How to Recover a Hacked Website
A hacked site is stressful but recoverable. Work calmly through contain, clean, restore and harden — and fix the entry point so it cannot recur.
Step-by-step
- Change all passwords immediately — cPanel, email, database users and CMS admin. This contains an active intruder.
- Scan with Imunify360 to locate infected files — see scanning for malware.
- Take a backup of the current (hacked) state before cleaning, so nothing is lost during recovery.
- Restore from a known-clean backup if you have one from before the hack — see recovering files. This is the fastest clean route.
- Find and fix the entry point. Update or remove outdated plugins/apps, check for unknown admin users, and review access logs for how they got in.
- Harden the site: enable 2FA, correct permissions, update everything, and run a fresh scan to confirm it is clean.
💡 Good to know
- Outdated software is the most common cause — keep WordPress, plugins and themes current.
- A clean pre-hack backup is the single most valuable thing in recovery; keep regular backups.
- EconomicalHost support can assist — contact 011-46563177 with details of what you have found.