Urgent: Website Displaying Unexpected Code And Error Probably Helix 3.1 Issue - Question | JoomShaper

Urgent: Website Displaying Unexpected Code And Error Probably Helix 3.1 Issue

nagesh

nagesh

Template 3 weeks ago

Our website, www.usahariasynergy.com, is currently displaying a large amount of unexpected code and an error message on the homepage, as shown in the attached screenshot. We recently (15th July 2026) updated the site with the latest patches and pluins and it was working fine.

We seriously dont know why so many vulnerabilies in your plugins, we pay a premium for your plugins and expect them to work properly and securely. Are we doing something wrong staying with you for several years?

0
8 Answers
Ziaul Kabir
Ziaul Kabir
Accepted Answer
Support Agent 2 weeks ago #229856

Hi,

Thank you for your detailed response.

I have checked your account and found that your email address was not included in our mailing list. I have now added it to our subscription list, so you will receive future security advisories and important announcements.

Regarding your website, when I noticed unknown scripts on your site, I installed the scanner to help identify and clean the infected files. I have already cleaned many of the affected files and informed you about the remaining files that still require review, as malicious code can sometimes be hidden inside legitimate files. Installing the scanner was optional, but I believed it would help restore your site more efficiently. That said, the best option is still to use your hosting provider's malware scanner, as it is designed to scan your entire hosting environment.

Regarding future prevention, we take security issues very seriously. Whenever a vulnerability is identified, we investigate it immediately, develop and release a security patch as quickly as possible, and publish a security advisory so users can take the necessary actions. We also review the affected code to help prevent similar issues in future releases.

Our current priority is to keep our products secure and ensure our users can use them safely.

Thank you for your patience and understanding.

0
nagesh
nagesh
Accepted Answer
3 weeks ago #229373

visit the site to see, it is very laboroius to attach the screenshot.

0
Ziaul Kabir
Ziaul Kabir
Accepted Answer
Support Agent 3 weeks ago #229476

Hello,

Thanks for reaching out to us. Could you please share temporary administrator access to your Joomla backend? You can provide the credentials securely in the hidden content section. Also, please take a full backup of your site before we make any changes.

Once I have access, I’ll investigate further and see what’s causing the issue. Let me know once you’ve shared the details!

Best regards,

0
nagesh
nagesh
Accepted Answer
2 weeks ago #229583

How do i share the credentials?

0
Ziaul Kabir
Ziaul Kabir
Accepted Answer
Support Agent 2 weeks ago #229645

Hi,

Please check this after logging in. Your site appears to be compromised. I have already deleted some malicious files, but there still be infected or uncleaned files remaining.

Please make sure to review the actual code of each file before clean, as some malicious code may be hidden inside legitimate files.

Thanks.

0
nagesh
nagesh
Accepted Answer
2 weeks ago #229671

Wow you are genius, as if we dont know it is malware compromised, i also told you where the malware came from. It is from your plugin. First you supply vilnerable plugin then say your site infected. We are stuck with you because we used your UNSECURE templates. NOW this is kind of jokes on customer.

0
Ziaul Kabir
Ziaul Kabir
Accepted Answer
Support Agent 2 weeks ago #229738

I sincerely apologize for the inconvenience caused.

We informed all of our users about this vulnerability, except those who had unsubscribed from our mailing list or whose email servers rejected our messages due to delivery issues or bounced emails. As soon as the vulnerability was identified, we also shared the security advisory and the latest security fix on our social media channels.

We have also kept the following forum posts pinned to ensure users are aware of the issue and the recommended actions:

Yesterday, I installed the scanner to help identify and clean the infected files on your site. Once the cleanup is complete, and safely bring your website back online.

I hope you understand the situation, and I appreciate your patience and understanding.

Best regards,

0
nagesh
nagesh
Accepted Answer
2 weeks ago #229840

Thank you for your response, but standard template apologies and shifting responsibility do not resolve this issue or rebuild lost trust.

To address your points directly:

Email Communications & Accountability: We log into your platform daily using our primary account email address—the exact same address where we regularly receive your promotional and transactional communications without issue. The "bounced email" or "unsubscribed" explanation simply does not hold up here. Rather than double-checking our contact details or offering to verify our email status in your system, you have passed the blame onto our deliverability.

Core Responsibility for Product Security: As a software vendor, it is your fundamental obligation to deliver secure, well-tested code. While vulnerabilities can happen, the impact of a critical exploit falls squarely on the product provided. Relying on social media posts or pinned forum threads is not an acceptable substitute for direct, critical security notifications to active paid users.

Service & Support Gap: It is telling that our web hosting provider—who is not responsible for your software—has been significantly more proactive and helpful in guiding us through this Joomla security crisis than your team has been.

What We Require Moving Forward: Email Verification: Please manually check and confirm that our primary account email address is marked as active and deliverable for all critical security advisories in your system.

Immediate Site Status Update: Provide a clear timeline and status update on the file scan and cleanup currently underway on our site.

Preventative Action: Outline what concrete steps your team is taking to prevent similar critical vulnerabilities in your extensions moving forward.

We do not need generic copy-pasted responses. We need direct communication, technical accountability, and a clear path to getting our site safely restored.

0