Malware injecting scritp in Header.php files

Discussion in 'Web Hosting' started by thakarpratik, Nov 21, 2015.

Tags:
  1. thakarpratik

    thakarpratik Senior Member

    Joined:
    Dec 5, 2011
    Messages:
    800
    Likes Received:
    196
    Guys I am getting really annnoyed by this now

    Atleast 4-5 of my WP sites are have got this malware injections whereby

    there is a script inserted in the header.php file of the site
    The site functions, homepage is fine, but when I go to inner pages - its takes ages to open the page,and there is a reference to site
    savannahhchik dot com and today i saw gatorusa dot com
    I cleaned the header.php yesterday,it reappeared again today
    I did a fresh install on 2 of the WP sites completely

    Still the same-

    Hostgator wont help, as they its not their problem, they are redirecting me to sitelock, I also installed some of the well recommended security plugin , but nothing is helping

    any help please
     
  2. faithjhung

    faithjhung Jr. VIP Jr. VIP

    Joined:
    Jun 5, 2009
    Messages:
    1,882
    Likes Received:
    1,094
    Location:
    New York
    Did you used a nulled theme?
     
  3. thakarpratik

    thakarpratik Senior Member

    Joined:
    Dec 5, 2011
    Messages:
    800
    Likes Received:
    196
    1 site is using nulled :(
     
  4. jstover77

    jstover77 Executive VIP Jr. VIP

    Joined:
    Feb 27, 2009
    Messages:
    2,406
    Likes Received:
    3,677
    Gender:
    Male
    Occupation:
    Entrepreneur
    Location:
    Doylestown PA
    Home Page:
    Stop using "admin" as your user and "mommy" as your password. That will solve most of your problems.
     
  5. thakarpratik

    thakarpratik Senior Member

    Joined:
    Dec 5, 2011
    Messages:
    800
    Likes Received:
    196
    i dont actually
    and thats pretty basic, which I have covered.

    reset HG password
    I am now changing the header.php file permission to 400