
WordPress users from around the world have been targeted by bogus user accounts! One of my readers emailed me with a story of some strange activity that she’s been seeing on other WordPress Blogs. You too may have noticed interruptions in connectivity, “error 404″ messages or even emails from the blog. Since no information is gathered or saved in my online database, there’s no threat to my readers (and no reports of spam). My apologies if you have received any AND problem solved!
What these hackers are doing is singing up to the blog as a user, then hacking the system and changing themselves to administrators. They then lock out the actual blog owners from using their site. You can get the full story and solution here. I’ve made the necessary changes, deleted the loser hackers and backed up the blog! Please share this story with other bloggers!!
To the following hackers who tried to pull a fast one on my blog:
Username: rafaellabove
E-mail: jonatanwebsterbaum@gmail.com
Username: Andrianq
E-mail: pulvillarrac@gmail.com
Username: MikeWink
E-mail: bugbeemershonyhe@gmail.com
Username: Miriam
E-mail: obierebelominepyb@gmail.com
Username: arnoldisby
E-mail: naomyrotenford@gmail.com
Username: UlricheDmond
E-mail: ulrichedmondsuses@gmail.com
Get a life and use your uber computer skills for good use…like say…correcting the housing crisis in the States. If you notice any strange occurrences (aside from me dressed up in Star Wars gear) please let me know!!






Well done!
After a couple quick searches of those IDs who asked to be “users” in my 1 blog, I found yr advice here. Thks! :-)
Glad to help!! looks like WordPress got word of the problem…here’s there Security Release http://wordpress.org/development/2009/08/2-8-4-security-release/
[...] WordPress SpamHack Alert | Mark Savel’s Toronto Real Estate Blog Mark Savels Toronto Real Estate Blog Published on September 5, 2009 in News. 0 Comments Easy AdSense by UnrealWordpress SpamHack Alert | Mark Savel’s Toronto Real Estate Blog Mark Savels Toronto Real Esta…. [...]
I have the security patch already installed, so I should be on the safe side of the line now. But I have seen those also among my users. I always delete those that only register without really doing something on my blog.
But this one other reason to make backups, so you can delete the complete weblog through OS-level and read the backup back.
Thanks for the heads up. A search for these mysterious users led here.
I just installed 2.8.4 last night and this guy:
Username: UlricheDmond
E-mail: ulrichedmondsuses@gmail.com
registered today. Do they ever stop???
Also, I always google the email when someone registers. The spam ones are obvious.
Hey Eliese…i had UlricheDmond add me today too! looks like he’s the latest shmuck. here’s the latest from wordpress http://wordpress.org/development/2009/09/keep-wordpress-secure/
Thanks! A Google search on ulrichedmondsuses@gmail.com led me here. I appreciate your taking the time to identify these low-life scumbags.
Thanks for the info! Ulriche just tried to hack my blog today — it looked so suspicous so once I confirmed this on your site — I blocked him!
[...] http://savelblogs.com/?p=1566 [...]
Thanks for the heads up. I had googled the one name and found that the others were listed too.
[...] it looks there have been a string of hacks going around on WordPress blogs lately, and updating to the latest version isn’t a sure fire cure! If you read reguarley [...]
german informations to this in http://www.schwarzradar.de/wordpress-hacker-benutzeranmeldung-email
best wishes
ron
I greatly appreciate this post because it clearly identified some of the hackers. I am also doing blogs and this post has greatly helped me identify the people whom i can’t trust.
Thanks to all for your comments…just trying to make the internet a better place, one less hacker at a time :)
Wordpress is the best blogging platform ever. It is much better than Typepad and blogspot.”:*
Well, Andrianq hacked my blog too , my wordpress login password got changed. Thank god, I removed them from phpAdmin consol via cpanel.