Wordpress sites keep getting hacked...help!?

Discussion in 'WordPress' started by brandon93s, Aug 7, 2009.

  1. tonks

    tonks Peon

    Messages:
    50
    Likes Received:
    0
    Best Answers:
    0
    Trophy Points:
    0
    #21
    hmm i dont understand what you mean about index.php "deface"..
    is that like a way to hack in? or something..

    its just that with the hackers i've experienced with my blogs they've all gone through the users in the website who are administrator.. and changed their email/password to their liking which gained them entry.
    so i just stopped them as it is from getting into wp-admin to do anything.
     
    tonks, Aug 10, 2009 IP
  2. Oranges

    Oranges Active Member

    Messages:
    2,610
    Likes Received:
    92
    Best Answers:
    0
    Trophy Points:
    90
    #22
    You're right on that part, cause there are various ways of getting wp installation hacked, and index.php deface is one of them. whole shared server can be Mass index defaced, and all the websites installed on that server will suffer as well. That happens because wordpress is an open source script and those hackers can find out those loop holes and security vulnerability after every update release.


     
    Oranges, Aug 11, 2009 IP
  3. Joeey

    Joeey Peon

    Messages:
    29
    Likes Received:
    1
    Best Answers:
    0
    Trophy Points:
    0
    #23
    When I was on dedicated windows server I got hacked on every site and blog on my server...hosts advice was to change all passwords, remove webalizer, remove site studio. Nothing I did could stop them, nothing...they even put their own .htaccess files in there (they dont work on windows server though) - when I was trying to remove the code manually on my main site - WOW - they are good, had files so deep. I was amazed and could not keep them out.

    I changed to a unix box a few months back and have not been bothered since.

    I was using software that required an MSSQL database when I opened my account but do not any longer - this is why I was on windows server in first place.

    All the folks that have been hacked and think they cleaned it up and make all the good changes listed above but end up hacked again - a good chance that you did not clean it up as good as you thought.
     
    Joeey, Aug 11, 2009 IP
  4. anhbloginc

    anhbloginc Well-Known Member

    Messages:
    1,288
    Likes Received:
    15
    Best Answers:
    0
    Trophy Points:
    175
  5. willy4987

    willy4987 Active Member

    Messages:
    419
    Likes Received:
    0
    Best Answers:
    0
    Trophy Points:
    71
    #25
    i think the answes of this problem
    you must update for new wordpress
     
    willy4987, Aug 11, 2009 IP
  6. SteveWh

    SteveWh Member

    Messages:
    74
    Likes Received:
    3
    Best Answers:
    0
    Trophy Points:
    48
    #26
    SteveWh, Aug 13, 2009 IP
  7. brandon93s

    brandon93s Active Member

    Messages:
    798
    Likes Received:
    12
    Best Answers:
    0
    Trophy Points:
    85
    #27
    Hacked Again, or a different issue?

    d a i l y a u t o s b l o g . c o m - or click the link in my signature. Please look at the error on the left side and tell me if I was hacked again. I didn't have time to update to the most recent version of w.p. due to being away from the comp for many days but i had every other security measure imaginable in place.
     
    brandon93s, Aug 17, 2009 IP
  8. SteveWh

    SteveWh Member

    Messages:
    74
    Likes Received:
    3
    Best Answers:
    0
    Trophy Points:
    48
    #28
    The site is currently returning a file of 0 bytes length.
     
    SteveWh, Aug 17, 2009 IP
  9. brandon93s

    brandon93s Active Member

    Messages:
    798
    Likes Received:
    12
    Best Answers:
    0
    Trophy Points:
    85
    #29
    I see what you mean - nothing is showing up at all now.

    I was able to access my admin pannel and tried to update with automatic update and got an error message:

    Fatal error: Allowed memory size of 33554432 bytes exhausted (tried to allocate 2357046 bytes) in /file location on line 1327


    Edit: Line 1327 ( file = http.php ) is:
    " $parts = explode("\r\n\r\n", $theResponse); "

    Edit Edit: Site is currently loading with:
    "Fatal error: Allowed memory size of 33554432 bytes exhausted (tried to allocate 71 bytes) in /home5/threigsi/public_html/wp-includes/classes.php on line 918"
    Displayed in the side bar with nothing else.
     
    brandon93s, Aug 17, 2009 IP
  10. SteveWh

    SteveWh Member

    Messages:
    74
    Likes Received:
    3
    Best Answers:
    0
    Trophy Points:
    48
    #30
    Make sure you have local backup copies of your articles, database, everything important.

    See the links in my signature for step-by-step procedures.

    Don't skip the antivirus scans on your own PC.
    Because both these sites are on the same server at the same host, start communicating with your host about what has happened.

    Obtain your HTTP and FTP access logs for both sites. Do your FTP logs show people other than yourself making transfers?
     
    SteveWh, Aug 18, 2009 IP
  11. Cruth

    Cruth Peon

    Messages:
    1
    Likes Received:
    0
    Best Answers:
    0
    Trophy Points:
    0
    #31
    Check out wordpress forums. I have WP sites. My experience is that you look for security related plugins (look at the plugins - most popular list - at wordpress.org.

    also, use .htaccess files, if you are on shared hosting especially.

    Your hosting company can help, and should want to considering its a security issue.

    Hope this helps
     
    Cruth, Aug 18, 2009 IP
  12. Oranges

    Oranges Active Member

    Messages:
    2,610
    Likes Received:
    92
    Best Answers:
    0
    Trophy Points:
    90
    #32
    Looks like your mysql databse is infected. You can get your XML databse back up from your wp-admin> tools> Export, download that XML file + wp-content folder [ Important for uploads and Theme files]. and after getting all the backups, simply uninstall and re install your blog with fresh mysql database and restore [Import] your site will that XML database you exported from wp-admin.

    And from, now on keep updating your blog with every single security release from wordpress in your wp-admin. Let me know if you need any help regarding uninstalling it all and re installing it back.:)
     
    Oranges, Aug 18, 2009 IP
  13. SCLocal

    SCLocal Notable Member

    Messages:
    1,270
    Likes Received:
    58
    Best Answers:
    0
    Trophy Points:
    235
    #33
    If you've had an issue with someone repeatedly having your wordpress I advise (in addition to the quality suggestions sundaybrew made):

    1) Download and install a fresh, latest WordPress Version,
    2) Install the original Theme
    3) Make sure the perms are right for all the files (755,644,etc)

    Also, when downloading WordPress Themes, always download them from the Original Publisher/Creator's website, lots of times these 3rd Party 'clearing houses' for wordpress themes are distributing compromised versions.
     
    SCLocal, Aug 31, 2009 IP
  14. Earn at Home

    Earn at Home Peon

    Messages:
    240
    Likes Received:
    1
    Best Answers:
    0
    Trophy Points:
    0
    #34
    you do
    change template
    change list of plugins
    CHMOD all files to 664
     
    Earn at Home, Aug 31, 2009 IP
  15. epdrama

    epdrama Peon

    Messages:
    33
    Likes Received:
    0
    Best Answers:
    0
    Trophy Points:
    0
    #35
    make a strong password. hope it helps


     
    epdrama, Sep 1, 2009 IP
  16. brandon93s

    brandon93s Active Member

    Messages:
    798
    Likes Received:
    12
    Best Answers:
    0
    Trophy Points:
    85
    #36
    I exported just automatically thinking it would work, went to import and it was an empty xml file. Yay for wordpress. Lost all of my post.
     
    brandon93s, Sep 1, 2009 IP
  17. jtpratt

    jtpratt Well-Known Member

    Messages:
    170
    Likes Received:
    3
    Best Answers:
    0
    Trophy Points:
    123
    #37
    It could be your host, it could be your plugins, it could be your permissions, it could be the way you login or FTP files. Read my Wordpress Security Guide for completely free information and free tools to secure and harden your wordpress powered site from hackers and spambots.
     
    jtpratt, Sep 9, 2009 IP
  18. Aaron111

    Aaron111 Well-Known Member

    Messages:
    4,301
    Likes Received:
    29
    Best Answers:
    0
    Trophy Points:
    185
    #38
    awesome right up lol :0 im using these plugs now lol
     
    Aaron111, Sep 10, 2009 IP
  19. jacky8

    jacky8 Active Member

    Messages:
    1,416
    Likes Received:
    23
    Best Answers:
    0
    Trophy Points:
    80
    #39
    Is it necessary to backup all of your wordpress blogs often? I use hostgator and i heard that they backup their servers regularly?
    Do i still need to backup all my files and wordpress databases to prevent any loss caused by hackers? If Yes, then is there any tool to do it often for all the blogs as it can be quite a lot of work for those having multiple blogs.

    Please suggest..
    Thanks..
     
    jacky8, Sep 10, 2009 IP
  20. Aaron111

    Aaron111 Well-Known Member

    Messages:
    4,301
    Likes Received:
    29
    Best Answers:
    0
    Trophy Points:
    185
    #40
    also use the least amount of Plugs......... speedy servers are best .........
     
    Aaron111, Sep 10, 2009 IP