<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	>

<channel>
	<title>WP Pro - Design, Development and Professional WordPress Hosting for Serious Bloggers &#187; WordPress</title>
	<atom:link href="http://www.wppro.org/category/wordpress/feed/" rel="self" type="application/rss+xml" />
	<link>http://www.wppro.org</link>
	<description>Just another WordPress weblog</description>
	<lastBuildDate>Wed, 07 Apr 2010 16:56:14 +0000</lastBuildDate>
	<language>en</language>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	<generator>http://wordpress.org/?v=3.0.1</generator>
		<item>
		<title>Site Hacked: Site Name and Post Titles Changed via Database (Possible Fix)</title>
		<link>http://www.wppro.org/2010/04/07/site-hacked-site-name-and-post-titles-changed-via-database/</link>
		<comments>http://www.wppro.org/2010/04/07/site-hacked-site-name-and-post-titles-changed-via-database/#comments</comments>
		<pubDate>Wed, 07 Apr 2010 16:56:14 +0000</pubDate>
		<dc:creator>Sunny</dc:creator>
				<category><![CDATA[How to]]></category>
		<category><![CDATA[Tips]]></category>
		<category><![CDATA[WordPress]]></category>
		<category><![CDATA[Google]]></category>
		<category><![CDATA[Spam]]></category>
		<category><![CDATA[WP]]></category>

		<guid isPermaLink="false">http://www.wppro.org/?p=181</guid>
		<description><![CDATA[Following yesterdays post about my sites being exploited by the &#8220;Cheap Pharma&#8221; a-holes, I was brought to the attention of another WP site (very popular in that) had similar issue too, Chris Pearson is the founder of DYI Themes, so I stated following his Twitter feeds to find help. Per Chris, the exploit was in [...]]]></description>
			<content:encoded><![CDATA[<p>Following <a href="http://www.wppro.org/2010/04/04/site-hacked-site-name-changed-to-cheap-viagra/">yesterdays post</a> about my sites being exploited by the &#8220;Cheap Pharma&#8221; a-holes, I was brought to the attention of another WP site (very popular in that) had similar issue too, <a target="_blank" href="http://www.pearsonified.com/">Chris Pearson</a> is the founder of <a target="_blank" href="http://diythemes.com/">DYI Themes</a>, so I stated following his Twitter feeds to find help.</p>
<p><img src="http://www.wppro.org/wp-content/uploads/2010/04/pearsonified-hacked.jpg" alt="" title="pearsonified-hacked" width="515" class="alignleft size-full wp-image-187" /></p>
<p>Per Chris, the exploit was in the DB, so just finding and replacing the file in the WP folder was not good enough, the DB needed to be cleaned as well. So here’s a how to:</p>
<p>For folks who regularly back up their sites, it would be much easier to do the fix as opposed to those who do no back up their site (another reason to use <a target="_blank" href="http://www.ilfilosofo.com/blog/wp-db-backup/">wp-db-backup plugin</a>). Nevertheless there are ways to get the DB cleaned out. We will discuss both, but before we do that, here’s a step-by-step to find and remove the PHP file that is causing the havoc.</p>
]]></content:encoded>
			<wfw:commentRss>http://www.wppro.org/2010/04/07/site-hacked-site-name-and-post-titles-changed-via-database/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
	</channel>
</rss>
