
Closed
Posted
Paid on delivery
Job Title Need an Experienced JavaScript & PHP Developer to Fix Website Redirect Malware (One-Time Project) Job Description I'm looking for an experienced JavaScript and PHP developer to investigate and fix a website that has been compromised. Website to inspect: [login to view URL] Important Please inspect the website first before submitting your proposal. I only want proposals from developers who have actually checked the website and have a good understanding of the issue. In your proposal, briefly explain: What you believe is causing the redirects. Where you think the malicious code may be located. Your plan for fixing the issue. How long you expect the work to take. Generic copy-and-paste proposals will be ignored. Current Issue All links on the website are unexpectedly redirecting visitors to an unknown third-party website. The objective is to identify the root cause, remove the malicious code, and restore the website to normal operation. Possible Causes The issue may be caused by one or more of the following: Malicious JavaScript injected into website files Compromised PHP files containing hidden redirect code Obfuscated or encoded malware (Base64, eval(), gzinflate(), etc.) Modified .htaccess redirect rules Infected theme or plugin files Database-injected JavaScript or malicious content Server-side malware or backdoor scripts Unauthorized files uploaded through a security vulnerability Cross-site scripting (XSS) or another website compromise Requirements Strong experience with JavaScript Strong experience with PHP Experience removing website malware and redirect infections Ability to inspect both frontend and backend code Can identify the root cause instead of applying only a temporary fix Explain what caused the issue after the work is completed Deliverables Remove all malicious redirects Clean infected files and malicious code Ensure all website links function normally Fix or recommend fixes for any security vulnerabilities discovered Provide a brief report explaining the root cause and the changes made Budget One-time payment: $10–$20 Please include in your proposal: Confirmation that you inspected the website. Your initial findings and suspected cause. Similar malware or redirect issues you've fixed. Your estimated completion time. Your fixed-price quote within the $10–$20 budget.
Project ID: 40605434
67 proposals
Remote project
Active 1 day ago
Set your budget and timeframe
Get paid for your work
Outline your proposal
It's free to sign up and bid on jobs
67 freelancers are bidding on average $36 USD for this job

Hi there, I understand your site has been hit with redirect malware—a common but serious issue that often hides in compromised PHP files, malicious JavaScript injections, or .htaccess redirects. I’ll start by conducting a full security audit: scanning all PHP scripts for obfuscated base64_decode(), eval(), and suspicious iframe/script injections; checking for unauthorized admin users or backdoors in WordPress or custom CMS; reviewing JS files (especially minified ones) for hidden redirects; and inspecting server-level configs like .htaccess and nginx rules. I’ll clean infected files, harden core files with proper permissions, remove malicious code without breaking functionality, and implement basic preventive measures—like disabling file editing from the dashboard, updating salts, and adding basic input sanitization where needed. All changes will be documented, and I’ll verify the fix by testing across devices and browsers. I’ve handled similar cases for e-commerce and business sites—always ensuring no residual payloads remain and redirects are fully eliminated. Best Regards, Khorshed Alam, RS Software
$25 USD in 2 days
9.5
9.5

Hi, I'm a senior developer with 20+ years of experience removing website malware and fixing redirect attacks, including cases like this one, so I can identify the root cause quickly. I'll inspect the site's files, databases, and server configurations to locate the injected code—whether it’s in .htaccess, PHP templates, JavaScript files, or database content. Once found, I’ll remove the malicious redirects, clean the infected files, and test all links to ensure normal operation. I’ll also check for security gaps that allowed the compromise and provide a short report explaining the findings. This typically takes 1–2 hours to complete. I can start immediately.
$30 USD in 1 day
8.1
8.1

Hello, It's great to speak with you about your new project..!! I understand issue on website and server malware's effect, for clear this issue we have to perform following actions please review carefully 1. Changes all password (Website and server) 2. Remove all backdoor, no one can access server and there files without permission 3. Scan entire server/code files and database 4. effect files repair and update with system 5. unused php extn and any other content remove form server 6. create logs to proper tracking and make sure same type of issue not comes again 7. handover project to you back Ping us for more better discussion Best Deva
$30 USD in 1 day
7.8
7.8

Hello Most JS and PHP integration issues stem from messy API connections or database queries lagging your frontend. I can jump in and clean up the bridge between your backend and UI to ensure fast, secure data flow. Recently, I optimized a similar PHP/JS setup, resolving sync bugs and cutting load times by 35%. Are you looking to patch existing issues or build something new? Let’s chat. Giáp Văn Hưng
$37 USD in 7 days
7.0
7.0

As an experienced JavaScript and PHP developer, I have inspected your website thoroughly and am confident in identifying the root cause of the malware issue. Based on my extensive experience, I believe the problem may stem from various sources, potentially including injected JavaScript and compromised PHP files. To effectively tackle these challenges, my plan involves carefully examining both frontend and backend codes for any hidden malicious code, removing all redirects, cleaning infected files, and devising long-term solutions to protect against future threats. Having successfully managed similar malware and redirect issues in the past, I understand the urgency required in fixing these problems promptly without leaving any trace of potential vulnerabilities behind. With more than 6 years of industry experience, I have honed my skills to quickly identify malicious code strains through obfuscation techniques like Base64 encoding. Moreover, my work won't simply eradicate the present problem; I will also provide a detailed report explaining its root cause and the measures taken to fix it.
$50 USD in 7 days
6.9
6.9

Hi there, I have thoroughly inspected your website and discovered that the redirects are likely due to malicious JavaScript injected into the core files. My initial identification points to compromised PHP files as well, where the malicious code might be hidden or obfuscated. My plan involves reviewing both frontend and backend code, removing the malicious scripts, and ensuring the integrity of all website links. I estimate that the work will take only a few hours to complete. Your satisfaction is my priority and I guarantee that I will deliver you a high-quality result. Regards, Ali
$10 USD in 1 day
6.4
6.4

I understand that you are facing an urgent issue with your website and need a capable developer to tackle what might be causing the redirects. I have over 11 years of experience in web development, specializing in PHP and JavaScript, and have conducted similar successful projects in the past. My approach will be straightforward yet thorough. First, identifying the root cause instead of merely applying a temporary fix. Secondly, cleaning all infected files and malicious code, ensuring all links function normally, and fixing or recommending fixes for any security vulnerabilities discovered during the inspection process. Finally, providing you with a report that explains the root cause of the issue as well as changes made to prevent future incidents. Given my extensive experience, I am confident in delivering high-quality results within your timeline and budgetary constraints. Let's work together to rid your website of this significant issue. Thank you for considering partnering with me on this project!
$20 USD in 1 day
7.0
7.0

Hi, I can help fix the redirect malware on your site and track the root cause, not just patch the symptom. I’d check the PHP files, theme/plugin files, .htaccess, and injected JS for obfuscated code, backdoors, or database-added redirects. My plan is to isolate the infected file(s), remove the malicious code, test all links, and then share a short report with what caused it and what I changed. I can usually complete this in 1–2 hours. Fixed price: $20 Regards, Parvesh M.
$30 USD in 3 days
6.4
6.4

Hi, There, I attempted to inspect the website, but it currently returns a 502 response from my network, so I won’t falsely claim a confirmed malware location. Based on every link redirecting, the most likely causes are a site-wide injected JavaScript click handler, compromised shared PHP include, modified `.htaccess`, or database-injected script. With 4+ years of PHP/JavaScript troubleshooting experience, I’ll first preserve a backup, trace the redirect from browser and server logs, scan files/database for obfuscated payloads and backdoors, remove the root cause, patch the entry point, and retest every link. I can start immediately and expect 2–4 hours once server access is available, working within your decided budget. Best regards, Waqas Ahmad
$200 USD in 7 days
6.4
6.4

Hi. To inspect the redirect issue, I’d trace the full path from frontend JS to PHP entry points, then check .htaccess, theme/plugin files, and any encoded payloads like eval, base64, or gzinflate. The redirect pattern usually points to injected JavaScript, a compromised PHP include, or server-side rules quietly rewriting outbound links. I’ll clean the malicious code, verify the database for injected scripts, and harden the vulnerable file or plugin path so the infection does not return. As a Senior Software Engineer, I have mastered JavaScript, PHP, malware removal, and website security auditing and have strong experience in redirect infections, infected CMS files, and backdoor cleanup. I work fast on real compromise cases and keep the fix focused on root cause, not just the symptom. I am sure I can deliver high-quality results within 1-2 days. Let’s get in touch and discuss more. Thanks.
$20 USD in 2 days
6.0
6.0

I checked nexusfuture.totalh.net. The homepage and inner links force-redirect to scam pharma ads via injected obfuscated JavaScript in the HTML source, probably loaded inline or by a hacked PHP include. This points to compromised PHP files, possible .htaccess injections, and maybe something hidden in DB posts or template files. The infection shows classic malware patterns: likely base64-encoded payload and eval() or script tag injections. I've cleaned redirect malware like this on PHP/JS platforms before, including a recent NDA project for a SaaS site (report available on call). My fix: scan files for suspicious code, remove injected JS, review .htaccess, and check DB for malicious content. Final step: document and secure any upload or theme/plugin entry point. ETA is under half a day if access is direct. You get a detailed fix report. Pradeep
$20 USD in 7 days
5.3
5.3

Hi, I’ve handled website security issues involving PHP/JavaScript infections, malicious redirects, and compromised files, so I understand the importance of finding the actual entry point instead of only removing visible symptoms. I have not inspected the website yet, so I don’t want to make false assumptions. My initial investigation would focus on checking injected JavaScript, suspicious PHP files, .htaccess rules, database content, encoded malware patterns, and recently modified files to identify the redirect source. I’d remove the malicious code, restore normal redirects, review the vulnerability that caused the issue, and provide a brief report of findings and fixes. Estimated completion: 1–2 hours after access is provided. Fixed price: $20. Best Regards, Muhammad Saad K
$20 USD in 2 days
5.4
5.4

Hello, I checked the site and the redirects are coming from JavaScript injected into the theme’s footer file. The code uses obfuscation to hide the malicious URL and looks like it runs on every page load. I’ve removed similar malware before—last time I caught a hidden eval() block in a WordPress theme that redirected users to phishing pages until we cleaned the infected files and updated all plugins. I’d clean the infected files, scan for obfuscated scripts, and check for vulnerable entry points like outdated plugins or weak file permissions. The biggest improvement will come from removing the injected code and locking down the theme. I’ll test every link after changes and provide a short report listing the root cause, fixes applied, and steps to prevent reinfection. This ensures the site stops redirecting and stays clean afterward. If the site is still redirecting, I can jump in quickly to identify and fix it within the budget. Thanks, Lazar.
$10 USD in 1 day
4.6
4.6

I am a security focused developer with extensive experience resolving PHP and JavaScript injections. I can immediately address the Website Redirect Malware on your site by identifying the malicious scripts hidden in your backend files and cleaning your database. I have successfully recovered dozens of sites from similar redirects by auditing core files, removing backdoors, and hardening site security to prevent reinfection. I understand the urgency of this task and am ready to start right now. I will ensure your site is clean and functioning correctly within your budget. When can you provide access so I can begin the diagnostic scan and fix the redirect?
$30 USD in 1 day
4.4
4.4

Hello, I've removed JavaScript and PHP redirect malware from compromised WordPress and custom PHP websites, including hidden backdoors, injected scripts, and obfuscated PHP code. I understand you need the root cause identified and removed, not just the visible redirects patched. From your description, I'd inspect the frontend JavaScript, PHP files, .htaccess, active themes, plugins, and the database for injected code such as eval(), base64_decode(), gzinflate(), or unauthorized redirects. After removing the infection, I'll verify every link, close the entry point if identified, and provide a brief report explaining what caused the compromise and what was changed. I'll also document any security improvements to help prevent it from happening again. I'll begin immediately after access is provided and deliver a fully cleaned website with the findings report. Thank you for your time and consideration.
$20 USD in 1 day
4.2
4.2

Hello, I have thoroughly investigated the website and understand the complexities of the issue at hand. My comprehensive experience in both JavaScript and PHP development has equipped me to tackle malicious code injections, hidden redirect issues, server-side malware, and more. Solving these problems is not new to me. I assure you that I can pinpoint and remove all malicious redirects while ensuring your website's complete security. In my career, I have routinely encountered projects involving website malware and redirect infections. I have successfully restored websites to their normal operation by eliminating the root cause rather than applying temporary fixes. Furthermore, my proficiency in HTML and Web Security guarantees that any security vulnerabilities will be fixed or recommended to you. My fixed-price quote is $20 for your budget and guarantees meticulous removal of all malware ensuring responsible for any re-directs. Choose me as your JavaScript & PHP Developer for this crucial project, and we won't just get rid of the problem, but build a more secure future for your website.
$29 USD in 1 day
4.1
4.1

Hello, I have 10+ years of experience with PHP, JavaScript, WordPress, and malware removal. I've cleaned websites affected by redirect malware, PHP backdoors, malicious JavaScript, infected plugins/themes, and compromised `.htaccess` files. Based on your description, I believe the redirects are likely caused by injected JavaScript, compromised PHP files, malicious `.htaccess` rules, or hidden backdoor scripts. My approach is to identify the root cause instead of applying a temporary fix. I will: – Scan PHP and JavaScript files for obfuscated malware (`eval`, `base64_decode`, `gzinflate`, etc.). – Check `.htaccess`, themes, plugins, uploads, and server files. – Inspect the database for injected scripts. – Remove all malicious code and backdoors. – Verify every link works correctly. – Recommend security improvements to prevent reinfection. I've successfully resolved similar malware and redirect issues on both WordPress and custom PHP websites. Estimated completion time: 2–4 hours. Fixed-price quote: $20. I can start immediately and will provide a brief report explaining the root cause and all changes made after the cleanup.
$20 USD in 2 days
4.2
4.2

A Malware Fix needs the Real Source Found, not just the Redirect Hidden. Hello, my name is Jonas, web developer. The risky part with redirect infections is that removing one visible script may leave the actual entry point untouched. I'd start by checking the JavaScript, PHP files, server rules, and database content to find where the redirect is being triggered. Then I'll remove the malicious code and check the affected areas again after the cleanup. The goal is a clean website where all links work normally and the same issue does not come back. I work with PHP and JavaScript projects where security problems need careful inspection instead of quick fixes. I will also provide a short summary of what was found and what was changed. Before I start, one thing would help me plan this correctly. Do you have recent backup files from before the redirects started? I'm ready to investigate and get this fixed for you. Thanks for reading, and I’d be glad to help.
$20 USD in 3 days
4.3
4.3

Hello! Welcome to NexoraTec! We can provide you the best result in very short time! Fernando here and i am PHP developer in my team and happy to work with you. I will first scan all PHP and JS files for obfuscated code and check .htaccess for hidden redirects then review the database for injected scripts after cleaning I will harden the site against future attacks. I have built several malware cleanup projects and focus on secure code removal. Questions 1. Which file or plugin did you notice last changed before the redirects started and why do you think it may be compromised? 2. Do you have a backup of the site or need me to create a clean restore point before making changes? Happy to plan the best way with you Thanks!
$12 USD in 2 days
4.0
4.0

With over 8+ years of extensive experience in not just web development, JavaScript, and PHP but as a full-stack developer well-versed in database processing and backend service development, I believe I possess the skills and strengths necessary to resolve your current malware issue. Having carefully inspected the website, I suspect the cause to be one or more craftily injected malwares like scripts or encoded base64 codes - something along those lines. Applying my expertise, what you will not just get is a quick-fix but an actual permanent solution. My aim is to pinpoint the root cause of the problem and not just provide temporary respite by eliminating malicious codes. In regards to my timeline for completion and my fixed price, as per your requirements, I ensure to send you a comprehensive report on the root cause and all changes made within 10-15 hours at $20 flat rate. I've successfully handled various cases of removing website malware and redirect infections over my professional journey. When chosen for this task, I'll guarantee not only to eliminate all malicious redirects but to clean infected files as well, fix any security vulnerabilities discovered, while ensuring all website links function normally. Trust me with your project and you won't be disappointed. Let's connect so we can further discuss your needs.
$20 USD in 1 day
4.8
4.8

Iloilo City, Philippines
Member since Jul 25, 2026
$8-15 USD / hour
₹75000-150000 INR
$750-1500 AUD
min $50 USD / hour
$750-1500 USD
₹12500-37500 INR
$1500-3000 USD
$15-25 USD / hour
₹600-1500 INR
$50-500 USD
₹1500-12500 INR
$30-250 CAD
$30-250 USD
€250-750 EUR
₹12500-37500 INR
₹250000-500000 INR
₹600-1500 INR
₹12500-37500 INR
$100-350 USD
$250-750 USD