Tsaron WordPress · Binciken Halaye

San ainihin abin da ya faru da shafinka.

Tsaron Armory shine kayan aikin da kuke samu idan aka yi wa shafin WordPress — ko kuma aka yi masa — lahani. Yana kama tushen daidaiton SHA-256, yana tabbatar da ma'aunin core & plugin, yana farautar harsashin yanar gizo da PHP da aka ɓoye, sannan yana duba wuraren ɓuya da maharin ya fi so. Karatu kawai da binciken bincike na farko: yana gaya muku abin da ya faru. kafin ka canza komai.

Sami Premium — $49/shekara Duba fasaloli Kyauta core · Premium $49/shekara
🔍 Tushen daidaiton SHA-256 🐚 Mafarauci a Yanar Gizo 👻 Gano mai gudanarwa ta fatalwa Fitar da shaida 🔒 Karatu kawai ta hanyar tsoho
yoursite.com/wp-admin · Tsaron Makamai
# scan ɗin makamai - ingancin fayil + share-shell na yanar gizo
ainihin checksums ✓ an tabbatar (Matsalar WordPress 6.x, 0)
duba abubuwan plugin ! An gyara 1 akismet/akismet.php
farautar harsashi ta yanar gizo ⚠ Bincike 1 wp-content/uploads/2026/04/.cache.php
eval mai ɓoyewa(base64_decode(… )) · POST-driven
masu kula da fatalwa ⚠ 1 ɓoye mai amfani "wp-svc" · an ƙirƙira 03:14 UTC
hanyoyin damfara ✓ babu
mugun cron ✓ babu
mu-plugins/drop-ins ✓ tsafta
# an adana tushen tushe · kunshin shaida a shirye don fitarwa
$

Tabbatar da abin da ya faru, sannan a gyara shi

Cikakken tsarin aiki na mayar da martani ga lamarin - ba wai kawai wani na'urar daukar hoto da ke cewa "za ku iya kamuwa da cutar ba".

🧬

Tushen ingancin fayil

Jerin SHA-256 na kowane fayil, tare da bambanci akan buƙata - duba ainihin abin da aka ƙara, aka canza ko aka goge tun lokacin da ka kasance mai tsabta.

Cire-tsaren Core & plugin

Tabbatar da ainihin WordPress da fayilolin plugin akan checksums na hukuma don gano lambar da aka lalata nan take.

🐚

Shafin yanar gizo & mai farautar malware na PHP

Injin sa hannu + na heuristic wanda ke gano harsashin yanar gizo da PHP mai ɓoye - masu kai hari na eval/base64/POST suna ɓoyewa a cikin lodawa.

👻

Gano mai gudanarwa na fatalwa

Mai gudanarwa na Surface Hidden yana lissafin wani mahari da aka ƙara a hankali don kiyaye matsayinsa.

🛣️

Hanyar ɗan damfara & binciken cron

Duba hanyoyin REST/AJAX marasa kyau, abubuwan da aka tsara na cron, mu-plugins da drop-ins da ake amfani da su don dagewa.

📡

C2 / fitar da yankin waje

Cire umarnin-da-sarrafawa da yankunan da aka yi wa alama mai ƙarfi daga fayilolin da ake zargi don daidaita jerin toshewar ku da IOC.

👮

Amintaccen zaman gudanarwa da ciyar da hari

Duba wanda ya shiga, daga wane IP da na'ura, tare da hanyar kai hari kai tsaye ta sa hannu kan buƙatun shiga.

🛡️

Taurarewa da keɓewa da dannawa ɗaya

A yi amfani da taurarewar lokacin aiki, a kulle shafin kuma a killace fayilolin da ake zargi — da gangan, kuma za a iya mayar da martani a kansu.

🧾

Fitar da shaidar da aka sanya mata lokaci

Fitar da fakitin shaida mai tambarin lokaci (ZIP/CSV) — cikakken rikodin abubuwan da aka gano ga rahoton ku ko mai masaukin ku.

Kyauta don samu. Kyauta don amsawa.

Mazubin ganowa kyauta ne har abada — tushe, checksums, farautar yanar gizo, mai kula da fatalwa da kuma binciken juriya. Premium ya mayar da Armory daga "me ya faru?" zuwa "magance shi": ci gaba da sa ido, faɗakarwa a ainihin lokaci da kuma shaidar da aka shirya a kotu.

  • Sanarwa da aka tsara da kuma sanarwar da aka yi amfani da ita
  • Kula da asusun gudanarwa na lokaci-lokaci & zaman
  • Daidaitawar Alamar Yarjejeniya (IOC)
  • Kunshin shaidu na lokaci-lokaci & jadawalin lokaci
yoursite.com/wp-admin · Lasisi & Tsarin
# kyauta idan aka kwatanta da Premium
KYAUTA tsaro · core · plugins · shell · polyglot
htaccess · db · mu · lokacin aiki · aiki
PREMIUM jadawali · kallo · mai tsaro · ciyarwa · zaman
taurare · keɓewa · fakiti · jadawalin lokaci
yankuna · hanyoyi · authhooks · perms · cron
ioc · ai
# haɓakawa a wurin daga WP Admin → Lasisi & Tsarin
$

Daga "watakila an yi masa kutse" zuwa amsoshi

Babu wakili, babu loda fayilolinka a cikin girgije. Komai yana gudana a cikin WordPress ɗinka.

Shigar da na'urar daukar hoto kyauta

Loda plugin ɗin kuma kunna. Maɓallin ganowa yana aiki nan take - babu buƙatar maɓalli.

Tushen & duba

Ɗauki tushen SHA-256, tabbatar da checksums kuma gudanar da binciken yanar gizo, ghost-admin da juriya.

Amsa & tabbatar

Keɓewa, taurarewa da fitar da tarin shaidu da aka sanya musu tambari a lokaci. Haɓakawa zuwa ƙimar kuɗi don sa ido da faɗakarwa.

Fara kyauta a yau

Cikakken na'urar daukar hoton sirri kyauta ce har abada. Ƙara martanin Premium & sa ido akan $49/shekara — haɓakawa a wurin daga WP Admin a kowane lokaci.

Kyauta
$0 har abada
Cikakken mashin ganowa · duk shafuka
  • Tushen daidaito da bambanci na SHA-256
  • Tabbatar da duba Core & plugin
  • Shafin yanar gizo & ɓoye-Mafarin PHP
  • Ghost-admin, hanya, cron & mu-plugin audit
  • Fitar da Shaida (ZIP/CSV)
Sami sanarwar ƙaddamarwa
Premium
$49 /shekara
Amsa · sa ido · hujja · shafi 1
  • Komai a Kyauta
  • Sanarwa game da tushen tushe da faɗakarwar juyawa
  • Gudanarwa na lokaci-lokaci & sa ido kan zaman
  • Ciyar da kai hari kai tsaye & daidaitawar IOC
  • Taurarewa, keɓewa & jadawalin lokaci na dannawa ɗaya

Amintaccen biyan kuɗi ta hanyar Stripe · soke kowane lokaci

Shin kun yi sulhu a yanzu kuma kuna buƙatar taimako na gaggawa? Tambayi game da martanin kwararru kan lamarin →

ROkaratu kawai

Binciken Halaye - farko, ba tare da cutarwa ba ta hanyar tsoho

Ma'ajiyar makamai tana kama shaida kuma tana gaya muku abin da ya faru kafin ku taɓa wani abu. Taurarewa, killacewa da kullewa ayyuka ne bayyanannu, da gangan da kuka zaɓi ɗauka - ba tare da yin mamaki ta atomatik ba.

🔒

Yana aiki akan sabar ku

Ba a taɓa loda fayilolinka zuwa wani ɓangare na uku ba. Ana yin bincike a cikin WordPress ɗinka.

🧾

Shaidar da kotu ta shirya

Abubuwan da aka rubuta a lokaci-lokaci, waɗanda za a iya fitar da su za ku iya miƙa wa mai masaukin ku ko rahoton ku.

🧩

Yana aiki tare da WAF ɗinku

Yana ƙara wa firewalls kamar Wordfence - yana tabbatarwa kuma yana murmurewa, ba kawai toshewa ba.

Kyauta don farawa

Cikakken mashin gano bayanai kyauta ne. Haɓakawa don amsawa da sa ido lokacin da kuka shirya.

Tambayoyi, an amsa

Shin Tsaron Makamai kyauta ne?

Eh — na'urar daukar hoton sirri ta asali kyauta ce: tushen daidaiton SHA-256, tabbatar da checksum na core/plugin, web-shell da obfuscated-PHP farauta, gano fatalwa-admin da sauran mazubin ganowa. Premium yana ƙara amsawa kai tsaye, sa ido da kuma fasalulluka na tabbatarwa.

Shin zai canza ko ya lalata shafina?

A'a. Ana fara binciken makamai ne ta hanyar binciken kwakwaf kuma ana karanta su ne kawai ta hanyar tsoho: yana gaya muku ainihin abin da ya faru kafin ku canza komai. Taurarewa, killacewa da kullewa a bayyane suke, ayyukan da za ku yi a zahiri ne kawai za ku jawo wa kanku.

Zan iya gudanar da shi tare da Wordfence ko wani plugin ɗin tsaro?

Eh. Ana gina rumbun adana makamai ne a daidai lokacin da wani wuri ya lalace — ko kuma aka yi masa illa — ta hanyar ƙara wa wani gidan wuta/WAF maimakon maye gurbinsa. Yana mai da hankali kan tabbatar da abin da ya canza da kuma dawo da shaidar, ba wai kan toshe zirga-zirgar ababen hawa ba.

Me tsarin kuɗi na musamman ya ƙara?

Premium yana buɗe ɓangaren martani da sa ido: jadawalin farko, sa ido kan asusun gudanarwa na ainihin lokaci da zaman, ciyarwar kai hari kai tsaye, taurarewa sau ɗaya, keɓewa, daidaitawar alamun sulhu da fakitin shaidu masu tambari lokaci.

Nawa ne kudin premium kuma ta yaya zan saya?

Premium shine $49/shekara ga wani rukunin yanar gizo, ana biyan kuɗi ta hanyar Stripe - soke kowane lokaci. Bayan biyan kuɗi, kuna samun maɓallin lasisin ku ta imel nan take; kunna shi daga ciki WP Admin a ƙarƙashin Tsaron Ma'ajiyar Makamai → Lasisi & Tsarin.

Ku kasance a shirye kafin sulhu na gaba.

Kammala cikakken tushe, ka san lokacin da komai ya canza, sannan ka tabbatar da abin da ya faru. Fara kyauta, ka haɓaka zuwa Premium akan $49/shekara idan kana son sa ido da amsawa.

Sami Premium — $49/shekara