Skip to content
WebHostsOnline Web-Solutions
  • Home
  • Domains
    • Domains
    • Transfer Your Domain
    • Order SSL Certificates
  • Cloud Hosting
    • AWS Hosting
    • Cloud i Hosting from WebHostsOnline
    • Google Cloud Servers
    • Magento Hosting
    • WooCommerce Hosting
    • Timeline Backups
  • Hosting
    • Shared Hosting
    • Website Builder
    • Website Design & Hosting
  • Email Hosting
  • WordPress
    • Free Hosting
    • WooCommerce Hosting
    • WordPress Hosting
  • VPS Hosting
  • Tools
    • SSL Certificates
    • Timeline Backup-Pro
    • Website Turbo
  • My Account
Contact Us
alt
WebHostsOnline Web-Solutions
  • hello@webhostsonline.co.uk
back to top

How do I use the free WebHostsOnline Website Malware Scanner? 

  • WebHostsOnline Web-Solutions
  • /knowledge-base
  • Email Hosting
  • How do I use the free WebHostsOnline Website Malware Scanner? 

My Account

3
  • How do I register a new domain with WebHostsOnline?
  • Which nameservers should I use with WebHostsOnline hosting?
  • Where can I update my account / profile details?

Cloud Servers

10
  • How do I add another server/include to an SPF record?
  • Managed Cloud Server: Manage Your Cloud Server
  • Managed Cloud Server: Registering Domain Names
  • How can I clone a site with Timeline Backups?
  • How do I restore a site using Timeline Backups?
  • How do I set up Automatic Timeline Backups?
  • Does your hosting support Django?
  • Does your Windows hosting support .NET Core?
  • How do I activate my free SSL?

Domains

10
  • How can I create a subdomain?
  • Managed Cloud Server: Registering Domain Names
  • Domain transfer statuses explained?
  • What are WebHostsOnline nameservers?
  • How to transfer your domain from 123-reg WebHostsOnline
  • How to transfer your domain from Ionos to WebHostsOnline
  • How to transfer your domain from GoDaddy to WebHostsOnline
  • How to transfer your domain from Easyspace to WebHostsOnline
  • My domain is locked with my current provider, what can I do?
  • How do I transfer my domain to you?

Email Hosting

13
  • How to create an autoresponder?
  • How do I add Office 365 DNS records?
  • Why are the IMAP folders missing from my iPhone or iPad?
  • What are the recommended Thunderbird Mail client settings?
  • How do I add another server/include to an SPF record?
  • WordPress: use SMTP with and without plugins
  • What are the Free Tools with WordPress Hosting?
  • How do I use the free WebHostsOnline Website Malware Scanner? 
  • What are my email sending limits?
  • How do I set up email on my iPhone?
  • How do I set up my WebHostsOnline mailbox in Outlook?
  • How do I create a mailbox?
  • How to use the email migration tool

FTP

2
  • How to connect Web Hosting via FTP?
  • I can’t connect via FTP, what can I do?

Web Hosting

18
  • How can I clone a site with Timeline Backups?
  • How do I restore a site using Timeline Backups?
  • How do I set up Automatic Timeline Backups?
  • Does your hosting support Django?
  • WordPress caching: what you need to know
  • Do I need caching plugins in addition to the WebHostsOnline CDN?
  • Why am I getting a cache status ‘MISS’?
  • How do I use WebHostsOnline’s CDN?
  • How do I create a Website Acceleration Suite template?
  • Improve your WordPress website’s TTFB
  • What is the Website Acceleration Suite?
  • Why could my WordPress migration fail?
  • Do you support WordPress multisite?
  • How do I activate my free SSL?
  • How do I run a search and replace in the WordPress CLI?
  • How do I create a MySQL database in MyWebHostsOnline
  • How do I change PHP version?
  • How to modify your hosts file for Windows, macOS and Linux.

WordPress

21
  • I installed WordPress on the temporary URL, how can I change it to my domain name?
  • WordPress Multisite Setup Guide
  • How can I clone a site with Timeline Backups?
  • How do I restore a site using Timeline Backups?
  • How do I set up Automatic Timeline Backups?
  • Why do I get an Internal Server Error 500 and how to fix it?
  • WordPress: use SMTP with and without plugins
  • WordPress caching: what you need to know
  • Do I need caching plugins in addition to the WebHostsOnline CDN?
  • Why am I getting a cache status ‘MISS’?
  • How do I use WebHostsOnline’s CDN?
  • How do I create a Website Acceleration Suite template?
  • Improve your WordPress website’s TTFB
  • What is the Website Acceleration Suite?
  • Why could my WordPress migration fail?
  • Do you support WordPress multisite?
  • How do I activate my free SSL?
  • How do I run a search and replace in the WordPress CLI?
  • Is it safe to update the PHP version on my website?
  • How do I migrate a website manually?
  • WooCommerce
    • WordPress Multisite Setup Guide

Migrations

3
  • Why could my WordPress migration fail?
  • How do I migrate a website manually?
  • How to modify your hosts file for Windows, macOS and Linux.

SSL Certificates

2
  • How do I activate my free SSL?
  • Can I use the free SSL if my site doesn’t use the WebHostsOnline nameservers?

Security

3
  • What are the Free Tools with WordPress Hosting?
  • How do I use the free WebHostsOnline Website Malware Scanner? 
  • Protecting your password from brute-force attacks

DataBase

13
  • How to connect Web Hosting via FTP?
  • MS-SQL
    • How do I import a .sql file via the command-line?
    • How do I manage my Microsoft SQL database?
    • What is MS-SQL?
  • MySQL
    • How do I export a .sql file via the command-line
    • How do I download or back up my MySQL Database?
    • How do I import a .sql file via the command-line?
    • Can I view my FTP, email address, or database passwords?
    • How do I create a MySQL database?
    • What’s the maximum MySQL database size allowed?
    • Can I set my database hostname as ‘localhost’?
    • How do I import a .sql file via phpMyAdmin?
    • What is MariaDB?

VPS

14
  • How do I connect to my Windows virtual machine via Remote Desktop?
  • How set up Mastodon on a Self-Managed VPS
  • How do I connect to an Unmanaged VPS using SSH?
  • How do I install and enable Apache and PHP modules on my cPanel VPS?
  • Does your hosting support Django?
  • How do I raise an additional IP address on my CentOS virtual machine?
  • How do I add an additional IP address to my virtual machine?
  • What version of Windows do you run on the Windows servers?
  • Does your Windows hosting support .NET Core?
  • How do I connect to my Windows virtual machine via Remote Desktop?
  • Windows
    • How do I connect to my Windows virtual machine via Remote Desktop?
    • Managing the Windows Application Pool
    • What version of Windows do you run on the Windows servers?
    • Does your Windows hosting support .NET Core?

Backups

3
  • How can I clone a site with Timeline Backups?
  • How do I set up Automatic Timeline Backups?
  • How do I restore a site using Timeline Backups?

SSH

8
  • Can I use sudo on shared hosting?
  • What is the PHP memory_limit?
  • How do I connect via SSH using 2FA?
  • How do I connect via SSH?
  • How do I import a .sql file via the command-line?
  • How do I connect via SSH on an Apple Mac?
  • How do I connect via SSH on an Apple Mac?
  • How do I run Composer via SSH?
View Categories
  • Home
  • /knowledge-base
  • Email Hosting
  • How do I use the free WebHostsOnline Website Malware Scanner? 

How do I use the free WebHostsOnline Website Malware Scanner? 

4 min read

AI Doc Summarizer Doc Summary
AI Doc Summarizer Thinking Thinking

Overview

One of the major problems with malware is its persistence. This is why WebHostsOnline’s free Website Malware Scanner makes daily scans of all the sites within your hosting account. It uses a combination of commercial and in-house tools and provides reports detailing identified malicious content and its location within your site files.

When malware is located on a site, PHP mail and cron jobs are automatically disabled. We do this to preserve sender reputation across the platform and ensure that any sites that are compromised do not send large volumes of spam emails.

A malware scan will only be triggered if a change is detected to the site files. If no change has been detected we won’t run a new malware scan. 

Note: when we refer to “signatures” in this guide, this is referring to the names given to each item of malicious code detected in a file.

Best practices when dealing with malware and infected files

  • Check the Malware Report produced by the malware scanner to identify if there are any infected files
  • Clean and remove the infected files from your webspace
  • Identify any vulnerabilities within the site and secure them

Taking regular backups means that you’ll always have a restore point if you do find your site with compromised files. You can do this in MyWebHostsOnline or automate the process with Timeline Backups. 

Checking the Malware Report

The Malware Scanner shows you a full list of sites that are currently infected within your account. To access this list: 

  • Login to MyWebHostsOnline.
  • Select Malware Report.
  • If any of your sites are currently infected they will show up here.

It shows the package where the infection has been found, the time of the last scan and the number of infected files. To show a more detailed report, select View Report. You will now see the full list of infected files on the site. 

Note: Infections found marked in red indicate that the file could be a risk to the site.

We also have a yellow ‘warning’ state which shows that the signatures found are unlikely to pose a high risk to the site. For example log files, SQL files and .zip backups files. Essentially a yellow warning state is for ‘information only and won’t impact the sending of mail.

You can ensure that you’re notified of any newly-discovered malware by checking the Receive Daily Email Alerts? box. An email will be sent to your primary WebHostsOnline email address when brand new malware is found – you can also add additional email accounts to receive malware alerts through your Account Preferences, you may wish to create a dedicated mailbox to receive malware alerts.

Cleaning and removing infected files

In most cases, the best way to resolve an issue with malicious content is to remove the compromised files and replace them with versions from a known clean download. That is, download the software again and replace just the files that have been infected from the initial install.

If the files are not needed, then you could also just delete the files completely.

Sometimes an infected file will just have the attackers script ‘injected’ in the first or last line within a specific file. Sometimes this can be very obvious, in which case you could look to simply remove the malicious script. 

You’ll want to do this for all the files that have been found by the Malware Scanner.

Further actions you can take

Remove unnecessary or unused plugins and applications from the site. Doing this will not only reduce the number of potential vulnerabilities but also make general site ‘housekeeping’ simpler.

You should also make sure that any plugins you’re using are always kept fully updated. Outdated software versions are much more likely to have security vulnerabilities – leading to compromised sites. 

Change passwords such as your database password and FTP password.

Note: Don’t forget to update any configuration files such as wp-config.php after making the changes. 

Rescanning the site

You can re-scan the site on demand. Once you believe you’ve removed the malware, head back to the Malware Scanner and select ‘Scan Again’.

If all infected files are removed, then PHP mail and cron jobs will automatically be re-enabled and there will be no infected files displayed. The scanner will continue to take daily scans of all your sites to ensure you’re always aware of any sites that have been compromised. 

Updated on September 23, 2025

What are your Feelings

  • Happy
  • Normal
  • Sad

Share This Article :

  • Facebook
  • X
  • LinkedIn
  • Pinterest
What are the Free Tools with WordPress Hosting?What are my email sending limits?

Powered by BetterDocs

Leave a Comment Cancel reply

WebHostsOnline Web-Solutions

Contact

  • Church Yard,
    Ashford Kent.
    TN23 1QG
  • hello@webhostsonline.co.uk

Links

  • Cloud Hosting
  • Joomla Hosting
  • Laravel Hosting
  • .Net Core Hosting
  • NodeJS Hosting
  • PHP Hosting
  • VPS Hosting
  • My WebHostsOnline Demo
  • WebMail

Support

  • Contact Us
  • Knowledge Base
  • System Status

Company

  • About
  • Blog
  • Cookie Policy
  • Disclaimer
  • Imprint
  • Privacy Statement
  • Terms and Conditions
  • Website Design Service Terms and Conditions of Service

All rights reserved © WebHostsOnline Web-Solutions. | Part of the GMCi Group
Registration No. 17215955, Registered in England and Wales.

Manage Consent
To provide the best experiences, we use technologies like cookies to store and/or access device information. Consenting to these technologies will allow us to process data such as browsing behaviour or unique IDs on this site. Not consenting or withdrawing consent, may adversely affect certain features and functions.
Functional Always active
The technical storage or access is strictly necessary for the legitimate purpose of enabling the use of a specific service explicitly requested by the subscriber or user, or for the sole purpose of carrying out the transmission of a communication over an electronic communications network.
Preferences
The technical storage or access is necessary for the legitimate purpose of storing preferences that are not requested by the subscriber or user.
Statistics
The technical storage or access that is used exclusively for statistical purposes. The technical storage or access that is used exclusively for anonymous statistical purposes. Without a subpoena, voluntary compliance on the part of your Internet Service Provider, or additional records from a third party, information stored or retrieved for this purpose alone cannot usually be used to identify you.
Marketing
The technical storage or access is required to create user profiles to send advertising, or to track the user on a website or across several websites for similar marketing purposes.
Manage options Manage services Manage {vendor_count} vendors Read more about these purposes
View preferences
{title} {title} {title}