Google search console by uploading an HTML file on the host.
 
Mate i had the same problem on some of my sites. You can check these out. I forget which one was it but they did a great job securing the websites and they actually did manual work to erase and find the infected pages. Never had the problem again. It costs less than 10 dollars and it is worth it belive me. If the sites are important to you don't try to solve it yourself bec. that malware destroys the sites completely.Have seen huge drops on my rankings after infection.

https://www.siteguarding.com/en/prices
Or it might be this one below too. I don't remember ask them if they do manual clean up too.
https://cwatch.comodo.com/plans.php

They are monthly but you can cancel after the malware is removed.
 
you can use tools like Web ARX, wordfence to remove these pages.

if those pages are already deleted

then you can upload new sitemap

when google crawls them as 404

then they will be deleted on index slowly.
 
I did the same thing, just restored a backup from before the attack. I also used a WordPress plugin to make the 404s into 410s. It cleared most of them out of the SERP. Unfortunately, a few of my current URLs show up in Japanese in the SERP.
What plugin did you use?
 
so the 410 just tells google to remove them a little faster than 404?

410 tells search engines that the page no longer exists and never will again. Search engines will remove it from SERP and not recrawl it again. 404 page means it does not exist but it could just be a temporary issue that might be corrected. So search engines will reveal the page a few times before removing it.
 
1) You can add noindex tag on them manually one by one if you have access
2) Redirect them to a single "dump" page which has noindex, nofollow
3) Noindex them via robots.txt file
4) Remove from index via Webmaster Tools (Search Console)
 
After you have cleaned up your site you will want to do the following in chrome only.

1. Grab this plugin https://www.chrisains.com/seo-tools/extract-urls-from-web-serps/ (lets you extract all serp urls easily)
2. Grab this plugin https://chrome.google.com/webstore/detail/ginfinity/dgomfdmdnjbnfhodggijhpbmkgfabcmn?hl=en (lets you view search results on one infinite page)
3. Grab this plugin https://github.com/noitcudni/google-webmaster-tools-bulk-outdated-content-removal (lets you upload a .csv file to google search console instead of manually submitting each url)
4. Search in google for site:https://www.yourwebsite.com
5. Scroll all the way down till all your indexed pages are listed
6. Use the Extract the URLs plugin from point 1 to list all urls.
7. Save the URLs you want to remove in a csv file.
8. Visit https://www.google.com/webmasters/tools/removals
9. Upload the csv file, it will automatically submit each link, you may need to manually click OK for each submission.

You will probably need to do this for several months depending on how many links google indexed from the hack. I would recheck every week
 
After you have cleaned up your site you will want to do the following in chrome only.

1. Grab this plugin https://www.chrisains.com/seo-tools/extract-urls-from-web-serps/ (lets you extract all serp urls easily)
2. Grab this plugin https://chrome.google.com/webstore/detail/ginfinity/dgomfdmdnjbnfhodggijhpbmkgfabcmn?hl=en (lets you view search results on one infinite page)
3. Grab this plugin https://github.com/noitcudni/google-webmaster-tools-bulk-outdated-content-removal (lets you upload a .csv file to google search console instead of manually submitting each url)
4. Search in google for site:https://www.yourwebsite.com
5. Scroll all the way down till all your indexed pages are listed
6. Use the Extract the URLs plugin from point 1 to list all urls.
7. Save the URLs you want to remove in a csv file.
8. Visit https://www.google.com/webmasters/tools/removals
9. Upload the csv file, it will automatically submit each link, you may need to manually click OK for each submission.

You will probably need to do this for several months depending on how many links google indexed from the hack. I would recheck every week
This has become a paid chrome extension from same dev anyone has license key?
 
deindex in GSC, if all those pages are under single folder like example.com/blog/spam-page-1/ you can remove/delist entire /blog/ directory.
 
I did the same thing, just restored a backup from before the attack. I also used a WordPress plugin to make the 404s into 410s. It cleared most of them out of the SERP. Unfortunately, a few of my current URLs show up in Japanese in the SERP.
what plugin di you use?
 
Back
Top