It seems our site (thikit.com) has been compromised and we are seeing new ‘administrators’ pop up in our wp-admin. we hired sucuri.net to scan our site and they are showing us malware detected on the following paths:
wp-content/themes/neighborhood/includes/custom-post-types/clients-type.php
wp-content/themes/neighborhood/includes/custom-post-types/team-type.php
there are many others – but i am wondering if you guys are able to let me know if these two files are necessary files for our site to function. also wondering if you have any insight into how to clean up our theme if we have been compromised with a backdoor hack. thanks in advance for any insight.
Frank