My Wordpress Hacked!!!

Discussion in 'Security' started by b4db0y, Sep 30, 2008.

  1. #1
    MY WP blog was working well a few days back and i even got pr to it. But today as i went to it nothing. opens up blank, so i went to the ftp and tried to login, but it couldn't. WTF what should i do now. I dont even have a backup :(
     
    b4db0y, Sep 30, 2008 IP
  2. JustRulz

    JustRulz Member

    Messages:
    88
    Likes Received:
    3
    Best Answers:
    0
    Trophy Points:
    48
    #2
    if your wp-config.php's database passwors is same your ftp and panel passwors maybe attacker can be change it. So first contact your hosting. and update wordpress.
     
    JustRulz, Oct 1, 2008 IP
  3. UseShots

    UseShots Peon

    Messages:
    244
    Likes Received:
    16
    Best Answers:
    0
    Trophy Points:
    0
    #3
    Also, check your computer for viruses and spyware. And don't forget to make backup copies when you start this site from scratch.

    Check Google's cache. Maybe you'll be able to restore some posts.
     
    UseShots, Oct 2, 2008 IP
  4. tinimini

    tinimini Peon

    Messages:
    553
    Likes Received:
    5
    Best Answers:
    0
    Trophy Points:
    0
    #4
    This is really sad!! i think u should surely check your PC for backdoor trojan.
    And yes always regularly update your wordpress setup, whenever a new version comes out.
    be carefull in future for security loop holes.
     
    tinimini, Oct 2, 2008 IP
  5. zebulon

    zebulon Well-Known Member

    Messages:
    198
    Likes Received:
    13
    Best Answers:
    0
    Trophy Points:
    130
    #5
    Mitigate your risks this time. If you are un aware of issues or potentical threats, the opportunity to become a victim of cybercrime increases ten-fold.

    Be pro active in staying current with updates in software and routinely changing your passwords. Do not store them in your browsers cache or on your desktop, but rather write them down on a piece of paper and store it away. If you are aware of your situation, and mitigate the risks, chances are if something were to occour, it will not have a major impact but rather just a simple backup restore.
     
    zebulon, Oct 2, 2008 IP
  6. devsn

    devsn Active Member

    Messages:
    156
    Likes Received:
    4
    Best Answers:
    0
    Trophy Points:
    70
    #6
    Are you using a old version of WordPress? If not, then you are backdoored, A keylogger or a trojan may infected your PC..

    Well, you can trace this, as long as it is running, and Connections is active...
     
    devsn, Oct 3, 2008 IP
  7. Mxhub

    Mxhub Active Member

    Messages:
    474
    Likes Received:
    1
    Best Answers:
    0
    Trophy Points:
    55
    #7
    Please make sure you are running the latest wp .. the hacker could have access your site through an exploit.
     
    Mxhub, Oct 12, 2008 IP
  8. ranabra

    ranabra Peon

    Messages:
    125
    Likes Received:
    1
    Best Answers:
    0
    Trophy Points:
    0
    #8
    Unless the site is backup within an hour, due to server problems (not your fault) obviously you've been hacked.
    What I would do is try to contact the hosting and explain the situation - maybe you can regain control that way!
    Afterwards I'm sure you will use a stronger password and latest version of WP

    BTW, is it the latest version of WP?
     
    ranabra, Oct 12, 2008 IP
  9. ads2help

    ads2help Peon

    Messages:
    2,142
    Likes Received:
    67
    Best Answers:
    1
    Trophy Points:
    0
    #9
    latest version should be 2.6.2
     
    ads2help, Oct 13, 2008 IP
  10. javaongsan

    javaongsan Well-Known Member

    Messages:
    1,054
    Likes Received:
    7
    Best Answers:
    0
    Trophy Points:
    128
    #10
    When this happen, the best thing to do is change host, download a new copy of wordpress and try to restore the database manually
     
    javaongsan, Oct 13, 2008 IP
  11. b4db0y

    b4db0y Notable Member

    Messages:
    3,523
    Likes Received:
    74
    Best Answers:
    0
    Trophy Points:
    205
    #11
    did all that, installed a plugin wp_security to check the security of the wp.
     
    b4db0y, Oct 13, 2008 IP
  12. Mxhub

    Mxhub Active Member

    Messages:
    474
    Likes Received:
    1
    Best Answers:
    0
    Trophy Points:
    55
    #12
    If your site still get hack again despite all the efforts had been made.. time to look at switching to another host.
     
    Mxhub, Oct 13, 2008 IP