Hi,
I have been using GTM for a while. I'll use it for google analytics, google ads tracking, Facebook pixel, etc...
Recently I had a client notifying me that my website is not working due to a trojan found on the website. On my computer, it was working fine and then found out that certain antivirus programs were finding the trojan and stopping my website from loading. the ones that I know about are Kaspersky and Eset NOD32.
After some troubleshooting found out that the problem is caused by GTM, even when I removed all the tags and triggers, it still gave the trojan error. Only when I removed GTM from the website, I was able to load the website.
I have scanned the website with magereport.com and when GTM was enabled I got this error:
This Credit Card Hijack check detects whether there is malicious javascript code injected into Magento shops that allows hackers to intercept credit card data. It also detects the malware signatures related with the MagentoCore and MageCart skimmer.
Questions:
1. Is there anyone else who uses Google Tag Manager?
2. Does anyone have the same issue?
3. Any suggestions on a fix for this?
I have the same issue. It's only for Eset for me.
Any solution?
@Keren Good to know that I am not alone in this.
Unfortunately, till now I don't have a solution. I even talked to google but they denied the problem is on their side and let me hanging.
Can I ask what version of Magento do you have?
We have 2.2. However in the process of upgrading to 2.4.
Hi Robertbits,
Same problem here on Magento 2.4.2.
Did you ever get a resolution to this? Any suggestions that may be helpful to us to diagnose and resolve?
Many thanks.
After a lot of troubleshooting, I discovered that it had nothing to do with Google Tag Manager.
I found external Javascript embedded into my website footer, I don't know how it was there, but it was loading the trojan script.
I cleaned the script and the issue was solved.
Thank you so much for your quick reply. Sadly I can find nothing in my footer, but I am very grateful for your response.