forumNew topic

Is there a public list where I can check if our site has been flagged as hacked or unsafe?

KKazımNew member
Job title
Plastic manufacturing
Joined
Sep 2024
Message
36
#1

We run an independent e-commerce site selling gifts aimed at the US market. We generate around 180,000 dollars in annual revenue, and most of our traffic comes from organic search. However, orders have plummeted over the last five days; we normally average 25-30 orders a day, but yesterday we only managed to record 2.

We've received feedback from a few regular customers saying their browsers display a red screen or a security risk warning when trying to access our site. I checked our server control panel in a panic, but I couldn't see any abnormal file changes. When we type the URL directly into our own browsers, it sometimes loads fine and sometimes throws a security warning.

How can I check from a single place or via reliable public services whether our site has been placed on a global list of hacked, malware-distributing, or deceptive websites? If we do appear on a list, what steps should we follow to get our name removed once everything is cleaned up?

OOrhan Ç***Expert
Job title
Data Analyst
Sector
Chemistry
Organization type
family business
Joined
Oct 2024
Message
15
Most Helpful#2

Short answer: There is no single centralized list of hacked sites; instead there are general security databases that feed browsers and antivirus engines alongside search engine webmaster consoles. You can check your domain's status for free using official search engine webmaster consoles and public multi-engine domain security scanners.

Follow this order to diagnose the issue and get delisted: 1) First, log in to the webmaster console of the search engine your site is connected to. Under the "Security & Manual Actions" tab check whether your site has been flagged for malware, unwanted software, or social engineering (phishing). Almost all red screen browser warnings stem from detections here. 2) Run your site's URL through public online domain reputation scanners; these services check and aggregate whether your domain has been flagged by dozens of independent security vendors worldwide.

3) Identify and clean up any files modified on your server within the last 7 days hidden iframe redirects, or unauthorized admin accounts. If you request a review before completely eliminating the root cause your appeal will be rejected and the review timeline will be delayed. 4) Once the cleanup is complete, change all database FTP, and control panel passwords. Then use the "Request a Review" button in the webmaster console's warning section to submit an explanation of the cleanup and security measures you implemented. Reviews usually wrap up within 24 to 72 hours.

EEsra O***Member
Job title
Quality Assurance Manager
Sector
Agriculture
Organization type
8-person team
Joined
May 2023
Message
84
#3

A red screen in the browser means safe browsing protection protocols have been triggered directly. By entering your domain into search engines' public transparency and safe browsing status pages, you can see detailed info on whether the site is flagged as "dangerous" and the exact date malicious content was detected.

CCaner K***VeteranCommunity member
Joined
May 2023
Message
21
#4

Happened to us last year. A plugin vulnerability was used to inject hidden gambling redirects onto our site. Our organic traffic dropped to almost zero within three days, and we lost around 4,000 dollars in direct sales. We cleaned up the code, requested a review in the console, and the warning was lifted 36 hours later.

HHilal D***MemberCommunity member
Joined
Dec 2024
Message
166
#5

Don't be fooled by the site occasionally loading on your own computer. Your browser might just be skipping the warning because it's using a cached certificate or existing cookies. Make sure to test it from different devices, on mobile data, and in an incognito window. You need to lock down your checkout flow until the cleanup is completely done.

EErcan T***Member
Job title
Chief Technology Officer
Sector
Electrical-electronics
Organization type
regional distributor
Joined
Jan 2023
Message
1

Doki · Vulnerability scanning · 2024

#6

Open an urgent support ticket with your hosting provider immediately and ask them to scan the server access logs for the last five days. Usually, it's a dummy file uploaded to the admin directory from a foreign IP address. You won't be able to get off any blocklists until you close whatever backdoor allowed the file to be uploaded.

Edit: asked below, I wrote the answer in the second message.

KKemalNew member
Job title
Farm business
Joined
Sep 2024
Message
42
#7

So sorry to hear this, easily one of the most stressful things that can happen to an e-commerce store owner. Don't panic and wipe the whole site to start over from scratch. The security report in the console usually points out the exact file or URL path flagged as suspicious start there.

note: I wrote this based on my own experience, it might not apply to everyone.

CCansu K***MemberCommunity member
Joined
Jun 2023
Message
61
#8

Are your customers only getting the security warning on desktop browsers or does it pop up on mobile too? Also does the warning appear right on the homepage or only when they go to the cart and hit the checkout button?

AAli P***MemberCommunity member
Joined
Oct 2023
Message
69
#9

Having your domain's security reputation tarnished can cause lasting damage to your search engine rankings. After cleaning the server, we strongly advise conducting a full audit of your DNS records, domain email authentication protocols (SPF, DKIM), and SSL certificate.

VVildan Ö***Member
Job title
Secretary
Sector
Retail
Organization type
family business
Joined
Dec 2024
Message
66
#10

there are free domain balcklist checker sites online you type in your domain and it scans like 80 security engines on one screen. check there first to see which antiviruses put you on red.

FFerhat T***Member
Job title
Human Resources Specialist
Sector
Livestock
Organization type
20-person company
Joined
Aug 2022
Message
286
#11

I can't fully agree with this. Most time waste accumulates in tasks waiting for approval.

This is my opinion I'm not claiming it's absolute truth.

EEmre E***VeteranCommunity member
Joined
May 2025
Message
283
#12

I've been dealing with this for a long time. Just because everyone does it doesn't mean it's right.

Don't rely on a single measure; go layer by layer. That's all, sorry if I went on too long.

AAhmetNew member
Job title
Student · software
Organization type
family business
Joined
Jan 2025
Message
48
#13

I disagree with you on this point. Taking notes for two weeks yields better results than a six-month estimate.

Hope this helps.

NNuri G***Member
Job title
Field sales representative
Sector
Glass
Organization type
300-person organization
Joined
Mar 2025
Message
328
#14

Don't miss this: If permission and scope aren't in writing, don't start that test.

Solutions that work at a small scale collapse when you grow; I learned this late. If I were you, I'd go this route.

HHüsniye G***MemberCommunity member
Joined
Nov 2025
Message
322
#15

We experienced almost the exact same thing last year. The biggest time-waster for us was not knowing who had the final say.

Hope this helps.

UUğur E***MemberCommunity member
Joined
Jan 2023
Message
17
#16

We got stuck at the same point for a while. If permission and scope aren't in writing, don't start that test.

I'm also curious if anyone does it differently.

MMert P***Expert
Job title
Front office accounting
Sector
Energy
Organization type
regional distributor
Joined
Sep 2022
Message
204
#17

My perspective changed after experiencing that. If permission and scope aren't in writing, don't start that test.

If you have questions, write them; I'll answer as best I can.

AAycan Ö***MemberCommunity member
Joined
Jul 2023
Message
321
#18

This is exactly what we experienced. The biggest time-waster for us was not knowing who had the final say.

If you post the result here, it will help others too.

HHavva B***MemberCommunity member
Joined
Dec 2023
Message
4
#19

Correct.

LLeyla Y***ExpertCommunity member
Joined
May 2025
Message
102
#20

Looking at it as a process, the picture changes. An automated scan report is not the same as a penetration test.

Everyone rushing into hacked site list gets stuck at the same point. If you post the result here, it will help others too.

Reply