    Hi folks, Someone seems to have hack my site, (See those lovely arabic links on the right hand side??) When I swap themes they appear below the footer area, so I think the guilty code must be in the footer? If anyone has any suggestions, I would really appreciate it. My Search and Destroy mission to find the code in my theme files has failed. :(



    I think the links are produced by the wp_footer() function. Have a look at this thread:

    Something in your WP setup calls the wp_footer() and produces this code. I’m pretty sure it’s a hacked plugin because a javascript file(wp-includes/js/jquery/jquery.form.js?ver=2.02m) from another plugin is called before this spam code.

    If it’s located in the footer (hardcoded) you need to check your footer.php – but I don’t think so because the spam links would disappear if you change the theme.

    Thanks so much! I should have thought of that. Doh! Will start deactivating and reactivating and see if I can find it.



    If you figure out which plugin is adding the links and you want to continue using the plugin, edit the plugin file and remove the links.

    Some authors offer a “premium” version without links in the footer so it may be worth contacting them first to see if they have any guidelines on this.

