WordPress PHP Malware Checker Tool
Upload a PHP file for a fast MAL{ai} malware classification.
Check PHP code
Upload a single PHP-family file and MAL{ai} will classify it as clean, suspicious, malware, or inconclusive.
- Accepted file types: PHP, PHP5, PHP7, and PHTML.
- Maximum upload size: 32MB.
- Remove secrets, customer data, and identifying comments before uploading.
Before you upload
A fast second opinion for suspicious PHP.
MAL{ai} is designed to detect malicious PHP without relying only on signatures. It is useful for triage, but sensitive code should be cleaned before upload and prediction results should be reviewed carefully.
Likely clean
No malicious PHP pattern was detected.
Suspicious
The code resembles risky patterns and should be manually reviewed.
Likely malware
The code matches malicious behavior and should not be trusted.
Safety guidance
- Use this as a fast second opinion, not as your only review step.
- Predicted results are useful signals, but confirmed results carry more weight.
- Do not upload private client code until sensitive data has been removed.
MAL{ai} Result
Upload a PHP file to check it
MAL{ai} will classify the code and explain whether the result is confirmed or predicted.
Protect this site with scanning
Run MAL{ai} inside ShieldPRO so suspicious PHP is found automatically during site scans.
See ShieldPRO PlansLearn about MAL{ai}
See how AI-powered malware scanning fits into Shield file and plugin/theme scans.
View Feature