ConvertPlus infected with malware

I have a site where the ConvertPlus plugin appears to be infected by malware. When the plugin is enabled, from within wp-admin, I’m getting redirected to other sites. When the plugin is deactivate or deleted I do Not get redirected. I deleted the plugin and reinstalled it from X install page within WordPress but I’m still getting the malware redirects. Where can I directly download the plugin and try to reinstall it or do you have another suggestion to resolve this.

FYI…I’ve been working with cWatch over the last couple of days to resolve this issue and their instructions were to download the plugin and install it but if there’s a more effective way to resolve this please let me know.

Thanks!

Hi @rbelknap,

Thanks for writing.

Was your ConvertPlus plugin not updated to latest version when the redirects happened? There was a security flaw on the 3.4.x versions of ConvertPlus.

Please follow these steps to remove the malware:

  1. Deactivate & delete the Convertplus plugin.
  2. Install Wordfence, it’s a wordpress security plugin.
  3. Run Wordfence, scan and remove malwares or malicious codes.
  4. Check your wordpress users, delete accounts that looks suspicious.
  5. Install the latest version of Converplus from the X install page.

Let us know how it goes.

Thanks!

This topic was automatically closed 10 days after the last reply. New replies are no longer allowed.