No search results were found in Documentation!
Hello,
For malware, please check this topic https://forum.tagdiv.com/topic/security-vulnerability-reported-in-composer-again/
For thumbs please go to the theme panel -> block settings -> inline css and disable the option to minify the css and clear the cache.
Thank you!
Check this screenshot also here https://app.screencast.com/LAvIrM0gzBfwp
Hostinger Security option saying that, this plugin td-composer has malware
Yes sure,
1st problem is the featured images are not showing on the homepage and articles on everywhere.
2nd Hostinger shows that this plugin td-composer has malware.
Please check the screenshot below
Hi,
This malware infects not only theme files but also WordPress files or other plugin files. This malware was not detected only in our theme but also in many other themes and plugins https://www.bleepingcomputer.com/news/security/massive-balada-injector-campaign-attacking-wordpress-sites-since-2017 / -> https://cybernews.com/security/wordpress-malware-epidemic-balada-injector/ -> https://www.geoedge.com/balda-injectors-2-0-evading-detection-gaining-persistence /
I can offer an alternative recommendation if you prefer that we don’t inspect your theme files. You could consider downgrading the WordPress version using the WP Downgrade plugin, reinstalling the theme, and checking for this plugin wp-zexit.php. It might be wise to inspect via FTP if it doesn’t appear in the WordPress -> Plugins. Additionally, using Wordfence to scan the website and remove unknown users would be prudent.
Also, please make sure that you have the latest version 12.6.1
Thank you!
Hi,
This malware infects not only theme files but also WordPress files or other plugin files. This malware was not detected only in our theme but also in many other themes and plugins https://www.bleepingcomputer.com/news/security/massive-balada-injector-campaign-attacking-wordpress-sites-since-2017 / -> https://cybernews.com/security/wordpress-malware-epidemic-balada-injector/ -> https://www.geoedge.com/balda-injectors-2-0-evading-detection-gaining-persistence /
I can offer an alternative recommendation if you prefer that we don’t inspect your theme files. You could consider downgrading the WordPress version using the WP Downgrade plugin, reinstalling the theme, and checking for this plugin wp-zexit.php. It might be wise to inspect via FTP if it doesn’t appear in the WordPress -> Plugins. Additionally, using Wordfence to scan the website and remove unknown users would be prudent.
Also, please make sure that you have the latest version 12.6.1
Thank you!
Hi,
Please check if you have set the link to the category or if the category is added, not just a text.
Also, please provide the link to your website.
Also, please scan your website for malware.
Thank you!
Hello!
This issue has been discussed already here: https://forum.tagdiv.com/topic/wp-zexit-malware-and-newspaper-theme-problem-please-see/
Thank you!
Hi,
Please downgrade wordpress to version 6.0 using this plugin https://wordpress.org/plugins/wp-downgrade/ after the update, the wordpress to 6.3.2 There are more files infected with malware.
Also, please check this topic https://forum.tagdiv.com/topic/update-required-newspaper-12-1-1-brings-extra-security/
Thank you!
Hi, we purchased version 8 of Newspaper several years ago, it was purchased by an employee conner@lamproslabs.com, and I can’t reset his Themeforest password to access the updates. I just paid for a year of support with version 12, but I’m not sure about updating that much… can I get the version 8 updates somehow? Previous versions don’t show up in my downloads area. The site is being repeatedly infected by malware because of an outdated tagdiv right now. Any help would be appreciated.
Hello, we’re experiencing the redirect issue. We’ve updated all plugins, removed users, changed passwords, and removed malware code from the documents. The malware keeps reappearing. It looks like it’s tied to this https://arstechnica.com/security/2023/10/thousands-of-wordpress-sites-have-been-hacked-through-tagdiv-plugin-vulnerability/
What’s the solution?
Hi,
This is an easy process to clear the wordpress files, if there is a malware code.
Thank you!
Hi,
Please activate the tagdiv standard pack plugin and clear the cache.
Please downgrade wordpress to version 6.0 using this plugin https://wordpress.org/plugins/wp-downgrade/ after the update, the wordpress to 6.3.2 There are more files infected with malware.
Also, please check this topic https://forum.tagdiv.com/topic/update-required-newspaper-12-1-1-brings-extra-security/
Thank you!
Hello,
Please downgrade wordpress to version 6.0 using this plugin https://wordpress.org/plugins/wp-downgrade/ after the update, the wordpress to 6.3.2 There are more files infected with malware.
Also, please check this topic https://forum.tagdiv.com/topic/update-required-newspaper-12-1-1-brings-extra-security/
Thank you!
I realized I was behind in the theme updates (my other themes have easy auto updates) and am running v9.8. I also had a malware issue from the tagDiv plugins that I had to clean up.
I tried to update to the current version but it completely breaks my site. How can I update without it messing up the site?
My site was infected due to vunerability in one of tagdiv’s plugins. How can I remove it?
Hi Bettina,
I have followed all the steps you mentioned in the post you linked and they did not resolve the issue.
Suggesting that we try on a fresh WordPress install does not help with the issue we are having. We do not want to rebuild the entire site. We are simply attempting to upgrade from Newspaper 9 to Newspaper 12 in order to take advantage of the malware patch in Composer version 4. When we upgrade, the site looks fine except that the header with our logo and menu no longer shows. And with Composer throwing this error we cannot edit the page to fix it.
The “Error at zones: 6(models) : 5(dom). The model does not match the content Current state has involved an issue.” error does not appear when editing using Composer in our Newspaper 9 site, but only after upgrading to Newspaper 12.
We have also tried updating to Composer 4 on our Newspaper 9 site, but installing it creates a critical error.
Can you give us any more assistance to get this resolved? Please help.
Thank you,
I did not. I was able to clean up the malware in the site but I’m still getting the XSS-Checker alert.
Check your index.php and the wp-blog-header for a malware code. You can compare the file you have in your installation with a clean file from the wordpress download. To remore malware just change the content to the clean file
Thank you, I’ve used the plugin suggested to clean the malware, however, I’m still seeing the XSS-Checker alert. Any idea where this could be coming from?
Hello!
Follow this guide to clean your WordPress and theme of malware: https://askwpgirl.com/10-steps-remove-malware-wordpress-site/
Thank you!
Hello!
Follow this guide to clean your WordPress and theme of malware: https://askwpgirl.com/10-steps-remove-malware-wordpress-site/
I would gladly recommend you to make a backup and update plugins and the theme via file transfer to the latest update: https://forum.tagdiv.com/how-to-update-the-theme-2/
First of all, please make sure you have a backup done and then you can update the theme and the TagDiv plugins also.
Please take a look for this advice before updating: https://forum.tagdiv.com/topic/action-required-please-read-how-to-update-to-the-newspaper-theme-v-10/
Also, please use only one builder and not both because they will be in a plugin conflict.
If you have some custom modifications in the theme files, then better save the code and replace it after every update.
Thank you!
Hello!
How did you build your pages? Which editor did you use, WP Bakery? If yes, then please check those screenshots to know how to shift from WPBakery to Composer: https://www.screencast.com/t/6xLVMmlsY ; https://www.screencast.com/t/zWHrRmK1LQC ; https://www.screencast.com/t/vuFdT9Stx ; https://www.screencast.com/t/DWbSf3qj ; https://www.screencast.com/t/QuHyGccTK71v
Follow this guide to clean your WordPress and theme of malware: https://askwpgirl.com/10-steps-remove-malware-wordpress-site/
Thank you!
Ugh. I just updated from version 9 and the malware is gone but what a mess to fix!
We are trying to upgrade our sites from Newspaper 9 to 12. Upon applying the theme and the required plugins there are problems with the headers. What is it about the upgrade from 9 to 12 that would break the headers?
Site 1: (production) GunDigest.com
Staging: https://gundigeststg.wpengine.com/
Issue: The existing Header from Newspaper9 does not show. Editing with Composer does not bring up the editor. Our existing header is not available for selection. Importing a cloud header (real News Pro) makes the entire header look broken. Clicking on the Menu buttons doesn’t launch the editor.
Errors: Composer throws the following error: “Error at zones: 6(models) : 5(dom). The model does not match the content Current state has involved an issue. “
Site 2: (production) Blademag.com
Staging: https://blademagtest.wpengine.com/
Issue: The existing header from the production site shows, but all of the sub-menu items (seen on mouse-over) are unstyled. Editing with Composer does not bring up the editor. Our existing header is not available for selection.Clicking on the Menu buttons doesn’t launch the editor.
Errors: Composer throws the following error: “Error at zones: 6(models) : 2(dom). The model does not match the content Current state has involved an issue.”
What other information do you need to help with this issue?
We need to upgrade the theme in order to protect against the balada malware injector.
Thank you
Hi. I’m getting MalwareBytes warning on my presswatchers.org website for malware from
fourth.gybritanalytsesystem.com. I gather from a Google search that this is linked to the Newspaper theme? Is there some easy way to be rid of it?