<?xml version="1.0" encoding="UTF-8"?>
<!-- generator="bbPress/1.0.2" -->
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom">
	<channel>
		<title>Support Forum - Topic: Serious issues in original CORONA theme files - hacked WP installation</title>
		<link>http://www.kriesi.at/support/topic/serious-issues-in-original-corona-theme-files-hacked-wp-installation</link>
		<description>Support Forum - Topic: Serious issues in original CORONA theme files - hacked WP installation</description>
		<language>en-US</language>
		<pubDate>Sun, 19 May 2013 03:20:53 +0000</pubDate>
		<generator>http://bbpress.org/?v=1.0.2</generator>
		<textInput>
			<title><![CDATA[Search]]></title>
			<description><![CDATA[Search all topics from these forums.]]></description>
			<name>q</name>
			<link>http://www.kriesi.at/support/search.php</link>
		</textInput>
		<atom:link href="http://www.kriesi.at/support/rss/topic/serious-issues-in-original-corona-theme-files-hacked-wp-installation" rel="self" type="application/rss+xml" />

		<item>
			<title>Devin on "Serious issues in original CORONA theme files - hacked WP installation"</title>
			<link>http://www.kriesi.at/support/topic/serious-issues-in-original-corona-theme-files-hacked-wp-installation#post-89271</link>
			<pubDate>Fri, 21 Dec 2012 19:21:11 +0000</pubDate>
			<dc:creator>Devin</dc:creator>
			<guid isPermaLink="false">89271@http://www.kriesi.at/support/</guid>
			<description>&#60;p&#62;Hi colorit2,&#60;/p&#62;
&#60;p&#62;The dst_store is a file created by apple. Since Kriesi compiles and works on a Mac it gets added in. See: &#60;a href=&#34;http://en.wikipedia.org/wiki/.DS_Store&#34; rel=&#34;nofollow&#34;&#62;http://en.wikipedia.org/wiki/.DS_Store&#60;/a&#62;&#60;/p&#62;
&#60;p&#62;There was a security fix in the most recent version of corona (1.4) so you should definitely download it and update. You can do so by re-downloading the theme from themeforest and then installing the theme in the same way you first installed it.&#60;/p&#62;
&#60;p&#62;Regards,&#60;/p&#62;
&#60;p&#62;Devin
&#60;/p&#62;</description>
		</item>
		<item>
			<title>colorit2 on "Serious issues in original CORONA theme files - hacked WP installation"</title>
			<link>http://www.kriesi.at/support/topic/serious-issues-in-original-corona-theme-files-hacked-wp-installation#post-89242</link>
			<pubDate>Fri, 21 Dec 2012 13:35:35 +0000</pubDate>
			<dc:creator>colorit2</dc:creator>
			<guid isPermaLink="false">89242@http://www.kriesi.at/support/</guid>
			<description>&#60;p&#62;Here is a PDF (600 kB) made with Fireshot of this theme check:&#60;/p&#62;
&#60;p&#62;&#60;a href=&#34;https://www.dropbox.com/s/n0ug942le2z5kmk/ThemeCheck-Corona-Original.pdf&#34; rel=&#34;nofollow&#34;&#62;https://www.dropbox.com/s/n0ug942le2z5kmk/ThemeCheck-Corona-Original.pdf&#60;/a&#62;
&#60;/p&#62;</description>
		</item>
		<item>
			<title>colorit2 on "Serious issues in original CORONA theme files - hacked WP installation"</title>
			<link>http://www.kriesi.at/support/topic/serious-issues-in-original-corona-theme-files-hacked-wp-installation#post-89240</link>
			<pubDate>Fri, 21 Dec 2012 13:29:31 +0000</pubDate>
			<dc:creator>colorit2</dc:creator>
			<guid isPermaLink="false">89240@http://www.kriesi.at/support/</guid>
			<description>&#60;p&#62;Hi,&#60;/p&#62;
&#60;p&#62;due to some security issues at my WP installation I have made beside other things a theme check with this plugin: &#60;a href=&#34;http://wordpress.org/extend/plugins/theme-check/&#34; rel=&#34;nofollow&#34;&#62;http://wordpress.org/extend/plugins/theme-check/&#60;/a&#62;&#60;/p&#62;
&#60;p&#62;And there are obviously a lot of issues with CORONA; I'm mostly concerned about the red &#34;warnings&#34; like&#60;/p&#62;
&#60;p&#62;&#60;code&#62; ... base64_encode ... &#60;/code&#62;&#60;/p&#62;
&#60;p&#62;in avia-export-class.php for example, fopen, fclose, and why is there a &#60;strong&#62;hidden file/folder &#34;.ds_store&#34;&#60;/strong&#62;??&#60;br /&#62;
It is in the original CORONA files, freshly downloaded at Themeforest.&#60;/p&#62;
&#60;p&#62;What is there to do with all these issues concerning the security?&#60;br /&#62;
(my WP has been hacked by the &#34;pharma hack&#34; --&#38;gt; &#60;a href=&#34;http://www.pearsonified.com/2010/04/wordpress-pharma-hack.php&#34; rel=&#34;nofollow&#34;&#62;http://www.pearsonified.com/2010/04/wordpress-pharma-hack.php&#60;/a&#62;&#60;/p&#62;
&#60;p&#62;And this although I have installed Antivirus, Limit Login Attempts-plugin, several WP security plugins, using strong passwords, having no &#34;admin&#34; user, protecting wp-admin and wp-config.php with .htaccess and having the wp-config.php moved above the WP installation folder etc.&#60;/p&#62;
&#60;p&#62;So I'm currently checking all security vulnerabilities in my network - and therefor I'm worried about the &#34;theme check&#34; of CORONA.&#60;/p&#62;
&#60;p&#62;Any suggestions for this?&#60;br /&#62;
Thanks a lot!
&#60;/p&#62;</description>
		</item>

	</channel>
</rss>
