联系表单7被劫持以发送垃圾邮件?

时间:2011-03-10 作者:gillespieza

我在linux服务器上的系统电子邮件一直收到“消息未送达”电子邮件,这些邮件似乎是从我网站上的联系人表单7小部件发送的。

奇怪的是,小部件中没有“to:”字段,只有“from”和“message”。然而,“未送达邮件”包括随机收件人:地址。

我已经设置了Akismet,并测试了它是否成功(当我使用他们的测试垃圾邮件电子邮件地址进行测试时,我会收到垃圾邮件失败消息)。

显然,他们在某种程度上高举某种php邮件程序(不知道联系人表单7使用什么-内置wp\\U邮件?)。我该如何阻止它?

我已经联系了我的主机,但他们无法帮助我,只能说“禁用联系人表单7”。

下面的电子邮件。底部的部分是我在WordPress安装中添加到联系人表单的部分,这是我发现它来自联系人表单7小部件的唯一原因:

From: Mail Delivery System 
To: [email protected]
Subject: Undelivered Mail Returned to Sender
Date: Sun, 16 Jan 2011 02:13:01 -0800 (PST)
Message-Id: 

[-- Attachment #1: Notification --]
[-- Type: text/plain, Encoding: 7bit, Size: 0.6K --]

This is the Postfix program at host pants.dreamhost.com.

I\'m sorry to have to inform you that your message could not be
be delivered to one or more recipients. It\'s attached below.

For further assistance, please send mail to 

If you do so, please include this problem report. You can
delete your own text from the attached returned message.

                        The Postfix program

: host e.mx.mail.yahoo.com[67.195.168.230] said: 554
    delivery error: dd This user doesn\'t have a yahoo.com account
    ([email protected]) [-5] - mta1038.mail.ac4.yahoo.com (in reply to end
    of DATA command)

[-- Attachment #2: Delivery report --]
[-- Type: message/delivery-status, Encoding: 7bit, Size: 0.5K --]

Reporting-MTA: dns; pants.dreamhost.com
X-Postfix-Queue-ID: DBA1514C005
X-Postfix-Sender: rfc822; [email protected]
Arrival-Date: Sun, 16 Jan 2011 02:12:56 -0800 (PST)

Final-Recipient: rfc822; [email protected]
Action: failed
Status: 5.0.0
Diagnostic-Code: X-Postfix; host e.mx.mail.yahoo.com[67.195.168.230] said: 554
    delivery error: dd This user doesn\'t have a yahoo.com account
    ([email protected]) [-5] - mta1038.mail.ac4.yahoo.com (in reply to end
    of DATA command)

[-- Attachment #3: Undelivered Message --]
[-- Type: message/rfc822, Encoding: 8bit, Size: 1.5K --]

From: floppyk2011 
To: [email protected]
Subject: [Out In Africa]
Date: Sun, 16 Jan 2011 10:12:57 +0000
Message-ID: 
X-Mailer: PHPMailer (phpmailer.sourceforge.net) [version 2.0.4]

Message body:
�èñòåìà àêòèâíîé ðåêëàìû.  �àðàáîòàòü â ñåòè. �ïëàòà çà ÷òåíèå ïèñåì è êëèêè. �àñêðóòêà ñàéòîâ - óâåëè÷åíèå ïîñåùàåìîñòè, íèçêèå öåíû äëÿ ðåêëàìîäàòåëåé!he system of active advertising. Earn online. Payment
+for reading emails and clicks. Site promotion - increase attendance, lower prices for advertisers!ôëóïèê.ðô

--
This mail is sent via contact form on Out In Africa (www.oia.co.za), from IP address: 80.58.205.99

1 个回复
最合适的回答,由SO网友:Jan Fabry 整理而成

联系表7似乎允许您specify the recipient via a select dropdown. 这意味着收件人的电子邮件地址存储在表单中并发送到服务器,然后服务器只读取它。除非服务器随后验证收件人地址是否是您指定的选项之一,否则这可能是向其他电子邮件地址发送垃圾邮件的“安全漏洞”。

其工作原理如下:服务器准备读取recipient 如果指定了字段,请选择字段。但是,即使您没有指定,spambot也可以发送recipient 字段值,诱使服务器认为它来自真正的HTML下拉列表。这允许它在那里指定它想要的任何值。

联系方式7可能会阻止这种攻击,但你应该自己检查一下,我对联系方式7没有进一步的经验。

相关推荐

Reducing spammy user sign-ups

遵循前一个问题中的建议后(here) 我成功地屏蔽了我的垃圾评论。然而,我现在发现,每天都有一些新成员注册到该网站,他们的垃圾电子邮件地址如下7428174812@aweseome-杰弗里。co.uk。我可以关闭注册,但我不希望关闭,因为我希望该网站会更受欢迎,并希望鼓励评论。

联系表单7被劫持以发送垃圾邮件? - 小码农CODE - 行之有效找到问题解决它

联系表单7被劫持以发送垃圾邮件?

时间:2011-03-10 作者:gillespieza

我在linux服务器上的系统电子邮件一直收到“消息未送达”电子邮件,这些邮件似乎是从我网站上的联系人表单7小部件发送的。

奇怪的是,小部件中没有“to:”字段,只有“from”和“message”。然而,“未送达邮件”包括随机收件人:地址。

我已经设置了Akismet,并测试了它是否成功(当我使用他们的测试垃圾邮件电子邮件地址进行测试时,我会收到垃圾邮件失败消息)。

显然,他们在某种程度上高举某种php邮件程序(不知道联系人表单7使用什么-内置wp\\U邮件?)。我该如何阻止它?

我已经联系了我的主机,但他们无法帮助我,只能说“禁用联系人表单7”。

下面的电子邮件。底部的部分是我在WordPress安装中添加到联系人表单的部分,这是我发现它来自联系人表单7小部件的唯一原因:

From: Mail Delivery System 
To: [email protected]
Subject: Undelivered Mail Returned to Sender
Date: Sun, 16 Jan 2011 02:13:01 -0800 (PST)
Message-Id: 

[-- Attachment #1: Notification --]
[-- Type: text/plain, Encoding: 7bit, Size: 0.6K --]

This is the Postfix program at host pants.dreamhost.com.

I\'m sorry to have to inform you that your message could not be
be delivered to one or more recipients. It\'s attached below.

For further assistance, please send mail to 

If you do so, please include this problem report. You can
delete your own text from the attached returned message.

                        The Postfix program

: host e.mx.mail.yahoo.com[67.195.168.230] said: 554
    delivery error: dd This user doesn\'t have a yahoo.com account
    ([email protected]) [-5] - mta1038.mail.ac4.yahoo.com (in reply to end
    of DATA command)

[-- Attachment #2: Delivery report --]
[-- Type: message/delivery-status, Encoding: 7bit, Size: 0.5K --]

Reporting-MTA: dns; pants.dreamhost.com
X-Postfix-Queue-ID: DBA1514C005
X-Postfix-Sender: rfc822; [email protected]
Arrival-Date: Sun, 16 Jan 2011 02:12:56 -0800 (PST)

Final-Recipient: rfc822; [email protected]
Action: failed
Status: 5.0.0
Diagnostic-Code: X-Postfix; host e.mx.mail.yahoo.com[67.195.168.230] said: 554
    delivery error: dd This user doesn\'t have a yahoo.com account
    ([email protected]) [-5] - mta1038.mail.ac4.yahoo.com (in reply to end
    of DATA command)

[-- Attachment #3: Undelivered Message --]
[-- Type: message/rfc822, Encoding: 8bit, Size: 1.5K --]

From: floppyk2011 
To: [email protected]
Subject: [Out In Africa]
Date: Sun, 16 Jan 2011 10:12:57 +0000
Message-ID: 
X-Mailer: PHPMailer (phpmailer.sourceforge.net) [version 2.0.4]

Message body:
�èñòåìà àêòèâíîé ðåêëàìû.  �àðàáîòàòü â ñåòè. �ïëàòà çà ÷òåíèå ïèñåì è êëèêè. �àñêðóòêà ñàéòîâ - óâåëè÷åíèå ïîñåùàåìîñòè, íèçêèå öåíû äëÿ ðåêëàìîäàòåëåé!he system of active advertising. Earn online. Payment
+for reading emails and clicks. Site promotion - increase attendance, lower prices for advertisers!ôëóïèê.ðô

--
This mail is sent via contact form on Out In Africa (www.oia.co.za), from IP address: 80.58.205.99

1 个回复
最合适的回答,由SO网友:Jan Fabry 整理而成

联系表7似乎允许您specify the recipient via a select dropdown. 这意味着收件人的电子邮件地址存储在表单中并发送到服务器,然后服务器只读取它。除非服务器随后验证收件人地址是否是您指定的选项之一,否则这可能是向其他电子邮件地址发送垃圾邮件的“安全漏洞”。

其工作原理如下:服务器准备读取recipient 如果指定了字段,请选择字段。但是,即使您没有指定,spambot也可以发送recipient 字段值,诱使服务器认为它来自真正的HTML下拉列表。这允许它在那里指定它想要的任何值。

联系方式7可能会阻止这种攻击,但你应该自己检查一下,我对联系方式7没有进一步的经验。

相关推荐

WordPress Comment spam issue

我正在尝试完全禁用WordPress评论。我已经通过WordPress后端设置手动禁用了注释,我还创建了一个名为“no comments please.php”的新空白文件,然后我将以下内容添加到我的函数中。php。然而,评论的数量也在不断增加。add_filter( \'comments_template\', \'remove_comments_template_on_pages\', 11 ); function remove_comments_template_on_pages( $fil