GOTMLS identified wp-tmp as a problem containing an ad injection script and offered a fix. However, it did not identify one of the underlying issues that kept rewriting wp-tmp.php which was in the template functions.php; I’ve included the code at the end of this entry.
I removed that from functions.php but it seems as though there is other code somewhere that I have yet to locate that is rewriting that functions.php code.
If anyone has run across this before I’d love to hear from you.
-
This topic was modified 6 years, 9 months ago by Anti-Malware Admin. Reason: Malicious code removed