StudioPress Community Forums
  StudioPress Community Forums > Forums > General Discussion
For help and support, access to your downloads, or to manage your account please log into My StudioPress.

These forums have been set to read-only so you can browse the existing topics for any questions you may have.

For general discussion on WordPress, CSS and design (NOT for support) visit the new Community Forums.
 
 
Thread Tools Display Modes
  #1  
Old 11-04-2012, 12:06 PM
vfontjr's Avatar
vfontjr vfontjr is offline
Registered User
Pro Plus Member
 
Join Date: Aug 2011
Location: Raleigh, NC
Posts: 73
Default Website Hacked - Any thoughts??

A site I have manage somehow got hacked and defaced. The site is heartofmyheartorphanage.org. It uses the Genesis Outreach (Ver. 1) theme. I’ve repaired the damage, but thought you might appreciate the details. The hackers:

1. Changed the site’s admin account back to the default admin name and erased the admin email.
2. Installed a plugin called [iframe]
3. Replaced the site’s functions.php file with one of their own.

If anyone has any thoughts on how they did this, I'd appreciate hearing your ideas.
__________________
Regards,

Victor
www.victorfont.com
Project Success=A Great SDLC!—www.ultimatesdlc.com, the only IT book you'll ever need!
  #2  
Old 11-04-2012, 06:56 PM
NicktheGeek's Avatar
NicktheGeek NicktheGeek is offline
Forum Manager
 
Join Date: Feb 2010
Posts: 62,650
Default

It can be a beast since it can occur in more than way. If you are lucky you can fix it by:
  • Replace all WordPress files except the wp-config.php file via FTP with a new clean download from wp.org
  • Delete all themes you aren't using including Genesis
  • Delete all plugins
  • Upload a new copy of Genesis and remove any malicious code from the child theme. Since the child theme is simple it should be easy to identify code that wasn't part of the original theme or code you added.
  • Log back into WordPress and change your password
  • remove any users you don't recognize
  • upload your plugins again, make sure they are clean copies
  • change FTP passwords and do a virus scan on your computer and any other computer that has FTP or admin access to the site.

You should check out this article
http://www.copyblogger.com/wordpress-website-security/
__________________
Nick "Fred and/or George Weasley" Croft
Designs by Nick the Geek
@Nick_theGeek on Twitter

Make web design easier, get FireBug for FireFox

Want to learn more about Genesis? Check out my Genesis Explained Series

 

Thread Tools
Display Modes

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is On
HTML code is Off

Forum Jump

Similar Threads
Thread Thread Starter Forum Replies Last Post
Header displays 1/2 way in IE - any thoughts? colleenbain General Discussion 6 11-25-2009 04:42 PM
Any thoughts about Integrating SP Themes with BB Press? rharejr General Discussion 4 09-29-2009 10:55 AM
Shattered Thoughts mountash General Discussion 3 08-10-2009 04:52 PM
My new site using lifestyle ...thoughts pyramatboy General Discussion 3 03-10-2009 08:54 AM


All times are GMT -5. The time now is 10:17 AM.

Powered by vBulletin® Version 3.8.4
Copyright ©2000 - 2013, Jelsoft Enterprises Ltd.