Tidy the server from X-ransom attack
Description
Hello, Our Wordpress website was attacked by x-ransom. We have a backup of the WP and the database dump. We have detected some corrupted files there but it seems that there are still some left that were not detected. It has to be tidy after the attack.
It’s an internet shop with uploads files of around 100GB. It’s stored on a private hosting in LV.
What is done do far:
Update WordPress Version
Use z’d updateSecure WP-Admin Credentials
Set Up Safelist and Blocklist for the Admin Page
Use Trusted WordPress Themes
Install SSL Certificate
Remove Unused WordPress Plugins and Themes
Enable Two-Factor Authentication for WP-Admin
Back Up WordPress
Limit Attempts
Change the WordPress Page URL
Log Idle Users Out Automatically
Monitor User Activity
Check for Malware - found several none-Wordpress specious files and plugins. Deleted them.
Disable PHP Error Reporting
Turn File Editing Off
Restrict Access Using the.htaccess File
Change the Default WordPress Database Prefix - not done
Disable XML-RPC
Hide the WordPress Version
Block Hotlinking - not done
Manage File Permissions not done
After making the list, we received another x-ransome attack. I suspect he has a server level access not only wp level. If you apply, you need to be a server security and a Wordpress specialist. Please, quote for the job.
Budget: EUR 100 (Fixed Price)
Proposals: 28 freelancers have applied