How do you protect your self hosted wordpress blog from hackers?

Discussion in 'WordPress' started by 5530xm, Sep 29, 2009.

  1. #1
    I got a warning from my web host that because of some malicious script running in my wordpress blog more than 50% of their CPU resources are used. They have suspended my account. Has any one of you faced similar issue.
    Please help me if you know the solution.
     
    5530xm, Sep 29, 2009 IP
  2. dickieknee

    dickieknee Active Member

    Messages:
    441
    Likes Received:
    5
    Best Answers:
    0
    Trophy Points:
    80
    #2
    sounds like you may have an iframer virus, which would have embedded itself in all your index.php files, if you do a view source you will see a iframe either in the header or footer, backup your whole site (ie export your posts and pages), note down all your plugins and have a copy of your theme, ftp whole site back to your pc delete everything and re-up. when re-upping your virus software should detect the faulty files.

    once identify do clean install of WP and fix all files identified as having a virus
     
    dickieknee, Sep 29, 2009 IP
  3. ads2help

    ads2help Peon

    Messages:
    2,142
    Likes Received:
    67
    Best Answers:
    1
    Trophy Points:
    0
    #3
    1. Upgrade to the latest version
    2. Change all passwords to stronger passwords (alphabets with numbers, uppercase and lowercase, symbols, etc)
    3. If your site was attacked by malicious iframe, take a look at this post : How To Completely Remove All Malicious Iframes on Your Website Forever

    Cheers.
     
    ads2help, Sep 30, 2009 IP
  4. pipes

    pipes Prominent Member

    Messages:
    12,766
    Likes Received:
    958
    Best Answers:
    0
    Trophy Points:
    360
    #4
    I keep mine updated to the latest version, i dont go overboard with plugins and i dont give the login details to anyone.
     
    pipes, Sep 30, 2009 IP
  5. Pixelrage

    Pixelrage Peon

    Messages:
    5,083
    Likes Received:
    128
    Best Answers:
    0
    Trophy Points:
    0
    #5
    Make sure your folders are all CHMODded properly, too. Wordpress's official site has instructions about this.
     
    Pixelrage, Sep 30, 2009 IP
  6. dpsubi1

    dpsubi1 Notable Member

    Messages:
    9,318
    Likes Received:
    420
    Best Answers:
    0
    Trophy Points:
    280
    #6
    if it is a iframe virus then make sure you cleanup the virus from your harddrive and also do not store your ftp user, passwords on your browsers, ftp programs, etc. as the virus may extract the details from your browser, ftp program, etc and will automatically connect to your server and inject the code again and again.

    if it is not a iframe then ask your host to provide you more details.
     
    dpsubi1, Oct 5, 2009 IP