One of My Sites Has Being Hacked

by allswl
11 replies
Hi ...

One of my sites has being hacked again. I just realized this today.

It was hacked about 6 weeks ago and I contacted the host which is Javlinhost (it is the only site on this host) and they sent me a link of what to do after they had restored my cpanel..I did what was advised and the site was back up and now here we go again....

the site is a WordPress site....

I have sent an email to the host and I am awaiting their reply..but I want to secure my site....what should I do?

Regards
#hacked #sites
  • Profile picture of the author NickVCover
    Did you have any security plugins?
    {{ DiscussionBoard.errors[5709277].message }}
  • Profile picture of the author MarlboroMonkey
    Look up a plugin called Website Defender. They have a couple and they'll give you some pointers on securing Wordpress a bit and it's free. You might also look into a plugin called Wordpress Firewall 2. Finally, consider using Incapsula or Cloudflare reverse proxies for your sites. These help in securing up sites altogether.

    If you're capable, you need to find the hole that was exploited though and patch it specifically.
    Signature
    SentientAds.com - The Evolution of Display Ads
    {{ DiscussionBoard.errors[5709283].message }}
  • Profile picture of the author everydayreviews
    set up your nameserver through cloudflare. they block out bad traffic
    {{ DiscussionBoard.errors[5709352].message }}
  • Profile picture of the author allswl
    @NickVCover..no dont have any security plugins..can u suggest a few?
    @MarlboroMonkey...thanks for your response..i will give it a look
    @everydayreviews..I will give it a look
    Signature

    Learn the little-known secrets to starting, growing, and promoting a wildly profitable e-business
    http://www.marketingtips.com/t.cgi/908110

    {{ DiscussionBoard.errors[5709435].message }}
    • Profile picture of the author clintprexis
      Originally Posted by allswl View Post

      @NickVCover..no dont have any security plugins..can u suggest a few?
      @MarlboroMonkey...thanks for your response..i will give it a look
      @everydayreviews..I will give it a look
      Here's another thing you might able to do:

      Since you are using wordpress..

      1. Ensure your hosting is reliable. Read some reviews that they have? What are the other experiences negative and positive?

      Just so you know..I've been through different hosting before..from free to paid..and my experiences with free hosting was horrible(been hacked a lot of times) but a lot of things I learned from there.

      If you found out that your hosting isn't good to consider and stay..then keep away on that hosting! I'm using mochahost hosting for now..but I would not recommend it yet..it's cheap yet I never had a year of experience to their hosting.. try considering bluehost or either hostgator as the best options.

      2. Setup your wordpress..
      Here is one of a good practice you might need to do.

      *Put wordpress in different installation directory instead in your root domain..such..yourdomain.com/xyzlogin.. that you're the only one who knew the exact address or the installation directory.

      *Get the necessary plugins you need..
      *Yoast SEO?, cbenetoptimizer, etc?

      3. Install W3 Total Cache..
      This will help on the increase of speed on your website. You will also need this to setup your cloudflare as in the next suggestion..

      4. Register on Cloudflare.com
      It's free and you can have the a good security level of your site. And adds on the speed of your website. Simple to setup with minimum technical needs!

      5. Use a security plugin such.
      *Better WP Security bit51.com/software/better-wp-security/
      or
      *BPS Security

      These plugins helps adds a security on your wordpress.. Make sure to have a good use of them.

      One good advice.. if you're working on your site..minimize using any VPN or proxy services.. Also work on your own pc or mac...not anywhere else. Save your password securely(use Secure Password too)...you can use lastpass or roboform.

      Hope this helps! Thank you :-)

      --
      Clint
      {{ DiscussionBoard.errors[5710066].message }}
  • Profile picture of the author failideas
    i've seen till moment 2 wordpress sites that were infected with a uni.me subdomain that tries to load a pdf file that will install a anti malware program.

    did you have this uni.me subdmomain in your system?
    Signature
    Dental WordPress Theme - Dentist WP Theme - Lawyer WordPress Theme

    ++ Theme Release News and Promotions > submit here
    Affiliates - wanna make good money. Subscribe here Affiliates List
    {{ DiscussionBoard.errors[5709694].message }}
  • Profile picture of the author Suraj Muralee
    Acutally, How was your site hacked? If you can find that out, we can fix the doors.
    {{ DiscussionBoard.errors[5710224].message }}
  • Profile picture of the author jambukiyajignesh
    Web Hosting
    ngofrfastincome.com
    {{ DiscussionBoard.errors[5710593].message }}
  • Profile picture of the author dunczmarketing
    A few of my sites did get hacked.
    I use fiverr.com for some quick fixes, they even add security after removing.
    Here's one gig I've used fix your hacked wordpress site for $5 - wordpress_seo
    {{ DiscussionBoard.errors[5710728].message }}
  • Profile picture of the author Krisz
    Hi there,

    I'm using Better WP Security(WordPress) and I have a problem I can't find a solution for. I having problem logging in to the blog. I've tried all the possible ways. The only way I can log in if I go into Filezilla and change the .htaccess to 000.htaccess and change the permissions to 666 or 755. I have white listed the IP but it still give me the same problem(the page doesn't exist) without changing the .htaccess.
    Please let me know if you have an answer/solution for this.

    Kind regards,

    Krisz
    {{ DiscussionBoard.errors[6932421].message }}
  • Profile picture of the author Jdunhin
    Wordfence is a good plugin to use!
    Signature

    We handle all your WordPress Content,Theme and Plugins updates!
    iAdminWP

    {{ DiscussionBoard.errors[6932800].message }}

Trending Topics