如何在我的 wordpress post 中检测 Javascript 注入的可疑文件?

How to detect the Javascript injected suspicious file in my wordpress post?

检测到来自网站恶意软件扫描程序的潜在可疑内容。它显示了扫描结果中的一些代码:https://scanner.pcrisk.com/detailed_report/pragmaticwebmedia.com#details

但无法在我的网站上找到该脚本。如何删除上面结果中的转储代码?

我刚刚尝试了网站扫描仪和 cpanel 扫描,但 none 有帮助。

[[ window._wpemojiSettings = { "baseUrl":"https://s.w.org/images/core/emoji/11.2.0/72x72/","ext":".png","svgUrl":"https://s.w.org/images/core/emoji/11.2.0/svg/","svgExt":".svg","source": { "concatemoji":"https://pragmaticwebmedia.com/wp-includes/js/wp-emoji-release.min.js?ver=5.1.1" } }; !function(a,b,c) { 函数 d(a,b) { var c=String.fromCharCode; l.clearRect(0,0,k.width,k.height),l.fillText(c.apply(this,a),0,0); var d=k.toDataURL(); l.clearRect(0,0,k.width,k.height),l.fillText(c.apply(this,b),0,0); var e=k.toDataURL(); return d===e } function e(a) { var b;如果(!l||!l.fillText)return!1; switch(l.textBaseline="top",l.font="600 32px Arial",a) { case"flag":return!(b=d([55356, 56826,55356,56819],[55356,56826,8203,55356,56819]))%26%26(b=d([55356,57332,56128,56423,56128,56418,56128,56421,56128,56430, 56128,56423,56128,56447],[55356,57332,8203,56128,56423,8203,56128,56418,8203,56128,56421,8203,56128,56430,8203,56128,564,3,564278] ),!b); case"emoji":return b=d([55358,56760,9792,65039],[55358,56760,8203,9792,65039]),!b } return!1 }函数 f(a) { var c=b.createElement("script"); c.src=a,c.defer=c.type="text/javascript",b.getElementsByTagName("head")[0].appendChild(c) } var g, h,i,j,k=b.createElement("canvas"),l=k.getContext%26%26k.getContext("2d"); for(j=Array("flag","emoji"),c.supports= { everything:!0,everythingExceptFlag:!0 } ,i=0; i]]

需要找到脚本位置才能将其删除。

就...离开它。

默认的 WordPress Javascript 让您的 emoji beautier. The script can be found at WordPress official website: https://twentyfourteendemo.wordpress.com

如果您想删除它,请安装一个名为 Disable WP Emoji Icons 的插件。