I've been working on version 2.0 of my wordpress website and it's going to seriously kick butt. However, I noticed there were a couple of plugins called "wordpress researcher" and I didn't install them. Also found a couple extra accounts: admin, administrator, and root.
I did a little research and apparently it's malware. Since I'm the only admin and since I didn't install the stuff, I'm really curious where and how it came to be on my site. Other users on wordpress.org had the same experience.
So FYI to all your wordpress users.
If you find those plugins on your site check your users and delete everyone who isn't you and then go download Wordfence. It's a wicked awesome malware tool and went through, showed me all the malicious code and let me either edit/fix the code or delete it all together.
Apparently it's a recent exploit because they didn't change anything on my site besides a handful of code files. It's almost enough to make me go back to drupal...
I did a little research and apparently it's malware. Since I'm the only admin and since I didn't install the stuff, I'm really curious where and how it came to be on my site. Other users on wordpress.org had the same experience.
So FYI to all your wordpress users.
If you find those plugins on your site check your users and delete everyone who isn't you and then go download Wordfence. It's a wicked awesome malware tool and went through, showed me all the malicious code and let me either edit/fix the code or delete it all together.
Apparently it's a recent exploit because they didn't change anything on my site besides a handful of code files. It's almost enough to make me go back to drupal...
from Window Cleaning Resource http://ift.tt/1FoHimC
Visit Us: Pine Country Window Cleaning
No comments:
Post a Comment