Warning to Wordpress & Joomla Theme Users


Warning to WordPress & Joomla Theme Users

3 Aug 2007 ·

News, WordPress



Found this article from Derek Punsalan’s blog 5ThirtyOne.

Templates Browser dot com is collecting WordPress & Joomla public themes and modifying them by inserting hidden spam or malware links that can compromise the end user then re-distributing it in their site. These spam and malware links are inserted in a functions.php file that comes with each theme download.

Derek’s popular WordPress theme 5ThirtyOne V2 is one of the themes being re-distributed by Templates Browser. Other themes in their list include the Fresh theme by iLemoned and the NotSo Fresh theme which I previously used here in my blog.

If you’ve recently downloaded a WordPress or Joomla theme from Templates browser, make sure you don’t use it and download a clean version from the theme’s original source. That’s why it’s always a good practice to download themes from reliable sources or directly from the author’s homepage or theme homepage.

Please help spread the word so other WordPress & Joomla users would be aware of this. Visit Derek’s post and Digg it.


Subscribe to JaypeeOnline's RSS feed  Share this on del.icio.us  Stumble It!  Digg this!  Share this on Facebook  Tweet this!  Share on FriendFeed  Bookmark It!  Submit to Reddit!  Share on Mixx  Buzz It!  Email this story to a friend!
Written by Jaypee Habaradas
Owner and editor of JaypeeOnline. Self-proclaimed geek. New media writer and consultant. WordPress advocate. Loves blogging, gadgets, video games and sports. You can follow him on Twitter @jaypee or Facebook.
Don't miss a single post and receive FREE updates on your email inbox. Subscribe NOW!

Enter your email address:

*Don't forget to verify your subscription by clicking the link on the email that Feedburner will send you.*

Didn't find what you're looking for? Try looking for it again.

Related Posts

Related Ads

























, , , ,

**Comments posted on JaypeeOnline are moderated. I reserve the right to edit/delete comments that contain words or phrases that are defamatory, abusive, incite hatred and advertise an email address, commercial services or spammy.


29 Responses to “Warning to WordPress & Joomla Theme Users”

  1. Jaypee Says:

    @webslave – You’re welcome! Just doing my best to spread the word and warn users. Yup, we really should be careful on what we download or install on our blogs. :)

    Daghang salamat sa imo pagbisita sa akong blog. ;)

    Reply

  2. webslave Says:

    tsk..tsk.. thanks for that infos… *sighs* now i know.. i should be careful.

    daghang salamat sir!! :mrgreen:

    Reply

  3. Jaypee Says:

    @Gary – Oh okay, that’s good. You’re welcome! :)

    Reply

  4. Gary Wise Says:

    Thanks, Jaypee, but I changed the template back to a safe one.
    :grin:

    Reply

  5. Jaypee Says:

    @blogOloco – Yup, we really should be cautious and vigilant when it comes to these type of issues. I always remind my readers to only download themes or plugins from reliable sources.

    I’m using Firestats for that. You can download it here.

    Reply

  6. P.I.N.O.Y aka blogoloco Says:

    It’s good that you highlighted this issue. It’s something that you would be cautious on. Make sure you don’t download anything from a dodgy site especially. Themes and Plug ins both can be targetted definitely. They will try whatever they can.

    OTT – i’m interested with your location avatar that show up beside the user comment. could you tell me where to download it. cheers mate.

    Reply

  7. Jaypee Says:

    @Gary – It does seem to be intermittent but if Google finds out that your blog is linking to spam blogs, you might get blacklisted. Better safe than sorry. :)

    Reply

  8. Gary Wise Says:

    I found this post after looking through my generated page code for Joomla! and found various links to University porn stashes.

    However, it seems to be intermittent?

    Reply

  9. Jaypee Says:

    @Connie – You didn’t specify kasi so I was left to speculate. LOL :D

    Reply

  10. Connie Says:

    Hoy, Jaypee, ang dumi ng isip mo ha. “Dila” and ibig ko sabihin mwahahahahahaha

    Reply

  11. Jaypee Says:

    @Connie – Ganun ba? Eh pano kung babae sila, ano yon puputulin? LOL :D

    Maybe we can start another mob to get rid of sites like this. If you already started one, let me know so I can join. :)

    Reply

  12. Connie Says:

    Uy Jaypee, I meant “putol” elsewhere hahahaha

    LOL @ Ajay. Don’t you just love it? I was very proud to be part of the mob that got the WP themes with sponsored links off the WP site. hahahaha

    Reply

  13. Jaypee Says:

    @ajay – I don’t think my post was the one that spawned the “local” thing or is it? Or maybe you’re referring to the issue that’s involved in this post? Sorry, I’m a bit confused. Hehe :D

    Reply

  14. ajay Says:

    Didn’t quite realize that this post has spawned an even bigger controversy locally . Shame on these Pinoys!

    Reply

  15. Jaypee Says:

    @Riz – My bad. I wasn’t able to explain it well coz Twitter limits the number of characters per message.

    The only way to fight them is to tell other WordPress users about it so they won’t download from that site again. Maybe you can post an announcement on your blog about it so those who use your themes would know.

    Reply

  16. Riz Says:

    Ohhh okaay. I didnt understand your twit. I didn’t realize it was redistributed with spammy links. arrg. Tsktsk. Is there any way we could take the themes out of their database? Arrg. Screw these people!!

    Reply

  17. Jaypee Says:

    @Connie – Some people use their talents into bad use. I agree, dapat nga sila putulan. Putulin ang mga daliri para hindi na sila pwede mag type ulit or mag modify ng mga themes. :D

    Reply

  18. Connie Says:

    Anak ng tinapay! Di pa nakotento sa spammy links sa footer. Dapat talaga sa mga yan, putulan.

    Reply

  19. Jaypee Says:

    @jhay – Engenuity taken to another level. Really nasty indeed!

    Reply

  20. jhay Says:

    Talk about engenuity right? Nasty evil-doers.

    Reply

  21. Jaypee Says:

    @Elizar – Make sure you only download from the theme author’s site or from a very reliable source. You’re welcome!

    Reply

  22. Elizar Says:

    OMG! I am actually looking for a joomla template! geezz, good thing i’m still using the default one….

    hope the one i download is clean..

    thanks for posting this man! ;)

    Reply

  23. Jaypee Says:

    @Joni – I know. Some people will do about just anything just to make money. I sure hope those people who downloaded themes from that site would be alerted before it’s too late.

    Reply

  24. Joni Says:

    Tsk tsk! These people have nothing better to do! I feel sorry for those WordPress and Joomla users who made use of the modified themes with hidden links and malware.

    You’re right, WP users should just download themes directly from the author’s website. Themes.wordpress.net is reliable website too.

    Reply

Don't Be Shy. Share your thoughts!

XHTML: You can use these tags: <a href="" title=""> <abbr title=""> <acronym title=""> <b> <blockquote cite=""> <cite> <code> <del datetime=""> <em> <i> <q cite=""> <strike> <strong>

Trackbacks/Pingbacks

  1. [...] one of the servers powering WordPress.org. Other instances include websites trying to distribute WordPress themes containing malicious [...]

  2. [...] Warning to WordPress & Joomla Theme Users Another Warning To WordPress Users [...]

  3. [...] Warning to WordPress & Joomla Theme Users Another Warning To WordPress Users (No Ratings Yet) If you enjoyed the article, why not subscribe? Posted to » WordPress Themes addthis_url = location.href; addthis_title = document.title; addthis_pub = ‘jaypeeonline’; Tags: free valentine themes, valentine, valentine themes, valentine wordpress themes, valentines-day [...]

  4. [...] three months ago, I posted a warning to WordPress and Joomla users about downloading themes from TemplateBrowser.com which contained hidden spam and malware links. [...]

  5. [...] your theme files for some malicious codes. This issue was first raised by Derek of 5ThiryOne (via JaypeeOnline) which hit Digg’s frontpage the other day. One of Derek’s free WordPress themes have [...]