
Completed
Posted
Paid on delivery
My company mailbox on a cPanel server hosted at Hivelocity was compromised and started blasting out thousands of spam messages. As a result, Hivelocity has suspended both the website and all email traffic. The immediate priority is to stop the spam, clean any infection, and harden the entire email system so this can’t happen again. The passwords for cPanel, individual mailboxes, FTP, and related services have not yet been changed, so part of the job will be guiding me through a complete credential reset once the breach is contained. What I need from you: • Identify and eliminate the scripts, forwarders, or leaked credentials responsible for the spam. • Clean the mail queue and remove any malicious files or cron jobs. • Reinstate normal mail flow without triggering host-level blocks or outside blacklists. • Lock down the server: update Exim and ClamAV, review SPF/DKIM/DMARC, enable SMTP AUTH and rate limits, and tighten firewall and brute-force controls. • Provide a brief, clear report of findings, actions taken, and preventive recommendations. Acceptance criteria: mail queue is clean, no new spam leaves the server for 24 hours, Hivelocity lifts the suspension, and the security report is delivered. If you have strong cPanel/WHM security experience and can move quickly, let’s get started right away.
Project ID: 40604803
66 proposals
Remote project
Active 5 days ago
Set your budget and timeframe
Get paid for your work
Outline your proposal
It's free to sign up and bid on jobs

Hello, I can help secure your cPanel/Hivelocity server, stop the spam outbreak, and restore normal email operations. I will first investigate the source of the compromise by checking: • Exim mail queue and delivery logs • Suspicious scripts, PHP files, cron jobs, and email forwarders • Compromised mailboxes and leaked credentials • FTP/cPanel access activity and unauthorized changes After identifying the cause, I will: • Remove malicious files and clean the spam queue • Stop unauthorized email sending • Guide you through resetting cPanel, mailbox, FTP, and related passwords • Review and improve SPF, DKIM, and DMARC configuration • Harden WHM/cPanel security settings, firewall rules, and brute-force protection • Check SMTP authentication and sending limits • Verify the server is no longer generating spam before requesting suspension removal I have experience with cPanel/WHM security issues, hacked hosting accounts, malware cleanup, and email abuse investigations. My priority is finding the actual entry point so the problem does not return after the cleanup. I will also provide a clear report covering what caused the issue, what was fixed, and recommendations to keep the server secure. Ali Asif
$90 USD in 1 day
5.4
5.4
66 freelancers are bidding on average $142 USD for this job

Hi there, I've helped multiple clients recover cPanel servers suspended for spamming — same Hivelocity scenario. I’ll stop the outgoing flood, clean the infection, and get your mail flowing again. What I'll do: ✅ Identify and remove malicious scripts, forwarders, cron jobs, and leaked credentials causing the spam. ✅ Clean the mail queue, patch Exim/ClamAV, configure SPF/DKIM/DMARC and SMTP rate limits to block future abuse. ✅ Before any changes, I’ll take a full server backup so we can roll back instantly if needed. Skills: ✅ cPanel/WHM security hardening and malware removal ✅ Exim, ClamAV, mail queue cleanup and blacklist delisting ✅ SPF/DKIM/DMARC and SMTP AUTH configuration ✅ Firewall/brute-force lockdown (CSF, fail2ban, iptables) ✅ Microsoft® Certified: MCSA | MCSE | MCT ✅ 300+ projects delivered, 280+ five-star reviews Why me: I work fast, respond in minutes, and keep going until you’re satisfied. Question: Do you have root/WHM access now, or is it locked while the suspension is active? I’ll need it to perform the cleanup. I can deliver in 1 day for $130 USD and can start right now. Let’s get your server back online.
$130 USD in 1 day
6.2
6.2

I can help recover the cPanel mail service and secure it properly so this does not keep happening. Your brief is clear, and I would handle the spam source investigation, queue cleanup, malicious file/cron review, credential reset guidance, and mail/security hardening step by step. I have worked on cPanel/WHM cleanup and suspension-related issues before, including Exim/mail abuse cases. Once done, I will share a short report with findings, actions taken, and prevention recommendations.
$160 USD in 7 days
6.1
6.1

As a seasoned IT professional, my familiarity with cPanel/WHM security issues makes me well-suited to resolve your urgent situation. I have a deep understanding of server administration, an expertise that extends to network securities and virtualization - all elements that would be applicable in your case. My broad scope of skills also includes managing server operating systems like those employed by Hivelocity. I actively maintain an up-to-date knowledge of various server OS including WHM, tackling issues ranging from implementing DNS/DHCP solutions to executing virtualization platforms. I also specialize in mail servers and your email service is integral to your business operation. Rest assured that I am highly experienced with EXIM and ClamAV, which will be relevant in eliminating the threats involved and preventing any future attacks. Additionally, I'm versed in identifying potential vulnerabilities and hardening servers by reviewing and updating essential features such as SPF/DKIM/DMARC, SMTP AUTH, and rate limits - critical measures to deter future breaches. My dedication to providing reliable solutions that ensure data integrity aligns perfectly with your need for a secure email system. Fast response time and unlimited revisions give me the agility needed for quick deployment while being meticulous in resolving any fallout post-cleanup. Let’s restore peace to your mailbox and fortify your system so this won’t happen again!
$140 USD in 1 day
6.1
6.1

Hi. I can recover hacked server and make it work again. I have experience. Let's chat and i will send you my CV
$100 USD in 1 day
5.6
5.6

Hello, I will clean your cPanel mail queue, trace the exact scripts or forwarders behind the spam blast, remove any malicious cron jobs, and harden Exim with SMTP AUTH, rate limits, and proper SPF/DKIM/DMARC records. Once the server is clear for 24 hours, I will coordinate with Hivelocity to lift the suspension. You will get a short update at the end of each day until the suspension is fully resolved. Questions: 1) Do you have WHM root access, or only cPanel level? 2) Is the site running WordPress or another CMS that could be the injection point? Share your cPanel login details in chat and I will start the mail queue audit today. Looking forward to your response. Best regards, Kamran
$90 USD in 5 days
5.2
5.2

As a seasoned technology professional with over a decade of experience in network administration, system and cyber security, I have all the necessary skills to recover your hacked cPanel email service swiftly and effectively. Having worked with major industry vendors such as Cisco, VMware and IBM, I understand the intricate workings of secure systems like the back of my hand. Moreover, I'm highly proficient with cPanel/WHM security and can identify and eliminate malicious scripts with ease. I understand the urgency behind your project and guarantee quick results: safely curbing spam, cleaning any infection, hardening your entire email system while restoring normalcy to your mail flow without triggering host-level blocks. My expertise in SPF/DKIM/DMARC, Exim , ClamAV along with my ability to implement SMTP AUTH and rate limits would ensure ultimate protection against future breaches. Lastly, my commitment to delivering 100% satisfaction has always been the driving factor for my clients. I pledge the same perseverance for your project by providing you with a comprehensive report detailing every action taken during the recovery process along with preventive measures that would strengthen your system's immunity in the future
$200 USD in 3 days
5.3
5.3

I can start on this quickly and focus first on containing the spam so Hivelocity can lift the suspension as soon as possible. The scope you listed is practical and I can cover the investigation, cleanup, queue clearing, hardening of mail authentication/settings, and a clear final summary report. I will also guide you through the full password reset process after the breach is contained. The goal will be clean mail flow and a locked-down setup, not just a temporary patch.
$140 USD in 7 days
4.7
4.7

Hi full-stack dev and sys admin, I do this kind of work daily and recently recovered hacked emails, and delisted them from blacklisted and stabilised the email reputations. Please contact me to discuss. I will additionally do a full audit on your server. Will lock it down properly and secure it. I did more than 10 same jobs for the last two months which seems like getting more and more advanced as hackers nowadays use AI. Will genuinely fix your problems and tighten the security. I do ongoing sys admin and security work ongoing for 2 clients one of them Irish web agency with 100+ websites and few servers. This is urgent so I will start it right away immediately! Kind Regards!
$75 USD in 1 day
4.7
4.7

It sounds like your cPanel email service has been compromised, likely due to unauthorized access or a relay issue affecting your domain reputation. I can investigate your exim logs, check for malicious scripts or unauthorized forwarders, and secure your DNS records to stop the abuse immediately. I have over 15 years of experience managing Linux servers and cPanel environments. I specialize in malware removal and security hardening, so I know exactly how to trace the entry point of a hack, clean the infected files, and implement the necessary protocols to prevent this from happening again. My bid is $120.75 for this recovery, and I can have your email services back to normal within 1 day. Please share your cPanel access so I can begin the audit right away.
$120.75 USD in 1 day
4.5
4.5

I have strong cPanel/WHM security experience, currently managing 300+ cPanel/WHM servers. We can start right now.
$550 USD in 1 day
4.1
4.1

Hi, I can help secure your cPanel/WHM server and stop the spam immediately. I'll identify the source of the compromise, remove malicious scripts or cron jobs, clean the mail queue, reset and secure all affected accounts, and harden the mail server with proper SPF, DKIM, DMARC, SMTP authentication, rate limiting, and firewall protections. I'll also provide a concise security report with the root cause, actions taken, and recommendations to prevent future incidents. I'm available to start right away and can work until the server is fully secured and email service is restored. I have 5+ years of experience as a Systems Administrator, specializing in Linux (CentOS, AlmaLinux, Ubuntu, Debian, Red Hat) and Windows servers. I work with cPanel/WHM, Plesk, Virtualmin, Hestia, AWS, Azure, Docker, Apache, Nginx, DNS, mail servers, and applications like WordPress, Magento, Laravel, Node.js, PHP, Nextcloud, and OwnCloud, as well as integrating and managing Cloudflare services. Kindly chat once. Thanks!
$120 USD in 1 day
3.9
3.9

Hello, I've handled compromised mail server cleanups before, tracing spam sources back to malicious scripts, forwarders, or leaked credentials and shutting them down at the root rather than just stopping the symptom. I understand the priority here is speed, get the spam stopped, mail queue cleaned, and Hivelocity's suspension lifted, followed by hardening so this doesn't recur. I'll start by identifying the actual infection point, checking cron jobs, forwarders, and recently modified files, then clean the mail queue and remove anything malicious before resetting all credentials, cPanel, mailboxes, FTP, and related services, once the breach is contained. From there I'll update Exim and ClamAV, review and correct SPF, DKIM, and DMARC records, enable SMTP AUTH with rate limiting, and tighten firewall and brute-force protections so the server is genuinely hardened, not just cleaned. I'll monitor the mail queue after the fix to confirm no new spam goes out, and deliver a clear report covering what caused the breach, what was done, and what to watch for going forward. Thanks for considering my proposal.
$120 USD in 3 days
3.6
3.6

This looks like a cPanel email compromise that needs both cleanup and proper hardening, and I can take care of that. I would check for abused scripts, forwarders, leaked credentials, cron jobs, and queue activity, then secure Exim, SMTP auth, SPF/DKIM/DMARC, and brute-force protections. I understand the acceptance criteria and will work toward restoring stable mail flow without new spam activity. You will also receive a brief report with the root cause and preventive steps.
$140 USD in 7 days
3.6
3.6

Hi, I understand your immediate priority is to regain control of your email service by stopping the spam, cleaning the infection, and preventing future incidents. My approach focuses on swift containment and robust security hardening. First, I will thoroughly investigate your cPanel account and server to identify the source of the spam, whether it's malicious scripts, compromised forwarders, or leaked credentials. Once identified, I will remove these elements and clean the mail queue. Following this, I will guide you through a secure credential reset for all affected accounts. Next, I will implement comprehensive security measures, including updating Exim and ClamAV, configuring SPF/DKIM/DMARC, enabling SMTP AUTH and rate limits, and reinforcing firewall and brute-force protections. I will then monitor the system to ensure normal mail flow is restored and that no new spam is generated, aiming for Hivelocity to lift the suspension promptly. You will receive a clear report detailing the findings, actions taken, and preventive recommendations. Could you confirm if you have root access to the Hivelocity server, or if access will be provided via cPanel/WHM? Regards, Muhammad Azeem
$200 USD in 2 days
3.5
3.5

Hello There! I’m Md. Toriqul Islam, and I’m excited to partner with you. I can dive into your project immediately. I have 10+ years of experience in Linux server administration, cPanel/WHM, Exim mail servers, email security, malware removal, and server hardening. I understand your cPanel server was compromised, resulting in mass spam and a Hivelocity suspension. I'll identify the root cause, remove malicious scripts and cron jobs, clean the mail queue, secure Exim and mail services, guide credential resets, configure SPF/DKIM/DMARC, and harden the server to restore safe email delivery. I have rich experience in cPanel/WHM, Exim, ClamAV, CSF, Linux security, malware cleanup, and email authentication. I am skilled in Linux, cPanel, WHM, Exim, SMTP, DNS, Firewall, and Server Security. I’m ready to start immediately and work until your server is secure, email service is restored, and a complete security report is delivered. Looking forward to hearing from you. Best regards, Md. Toriqul Islam
$100 USD in 3 days
3.7
3.7

As an experienced and highly skilled Full-Stack Developer with a strong focus on server security, I'm well-prepared to handle the critical task of recovering your hacked cPanel Email Service. My deep knowledge of cPanel/WHM, coupled with my proficiency in Web Development, Cloud & DevOps, and Security makes me the ideal candidate to identify and eliminate any malicious files or code responsible for the spam. Utilizing my expertise in AWS, Docker, Linux, and other Cloud technologies, I will effectively clean the mail queue on your Hivelocity server, ensuring no new spam leaves the system for 24 hours. Additionally, I'll secure your server by updating Exim and ClamAV, reinforcing firewall measures, activating SMTP AUTH and rate limits among other imperative security steps. As you need swift action, it's worth mentioning I believe in getting tasks accomplished efficiently and in a timely manner while maintaining high quality. Moreover, I will provide you with a clear report detailing my findings, actions taken for recovery, as well as proactive measures to prevent future hacks. You can count on my continuous communication to keep you updated during every single phase of this project. Choose me to regain control of your mailservice and fortify your server’s security for long-term protection.
$30 USD in 7 days
3.1
3.1

Hello, I see the spam outbreak is likely driven by a rogue PHP script left in the public_html folder that’s being invoked by a hidden cron job. I’ll first scan for unexpected executable files and suspicious cron entries, then purge the mail queue and lock down Exim with rate‑limiting and SMTP AUTH to stop any further abuse. I’ll also reset all cPanel and mailbox passwords, harden SSH/brute‑force settings, and configure SPF/DKIM/DMARC with proper DNS records to keep the server reputation clean. Do you have root access to the server so I can run the necessary commands and apply the firewall rules?
$70 USD in 1 day
3.1
3.1

Hello, I have handled compromised cPanel mail services where spam was caused by leaked credentials, malicious scripts, cron jobs, or hidden forwarders. My Web Security work includes Exim mail queue cleanup, SPF, DKIM, DMARC review, and host-side suspension recovery. I will contain the Incident Response first, inspect mail logs and accounts, remove the spam source, clean the queue, and guide a full reset for cPanel, FTP, and mailbox passwords. Then I will harden Exim, ClamAV, SMTP AUTH, rate limits, firewall, and brute-force controls, and provide a clear report after 24 hours with no new spam. Best regards, Teo
$200 USD in 2 days
2.6
2.6

I can help you resolve this issue quickly and securely. With extensive experience in cPanel System Administration and Incident Response, my approach will be to immediately trace and isolate the source of the spam in your mail logs, clean the mail queue, and remove any malicious files, scripts, or cron jobs.
$150 USD in 1 day
2.5
2.5

Hello, I’m a certified IT professional with over 20 years of experience in Linux server administration, cPanel/WHM, email security, and incident response. I can take ownership of the full recovery process: identify the source of the spam, remove malicious scripts, forwarders, cron jobs, or compromised credentials, clean the Exim queue, secure the server, and restore normal mail flow. I will also review and harden Exim, ClamAV, SMTP authentication, sending limits, firewall rules, brute-force protection, and SPF, DKIM, and DMARC records. Once the incident is contained, I will guide you through a complete reset of cPanel, mailbox, FTP, and related credentials. You will receive a clear security report explaining what caused the incident, what was corrected, and what should be done to prevent it from happening again. If required, I can also communicate directly with Hivelocity support, provide the remediation details they request, respond to technical questions, and help move the suspension review forward. My goal is not only to restore the service quickly, but to leave the email environment significantly more secure than before.
$140 USD in 7 days
2.6
2.6

Port Charlotte, United States
Payment method verified
Member since Jul 25, 2026
₹1500-12500 INR
$30-250 USD
$50 USD
₹12500-37500 INR
₹600-1500 INR
$30-250 USD
£250-750 GBP
$15-25 USD / hour
£250-750 GBP
₹12500-37500 INR
$250-750 USD
$3000-5000 USD
$10-30 USD
$10-30 USD
$3000-5000 USD
$200-300 USD
₹600-1500 INR
min $50 USD / hour
$250-750 USD
$30-250 USD