• Hi all, my website has been recently attacked by a redirect malware hack becoz my homepage was redirecting to spammy sites everytime I opened. I also found 3 new user on my dashboard, I deleted those real quick. Then I manually detected and removed malicious suspected file from file manager. I then checked my homepage was working perfectly. I was happy that I was able to fix issue and save my website on my first experience of attack. I opened the website URL through Google search and found that some of the links were still redirecting to spammy site. I thought that this will be updated on google with time itself. Then I updated all plugin, themes, WordPress to latest version. Then I installed Wordfence Security Plugin to protect my website from future attacks. I made a scan and It did scanned few unwanted files on first scan, I removed those files successfully and again rescanned for further evaluation. This time it showed ” No issue found on websites”. Now the problem is that when a user first opens my website URL and goes to any page , it is still redirecting to spam site. few targeted pages are blog page or any product page.

    Steps to reproduce problem:
    ->Visit the URL mentioned above and go to blog page and click on any blog posts. You could see the redirection happening.
    ->Second step, Visit the website URL, In homepage, in the featured wall arts or featured Greeting cards, click on ‘view all‘ button. You will be taken to all products page then click on any products ‘select options‘ button, you can see the redirection happening. It should open product details page but it will take you to redirected site.

    Things I have done so far:
    1) Manually checked all WP files for malicious codes.
    2) Updates all plugins, themes and even WordPress version to latest.
    3) Changed all passwords of WP dashboard, databases, ftp access.
    4) Installed WordFence Security Plugin and scanned many times till It showed ‘No problems in website’.
    5) I even checked wp_posts and wp_options tables for any redirection links but found none.

    Does it has to do anything with cookie or Do I need to submit the fresh sitemap to google again ?
    Please Please please suggest me soon what should i do next? Please help me. It’s really important for me to solve this. I’m pretty new to this experience. Its getting really frustating, despite doing all things, still this redirection issue exists in atleast for one product page or blog post page the first time I open. After this one redirection , if i again open the same product page or blog post page, It opens fine.

    The page I need help with: [log in to see the link]

Viewing 2 replies - 1 through 2 (of 2 total)
  • Hello,

    You have followed the right steps by installing Wordfence. Malware can be tricky to remove completely, it’s imperative you find the source, which can often be due to a plugin which has a disclosed vulnerability. I recommend you to check all of your plugins are up to date and secure.

    You will also need to consistently rescan and ensure any malicious code or back door files are removed. Pay close attention to the .htaccess file and install 2FA if you can.

    For the Google site links, this relates to the indexed search provided by Google. Perhaps you can look to submit your sitemap once again and request to recrawl once you have removed all malicious files.

    Moderator bcworkz

    (@bcworkz)

    Your site is not redirecting anywhere when I checked (via VM for safety). If you still get redirects, either your browser is following cached behavior, or the malware only redirects under certain conditions which I don’t meet.

    To replicate my malware free experience, try clearing your browser cache, using incognito mode, or using an alternative browser that you don’t normally use.

Viewing 2 replies - 1 through 2 (of 2 total)
  • The topic ‘Redirect to spam site malware on website’ is closed to new replies.