hostmydomain Posted February 25, 2011 Share Posted February 25, 2011 I went to login to admin and it said i entered the wrong password? Tried again, Then on the 3rd time i got banned. I went to my email account and someone was trying to login, They then asked for a new password to be sent (reason why my password did not work), I waited until ban was over, Logged in and changed all passwords to whmcs, Ftp, Email and so on. Checked all files to makes sure nothing had changed, I have now banned the recorded ip address and limited admin to my ip only. All the best 0 Quote Link to comment Share on other sites More sharing options...
BryanB Posted February 25, 2011 Share Posted February 25, 2011 Ok.. you should probably change the name of your admin folder too so it can't be found as easily. 0 Quote Link to comment Share on other sites More sharing options...
jeremyhaber Posted February 25, 2011 Share Posted February 25, 2011 Yes you should change the admin folder name: http://wiki.whmcs.com/Further_Security_Steps As well block that users IP. It should be in one of your logs or your emails notifications. 0 Quote Link to comment Share on other sites More sharing options...
merlinpa1969 Posted February 26, 2011 Share Posted February 26, 2011 in your admin htaaccess put in a deny all and then allow from the Ips that you want to let in 0 Quote Link to comment Share on other sites More sharing options...
hostmydomain Posted February 26, 2011 Author Share Posted February 26, 2011 Hi, Yes, Just done the .htaccess file in admin, Will look into admin and other folders. All the best people & thanks. 0 Quote Link to comment Share on other sites More sharing options...
hostmydomain Posted February 28, 2011 Author Share Posted February 28, 2011 I have also added a ssl now and will use when in admin area, Also going to make a point that members of my site keep there scripts up to date. All the best 0 Quote Link to comment Share on other sites More sharing options...
Recommended Posts
Join the conversation
You can post now and register later. If you have an account, sign in now to post with your account.