WARNING about All-In-One-Seo-Pro Version uploaded here

mikie46

Supreme Member
Joined
Aug 6, 2008
Messages
1,454
Reaction score
1,122
I cant find the damn thread but its here somewhere.

I want to warn those who downloaded all-in-one-seo the pro version from here to be on the lookout for foreign code injected into this module.

If you installed this plugin you should load up your index page and view the source code. Go to the end of the page. Almost at the end you will see the following;

Code:
<noscript><a href="http://www.luminous-solutions.net">SEO services</a></noscript>

You will need to remove this line. Its no supposed to be there.

Open up the file; all_in_one_seo_pack.php in the all-in-one-seo-pro-pack directory and remove the above line.

This is a callback injected into the script
Also, if you run a markup validation on your pages you will see this;

Code:
Line 216, Column 54: document type does not allow element "a" here; missing one of "p", "h1", "h2", "h3", "h4", "h5", "h6", "div", "pre", "address", "fieldset", "ins", "del" start-tag 
...oscript><a href="http://www.luminous-solutions.net">SEO services</a></noscript>

... another good reason to trash it!

As a note, i have run this version of all in one have found little if any benefit from the free version.

Thanks
 
Last edited:
Thanks for your warning. But I think Headspace2 is more good than all in one seo free / pro. I used all in one seo before but few days later I found Headspace2 is more functional.
 
Thanks for your warning. But I think Headspace2 is more good than all in one seo free / pro. I used all in one seo before but few days later I found Headspace2 is more functional.

Problem with headspace is the author doesn't keep it updated. I mean, the last time i checked it was only compatible up to 2.7. Has he finally updated it for 3.x.x?
 
good advice, check out everything you download to see if it has hidden scripts.
(no honor amongst thieves, or hackers)
 
Thanks for the heads up. I checked the version I had. It was free from any such injection
 
I checked mine (not the pro) and it has this. Though I cannot find it anywhere in the files...grr...i have line by line analysis.

found it in seo-booster-pro/seo-booster.php

CHECK ALL YOUR SEO WORK CODE FOR THIS!!!
 
Last edited:
I cant find the damn thread but its here somewhere.

I want to warn those who downloaded all-in-one-seo the pro version from here to be on the lookout for foreign code injected into this module.

If you installed this plugin you should load up your index page and view the source code. Go to the end of the page. Almost at the end you will see the following;

Code:
<noscript><a href="luminous-solutions net">SEO services</a></noscript>

You will need to remove this line. Its no supposed to be there.

Open up the file; all_in_one_seo_pack.php in the all-in-one-seo-pro-pack directory and remove the above line.

This is a callback injected into the script
Also, if you run a markup validation on your pages you will see this;

Code:
Line 216, Column 54: document type does not allow element "a" here; missing one of "p", "h1", "h2", "h3", "h4", "h5", "h6", "div", "pre", "address", "fieldset", "ins", "del" start-tag 
?oscript>

... another good reason to trash it!

As a note, i have run this version of all in one have found little if any benefit from the free version.

Thanks

Thanks for that post dude. The good news is that I found the same offending code on one of my sites just like you said.... the bad news is that it is from another plugin because I dont have the all-in-one-seo plugin installed so it must be from another plugin. So apparently the miserable cocksucker responsible for this has infected a few more plugins that we are not aware of.... The active plugins I have on my site are Google XML Sitemaps, Gravity Forms, Platinum SEO Pack, SEOPressor UNLIMITED, Simple Google Map, StatPress Reloaded, WordPress Database Backup, WordPress Mobile Pack, wp secure.
 
can you offer me accounts from germany? i would be interested, please send me a msgwith prices etc.
oguen
 
Thanks for that post dude. The good news is that I found the same offending code on one of my sites just like you said.... the bad news is that it is from another plugin because I dont have the all-in-one-seo plugin installed so it must be from another plugin. So apparently the miserable cocksucker responsible for this has infected a few more plugins that we are not aware of.... The active plugins I have on my site are Google XML Sitemaps, Gravity Forms, Platinum SEO Pack, SEOPressor UNLIMITED, Simple Google Map, StatPress Reloaded, WordPress Database Backup, WordPress Mobile Pack, wp secure.

I've found it on the SEOPressor plugin!

It's in file - wp-content\plugins\seo-pressor\seo-pressor.php

Check the very bottom of the file.
 
why dont you guys use Yoast plugin .... isn't it much better than all those SEO plugins
 
Sneaky tactics, thanks a lot for the heads up. A lot of the shared softs have foreign code added for the gain of third parties, it's usually not worth it anymore to install them and compromise your assets.
 
Back
Top