Your website is publicly displaying online-gambling content.
During a public inspection of glms.org, corePHP found Indonesian online-gambling spam injected directly into your pages. It is rendering to ordinary visitors, not only to search engines.
This document lays out exactly what we observed, why it matters for a physicians' membership association, and the steps to remove it and keep it gone. Everything below comes from public inspection only. No active scanning and no authenticated access were used.
Injected heading, rendered on the live homepage:
Beneath it, the page carries promotional copy for SBOBET and SBOTOP sports betting, along with "Slot Gacor" and "Slot Kamboja" casino terms. Two live outbound links were present on the page. They are reproduced here as inert, non-clickable text so this document links to nothing.
Indonesian-language keywords observed:
Same class of spam observed on these indexed pages:
The site is built on WordPress with Elementor, which is a sound and maintainable foundation. The concern is posture, not platform. With the default theme in place, an aging plugin stack, and an entry point that is not yet identified, a one-time cleanup alone will not guarantee the spam stays gone. Removal has to be paired with hardening and monitoring.
Why this matters
Member and public trust
A medical society is judged on credibility. Betting and casino promotions under the GLMS domain undercut the trust members and the public place in the organization.
Hacked-site flag and ranking loss
Google routinely flags pages carrying this content. A warning label in results and lost rankings reduce reach for legitimate programs and events.
From spam to redirects and malware
A foothold that starts as spam is commonly upgraded to visitor redirects or malware, which then trigger browser warnings for anyone visiting.
Member data on the same platform
Membership records and member login live on the same WordPress install, so the compromise is a governance matter, not only a marketing one.
Recommended next steps
- Remove the injected content across every affected page, sitewide.
- Reset credentials and enable two-factor authentication for all admin accounts.
- Update the theme and all plugins to current, supported versions.
- Request a Google Search Console review to clear any hacked-site status.
- Monitor for reinfection until the entry point is confirmed closed.
- Rebuild on a hardened platform using WordPress and Elementor with a current theme.
- Add a web application firewall in front of the site to block injection attempts.
- Enable malware scanning with alerts so any recurrence is caught early.
- Set a maintenance cadence so the theme and plugins never fall out of support again.
A trustworthy home for the Society, built to stay clean.
A professional association site that carries the work GLMS actually does, on a secure platform with monitoring built in from the first day. Every member-facing tool the current site needs, without the exposure.
The compromised site
- Gambling spam visible to every visitor on the homepage and beyond.
- Injected content indexed across membership, events, and program pages.
- Default theme, aging plugins, no firewall or malware monitoring.
- Exposed to a hacked-site flag and browser warnings.
A clean, monitored platform
- No injected content. Only the Society's own pages and programs.
- HTTPS, a web application firewall, and active malware monitoring.
- Staff-managed content in Elementor, with a supported theme and plugins.
- Built so a compromise is far harder, and caught early if attempted.
What the new site carries
Membership
Join and renew, benefits, and a clear path to Member Login.
Physician Finder
A searchable roster and finder for members and the public.
Events calendar
A dependable calendar for DocTalks, events, and Society dates.
Program pages
Wear The White Coat, the Physician Wellness Program, and Advocacy.
Louisville Medicine
A proper home for the Society's publication and archives.
Secured and monitored
WordPress and Elementor with HTTPS, a firewall, and malware scanning.
The proposed homepage, in your own brand.
Not a generic template. This concept uses the Society's real fleur-de-lis logo, brand colors, and the current Louisville Medicine cover, on a clean and secure platform.
Design concept prepared by corePHP. Real GLMS logo, brand colors, and current publication cover shown. Sample content stands in for events and copy.
You own the site outright, with no strings attached. The platform, the content, and the accounts stay with the Society. corePHP builds it and hands it over, cleanly.
Choose a scope. Approve when ready.
Two clear scopes, and a combined option that does both in one engagement. No payment is collected on this page. Approving records your selection and produces a signed PDF you can keep and circulate.
- Remove injected content across every affected page.
- Reset credentials and enable two-factor authentication.
- Update the theme and all plugins.
- Request a Google Search Console review.
- Monitor for reinfection during cleanup.
- Clean rebuild on secure WordPress and Elementor.
- Membership, Physician Finder and roster, events calendar.
- Program pages and a home for Louisville Medicine.
- HTTPS, web application firewall, malware monitoring.
- Staff-managed content. You own it outright.
- Everything in Security Fixes, done first to contain the issue.
- Everything in New Website, on a hardened, monitored platform.
- One engagement, one team, one clear handover.
- The surest path to remove the spam and keep it gone.
Approval and signature
No payment collected245 Michigan Ave West
Battle Creek, MI 49017