Wordpress hacked: added site.xml and /good directory -


i'm working on wordpress website which's been hacked. @ first saw site.xml file , /good directory placed nthe root directory of website.

site.xml contains these header strings:

<urlset xmlns:xsi="http://www.w3.org/2001/xmlschema-instance"      xmlns="http://www.sitemaps.org/schemas/sitemap/0.9"     xsi:schemalocation="http://www.sitemaps.org/schemas/sitemap/0.9              http://www.sitemaps.org/schemas/sitemap/0.9/sitemap.xsd"><url>   <loc>http://www.casadellavita.com/good/ray-ban-outlet-nj.html</loc> <lastmod>2015-06-01t08:10:43+02:00</lastmod> <changefreq>monthly</changefreq> <priority>1.0</priority> </url> 

and huge list of these elements like:

<url> <loc>http://www.thehackedwebsite.com/good/ray-ban-3404-sale.html</loc> <lastmod>2015-06-01t08:10:43+02:00</lastmod> <changefreq>monthly</changefreq> <priority>1.0</priority> </url> 

in /good directory found huge list of files "buy-ray-ban-58014.php" containing lot of advertising text.

what's that? remove site.xml , /good irectory how can fix hack?

at first step can use website vulnerability scanners acunetix can scan every website software , advise how fix bugs.

but there option wordpress websites: can "wpscan" tool in linux base system advanced wordpress scan. wpscan.org/


Comments

Popular posts from this blog

Magento/PHP - Get phones on all members in a customer group -

php - .htaccess mod_rewrite for dynamic url which has domain names -

Website Login Issue developed in magento -