minglemooch
Expert
Gunning for gold!
Member Likes (0)
Hi Encrypted Code Found in the following themes in the Farms 133 theme pack:
>blix/contact.php [Line 65: "base64_encode ($string));..."]
>blogtheme/thumb.php [Line 204: "base64 encoded red image that says 'no hotlin..."] & [Line 206: "base64_decode("R0lGODlhUAAMAIAAAP8AAP///yH5BA..."]
>colorpaper/preview.php [Line 204: "base64 encoded red image that says 'no hotlin..."] & [Line 206: "base64_decode("R0lGODlhUAAMAIAAAP8AAP///yH5BA..."]
>dignity/contact.php [Line 65: "base64_encode ($string));..."]
>gloriousday/contact.php [Line 33: "base64_encode ($string));..."]
>magazeen/timthumb.php [Line 204: "base64 encoded red image that says 'no hotlin..."] & [Line 206: "base64_decode("R0lGODlhUAAMAIAAAP8AAP///yH5BA..."]
>mistylook/contact.php [Line 34: "base64_encode ($string));..."]
>monotone/thumb.php [Line 204: "base64 encoded red image that says 'no hotlin..."] & [Line 206: "base64_decode("R0lGODlhUAAMAIAAAP8AAP///yH5BA..."]
>seashore/contact.php [Line 33: "base64_encode ($string));..."]
>sumenep/contact.php [Line 49: "base64_encode ($string));..."]
>sweetblossoms/contact.php [Line 33: "base64_encode ($string));..."]
>terrafirma/contact.php [Line 32: "base64_encode ($string));..."]
Should we be concern about this, just for security reasons I have deleted these themes. Is there another reason for these Encrypted Codes?
Thanx :)

Responses (1)
Support Kangaroo (joined March 2011) Likes (0)
Greetings minglemooch,
Thank you for bringing this to our attention.
A quick search on Google shows it is harmless coding in timthumb used for image processing, you can see for yourself below:
From Theme Forest:
http://themeforest.net/item/core-minimalist-photography-portfolio/discussion/240185?page=76
From Google coding:
http://code.google.com/p/timthumb/issues/detail?id=237
It is certainly better to be safe then sorry, but this is a genuine false alarm in this case.
Thank you for being a WPMU Dev Member!
Cheers, Joe
Become a member