Hello everybody,
i buy the theme, install it on an new domain, active the maintanance mode, deactivate the site for all search bots and begin to create content.
Two week later i have the first problems:
1. the send Spam mails from my site and server
/wp-content/themes/enfold/rmkykgpet.php
/wp-content/themes/enfold/fkchjkf.php
/wp-content/themes/enfold/brjmo.php
2. they create folder and chinese sites on my host
http://www.mydomain.com/sk8hi/NrT/
Now i delete the fake folders and deactive the theme.
What can i do to use the theme without this security problems?
Thanks
Hi webworkerunited!
This sounds more like an insecure sever configuration than a theme security issue especially because we have no know security leak in the Enfold theme code. Make sure the ftp permissions of the wp-content/themes directory are set to 755 and deactivate the folder index option if necessary. I also recommend to contact the server administrator – maybe the htaccess rules require some tweaks.
Best regards,
Peter