[ad_1]
Anybody familiar with any of this? Wordfence claims to block these attacks, but my index.php and settings.php files are being changed, and then my url is sending traffic to various phishing schemes.
​
[ad_2]Copyright © 2020 - 2022, Project DMC - WordPress Tutorials for Beginners- All Rights Reserved. Privacy Policy
Have you performed a file scan with WordFence?
Looks like a plugin has been compromised. Are they all up to date?
hack mode:
– take a full database and site files/folders backup
– change all passwords (database, cPanel, WordPress)
– change the salt keys in wp-config.php to log out all users.
– delete and replace all WordPress files (except wp-config.php) and folders (except /wp-content/) with fresh versions wordpress.org
– delete and replace all plugin and theme files and folders with fresh versions from [wordpress.org])
– check the timestamps of files in /wp-content/ for anything recent and with a suspicious name
– install and scan site with [GOTMLS]) and Wordfence plugins