We’d like to remind Forumites to please avoid political debate on the Forum.
This is to keep it a safe and useful space for MoneySaving discussions. Threads that are – or become – political in nature may be removed in line with the Forum’s rules. Thank you for your understanding.
📨 Have you signed up to the Forum's new Email Digest yet? Get a selection of trending threads sent straight to your inbox daily, weekly or monthly!
Website Hacked
Slinky
Posts: 11,238 Forumite


in Techie Stuff
I set up a small website for a friend a while ago. I updated it about 10 days ago. Just happened to check today and it looks like I've been hacked into.
>:(
Getting the following message:
This site is defaced!!
NeverEverNoSanity Webworm Generation 21
The whole site has disappeared (fortunately I have it on my local drive).
What should I do? I'm wary about attempting to re-upload it in case I get infected with something. I have to turn my firewall and anti-virus stuff off when I ftp anything.
>:(
Getting the following message:
This site is defaced!!
NeverEverNoSanity Webworm Generation 21
The whole site has disappeared (fortunately I have it on my local drive).
What should I do? I'm wary about attempting to re-upload it in case I get infected with something. I have to turn my firewall and anti-virus stuff off when I ftp anything.
Make £2025 in 2025
Prolific £617.02, Octopoints £5.20, TCB £398.58, Tesco Clubcard challenges £89.90, Misc Sales £321, Airtime £60, Shopmium £26.60, Everup £24.91 Zopa CB £30
Total (4/9/25) £1573.21/£2025 77%
Make £2024 in 2024
Prolific £907.37, Chase Int £59.97, Chase roundup int £3.55, Chase CB £122.88, Roadkill £1.30, Octopus ref £50, Octopoints £70.46, TCB £112.03, Shopmium £3, Iceland £4, Ipsos £20, Misc Sales £55.44
Prolific £617.02, Octopoints £5.20, TCB £398.58, Tesco Clubcard challenges £89.90, Misc Sales £321, Airtime £60, Shopmium £26.60, Everup £24.91 Zopa CB £30
Total (4/9/25) £1573.21/£2025 77%
Make £2024 in 2024
Prolific £907.37, Chase Int £59.97, Chase roundup int £3.55, Chase CB £122.88, Roadkill £1.30, Octopus ref £50, Octopoints £70.46, TCB £112.03, Shopmium £3, Iceland £4, Ipsos £20, Misc Sales £55.44
Total £1410/£2024 70%
Make £2023 in 2023 Total: £2606.33/£2023 128.8%
0
Comments
-
Firstly you need to speak to yoru hosting company.
Hopefully they should have logs of when this activity ocured.
Also you will need to know whether your password for uploading has simply been guessed or more likely some exploit against the type of server hosting your web site has been used. You then need to question what your host is doing about it. Try and find out what server is beign used, IIS on windows or apache on Linux etc
Have them remove the offending site, change your passwords and reload once they have given you confirmation it wont happen again.
maninblackstay lucky!
Steve.0 -
Maninblack
Thanks for this info. I'll try and speak to the hosting company, although whether they will speak to me I dont know, as they supplied the information to my friend initially and she passed it on. She's not at all techy so heaven help us if they won't speak to me.
Any idea whether this is likely to be a problem with the hosting company, or could I have been hacked. It's extremely unlikely to have been a guess at the password as it is meaningless numbers and letters which the host provided.Make £2025 in 2025
Prolific £617.02, Octopoints £5.20, TCB £398.58, Tesco Clubcard challenges £89.90, Misc Sales £321, Airtime £60, Shopmium £26.60, Everup £24.91 Zopa CB £30
Total (4/9/25) £1573.21/£2025 77%
Make £2024 in 2024
Prolific £907.37, Chase Int £59.97, Chase roundup int £3.55, Chase CB £122.88, Roadkill £1.30, Octopus ref £50, Octopoints £70.46, TCB £112.03, Shopmium £3, Iceland £4, Ipsos £20, Misc Sales £55.44Total £1410/£2024 70%Make £2023 in 2023 Total: £2606.33/£2023 128.8%0 -
It will be down to what they use to host your site on.
I am guessing it will be IIS on windows but i could be wrong. Seems like it wont have been adequatley protected. If you give me th URL i can at least tell what it is running.
Were you running anything like CGI scripts or SQL databases on it?
maninblackstay lucky!
Steve.0 -
Ok i've look ed a little further into this.
I shoudl have spotted it earlier as i am aware of it lol.
You were running some kind forum on the site that was running an older version of PHP and PHPBB.
It is a worm that look s for these vulnerable sites throguh google.
You will need and AV scan doing on your hosted server and you will need to update your Bulletin board with the lates versions of PHP that are not vulnerable
maninblackstay lucky!
Steve.0 -
You'll find more details here : http://forum.moneysavingexpert.com/cgi-bin/yabb/YaBB.cgi?board=Tech;action=display;num=1103663818
Symptoms and the full details of the worm.
Basically you should have upgraded to phpBB 2.0.11Alex Jones0 -
Ok i've look ed a little further into this.
I shoudl have spotted it earlier as i am aware of it lol.
You were running some kind forum on the site that was running an older version of PHP and PHPBB.
It is a worm that look s for these vulnerable sites throguh google.
You will need and AV scan doing on your hosted server and you will need to update your Bulletin board with the lates versions of PHP that are not vulnerable
maninblack
I'm not sure what has happened on this, as I wasn't running any sort of bulletin board (I'm not that clever!!). It was merely around 4 pages of text and graphics, created in Dreamweaver, no use of CGI or SQL as far as I'm aware (I'm not particularly techy!).
The site is https://www.waywalks.co.ukMake £2025 in 2025
Prolific £617.02, Octopoints £5.20, TCB £398.58, Tesco Clubcard challenges £89.90, Misc Sales £321, Airtime £60, Shopmium £26.60, Everup £24.91 Zopa CB £30
Total (4/9/25) £1573.21/£2025 77%
Make £2024 in 2024
Prolific £907.37, Chase Int £59.97, Chase roundup int £3.55, Chase CB £122.88, Roadkill £1.30, Octopus ref £50, Octopoints £70.46, TCB £112.03, Shopmium £3, Iceland £4, Ipsos £20, Misc Sales £55.44Total £1410/£2024 70%Make £2023 in 2023 Total: £2606.33/£2023 128.8%0 -
Whoever hosted your site must have had PHPBB enabled somewhere along the line.0
-
Im suprised you have to turn your firewall off when ftping with dreamweaver,I use dreamweaver to up my files with its ftp utility and can tell my firewall to allow it access.0
-
Im suprised you have to turn your firewall off when ftping with dreamweaver,I use dreamweaver to up my files with its ftp utility and can tell my firewall to allow it access.
same here!0
This discussion has been closed.
Confirm your email address to Create Threads and Reply

Categories
- All Categories
- 352.1K Banking & Borrowing
- 253.6K Reduce Debt & Boost Income
- 454.2K Spending & Discounts
- 245.1K Work, Benefits & Business
- 600.8K Mortgages, Homes & Bills
- 177.5K Life & Family
- 258.9K Travel & Transport
- 1.5M Hobbies & Leisure
- 16.1K Discuss & Feedback
- 37.6K Read-Only Boards