WordPress.org

Ready to get started?Download WordPress

Forums

Has my site been hacked? (9 posts)

  1. bamassippi
    Member
    Posted 6 years ago #

    I don't think so...I can still log in and stuff. But why is my homepage [landonhowell.com] always forwarding to this spam-type page?

  2. moshu
    Member
    Posted 6 years ago #

    Yes, it has.
    Change all your passwords.
    Check the index.php of your theme and the index.php at the root - there must be some redirect.
    Report it to your host.
    Set all your file permissions properly: no online editing of themes, that's how you guys invite the hackers to step in through the open doors...

  3. bamassippi
    Member
    Posted 6 years ago #

    I've already checked everything within my template... and there's no java/forwarding code.

    My host is GeoCities, and their website has been down all day. Do you think this may have something to do with my problem?

  4. moshu
    Member
    Posted 6 years ago #

    That might be...
    I also said: check the "short and sweet" index file in the root! (you don't need java: if I have access to your file it is enough to insert one [1] single line in the head)

  5. bamassippi
    Member
    Posted 6 years ago #

    What do you mean by: check the "short and sweet" index file in the root!

  6. Bodhipaksa
    Member
    Posted 6 years ago #

    Go to your site root. Check the contents of the index.php file that you'll find there.

  7. macsoft3
    Member
    Posted 6 years ago #

    FIND-FM.COM is a known sponsor harboring affiliate spammers. Did you check if there's a CGI script for redirection?

  8. bamassippi
    Member
    Posted 6 years ago #

    Ok....I'm a little more blog illiterate than I should be.

    1. How do I "go to my site root"?

    2. And what is: CGI script for redirection

  9. macsoft3
    Member
    Posted 6 years ago #

    >How do I "go to my site root"?

    I don't really have the answer since I don't use geocities. Is it a free account or paid one?

    If it's a paid one, you probably have access to your ftp server. Find public_html. You should have index.php in it. You may also have a folder titled cgi-bin inside public_html. If you do, look for something suspicious or look for ones with the latest date.

Topic Closed

This topic has been closed to new replies.

About this Topic

Tags