1. This site uses cookies. By continuing to use this site, you are agreeing to our use of cookies. Learn More.

I need help fixing a vunrability within my clients website

Discussion in 'Hire a Freelancer' started by 1337WuLF, Jan 7, 2015.

  1. 1337WuLF

    1337WuLF Senior Member Premium Member

    Joined:
    Jan 3, 2011
    Messages:
    951
    Likes Received:
    378
    Occupation:
    IM
    Location:
    On a rock in space
    One of my clients websites has a vulnerability within it which allows spammers to upload an SMTP mail send script which is sending out thousands of spam emails a day. I've tracked down where the files are that are sending the spam, however I'm not sure how the hackers are getting in.

    Anyone able to help? The website is running Joomla.
     
  2. srb888

    srb888 Elite Member

    Joined:
    Jul 30, 2008
    Messages:
    3,267
    Likes Received:
    5,083
    Gender:
    Male
    Occupation:
    WebzSurfer
    Location:
    Sun, Mon, Tue, WTF, Sat!!! :)
    Have sent you a PM.
     
  3. Nitros

    Nitros Power Member

    Joined:
    Jan 30, 2009
    Messages:
    580
    Likes Received:
    298
    Maybe this will help.
     
  4. thesispaper

    thesispaper BANNED BANNED

    Joined:
    Dec 11, 2014
    Messages:
    40
    Likes Received:
    3
    send me a pm or add me on skype, able to help you out on this one!
     
  5. lord1027

    lord1027 Elite Member

    Joined:
    Sep 20, 2013
    Messages:
    3,177
    Likes Received:
    2,239
    I had the same issue on WP, good thing my hosting provider managed to figure it out.
     
  6. HostStage

    HostStage Jr. VIP Jr. VIP

    Joined:
    May 20, 2010
    Messages:
    1,876
    Likes Received:
    1,769
    Occupation:
    BHW - CEO of Webhosting Company
    Location:
    BWH from France
    Home Page:
  7. 1337WuLF

    1337WuLF Senior Member Premium Member

    Joined:
    Jan 3, 2011
    Messages:
    951
    Likes Received:
    378
    Occupation:
    IM
    Location:
    On a rock in space
    Thanks, although I can't make heads or tails of that :p

    Added you on Skype :)

    My hosting company has been somewhat helpful, although they refuse to fix the actual vulnerability :(

    My site is running Joomla.
     
  8. lord1027

    lord1027 Elite Member

    Joined:
    Sep 20, 2013
    Messages:
    3,177
    Likes Received:
    2,239
    May I ask which is your hosting provider?
     
  9. 1337WuLF

    1337WuLF Senior Member Premium Member

    Joined:
    Jan 3, 2011
    Messages:
    951
    Likes Received:
    378
    Occupation:
    IM
    Location:
    On a rock in space
    www.vpsblocks.com.au - They've been somewhat helpful with the problem, but certainly didn't aid me in solving it completely.



    I found this website: http://myjoomla.com/ - From there I was able to run an audit which was quite helpful, although that didn't fix my problem either. I decided to just contact them and Phil fixed it up and removed the vulnerability within about 6 hours of placing the ticket with them. Pretty impressive.
     
    • Thanks Thanks x 1
  10. handmadebots

    handmadebots Senior Member

    Joined:
    Nov 8, 2012
    Messages:
    962
    Likes Received:
    217
    Home Page:
    Added you on skype. Might be able to help you.