Warning to Wordpress & Joomla Theme Users

3 Aug 2007 ·

News, WordPress



Found this article from Derek Punsalan’s blog 5ThirtyOne.

Templates Browser dot com is collecting Wordpress & Joomla public themes and modifying them by inserting hidden spam or malware links that can compromise the end user then re-distributing it in their site. These spam and malware links are inserted in a functions.php file that comes with each theme download.

Derek’s popular Wordpress theme 5ThirtyOne V2 is one of the themes being re-distributed by Templates Browser. Other themes in their list include the Fresh theme by iLemoned and the NotSo Fresh theme which I previously used here in my blog.

If you’ve recently downloaded a Wordpress or Joomla theme from Templates browser, make sure you don’t use it and download a clean version from the theme’s original source. That’s why it’s always a good practice to download themes from reliable sources or directly from the author’s homepage or theme homepage.

Please help spread the word so other Wordpress & Joomla users would be aware of this. Visit Derek’s post and Digg it.



Subscribe to JaypeeOnline's RSS feed  Share this on del.icio.us  Stumble It!  Digg this!  Share this on Facebook  Tweet this!  Share on FriendFeed  Bookmark It!  Submit to Reddit!  Share on Mixx  Buzz It!  Email this story to a friend!
Written by Jaypee Habaradas
Owner and editor of JaypeeOnline. Self-proclaimed geek. New media writer and consultant. WordPress advocate. Loves blogging, gadgets, video games and sports. You can follow him on Twitter @jaypee or Facebook.
Didn't find what you're looking for? Try looking for it again.

Related Posts

Related Ads






















, , , ,



29 Responses to “Warning to Wordpress & Joomla Theme Users”

  1. Jaypee UNITED STATES Mozilla Firefox Windows Says:

    @webslave – You’re welcome! Just doing my best to spread the word and warn users. Yup, we really should be careful on what we download or install on our blogs. :)

    Daghang salamat sa imo pagbisita sa akong blog. ;)

  2. webslave PHILIPPINES Mozilla Firefox Windows Says:

    tsk..tsk.. thanks for that infos… *sighs* now i know.. i should be careful.

    daghang salamat sir!! :mrgreen:

  3. Jaypee UNITED STATES Mozilla Firefox Ubuntu Linux Says:

    @Gary – Oh okay, that’s good. You’re welcome! :)

  4. Gary Wise UNITED STATES Internet Explorer Windows Says:

    Thanks, Jaypee, but I changed the template back to a safe one.
    :grin:

  5. Jaypee UNITED STATES Mozilla Firefox Ubuntu Linux Says:

    @blogOloco – Yup, we really should be cautious and vigilant when it comes to these type of issues. I always remind my readers to only download themes or plugins from reliable sources.

    I’m using Firestats for that. You can download it here.

  6. P.I.N.O.Y aka blogoloco UNITED KINGDOM Mozilla Firefox Windows Says:

    It’s good that you highlighted this issue. It’s something that you would be cautious on. Make sure you don’t download anything from a dodgy site especially. Themes and Plug ins both can be targetted definitely. They will try whatever they can.

    OTT – i’m interested with your location avatar that show up beside the user comment. could you tell me where to download it. cheers mate.

  7. Jaypee UNITED STATES Mozilla Firefox Ubuntu Linux Says:

    @Gary – It does seem to be intermittent but if Google finds out that your blog is linking to spam blogs, you might get blacklisted. Better safe than sorry. :)

  8. Gary Wise UNITED STATES Internet Explorer Windows Says:

    I found this post after looking through my generated page code for Joomla! and found various links to University porn stashes.

    However, it seems to be intermittent?

  9. Jaypee UNITED STATES Mozilla Firefox Ubuntu Linux Says:

    @Connie – You didn’t specify kasi so I was left to speculate. LOL :D

  10. Connie PHILIPPINES Mozilla Firefox Mac OS Says:

    Hoy, Jaypee, ang dumi ng isip mo ha. “Dila” and ibig ko sabihin mwahahahahahaha

  11. Jaypee UNITED STATES Mozilla Firefox Ubuntu Linux Says:

    @Connie – Ganun ba? Eh pano kung babae sila, ano yon puputulin? LOL :D

    Maybe we can start another mob to get rid of sites like this. If you already started one, let me know so I can join. :)

  12. Connie PHILIPPINES Mozilla Firefox Mac OS Says:

    Uy Jaypee, I meant “putol” elsewhere hahahaha

    LOL @ Ajay. Don’t you just love it? I was very proud to be part of the mob that got the WP themes with sponsored links off the WP site. hahahaha

  13. Jaypee UNITED STATES Mozilla Firefox Ubuntu Linux Says:

    @ajay – I don’t think my post was the one that spawned the “local” thing or is it? Or maybe you’re referring to the issue that’s involved in this post? Sorry, I’m a bit confused. Hehe :D

  14. ajay PHILIPPINES Mozilla Firefox Windows Says:

    Didn’t quite realize that this post has spawned an even bigger controversy locally . Shame on these Pinoys!

  15. Jaypee UNITED STATES Mozilla Firefox Ubuntu Linux Says:

    @Riz – My bad. I wasn’t able to explain it well coz Twitter limits the number of characters per message.

    The only way to fight them is to tell other Wordpress users about it so they won’t download from that site again. Maybe you can post an announcement on your blog about it so those who use your themes would know.

  16. Riz PHILIPPINES Mozilla Firefox Mac OS Says:

    Ohhh okaay. I didnt understand your twit. I didn’t realize it was redistributed with spammy links. arrg. Tsktsk. Is there any way we could take the themes out of their database? Arrg. Screw these people!!

  17. Jaypee UNITED STATES Mozilla Firefox Ubuntu Linux Says:

    @Connie – Some people use their talents into bad use. I agree, dapat nga sila putulan. Putulin ang mga daliri para hindi na sila pwede mag type ulit or mag modify ng mga themes. :D

  18. Connie PHILIPPINES Mozilla Firefox Mac OS Says:

    Anak ng tinapay! Di pa nakotento sa spammy links sa footer. Dapat talaga sa mga yan, putulan.

  19. Jaypee UNITED STATES Mozilla Firefox Ubuntu Linux Says:

    @jhay – Engenuity taken to another level. Really nasty indeed!

  20. jhay PHILIPPINES Safari Windows Says:

    Talk about engenuity right? Nasty evil-doers.

  21. Jaypee UNITED STATES Mozilla Firefox Ubuntu Linux Says:

    @Elizar – Make sure you only download from the theme author’s site or from a very reliable source. You’re welcome!

  22. Elizar PHILIPPINES Mozilla Firefox Windows Says:

    OMG! I am actually looking for a joomla template! geezz, good thing i’m still using the default one….

    hope the one i download is clean..

    thanks for posting this man! ;)

  23. Jaypee UNITED STATES Mozilla Firefox Ubuntu Linux Says:

    @Joni – I know. Some people will do about just anything just to make money. I sure hope those people who downloaded themes from that site would be alerted before it’s too late.

  24. Joni PHILIPPINES Mozilla Firefox Windows Says:

    Tsk tsk! These people have nothing better to do! I feel sorry for those Wordpress and Joomla users who made use of the modified themes with hidden links and malware.

    You’re right, WP users should just download themes directly from the author’s website. Themes.wordpress.net is reliable website too.

**Comments posted on JaypeeOnline are moderated. I reserve the right to edit/delete comments that contain words or phrases that are defamatory, abusive, incite hatred and advertise an email address, commercial services or spammy.

Don't Be Shy. Share your thoughts!


Live Comment Preview


Trackbacks/Pingbacks

  1. [...] one of the servers powering WordPress.org. Other instances include websites trying to distribute WordPress themes containing malicious [...]

  2. [...] Warning to Wordpress & Joomla Theme Users Another Warning To WordPress Users [...]

  3. [...] Warning to Wordpress & Joomla Theme Users Another Warning To WordPress Users (No Ratings Yet) If you enjoyed the article, why not subscribe? Posted to » Wordpress Themes addthis_url = location.href; addthis_title = document.title; addthis_pub = ‘jaypeeonline’; Tags: free valentine themes, valentine, valentine themes, valentine wordpress themes, valentines-day [...]

  4. [...] three months ago, I posted a warning to WordPress and Joomla users about downloading themes from TemplateBrowser.com which contained hidden spam and malware links. [...]

  5. [...] your theme files for some malicious codes. This issue was first raised by Derek of 5ThiryOne (via JaypeeOnline) which hit Digg’s frontpage the other day. One of Derek’s free WordPress themes have [...]