My server sends spam emails without my permission

Discussion in 'Site & Server Administration' started by Website_Playboy, Feb 19, 2012.

  1. #1
    My servers default email address sends spams to people. I have a very very strong password. Can somebody help me out about what can i do? I am about to be suspended from my hosting company because of this.
     
    Website_Playboy, Feb 19, 2012 IP
  2. forumhookers

    forumhookers Peon

    Messages:
    77
    Likes Received:
    0
    Best Answers:
    0
    Trophy Points:
    0
    #2
    What script you are using for your site!
     
    forumhookers, Feb 19, 2012 IP
  3. Website_Playboy

    Website_Playboy Member

    Messages:
    115
    Likes Received:
    0
    Best Answers:
    0
    Trophy Points:
    26
    #3
    I have SMF forums and WP i also have some html pages.
     
    Website_Playboy, Feb 19, 2012 IP
  4. ashscript

    ashscript Greenhorn

    Messages:
    2
    Likes Received:
    0
    Best Answers:
    0
    Trophy Points:
    11
    #4
    Hi, you may be the victim of email header injection. Check and filter email, messages etc very strictly for user input. Don't allow words like Bcc: Cc: etc, google "email header injection exploit" for more info.
     
    ashscript, Feb 19, 2012 IP
  5. Website_Playboy

    Website_Playboy Member

    Messages:
    115
    Likes Received:
    0
    Best Answers:
    0
    Trophy Points:
    26
    #5
    This is what my hosting company said after i mentioned them about the email header exploit

    "Ed: [5:08:05 AM] Yes, but that is not the case at all. reason we know is because the server tracts emails coming to and fro the server, header exploit will have the same message and affect multiple accounts on the server. As well as cause other issues.
    [5:08:52 AM] Your account is sending messages to random emails, I just found some: , , , "

    These all seem to be uk email accounts. Definitely spamming.
     
    Website_Playboy, Feb 19, 2012 IP
  6. hans

    hans Well-Known Member

    Messages:
    2,923
    Likes Received:
    126
    Best Answers:
    1
    Trophy Points:
    173
    #6
    similar happened to me many years ago while hosted
    the cause was: my site was hacked and contained a phising site setup for sending mail and other bad stuff

    check your entire webspace for files NOT belonging to you
    my host then gave no clues, just that I was sending too many emails
     
    hans, Feb 24, 2012 IP
  7. bdthanh

    bdthanh Peon

    Messages:
    28
    Likes Received:
    1
    Best Answers:
    0
    Trophy Points:
    0
    #7
    Check your server security and your script:
    +) Your SMTP account
    +) email header injection
    +) Auto send email script
     
    bdthanh, Mar 4, 2012 IP
  8. solidstate

    solidstate Well-Known Member

    Messages:
    1,679
    Likes Received:
    22
    Best Answers:
    0
    Trophy Points:
    155
    #8
    Check if your script is updated or not.

    best bet is to take a DB backup of your forum. completely delete all files and folder from your hosting account. delete db , db username.

    now install freshly the forum script and upload the db again and connect.

    make you if you have any theme customized , take backup of that as well.
     
    solidstate, Mar 17, 2012 IP
  9. RobertStev

    RobertStev Peon

    Messages:
    92
    Likes Received:
    0
    Best Answers:
    0
    Trophy Points:
    0
    #9
    have you had the server checked for security breaches?
     
    RobertStev, Mar 18, 2012 IP