Best Blackhat Forum

Full Version: [GET] Sahifa 4.3.1 - Responsive WordPress News,Magazine,Blog - UPDATED
You're currently viewing a stripped down version of our content. View the full version with proper formatting.
Pages: 1 2 3 4 5
Thanks @Hydroxide .

By the way a piece of advise to all members, install TAC plugin and check all your themes, this one included. Most new and most popular themes on themeforest now have a json calling to a server owned by the creator. Basically a call home system that register you domain and ip adress along it other information. Ive seen this on a few themes already. This does not do any warm, however you are using something you dont buy, and you may get a dmca notice. This could get serious on a website it lots of traffic.

I for example do not use TAC, i check each file one by one for suck calls and remove it. This one, dont know because i bought the theme early days to help the developer, never used it.

Best Regards to all
It worked for me thank you
Clean ?

TAC:
Encrypted Code Found!
Line 225: "base64 encoded red image that says 'no hotlin..."
wp-content/themes/sahifa/timthumb.php [Edit]

What ? Please. Tks
(06-24-2014 01:14 AM)thanhluan710 Wrote: [ -> ]Clean ?

TAC:
Encrypted Code Found!
Line 225: "base64 encoded red image that says 'no hotlin..."
wp-content/themes/sahifa/timthumb.php [Edit]

What ? Please. Tks

Please open your files before making such comments. Here is line 225 and below :

Code:
if(BLOCK_EXTERNAL_LEECHERS and& array_key_exists('HTTP_REFERER', $_SERVER) and& (! preg_match('/^https?:\/\/(?:www\.)?' . $this->myHost . '(?:$|\/)/i', $_SERVER['HTTP_REFERER']))){
            // base64 encoded red image that says 'no hotlinkers'
            // nothing to worry about! :)
            header('Content-Type: image/gif');
            header('Content-Length: ' . strlen($imgData));
            header('Cache-Control: no-store, no-cache, must-revalidate, max-age=0');
            header("Pragma: no-cache");
            header('Expires: ' . gmdate ('D, d M Y H:i:s', time()));
            echo $imgData;
            return false;
            exit(0);
        }

Like you can see there is no hidden base 64 string. Its an anti leeching function.

LIKE I SAID ITS CLEAN !!!

TAC Detected the word base64 and assumed its as an encoded string. Its not, in fact that word is uncomment.
Thanks and the files are all clean +1 rep
(06-24-2014 02:59 AM)legionfx Wrote: [ -> ]LIKE I SAID ITS CLEAN !!!

TAC Detected the word base64 and assumed its as an encoded string. Its not, in fact that word is uncomment.

Thank and +add
awesome, thank you friend
Version 4.3.1 now. My +5 reps is ready for you. ;)
awesome, update theme to Version 4.3.1
Links updated to version 4.3.1 . HAve fun

Oh @Flagged as VIRUS SPAM SITE (Do NOT CLICK!!!)-vip just a heads up. If you even think on sharing my links, ill report your ass to dmca, themeforest, ill report to you internet provider, and i even going to F*** up your at&t account. Then im going to F*** up your website, after that your life. Be happy :)
Pages: 1 2 3 4 5
Reference URL's