Hi Dale,
I was wrong I didn't set a cron job to run that night like I thought. I had set it to run each Saturday midnight (which hadn't happened yet.) ; > The cron I use is: /usr/bin/php /home/fairfieldpros/public_html/FairfieldProfessionals/cli/admintools-filescanner.php
I did a "Scan Now" and am now reviewing the results. The first few are shown in this attachment. I assume the idea is that I should look through the High Threat ones and mark them safe if I know they're okay? Is there a simple method of looking them up somewhere?
I followed your advice and:
- Increased my rules for auto-ban repeat offenders (image attached).
- I do use the jsn_metro_pro pro template. I set "Allow site templates" and tested a few of those URLs flagged as exceptions. They're all "email page to a friend" forms that I
do not have on my site. They must be attempted hacks so I turned "Allow site templates" back off.
- The
Content History component is standard with Joomla 3x. I searched and found that it was found to have
a vulnerability. So your exception reporting is doing well at stopping these.
-