• You MUST read the Babiato Rules before making your first post otherwise you may get permanent warning points or a permanent Ban.

    Our resources on Babiato Forum are CLEAN and SAFE. So you can use them for development and testing purposes. If your are on Windows and have an antivirus that alerts you about a possible infection: Know it's a false positive because all scripts are double checked by our experts. We advise you to add Babiato to trusted sites/sources or disable your antivirus momentarily while downloading a resource. "Enjoy your presence on Babiato"

How to Detect Malicious Code in WordPress Themes and Plugins Free and Nulled

froodle

Member
Banned User
Sep 9, 2020
72
33
18
I have found an interesting read for people to check their themes.

Never trust nulled WordPress plugins and themes

However many of you might want to use those nulled or free plugins and themes for God’s Sake, If you are one of them then read the remaining article

Detecting Malicious codes

After downloading the plugin or theme, The first thing you should do is to check for virus, trojans and other worms that you may not like it.

Check for Virus and Trojans

Go to VirusTotal.com and upload the zip file to check for virus.

If your file is infected you will get a red signal and if not then you can move on to next step.

  • VirusTotal Scan result
  • Check for unwanted codes in Plugins

Now let's check for unwanted codes in plugins using another WordPress plugin called Exploit Scanner, which can be securely downloaded from the WordPress website.

After installing it go to Dashboard >> Tools >> Exploit Scanner and run the scan. It will take some time to complete the scan and the time depends on the number of plugins you have installed.

After the scan, you can see a list of codes that are suspected. You can use the browser search function to find the plugins that you installed from outside WordPress repository.


1602020337673.png

Check for Theme authenticity

Adding a backlink in a free theme is a very common technique but you can easily find those exploited themes by the plugin called Theme Authenticity Checker (TAC).

Check for Theme authenticity

Adding a backlink in a free theme is a very common technique but you can easily find those exploited themes by the plugin called Theme Authenticity Checker (TAC).

Install the plugin and go to Dashboard >> Appearance >> TAC

You can see the list of themes installed with their authenticity result. It will give a warning if any encrypted links are found in a theme.

Install the plugin and go to Dashboard >> Appearance >> TAC

You can see the list of themes installed with their authenticity result. It will give a warning if any encrypted links are found in a theme.
 

Forum statistics

Threads
80,168
Messages
1,156,569
Members
257,001
Latest member
Setupsne0204
AdBlock Detected

We get it, advertisements are annoying!

However in order to keep our huge array of resources free of charge we need to generate income from ads so to use the site you will need to turn off your adblocker.

If you'd like to have an ad free experience you can become a Babiato Lover by donating as little as $5 per month. Click on the Donate menu tab for more info.

I've Disabled AdBlock