As many of you know, I've been working on a massive redesign of my blog for the past week. In fact, I've spent pretty much all day today on some final touches.
This afternoon, I noticed a strange warning pop up when I went in to preview a change that I made. My browser that gave me a warning that said that there was malware on my site. Being that I'm on a Mac, I was not too concerned about this. However, knowing that thousands of people visit my site every day with Windows based computers, I became very concerned.
I began to get reports from other folks saying they were getting similar issues. I had not been able to reproduce the errors on my computer, but when I loaded gspn.tv from my iPad, I got the following:
You can see, from the image on the right, when my site is loaded, there is some code that causes your browser to forward to another site that has this malware on it. When forwarded to this other site, it pretends to be a part of the windows operating system, running virus scanning program. Obviously that can't be right on the iPad.
I immediately turned to my friends online and found out that it's not just my site, but thousands of WordPress sites hosted on GoDaddy.com. In fact, when I found that out, I checked several other sites that I host and found that at least five of my different WordPress sites all have this same issue.
It is currently 8:43pm ET and I am just now doing a backup of my gspn.tv website before I go trying to fix this.
I'll update THIS POST as I progress.
Update: 9:11pm ET 9/17/2010
So I believe that gspn.tv is now completely free from this Malware threat. However, I still have several other sites to clean. Here are some things that I will share that hopefully will help others dealing with this issue or that may help me, in the future, if this were to happen again.
I was able to easily identify whether or not my site had been hacked by looking at the source code of the html. At the very bottom, just before the