The Yuzo wordpress plugin: related posts plugin is vulnerable. Hundreds of sites have already been attacked.
and many more … So no more pages of your website can be accessed, they are all redirected in a split second after opening to one of these malicious sites. Raging!
to remove the malicious code, nothing more simple! : connect to your database management web tool for MySQL PHPMyAdmin, and go to the table wp_options:
<script>document.location = ...</script>
delete all text from the included script tag to the included closing tag (/ script).
Save by clicking on the execute button.
There you go !!! no more redirects, your valuable site is saved. No need for complete restoration
you can find on the internet “shady” web sites which sell a fix for this attack … No need to be bribed by people who may be themselves at the origin of this type of attacks. The correction proposed here is free and works.
To do later:
update Yuzo to a security patch, if the module authors provide one or disable or uninstall the module to prevent a new attack.