Page 1 of 1

Spam emails

Posted: Tue Apr 14, 2015 8:58 am
by Topknotch
Hi,
I currently have a website that is running joomla 2.5.28 . It is sending out spam emails and it seems the script that it is coming from is - /public_html/components/com_users/controllers/plugin.php
Does anyone know what that script is for and how to stop it being compromised ?
Thanks

Re: Spam emails

Posted: Tue Apr 14, 2015 9:15 am
by pradips
Hi,

add captcha field in the form

Br,
Pradip

Re: Spam emails

Posted: Tue Apr 14, 2015 9:18 am
by Topknotch
Sorry I do not know what you mean, are you saying that the plugin.php is for user registration ?
If it is, I have disabled user registration any way.

Re: Spam emails

Posted: Tue Apr 14, 2015 9:22 am
by pradips
captcha avoid spam mails - follow below link

http://www.captcha.net/

and add captcha field in registration form

Re: Spam emails

Posted: Tue Apr 14, 2015 9:30 am
by Topknotch
No that's not what I mean is happening.
The site has been somehow compromised and someone is somehow sending out 1000's of spam emails through it. I have never known this on any joomla website before

Re: Spam emails

Posted: Tue Apr 14, 2015 12:37 pm
by mandville
Follow the security checklist. Get your host to disable email and trace the script name / location