help i`ve been hacked

9 replies
hi everyone

i`m a total newbie,i`ve got hosting with justhost i`ve set up one site and its been hacked 3 times now.How can i fix this.i contacted justhost the first 2 times and they restored my site.i installed a security plugin changed my login password and cpanel password.

i looked around online and i don`t know if the plugins i`ve installed are secure or the theme i`m using,how can i check this.

i`m using the plugins recommended in the course i`m following and theme twentyten 1.1

any help or advise would be greatly appreciated :confused:
#hacked #i`ve
  • Profile picture of the author newbie365
    I would imagine its your theme.. Im guessing you found a free one somewhere off the internet. If you are using a wordpress theme you should ONLY get them from word press dot org.

    I would post you a link to a program that can tell you if your theme is corrupt but since these forum owners dont see that its important for me to be able to share this link with you you will have to find it on google yourself.
    {{ DiscussionBoard.errors[3915676].message }}
  • Profile picture of the author Mike Tyler
    The most hacks happen through the computer, not the scripts or server.

    This means that your computer is most likely infected with a keylogger or rather a trojan that receives and sends what you enter in your keyboard.

    My best tips, 1) install and update your AntiVirus, 2) install a firewall and review every application that connects to internet, any application you are unsure of? Block em! and 3) restart your computer in safe mode and do a full scan of your files.

    Good luck!

    Mike Tyler.
    Signature

    {{ DiscussionBoard.errors[3915713].message }}
    • Profile picture of the author andrejvasso
      Originally Posted by Mike Tyler View Post

      The most hacks happen through the computer, not the scripts or server.

      This means that your computer is most likely infected with a keylogger or rather a trojan that receives and sends what you enter in your keyboard.

      My best tips, 1) install and update your AntiVirus, 2) install a firewall and review every application that connects to internet, any application you are unsure of? Block em! and 3) restart your computer in safe mode and do a full scan of your files.

      Good luck!

      Mike Tyler.
      Correct. 99% of the hacks happen because the computer you use to login to your cpanel/ftp etc. has been infected with a keylogger.

      Instead of what mike told you, I would highly suggest that you format your complete computer right away and reinstall windows, install a antivirus, a firewall and than change your passwords etc.

      Most of the keyloggers cant be removed without a fresh install (too bad the bad guys know what they are doing).
      {{ DiscussionBoard.errors[3915895].message }}
      • Profile picture of the author deedonkee
        thanks guys looks like i`ve learned another valuable lesson.God bless this forum
        {{ DiscussionBoard.errors[3915932].message }}
  • Profile picture of the author Abledragon
    Really sorry to hear that - I can understand how you feel.

    The advices above are good and, in addition, there are some other things you can do as well when re-installing WordPress.

    This article describes what happened to one of my customers who had a similar experience to you, and how we fixed it:

    WordPress Security: Not Just About WordPress | WealthyDragon

    Good luck with getting everything sorted out,

    Cheers,

    Martin.
    Signature
    WealthyDragon - Earning My Living Online
    {{ DiscussionBoard.errors[3916517].message }}
  • Profile picture of the author Razarulz
    i think the advice above me is good , why not you trying it ?
    Signature
    Need High page rangking ??, Proven WSO service and fastest result ? Click HERE Holy Grail of BACKLINKS you'll get what you search Promo 100% bonus backlinks until 15th july 2011 !!
    {{ DiscussionBoard.errors[3940486].message }}
  • Profile picture of the author Fuze
    There may be some vulnerabilities with the code. Do you have any code that is custom coded that directly gets information from a database?
    {{ DiscussionBoard.errors[3941029].message }}
  • Profile picture of the author Heimdalx
    what kind of hacking? deface? break into the admin panel? something2? try to scan em ? is your password 15++ alphanumeric + symbol ? try to use ! 3x as a password.
    {{ DiscussionBoard.errors[3951022].message }}
  • Profile picture of the author rolandkeys
    There are many ways you can protect your site.
    1. Update to the last version of your script
    2. Add some plugins of captchas preferred captcha II.
    3. Rename the superadministrator user and change password.
    4. Verify your email used for the admin user in the admin control

    Hope the info is usefull.
    {{ DiscussionBoard.errors[3975693].message }}

Trending Topics