WordPress.org

Support

Support » Miscellaneous » [Resolved] My blog keeps getting attacked

[Resolved] My blog keeps getting attacked

  • Florence

    @floortjahh

    So I run a cute and girly cooking blog. It’s not very big, has very few users and it is intended for me and my girlfriends to post our favorite recipes.

    The past 2 days WordPress Firewall 2 has been very busy with blocking potential attacks. I keep getting notifications in waves, every 15 minutes, 20 at a time. It’s the same IP address every time.

    So what do I do? Will they be able to get in? How long will they keep this up? And WHY would they want to hack my website?

    Is there anyone with experience with this?

Viewing 15 replies - 1 through 15 (of 21 total)
  • Florence

    @floortjahh

    Oh and another thing. Ever since the attacks started, Google Chrome won’t open my website anymore. Internet Explorer and Safari will open it.

    Geez who are these people?!

    Moderator Ipstenu (Mika Epstein)

    @ipstenu

    Check your site on http://sitecheck.sucuri.net/scanner/ to make sure you don’t have any malware first.

    Then ask your host for help as they may be able to block things from their end.

    Florence

    @floortjahh

    Thanks Ipstenu! I didn’t know about that website, very handy! Appearently my blog is clean. I wonder why Google Chrome doesn’t open it any more. It still shows up in Google search engine…

    Moderator Ipstenu (Mika Epstein)

    @ipstenu

    If it’s the URL in your profile, it opened fine for me in Chrome.

    Florence

    @floortjahh

    Strange… it’s http://www.cookingblondes.nl/
    Geez they just tried again. 2 waves of 20 within 5 minutes. They must really want to get in :s

    Florence

    @floortjahh

    Oh I think it had something to do with cookies. I deleted all cooking from the Cooking Blondes site and now it works again. But these hackers are still bugging me… I guess there’s not much I can do?

    Moderator Ipstenu (Mika Epstein)

    @ipstenu

    Tell your webhost. They may be able to help. There’s server-side stuff you can do, but you may not have access to your firewall on the server.

    Florence

    @floortjahh

    Ok I’ll send them an email. Thank you for the help!

    demlasjr

    @demlasjr

    Hi Florence. Your website is opening pretty good for me. However, to avoid the downtime, the attacks and the slow opening pages, I suggest you using Cloudflare too. It’s free and easy to configure. They will block any attack and you have enjoying the free CDN too 🙂

    I can guide and help you if you need. I would be happy. Just let me know.

    Florence

    @floortjahh

    Yeah um… So someone suggested the WP-ban plugin, since it was the same IP adress every time. I copied the adress from the emails I got from WordPress Firewall 2, pasted it into the WP-ban and….

    …I managed to ban myself…

    How strange that the offending IP adress was me! I have to wait until tomorrow, so I can get onto another machine and unban my IP adress. I can’t install Cloudflare until then. Is it realy that slow? Thanks for the feedback 🙂

    Moderator Ipstenu (Mika Epstein)

    @ipstenu

    I am laughing because I’ve been in IT for yonks and I’ve done this to myself SO many times.

    Can you get in via FTP to your domain? If so, just go in and delete the wp-ban folder from your wp-content/plugins directory.

    THEN go into WordPress Firewall 2 and add that IP as a whitelisted IP.

    Florence

    @floortjahh

    I logged in with a smartphone and unbanned myself. Yeah, good idea, whitelist myself 🙂 Gosh, I’m so confused…

    demlasjr

    @demlasjr

    Ipstenu…you don’t really need to delete it, if you rename it will work too 🙂

    @florence: Cloudflare is more related to your domain registrar than your wordpress 🙂 You can leave that IP unblocked…or block it in Cloudflare panel too.

    demlasjr

    @demlasjr

    One more thing Florence:

    – Cache your content
    – Minify your javascript, css and html

    This will make your website 10x faster. Isn’t so slow, but isn’t enough to get you far away 🙂

    Also…try a more attractive theme 😉

    Moderator Ipstenu (Mika Epstein)

    @ipstenu

    True you don’t need to delete it, but IMO you don’t need it at all (banning by IP is ineffective).

Viewing 15 replies - 1 through 15 (of 21 total)
  • The topic ‘[Resolved] My blog keeps getting attacked’ is closed to new replies.
Skip to toolbar