Why clicky is useful
I was using Clicky as early as I started this weblog and I was enjoying the service it offered, observing every step my visitors were taking.
I’m not paid by Clicky for advertising their service and not their affiliate as you cannot see an affiliate ID in the link, but I write this because I enjoyed using it, tracking all the events taking place on this tinny blog, though I had lost my authority over the live Spy ―A service that tracks the real time events on your website. But I can still see what my visitors are doing on the site.
I was motivated to write this post by some visitor who tried to reset my password while surfing on my site, he executed system files including /wp-config.php and the current theme templates, but he encountered with HTTP 404. The report below is that Clicky recorded during his activities, his IP address was terminated for known reasons:
Visitor detail
IP address: xx.xx.xx.xx
IP lookup: ARIN / RIPE
Language: English
Location:Halikko, Finland
Oper. System:Windows
Web browser:Firefox
Resolution: 1280×800
Javascript: Enabled[-] Below are some of his activities… The serious system files he executed were terminated by me…
![]()
I could block that visitor, but since username “admin” has no power for system settings, I let him visit my site again. I’d appreciate that visitor’s friendship since s/he’s funny person.
Update: Banned him for lifetime after s/he attempted weird activities.

Halikko, Finland
Windows
Firefox




I got hacked from Russia 2 months ago, they used brute-force to put me off.
Er, and not to forget, my friend got hacked form Finland…
Badboy
so you and your friends were pity? WordPress has less exploits and I think it’s hard to hack if you’re running single user blog. Try to avoid using username “admin”.
Loll
Haha I use Clicky too and I was just looking in my stats and saw that you had visited my site, so I came over here to have a look.
What were the weird things that the guy tried to do?
Welcome back man. Yes, s/he tried to brute -force username “admin”, and then

wp-cron.php, but the activity that lost my temper was something like this:wp-content/themes/theme_name/functions.php?try=Cross_Site_ScriptingThanks to 404, s/he was trying that several times until s/he went to eat some cake and some ice-cream about it.
Hi I’m looking to build up my incoming links for my blog.
Would you like to exchange blogroll links with me?
If yes, please visit: http://bigmoneylist.blogspot.com/
and leave your URL for your blog there. I’ll link to you within
hours. Thanks.
Michael, I’ll try this. thanks for interesting in my blog.
Sounds nasty… will have to have a look at some of our blogs’ settings. Thanks for the heads-up.