Title: unknown comments (33)
Last modified: August 22, 2016

---

# unknown comments (33)

 *  [ibogo](https://wordpress.org/support/users/ibogo/)
 * (@ibogo)
 * [11 years, 6 months ago](https://wordpress.org/support/topic/unknown-comments-33/)
 * Earlier today woke up to 17 comments to review on my wordpress dashboard. This
   is the first time this has happened to me with this domain. On my previous domain,
   it happened within minutes or hours of registering (I should mention, this is
   within wordpress dashboard). The current domain I have had for 45 days with no
   comments.
 * Now I have 33 at the end up the day. Here are some examples:
 * WEB-INF/web.xml?
    file:///etc/passwd Li4vLi4vLi4vLi4vLi4vLi4vLi4vLi4vLi4vLi4vZXRjL3Bhc3N3ZAAucG5n
   WEB-INF/web.xml? /../..//../..//../..//../..//../..//etc/passwd.jpg 1′”()&%prompt(
   901385) -1);select pg_sleep(10); – _[ link redacted ]_ -1; waitfor delay ‘0:0:
   5′ –
 * AND MORE…
 * I must mention I paid someone to test-hack my site for vulnerabilities although
   he says he didn’t start yet AND as mentioned this same sort of thing happened
   on previous domain (although without as weird of hack-style comments).
 * I traced the ip back to Pakistan.
 * What is going on?

Viewing 2 replies - 1 through 2 (of 2 total)

 *  Moderator [Jan Dembowski](https://wordpress.org/support/users/jdembowski/)
 * (@jdembowski)
 * Forum Moderator and Brute Squad
 * [11 years, 6 months ago](https://wordpress.org/support/topic/unknown-comments-33/#post-5526189)
 * It’s both spam and a hack attempt.
 * For the spam portion give this article a read.
 * [http://codex.wordpress.org/Combating_Comment_Spam](http://codex.wordpress.org/Combating_Comment_Spam)
 * For the hack attempt please make sure you have upgraded your plugins, themes 
   and most importantly your WordPress version.
 *  Thread Starter [ibogo](https://wordpress.org/support/users/ibogo/)
 * (@ibogo)
 * [11 years, 6 months ago](https://wordpress.org/support/topic/unknown-comments-33/#post-5526213)
 * Since you mention about upgrading, I should start by saying I immediately activated
   Akismet and changed default login page, though my theme and WordPress are both
   one upgrade behind. I can’t upgrade at the moment as php is heavily edited. What
   plugins do you recommend while I sort out upgrading (or in general)?
 * Thanks for the response btw 🙂

Viewing 2 replies - 1 through 2 (of 2 total)

The topic ‘unknown comments (33)’ is closed to new replies.

## Tags

 * [code](https://wordpress.org/support/topic-tag/code/)
 * [comment](https://wordpress.org/support/topic-tag/comment/)
 * [css](https://wordpress.org/support/topic-tag/css/)
 * [html](https://wordpress.org/support/topic-tag/html/)
 * [php](https://wordpress.org/support/topic-tag/php/)

 * 2 replies
 * 2 participants
 * Last reply from: [ibogo](https://wordpress.org/support/users/ibogo/)
 * Last activity: [11 years, 6 months ago](https://wordpress.org/support/topic/unknown-comments-33/#post-5526213)
 * Status: not resolved

## Topics

### Topics with no replies

### Non-support topics

### Resolved topics

### Unresolved topics

### All topics
