I recently purchased the theme. I have tried installing on 2 fresh WP installs and 2 different servers. One the them is enabled I get a blank page. The only thing showing is in the top left corner “Hacked by Black worm”. Could this be something with the theme or hosting.
-
This topic was modified 10 years by
cbritton.
Hello cbritton,
Unfortunately, if the theme files were replaced, it could mean your wp install got infected and the code gets added again from wp. Please try to switch to a wp default theme and see if the code gets injected in that one as well. I assume it will. Our theme was tested and there are no other vulnerability issues except for the ones from WordPress. Also, if your problem is still there after this, please contact your hosting provider and tell them this problem. Perhaps it is a problem with their server and then they should be able to provide an accurate response in this regard.
Hope this helps!
Thanks for your understanding!
Would it be possible for you to log in and view my site. My site has remained secure for about 2 years now. I only see this code when I enable the newspaper theme. Now that it’s disabled the site is back to functionality. Please see http://knolotics.com. I can send login in information if needed.
So as a tester I installed the theme in 2 fresh WordPress installs on 2 seperate host and other get the same thing when I enable the theme.
1 fresh install in hostgator and 1 fresh install in godaddy. In addition to my website install in my own dedicated server.
Hello cbritton,
Please keep in mind that the theme files have been fully scanned when it have gone from us and also, the Envato Market re-scanning all of them before the download process and therefore, the possibility that the theme files to be infected are null. Until now, we do not have many bad reports in this regard and at the end, the problem, in this case, it turned out to be from the user because the theme files were infected by own computer. I suspect this problem being from your PC device…please check the security of this, try to remove all the theme files and then try to re-download all the theme files from the Theme Forest to rule out any possibilities to infect all of these on your computer. As a hint, you can try to do this process from another PC which is not infected and check the results.
Hope this helps!
Thanks for your understanding!
I do understand what you are saying, but is it not possible for you to have a quick look to confirm what I have stated. The likelihood of having 3 host with fresh wordpress installs having the same exploit would be pretty low. Not to say that it has to be the theme, but only saying it would be great if you could put eyes on the site and confirm for yourself.
Since my post I confirmed with both sucuri via direct contact that my core wordpress files are clean. As far loading the files I load the full compressed folder via SSH and FTP and Unzip on the server itself. I have also. Purchased a new hosting plan on bluehost, installed fresh wordpress, loaded a theme and the site loads perfectly. I then upload the compressed themefiles, unzip and activate and instantly get the “Hacked By Black Worm” text on my main page. This is on a fresh install on a 4th hosting account…. Process of elimination is pointing to the theme. As a secondary I test I loaded only the theme plugins to my primary site that was originally used, and loaded my personal theme and the site loads fine, so it doesnt appear to be the theme plugins. I would like to request that you have a quick look. I may also need to refer to Envato support to have a look.
Thanks,
Cedric
Hello Cedric,
For more investigation in this regard, please send us an email at contact@tagdiv.com with your log-in information (wp-admin) and FTP access so we can take a look over on your site and also, so we can provide a more accurate response. Please provide the link of this topic so we can easily identify you.
Thanks for your understanding!