Tips and Tricks HQ Support

Support site for Tips and Tricks HQ premium products

  • Home
  • Contact Us
  • Documentation
  • Forum Home
    • Forum
    • Forum Search
    • Forum Login
    • Forum Registration

WP Security unable to force log out of hacking user

by

Tips and Tricks HQ Support Portal › Forums › General Stuff › WP Security unable to force log out of hacking user

Tagged: being hacked, force log out, WP Security

  • This topic has 3 replies, 2 voices, and was last updated 11 years, 5 months ago by admin.
Viewing 4 posts - 1 through 4 (of 4 total)
  • Author
    Posts
  • January 9, 2014 at 11:55 am #10383
    tradingthetape
    Member

    I had a new user subscribe and login from Amsterdam. He then logged in from Frankfurt. I blocked the 2nd IP via .htaccess Deny From … and he logged in from St Louis. I blocked all 3 IPs and deleted his user account.

    In WP Security/User Login/Logged in Users all 3 IPs are still shown logged in.

    I uploaded a blank index.php file to root and access to pages are blocked except for those already downloaded to browsers.

    I put site in Maintencance mode using WP Security which will log out users however I had already deleted the user.

    How do I force logout of the 3 IPs?

    Thanks.

    January 9, 2014 at 11:09 pm #60211
    admin
    Keymaster

    As soon as you blocked the IPs they are out of your site. They can’t do anything on your site if the IP address is blocked in the .htaccess file.

    You can ignore what the “Logged in users” tab showing you. It has to get those info from WordPress and it is likely those session got stuck somehow and the plugin is showing them as logged in.

    January 10, 2014 at 12:20 am #60212
    tradingthetape
    Member

    Thanks. I thought maybe even though they were blocked via .htaccess that they could go back in the browser to see pages they had already visited. Is this the case or not?

    I also changed the SALT keys in the wp-config.php file to force all users to re-authenticate. Can you tell me if that forces them off the current page they are viewing and also prevents them seeing pages they have already visited that might be archived?

    January 10, 2014 at 10:46 pm #60213
    admin
    Keymaster

    They won’t be able to request any data from your site/server anymore. If they have some data in their browser cache then thats sitting in their computer which cannot do anything about.

  • Author
    Posts
Viewing 4 posts - 1 through 4 (of 4 total)
  • You must be logged in to reply to this topic.
Log In

Forum Related

  • Forum Home
  • Forum Search
  • Forum Registration
  • Forum Login

Support Related Forms

  • Contact Us
  • Customer Support
  • Request a Plugin Update
  • Request Fresh Download Links

Useful Links

  • Plugin Upgrade Instructions
  • WP eStore Documentation
  • WP eMember Documentation
  • WP Affiliate Platform Documentation
  • Tips and Tricks HQ Home Page
  • Our Projects

Quick Setup Video Tutorials

  • WP eStore Video Tutorial
  • WP eMember Video Tutorial
  • WP Affiliate Platform Video Tutorial
  • Lightbox Ultimate Video Tutorial

Our Other Plugins

  • WP Express Checkout
  • Stripe Payments Plugin
  • Simple Shopping Cart Plugin
  • Simple Download Monitor

Copyright © 2025 | Tips and Tricks HQ