Wordpress Themes - WP Forum at BFA
There will be no more development for Atahualpa (or any other theme), and no support. Also no new registrations. I turned off the donation system. I may turn the forum to read only if it gets abused for spam. Unfortunately I have no time for the forum or the themes. Thanks a lot to the people who helped in all these years, especially Larry and of course: Paul. Take care and stay healthy -- Flynn, Atahualpa developer, Sep 2021

Wordpress Themes - WP Forum at BFA » WordPress Themes » Atahualpa 3 Wordpress theme » New Versions, & Updating »

Help - Recovering from major hack


 
Prev Previous Post   Next Post Next
  #1  
Old Aug 21, 2010, 10:47 AM
mandrakeman1965
 
3 posts · Aug 2010
UK
Help - Recovering from major hack

Hi,

I am hoping someone can help me restore - or upgrade to latest version, the Atahualpa theme.

After a good few hours wrestling with a very annoying hack/virus as per AVG screen grab attached here, an Exploit Script Injection, I seem to have finally stopped it by replacing the Wordpress files - which you could see extra PHP code at the top of the infected files, and also as the theme seemed to be actually kick-starting the hijack, I've had to replace the code via FTP from the original install, but now it's very obviously not working quite right and I can't get into the 'admin log-in dashboard' to update etc!

If I were to get in and auto-update the theme, do i lose everything, as I don't really understand this system? I mean, the lightboxes, pictures, posts etc? I gather the posts are on the server database, so they shouldn't be touched, but the lightboxes, header images??

If someone can help me sort this out, I'm happy to donate. I oddly enough can/do build websites for loads of people but am new to Wordpress, this site being set-up about a year ago. The attacks started a few months back, but updating the plug-ins and Wordpress always seemed to right things until now. You can see the website as it currently is here: www.marinecourtapartment.co.uk
I've attached the log-in screen as it appears to me and the screen beyond it if you input your details and try to log-in.

I'm now very keen to get rid of this stupid hack and get the site functioning cleanly again and hopefully avoid this happening again, so all help very very much appreciated. Plus, any advice on how to avoid it happening again.

Thanks
Chris

p.s. i didn't really describe what was happening: If you could get onto the site, you could see by the status bar the a website 'dudecars' or something was madly trying to do something, but more often, you couldn't get to the site, or log-in screen, you'd be taken to a site pretending to be a windows folder that was 'scanning' for virus problems... may the bastards who wreck peoples hard work rot!
Attached Thumbnails
Click image for larger version

Name:	avg.jpg
Views:	2243
Size:	106.4 KB
ID:	692  Click image for larger version

Name:	wp.jpg
Views:	2227
Size:	192.7 KB
ID:	693  Click image for larger version

Name:	current login screen.jpg
Views:	1329
Size:	154.3 KB
ID:	694  Click image for larger version

Name:	if you try to login.jpg
Views:	1330
Size:	175.4 KB
ID:	695  
 

Bookmarks



Similar Threads
Thread Thread Starter Forum Replies Last Post
Testing new thread, question about hack paulae Atahualpa 3 Wordpress theme 1 May 18, 2010 01:45 PM
Major SEO Problem kesbo Atahualpa 3 Wordpress theme 10 May 10, 2010 05:00 AM
admin-ajax-php hack? CHi106 Atahualpa 3 Wordpress theme 0 May 16, 2009 05:01 PM
A hack to align page navigation menu to center araneum Page & Category Menu Bars 8 Apr 9, 2009 07:48 PM


All times are GMT -6. The time now is 11:52 AM.


Powered by vBulletin® Copyright ©2000 - 2024, Jelsoft Enterprises Ltd.