Hi, Just double checking if this is a scam email. It looks quite sophisticated but has a gmail address in so I think not. It can through my messages with a Wix support address. Should I be concerned my website will cease in 72 hours! Check the back end and all seems OK! Here is the message:
'Your website has been flagged for hosting active malware associated with a phishing attack (specifically XSS Malware), which constitutes a violation of our security policy as outlined in Article 7.2 Site Reported For Malware | Help Center | Wix.com As per platform regulations, websites found to contain malware are subject to removal within 72 hours of notification. To avoid service disruption or permanent suspension, we strongly recommend that you contact our verified expert for immediate support: Davis Devs davisdev.international@gmail.com Davis has successfully assisted over 600 Wix-based websites and can provide a full security audit, along with detailed guidance on malware removal and securing your site. Please confirm once you’ve reached out, or let me know if you’d prefer I notify him on your behalf. Kind regards, Davis Security & Policy Specialist Wix Security Response Team
Email
1 Like
Hi, @Nicky_McKenzie !!
I’d feel sorry if this turned out to be legitimate and the expert was genuine, but to be honest, it really seems like a scam. It just doesn’t make sense that Wix would refer users to an external individual expert outside of their official channels. If Wix were a service run by a single person rather than a publicly traded company, I might be inclined to believe it. 
2 Likes
This is phishing and should be reported following the steps outlined in this article - Identifying and Reporting Phishing | Help Center | Wix.com
Wix will not contact you in this way, and your site won’t be impacted 
3 Likes
Thanks so much. My thoughts exactly. These scams are becoming very convincing!
2 Likes
Thanks Noah. I’ll be sure to do that. Thanks for replying 
Hi Nicky I received this exact email. Can you tell me how yours turned out? Did you hire the help or was it a scam? It did seem accurate but them I emailed the suggested person and they seem very fishy - wanted my information. I didnt send it.
Please report this as phishing - Identifying and Reporting Phishing | Help Center | Wix.com.
Wix will not reach out to site owners in this way 
Same here. Got a message via our form field about our site being infected by XSS malware. I am not very experienced with WIX, and that chat sounded convincing, especially when communication took place in WIX chat. I finally ordered that “fix” by johnwixford at gmail dot com and was even impressed by the quick response time 
Nevertheless, I got more suscpicious as I did not get any hard proof what parts of our website were finally infected and how (just some screenshots from scanurl dot me as Google Image Search found out).
Finally, when it came to paying, the alarm bells rang loudly: According to johnwixford at gmail dot com, Fiverr would charge 20% from client and customer - that proofed wrong. So they’s prefered to get money transferred via remitly to “a friends account”.
Some more research led me to this forme and I now informed reportphishing at wix.com.
Be warned!!
Thank you for taking the time to report.
I know I mentioned it further up, but will share again for others coming across this topic in the future. Wix will never contact you about account, billing, domains, or any other issues through your site’s contact forms, or site inbox.
If you encounter cases like this, please report them following the steps outlined here - Identifying and Reporting Phishing | Help Center | Wix.com