While working on a site that included a fresh install of WordPress, I installed the PXS Mail Form plugin to use on a contact page. Less than 24 hours later I noticed a ton of spam being sent out from that system, mostly to AOL users. That wasn’t good. After looking at the spam I believe that it came in via the PXS Mail Form plugin. For now I’ve deactivated the plugin and contacted the the author ( Shane Marriott ) to help figure what is going on.
This was version 2.6 of the PXS Mail Form plugin running with WordPress 2.0.
One reply on “PXS Mail Form, Potential Spam”
I was using the 1.6 version of that plugin until this night. Same problem. My web hosting provider has still not reactivated my account. Seems I am a bad guy now. I will try Ryan Duff’s plugin once I get access to my site again. Google sources say version 1.4.3 is ok.
See http://www.anders.com/projects/sysadmin/formPostHijacking/
for more information about what seems to be going on.