How to grant secure SSH access for malware investigation and cleanup
To investigate and clean your server, I need SSH access. Add the following public key to the server. This only grants access to whoever holds the matching private key — which is only me.
This key is rotated every six months for security. The key shown above is always the current one. If you have an older key on file, please replace it with this one.
Choose the method that matches your hosting environment:
Security → SSH Access → Manage SSH KeysImport KeyImport, then go back and click Manage → AuthorizeFor root access (WHM): navigate to WHM → Security Center → Manage root's SSH Keys
Tools & Settings → SSH Keys (under Security)Add KeyAddFor subscription-level access: Domains → [domain] → SSH Access
SSH Keys (under Account Manager or Admin Tools)Create Key or Paste KeyIf you have SSH access to the server, run the following command as the user I need to connect as (typically root):
All SSH connections originate exclusively from my dedicated jump server. You can whitelist this host in your firewall to restrict access to only my infrastructure:
Hostname: baremetal.kbourdakos.gr
IPv4: 147.135.213.177
IPv6: 2001:41d0:303:6fb1::1
This is a dedicated bare-metal server under my direct control — not shared hosting, not a cloud instance. All connections are logged and auditable.
Optional but recommended: Configure your firewall to allow SSH from 147.135.213.177 and 2001:41d0:303:6fb1::1 only during the engagement period. Security is my first priority.
If your server runs SSH on a port other than 22, please let me know the port number when granting access. If you've configured a firewall whitelist for my IP, make sure it covers your custom port, not just port 22.
Once the cleanup is complete and you've received the report:
authorized_keysIf we work together regularly, you can keep the key in place and revoke it anytime. You're always in control.
If adding an SSH key isn't practical for your setup, you can securely share your server credentials through my self-hosted Vault instead:
Vault is hosted on my own dedicated infrastructure — no third-party services involved.
If you're unsure about any step or want to discuss access scope before granting it, get in touch and we'll figure it out together.