hacking attempt on my site

Discussion in 'WordPress' started by neteater, Apr 10, 2012.

  1. #1
    i just got a mail from my site security plugin about a hack attempt on my site. what to do in this situation. can i feel relaxed or i need to do something more the message was

    This notice is to inform you that someone at IP address 31.184.242.194 tried to login to your site "Indiaonindia" and failed.

    The targeted username was admin

    The IP address has been blocked for 60minutes.
     
    neteater, Apr 10, 2012 IP
  2. locke815

    locke815 Peon

    Messages:
    480
    Likes Received:
    2
    Best Answers:
    0
    Trophy Points:
    0
    #2
    I suggest you to let your hosting provider know about this so that they can further assist you.
     
    locke815, Apr 11, 2012 IP
  3. neteater

    neteater Well-Known Member

    Messages:
    734
    Likes Received:
    5
    Best Answers:
    0
    Trophy Points:
    105
    #3
    just contacted..lets see how they handle it
     
    neteater, Apr 12, 2012 IP
  4. debrupseo

    debrupseo Member

    Messages:
    13
    Likes Received:
    0
    Best Answers:
    0
    Trophy Points:
    41
    #4
    Change your FTP login username password, then inform your hosting company about this.
     
    debrupseo, Apr 12, 2012 IP
  5. marvel1987

    marvel1987 Peon

    Messages:
    31
    Likes Received:
    1
    Best Answers:
    0
    Trophy Points:
    0
    #5
    Make sure your version of Wordpress is completely up to date...the hack will be targeting a number of files including your index.php file and contain a block of code that looks like a load of numbers and letters usually towards the top of the page.
     
    marvel1987, Apr 14, 2012 IP
  6. javamazon

    javamazon Active Member

    Messages:
    50
    Likes Received:
    0
    Best Answers:
    0
    Trophy Points:
    66
    #6
    Follow few : FAQ My site was hacked on wordpress : codex.wordpress.org/FAQ_My_site_was_hacked
     
    javamazon, Apr 19, 2012 IP
  7. bluffspot

    bluffspot Active Member

    Messages:
    623
    Likes Received:
    4
    Best Answers:
    0
    Trophy Points:
    70
    #7
    It sounds like you are using Login-Lock plugin for wordpress. If so, go into WP and set the plugin to block anyone after 3 attempts for 999999999999 minutes. If you check your WP database and you'll see 2 tables for this plugin. They include all of the IP addresses that have attempted an improper login.

    There is a bug though with Login-Lock I have noticed lately. When you login after a WP update it wont let you login and gives you a loop error. Dont know if there is a fix or not - checked yesterday (5/14) and there was not.
     
    bluffspot, May 15, 2012 IP
  8. saqib_islam

    saqib_islam Peon

    Messages:
    90
    Likes Received:
    1
    Best Answers:
    0
    Trophy Points:
    0
    #8
    Re Install wordpress and delete wp-login.php file when you are not going to login you can also use limit login attempts plugin it's good
     
    saqib_islam, May 19, 2012 IP
  9. DISCOUNTOFFER

    DISCOUNTOFFER Peon

    Messages:
    26
    Likes Received:
    0
    Best Answers:
    0
    Trophy Points:
    0
    #9
    do not use 'ADMIN' as username......change it to someone else.......
     
    DISCOUNTOFFER, Jun 7, 2012 IP
  10. matt_62

    matt_62 Prominent Member

    Messages:
    1,827
    Likes Received:
    515
    Best Answers:
    14
    Trophy Points:
    350
    #10
    if you know which ip address is trying to hack you, you should be able to block them using .htaccess (just back it up before making any changes)
     
    matt_62, Jun 7, 2012 IP