Discover, trust, install: FAIR 1.0 is here
Quttera Web Malware Scanner
Version: 3.5.2.11
Description
The Quttera Web Malware Scanner plugin will scan your website for malware, trojans, backdoors, worms, viruses, shells, spyware and other threats as well as JavaScript code obfuscation, exploits, malicious iframes, malicious code injection, malicious code obfuscation, auto-generated malicious content, redirects, hidden eval code and more. Also, it will check whether your website is blacklisted by Google and other blacklisting authorities. Help yourself to protect your website, your website users and your online reputation with a free Quttera Web Malware Scanner plugin.
Features:
- One Click Scan
- Unknown Malware Detection
- External Links Detection
- Blacklist Status
- No Signatures or Patterns Updates
- Artificial Intelligence Scan Engine
- Cloud Technology
- Detailed Investigation Report
- Investigation of WordPress files
- Detection of files infected by PHP malware
- Detection of injected PHP shells
If you need a hand with malware removal please do not hesitate to contact us on support@quttera.com or sign-up to any of our annual plans which include malware cleanup and blacklist removal on https://quttera.com/anti-malware-website-monitoring-signup .
Credits
Plugin’s other home
Installation
- Download the plugin.
- Go to the WordPress Plugin menu and activate it.
- That’s it!
Faq
This plugin uses Quttera’s unique, patented, malware scanning and detection technology. The scanning engine employs a multi-layered, heuristic approach to gather the intelligence from the analyzed system and digest it into weighted rules to flag a piece of code as malicious. A self-learning mechanism uses Quttera’s threats intelligence database crowd-sourced from a worldwide network to update the ruleset and improve detection with each subsequent run.
Standard or traditional scanning relies on the signature matching mechanisms. In which the signature of the known threat or its polymorphed variant is compared with the contents (string, e.g.) of the examined file. This technique relies on the existence of the signature in the database to enable the detection. Heuristic approach implements rules, weight-based systems, emulators, flow analyzers, statistical and mathematical methods when probing specific instructions, commands or any other portion of the software. As a result, it allows detecting the potentially malicious functionality in new (previously unknown) malware.
Quttera technology encompasses heuristic and self-learning components. The severity of the detection depends on the danger it can potentially pause. Current implementation offers four (4) severity levels: Clean, Potentially Suspicious, Suspicious and Malicious. If you are not sure whether Potentially Suspicious or Suspicious detection is an actual threat, our team will help you with that. You can contact us via any of the following: a ticket at https://helpdesk.quttera.com, email to support@quttera.com or through the Support Forum .
You can contact us via any of the following: a ticket at https://helpdesk.quttera.com, email to support@quttera.com or through the Support Forum .
Report False-Positive to our helpdesk, and we will review and fix it within the 3-4 working days.
Please submit any missing detection to our helpdesk.
That usually occurs when there is only one PHP worker assigned to the site. When the plugin runs, it occupies one PHP worker for the scan. Since there are no extra PHP workers available, the plugin blocks the website until the scan is finished.
Yes, we offer website security plans to protect the sites from malware and blacklisting, fix hacking and improve the overall cybersecurity risks management for web assets.
A front-end code interacts with the backend code of this plugin through the HTTP request sent by loaded JavaScript functionality (code). Please verify that you have JavaScript enabled and that the firewall doesn’t block these requests.
Click “Download Report” button to generate the report, store it as a text file and send it to us via helpdesk.
The plugin scheduler invocation is based on WordPress Cron mechanism.
Some web hostings and servers do not enable the functionality required for WordPress Cron mechanism to work correctly.
There is a way to overcome this limitation by using alternative WordPress Cron. To enable alternative Cron, please add the following line to wp-config.php
define(‘ALTERNATE_WP_CRON’, true);
For questions about investigation process please refer to http://quttera.com or post in the Support section here.
Reviews
Effective plugin for vulnerability detection
By romeroz on January 12, 2025
It just helps when you're having trouble. Nice cool job, thank you!
Highly recommended
By nmrockswp on April 11, 2024
Cleaned all my issues. Fantastic
By oscarma007 on February 10, 2023
It cleaned the malware on my website before it executed and gave me issues. top-notch product.
Saved my life
By rocky12 on November 5, 2022
Useless Adware
By WilliamCampbell on June 2, 2022
Excellent
By dfyz1337 on September 16, 2021
Works well!
By Harald Wenzel (epiphanius1) on March 1, 2021
AVOID, CONTINUOUS FALSE POSITIVES
By Andrés Sorolla (andresgs) on September 26, 2020
Worth your time and money! HIGHLY RECOMMENDED
By Faststores (faststores) on August 27, 2020
Waste of time
By pdpiotr on August 17, 2020
Changelog
3.5.2.11
- Added new detection rules
3.5.2.1
- Fixed vulnerability type: Stored XSS Administrator+ role Affected Plugin. Thanks to Artyom Krugov for reporting and helping to improve our plugin.
- Fixed vulnerability type: Server-Side Request Forgery. Thanks to Jonas Benjamin Friedli for reporting and helping to improve our plugin. CVE-2025-8013.
3.5.1.41
- Added new detection rules
3.5.0.1
- Added new detection rules
- Added new GUI
3.4.2.1
- Added new detection rules
- Fixed vulnerability types: Directory Listing and Path Traversal. Thanks to Dmitrii Ignatyev for reporting and helping to improve our plugin.
3.4.0.1
- Added capability to ignore specific files or directories
3.3.0.22
- Added capability for high sensitive and normal scans
3.2.1.97
- Added new detection rules
3.1.1.0
- Fixed presentation of investigation report
3.0.21.17
- Added new SEO/malware/ransomware detections
3.0.9.1
- Added admin user verification on internal scan
3.0.8.65
- Added new SEO/malware/ransomware detections
3.0.8.1
- Fixes for 4.8.2 and new backdoor samples
3.0.7.45
- Added new malware/shell samples
3.0.7.22
- Added new spam samples
3.0.7.21
- Added new spam samples
3.0.7.20
- Added new malware shell
3.0.7.0
- Added new malicious ads detection
1.0.0
- Initial public release