WPStore+ Malware File Change Monitor helps WordPress site owners, developers, and maintenance teams detect suspicious file activity before it becomes a serious security incident.
Instead of automatically deleting files or making risky changes, this plugin works as a safe read-only monitoring system. It creates a baseline of your WordPress files, watches for unexpected file additions, modifications, or deletions, and highlights suspicious PHP files commonly found in infected websites.
The plugin can detect unusual PHP files in sensitive locations such as uploads, cache, upgrade, backup, root, plugin, and theme directories. It also scans for high-risk code patterns such as obfuscated PHP, suspicious execution functions, encoded payloads, and potentially dangerous file behavior.
When suspicious or critical findings are detected, WPStore+ Malware File Change Monitor can send alerts through Email, LINE Messaging API, Slack Webhook, or a custom Webhook URL. It also includes a Weekly Security Digest so site owners can review important security changes regularly.
Built for commercial WordPress maintenance, this plugin is ideal for agencies, freelancers, WooCommerce store owners, and website administrators who need a practical way to monitor file integrity and suspicious file changes without risking accidental file deletion.
Key Features
File Integrity Monitoring
- Create a baseline of existing WordPress files
- Detect newly added files
- Detect modified files
- Detect deleted files
- Track file size, modified time, hash, and file status
- Monitor sensitive WordPress locations
- Review scan history from the admin dashboard
Suspicious PHP File Detection
- Detect PHP files inside uploads folders
- Detect suspicious files in cache, backup, upgrade, and temporary directories
- Flag unexpected PHP files in plugin and theme folders
- Detect hidden or unusual file names
- Identify risky file extensions and suspicious file locations
- Highlight suspicious files without deleting them automatically
High-Risk Code Pattern Scanner
- Detect risky PHP patterns such as
eval,base64_decode,gzinflate,shell_exec,system,passthru, and similar functions - Identify potentially obfuscated PHP code
- Assign risk scores to suspicious findings
- Classify findings by severity: Low, Medium, High, or Critical
- Help administrators review suspicious files safely
Quick Scan and Full Scan
- Run Quick Scan for high-risk locations
- Run Full Scan for broader file integrity checks
- Create or rebuild file baseline
- Review scan logs and findings
- Designed to reduce unnecessary server load
- Suitable for WordPress and WooCommerce websites
License Feature Gate
- Commercial license integration with WPStore Licenses
- License activation, check, deactivation, update check, and cache clearing
- Unlock advanced features with an active license
- Protect premium features such as Full Scan, Scheduled Scan, Alerts, Ignore Rules, and Support Report
- Includes license diagnostics in System Status and Support Report
Real-Time Security Alerts
- Email alerts
- LINE Messaging API alerts
- Slack Incoming Webhook alerts
- Custom Webhook URL alerts
- Test notification button
- Notification severity threshold
- Alert when suspicious or critical scan findings are detected
Weekly Security Digest
- Receive a weekly summary of important security findings
- Review suspicious files, critical findings, and file changes
- Useful for maintenance teams and website owners
- Helps keep security monitoring visible without checking the dashboard every day
Ignore Rules
- Ignore known safe files or paths
- Reduce repeated alerts for trusted custom files
- Manage ignore rules from the plugin settings
- License-protected advanced feature
System Status and Support Report
- Review plugin status, license status, scan status, notification settings, and product readiness
- Generate support report for troubleshooting
- Includes Product Readiness information
- Helpful for WPStore+ support and customer diagnostics
Read-Only Safety Design
- Does not automatically delete files
- Does not quarantine files automatically
- Does not modify suspicious files
- Helps reduce the risk of breaking a website accidentally
- Built for safe review-first security monitoring
Pricing Note
This plugin has strong commercial value because it provides file integrity monitoring, suspicious PHP detection, license-gated premium features, real-time alerts, and weekly security digest. A launch price of $19/year is attractive for early WPStore+ customers, while the regular price of $39/year better reflects the security-focused value of the product.















Reviews
There are no reviews yet.