Have I been hacked? Please help!

  • Unknown's avatar

    I’ve just had the notification to say “your stats are booming” and they’ve doubled in hits but the first 10 of so things to show are coming up as image files that have been viewed 12-30+ times.
    When I searched for the img_**** file names that are getting the hits, there’s nothing coming up.

    What does this mean? Have I been hacked or something? Any advice would be much appreciated, thanks.

    The blog I need help with is: (visible only to logged in users)

  • Unknown's avatar

    Does anyone have any ideas of what this could be, please? Thanks

  • Unknown's avatar

    Our stats are not real time stats and take hours to update.

  • Unknown's avatar

    You already typed modlook into the sidebar tags on this thread for Staff help. How do I get a Moderator/Staff reply for my question? https://en.support.wordpress.com/getting-help-in-the-forums/#how-do-i-get-a-moderatorstaff-reply-for-my-question Please subscribe to this thread so you are notified when they respond and be patient while waiting. To subscribe look in the sidebar of this thread, find the subscribe to topics link and click it.

  • Unknown's avatar

    Thanks for the reply. I’m just curious, my stats are normally much lower than what I am seeing today and there have been lots of images viewed. When I click them I get 404- forbidden. When I search for them on my site it comes up with nothing.
    I’ve just noticed that there have been changes made to the media part of WordPress and that there have been issues regarding that with people not being able to upload and see their media.
    I just want to know what has been looked at on my site, it’s concerning.

  • Unknown's avatar

    Refer to clicks https://en.support.wordpress.com/stats/#search-engine-terms:
    Links to media files.
    Links to images in a gallery.

    Our stats are not real time stats and take hours to update. There are frequent fluctuations that most do not notice because we aren’t watching the process. Instead, they wait for the next day to check their stats.

    For details see here http://en.support.wordpress.com/stats/ and here Views and Visitors https://en.support.wordpress.com/stats/#views-and-visitors and do note that both the views and viewers and views by country https://en.support.wordpress.com/stats/#views-by-country take hours to update.

    Our stats are page view stats. If I visit your blog and click into 10 posts that will be recorded as 1 visitor and 10 page views. But please do not assume that everyone who clicks a follow, like, share, reblog or comment link actually reads the post on your blog because odds are they may not.

    Follow, like, share, reblog or comment clicks are not page views. In fact, follows, likes, shares, comments and reblogs are completely misleading when you are talking about page view stats.

    Your followers and anyone with a WordPress.com/Gravatar account who is logged into WordPress.com can “follow” your blog, “like”, “share” and “reblog” your posts and “comment” in several locations such as the Reader, without ever clicking into your blog and creating a single page view stat. Subscribers control how frequently they receive your posts (instantly, daily, weekly) and can comment without clicking into the blog.

    Logged in visitors using a mobile can read the full post without creating a page view stat. https://en.forums.wordpress.com/topic/wordpresscom-reader-show-full-text?replies=31#post-1373606

    You can control the length of the entry sent out on your RSS feed here Dashboard > Settings > Reading. Choose the “summary” setting for your RSS feed rather than to “full text”. That will compel followers who are not using mobiles to click into the blog to read the full post which will create a page view stat.

  • Unknown's avatar

    there have been issues regarding that with people not being able to upload and see their media. I just want to know what has been looked at on my site, it’s concerning.

    If cannot upload media then post into the thread you mention. Otherwise, do not post there. Simply wait patiently for a Staff response here.

  • Unknown's avatar

    re: hacked accounts and blogs

    If anyone is posting anything to your blog or removing anything from it, or changing anything in it, or if your blog has been deleted and you did not delete it, then it’s most likely that you have provided them with the ability to do so, either deliberately by adding them as official users, or by allowing them access to your login information, or by posting content that makes it easy for them to guess what your log-in information is.

    For you, the question that needs to be answered is: Who, aside from me, has access to my login information?

    Go to your email program immediately and change the password to a very difficult one because that’s how many hackers gain access to blogs.

    Read > http://en.support.wordpress.com/security/

    Change your blog password to a very difficult one > http://en.support.wordpress.com/passwords/#change-your-password
    You can also reset your password via your Settings tab on the WordPress.com home page:
    http://wordpress.com/#!/settings/

    Disable post by email https://en.support.wordpress.com/settings/email-post-changes/

    Use a secure, encrypted connection to connect to your Dashboard. Under Users → Personal Settings, check the box that says “Always use HTTPS when visiting administration pages, and click Save Changes.

    Use two step authentication http://en.support.wordpress.com/security/two-step-authentication/

    Run a security scan on your computer. See here to run a security scan http://geekflare.com/online-scan-website-security-vulnerabilities/

    Never leave your computer logged into your blog and walk away from it. Always log out properly.

    Also, be aware that Staff have records of who did what under which username and login information and when they did it.

  • Unknown's avatar

    I’m quite understanding of my stats, I’ve been here nearly 2 years and I know that there’s often a difference between views and visitors and I understand what that difference means.
    My posts are set to ‘summary’ already, they have been for quite some time.
    I just saw in the link you posted aays that visits to uploaded documents and files aren’t counted into the stats but what I am seeing today is lots of views being made to images. I’ve so far had 92 visitors creating 320 views, one image has been viewed 33 times.
    I’m just having a hard time understanding what it means when the images are appearing in my stats, I’ve never seen this before. Also, how they’ve had so many views by however many visitors but I, the owner of the site and the media on there, cannot find or see these images at all.

  • Unknown's avatar

    Thanks. I just wanted to be thorough. Please be patient while waiting for a Staff response, and please keep in mind that this is Friday of a long weekend and they already have a backlog.

  • Unknown's avatar

    Thanks for all the links. I understand it can take time for admins to see all the posts, thank you.

    I have since managed to find the images, they’re all contained in this post – http://kaboodlemum.com/2015/05/07/3-apps-you-totally-need-when-trying-for-a-baby/
    I’ve checked the post stats and it’s not had any hits recently, not this year at all. It’s strange because I had over 200 hits in an hour, I’m guessing those images are mostly responsible for those views, I’m unaware of where they’ve come from though, since the post itself hasn’t been viewed at all.
    I’m not very tech really, so something like this spooks me a bit.

    None of my content has changed, from what I can see, I still have the same amount of posts and my media library is still at the same percentage. Should I still be concerned that I may have been hacked?
    I will check out the links you provided me about hacking, thanks again.

  • Unknown's avatar

    Thanks for all the links. I understand it can take time for admins to see all the posts, thank you.

    I have since managed to find the images, they’re all contained in this post – http://kaboodlemum.com/2015/05/07/3-apps-you-totally-need-when-trying-for-a-baby/
    I’ve checked the post stats and it’s not had any hits recently, not this year at all. It’s strange because I had over 200 hits in an hour, I’m guessing those images are mostly responsible for those views, I’m unaware of where they’ve come from though, since the post itself hasn’t been viewed at all.
    I’m not very tech really, so something like this spooks me a bit.

    None of my content has changed, from what I can see, I still have the same amount of posts and my media library is still at the same percentage. Should I still be concerned that I may have been hacked?
    I will check out the links you provided me about hacking, thanks again.

  • Unknown's avatar

    Also, can I just quickly ask; should I be logging in and out each time if I only ever blog when at home on a computer, phone or tablet, belonging to me?

    Thanks

  • What is the URL of the image that is getting all the traffic?

    Typically this means that someone found your image and shared it somewhere, a forum for example.

  • Unknown's avatar

    It wasn’t coming up with a URL it just said img_**** (numbers)
    There was about 12/15 of them showing and they have since disappeared from the list that comes up when I click on that particular day in my stats.

  • The topic ‘Have I been hacked? Please help!’ is closed to new replies.