Title: Sentryvine — Antivirus &amp; Anti-Phishing Security
Author: sentryvine
Published: <strong>2026 年 8 月 26 日</strong>
Last modified: 2026 年 8 月 26 日

---

搜尋外掛

![](https://ps.w.org/sentryvine/assets/icon-256x256.png?rev=3667864)

# Sentryvine — Antivirus & Anti-Phishing Security

 由 [sentryvine](https://profiles.wordpress.org/sentryvine/) 開發

[下載](https://downloads.wordpress.org/plugin/sentryvine.0.1.0.zip)

 * [詳細資料](https://tw.wordpress.org/plugins/sentryvine/#description)
 * [使用者評論](https://tw.wordpress.org/plugins/sentryvine/#reviews)
 *  [安裝方式](https://tw.wordpress.org/plugins/sentryvine/#installation)
 * [開發資訊](https://tw.wordpress.org/plugins/sentryvine/#developers)

 [技術支援](https://wordpress.org/support/plugin/sentryvine/)

## 外掛說明

Sentryvine provides a conservative, review-first security scan from the WordPress
administration area.

The initial release includes:

 * Local inspection of executable and redirect-capable files for high-signal malware
   patterns.
 * Detection of executable PHP files in the uploads directory.
 * Anti-phishing analysis for deceptive link text, raw IP destinations, embedded
   URL credentials, Punycode hosts, encoded control characters, dangerous URI schemes,
   and external password forms.
 * Optional WordPress core integrity verification against official checksums.
 * Manual scans and daily WP-Cron scans.
 * Bounded scan reports with severity, evidence, location, and recommended review
   actions.

Sentryvine does not automatically delete, edit, or quarantine files or content. 
Findings are indicators for an administrator to review; they are not proof that 
a site is compromised. A scan with no findings does not guarantee that a site is
safe.

#### External services

By default, Sentryvine scans locally and does not send site files or content to 
an external service.

If an administrator enables “Verify WordPress core checksums,” each scan uses WordPress
core’s checksum function to contact `https://api.wordpress.org/core/checksums/1.0/`.
The request includes the installed WordPress version and locale so the service can
return the matching official file hashes. WordPress HTTP requests may also include
the standard WordPress user-agent. No site files, post content, detected URLs, or
scan findings are sent.

This service is operated by the WordPress project. See the [WordPress.org privacy policy](https://wordpress.org/about/privacy/)
and [terms of service](https://wordpress.org/about/terms/).

## 安裝方式

 1. Upload the `sentryvine` directory to `/wp-content/plugins/`, or install the release
    ZIP through Plugins > Add New > Upload Plugin.
 2. Activate Sentryvine through the Plugins screen.
 3. Open Sentryvine in the WordPress administration menu.
 4. Review the settings and select “Run scan now.”

Daily scans use WP-Cron and may run later than scheduled on sites with little or
no traffic.

## 常見問題集

### Does Sentryvine remove malware automatically?

No. Version 0.1.0 is intentionally review-only. Automatic remediation can damage
a site when a heuristic produces a false positive.

### Does Sentryvine send my files or content elsewhere?

No. File and content inspection runs locally. The optional core checksum feature
contacts only the official WordPress.org checksum service as described above.

### Is a clean result proof that my site is secure?

No. Sentryvine detects a defined set of indicators. Use layered controls, reliable
backups, updates, least-privilege access, server monitoring, and professional incident
response when compromise is suspected.

## 使用者評論

這個外掛目前沒有任何使用者評論。

## 參與者及開發者

以下人員參與了開源軟體〈Sentryvine — Antivirus & Anti-Phishing Security〉的開發相關
工作。

參與者

 *   [ sentryvine ](https://profiles.wordpress.org/sentryvine/)

[將〈Sentryvine — Antivirus & Anti-Phishing Security〉外掛本地化為台灣繁體中文版](https://translate.wordpress.org/projects/wp-plugins/sentryvine)

### 對開發相關資訊感興趣？

任何人均可[瀏覽程式碼](https://plugins.trac.wordpress.org/browser/sentryvine/)、
查看 [SVN 存放庫](https://plugins.svn.wordpress.org/sentryvine/)，或透過 [RSS](https://plugins.trac.wordpress.org/log/sentryvine/?limit=100&mode=stop_on_copy&format=rss)
訂閱[開發記錄](https://plugins.trac.wordpress.org/log/sentryvine/)。

## 變更記錄

#### 0.1.0

 * Initial private MVP.
 * Added bounded local file scanning and optional WordPress core checksum verification.
 * Added local anti-phishing content analysis.
 * Added manual and daily scheduled scans with an administrator dashboard.

## 中繼資料

 *  版本 **0.1.0**
 *  最後更新 **4 週前**
 *  啟用安裝數 **少於 10 次**
 *  WordPress 版本需求 ** 6.4 或更新版本 **
 *  已測試相容的 WordPress 版本 **7.1.2**
 *  PHP 版本需求 ** 7.4 或更新版本 **
 *  語言
 * [English (US)](https://wordpress.org/plugins/sentryvine/)
 * 標籤:
 * [anti-phishing](https://tw.wordpress.org/plugins/tags/anti-phishing/)[antivirus](https://tw.wordpress.org/plugins/tags/antivirus/)
   [integrity](https://tw.wordpress.org/plugins/tags/integrity/)[malware scanner](https://tw.wordpress.org/plugins/tags/malware-scanner/)
   [security](https://tw.wordpress.org/plugins/tags/security/)
 *  [進階檢視](https://tw.wordpress.org/plugins/sentryvine/advanced/)

## 評分

這個項目尚無任何評論記錄。

[撰寫評分](https://wordpress.org/support/plugin/sentryvine/reviews/#new-post)

[查看全部使用者評論](https://wordpress.org/support/plugin/sentryvine/reviews/)

## 參與者

 *   [ sentryvine ](https://profiles.wordpress.org/sentryvine/)

## 技術支援

使用者可在技術支援論壇提出意見反應或使用問題。

 [檢視技術支援論壇](https://wordpress.org/support/plugin/sentryvine/)