Skip to content

Remove blacklisted WordPress plugins

  1. Choose the intended servers and sites. Start with one installation.
  2. Review Blacklisted plugins in Edit Configuration Files and preserve customer packages/data before opening the action.

Edit Configuration Files with Blacklisted plugins selected and file contents concealed

Review the slugs to remove before opening Uninstall blacklisted plugins. File contents are concealed for privacy. Select the image to view it full size; use your browser’s Back command to return.
  1. Open Choose action → WP-AutoShield → Plugins → Uninstall blacklisted plugins.

WP-AutoShield chooser showing Uninstall blacklisted plugins alongside separate database and report actions

Uninstall blacklisted plugins uses the configured blacklist. Database scanning and report export are separate entries. Select the image to view it full size; use your browser’s Back command to return.
  1. Review the action and targets, then confirm. Read every site’s final result, including skips. Finished can include failed sites; see Read the outcome.

Only list intended slugs and preserve customer packages/data for recovery. Read every result; a plugin blacklist is separate from malware signature exclusions.

The Suspicious Plugins tab records detections and historical protection actions. Reviewing that history does not run this blacklist removal action.

WordPress Settings showing Remove blacklisted plugins

The recurring removal policy is separate from editing the blacklist and running a selected-site removal. Select the image to view it full size; use your browser’s Back command to return.

From a root terminal on the server hosting the sites, review /var/log/cpfenceav/blacklisted-wp-plugins.txt. Keep only the intended plugin slugs, one per line, then run:

Terminal window
cpfence --bulk-uninstall-bl-plugins

Review /var/log/cpfenceav/wp-sites-list.txt and both the inventory and removal confirmations. The command uses this server’s listed installations, not checked WebUI rows. To limit it, prepare that list first; do not pass another site-list filename as an argument.

An empty or missing blacklist removes nothing. Read each site’s final result and check the affected pages. Keep backups of plugin packages, settings and data: uninstalling deactivates and removes the listed plugins, and recovery may require more than reinstalling their files. Keep the daily removal policy above consistent so needed plugins are not removed again.