Getting the same error here. Plugin is updated to current. I also have a development mirror that is not web accessible and has an identical file with that “bad url.”
Same here on two sites. No idea why it is listed as “malware URL”.
The purpose of that link seems to be to collect anonymized information about the plugin usage. It’s opt in. See Allow anonymous statistics. The target URL is described here.
Andrew Nevins
(@anevins)
WCLDN 2018 Contributor | Volunteer support
@patdw83, @bliss7, @annoy, @malae, @billrodgers, Please do not post on support topics to say “me too” unless you are contributing towards the topic. Every time you post here the person who created the thread receives an email notifying them. If too many people flood their email they will unsubscribe to the thread, which would be a real shame for their current and future support.
If you wish to indicate to the plugin author that multiple people are having the same issue, you can create a new thread to discuss your issue: https://ww.wp.xz.cn/support/plugin/google-sitemap-generator/#new-post .
Thread Starter
em-jay
(@em-jay)
An update:
Jetpack also contained a “file containing suspected malware” so I contacted them as well. They said it was false positive and it was addressed/resolved in this post: https://ww.wp.xz.cn/support/topic/suspected-malware-url-2/
WF Support: “This is because one of the blacklist sites we monitor and check against had listed those urls as malicious. We became aware of the issue shortly thereafter and removed it yesterday around 11pm. It was there for about 3 hours. We do check manually when we import these but this list contained about 500 urls and that’s why it was missed. If you do a new scan this should not be a problem. ”
So I reran the scan and both of these files for Google XML Sitemaps and Jetpack are no longer listed.
fyi