cPGuard Security

  • May 11, 2026
  • 0 Comments

cPGuard Security in DirectAdmin

Summary  
This guide explains how to use cPGuard Security inside DirectAdmin. cPGuard is a comprehensive security suite that protects your hosting account from malware, vulnerabilities, brute‑force attacks, and suspicious activity. It provides real‑time scanning, firewall protection, and automated cleanup tools.

Overview  
cPGuard provides:
- Malware scanning and automatic cleanup  
- Real-time file monitoring  
- Web application firewall integration  
- Brute-force protection  
- Vulnerability detection  
- Blacklist/whitelist management  
- Security reports and alerts  

It is one of the strongest security layers available for shared hosting.

Requirements  
- DirectAdmin user-level access  
- cPGuard enabled by your hosting provider  
- A domain hosted on the server  

Step-by-Step Instructions  

1. Access cPGuard Security  
- Log in to DirectAdmin  
- Go to Extra Features → cPGuard Security  
- The dashboard will load with your security status  

You will see:
- Malware scan results  
- Security alerts  
- Firewall activity  
- Account health score  

2. Run a Malware Scan  
- Click “Scan Now”  
- Choose:
  • Quick Scan  
  • Full Scan  
  • Custom Scan (select folders)  

The scan checks for:
- Malware signatures  
- Suspicious code  
- Infected PHP files  
- Backdoors and shells  
- Modified system files  

3. View Scan Results  
After scanning, you will see:
- Infected files  
- Suspicious files  
- Clean files  
- Recommended actions  

You can:
- Quarantine files  
- Delete infected files  
- Restore from quarantine  
- Mark files as safe  

4. Real-Time File Monitoring  
cPGuard monitors:
- New file uploads  
- Modified PHP files  
- Suspicious scripts  
- Unexpected permission changes  

If something looks dangerous, it will:
- Alert you  
- Quarantine the file  
- Block the request  

5. Firewall & Brute-Force Protection  
cPGuard integrates with the server firewall to block:
- Repeated login attempts  
- Malicious bots  
- Known attackers  
- Spam IPs  
- Vulnerability scanners  

You can view:
- Blocked IPs  
- Attack logs  
- Firewall events  

6. Manage Whitelist & Blacklist  
If a legitimate user is blocked:
- Go to “Whitelist”  
- Add their IP address  

If you want to block a specific IP:
- Go to “Blacklist”  
- Add the IP or range  

7. Vulnerability Scanner  
cPGuard checks for:
- Outdated CMS versions  
- Vulnerable plugins  
- Weak file permissions  
- Unsafe PHP settings  

You will see recommendations such as:
- Update WordPress  
- Remove unused plugins  
- Fix 777 permissions  
- Disable dangerous PHP functions  

8. Automatic Cleanup  
If enabled, cPGuard can:
- Automatically quarantine malware  
- Remove known malicious signatures  
- Repair modified system files  

This helps keep your site clean without manual work.

Troubleshooting  

False Positives  
- Some custom scripts may be flagged  
- Mark them as safe or whitelist the file  

Site Breaks After Cleanup  
- A required file may have been quarantined  
- Restore it from the quarantine section  

Repeated Malware Infections  
- Outdated CMS or plugins  
- Weak passwords  
- Compromised themes  
- Insecure file permissions  

Firewall Blocking Legitimate Users  
- Add their IP to the whitelist  

Scan Not Running  
- Server resources may be limited  
- Try a smaller custom scan  

Security Notes  
- Always keep WordPress, plugins, and themes updated  
- Use strong passwords and 2FA  
- Avoid nulled themes/plugins — they often contain malware  
- Review security alerts regularly  
- Do not whitelist unknown IPs  

Related Articles  
- [Web Application Firewall](ca://s?q=Web_App_Firewall)  
- [Site Summary & Logs](ca://s?q=Site_Summary_and_Logs)  
- [Backup & Restore](ca://s?q=Backup_and_Restore)  
- [WordPress Manager](ca://s?q=WordPress_Manager_by_Softaculous)  
- [Redis](ca://s?q=Redis)  

How helpful was this article to you?

Posting has been disabled.