cPGuard Security in DirectAdmin
Summary
This guide explains how to use cPGuard Security inside DirectAdmin. cPGuard is a comprehensive security suite that protects your hosting account from malware, vulnerabilities, brute‑force attacks, and suspicious activity. It provides real‑time scanning, firewall protection, and automated cleanup tools.
Overview
cPGuard provides:
- Malware scanning and automatic cleanup
- Real-time file monitoring
- Web application firewall integration
- Brute-force protection
- Vulnerability detection
- Blacklist/whitelist management
- Security reports and alerts
It is one of the strongest security layers available for shared hosting.
Requirements
- DirectAdmin user-level access
- cPGuard enabled by your hosting provider
- A domain hosted on the server
Step-by-Step Instructions
1. Access cPGuard Security
- Log in to DirectAdmin
- Go to Extra Features → cPGuard Security
- The dashboard will load with your security status
You will see:
- Malware scan results
- Security alerts
- Firewall activity
- Account health score
2. Run a Malware Scan
- Click “Scan Now”
- Choose:
• Quick Scan
• Full Scan
• Custom Scan (select folders)
The scan checks for:
- Malware signatures
- Suspicious code
- Infected PHP files
- Backdoors and shells
- Modified system files
3. View Scan Results
After scanning, you will see:
- Infected files
- Suspicious files
- Clean files
- Recommended actions
You can:
- Quarantine files
- Delete infected files
- Restore from quarantine
- Mark files as safe
4. Real-Time File Monitoring
cPGuard monitors:
- New file uploads
- Modified PHP files
- Suspicious scripts
- Unexpected permission changes
If something looks dangerous, it will:
- Alert you
- Quarantine the file
- Block the request
5. Firewall & Brute-Force Protection
cPGuard integrates with the server firewall to block:
- Repeated login attempts
- Malicious bots
- Known attackers
- Spam IPs
- Vulnerability scanners
You can view:
- Blocked IPs
- Attack logs
- Firewall events
6. Manage Whitelist & Blacklist
If a legitimate user is blocked:
- Go to “Whitelist”
- Add their IP address
If you want to block a specific IP:
- Go to “Blacklist”
- Add the IP or range
7. Vulnerability Scanner
cPGuard checks for:
- Outdated CMS versions
- Vulnerable plugins
- Weak file permissions
- Unsafe PHP settings
You will see recommendations such as:
- Update WordPress
- Remove unused plugins
- Fix 777 permissions
- Disable dangerous PHP functions
8. Automatic Cleanup
If enabled, cPGuard can:
- Automatically quarantine malware
- Remove known malicious signatures
- Repair modified system files
This helps keep your site clean without manual work.
Troubleshooting
False Positives
- Some custom scripts may be flagged
- Mark them as safe or whitelist the file
Site Breaks After Cleanup
- A required file may have been quarantined
- Restore it from the quarantine section
Repeated Malware Infections
- Outdated CMS or plugins
- Weak passwords
- Compromised themes
- Insecure file permissions
Firewall Blocking Legitimate Users
- Add their IP to the whitelist
Scan Not Running
- Server resources may be limited
- Try a smaller custom scan
Security Notes
- Always keep WordPress, plugins, and themes updated
- Use strong passwords and 2FA
- Avoid nulled themes/plugins — they often contain malware
- Review security alerts regularly
- Do not whitelist unknown IPs
Related Articles
- [Web Application Firewall](ca://s?q=Web_App_Firewall)
- [Site Summary & Logs](ca://s?q=Site_Summary_and_Logs)
- [Backup & Restore](ca://s?q=Backup_and_Restore)
- [WordPress Manager](ca://s?q=WordPress_Manager_by_Softaculous)
- [Redis](ca://s?q=Redis)