LIVE_FEED
--:--:--[HIGH]shop-***-deals.com→Magecart skimmer (Group 7)// US-EAST--:--:--[HIGH]wp-***-blog.net→Drive-by iframe → exploit kit// EU-WEST--:--:--[MEDIUM]cdn-***-helper.io→Obfuscated cryptominer (CoinIMP)// AP-SOUTH--:--:--[HIGH]auth-***-login.co→Credential phishing kit (16shop)// EU-CENTRAL--:--:--[MEDIUM]media-***-files.org→Malicious redirect chain → ClickFix// US-WEST--:--:--[HIGH]support-***-desk.com→FakeUpdates / SocGholish payload// US-EAST--:--:--[LOW]track-***-pixel.app→Unauthorized 3rd-party tracker// EU-NORTH--:--:--[MEDIUM]img-***-host.ru→Drive-by download (TLD reputation)// EU-EAST--:--:--[HIGH]api-***-stats.xyz→C2 beacon (Cobalt Strike profile)// AP-EAST--:--:--[LOW]promo-***-coupon.shop→Affiliate cloaking + cookie stuff// US-CENTRAL--:--:--[HIGH]shop-***-deals.com→Magecart skimmer (Group 7)// US-EAST--:--:--[HIGH]wp-***-blog.net→Drive-by iframe → exploit kit// EU-WEST--:--:--[MEDIUM]cdn-***-helper.io→Obfuscated cryptominer (CoinIMP)// AP-SOUTH--:--:--[HIGH]auth-***-login.co→Credential phishing kit (16shop)// EU-CENTRAL--:--:--[MEDIUM]media-***-files.org→Malicious redirect chain → ClickFix// US-WEST--:--:--[HIGH]support-***-desk.com→FakeUpdates / SocGholish payload// US-EAST--:--:--[LOW]track-***-pixel.app→Unauthorized 3rd-party tracker// EU-NORTH--:--:--[MEDIUM]img-***-host.ru→Drive-by download (TLD reputation)// EU-EAST--:--:--[HIGH]api-***-stats.xyz→C2 beacon (Cobalt Strike profile)// AP-EAST--:--:--[LOW]promo-***-coupon.shop→Affiliate cloaking + cookie stuff// US-CENTRAL
Help centre

Support

Answers to the questions we get most, a plain-language guide to every plugin setting, and a form that reaches a real person.

Frequently asked questions

Setup, monitoring and billing questions from new customers.

WordPress 6.0 or newer on PHP 7.4 or newer. The plugin has no other dependencies and does not require WooCommerce.

Plugin settings explained

Every option in the WordPress plugin, and what it changes.

Protected website
The domain that gets scanned. It must match the site the plugin runs on; change it only after a migration.
Assessment frequency
How often we re-crawl and re-analyse your pages. More frequent checks shorten the time to detect a new injection.
Alert email
Where findings are sent. Use a shared security or operations inbox so alerts are not missed while someone is away.
Alert sensitivity
Controls how confident a detection must be before it becomes an alert. Lower sensitivity means fewer, higher-confidence alerts.
Ignored scripts
Third-party scripts you have reviewed and accepted. Ignored entries stay visible in the inbox but never trigger an alert.
Webhook URL
Optional endpoint that receives every finding as JSON, for routing into Slack, a SIEM, or your own ticketing system.
Diagnostics
Shows plugin version, last assessment time and connectivity status. Include this screen when contacting support.
See plugin version history

Still stuck? Talk to us

Describe the problem and include your domain. We reply within one business day.