{"id":1793,"date":"2022-08-15T11:23:26","date_gmt":"2022-08-15T09:23:26","guid":{"rendered":"http:\/\/optimus-development.local\/how-to-fix-website-infected-with-redirection-virus-8-steps\/"},"modified":"2023-12-07T05:49:40","modified_gmt":"2023-12-07T04:49:40","slug":"how-to-fix-website-infected-with-redirection-virus-8-steps","status":"publish","type":"post","link":"https:\/\/op-development.com\/en\/how-to-fix-website-infected-with-redirection-virus-8-steps\/","title":{"rendered":"How to fix website infected with redirection virus? (8 steps)"},"content":{"rendered":"\n<h4 class=\"wp-block-heading\">Why do hackers attack websites?<\/h4>\n\n<p>The growth in the number of created websites and digitized businesses leads to an increasing number of hacker attacks. The goal of hacker attacks on websites is mostly to steal data such as bank account information or to increase traffic on illegal websites by redirecting them. (Instruction adapted to the WordPress system)<\/p>\n\n<div style=\"height:50px\" aria-hidden=\"true\" class=\"wp-block-spacer\"><\/div>\n\n<div class=\"wp-block-media-text alignwide is-stacked-on-mobile\"><figure class=\"wp-block-media-text__media\"><img loading=\"lazy\" decoding=\"async\" width=\"541\" height=\"1024\" src=\"https:\/\/op-development.com\/wp-content\/uploads\/2022\/08\/Primjer-web-stranice-preusmjerene-virusom-541x1024.webp\" alt=\"\" class=\"wp-image-319 size-full\" srcset=\"https:\/\/op-development.com\/wp-content\/uploads\/2022\/08\/Primjer-web-stranice-preusmjerene-virusom-541x1024.webp 541w, https:\/\/op-development.com\/wp-content\/uploads\/2022\/08\/Primjer-web-stranice-preusmjerene-virusom-158x300.webp 158w, https:\/\/op-development.com\/wp-content\/uploads\/2022\/08\/Primjer-web-stranice-preusmjerene-virusom.webp 756w\" sizes=\"auto, (max-width: 541px) 100vw, 541px\" \/><\/figure><div class=\"wp-block-media-text__content\">\n<h4 class=\"wp-block-heading\">An example of the content that an infected website redirects to<\/h4>\n<\/div><\/div>\n\n<h4 class=\"wp-block-heading\">How to check if your website is infected? (2 methods)<\/h4>\n\n<h5 class=\"wp-block-heading\">First method:<\/h5>\n\n<p>When checking whether your website is infected with a virus, open it in incognito mode or log out of the admin area of the website and delete cookies.<\/p>\n\n<p>Right-clicking on the link of your home page will open a menu in which you need to click on <strong>\"Open in anonymous mode\"<\/strong> or <strong>\"Open in private mode\"<\/strong>.<\/p>\n\n<p>On a web page opened in incognito mode, try clicking on a few other sub-pages eg About Us, Contact. If your website is infected, <strong>instead of the About us page, a prize game or survey<\/strong> that is not part of your website.<\/p>\n\n<h5 class=\"wp-block-heading\">Second method:<\/h5>\n\n<p>By scanning the website with a free basic virus detection tool. <a href=\"https:\/\/sitecheck.sucuri.net\/\" target=\"_blank\" rel=\"noopener\">https:\/\/sitecheck.sucuri.net\/<\/a><\/p>\n\n<p>Copy the link of your website and paste it in the field where it says <strong>example.com<\/strong> and click on the <strong>\"Scan website\"<\/strong> button.<\/p>\n\n<p>If your website is infected, after scanning, the information <strong>\"Anomaly behavior detected (possible malware)\"<\/strong> will be displayed.<\/p>\n\n<h5 class=\"wp-block-heading\">Bonus:<\/h5>\n\n<p>For a professional and detailed website security scan, you can <a href=\"https:\/\/op-development.com\/en\/contact\/\" data-type=\"page\" data-id=\"2581\">contact us<\/a> and request offer by calling the number <a href=\"tel:0976114247\" data-type=\"tel\" data-id=\"tel:+385976114247\">097 611 4247<\/a> or by email <a href=\"mailto:info@ op-development.com\">info@op-development.com<\/a>.<\/p>\n\n<h4 class=\"wp-block-heading\">How to fix website infected with redirect virus? (8 steps)<\/h4>\n\n<ol class=\"wp-block-list\"><li>Open your website's file manager (FTP), open the <strong>\/wp-content\/plugins<\/strong>&#13;\nfolder<\/li><li>Find the folder named <strong>\"zend-fonts-wp\"<\/strong> and delete it - Once you have deleted the folder, your website will stop redirecting<\/li><li>Delete cookies from your browser (e.g. Chrome, Firefox) - Click on the small padlock to the left of the url of your website, click on <strong>Cookies<\/strong> and click on the button <strong>Remove<\/strong> or <strong>Delete<\/strong> until you delete all cookies<\/li><li>Open <strong>phpMyAdmin<\/strong> or <strong>Adminer<\/strong> and log in to your website's database - You can find your database login information in the <strong>wp-config.php<\/strong> file which is located in the home folder of the website.<\/li><li>In the database, find the tables <strong>\"wusers_inputs\"<\/strong> and <strong>\"wzen_time_table\"<\/strong> and then delete them - The virus creates records in the database so that the hacker can access your website again and again upload the virus, <strong>so this step is extremely important!<\/strong><\/li><li>Change the passwords of all <strong>Administrator<\/strong> and <strong>Editor<\/strong> accounts of your website - Visit link-of-your-website.com\/wp-admin\/users.php and for each administrator \/ editor click <strong> Edit &gt; Set a new password <\/strong>and <strong>Sign out on all other devices &gt; Update profile<\/strong><\/li><li><strong>Upgrade all plugins, themes and WordPress version of your website!<\/strong><\/li><li>(Optional) Install the Sucuri or Wordfence plugin and scan the website.<\/li><\/ol>\n\n<figure class=\"wp-block-image size-full\"><img loading=\"lazy\" decoding=\"async\" width=\"856\" height=\"490\" src=\"https:\/\/op-development.com\/wp-content\/uploads\/2022\/08\/Optimus-Development-Kako-popraviti-web-stranicu-zarazenu-virusom-za-preusmjeravanje.webp\" alt=\"\" class=\"wp-image-320\" srcset=\"https:\/\/op-development.com\/wp-content\/uploads\/2022\/08\/Optimus-Development-Kako-popraviti-web-stranicu-zarazenu-virusom-za-preusmjeravanje.webp 856w, https:\/\/op-development.com\/wp-content\/uploads\/2022\/08\/Optimus-Development-Kako-popraviti-web-stranicu-zarazenu-virusom-za-preusmjeravanje-300x172.webp 300w, https:\/\/op-development.com\/wp-content\/uploads\/2022\/08\/Optimus-Development-Kako-popraviti-web-stranicu-zarazenu-virusom-za-preusmjeravanje-768x440.webp 768w\" sizes=\"auto, (max-width: 856px) 100vw, 856px\" \/><\/figure>\n\n<p>The most common reason for a hacked website is to use the basic maintenance pack or no maintenance pack which leads to outdated plugins, theme and wordpress version.<\/p>\n\n<p>If you need a service to repair a hacked website, request an offer at the number <a href=\"tel:+385976114247\" data-type=\"tel\" data-id=\"tel:0976114247\">097 611 4247<\/a> or email <a href=\"mailto:info@op-development.com\">info@op-development.com<\/a>.<\/p>\n","protected":false},"excerpt":{"rendered":"<p>Why do hackers attack websites? The growth in the number of created websites and digitized businesses leads to an increasing number of hacker attacks. The goal of hacker attacks on websites is mostly to steal data such as bank account information or to increase traffic on illegal websites by redirecting them. (Instruction adapted to the [&hellip;]<\/p>\n","protected":false},"author":1,"featured_media":1598,"comment_status":"closed","ping_status":"closed","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[38,25,32],"tags":[27,28,26],"class_list":["post-1793","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","category-web-design-and-development","category-security","category-tutorials","tag-security","tag-viruses","tag-website-repair"],"_links":{"self":[{"href":"https:\/\/op-development.com\/en\/wp-json\/wp\/v2\/posts\/1793","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/op-development.com\/en\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/op-development.com\/en\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/op-development.com\/en\/wp-json\/wp\/v2\/users\/1"}],"replies":[{"embeddable":true,"href":"https:\/\/op-development.com\/en\/wp-json\/wp\/v2\/comments?post=1793"}],"version-history":[{"count":1,"href":"https:\/\/op-development.com\/en\/wp-json\/wp\/v2\/posts\/1793\/revisions"}],"predecessor-version":[{"id":8876,"href":"https:\/\/op-development.com\/en\/wp-json\/wp\/v2\/posts\/1793\/revisions\/8876"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/op-development.com\/en\/wp-json\/wp\/v2\/media\/1598"}],"wp:attachment":[{"href":"https:\/\/op-development.com\/en\/wp-json\/wp\/v2\/media?parent=1793"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/op-development.com\/en\/wp-json\/wp\/v2\/categories?post=1793"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/op-development.com\/en\/wp-json\/wp\/v2\/tags?post=1793"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}