I am trying to compile a list of steps to prevent iframe injection attacks. Hopefully, we are able to stop the problem coming back to us.
- Develop a scheduler to scan for iframe injection and run daily to check and email to us
- Download / open all the files and scan for iframe injection and take them out
- Inform the hosting to scan the website files again before we upload the cleaned files
- Implement code injection prevention
- Update and scan your pc daily
http://www.codingforums.com/showthread.php?p=825328