Possible Duplicate:
My server's been hacked EMERGENCY
In log i found that site was scanned by hacker for few hours but actual hack was few minutes i think.
He somehow found out about all the files i had even folders and files that not cached anywhere e.g. robots.txt, or not even seen trough google.com its just random file names i created i am sure he could not know them so how was he able to find them?
Another trick he pulled is, he found php file i used to upload images to home page slider and he uploaded his file lets call it "hack.jpg" trough it. Funy thing though is that "hack.jpg" was few lines of php script that uploads more files. And he was able to run hack.jpg file as php script without changing extension to .php. Must be some exploit to the server that he used to do so?
Server is CentOS v5, WHM/Cpanel v12