What's this now? I'm not running anything that could be hijacked for phishing, no wordpress, no long running servers, nothing.
Ooooohh, it's my old reverse tunnel service... Has someone somehow broken into it? I've not security patched it in a while, but the only interface in is my custom SSH server. Maybe someone's found a vulnerability in it?
Turns out someone was using it to host a phishing site, I guess giving people a stable home on the internet and anonymity wasn't the best idea. I'll sort it.