Title: ExploitShield Domain Monitor
Author: Dancho Danchev
Published: <strong>September 30, 2026</strong>
Last modified: September 30, 2026

---

Search plugins

![](https://s.w.org/plugins/geopattern-icon/exploitshield-domain-monitor.svg)

# ExploitShield Domain Monitor

 By [Dancho Danchev](https://profiles.wordpress.org/ddanchev/)

[Download](https://downloads.wordpress.org/plugin/exploitshield-domain-monitor.4.1.5.zip)

 * [Details](https://wordpress.org/plugins/exploitshield-domain-monitor/#description)
 * [Reviews](https://wordpress.org/plugins/exploitshield-domain-monitor/#reviews)
 *  [Installation](https://wordpress.org/plugins/exploitshield-domain-monitor/#installation)
 * [Development](https://wordpress.org/plugins/exploitshield-domain-monitor/#developers)

 [Support](https://wordpress.org/support/plugin/exploitshield-domain-monitor/)

## Description

The SOC and Threat Intelligence Analyst at Home tab displays published analyst assessments
for the protected host. Read the rationale, recommended response and dated scanner
evidence. Private service drafts are never included. The tab synchronizes while 
open and supports manual refresh.
 Review scanner detections, reputation and DNS
signals, suspicious behavior and dated evidence in a dedicated investigation workspace.
Filter and export findings, compare assessments, inspect coverage, and manage local
review decisions. Internal infrastructure details are not part of the client workspace.

### External Services

This plugin connects to external services that are required for ExploitShield monitoring
and billing.

ExploitShield monitoring API

This plugin connects to the ExploitShield monitoring API at https://web-md5.site
and the ExploitShield customer site at https://exploitshield.io. The service is 
used for domain ownership verification, activation, Bitcoin checkout coordination,
API credit and entitlement state, crawler scan requests, threat dashboards, analyst
notes, support notices, plugin update metadata, and PDF report generation.

Data sent: the protected domain or host, WordPress site URL, site verification token
or DNS verification state, plugin instance identifier, contact email when configured
by the site administrator, selected scan profile, API credit/billing operation, 
support request content when submitted, and authenticated requests needed to retrieve
reports and scan status. Data is sent when an administrator configures the plugin,
checks verification, creates or checks a Bitcoin order, opens dashboard/report pages,
requests scans, syncs analyst notes, checks plugin notices, or downloads reports.

Terms: https://exploitshield.io/terms
 Privacy: https://exploitshield.io/privacy

Blockonomics Bitcoin payment service

ExploitShield uses Blockonomics on the service side to generate Bitcoin payment 
addresses and confirm payment status. The plugin displays the payment address, Bitcoin
amount, order status, and optional Blockonomics status link returned by ExploitShield.
The plugin does not send a Blockonomics API key and does not directly call the Blockonomics
merchant API.

Data involved: Bitcoin payment address, expected Bitcoin amount, order identifier,
and payment status metadata. This data is used only for payment confirmation and
activation of the purchased monitoring/API-credit service.

Terms and Privacy: https://nginx.blockonomics.co/privacy

No QR-code generator or other third-party image service is loaded by this plugin.
Bitcoin payment details are displayed as copyable text.

### Source Code and Build Tools

The JavaScript and CSS shipped in this plugin are the human-readable source files
used by WordPress. There is no npm, webpack, Rollup, Vite, minification, transpilation,
or generated asset build step for the distributed plugin package. The files in assets/
js and assets/css can be reviewed and modified directly.

### Important Limitations

No findings is not a safety guarantee. Incomplete checks and absent observations
remain distinct. WordPress cron depends on site traffic or a hosting cron runner.
Reports use the latest ingested snapshot, not an unfinished scan. Local review and
suppression do not change service-side detection or notification verdicts.

### Support

Email: dancho.danchev@hush.com
 WhatsApp: https://wa.me/359876893890

## Installation

 1. Upload and activate exploitshield-domain-monitor.zip.
 2. Confirm the protected website in Settings.
 3. Complete ownership verification and activation in Billing.
 4. Refresh the assessment after monitoring starts.
 5. When upgrading, replace the existing plugin and refresh. A matching monitoring-
    service API release is required.

## Reviews

There are no reviews for this plugin.

## Contributors & Developers

“ExploitShield Domain Monitor” is open source software. The following people have
contributed to this plugin.

Contributors

 *   [ Dancho Danchev ](https://profiles.wordpress.org/ddanchev/)

[Translate “ExploitShield Domain Monitor” into your language.](https://translate.wordpress.org/projects/wp-plugins/exploitshield-domain-monitor)

### Interested in development?

[Browse the code](https://plugins.trac.wordpress.org/browser/exploitshield-domain-monitor/),
check out the [SVN repository](https://plugins.svn.wordpress.org/exploitshield-domain-monitor/),
or subscribe to the [development log](https://plugins.trac.wordpress.org/log/exploitshield-domain-monitor/)
by [RSS](https://plugins.trac.wordpress.org/log/exploitshield-domain-monitor/?limit=100&mode=stop_on_copy&format=rss).

## Changelog

#### 4.1.5

 * WordPress.org review remediation: adds the owner WordPress.org username to Contributors,
   documents external services, removes the third-party QR-code image service, and
   ships human-readable JavaScript source with no build step.

#### 4.1.4

 * WordPress Plugin Check compliance pass: adds required license header, readme 
   compatibility header, escaped output, safer file deletion, sanitized request 
   handling, and normalized line endings.

#### 4.1.3

 * Retires legacy virtual-machine module option names from the active scan controls.
 * Uses Sandboxie-isolated browser collection as the required protected crawler 
   environment for Maximum Detection.

#### 4.1.2

 * Reflects the backend parallel Sandboxie crawler queue for concurrent protected
   crawl scans.
 * Clarifies that Maximum Detection uses service-managed Sandboxie isolation and
   that each queued scan consumes one API credit.

#### 4.0.0

 * Guided threat explanations, lifecycle pivots, persistence cells and payload evolution.
 * Reversible case grouping, saved filters, searchable glossary and private case
   links.
 * Reviewer and maintainer roles with server-enforced action permissions.
 * Executive and developer-handoff reports with linked contents and assessment fingerprints.
 * Opt-in overdue escalation rules, delivery preview and exact future job references.
 * Explicit collection failures, bounded evidence previews and incremental refresh.

#### 3.0.0

 * Case-based investigations with six detail sections and bulk review actions.
 * Server-stored response history, bounded text attachments and consent-based support
   tickets.
 * Artifact verdict matrices, recorded relationship views and provider context.
 * Authorized verification scans and case/date-bounded monitoring PDF reports.
 * Timezone-aware service schedules with one catch-up request and durable backoff.
 * Quiet hours, case subscriptions and queued/accepted/failed email activity.
 * Admin-only client investigation dossier and attachment viewer.
 * Existing individual findings and reports remain available under Evidence and 
   Reports.

#### 2.0.0

 * Threat inbox with saved views, date pivots, CSV export and accessible charts.
 * Evidence details, scanner matches, redirect relationships and persistence matrix.
 * Local review history, assignment, acknowledgement and expiring suppression.
 * Assessment comparisons, coverage and qualified scan states.
 * Detection presets mapped to optional service checks; mandatory collection protected.
 * Notification preference synchronization and scheduled requests.
 * Client-safe API projection, reports, help and diagnostics.
 * Responsive layout corrections.

## Meta

 *  Version **4.1.5**
 *  Last updated **1 day ago**
 *  Active installations **Fewer than 10**
 *  WordPress version ** 6.0 or higher **
 *  Tested up to **7.1.2**
 *  PHP version ** 7.4 or higher **
 * Tags
 * [bitcoin](https://wordpress.org/plugins/tags/bitcoin/)[malware](https://wordpress.org/plugins/tags/malware/)
   [security](https://wordpress.org/plugins/tags/security/)
 *  [Advanced View](https://wordpress.org/plugins/exploitshield-domain-monitor/advanced/)

## Ratings

No reviews have been submitted yet.

[Your review](https://wordpress.org/support/plugin/exploitshield-domain-monitor/reviews/#new-post)

[See all reviews](https://wordpress.org/support/plugin/exploitshield-domain-monitor/reviews/)

## Contributors

 *   [ Dancho Danchev ](https://profiles.wordpress.org/ddanchev/)

## Support

Got something to say? Need help?

 [View support forum](https://wordpress.org/support/plugin/exploitshield-domain-monitor/)