Magento 2 Module – Security Scanner and Malicious Code Detection

€56.94 €46.29
COMPOSER Installation
M2-SECURITY-SCAN
Przewidywana dostawa: Tuesday, 19 May - Wednesday, 20 May
Zamów w ciągu 5 h 27 min, a wyślemy jeszcze dzisiaj.
PayPal PayPal
Przelew Przelew

Magento Modules: Clear Guidelines

You purchase the module once, with no domain restrictions

Tooltip

Free installation and updates via Composer

Tooltip

Affiliate Program

Tooltip

Technical support for Magento

Tooltip

Clear guidelines for licensing Magento modules

Tooltip

Magento Module Code Security

Tooltip

Kowal Security Scan is an advanced yet lightweight solution that provides an additional layer of security for your Magento 2 store without the need to install additional software such as YARA.

Main module features:

  • File scanning – detects unauthorized changes, new files, and deleted files in the store directory.
  • Malicious code detection – analyzes file contents for known attack techniques
  • Database scanning – searches tables such as cms_block, cms_page, core_config_data, email_template, product_description for suspicious content or code.
  • Security assessment of URLs in content using Google Safe Browsing
  • Result reporting – results are saved to a log table with information about the time, type, and threat level (LOW, MEDIUM, HIGH).
  • Email report delivery – only when threats are detected. The email address and reporting enablement can be configured from the Magento admin panel.
  • Full automation – CRON tasks run cyclically, and each task can also be launched manually via CLI.

New: Google Safe Browsing API integration

Thanks to integration with the Google Safe Browsing API, the module can detect malicious links such as those leading to phishing, malware, or unwanted software contained in your store content: CMS blocks, product descriptions, transactional emails, and more.

Where does it look for threats?

The module analyzes the most important areas where malicious code may appear:

  • CMS block content
  • CMS pages
  • System configuration (core_config_data)
  • Email templates (Magento plus newsletter)
  • Product descriptions
  • Customer reviews

Notifications and logs

  • Automated logging of suspicious entries to the module's dedicated log table
  • Email report delivery with the option to specify the recipient and sender in the configuration
  • Risk level indication for each entry (High, Medium, Low)

Example use cases:

  • Detection of malicious code embedded by unauthorized users, such as iframe from .ru, .tk, and similar domains.
  • Detection of attempts to overwrite files through file injection attacks.

Why choose it?

  • No external dependencies – works immediately after installation.
  • Security without affecting store performance.
  • Also works on shared hosting – no root access required.

Compatibility:

  • Magento Open Source 2.3.x – 2.4.x
  • Magento Commerce (Adobe Commerce) – successfully tested

Package includes:

  • Module with CRON and CLI tasks
  • Database schema and log tables
  • Configuration in the Magento admin panel

Documentation and support

We provide documentation for every module, along with the option to contact our technical support team.

Protect your Magento 2 store today with Kowal Security Scan!

Version: 1.0.27

31.03.2026

We have expanded the Kowal_SecurityScan module with new features related to threat analysis and report administration.

New features

  • Added OpenAI integration for analyzing changed files and suspicious database records.
  • Reports and email messages now include a risk assessment and recommended actions in the following areas:
    • Magento
    • server
    • firewall
  • Added OpenAI configuration in the Magento panel, including:
    • enabling/disabling AI analysis
    • API key
    • model selection
    • context limit passed for analysis

Improvements

  • The OpenAI model list is now fetched dynamically from the API and presented in the configuration as a dropdown.
  • Expanded email content with Magento store identification:
    • store domain
    • store URL
  • The store domain is also added to the message subject, making it easier to manage multiple instances.

Automation and maintenance

  • Added a new cron job that cleans old entries from the reports table.
  • The report retention period is configurable from system.xml as a number of days.

Technical fixes

  • Organized the logic for analyzing suspicious files and records.
  • Improved handling of the data context passed to AI analysis.
  • Removed a DI compilation issue related to the previous OpenAI client implementation.

Questions and Answers

Question
Does the module allow scanning a Magento 2 store for malicious code and security threats?
Answer
Yes — the module is described as a “Security and Malware Detection Scanner,” which suggests that it automatically analyzes the store’s files for unauthorized changes or harmful code.
Question
After detecting a problem, does the module notify the administrator or allow corrective action to be taken?
Answer
Although the description does not provide all the details, the purpose of the scanner is to detect threats—which typically includes notifications or access to a report—it is worth confirming whether email notifications or an alert panel are available.
Question
Does installing the module require overwriting Magento core or theme files?
Answer
No — modules offered by Kowal are usually extensions compatible with the Magento 2 architecture and do not require modifications to core files. (No information about the need for modification)
Question
Does the module support Magento 2 stores in multi-store and multi-view installations?
Answer
Yes — because the module operates at the level of scanning system files and store security, it is logical that it will also work in a multi-store environment. If in doubt, it is recommended to check the documentation.
Question
Does the module help meet the security recommendations of the Magento platform or the Magento Security Scan Tool?
Answer
Yes — an external scanner (such as Adobe/Magento Security Scan) provides security monitoring and scanning.
Question
Does the module significantly affect the store’s performance, for example when scanning large file directories?
Answer
It is possible that scanning may cause some load; however, security scanners usually run in the background or during off-peak hours. It is recommended to test its operation in a test environment.
Question
Does the module allow scan scheduling (automatic scans), or is it manual only?
Answer
The module description does not clearly specify whether scheduling is available — if automation is important to you, it is worth asking about the possibility of setting up a CRON job or scan schedule.
Question
Does the module allow reporting scan results—for example, which files were changed or whether unauthorized modifications were detected?
Answer
Although the description does not include details, “malicious code detection” functionality typically includes reports or logs—it is worth verifying the level of reporting detail with the manufacturer.
Question
Does the module support the latest versions of Magento 2 (e.g., 2.4.x)?
Answer
On the store page, the module is listed in the section for Magento 2 modules, which suggests compatibility with current versions; however, you should always confirm the list of supported versions.
Question
Do I receive technical support and updates after purchasing the module?
Answer
Yes — the manufacturer states that it provides free updates and technical support for its extensions.
Write Your Own Review
You're reviewing:Magento 2 Module – Security Scanner and Malicious Code Detection
Your Rating
Products
Aktualizacja preferencji plików cookie