<?xml version="1.0" encoding="UTF-8"?><rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
		>
<channel>
	<title>Comments on: Website hacking issues</title>
	<atom:link href="http://www.gdstarrating.com/2010/01/13/website-hacking-issues/feed/" rel="self" type="application/rss+xml" />
	<link>http://www.gdstarrating.com/2010/01/13/website-hacking-issues/</link>
	<description>A WordPress Rating System</description>
	<lastBuildDate>Sun, 06 Nov 2011 22:12:31 +0000</lastBuildDate>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	
	<item>
		<title>By: MillaN</title>
		<link>http://www.gdstarrating.com/2010/01/13/website-hacking-issues/comment-page-1/#comment-6366</link>
		<dc:creator>MillaN</dc:creator>
		<pubDate>Thu, 11 Feb 2010 12:06:11 +0000</pubDate>
		<guid isPermaLink="false">http://www.gdstarrating.com/?p=1641#comment-6366</guid>
		<description>Thanks. I am building much more advanced plugin for this same job, but for now this is a good start.</description>
		<content:encoded><![CDATA[<p>Thanks. I am building much more advanced plugin for this same job, but for now this is a good start.</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Randy Brown</title>
		<link>http://www.gdstarrating.com/2010/01/13/website-hacking-issues/comment-page-1/#comment-6335</link>
		<dc:creator>Randy Brown</dc:creator>
		<pubDate>Tue, 09 Feb 2010 01:46:18 +0000</pubDate>
		<guid isPermaLink="false">http://www.gdstarrating.com/?p=1641#comment-6335</guid>
		<description>WordPress File Monitor Plugin will provide you with
an email of a time when files are changed.

get it here:

http://www.wpbeginner.com/plugins/wp-security-wordpress-file-monitor-plugin/

Look for a pattern in when events occur that modify the header file. Every little bit of info is critical when trying to solve these issues.</description>
		<content:encoded><![CDATA[<p>WordPress File Monitor Plugin will provide you with<br />
an email of a time when files are changed.</p>
<p>get it here:</p>
<p><a href="http://www.wpbeginner.com/plugins/wp-security-wordpress-file-monitor-plugin/" rel="nofollow">http://www.wpbeginner.com/plugins/wp-security-wordpress-file-monitor-plugin/</a></p>
<p>Look for a pattern in when events occur that modify the header file. Every little bit of info is critical when trying to solve these issues.</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: MillaN</title>
		<link>http://www.gdstarrating.com/2010/01/13/website-hacking-issues/comment-page-1/#comment-6187</link>
		<dc:creator>MillaN</dc:creator>
		<pubDate>Fri, 29 Jan 2010 00:57:35 +0000</pubDate>
		<guid isPermaLink="false">http://www.gdstarrating.com/?p=1641#comment-6187</guid>
		<description>Already did that, but I can do it again, maybe I overlooked something. Also, this website will soon get new theme and most of the things will be made from scratch starting with full WP install, DB and files cleanup and server settings review.</description>
		<content:encoded><![CDATA[<p>Already did that, but I can do it again, maybe I overlooked something. Also, this website will soon get new theme and most of the things will be made from scratch starting with full WP install, DB and files cleanup and server settings review.</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Grant</title>
		<link>http://www.gdstarrating.com/2010/01/13/website-hacking-issues/comment-page-1/#comment-6186</link>
		<dc:creator>Grant</dc:creator>
		<pubDate>Thu, 28 Jan 2010 23:48:44 +0000</pubDate>
		<guid isPermaLink="false">http://www.gdstarrating.com/?p=1641#comment-6186</guid>
		<description>Hi Millan.

Ban them at .htaccess level!

Also check that your .htaccess file is setup properly. I had a similar problem when a plugin modified my .htaccess than a few days later I had modified header.php and footer.php</description>
		<content:encoded><![CDATA[<p>Hi Millan.</p>
<p>Ban them at .htaccess level!</p>
<p>Also check that your .htaccess file is setup properly. I had a similar problem when a plugin modified my .htaccess than a few days later I had modified header.php and footer.php</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: c hanna</title>
		<link>http://www.gdstarrating.com/2010/01/13/website-hacking-issues/comment-page-1/#comment-6099</link>
		<dc:creator>c hanna</dc:creator>
		<pubDate>Wed, 20 Jan 2010 00:20:54 +0000</pubDate>
		<guid isPermaLink="false">http://www.gdstarrating.com/?p=1641#comment-6099</guid>
		<description>Thank you everyone for the help. I&#039;ll try these last two ways. thankyou</description>
		<content:encoded><![CDATA[<p>Thank you everyone for the help. I&#8217;ll try these last two ways. thankyou</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Claudiu Popescu</title>
		<link>http://www.gdstarrating.com/2010/01/13/website-hacking-issues/comment-page-1/#comment-6093</link>
		<dc:creator>Claudiu Popescu</dc:creator>
		<pubDate>Tue, 19 Jan 2010 08:20:02 +0000</pubDate>
		<guid isPermaLink="false">http://www.gdstarrating.com/?p=1641#comment-6093</guid>
		<description>You can ask your web hosting provider to block that IP from the server&#039;s firewall, explain to them what is that ip doing and maybe you will get lucky. If you have a dedicated ip address for your web site, then they can block this ip only for your web site.</description>
		<content:encoded><![CDATA[<p>You can ask your web hosting provider to block that IP from the server&#8217;s firewall, explain to them what is that ip doing and maybe you will get lucky. If you have a dedicated ip address for your web site, then they can block this ip only for your web site.</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: MillaN</title>
		<link>http://www.gdstarrating.com/2010/01/13/website-hacking-issues/comment-page-1/#comment-6080</link>
		<dc:creator>MillaN</dc:creator>
		<pubDate>Tue, 19 Jan 2010 01:04:07 +0000</pubDate>
		<guid isPermaLink="false">http://www.gdstarrating.com/?p=1641#comment-6080</guid>
		<description>Try finding some plugin that can filter IP addresses completely and prevent access to website.</description>
		<content:encoded><![CDATA[<p>Try finding some plugin that can filter IP addresses completely and prevent access to website.</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: c hanna</title>
		<link>http://www.gdstarrating.com/2010/01/13/website-hacking-issues/comment-page-1/#comment-6076</link>
		<dc:creator>c hanna</dc:creator>
		<pubDate>Mon, 18 Jan 2010 22:15:25 +0000</pubDate>
		<guid isPermaLink="false">http://www.gdstarrating.com/?p=1641#comment-6076</guid>
		<description>Do you know how to ban this guy. He is in again. here is the strange website that they come in from:
mmacomments dot com

Ya, he&#039;s in there again right now. hahaha!</description>
		<content:encoded><![CDATA[<p>Do you know how to ban this guy. He is in again. here is the strange website that they come in from:<br />
mmacomments dot com</p>
<p>Ya, he&#8217;s in there again right now. hahaha!</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: MillaN</title>
		<link>http://www.gdstarrating.com/2010/01/13/website-hacking-issues/comment-page-1/#comment-6071</link>
		<dc:creator>MillaN</dc:creator>
		<pubDate>Mon, 18 Jan 2010 17:51:48 +0000</pubDate>
		<guid isPermaLink="false">http://www.gdstarrating.com/?p=1641#comment-6071</guid>
		<description>Plugin IP filter only works for plugin, and filters votes, doesn&#039;t prevent user for doing anything else on the website.</description>
		<content:encoded><![CDATA[<p>Plugin IP filter only works for plugin, and filters votes, doesn&#8217;t prevent user for doing anything else on the website.</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: c hanna</title>
		<link>http://www.gdstarrating.com/2010/01/13/website-hacking-issues/comment-page-1/#comment-6070</link>
		<dc:creator>c hanna</dc:creator>
		<pubDate>Mon, 18 Jan 2010 17:23:18 +0000</pubDate>
		<guid isPermaLink="false">http://www.gdstarrating.com/?p=1641#comment-6070</guid>
		<description>I just used the ban IP Masked and it took it. I&#039;m not sure what masked means, but it took it there. Hopefully this will do the trick. He just left another comment, always uses different name but its the same IP each time.</description>
		<content:encoded><![CDATA[<p>I just used the ban IP Masked and it took it. I&#8217;m not sure what masked means, but it took it there. Hopefully this will do the trick. He just left another comment, always uses different name but its the same IP each time.</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: MillaN</title>
		<link>http://www.gdstarrating.com/2010/01/13/website-hacking-issues/comment-page-1/#comment-6064</link>
		<dc:creator>MillaN</dc:creator>
		<pubDate>Mon, 18 Jan 2010 01:25:08 +0000</pubDate>
		<guid isPermaLink="false">http://www.gdstarrating.com/?p=1641#comment-6064</guid>
		<description>You add IP and it&#039;s not saved to the banned list on the IP panel? The only known way for this to happen is if the IP is invalid. Plugin checks the format before saving it.</description>
		<content:encoded><![CDATA[<p>You add IP and it&#8217;s not saved to the banned list on the IP panel? The only known way for this to happen is if the IP is invalid. Plugin checks the format before saving it.</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: c hanna</title>
		<link>http://www.gdstarrating.com/2010/01/13/website-hacking-issues/comment-page-1/#comment-6062</link>
		<dc:creator>c hanna</dc:creator>
		<pubDate>Mon, 18 Jan 2010 00:29:01 +0000</pubDate>
		<guid isPermaLink="false">http://www.gdstarrating.com/?p=1641#comment-6062</guid>
		<description>Right. I went into the IP for Gd starrating and that is where I banned the one person. The other one I tried but it doesn&#039;t take. 

Do you think its some kind of hacker? I don&#039;t know why they would, I don&#039;t have any sales or pay pal stuff. 

It must not be anything to do with the gd rating. I will call my host and maybe they can tell what&#039;s going on with this particular IP.

Thanks. At least I narrowed it down a little.</description>
		<content:encoded><![CDATA[<p>Right. I went into the IP for Gd starrating and that is where I banned the one person. The other one I tried but it doesn&#8217;t take. </p>
<p>Do you think its some kind of hacker? I don&#8217;t know why they would, I don&#8217;t have any sales or pay pal stuff. </p>
<p>It must not be anything to do with the gd rating. I will call my host and maybe they can tell what&#8217;s going on with this particular IP.</p>
<p>Thanks. At least I narrowed it down a little.</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: MillaN</title>
		<link>http://www.gdstarrating.com/2010/01/13/website-hacking-issues/comment-page-1/#comment-6061</link>
		<dc:creator>MillaN</dc:creator>
		<pubDate>Mon, 18 Jan 2010 00:07:53 +0000</pubDate>
		<guid isPermaLink="false">http://www.gdstarrating.com/?p=1641#comment-6061</guid>
		<description>Is the IP added to the banned list on IP panel? And if it is, how do you now that plugin is not banning that one. I have tested and it&#039;s working fine. On this website I have some 20 IP&#039;s in the list and as far as I can tell, banning works fine.</description>
		<content:encoded><![CDATA[<p>Is the IP added to the banned list on IP panel? And if it is, how do you now that plugin is not banning that one. I have tested and it&#8217;s working fine. On this website I have some 20 IP&#8217;s in the list and as far as I can tell, banning works fine.</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: c hanna</title>
		<link>http://www.gdstarrating.com/2010/01/13/website-hacking-issues/comment-page-1/#comment-6057</link>
		<dc:creator>c hanna</dc:creator>
		<pubDate>Sun, 17 Jan 2010 18:35:10 +0000</pubDate>
		<guid isPermaLink="false">http://www.gdstarrating.com/?p=1641#comment-6057</guid>
		<description>thanks. So far just tried the two. One banned ok the other one did not.</description>
		<content:encoded><![CDATA[<p>thanks. So far just tried the two. One banned ok the other one did not.</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: MillaN</title>
		<link>http://www.gdstarrating.com/2010/01/13/website-hacking-issues/comment-page-1/#comment-6056</link>
		<dc:creator>MillaN</dc:creator>
		<pubDate>Sun, 17 Jan 2010 11:16:46 +0000</pubDate>
		<guid isPermaLink="false">http://www.gdstarrating.com/?p=1641#comment-6056</guid>
		<description>I will check why IP is not banning.</description>
		<content:encoded><![CDATA[<p>I will check why IP is not banning.</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: MillaN</title>
		<link>http://www.gdstarrating.com/2010/01/13/website-hacking-issues/comment-page-1/#comment-6055</link>
		<dc:creator>MillaN</dc:creator>
		<pubDate>Sun, 17 Jan 2010 11:16:26 +0000</pubDate>
		<guid isPermaLink="false">http://www.gdstarrating.com/?p=1641#comment-6055</guid>
		<description>WP Security Scan is pretty useless plugin, everything that it does I always implement and check on my own for each website. On the same host, I have Dev4Press and TVScape hosted, and only this website is under attack daily.</description>
		<content:encoded><![CDATA[<p>WP Security Scan is pretty useless plugin, everything that it does I always implement and check on my own for each website. On the same host, I have Dev4Press and TVScape hosted, and only this website is under attack daily.</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: c hanna</title>
		<link>http://www.gdstarrating.com/2010/01/13/website-hacking-issues/comment-page-1/#comment-6054</link>
		<dc:creator>c hanna</dc:creator>
		<pubDate>Sun, 17 Jan 2010 04:40:28 +0000</pubDate>
		<guid isPermaLink="false">http://www.gdstarrating.com/?p=1641#comment-6054</guid>
		<description>Hi,
I have the Star rating now on my wordpress site. I went to the IP part to ban this one commenter that leaves strange stuff, but it won&#039;t ban his IP. I banned another IP that was selling drugs and that worked fine. Why would this one IP not ban? 

Sorry to butt in on this forum...I didn&#039;t know where else to leave question.

After reading this hacking issue I realize that my site may be vulnerable too. I use bluehost. How do you know if someone is getting into your site?

Thanks.</description>
		<content:encoded><![CDATA[<p>Hi,<br />
I have the Star rating now on my wordpress site. I went to the IP part to ban this one commenter that leaves strange stuff, but it won&#8217;t ban his IP. I banned another IP that was selling drugs and that worked fine. Why would this one IP not ban? </p>
<p>Sorry to butt in on this forum&#8230;I didn&#8217;t know where else to leave question.</p>
<p>After reading this hacking issue I realize that my site may be vulnerable too. I use bluehost. How do you know if someone is getting into your site?</p>
<p>Thanks.</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: David</title>
		<link>http://www.gdstarrating.com/2010/01/13/website-hacking-issues/comment-page-1/#comment-6053</link>
		<dc:creator>David</dc:creator>
		<pubDate>Sat, 16 Jan 2010 22:46:41 +0000</pubDate>
		<guid isPermaLink="false">http://www.gdstarrating.com/?p=1641#comment-6053</guid>
		<description>Worth installing http://wordpress.org/extend/plugins/wp-security-scan/ and following this guide here.  
http://blogsecurity.net/wordpress/wordpress-security-whitepaper (changing database prefix is something I recommend all doing to limit XSS injection attacks.)


Also worth checking if you have register globals on in php.</description>
		<content:encoded><![CDATA[<p>Worth installing <a href="http://wordpress.org/extend/plugins/wp-security-scan/" rel="nofollow">http://wordpress.org/extend/plugins/wp-security-scan/</a> and following this guide here.<br />
<a href="http://blogsecurity.net/wordpress/wordpress-security-whitepaper" rel="nofollow">http://blogsecurity.net/wordpress/wordpress-security-whitepaper</a> (changing database prefix is something I recommend all doing to limit XSS injection attacks.)</p>
<p>Also worth checking if you have register globals on in php.</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: MillaN</title>
		<link>http://www.gdstarrating.com/2010/01/13/website-hacking-issues/comment-page-1/#comment-6052</link>
		<dc:creator>MillaN</dc:creator>
		<pubDate>Sat, 16 Jan 2010 15:21:17 +0000</pubDate>
		<guid isPermaLink="false">http://www.gdstarrating.com/?p=1641#comment-6052</guid>
		<description>I will install PHP IDS (Bluehost suggestion) to monitor every type of requests and try to find out exactly where the attack is done.

Also I have many websites on BlueHost and this is only one being hacked.</description>
		<content:encoded><![CDATA[<p>I will install PHP IDS (Bluehost suggestion) to monitor every type of requests and try to find out exactly where the attack is done.</p>
<p>Also I have many websites on BlueHost and this is only one being hacked.</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: pamelad</title>
		<link>http://www.gdstarrating.com/2010/01/13/website-hacking-issues/comment-page-1/#comment-6051</link>
		<dc:creator>pamelad</dc:creator>
		<pubDate>Sat, 16 Jan 2010 14:58:28 +0000</pubDate>
		<guid isPermaLink="false">http://www.gdstarrating.com/?p=1641#comment-6051</guid>
		<description>Have you checked all of your javascript files? Those are notorious for having back doors and being infected. Also, have you deleted the admin role that is standard with wordpress? Just another way to get hacked :(

I use a sister company of BlueHost (HostMonster) and I haven&#039;t had any problems so far. Hopefully, I won&#039;t...</description>
		<content:encoded><![CDATA[<p>Have you checked all of your javascript files? Those are notorious for having back doors and being infected. Also, have you deleted the admin role that is standard with wordpress? Just another way to get hacked <img src='http://cdnx.gdstarrating.com/wp-includes/images/smilies/icon_sad.gif' alt=':(' class='wp-smiley' /> </p>
<p>I use a sister company of BlueHost (HostMonster) and I haven&#8217;t had any problems so far. Hopefully, I won&#8217;t&#8230;</p>
]]></content:encoded>
	</item>
</channel>
</rss>

<!-- Performance optimized by W3 Total Cache. Learn more: http://www.w3-edge.com/wordpress-plugins/

Page Caching using disk (enhanced)
Content Delivery Network via cdnx.gdstarrating.com

Served from: www.gdstarrating.com @ 2012-02-09 11:15:56 -->
