These are biggest virus sources:
1.
http://nullit.net/
2.
http://nulledirectory.com/
When you install any Plugin kindly check it wisely.. I have installed one Plugin from this site and it injected CASINO links in my blog as a result in Google search I was getting the links info from my each post.
In this way Google can blacklist a blog.
This is very danger problem..
The link injected in my blog was:
"Blackjack can be more entertaining and convenient to play via an
http://maximusc7.com/online-horse-betting"
The link injected very wisely as the online virus scan was not able to find it..As a result i had to re-install my blog again after removing all stuff from Cpanel.
So... what else is new??
Everybody knows that getting nulled scripts/themes/plugins carries some risks, one of them is having malware installed in your website. Therefore, nulled scripts/themes/plugins aren't intended to be used by the "average joe", but by skilled users who are able to detect, remove and even clean an infected website.
If you don't understand what <? is, then you should stop looking for nulled wares.
I am telling to aware newbie who just download plugins from net without knowing real fact
Achal, my blog is doing the same thing (injecting casino links into SEO shared to google). I've had issues trying to isolate it since it takes awhile for Google to update their cache once I deactivate a plugin. Would you be willing to share which plugin caused it for you? I'm sure it's in many, but in the off chance that it's one I'm running it would be really helpful.
@FinnGoDo
The viruses are in many plugins we cannot count them.
This file is infected everywhere: Easy Social Share Buttons for WordPress CodeCanyon
You need to backup mysql database from Cpanel after that backup wordpress uploads and wordpress content folder and remove plugins folder after you take backup from Cpanel.
You can ask same to your hosting provider.. You cannot track where is the virus is but you can secure your site.
You need to re-install wordpress after taking backup.
The funny part is i told to scan my wordpress files to Hostgator and they did not find any infection..
Plugin deactivation is not a solution in many cases.. The only solution is "Fresh Installation of Wordpress" The plugin also can inject unwanted links in other folders of wordpress.
In easy social share buttons codecanyon
Someone have inserted this URL:
http://spamcheckr.com/l.php
It will be injected automatically when you install plugin.
It will redirect your visitors to JUSTIN BiBer YouTube video.
Thank you to all you guys who have contributed to this thread.
It is quite helpful to get this advice to newbies. Reps for you.
i got hit with the BIEBER redirect too, lol.
I use MULTIFind to find search strings and pinpointed the issue.
use DUPLICATOR plugin to backup your site, IT is awesome