|
first thing to do is to check /tmp for hidden shellkits ..
so you are uploading the content onto the compromised server again?
don't you want to find the security hole first , make a fresh installation and try everything to avoid this happening in the future?
make sure to set allow_url_fopen = Off in your php.ini
|