Can someone check this theme for malicious code for me?

Discussion in 'BlackHat Lounge' started by yathatguy2, Jan 30, 2012.

  1. yathatguy2

    yathatguy2 Newbie

    Joined:
    Jan 30, 2012
    Messages:
    1
    Likes Received:
    0
    i have this premium wordpress theme that i got from some where (it might have been here) a long time ago and i plan on using it for more sites soon and i just want to make sure its clean. anyone know how to check it or can do it real quick for me?
     
    Last edited: Jan 30, 2012
  2. Corrupt

    Corrupt BANNED BANNED

    Joined:
    Sep 15, 2011
    Messages:
    805
    Likes Received:
    412
    Use the TAC(Theme Authenticity Checker) Plugin. It does the job pretty well.
     
  3. yathatguy2

    yathatguy2 Newbie

    Joined:
    Jan 30, 2012
    Messages:
    1
    Likes Received:
    0
    i ran the TAC and it came up clean but i also ran antivirus plugin and it says clean in one spot then up top it says virus suspected but then a lot of it pops up green but the parts that pop up red it highlights words like "include" "unserialize" "include_once" its red but it also says no virus yet its red and those words are highlighted. then in the /themes/ctr-theme/includes/update.php this is there - There is no virus View line 59 'request' => base64_encode(serialize($request)),
     
  4. G-S-T

    G-S-T Executive VIP Jr. VIP

    Joined:
    Jan 20, 2011
    Messages:
    1,929
    Likes Received:
    8,939
    Occupation:
    Full time IM
    Location:
    Heavy in the game
    double check what file the include_once is referencing, have a quick look and make sure its not making any external calls or that its not referencing another file with some malicious code in it.
     
  5. Corrupt

    Corrupt BANNED BANNED

    Joined:
    Sep 15, 2011
    Messages:
    805
    Likes Received:
    412
    Upload the theme as an attachment. I'll take a look.
     
  6. yathatguy2

    yathatguy2 Newbie

    Joined:
    Jan 30, 2012
    Messages:
    1
    Likes Received:
    0
    how do i upload attachment?