There's some general advice for infected sites in the linked threads. Aside from that it would be difficult to figure out the best course of action without doing an individual site review, which is off topic here.
– Maximillian LaumeisterOct 10 '21 at 00:20
As this is Wordpress related it may be a better fit over there. I wonder if there is evidence of a compromise in your database. I do observe that the hacked file was in wordpress fastest cache, so its possible something was temporarily injected.
– davidgoOct 10 '21 at 01:02
6aoig.js- from the filename alone that looks dodgy! – MrWhite Oct 10 '21 at 13:01