The answer to this question may be difficult to determine, simply because there are so many ways to hack a site. Our aim in this article to show you the techniques most used by hackers in targeting and hacking your site!

Let’s suppose that this is your site: hack-test.com

010512_1633_Targetingan1

Let’s ping this site to get the server IP:

010512_1633_Targetingan2

Now we have 173.236.138.113 – this is the server IP where our target site is hosted.

To find other sites hosted on the same server, we will use sameip.org:

010512_1633_Targetingan3

Same IP
26 sites hosted on IP Address 173.236.138.113

ID Domain Site Link

1 hijackthisforum.com vcnVtLmNvbQ==">hijackthisforum.com

2 sportforum.net sportforum.net

3 freeonlinesudoku.net freeonlinesudoku.net

4 cosplayhell.com cosplayhell.com

5 videogamenews.org videogamenews.org

6 gametour.com gametour.com

7 qualitypetsitting.net qualitypetsitting.net

8 brendanichols.com brendanichols.com

9 8ez.com 8ez.com

10 hack-test.com hack-test.com

11 kisax.com kisax.com

12 paisans.com paisans.com

13 mghz.com mghz.com

14 debateful.com debateful.com

15 jazzygoodtimes.com jazzygoodtimes.com

16 fruny.com fruny.com

17 vbum.com vbum.com

18 wuckie.com wuckie.com

19 force5inc.com force5inc.com

20 virushero.com virushero.com

21 twincitiesbusinesspeernetwork.com twincitiesbusinesspeernetwork.com

22 jennieko.com jennieko.com

23 davereedy.com davereedy.com

24 joygarrido.com joygarrido.com

25 prismapp.com prismapp.com

26 utiligolf.com utiligolf.com

Twenty-six other websites are hosted on this server [173.236.138.113]. Many hackers will target all other sites on the same server in order to hack your site. But for the purpose of study, we will target your site only and put aside hacking the other sites on same server.

We’ll need more information about your site, such as:

DNS records (A, NS, TXT, MX and SOA)

Web Server Type (Apache, IIS, Tomcat)

Registrar (the company that owns your domain)

Your name, address, email and phone

Scripts that your site uses (php, asp, asp.net, jsp, cfm)

Your server OS (Unix,Linux,Windows,Solaris)

Your server open ports to internet (80, 443, 21, etc.)

Let’s start with finding your site’s DNS records. We will use the website “Who.is” to achieve this:

010512_1633_Targetingan4

We have discovered that your site DNS records are:

HACK-TEST.COM DNS RECORDS

Record Type TTL Priority Content

hack-test.com A 4 hours   173.236.138.113 ()

hack-test.com SOA 4 hours   ns1.dreamhost.com. hostmaster.dreamhost.com. 2011032301 15283 1800 1814400 14400

hack-test.com NS 4 hours   ns1.dreamhost.com

hack-test.com NS 4 hours   ns3.dreamhost.com

hack-test.com NS 4 hours   ns2.dreamhost.com

A 4 hours   173.236.138.113 ()

Let’s determine the web server type:

010512_1633_Targetingan5

As you see, your site web server is Apache. We will determine its version later.

HACK-TEST.COM SITE INFORMATION

IP: 173.236.138.113
Website Status: active
Server Type: Apache
Alexa Trend/Rank: 0 1 Month: 3,213,968 3 Month: 2,161,753
Page Views per Visit:  1 Month: 2.0 3 Month: 3.7

Now it is time to find your Doman Registrar and your name, address, email and phone:

010512_1633_Targetingan8