Neutralizing a Trojan.JS.Redirector.cq SQL injection on your WordPress blog
29 Jul
Early today, a friend Calvin Chew had tweeted me about an antivirus alert on my site. I immediately looked into it, and did some research on the internet.
It turned out that a code linked to a remote malicious Javascript had been inserted to each of my five-hundred-something pages and posts through an SQL injection attack which redirects visitors to a rogue antivirus page that downloads a rootkit onto the local system upon any click, even to close the window. This Javascript trojan is said to mostly affect MediaTemple-hosted WordPress blog.
I’ve managed to successfully cleared the databases in less than an hour on the phone. If your blog has been compromised, read on to find out how.








