help i`ve been hacked

by 9 replies
10
hi everyone

i`m a total newbie,i`ve got hosting with justhost i`ve set up one site and its been hacked 3 times now.How can i fix this.i contacted justhost the first 2 times and they restored my site.i installed a security plugin changed my login password and cpanel password.

i looked around online and i don`t know if the plugins i`ve installed are secure or the theme i`m using,how can i check this.

i`m using the plugins recommended in the course i`m following and theme twentyten 1.1

any help or advise would be greatly appreciated :confused:
#programming #hacked #i`ve
  • I would imagine its your theme.. Im guessing you found a free one somewhere off the internet. If you are using a wordpress theme you should ONLY get them from word press dot org.

    I would post you a link to a program that can tell you if your theme is corrupt but since these forum owners dont see that its important for me to be able to share this link with you you will have to find it on google yourself.
  • The most hacks happen through the computer, not the scripts or server.

    This means that your computer is most likely infected with a keylogger or rather a trojan that receives and sends what you enter in your keyboard.

    My best tips, 1) install and update your AntiVirus, 2) install a firewall and review every application that connects to internet, any application you are unsure of? Block em! and 3) restart your computer in safe mode and do a full scan of your files.

    Good luck!

    Mike Tyler.
    • [1] reply
    • Correct. 99% of the hacks happen because the computer you use to login to your cpanel/ftp etc. has been infected with a keylogger.

      Instead of what mike told you, I would highly suggest that you format your complete computer right away and reinstall windows, install a antivirus, a firewall and than change your passwords etc.

      Most of the keyloggers cant be removed without a fresh install (too bad the bad guys know what they are doing).
      • [1] reply
  • Really sorry to hear that - I can understand how you feel.

    The advices above are good and, in addition, there are some other things you can do as well when re-installing WordPress.

    This article describes what happened to one of my customers who had a similar experience to you, and how we fixed it:

    WordPress Security: Not Just About WordPress | WealthyDragon

    Good luck with getting everything sorted out,

    Cheers,

    Martin.
  • i think the advice above me is good , why not you trying it ?
  • There may be some vulnerabilities with the code. Do you have any code that is custom coded that directly gets information from a database?
  • what kind of hacking? deface? break into the admin panel? something2? try to scan em ? is your password 15++ alphanumeric + symbol ? try to use ! 3x as a password.
  • [DELETED]
  • There are many ways you can protect your site.
    1. Update to the last version of your script
    2. Add some plugins of captchas preferred captcha II.
    3. Rename the superadministrator user and change password.
    4. Verify your email used for the admin user in the admin control

    Hope the info is usefull.

Next Topics on Trending Feed

  • 10

    hi everyone i`m a total newbie,i`ve got hosting with justhost i`ve set up one site and its been hacked 3 times now.How can i fix this.i contacted justhost the first 2 times and they restored my site.i installed a security plugin changed my login password and cpanel password.