Skip to content

Review malware and blocked attacks in cPGuard

Inspect scans, CMS threats and firewall events before deciding on cleanup.

Where Tools → Security → cPGuard

Before you start

  • Take a current backup before cleanup and preserve evidence of a suspected compromise.
  • A zero count is not a guarantee the site is clean; check the selected period and scan results.

Steps

  1. 1

    Choose a targeted scan according to the options available and monitor its result. Do not delete or quarantine flagged files without understanding their role.

  2. 2

    Use CMS threats to inspect detected software issues and WAF or BOT ATTACKS to investigate blocked requests. Match timestamps to the problem you observed.

  3. 3

    For a suspected false positive, send support the relevant rule/error and request details. Do not disable protection globally just to make one request succeed.

  4. 4

    Open cPGuard and review the Dashboard’s threats, attacks and CMS issue counts.

    The dashboard summarises threats and blocked attacks.
  5. 5

    Open the Virus Scanner menu, then Manual Scan to inspect the scan controls, or Scanner Logs for prior results.

    Virus Scanner expands to Manual Scan and Scanner Logs.

Check it worked

  • Confirm the scan/report finished and review each finding.
  • After authorised cleanup or updates, retest the website and scan again. Fix the entry point, not just the visible infected file.