Results 1 to 9 of 9

Thread: How to check WP themes for malicious codes?

  1. #1
    rome9t9's Avatar
    rome9t9 is offline No Longer Loves SEO
    Join Date
    Mar 2009
    Location
    If I tell you, I would have to kill you.
    Posts
    614
    Blog Entries
    4
    Thanks
    168
    Thanked 105 Times in 77 Posts

    How to check WP themes for malicious codes?

    Is there any tool or method that will help non-coders like me to find possible malicious codes in WP themes found in WP themes??

    PS: I am not talking about encrypted codes in footer.

  2. #2
    Kovich's Avatar
    Kovich is offline Community Guardian
    Join Date
    Jan 2009
    Location
    Philadelphia, Pennsylvania
    Posts
    1,797
    Blog Entries
    30
    Thanks
    453
    Thanked 420 Times in 279 Posts
    This will scan your template files:
    http://wpantivirus.com/

    And this is another good plugin to have, since it checks your whole installation:
    WP Security Scan | WordPress Developer

    I recommend using both of them together.

  3. Thanked by:

    rome9t9 (12 March, 2010), Will.Spencer (5 April, 2010)

  4. #3
    garfish's Avatar
    garfish is offline I'm Not Sure.
    Join Date
    May 2009
    Posts
    846
    Blog Entries
    12
    Thanks
    155
    Thanked 57 Times in 54 Posts
    when can we consider that a site might have malicious codes?

  5. #4
    anantshri is offline on leave from Net Builders : will post rarely
    Join Date
    Apr 2010
    Location
    india
    Posts
    338
    Thanks
    80
    Thanked 47 Times in 40 Posts
    Quote Originally Posted by whatthehell View Post
    when can we consider that a site might have malicious codes?

    one sure shot indication is if firefox or google marks it bad but then its after 1-2 days of actuall infection

  6. #5
    thesyndicate is offline Newbie Net Builder
    Join Date
    Jul 2009
    Location
    NET<>DP
    Posts
    137
    Thanks
    14
    Thanked 5 Times in 4 Posts
    Well if you put in the template before and then try the the code you are already letting the hackers in. I installed the anti virus it looked like it was ok.

  7. #6
    Snak3's Avatar
    Snak3 is offline Moderator
    Join Date
    Jul 2009
    Location
    Undisclosed Location
    Posts
    629
    Thanks
    155
    Thanked 190 Times in 121 Posts
    Apart from the plugins which Kovich suggested, you can also use Google's Webmaster tools to check for malware in your files.
    Its located at Webmaster Tools/Diagnostics/Malware.

  8. #7
    xxtoni's Avatar
    xxtoni is offline xxtoni
    Join Date
    Jan 2010
    Posts
    353
    Thanks
    16
    Thanked 42 Times in 34 Posts
    Heh I only once considered a PHP virus I was wondering how it would be possible to inject a PHP script into SMF that would delete the entire forum,but because of lack of knowledge i never did anything about it.Interesting idea for a virus in a Wordpress theme.

  9. #8
    anantshri is offline on leave from Net Builders : will post rarely
    Join Date
    Apr 2010
    Location
    india
    Posts
    338
    Thanks
    80
    Thanked 47 Times in 40 Posts
    idea is not new its very old


    if your web master is fool enough to let you upload any script.

    any person can screw the whole service.

  10. #9
    xxtoni's Avatar
    xxtoni is offline xxtoni
    Join Date
    Jan 2010
    Posts
    353
    Thanks
    16
    Thanked 42 Times in 34 Posts
    Quote Originally Posted by anantshri View Post
    idea is not new its very old


    if your web master is fool enough to let you upload any script.

    any person can screw the whole service.
    Well the art is to inject the script somehow...or with use of social-engineering trick the person to install the script

Similar Threads

  1. Name.com Promo Codes
    By Oranges in forum Domaining
    Replies: 36
    Last Post: 13 August, 2011, 11:13 AM
  2. [Free] Quality FREE Wordpress Themes - Themes Zoo
    By themeszoo in forum Themes
    Replies: 143
    Last Post: 21 May, 2011, 15:42 PM
  3. Cheat Codes
    By Coelho in forum General Chat
    Replies: 5
    Last Post: 30 June, 2010, 20:05 PM
  4. Replies: 1
    Last Post: 8 April, 2010, 14:13 PM
  5. [Free] Free Download Wordpress Themes by Themes Warehouse (UPDATED)
    By themeswarehouse in forum Themes
    Replies: 1
    Last Post: 17 March, 2010, 10:36 AM

Tags for this Thread

Bookmarks

Posting Permissions

  • You may not post new threads
  • You may not post replies
  • You may not post attachments
  • You may not edit your posts
  •