hacked - Check for malicious code?

I have searched around and seen 'what to do if your site is hacked', and I'm not (necessarily!) looking f

I have searched around and seen 'what to do if your site is hacked', and I'm not (necessarily!) looking for a plug in. The site I look after was hacked a while ago and I think all is well now. I think I fixed it and I get a clean bill of health from Wordfence. I am getting the occasional report of malicious code warnings in Chrome always reports from people who were told by someone else and I'm struggling to track it down. My suspicion is that it's some kind of caching and the site is clean now (I don't get it on any browser I've tried on 3 or 4 machines). I just wondered that sounded plausible or if there is anything anyone would recommend before / until I can find someone who has actually had the problem !?

I have searched around and seen 'what to do if your site is hacked', and I'm not (necessarily!) looking for a plug in. The site I look after was hacked a while ago and I think all is well now. I think I fixed it and I get a clean bill of health from Wordfence. I am getting the occasional report of malicious code warnings in Chrome always reports from people who were told by someone else and I'm struggling to track it down. My suspicion is that it's some kind of caching and the site is clean now (I don't get it on any browser I've tried on 3 or 4 machines). I just wondered that sounded plausible or if there is anything anyone would recommend before / until I can find someone who has actually had the problem !?

Share Improve this question asked May 11, 2019 at 9:39 gringogordogringogordo 1011 bronze badge
Add a comment  | 

1 Answer 1

Reset to default 1

If you want to be certain your site is clean, you can either start with a fresh install of WordPress, all of your plugins and the theme. An alternative would be to use the WP CLI verify-checksums to check your core and plugins for any modifications.

Perhaps the hardest one to clean is your database as malicious code could be hiding in any number of tables. Take a backup first before you do any sort of cleanup, and then you can start to look for common malicious code markers such as PHP eval, base64_decode, gzinflate, shell_exec etc. Take a look at this article for some further explanation on these.

The How to Clean a WordPress Hack article on the Securi website is also worth a read.

发布者:admin,转转请注明出处:http://www.yc00.com/questions/1745503102a4630505.html

相关推荐

  • hacked - Check for malicious code?

    I have searched around and seen 'what to do if your site is hacked', and I'm not (necessarily!) looking f

    3小时前
    20

发表回复

评论列表(0条)

  • 暂无评论

联系我们

400-800-8888

在线咨询: QQ交谈

邮件:admin@example.com

工作时间:周一至周五,9:30-18:30,节假日休息

关注微信