Seems like my blog get hacked... (3 posts)

  1. earthshaver
    Posted 3 years ago #

    I'm sorry if I put this question at the wrong place...

    I haven't touched my blog for about a month, and when I checked it yesterday, I couldn't log-in, so I asked for Password Reset and found out that my username has been changed to pain. I've changed the password (but couldn't change the username), and today, the password got changed again.

    I never told anyone about my account information.

    I don't think I've made any change on the core files.

    I'm using customized (self-made) twenty-ten template.

    And this is a list of plug-ins which I'm using:
    - Akismet 2.5.6
    - Demon Image Annotations 2.4.8
    - Extend Comment 1.0
    - WP-CMS Post Control 2.5
    - WP-Cumulus 1.23
    - Comment Rating 2.9.32 (this is the only one which I didn't get from wordpress.org)

    Please someone help me! and who is this pain dude anyway?

    NB: oh, and it seems a fellow wp-user of mine is having a similiar problem with this (I'm not sure what plug-ins he's using though).

  2. JungleSpace.net
    Posted 3 years ago #

    1. Make sure to change your e-mail password.
    2. Change your hosting account password.
    3. Change your database account password.
    4. Change FTP account password and delete suspicious account.
    5. Delete other users which has admin account level in WordPress.
    6. Change your account to a new email address.

    Sometimes plugins do have vulnerabilities and can be exploited. You might want to turn off your plugins.

    If it still happens, you would need to install a trap code.

  3. JungleSpace.net
    Posted 3 years ago #

    Do use a password generator.

    Is your WordPress the latest version?

Topic Closed

This topic has been closed to new replies.

About this Topic