WordPress.org

Forums

Contact Form 7
Site was hacked by "H3llboy" through Contact Form 7 (3 posts)

  1. Carel Botha
    Member
    Posted 1 year ago #

    Hi there,

    Im using your contact form on my site at http://www.bizco.co.za and its ease of use is great, so thanks for the plugin :-)

    I created a page called "submit business plan" and created a long form using your app. It also contained a button to upload files. The day after i made the form available my site was hacked with malware, which i managed to fix again by restoring the site to an earlier date.

    Is there something you know of that i can do to prevent this from happening when i use your form?

    Also i want to create a form with input fields next to each other instead of below each other as the form gets too long. Is that possible using your form?

    Thanks again for your plugin. I really like its simplicity ;-)

    Carel

    http://wordpress.org/extend/plugins/contact-form-7/

  2. Allisons
    Member
    Posted 1 year ago #

    I am experiencing a similar problem, Contact Form 7 folders are acting as a repository for the Blackhole malware on my sites. For now my only solution is to remove the plugin completely from the servers and see if the attack is coming from somewhere else or if the attacks stop. I'd love to know if others are experiencing the same thing.

    I have locked down my sites as per recommendations from Web Defender and Sucuri, and using completely fresh wordpress, so I'll report back.

  3. Allisons
    Member
    Posted 1 year ago #

    Since removing Contact Form 7 the hacks have stopped. As far as I can tell, there is something in the Contact Form captcha folder that is being used to allow hackers access. I see there are several threads now on this forum about this problem, so can the developer please look into this?

Topic Closed

This topic has been closed to new replies.

About this Plugin

About this Topic