I presume the backup destination is the directory/folder where you want to back up the database to, while those other options are if you want to back it up to a different server via FTP.
Do you have phpmyadmin installed? If you do, and someone guesses what directory you installed phpmyadmin to, they can get into your database, which could give someone full control of your WordPress.
Alternatively, if your password was easily guessable they might have gotten in that way.
Alternatively, check that you’re the only user on the server who has access to that database.
There goes my bold.
I tried using the old hitcounter code from my pre-Wordpress site, but for mysterious reasons it futzed with the Kubrick layout.
Thanks, that appears to have worked!
Ahh, thanks! I must have missed that.