Hello friends, today I noticed that a link to an xyz site had been placed on my site. However, I don’t know through which vulnerability or how it leaked in. Someone said it originated from the server. I spoke with the hosting company. They stated that they would investigate. The person who added the link placed it inside the comments.php file. But I think they added it to other places as well. I deleted this ad from the comments.php file. Currently, among the contents I’ve examined, nothing appears except for the comment section of one movie. In other words, this link is only added under one movie, but I couldn’t manage to remove that one either.
Also, I re-added the splash ad code that I had accidentally removed from my site. However, no matter where I added this file code—footer, header, slider, single, slider-singer—it only worked on my homepage. So, the splash ad appears on the homepage. But it doesn’t show up on subpages. Consequently, since the number of visitors entering through subpages is higher, I am experiencing a drastic drop in counts. A problem also occurs when I add it to the theme’s own splash ad section.
I would really appreciate it if there is someone who can help me via Skype regarding these two issues. If I can also get help regarding the source of the vulnerability in the first issue, and assistance on topics like how to renew my SQL, config, etc. files along with their passwords, I would be grateful. Friends who can help, whether paid or free, please get me out of this trouble already ![]()
Footnote: The site is a movie site. The Keremiya WordPress theme is being used. Friends who are willing to help, I would prefer to communicate via Skype if possible.