1. This site uses cookies. By continuing to use this site, you are agreeing to our use of cookies. Learn More.

Malware injecting scritp in Header.php files

Discussion in 'Web Hosting' started by thakarpratik, Nov 21, 2015.

Tags:
  1. thakarpratik

    thakarpratik Power Member

    Joined:
    Dec 5, 2011
    Messages:
    755
    Likes Received:
    181
    Guys I am getting really annnoyed by this now

    Atleast 4-5 of my WP sites are have got this malware injections whereby

    there is a script inserted in the header.php file of the site
    The site functions, homepage is fine, but when I go to inner pages - its takes ages to open the page,and there is a reference to site
    savannahhchik dot com and today i saw gatorusa dot com
    I cleaned the header.php yesterday,it reappeared again today
    I did a fresh install on 2 of the WP sites completely

    Still the same-

    Hostgator wont help, as they its not their problem, they are redirecting me to sitelock, I also installed some of the well recommended security plugin , but nothing is helping

    any help please
     
  2. faithjhung

    faithjhung Jr. VIP Jr. VIP

    Joined:
    Jun 5, 2009
    Messages:
    1,777
    Likes Received:
    1,043
    Location:
    New York
    Did you used a nulled theme?
     
  3. thakarpratik

    thakarpratik Power Member

    Joined:
    Dec 5, 2011
    Messages:
    755
    Likes Received:
    181
    1 site is using nulled :(
     
  4. jstover77

    jstover77 Executive VIP Jr. VIP

    Joined:
    Feb 27, 2009
    Messages:
    2,376
    Likes Received:
    3,621
    Gender:
    Male
    Occupation:
    Entrepreneur
    Location:
    Doylestown PA
    Home Page:
    Stop using "admin" as your user and "mommy" as your password. That will solve most of your problems.
     
  5. thakarpratik

    thakarpratik Power Member

    Joined:
    Dec 5, 2011
    Messages:
    755
    Likes Received:
    181
    i dont actually
    and thats pretty basic, which I have covered.

    reset HG password
    I am now changing the header.php file permission to 400