Hello, I am getting errors on our website and need to be fixed. Please provide me detail diagnostic and how you will fixed it.
The site ahead contains malware
erros:
1) Attackers currently on [login to view URL] might attempt to install dangerous programs on your computer that steal or delete your information (for example, photos, passwords, messages, and credit cards).
Our host notified us;
I do see a malicious file: wp-admin/[login to view URL]
Here are the logs from someone accessing it.
[login to view URL] - - [08/Jan/2015:08:35:01 -0600] "POST /wp-admin/[login to view URL] HTTP/1.1" 200 20 "-" "Mozilla/5.0 (Windows; U; Windows NT 5.1; en-US; rv:1.9.2.3) Gecko/20100401 Firefox/3.6.3"
[login to view URL] - - [08/Jan/2015:08:35:03 -0600] "POST /wp-admin/[login to view URL] HTTP/1.1" 200 8276 "-" "Mozilla/5.0 (Windows; U; Windows NT 5.1; en-US; rv:1.9.2.3) Gecko/20100401 Firefox/3.6.3"
[login to view URL] - - [08/Jan/2015:19:05:22 -0600] "POST /wp-admin/[login to view URL] HTTP/1.1" 200 8275 "-" "Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/537.22 (KHTML, like Gecko) Chrome/25.0.1364.152 Safari/537.22"
[login to view URL] - - [08/Jan/2015:19:05:22 -0600] "POST /wp-admin/[login to view URL] HTTP/1.1" 200 2944 "-" "Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/537.22 (KHTML, like Gecko) Chrome/25.0.1364.152 Safari/537.22"
[login to view URL] - - [08/Jan/2015:19:05:22 -0600] "POST /wp-admin/[login to view URL] HTTP/1.1" 200 13311 "-" "Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/537.22 (KHTML, like Gecko) Chrome/25.0.1364.152 Safari/537.22"
[login to view URL] - - [08/Jan/2015:19:05:22 -0600] "GET /wp-admin/[login to view URL] HTTP/1.1" 200 385 "-" "Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/537.22 (KHTML, like Gecko) Chrome/25.0.1364.152 Safari/537.22"
[login to view URL] - - [08/Jan/2015:19:05:25 -0600] "POST /wp-admin/[login to view URL] HTTP/1.1" 200 8234 "-" "Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/537.22 (KHTML, like Gecko) Chrome/25.0.1364.152 Safari/537.22"
I am unable to locate exactly how the file came to be using access logs and see nothing in FTP or cPanel logs. I would recommend changing related passwords as well as doing a reinstall of WP to ensure all malicious files are removed.
after see your screenshot understand , i will fix this problem , and let me know before start that are you using nulled theme ..........that may be a reason , it will contain code through which someonw is accessing your credentials.......
$15 CAD in 1 day
4.9 (107 reviews)
5.5
5.5
13 freelancers are bidding on average $39 CAD for this job
Hi, I am experienced and i can clean your site safely from any malware or dangerous software. Let me know the site login details and i am ready to start.
Hello
i am representing PCINFO SOLUTIONS, i have read your requirement and we already done this type of project. and we have a special teams and we start your work in phase by phases
* initials documentation and requirement gathering with ER diagram / Database design
* Designing of UI.
* Design of Back-end with Admin panel.
* integration of UI with back-end.
* Testing.
* Final Delivery of project .
these thing i have to implement in your project
pay when you satisfied 100% with the result .
send Your SKYPE ID so we can discuss more about your requirement or i can give you more ideas regarding to your project .
Sir i would simply suggest you to clean the website again. I will change the installation and make it safe by changing fake addresses. Strong Password my help. Sometimes web hosting company accounts also get hacked and all websites hosted by them are infected by hackers. I hope if you are not hosting your website with some well-known like Godaddy or Hostgator this may be the reason. Migrating your website to secure host and securing it will solve your issue.
Let me do this in minutes. Thanks in advance
Hello, i think i could help you, from what i understand from project brief you want your site to be cleaned of any malware. I could do right now, probably the best will be a fresh install or a full files analyses.
Good day!