BEWARE!!! Wordpress HACKER!!

blackhatjeiboy

Registered Member
Joined
Jun 14, 2011
Messages
77
Reaction score
29
Wordpress users out there you must aware on this, my client was one of the victim of this wordpress hacker.

Go to google and type "Hacked By Yachiine" and check how many wordpress sites was hacked. The hacker changed the index page of the site into a dark color with a boy standing carrying a black rose. And anyone knows how to solve this?
 
  • remember to update your WP :)
  • always use proper passwords like: Pa$$w0rd <- upper, lower case, special signs and numbers.
  • generate proper ftp passwords
  • update all themes which use timthumb!
  • change default admin - login to your username

and you should be fine :)
 
Are you the hacker? :) just kidding, anyway thanks for that info dude. my client's WP is updated and passwords are made properly, only the username he use is admin I think that's the reason, but I have a question why do you say update all themes which use timthumb ?
 
but I have a question why do you say update all themes which use timthumb ?

A handful of my sites were hacked last month because my theme used timthumb. A lot of people just checked for the plugin.

I had actually checked for thumb.php etc (and updated the file in one theme I was using) but the developers had re-named the file in my case.

So yeah, I agree with Aiteampl, update your themes also, asap, before Google blacklists your sites.
 
I think his not really that smart. He uses the same image for every website.,

I think this is his facebook account base on the id of the images

Code:
http://www.facebook.com/profile.php?id=100001487030524&sk=wall
 
I think his not really that smart. He uses the same image for every website.,

I think this is his facebook account base on the id of the images

Code:
http://www.facebook.com/profile.php?id=100001487030524&sk=wall

Yahp, its his facebook page alright. base on his email. LOL, why is he using his real email. You can sue him for this. Its illegal when touched others property, Based on his performance his just a kiddie
 
Make sure your wordpress version is the latest one, and I believe there are a number of plugins available to help guard your site against hackers
 
Hi
Do you know what the exploit this guy use?
I interrested in how he can do that.
I am not saying i want to do the same :D just understand how to do that...
Thanks for answers..
 
Hi
Do you know what the exploit this guy use?
I interrested in how he can do that.
I am not saying i want to do the same :D just understand how to do that...
Thanks for answers..

After playing L.A. Noire I doubt it that you want to do the same
 
When I was 13, I used to find wordpress sites which were hacked the same way, get in touch with the owner to make out some quick cash :D

There is some site called team-h or something so, which is a hackers group, where hackers hack websites, and list them up which made things easier.

I left doing that as the no. of replies declined to nil. Never tried it later on. What I did was export the posts etc from wp-admin, and do a fresh install and then import it back. Not the best thing, but was easy as I tell the owners that "I will have to remove all the plugins to fix them perfectly."


And yeah, keep your anonymous FTP off.
 
I think they use what they so called "UNICODE exploit" or DOS (denial of service) to deface a certain page of you site but i don;t know if it still works this day...It is like a code that they put into his browser and to test if your site is vulnerable for that certain unicode or not -->like this yourdomainame/cgi-bin/_v_t_i/20%cmd+dirc:\) something like this... But i don't know if this still work...
 
Last week i Got a visit from "Black cat" my stat shows weird links,all i did is installing a bunch of security plugin ,i hope nothing bad happens since it's my first blog!!:cool:
 
No, it doesn't work these days, that vulnerability is so ancient :D
But now the hackers mostly attack using SQL injection vulnerabilities.

I think they use what they so called "UNICODE exploit" or DOS (denial of service) to deface a certain page of you site but i don;t know if it still works this day...It is like a code that they put into his browser and to test if your site is vulnerable for that certain unicode or not -->like this yourdomainame/cgi-bin/_v_t_i/20%cmd+dirc:\) something like this... But i don't know if this still work...
 
All mu aites where hacked last week.
I got in touch with hostgator and they fixed it
Dont know how it was done.
but i guess I was lucly
 
Just got hit with SQL Injection. Links in all my 80+ posts.. fml

I swear I'm gonna go back to xsitepro one of these days.. ughhh
 
Back
Top