so everything under FIRE! Help!!! Help!!…calls coming out from ma cute lil wordpress kiddies…..& i can’t stand that “cry” from the smart kid of mine..WP-Header! Ohh!! dont worry dear, our Commandos are ready…& soon dad will launch OPERATIONS SATAN!! to kill those terrorists & save you ma dear ones!
I commanded “wheres the commando chief?”
Reporting: “WP-Chief, reporting sir”
“I dont wanna this f**k ing “sattan” do any harm to my kids! I want him Dead or Alive!!” I said in loud,stiff voice!
wp-chief (in strong,steady voice) – ” We are launching Operation Satan sir! lead by 302 – Encounter specialist Mr.Bond…i mean Wp-Bond (agent no: wp-007)”
Sir, Operation Satan – begins here with 2 stages
- OPERATION LUCIFER – aimed at removing the malicious codes & killing Satan!
- OPERATION HELL – aimed putting an end to Satan attacks!Expelling him from this world!
OPERATION LUCIFER:
Chief: “hello,wp-oo7, can u hear me”
007: “yaa, sir! we are ready!”
chief: “then cmon! f**k those bitches”
007: “yes sir! we wil hav a nice one”
007: “cmon boys, lets kill the plugins 1st. wp-001…you may go to Administration Dashboard of blog & de-activate all the PLUGINS now”
001: “yes sir! done…I have done that! DEACTIVATED all PLUGINS & in addition I went up to FTP & renamed the PLUGINS directory to some “PLUGS” ..sir!”
007: “well done ma boy! now cmon…lets do the gang bang”…” Major WP-Mahadev..you may go & download the “WP-BLOG-HEADER.PHP” …check there for some malicious codes like
“search homes for sale”,”act enforcement gambling internet unlawful”,”bush to sign bill internet gambling”,”investment loan bad credit”,”bad credit doc loan no”,”telephone service”,”surprise az real estate”,”homes for sale in clifton nj”,”personal debt consolidation loan”,”bingo pokerguide online poker casino city”,”adv casino cea online poker”,”greentree mortgage”,”brazil casino clickbank gambling ligion”);$ips=unserialize(base64_decode(”YToxNDc6e2k6MDtzOjE0OiIyMDguOTcuMTU2LjIxMCI7aToxO3M6MTM6I
If you find some one like that – just replace it with a fresh new WP-BLOG-HEADER.PHP
Major Mahadev: “sir..I found those codes!! what a holy shitt sir…those all were filled with deadly weapons!! It contained as much as RDX to destroy our entire BLOGS!! sir...I just defused them & replaced with a fresh “WP-BLOG-HEADER.PHP”
007: ” Okay! well done major. Operation Lucifer-stage 1 over! Now lets move from FTP area to SQL area!! cmon guys!!”
[DB area: we reached here by loging into PHPMYADMIN: If you dunno how to reach here, download WP-CONFIG.PHP from FTP area. You will find DB_User & DB_password. use this username & password to login to your DB_host (mysql.yourblog.com)]
007: “Nairsab, go and examine “wp_options” table & report to me within 3 mins”
Nairsab: “sir, examined all shitts sir… I found this malicious code near “active plugins” area! Code looks like this sir
i:6;s:22:”wp-gallery/loading.old“;i:7;s:111:”../../../../../../../../../../../../../../../../../../../../tmp/tmpVgrbkH/sess_c33b801f3760da38be0124999a49b047″;i:8;s:15:”wpvideo.php.bak“;
Nairsab: “I think .old & .bak are some kinda grenades sir! It can kill! So I just removed those section!”
007: ” good sab! sab, you shud be extreme careful when dealing with SQL tables! even a small carelessness will result in explosion”
Nairsab” yaa! sir...I tripple checked the “active_plugins” area & I only removed grenades!”
007: “so cmon boys! MISSION ACCOMPLISHED! We have recaptured FTP & DB areas!!”
007:” chief, we have done it! OPERATION LUCIFER over! SATAN DEAD!”
chief: “Well done bond! Go ahead with “OPERATION HELL”
007: “yes sir!”