carlsson
Basic Pleskian
- Server operating system version
- Ubuntu 20.04.6 LTS
- Plesk version and microupdate number
- Plesk Obsidian 18.0.74
As the title says, one of my sites (belonging to a client) was hacked.
Backup is restored, WP accounts, FTP accounts and the database account now have new passwords. I found some suspicious files on the site as well (I still have them if someone wants to look ) which are now removed. I have also blacklisted the IP that was adding files yesterday. Everything seems fine, but I'm afraid there are more files on the site that i can't find at the moment.
Is there anything else I should do?
We are in the process of rebuilding the site but that will not be ready until January. I am thinking about locking the site somehow – Lock everything except login from Plesk. Is that doable?
Backup is restored, WP accounts, FTP accounts and the database account now have new passwords. I found some suspicious files on the site as well (I still have them if someone wants to look ) which are now removed. I have also blacklisted the IP that was adding files yesterday. Everything seems fine, but I'm afraid there are more files on the site that i can't find at the moment.
Is there anything else I should do?
We are in the process of rebuilding the site but that will not be ready until January. I am thinking about locking the site somehow – Lock everything except login from Plesk. Is that doable?