Locked out

No more access to WordPress

If the administrator password is suddenly rejected, there are two possible causes. Either there is a technical problem, or someone has taken over the access and locked you out.

I will restore your access and clarify at the same time which of the two causes applies.

Elias Arndt, WordPress expert from Schleswig
Elias Arndt

WordPress expert from Schleswig
★★★★★ 5,0 on Google

Report an emergency

I will get back to you within 4 hours.

How this manifests in everyday use

Not every one of these observations means an attack. In combination, however, they are clear.

The password is rejected

You demonstrably enter the correct password and are still denied access. The reset function also produces no result.

The reset email does not arrive

Often, the address on file has been changed, or the site's email delivery has been disabled so that you cannot use this route.

Your account has fewer permissions

You can get in, but can now see only a fraction of the menus. Your account has been downgraded from administrator to a lower role.

Your account no longer exists

The username is not recognized at all. In this case, the account was deleted and replaced with another one.

How access is restored

1

Access via the database

An administrator account can be created or reset directly in the database, independently of the login. A database login, which you can obtain from your host, is sufficient for this.

2

Check why it happened

Afterwards, I check the logs to see when the change took place and from which address. This shows whether an attack has occurred.

3

Secure

If the suspicion is confirmed, complete cleanup follows. Otherwise, I will secure the login and hand over the new access credentials.

Transparent costs

Malware scan

50 €

plus VAT · one-time

If you commission the cleanup afterwards, the 50 € will be fully credited.

Most frequently chosen

Cleanup

280 €

plus VAT · fixed price, scan included

✓ Money-back guaranteeIf I can't clean the site, you pay nothing.

Ongoing support

from €65

per month, plus VAT.

The complete fine print:

  • All prices are plus 19 % VAT.
  • Orders processed on Saturdays, Sundays or public holidays cost an additional one-time 100 € weekend surcharge.
  • Response and recovery times apply Monday to Friday from 8 a.m. to 8 p.m. Outside these hours, I will respond as quickly as I can, but without a guarantee.
  • The time starts when I have received all the necessary access credentials – not from your first message.
  • I discuss special cases such as multiple sites in one installation, WooCommerce with ongoing orders or multisite with you beforehand and tell you the price before I start.

Frequently asked questions

Can I reset the access myself?

Via phpMyAdmin, this is generally possible by resetting the user’s password field with an MD5 function. The risk is that you may overwrite the traces if someone has in fact broken in. It is more sensible to have a brief phone call first.

No. A faulty security plugin, a damaged database table, or a failed update can also lock users out. The difference becomes apparent in the logs.

If access only needs to be restored, I charge for the work as agreed. If it turns out to be a compromise, the fixed price of 280 € net applies for the complete cleanup.

The longer someone else has access, the more damage they can do

A call costs you nothing and takes five minutes. If it turns out to be a different problem, I will tell you that too.

Available Monday to Friday from 8 a.m. to 8 p.m. · Related topics: Unauthorized administrators in WordPress · WordPress hacked – what to do now · Remove WordPress virus · WordPress no longer loads