Old WordPress Versions Under Attack
Posted by : Dexter Panganiban |You are invited to have my FREE RSS Feeds or you may Subscribe to me via emailfor latest information in this website.
There are two clues that your WordPress site has been attacked.There are strange additions to the pretty permalinks, such as
example.com/category/post-title/%&(%7B$%7Beval(base64_decode($_SERVER%5BHTTP_REFERER%5D))%7D%7D|.+)&%/. The keywords are “eval” and “base64_decode.”The second clue is that a “back door” was created by a “hidden” Administrator. Check your site users for “Administrator (2)” or a name you do not recognize. You will probably be unable to access that account, but Journey Etc. has a possible solution.
So what are you waiting for act now and upgrade. But be sure to back your files.

Interesting Comments
2 Responses to “Old WordPress Versions Under Attack”
Leave a Reply
Check my Blogging Tips and Experience
- Visitors : How do I Classify You ?
- WordPress.ph Made for Filipino
- Filipino Problogger Interview in GMA-7
- Subscribe to RSS Feeds
- Are Your Ping Servers Updated ? See My List
My WordPress Tips and Tricks
- WordPress 2.5.1 is out
- Got Hacked Again
- Do Follow blogs ? or No Follow Blogs? Let me Explained it
- WordPress Tips : Is it good to Use Excerpt
- Solution on how to post even you have “code=DNS_TIMEOUT” error





























@sir Dex,
I don’t know about this kind of attack but for the last couple of weeks my site had been tagged by Google as a harmful site(malicious code = iframe), and I had to removed all the Ads.
And yes, you have to make sure that your WordPress is regularly updated for security reasons.
btw, thanks for posting!
Reply
Dexter | Techathand.net Reply:
September 6th, 2009 at 10:55 pm
@ariston|how to make mass money online,
I think your problem is now solved because I am not seeing those warning from Google. One of the reason of that problem is the script that you are using has a problem with Google. Remember google hates automatic
Reply