Recent Topics

1 Jun 07, 2015 08:38    

My host suspended my account yesterday for apparent massive spamming from my blog.

The following is the notification they sent:

We could see that there is huge spamming associated with your account. This has caused the mail IP to be blacklisted and cause email issues for different user accounts on the server. So, we have suspended your account and null rooted the culprit files. Please take immediate action on this. Please make sure that your account is secured, if you think your account is compromised, then update your password at the earliest. Also see the details of the null rooted files below.

/home/****/public_html/blog/skins/basic/footer.php
/home/****/public_html/blog/inc/settings/model/options.php
/home/****/public_html/blog/skins/_rss/dump.php

I am the only registered user of my blog and I am unsure of how or what the above files do/allow for someone to spam from my blog. Any help would be appreciated.

2 Jun 08, 2015 07:21

@jasonmurphy maybe your site got hacked and somebody injects code in it. As far as I know, none of the mentioned files is part of the core of b2evolution, so you should delete them.

You forgot to mention what version are you currently running. However, please update your site to the latest stable version, you'll be safe again because you'll get rid of the infected files and any other that your host haven't detected yet.

3 Jun 10, 2015 03:58

`dump.php` has never been a b2evolution file. It looks like a hacked site to me.

4 Jun 10, 2015 12:27

Are you using filezilla by any chance ? If you are, don't.


Form is loading...