my website svnnews.in is hacked yesterday.
Now its showing some hackers messages.
I need my website back.Need suggestion to make my website hack free.

4 Years
Discussion Span
Last Post by iamthwee

Check for any log available, if you are using Apache server check for acces.log and error.log, then search and check for any uploaded file/image. In order to limit defacements you have to sanitize data, any POST, GET, COOKIE, PUT request: you have to check if you are receving the expected kind of data especially for those variables which will print the input in the pages.

Keep in mind: if you have a form from where a user can upload images or files, do you check the mime (and the sizes regarding the image)? If no, then it's simple to upload a script and replace the pages.

Read these:

As suggestion, create a copy of the current site and logs so you can study the problem offline, then, update your code and replace it. A part this, without more details it's hard to help, bye.


Re-upload clean php files, change your ftp logon details change all passwords, lock down files that don't need read/write access.


Oh and something that is commonly overlooked... Reformat the machine you're ftp'ing your files from. Sometimes it's the host machine that is the issue as there are spyware programs logging your keystrokes and broadcasting your ftp passwords etc over the internet.

This topic has been dead for over six months. Start a new discussion instead.
Have something to contribute to this discussion? Please be thoughtful, detailed and courteous, and be sure to adhere to our posting rules.