
In Progress
Posted
Paid on delivery
## Project overview I manage one Hostinger Cloud Startup hosting account for my event business containing my WordPress event websites. All websites have shown signs of the same recurring malware infection. The infection has appeared in WordPress `mu-plugins` and other locations, including cache files and plugin/theme files. On at least one website, removing or renaming the malicious file resulted in it being recreated within minutes, including once with read-only permissions. This suggests possible account-level persistence or compromised credentials rather than unrelated infections. The hosting malware scanner has reported hundreds of malicious detections, with some files recurring after quarantine. The previous cleanup attempts did not permanently resolve the issue. ## Required work Please provide a complete account-wide investigation and remediation, not just a standard WordPress plugin scan: 1. Investigate the infection and identify the reinfection mechanism or persistence point. 2. Inspect all WordPress installations, including: - `wp-content/mu-plugins/` - standard plugins and themes - `wp-content/uploads/` - cache and drop-in files such as `[login to view URL]` and `[login to view URL]` - `.htaccess`, `[login to view URL]`, and other core files - WordPress cron jobs and scheduled tasks - databases and suspicious administrator accounts 3. Review the hosting account for suspicious FTP/SFTP/SSH access, unauthorized files outside the public website directories, and other account-level persistence mechanisms. 4. Compare core, plugin, and theme files against clean originals and replace compromised files safely. 5. Remove malicious code and backdoors without deleting legitimate business content or media. 6. Check databases for injected users, options, scheduled actions, redirects, spam, and malicious scripts. 7. Harden all sites after cleanup, including least-privilege access, safe file permissions, updates, disabling risky functionality where appropriate, and security monitoring. 8. Confirm that hosting, FTP/SFTP, SSH, database, and WordPress credentials have been rotated and that no unknown users or access keys remain. 9. Run a fresh scan of the entire account and monitor for at least 24–72 hours to confirm that the infection does not return. 10. Provide a written report listing the root cause, files and accounts affected, actions performed, remaining risks, and prevention recommendations. ## Important constraints - Do not perform destructive cleanup without first creating a backup or preserving a recoverable copy. - Do not delete legitimate website content, databases, uploads, or business data. - Keep the websites online wherever safely possible and notify me before any action that could cause downtime. - Please explain any required SSH or SFTP changes before applying them. ## Quote request Please provide: - A fixed price quote - A clear list of what is included and excluded - Estimated timeline and expected downtime, if any - Your follow-up monitoring or reinfection warranty period - The backup and rollback plan - Examples of similar multi site WordPress malware cases you have handled The project will be considered complete only after the account-wide scan is clean and the infection has not returned during the agreed monitoring period.
Project ID: 40661444
111 proposals
Remote project
Active 6 days ago
Set your budget and timeframe
Get paid for your work
Outline your proposal
It's free to sign up and bid on jobs
111 freelancers are bidding on average ₹21,156 INR for this job

Hello, With 10+ years of WordPress security expertise, I can perform a full account‑wide malware investigation and cleanup across your Hostinger Cloud Startup hosting. I’ll identify persistence points, remove backdoors, harden all sites, rotate credentials, and provide a written report with prevention steps. Backups will be created before any action. Would you prefer me to outline a 48‑hour monitoring window or extend to 72 hours for added assurance? I’ve handled similar multi‑site infections successfully and confident to fulfill your needs. Let’s talk.
₹17,500 INR in 2 days
9.6
9.6

Hi, I can handle this as an **account-wide WordPress malware investigation and remediation**, rather than simply running a plugin scanner. I’ll first create a recoverable backup, then investigate all WordPress installations, mu-plugins, plugins/themes, uploads, cache/drop-ins, cron jobs, databases, admin accounts, hosting files and access logs to identify the actual reinfection mechanism. After removing the persistence point, I’ll replace compromised core/plugin/theme files with clean originals, harden the sites, rotate credentials, run a full account scan, and monitor the environment for **24–72 hours** to confirm the malware does not return. I’ll also provide a written report covering the root cause, affected files/accounts, actions taken, remaining risks, backup/rollback plan and prevention recommendations. Best regards, **Muhammad Rizwan** **LA**
₹20,000 INR in 7 days
8.3
8.3

With extensive experience in WordPress security, I understand the urgent need to address the persistent malware infections across your Hostinger Cloud Startup hosting account. My skills in malware detection and removal, along with past successful account-wide cleanups, make me the ideal candidate for this project. Can you provide any specific details on recent changes or updates made to the affected websites that might have triggered the malware resurgence? Regards, Yogesh Kumar
₹20,370 INR in 9 days
8.4
8.4

Hi, I can handle this as an account-wide WordPress malware investigation and remediation rather than simply running another plugin-level security scan. I have extensive experience with WordPress malware cleanup, hacked sites, backdoors, malicious mu-plugins, injected database content, unauthorized users, redirects, compromised plugins/themes, and persistent reinfections. The fact that files are being recreated shortly after removal strongly suggests that identifying the persistence mechanism is the priority. I’ll first create a recoverable backup/rollback point, then investigate all WordPress installations and the wider hosting account, including mu-plugins, uploads, drop-ins, cron jobs, databases, wp-config/.htaccess, administrator accounts, suspicious files outside public directories, and available FTP/SFTP/SSH access. I’ll compare WordPress core, plugins, and themes against clean originals, remove malicious code without affecting legitimate business data, investigate the reinfection source, and rotate compromised credentials where necessary. After cleanup, I’ll harden the sites and perform a fresh account-wide scan. I can also monitor the environment for the agreed 24–72 hour period and document the root cause, affected files/accounts, remediation performed, remaining risks, and prevention recommendations. I’ll avoid destructive actions, communicate before changes that could cause downtime, and maintain a rollback path throughout the process. Ali Asif
₹12,500 INR in 1 day
7.7
7.7

Greetings, I am a WordPress Security Specialist and I can investigate and remediate your recurring malware infection. I’ll inspect mu‑plugins, core files, databases, and hosting access, remove malicious code safely, and harden your environment. A backup and rollback plan will be in place, and I’ll monitor reinfection for 24–72 hours. Let’s have a quick chat to clarify a few details about your preferred monitoring period and reporting format.
₹15,000 INR in 3 days
7.9
7.9

★★★★★★ START NOW ★★★★★★ Message me so we talk in detail.. Hello, I can Investigate the infection and identify the reinfection mechanism perfectly !! I placed bid after checking your requirements. If you want you can ask me any questions regarding your requirement. I'm interested in working on your project. And don't worry about work. First, check my work if you are happy Then pay me. Please let me know if you require any detailed information. Waiting for your reply. I hope you respond to me. Thanks Sunil
₹13,000 INR in 2 days
7.4
7.4

Hello!! How are you? I have read your entire project requirements. I can provide you WordPress Security and Malware removal at low cost. I have developed many websites. Please assign this work to me. I will provide high-quality work and ensure that it meets your requirements with complete satisfaction.
₹12,500 INR in 3 days
7.3
7.3

Hi, I'm a WordPress Security Expert. Here is what I will do: 1. Investigate persistence and reinfection mechanisms. 2. Inspect all WordPress sites, plugins, themes, and databases. 3. Remove malicious code and backdoors safely. 4. Harden hosting, rotate credentials, and apply security best practices. 5. Provide backups, rollback plan, and written report. With my expertise of 10+ years, I can do the job fulfilling your needs.
₹13,500 INR in 3 days
7.2
7.2

Hi, I understand this is an account-wide recurring malware issue, not a simple WordPress cleanup. I can investigate all WordPress installations and possible persistence points, including `mu-plugins`, core files, plugins, themes, uploads, databases, cron jobs, suspicious users, and hosting-level access. My process includes creating a full backup first, identifying the reinfection source, safely replacing compromised files with clean versions, rotating credentials, hardening the account, and monitoring after cleanup to confirm the malware does not return. A few quick questions: * Can you provide the Hostinger malware scan reports and examples of files that keep reappearing? * How many WordPress websites/installations are hosted under this account? * Is SSH access available, or will the investigation be done through SFTP and Hostinger tools? I can start immediately after reviewing the affected account and provide a clear fixed-price quote, timeline, rollback plan, and monitoring period based on the scope. Thanks, Saju
₹13,000 INR in 7 days
7.0
7.0

With over eight years of real-world experience in Web Development, I've not only built websites but also offered ongoing maintenance and technical support, which means I am well-versed in tackling complex issues like your recurring malware infection. My vast experience ranges from working with the Laravel PHP framework to building bespoke solutions on WordPress and Shopify. As a full-stack developer, I bring a comprehensive skill set including Web Security and Website Optimization to nip this issue at its bud. One of my standout qualities is my meticulous approach towards problem-solving. Combining that with my knack for web security, you can rest assured that I will be able to identify and remove the malware efficiently while keeping your legitimate business content intact throughout the process. Additionally, it’s important to remember that this issue is beyond just identifying malware on individual WordPress installations. It requires an account-wide investigation. In similar multi-site WordPress malware problems I handled, I employed concrete measures ensuring that clients stopped suffering from reinfection as you have very rightly specified. My ultimate goal is not just the cleanup, but hardening your websites post-cleanup so as to ensure complete future resistance against any such attacks. So, let's turn these infected websites into powerful fortified assets for your business!
₹27,000 INR in 7 days
6.5
6.5

As a seasoned WordPress developer and security expert, I've successfully tackled numerous complex malware-infestation projects like yours with a 100% success rate. With 8+ years of hands-on WordPress experience, I have fortified my skillset across various relevant domains including but not limited to WordPress security, PHP and MySQL, ensuring that not only will I be able to detect the infection vulnerabilities you're currently encountering but also provide robust solutions for permanent mitigation. In addition to complete malware scanning and removal, I also intend to go above and beyond post-recovery. This includes hardening your websites drawing upon least-privilege access protocols, safe file permissions setup, consistent updates, disabling high-risk functionalities plus initiating continuous monitoring checks to detect early signs of reinfection.
₹12,500 INR in 7 days
6.4
6.4

Hi I am Vaibhav I can handle a complete account-wide malware investigation and remediation for your Hostinger Cloud Startup account, covering all WordPress installations, mu-plugins, plugins/themes, uploads, cache/drop-in files, core files, databases, cron jobs, administrator accounts, and hosting-level FTP/SFTP/SSH access. I will focus on identifying the actual reinfection mechanism or persistence point, compare compromised files against clean originals, remove backdoors and malicious code without affecting legitimate business data, rotate credentials, and harden the entire account. All work will begin with a recoverable backup/rollback point, and any potentially disruptive changes will be discussed with you beforehand. I have experience handling persistent WordPress malware and multi-site infections where malicious files repeatedly regenerate after removal, and I can provide examples of similar work if required.
₹18,000 INR in 1 day
6.5
6.5

Hi, I understand this requires an account-wide WordPress malware investigation—not simply removing infected files—with the priority being to identify the persistence/reinfection mechanism and secure all sites without losing legitimate data. I have 14+ years of WordPress, PHP, MySQL, cPanel/Hostinger, Linux, server security, malware cleanup, and troubleshooting experience. I’ll create recoverable backups first, investigate mu-plugins, core/plugin/theme files, databases, cron jobs, credentials and account-level access, then remediate and harden the environment. Estimated timeline: 2–4 days + 72-hour monitoring Downtime: Minimized; any required downtime will be discussed first. Warranty: 7 days of reinfection monitoring after cleanup. I’ll provide a detailed remediation report and rollback plan. Rahul Kaushik
₹20,000 INR in 7 days
6.7
6.7

As an experienced WordPress Developer, I am very familiar with the challenges of malware infections and securing websites effectively. I have worked on numerous cases involving restoring hacked WordPress sites back to their optimal state, just like your current situation. My skills in PHP and Web Development will prove invaluable in pinpointing the root cause of the issue and ensuring comprehensive remediation. Lastly, it’s important to mention that prevention is key in ensuring long-term website security. With my proficiency in Website Management and Website Optimization, I'm well-equipped to harden all your sites after cleanup. By implementing least-privileged access, safe file permissions, disabling risky functionality among other best practices, I'll ensure your sites are fortified against future attacks. Plus, I offer follow-up monitoring and warranty periods to give you peace of mind post-cleanup. Choose me for this project!
₹25,000 INR in 7 days
6.1
6.1

Dear client, I have reviewed your project requirements and would like to offer you WordPress Security and Malware removal at a reasonable price. I will provide you website with very good quality work and ensure that you are completely satisfied with the final outcome.
₹12,500 INR in 3 days
5.3
5.3

Hello, I’d be happy to investigate and permanently remove the malware infection across your Hostinger Cloud account. I have 5+ years of experience in WordPress security, malware removal, and website hardening. I will provide: • Full account-wide malware and reinfection investigation • Review of all WordPress files, databases, cron jobs, plugins, themes, and mu-plugins • Hosting-level access and suspicious-file audit • Secure backup before cleanup and rollback planning • Safe malware/backdoor removal without affecting business data • Credential rotation, permissions, updates, and security hardening • Fresh scan and 24–72 hour reinfection monitoring • Clear final report with root cause, actions, risks, and recommendations I’ll keep the websites online wherever safely possible and confirm before any potentially disruptive changes. I’d be glad to discuss the number of sites and provide a fixed quote and timeline. Warm Regards, Monica Bhatia
₹15,000 INR in 6 days
5.2
5.2

Hi, I've reviewed your project, and it seems you’re dealing with a persistent malware issue across multiple WordPress sites. I understand the urgency of identifying the reinfection mechanism and ensuring your websites are secure. My approach would involve a thorough investigation of your WordPress installations, including all relevant files and databases, to pinpoint the source of the infection. With 10+ years of experience in web security and WordPress management, I can effectively remove malicious code while ensuring your legitimate content remains intact. I will also implement security hardening measures to prevent future issues, rotate all relevant credentials, and monitor your sites closely after cleanup. You can check my previous work and reviews here: https://www.freelancer.in/u/KayaCreation. To better understand your situation, could you share if you've noticed any specific patterns in the infection, such as certain times or actions that seem to trigger reinfections? Best regards, Kaya Creations
₹13,000 INR in 1 day
5.2
5.2

With over 14 years of experience under my belt and a strong track record of successfully delivering 416 complex projects on time, I am confident in my ability to tackle your WordPress security and malware issues head-on. I have worked with similar multi-site WordPress malware cases before, so I understand the intricacies and persistence these infections can exhibit. My expertise goes beyond simple scans. I will meticulously investigate every nook and cranny of your websites, including WordPress installations, cache files, and even databases to identify the source and mechanism of reinfection. Rest assured that my approach won't compromise or delete any of your legitimate business data - each step will be taken with utmost caution. In addition to providing a comprehensive cleanup strategy, I'll also harden each of your sites after removing the malware to reduce the chances of recurrence. My follow-up monitoring warranty period will ensure that not only are the infections removed once and for all, but also indicated preventative measures are in place and being actively monitored. With me on your team, your website assets will be well-protected against future cyber-attacks. Let's get started today!
₹37,000 INR in 7 days
5.1
5.1

Hi, I’m Jagjeet — with 10+ years of experience in WordPress security and malware removal. I can investigate the full Hostinger account, identify the reinfection source, safely clean all affected WordPress sites, and harden the environment to prevent recurrence. What I’ll deliver: • Account-wide malware and persistence investigation • Safe cleanup, file/database checks and credential review • Security hardening and backup/rollback plan • Fresh scan + 24–72 hour monitoring and detailed report I’ll focus on finding the root cause rather than simply removing infected files, while keeping your websites and business data safe. Ready to start immediately. Best regards, Jagjeet Singh
₹15,000 INR in 2 days
4.7
4.7

Hi there, I am Shobha Sharma from Jaipur, As an experienced WordPress developer and SEO expert, I have encountered and skillfully resolved countless cases of malware infection and security breaches like the one you're currently experiencing. over 9 years of expertise in WordPress Development, I have a deep understanding of every aspect of the system, allowing me to navigate the complex WordPress environments to uncover and uproot malware to its core. Over the course of my career, I've successfully delivered over 1000 projects, ensuring my clients' websites are not just free from malware but also optimized for search engines. This, in turn, has bolstered their online visibility and lead generation. I intend to bring this same level of excellence and effectiveness to your own event business hosting account. In addition to my technical skills, I pride myself on clear communication and collaboration. I will keep you informe about every step taken in this process - be it the exploration of SSH/SFTP changes or the analysis of your database for injected users, options, scheduled actions, and other suspicious activities. I will work collaboratively with you so that we can make informed decisions about what would be best for your business while ensuring minimum downtime and maximum protection
₹25,000 INR in 7 days
4.8
4.8

Faridabad, India
Payment method verified
Member since Apr 15, 2025
₹12500-37500 INR
₹12500-37500 INR
₹3548 INR
₹12500-37500 INR
₹12500-37500 INR
$250-750 USD
₹100-400 INR / hour
$10-30 USD
₹12500-37500 INR
$750-1500 USD
₹3000-6000 INR
₹12500-37500 INR
$250-750 USD
$250-750 USD
$250-750 USD
$30-250 USD
₹400-750 INR / hour
$8-15 USD / hour
$3000-5000 USD
$10-11 AUD
$300-450 USD
$10-30 USD
₹5000-9000 INR
₹12500-37500 INR
$30-250 USD