Главные задачи для решения:
- вычистить от вирусов и всего постороннего, что занимается фишингом без нашего ведома и рассылает спам (Гугл, Амазон присылали уведомления-просьбы срочно устранить)
- обновить Вордпресс до актуальной версии (если это нужно) или применить иные меры, чтобы сайт больше не взламывали, но чтобы не потерять контент и работоспособность всего сайта и внутренних линков
- убрать сайт из «серого» списка фишинговых сайтов гугла, как указано в письменном уведомлении гугла (см. аттач 1);
- убрать е-мейлы из «чёрного» списка заблокированных гуглом за спам, как указано в письменном уведомлении гугла (см. аттач 2);
- вшить в Вордпресс компонент, скрывающий вверху страницы текст титульных фраз, указываемых при создании страницы
- убрать из форума внизу рекламную надпись-ссылку, появившуюся без нашего ведома (возможно она как раз и спамит ?)
П.С. Если мы сработаемся, то предоставлю ряд дополнительных задач по программированию и дизайну на сайте для будущего сотрудничества.
Готов обсудить ваше предложение по стоимости услуг.
Аттач 1.
From:[email protected]
Sent: Sunday, November 29, 2015 8:02 PM
To:[email protected] ; [email protected] ; [email protected] ; [email protected] ; [email protected] ; [email protected] ; [email protected] ; [email protected]
Subject: Phishing notification regarding fides.com.ua
Dear site owner or webmaster of fides.com.ua,
We recently discovered that some pages on your site look like a possible phishing attack, in which users are encouraged to give up sensitive information such as login credentials or banking information. We have removed the suspicious URLs from Google.com search results and have begun showing a warning page to users who visit these URLs in certain browsers that receive anti-phishing data from Google.
Below are one or more example URLs on your site which may be part of a phishing attack:
http://fides .com.ua/wp-content/plugins/aererti.htm
Here is a link to a sample warning page:
http://www.google.com/interstitial?url=http%3A//fides.com.ua/wp-content/plugins/aererti.htm
We strongly encourage you to investigate this immediately to protect users who are being directed to a suspected phishing attack being hosted on your web site. Although some sites intentionally host such attacks, in many cases the webmaster is unaware because:
1) the site was compromised
2) the site doesn't monitor for malicious user-contributed content
If your site was compromised, it's important to not only remove the content involved in the phishing attack, but to also identify and fix the vulnerability that enabled such content to be placed on your site. We suggest contacting your hosting provider if you are unsure of how to proceed.
Once you've secured your site, and removed the content involved in the suspected phishing attack, or if you believe we have made an error and this is not actually a phishing attack, you can request that the warning be removed by visiting
http://www.google.com/safebrowsing/report_error/?tpl=emailer
and reporting an "incorrect forgery alert." We will review this request and take the appropriate actions.
Sincerely,
Google Search Quality Team
Note: if you have an account in Google's Webmaster Tools, you can verify the authenticity of this message by logging into https://www.google.com/webmasters/tools/siteoverview and going to the Message Center, where a warning will appear shortly.
Аттач 2.
-----Исходное сообщение-----
From: [email protected]
Sent: Friday, December 25, 2015 4:35 PM
To: [email protected]
Subject: Недоставленное сообщение
**********
Это письмо отправлено почтовым сервером yandex.ru.
К сожалению, мы вынуждены сообщить Вам о том, что Ваше письмо не может
быть отправлено одному или нескольким адресатам. Причины указаны ниже.
Пожалуйста, не отвечайте на это сообщение.
**********
This is the mail system at host yandex.ru.
I'm sorry to have to inform you that your message could not
be delivered to one or more recipients. It's attached below.
Please, do not reply to this message.
<[email protected]>: host gmail-smtp-in.l.google.com[2a00:1450:4010:c08::1a]
said: 550-5.7.1 [2a02:6b8:0:1465::102 12] Our system has detected
that
this 550-5.7.1 message is likely unsolicited mail. To reduce the amount
of
spam sent 550-5.7.1 to Gmail, this message has been blocked. Please
visit
550 5.7.1 https://support.google.com/mail/answer/188131 for more
information. nq6si30032720lbb.68 - gsmtp (in reply to end of DATA
command)