Malcure Security Suite
Malcure Security ★★★★★ Protect your WordPress site from hacks and downtime. Malcure Security Suite is a fast, lightweight, cloud-connected security platform for WordPress. It performs deep server-side scans (files + database) to catch malware and unauthorized changes, allows you to monitor login activity, enables a site-wide forced re-login after incidents, and sends email alerts of incidents upon scan. Built for commercial workloads—WooCommerce stores, memberships, LMS, bookings, directories, and multi-vendor marketplaces—it plays nicely with caching/CDNs and won’t get in the way of checkout, lessons, or bookings. What Malcure Security Suite Focuses On Detect: Deep server-side malware scans (files + database), integrity/diff checks, and vulnerabilities. Control: Session analytics (user/IP/device), Emergency Logout (everyone except you), rotate auth keys & salts to invalidate tokens, and force site-wide re-login post-incident. Compatible with 2FA/SSO. Report: Clear, actionable summaries with exact file paths and reasons, email alerts with next steps, and audit-friendly logs for teams and compliance (coming-soon). Logging: Event logs with identifiable and traceable details. How It Works (SaaS) Secure Handshake: Your site authenticates with Malcure and pulls fresh threat intelligence (signatures, heuristics, rules and analysis). Local-first scanning: Scans your files and database in the background. Severity-ranked results: Findings are grouped by Critical/High/Medium/Low with exact specs, the reason they were flagged, and one-click actions plus email alerts and audit-ready logs. Graceful: If the cloud is temporarily unreachable, Malcure Security Suite continues with last-known rules and logs locally until it reconnects. Features Deep server-side malware scans (files + database) using tuned signatures + heuristics. Background scanning so long runs finish reliably on large sites. Low overhead by design; preserves Core Web Vitals and optimized to minimize impact on site speed Session management: see who’s logged in, from where. Emergency Logout: one-click sign-out (everyone except you); rotate auth keys & salts to invalidate sessions. Robust Event Monitor. Optimal Dark Mode. Highlights Signature + heuristic detection for obfuscated/injected PHP/JS (backdoor/web-shell traits). Database scan of options, postmeta, posts, and comments for malicious payloads. Email notifications for critical events and scan results Security status panel (permissions, environment) Compatible with WooCommerce, LearnDash/TutorLMS, MemberPress/PMP, major booking/event plugins, WPML/Polylang, Elementor/Divi/Block Editor, and caching/CDNs (LiteSpeed Cache, WP Rocket, NGINX FastCGI, Cloudflare). Premium (Pro) Scheduled scans (daily/weekly/monthly) with summary emails. WP-CLI automation for headless/CI workflows and cron. Priority support with accelerated SLAs.
Top keywords
- security6×1.53%
- database5×1.27%
- malcure5×1.27%
- scans5×1.27%
- email4×1.02%
- files4×1.02%
- logs4×1.02%
- malcure security4×1.02%
- alerts3×0.76%
- deep3×0.76%
- deep server-side3×0.76%
- email alerts3×0.76%
NinjaScanner – Virus & Malware scan
A lightweight, fast and powerful virus scanner for WordPress. NinjaScanner is a lightweight, fast and powerful virus scanner for WordPress which includes many features to help you scan your blog for malware and virus. Features File integrity checker. File comparison viewer. Exclusion filters. File snapshot. Database snapshot. Anti-malware/Antivirus. Sandbox for quarantined files. Ignored files list. Google’s Safe Browsing Lookup API. Background scans. Scheduled scans (Premium). WP-CLI integration (Premium). Debugging log. Email report. Integration with NinjaFirewall (WP and WP+ Edition). Multi-site support. Contextual help. And many more… File Integrity Checker The File Integrity Checker will compare your WordPress core files as well as your plugin and theme files to their original package. Its File Comparison Viewer will show you the differences between any modified file and the original. You can also add your Premium themes and plugins to the File Integrity Checker. Infected or corrupted files can be easily restored with one click. File Snapshot The File Snapshot will show you which files were changed, added or deleted since the previous scan. Database Snapshot NinjaScanner will compare all published posts and pages in the database with the previous scan and will report if any of them were changed, added or deleted. Anti-Malware Signatures You can scan your blog for potential malware and virus using the built-in signatures. The scanning engine is compatible with Linux Malware Detect LMD (whose anti-malware signatures are included) and with some ClamAV signatures as well. You can even write your own anti-malware signatures. NinjaFirewall Integration If you are running our NinjaFirewall (WP or WP+ Edition) web application firewall plugin, you can use this option to integrate NinjaScanner into its menu. Fast and Lightweight Scanner NinjaScanner has strictly no impact on your database. It only uses it to store its configuration (less than 1Kb). It saves the scan data, report, logs etc on disk only, makes use of caching to save bandwidth and server resources. It also includes a Garbage Collector that will clean up its cache on a regular basis. Background Scans Another great NinjaScanner feature is that it runs in the background: start a scan, let it run and keep working on your blog as usual. You can even log out of the WordPress dashboard while a scanning process is running! You don’t have to wait patiently until the scan has finished. Additionally, a scan report can be sent to one or more email addresses. Sandbox for quarantined files When moving a file to the quarantine folder, NinjaScanner can use a testing environment (a.k.a. sandbox) to make sure that this action does not crash your blog with a fatal error. If it does, it will warn you and will not quarantine the file. It is possible (but not recommended) to disable the sandbox. Advanced Settings NinjaScanner offers many advanced settings to finely tune it, such as exclusion filters, selection of the algorithm to use, a debugging log etc. Privacy Policy Your website can run NinjaScanner and be 100% compliant with the General Data Protection Regulation (GDPR): We, the authors, do not collect, share or sell personal information. We don’t track or profile you. Our software does not collect any private data from you or your visitors. Premium Features Check out our NinjaScanner Premium Edition Scheduled Scans: Don’t leave your blog at risk. With the scheduled scan option, NinjaScanner will run automatically hourly, twice daily or daily. WP-CLI Integration: Do you own several blogs and prefer to manage them from the command line? NinjaScanner can nicely integrate with WP-CLI, using the ninjascanner command. You can use it to start or stop a scanning process, view its status, its report or log from your favourite terminal, without having to log in to the WordPress Admin Dashboard. Dedicated Help Desk with Priority Support