I am requesting an estimate for a whole-account WordPress security assessment and the clean rebuilding of one compromised website.

My WebHostingHub/cPanel account contains five domains:

WebHostingHub confirmed that arealwholelot.com was compromised. A support representative found substantial malicious base64 code in its wp-config.php file. The host reinstalled the WordPress core files, but the problem persisted. The host did not perform a complete malware scan, identify all affected files, or determine how long the infection had been present.

Although the sites use separate WordPress installations, Kane Consulting and Coaching is nested beneath /public_html, and all five sites share the same hosting account. I therefore need the entire account examined—not only the known infected wp-config.php file.

I have a full cPanel account backup created on August 16, 2026. It is a 3.65 GB preservation snapshot stored locally and in Dropbox. Because it was created after the compromise was discovered, I am treating it as potentially infected and will not restore or share it except through an agreed secure process.

Please provide an itemized estimate addressing:

Please also include: