Forum Replies Created

Viewing 2 replies - 1 through 2 (of 2 total)
  • You know what, I think potentially I was misreading the data, I’ve just now received the following three log-in attempts:

    2014/03/05 09:13:01 — 5.157.55.184 felishav79 /wp-login.php passed
    2014/03/05 09:19:48 — 5.157.55.2 candelariaven /wp-login.php passed
    2014/03/05 09:34:31 — 5.157.36.171 jadabeeby /wp-login.php passed

    None of those users exist on my site and what I thought was a log in with my user name upon closer inspection has a dash in the name where my user name has none. Obviously they’re just random attempts.

    Apologies for wasting your time.

    I had a similar occurrence yesterday morning about 2:00 my time, from a Russian IP (supposedly). My site spammer history showed the following line:

    2014/03/04 02:28:28 — 94.185.85.44 ‘my user name’ /wp-login.php passed

    No other activity was recorded (i.e. the IP wasn’t whitelisted), or noted on site, I’ve changed my password of course, but I’m now concerned they may have gotten in with my password and left behind malicious code.

    My question – can one presume from that Spammer History log item that someone has successfully logged in or is it possible to spoof the plugin somehow??

    Thanks and sorry to hear you’re ‘retiring’! Thanks for an excellent plugin!

Viewing 2 replies - 1 through 2 (of 2 total)