Website is flagged as Compromised Site by Google
-
Hi everyone,
We have been running Google Ads for a while now and last week all of our Google Ads were paused with reason Compromised Site. We reached out to Google and they identify this page as one of the affected page: https://manpower.com.vn/vi/dich-vu-san-dau-nguoi-and-tu-van-nhan-su-cap-cao?
The malicious links they found are:
• googie-anaiytics[.]com
• vty68[.]netWe have asked our Website vendor to scan and they found nothing. We would be greatly appreciated if you could help.
I tried Google Search Console and even the tool Google Safe Browsing that Google itself suggested but both the tools showed that our website does not have any malicious links at all. And yet Google Ads support team keeps telling us our page contains these links.
I am wondering if anyone in the community has experienced this before and how did you address this issue.
Or could you guys please help to share any tools that you know can do a deep scan on this page and if possible our entire website to help us identify where the links are located?
Please let me know if you need any additional information from us and I would be happy to provide it.
-
@Alex-Montarev We actually have a Drupal site and we're having the same issue...
-
Hello
Thanks for the heads-up. We'll look into it immediately and take the necessary steps to resolve the issue.
-
Update: I have also raised this on Google community: https://support.google.com/google-ads/thread/280600750?hl=vi&sjid=17667827560611966802-AP
and one of the member, who claims to be an IT engineer and security researcher, replied that the issue is caused by the library polyfill. The person said that a popular library got compromised and resulted in many site affected by this attack.
We are checking on this and if it is possible, you all can also take a look at this on your sides as well.
Hope this helps.
-
@Pedropeit thank you for the information and the offer to help. I really appreciate it!
Our website provider have tried to scan our website using these tools: Sucuri SiteCheck, VirusTotal, Quttera but we haven't found any unsual things.
We are trying to do a deeper scan at the moment but we are leaning on the possibility that this is a false alarm from Google. If so, do you know how we can reach out to more relevant personnel from Google to ask about this issue other than the general support team?
Thank you!
-
@Alex-Montarev we do not use Shopify, unfortunately. We are still in process of solving this.
We reached out to Google Ads support but only get some generic answers. Have you able to solve it already?
-
Hello there.
I see that in your website, you are using https://polyfill.io/v3/polyfill.min.js?features=IntersectionObserver%2CIntersectionObserverEntry . You will need to remove it as it is a compromised CDN, and it can make your website run arbitrary code. -
@ManpowerVietnam said in Website is flagged as Compromised Site by Google:
Hi everyone,
We have been running Google Ads for a while now and last week all of our Google Ads were paused with reason Compromised Site. We reached out to Google and they identify this page as one of the affected page: https://manpower.com.vn/vi/dich-vu-san-dau-nguoi-and-tu-van-nhan-su-cap-cao?
The malicious links they found are:
• googie-anaiytics[.]com
• vty68[.]net
We have asked our Website vendor to scan and they found nothing. We would be greatly appreciated if you could help.
I tried Google Search Console and even the tool Google Safe Browsing that Google itself suggested but both the tools showed that our website does not have any malicious links at all. And yet Google Ads support team keeps telling us our page contains these links.
I am wondering if anyone in the community has experienced this before and how did you address this issue.
Or could you guys please help to share any tools that you know can do a deep scan on this page and if possible our entire website to help us identify where the links are located?
Please let me know if you need any additional information from us and I would be happy to provide it.I understand the frustration you're experiencing with the Google Ads suspension due to a "Compromised Site" issue. Here are some steps and tools you can use to deeply scan your website and address this problem:
Manual Inspection:
Check Source Code: Manually inspect the source code of the affected page for any references to the malicious links (googie-anaiytics[.]com, vty68[.]net). These might be hidden in scripts or embedded in iframes.
Browser Developer Tools: Use browser developer tools (F12) to inspect the network activity on the affected page. Look for any unexpected network requests to the malicious domains.
Online Security Scanners:Sucuri SiteCheck: This free tool scans your website for malware, blacklisting status, injected spam, and defacements. You can access it here.
VirusTotal: Submit the URL of the affected page to VirusTotal to get a report from multiple antivirus engines. You can use it here.
Quttera: This tool provides a detailed report on any suspicious content or malware on your website. Try it here.
Web Security Plugins:Wordfence (for WordPress): If your website is running on WordPress, install Wordfence Security. It provides comprehensive scanning and firewall protection.
MalCare (for WordPress): Another WordPress security plugin that offers malware scanning and removal.
Server-Side Scanning:ClamAV: If you have access to your server, you can run ClamAV, an open-source antivirus engine, to scan your web directories for malware.
Maldet (Linux Malware Detect): This tool can be used on Linux servers to find and quarantine malware.
Professional Help:If the issue persists, consider hiring a professional web security service or a cybersecurity expert to perform an in-depth analysis and cleanup.
Once you've performed a thorough scan and cleanup, you should:Submit a Review Request: Inform Google Ads support that you've taken steps to clean your site and request a review.
Monitor Regularly: Set up regular scans and monitoring to prevent future compromises.
If anyone in the community has faced a similar issue or has additional tools and tips to share, your input would be greatly appreciated.Please let me know if you need any further assistance or specific information. I'm here to help.
Best regards,
-
We're having the same issue with our Shopify store, starting a few days ago. Google says the same thing, this "googie anaiytics" link that does not exist on our site.
Are you using Shopify? I'm wondering if it's a common Shopify app that's hacked or something that's causing this issue.
Got a burning SEO question?
Subscribe to Moz Pro to gain full access to Q&A, answer questions, and ask your own.
Browse Questions
Explore more categories
-
Moz Tools
Chat with the community about the Moz tools.
-
SEO Tactics
Discuss the SEO process with fellow marketers
-
Community
Discuss industry events, jobs, and news!
-
Digital Marketing
Chat about tactics outside of SEO
-
Research & Trends
Dive into research and trends in the search industry.
-
Support
Connect on product support and feature requests.
Related Questions
-
Unsolved Google Ads Not Getting Clicks or Impressions
I have been running some google ads - in the past 7 days I've had no clicks or impressions is this common? #ads
Paid Search Marketing | | PermaTherm0 -
"Duplicate without user-selected canonical” - impact to Google Ads costs
Hello, we are facing some issues on our project and we would like to get some advice. Scenario
Paid Search Marketing | | Alex_Pisa
We run several websites (www.brandName.com, www.brandName.be, www.brandName.ch, etc..) all in French language . All sites have nearly the same content & structure, only minor text (some headings and phone numbers due to different countries are different). There are many good quality pages, but again they are the same over all domains. Current solution
Currently we don’t use canonicals, instead we use rel="alternate" hreflang="x-default": <link rel="alternate" hreflang="fr-BE" href="https://www.brandName.be/" /> <link rel="alternate" hreflang="fr-CA" href="https://www.brandName.ca/" /> <link rel="alternate" hreflang="fr-CH" href="https://www.brandName.ch/" /> <link rel="alternate" hreflang="fr-FR" href="https://www.brandName.fr/" /> <link rel="alternate" hreflang="fr-LU" href="https://www.brandName.lu/" /> <link rel="alternate" hreflang="x-default" href="https://www.brandName.com/" /> Naturally this si reflected in ""Duplicate without user-selected canonical” . Issue
We create the same ad in Google Ads for 2 domains. So the content is mostly identical, ads are identical, target URLs differ only in domain. Yet Google Ads “Quality score” is different (10/10 vs. 6/10) and “Landing page experience” is very different (Above average vs. Average). Some members of our team think lower “Landing page experience” increases the Google Ads costs, which I personally don't believe, but I want to double check. Question: Can “Duplicate without user-selected canonical” issue decrease the “Landing page experience” rating and as result can it cause higher Google ads costs? Any suggestions/ideas appreciated, thanks. Regards.0 -
PPC CPC Increase after Website Speed Issues Were Addressed
We recently moved our hosting provider over from WPEngine to Site Ground. We increased our page speed scores from D/F to a B this past week. However, we noticed an increase in our PPC cost per click due to the website speed being slower... we cannot figure out why this would happen. Has anyone else experienced something similar? A PPC landing page we have is---> https://www.medicarefaq.com/medigap/plan-a/
Paid Search Marketing | | LindsayE0 -
Google AdWords Class Action Settlement?
Has anyone received and responded to a notice of class action settlement from Google Adwords? The sender (and the website it directs to) is adwordsclassaction.com. I see that there was such a thing, I am just not sure whether that domain is the official one to respond to?
Paid Search Marketing | | Linda-Vassily0 -
301 Redirects and Google Shopping Feeds
I am moving my site from Volusion to Shopify. The domain remains the same but the URL paths are different. With respect to my Google Shopping feed, is it best to send old URLs (with 301 redirects) or to send the new URLs?
Paid Search Marketing | | vgusvg0 -
Optimising 2 ecommerce sites
Hi there I have been optimising an e-commerce site snowsupermarket.co.uk and it's range of products available to B2C customers. I have now been asked to do the same for the B2B site shop.snowbusiness.com which sells the same products but also, many more. My question is, Should i use completely different meta information or choose keywords that are my second choice? Both sites are also on the same IP - would this be a problem with potential duplicate content? Many thanks in advance, Ben
Paid Search Marketing | | SnowFX0 -
Google Adwords Clicks v.s. Google Analytics Visits
Hi Guys, This question has been asked several times before but after doing some research, I haven't really found the right solution and/or explanation. I'm currently seeing a 30-50% discrepancy in Adwords Clicks and Analytics Visits, where there are more clicks than visits in most situations. E.g. 74,127 clicks v.s. 46,845 visits (34 add-to-carts, 67 initiated orders, and a revenue of $12,000). Can anybody in the forum help explain this? Thank you, Jurgen P.S. I've also looked at all the tracking codes and everything seems to be alright, I've checked if any internal redirects are stripping off parameters but to no avail. Lastly, I'm not sure if this is a behavioral issue here in SEA--will first click (Adwords) and last click attribution (Analytics) be the only explanation? P.S.S. I'm seeing the same discrepancies with Facebook ads and Analytics.
Paid Search Marketing | | JurgenEstanislao0 -
Adwords Product Listing Ads & Google Analytics mis-reporting
I hope you're sitting comfortably, this could be a long one and loaded with questions! Cut to the chase: Why is traffic from google product ads showing as 'organic' traffic in GA? Here's the scenario: Google Shopping I have thousands of products in a feed to google shopping (froogle, google base, google merchant, whatever you like to call it, I'll settle for google shopping for the purpose of this question). The URLs of this feed is tagged with GA tracking data (notably utm_source=GoogleBase&utm_medium=Product-Search), I have also tagged this with internal tracking which comes through in the back-end to assign orders to that specific source. In this case 'GOOGLEBASE'. Adwords Product Listing Ads As you know, a new (ish) feature of adwords pulls in your products from google shopping so that you get a richer ad (image, title, price) and displays this in the 'advert section' of the SERP. Once setting up a few of these, I noticed I was getting a fair amount of traffic for these new ads, taking one example, which resided in a relatively specific ad group (advertising Aviation Snips). Naturally, I wanted to find out which keywords were driving that traffic in order to improve the ads, or kill them if they weren't working. What was interesting is that I can't find anything about that traffic anywhere in adwords or google analytics. 254 clicks to 'aviation snips' must show up somewhere in analytics, if not the keywords, then what about the product? Analytics is showing nothing like that quantity of visits to those product landing pages where you'd expect. It's like ghost traffic. Google Analytics Since experimenting with product listing ads the organic traffic in GA has suddenly shot up, looking at the new keywords they are all queries which when I test them show up product listing ads in the SERP so it's obviously the paid listing ads driving this traffic. Why is google reporting these as organic, rather than paid? I also noticed a keyword appear as * in the PAID segment of analytics. I thought this was my missing aviation snips traffic, but digging into the landing pages for the * keyword, they are many different ones. There's a connection between the * and product listing ads, but what is it? Is the traffic being doubly reported? Back End Meanwhile we've seen an increase for orders tagged in the back-end of GOOGLEBASE which makes sense - google are pulling in my google shopping feed into the paid part of the SERPs and these are generating sales. Here are some of my initial thoughts / theories: 1. When google pulls in google shopping results into the organic part of the SERP, these get reported as ORGANIC in google analytics, even if you've tagged them otherwise. It seems they strip the tags out. This makes it very difficult to know if your google shopping feed is working well, or if you are doing well on standard organic traffic. 2. Google isn't separating out traffic as PAID with their new product listing ads, completely skewing the reports. It makes it look like you've gained great natural organic listings when if fact you are paying. 3. With relation to the missing Aviation Snips data - maybe google is showing a huge variety of products for that adgroup (even though it's specific) and therefore I can't see the traffic to the specific products that you'd expect. This I'm most confused about and wondered if I've missed a trick in setting the product listing ads up? I've attached a couple of screenshots which I hope will help clarify some of this. I can see product listing ads being great if you could get proper data to analyse and improve them. So here are my questions again if anyone can help? How do I see which keywords are driving the product listing ads? How do I see the landing pages for the product listings ads? What is the * keyword coming through in GA? How can you get GA to report product listing ads as paid rather than organic? Thank you so much. If I can gather enough data on this all and work it out I'll try to write up in a blog post to help others. 0rOMM.png GUAE0.png fWPL7.png
Paid Search Marketing | | ewanr0