1. Halo Guest, pastikan Anda selalu menaati peraturan forum sebelum mengirimkan post atau thread baru.

[help] situs wp ane selalu kena hack = thema selalu disisipin script aneh

Discussion in 'Wordpress' started by arga7, Sep 18, 2015.

Tags:
Thread Status:
Not open for further replies.
  1. dadada

    dadada Super Hero

    Joined:
    Dec 10, 2013
    Messages:
    2,514
    Likes Received:
    999
    Itu bisa jadi sudah terlanjur keinject backdoor Gan, walaupun ganti-ganti theme atau update wp maka hasilnya akan tetep sama kalau nyusupnya di WP-CONTENT....

    Coba scan pakai plugin security semacam bulletproff, atau cek dengan pelototin semua file di wp-content . Sebaiknya hapus semua plugin dan theme walaupun yg tidak dipakai sekalipun
     
  2. brokerforex

    brokerforex Hero

    Joined:
    Aug 7, 2010
    Messages:
    698
    Likes Received:
    30
    ane pernah ngalamin gan. solusinya ane clean install. trus langsung ganti semua password. admin, panel, akun hosting. dan sejak itu langsung beres mpe sekrang. ingat semua password wp-admin harus diganti yang strong..
     
  3. golekanime

    golekanime Ads.id Pro

    Joined:
    Jul 18, 2014
    Messages:
    401
    Likes Received:
    15
    Location:
    Jakarta, Indonesia
    nyimak aja deh, ane blum maen Wp
     
  4. chop2

    chop2 Ads.id Fan

    Joined:
    Mar 8, 2015
    Messages:
    163
    Likes Received:
    1
  5. bajuri

    bajuri Ads.id Pro

    Joined:
    Apr 20, 2007
    Messages:
    381
    Likes Received:
    24
    coba di hapus kodenya trus dichmod -R 444 folder themes
     
  6. adam007

    adam007 Ads.id Fan

    Joined:
    Feb 18, 2011
    Messages:
    104
    Likes Received:
    3
    - Install ulang komputer.
    - Ganti hosting.
    - Ganti theme yang bagusan sedikit.

    Kalo masih kena juga, banyak berdoa gan :-D
     
  7. arga7

    arga7 Hero

    Joined:
    Jul 17, 2010
    Messages:
    696
    Likes Received:
    65
    gara dapat email peringan hostingnya terkena Malicious
    http://oi62.tinypic.com/1zfigxh.jpg
    lalu selang hari berikutnya terkena hack terus
    disisipkn script iklan terus
    sudah ganti theme
    sudah coba re-install wp
    tiap hari ganti password wp & cpanel

    eh masih tetap kena sisip script iklan pop up

    takutnya sudah kemasukan backdoor di wp content
    lah sudah di re-install wp
    masih kena juga
    padahal posisi thema bawaan wp & plugin bawaan wp

    iya ini mau coba clean install lagi
    cuman yg bikin lama export dari blogger lalu import ke wp
    bikin lama & bikin high resouce server
    tapi sudah positif = mau hapus semua aja
    clean install wp = import manual dari blogger lagi

    iya gan solusi re-install wp = gak berhasil
    thema bawaan wp = tetap kena hack disisipin script iklan pop up

    sudah tidak ada harapan lagi
    mau clean install wp aja
    lalu import lagi dari blogger

    - gak mungkin lah gan hehehe lah website lainya gak ada masalah saat update pakai pc yg sama
    - rencana mau pindah lagi
    - theme bawaan wp aja kena hack
     
  8. Ortega

    Ortega Ads.id Fan

    Joined:
    Apr 18, 2014
    Messages:
    231
    Likes Received:
    26
    database biarin aja mas, sama backup file2 gambar/attachment... trus hapus semua file dan folder, jangan main timpa. abis itu upload file baru - download dari wp.org lagi aja, konekin ke db sama upload attachment.

    semoga cepet sembuh mas
     
  9. arga7

    arga7 Hero

    Joined:
    Jul 17, 2010
    Messages:
    696
    Likes Received:
    65
    sudah gan pakai cara re-install dibantu pihak hawk
    dan theme pun ane biarin pakai bawaan wp org
    plugin juga ane biarin bawaan wp org
    tapi hasilnya sama masih kena dihack = selalu disisip script iklan pop upp
     
  10. kchild

    kchild Ads.id Pro

    Joined:
    Dec 31, 2014
    Messages:
    368
    Likes Received:
    8
    ane rasa si attacker sudah memasukan shell/backdoor di server agan.. atau cara gampangnya si hacker sudah mengupload file php ke server agan yg letaknya tidak diketahui, bisa di folder yg sama, bisa di folder addon domain.
    atau bisa juga attacker sudah memasukan script2 php di file2 agan.
    - check file lastmodifednya biar tau filenya baru di edit atau nggak
    - cek raw HTTP log buat mengetahui darimana si hacker masuk untuk memodifikasi file lain
    saran perbaikan
    - ganti semua pass, Cpanel, FTP, & login admin
    - reinstall WP dan semua subdomain yg ada, klo perlu hapus dan reupload semua file PHP

    Semoga membantu.
    - reset semua file
     
  11. robbyadnan

    robbyadnan Newbie

    Joined:
    Jun 4, 2011
    Messages:
    9
    Likes Received:
    0
    googling aja gan, "bug and fixing wordpress"
     
  12. hasanjoearmstrong

    hasanjoearmstrong Ads.id Fan

    Joined:
    Sep 18, 2015
    Messages:
    195
    Likes Received:
    17
    Location:
    DKI Jakarta
    Setau ane kalo pakek sepeddi gt... curagang mereka suka byisipin scrips iklan
     
  13. Candiantik

    Candiantik Super Hero

    Joined:
    Jan 20, 2012
    Messages:
    777
    Likes Received:
    20
    Location:
    Tetep yang dulu, belum pindah
    Berarti situs ente punya pengikut setia sob...
     
  14. arrazzaaq

    arrazzaaq Newbie

    Joined:
    Sep 9, 2015
    Messages:
    37
    Likes Received:
    0
    Ijin nyimak gan
     
  15. arga7

    arga7 Hero

    Joined:
    Jul 17, 2010
    Messages:
    696
    Likes Received:
    65
    sudah ane download semua filenya ke local & ane scan pakai antivirus baidu + avg (gak detect alias bersih)
    sudah gak ada harapan terpaksa clean install
    barusan ane minta pihak hawk untuk ganti & reset cpanel
    terpaksa ane buat baru lagi aja gpp

    hehehe

    klu spidol gak mungkin gan
    cz script tersebut disisipkan di banyak file php
    bahkan selalu bertambah kalau ane hapus itu script

    entahlah gan padahal cuman ingin menyalurkan hoby

    ane tutup thread nya
    kesimpulan:
    - relahkan buat baru lagi aja
    - terpaksa reset cpanel & ganti baru

    @all: terima kasih buat saran2 nya ya parah suhu
     
Thread Status:
Not open for further replies.

Share This Page