Site being targeted by hardcore porn links
-
We noticed recently a huge amount of referral traffic coming to a client's site from various hard cord porn sites. One of the sites has become the 4th largest referrer and there are maybe 20 other sites sending traffic.
I did a Whois look up on some of the sites and they're all registered to various people & companies, most of them are pretty shady looking.
I don't know if the sites have been hacked or are deliberately sending traffic to my client's site, but it's obviously a concern. The client's site was compromised a few months ago and had a bunch of spam links inserted into the homepage code.
Has anyone else seen this before? Any ideas why someone would do this, what the risks are and how we fix it?
All help & suggestions greatly appreciated, many thanks in advance.
MB.
-
"in a case like this is it sensible to preemptively remove the links with the disavow tool?"
Once again, the Disavow tool was offered as a last resort by Google. Many webmasters seem frustrated the tool is not working as they expected, and the issue is typically they ignored Google's instructions for the tool's usage.
Prior to using the Disavow tool, you need to make an exhaustive effort to remove the links. Send a polite letter to the WHOIS address for the domain explaining the problem and identifying specific links from that domain which are pointing to your site. If there is no response within 3 days, send the same letter to an email address found on the site itself. If you still do not receive a response, check for a Contact Form on the site.
Try to learn what is going on with the site. Ask site owners how these links were created. It surely can be the result of negative SEO, but in the overwhelming majority of cases I have worked with, it is either the client or an agent acting on behalf of the client. Try digging a little deeper.
-
Hi again Ryan/Gordon,
Sorry to bring this one up again, but we could use some more input if possible. It turns out the number of referring URLs is way higher than we originally thought. I've also done some digging in OSE and have found a huge number of links from dubious sources. It's going to take some time to refine the list but we're probably looking in the thousands.
There's no doubt that this is malicious as we have never done anything to build links like these.
We've not yet noticed any penalty or received any warnings but in a case like this is it sensible to preemptively remove the links with the disavow tool?
One other thought: it seems suspicious that this has happened around the same time that the site itself was hacked with similar links inserted into the homepage.
My best guess is that the site hasn't been specifically targeted but has been caught up in some kind of automated spam attack. I've looked at some of the other offending sites and all the links are in odd places - hidden in the code or in strange anchor text. Is it possible that a robot has crawled all these sites and inserted spam links to create some kind of massive "link wheel"?
In this case what's the best preemptive solution before we get slapped with a penalty?
Thanks again...
-
There are not any general endorsements I can share. Your chosen expert may vary depending on your hosting environment, site software and budget.
-
I appreciate your time & help Ryan. I will pass all those suggestions on.
If they choose to bring in a security expert in to take a look, do you have any recommendations?
-
"As for the client's site hacking, as far as I'm aware their webmaster & in-house team dealt with that when it happened."
The webmaster and inhouse team likely had a gap which was exploited. It may be best to bring in an outside security consultant to review the matter.
"if our messages go unacknowledged, what else can we do about it?"
In my experience, 25 - 60% of removal requests are honored, depending on the site. If you are working with numerous site owners, either some of them will respond or you are likely doing something wrong. Ways to contact a webmaster:
-
use the WHOIS information to send an email
-
use information from the site. Before you say they don't have anywhere, check thoroughly.
-
use the site's Contact Us form
-
call the site with the number on the site or their WHOIS phone number
-
mail the site
-
check for social pages such as facebook and contact them via that method
You shared there are around 20 sites linking to your client's site. Some of them should respond.
-
-
That's good. Sorry, but I had missed the part where you said your clients site was compromised previously....
-
Thanks Gordon,
The links are no-follow so for the time being I'm not too worried about link spam penalties. We'll try to contact the site owners first and will then disavow the links if nothing else works...
Cheers, Matt
-
Thanks for your detailed reply Ralph As for the client's site hacking, as far as I'm aware their webmaster & in-house team dealt with that when it happened. I will pass your notes on to the team and check they are 100% confident that the security lapses are fixed. We are in the process of identifying & contacting the webmasters of the referring sites to requests the links be remove. However, if our messages go unacknowledged, what else can we do about it? The links are mostly no-follow which is a minor blessing and we haven't seen any link manipulation warnings in GWT yet. Still confused on their motives/reasons though.
-
"The client's site was compromised a few months ago and had a bunch of spam links inserted into the homepage code."
Has the issue been fully resolved? What steps have you taken to ensure the site's code is clean and remains clean? Some examples:
- placing the code on a test server and having an expert examine the code
- crawling the site and examining all links
- upon completion of the code analysis, implement a system which detects any coding changes and notifies you of the change
- ensure you are using professional development services with professionally developed extensions
- check your hosting. At a minimum, VPS hosting should be used. Do you have a firewall in place? What type of precautions does the host take (i.e. are you with a major host such as Rackspace, HostDime, etc? Or a host no one has heard of?)
- Use a service such as Symantec or McAfee SSL which offers daily site malware scanning
Every time I have worked with a compromised site, there have been major gaps or a complete lack of site security.
With respect to the links, the Disavow Tool can be used as a means of last resort. Google is very clear the tool should not be used until all other methods have been exhausted.
Have you tried contacting any of the webmasters to inquire about the links? That would be a start. You stated they are from independently owned sites. If that is true, then some of those webmasters will likely be cooperative and help you understand why they are linking to you.
We are happy to help Matthew. There is a lot more detailed information required which is missing from your question. There are dozens of possible causes and solutions.
-
Hi Matthew,
Sorry to hear this, and it's not good news. As to how/why it's happened, I can only guess one of two resaons. Either someone who knows nothing about SEO has decided s/he would "help" the whole SEO process and buy some links in. Or, and possibly more likely it may be a competitor who is doing a negative SEO campaign with the desire to lower your organic rankings, ensuring you will be penalised by Google.
You can now use the Google Webmaster tools and use the disavow tool to tell Google to ignore those links.
Hope that helps and all the best.
Gordon
Got a burning SEO question?
Subscribe to Moz Pro to gain full access to Q&A, answer questions, and ask your own.
Browse Questions
Explore more categories
-
Moz Tools
Chat with the community about the Moz tools.
-
SEO Tactics
Discuss the SEO process with fellow marketers
-
Community
Discuss industry events, jobs, and news!
-
Digital Marketing
Chat about tactics outside of SEO
-
Research & Trends
Dive into research and trends in the search industry.
-
Support
Connect on product support and feature requests.
Related Questions
-
Value / Risk of links in comments (nofollow)
Recently I noticed a couple of comments on our blog that seemed nice and relevant so I approved them. The site is wordpress and comments are configured nofollow. We don't get many comments so I thought "why not?". Today I got one and noticed they are all coming from the same IP. They all include urls to sites in the same industry as us, relevant sites and all different. Looks like an SEO is doing it for various clients. My question is what is the value of these nofollow links for the poster? Are these seen as "mentions" and add value to Google? And am I better off trashing them so my site is not associated? Thanks
White Hat / Black Hat SEO | | Chris6610 -
Is guest posting good for main link-building tactic for eCommerce site
Hello, Is guest posting going to be devalued? We've been offering a guest post with one link in the body pointing towards one of our articles, and one home page link in the bio. We're looking at doing this as the main link building strategy. Is this still a good idea now and in the future? Thanks!
White Hat / Black Hat SEO | | BobGW0 -
How Does This Site Get Away With It?
The following site is huge in the movie trailer industry: http://bit.ly/18B6tF It ranks #3 in Google for "Movie Trailers" and has high rankings for multiple other major keywords in the industry. Here's the thing; virtually all of their movie trailer pages contain copy/pasted content from other sites. The movie trailer descriptions are the ones given by the movie companies and therefor the same content is on thousands of websites/blogs. We all know Google hates duplicate content at the moment... so how does this site get a away with it? Does it's root-domain authority keep it up there?
White Hat / Black Hat SEO | | superlordme0 -
Penguin link removal what would you do?
Hi Over the last 4 months I have been trying to remove as many poor quality links as possible in the hope this will help us recover. I have come across some site's that the page our back-link is on has been de-indexed, goggle shows this when I look at the cached page... 404. <ins>That’s an error.</ins> The requested URL /search?sourceid=navclient&ie=UTF-8&rlz=1T4GGNI_enGB482GB482&q=cache:http%3A%2F%2Fforom.eovirtual.com%2Fviewtopic.php%3Ff%3D4%26t%3D84 was not found on this server. <ins>That’s all we know.</ins> If goggle is showing this message do I have to still try to remove the link, or is it a case goggle has already dismissed the link?
White Hat / Black Hat SEO | | wcuk0 -
Should We Pull The Plug On This Site?
I am helping a retailer out with their site. They were hit hard with the Penguin update, and traffic has dropped by about 75%. Here are the stats: It is fairly new, has been up for about 3 years. Has partial match domain name Is nearly fully indexed with over 4K pages Has NOT received an unnatural link message from Google, so no manual penalty. Has had most keywords BURIED in the search results. Link profile: Has done about 50-100 blog comments, 500 directory submissions, 800 social bookmarks, 5-6 press releases, 300 article submissions (most removed), about 30-50 guest blog posts. I am thinking it may have just been hit because of aggressive use of anchor text as opposed to massive spamming. Then again, the site has never really added great content and the product pages have no unique content. Any thoughts?
White Hat / Black Hat SEO | | inhouseseo1 -
Could a sitewide footer EXACT MATCH anchor text link hurt or potentially penalize a site?
I am pretty sure this would hurt rankings yet I just want another's opinion on it. Would a sitewide footer link with exact match keyword anchor text to the page you want to rank for your main keyword hurt you? Basically if it were a link to the homepage, yet you wanted to make the anchor text your main objective keyword, would it hurt to have this in the footer along with the logo link at the top of a page that is just "home" anchor text?
White Hat / Black Hat SEO | | jbster130 -
Feedback on link building idea
We came up with this idea at work for a client but before I initiate it I was wanting to get feedback on if this would be considered whitehat and alright to use. It is for an ecommerce site. On the order confirmation and thank you page (not email cause they are on some old system that does not send out emails) we are wanting to put a thank you for your order message and continue with a statement about how they can save money on future purchases with a link that takes them to a page with info on how to do so. That new page will have info about linking to the site from a blog or website. And will say if you link back to us and send us an email with that link as proof we will give you a promo code for your next purchase. Is this alright?
White Hat / Black Hat SEO | | webfeatseo0 -
Do Friends Let Friends Sell Links?
I have a friend with a site that has a lot of content. Some of that content has affiliate links with no follows to affiliate urls. Those pages also have a disclosure on them about the affiliate relationship. Now, he's talking about taking some of the existing under-performing affiliate links and renting them out to another site that wants them for the link juice. He says he'd have an on-page disclosure, a display ad for the advertiser on the page and something in the text like "you might check out our advertiser..." and then some keyword targeted link. He was asking me how risky I thought this is for him and really I don't know.Do you think Google would find this and s**t a chicken over it? I really don't know, given that I see really blatant undisclosed rented links all the time.Of course, my easy answer to him is "don't do it," but it does make me wonder how risky that is. Also, is that a realistic site-wide penalty kind of thing or it just doesn't pass any link juice to the advertiser kind of thing? So, I'm posting here for others to weigh in on. Thanks!
White Hat / Black Hat SEO | | 945010