fw116 wrote:
well,
as you can find in the forum, if your would use search, there is a good chance, that your windows PC is infected
with some crappy software , which use your FTP account in case you connect to your site and infects your site via your own FTp account.
This response is totally out of place and quite rude. As people have pointed out in this thread this is not an FTP issue. If you bury your head in the sand and assume that all hacked sites are because people have spyware on their PC you're just being ignorant and exposing you and people who listen to you to further attacks. It's pretty clear that this is a vulnerability in either Joomla! or one of the installed components. No amount of scanning your PC for "crappy software" is going to help.
In this case all fingers really do point toward Jumi. I don't think there's a site that's been affected that doesn't have Jumi installed and given Jumi's capabilities it would be a logical place to attack.
I do wish I knew a bit more about the attack because I'm not sure that even the most recent version of Jumi isn't vulnerable. I took a look at the Jumi change logs a while back and didn't see anything that would indicate that the developers were aware of or had fixed a vulnerability like this.
that everybody checks his own add ons installed on a system , would be normal behavior.
and no , the response is not out of place, because only some weeks ago, this was a number one topic.