I will do wordpress malware removal and fix your hacked wordpress site


About this gig
Is your WordPress site hacked? Japanese or pharma spam pages in Google, visitors redirected elsewhere, a browser warning, or your host suspended the account?
We are a WordPress agency with 8 years of experience and 300+ client reviews (98% positive). Deleting infected files is the easy part. What matters is finding how they got in - and closing it - so the same attack does not work twice.
What you get:
Manual cleanup of core, theme and plugin files plus the database - no automated shortcuts
Backdoors, redirects, Japanese/pharma SEO spam and unknown admin users removed
The entry point found and fixed - outdated plugin, weak login, old PHP
Hardening: firewall, login protection, file permissions, updates
Blacklist removal and hosting suspension recovery
Proof-of-cleanup report: what was infected, how they got in, what we changed
We work on a full backup, so your pages, products and orders stay where they are. Standard and Premium include a 30-day re-clean if the same entry point is used again.
Send us your URL before ordering. We check it for free and tell you honestly what you are dealing with.
Respect third-party rights
Please be aware that it is against Fiverr's policies for sellers to include themes, templates, or any other elements that infringe third-party rights or applicable laws in the delivered work. Read more about in our Guide to Responsible Digital Creation.
Get to know Jakub Taraba
WordPress and WooCommerce experts, speed, security, fixes, maintenance
- FromSlovakia
- Member sinceOct 2017
- Avg. response time1 hour
Languages
English, Slovak, Czech
My Portfolio
Other Website Maintenance Services I Offer
FAQ
Will I lose my content, products or orders?
No. We take a full backup before the first change and clean infected code out of your existing files and database - we do not wipe and reinstall your site. If a file is beyond repair we replace it with the clean original, so your pages, products and orders stay untouched.
Google shows a hacked-site warning next to my result. What now?
That label stays until Google re-crawls a clean site. We clean the site, remove the spam pages, then submit the review request in Search Console. Google usually re-checks within a few days and drops the warning once the site is clean - the timing is theirs, not ours.
What access do you need?
Hosting access - cPanel, SFTP or SSH - plus a WordPress administrator account. Malware hides in files WordPress admin cannot see, so a WordPress login on its own is not enough for a real cleanup. Change every password once we are done.
My host suspended the account. Can you still get in?
Usually yes. Most hosts leave FTP, SSH or the control panel reachable while the site itself is offline, and they will restore access if you tell them a cleanup is in progress. We send you the cleanup report to forward to your host - that document is what gets a suspension lifted.
My site is Joomla, PrestaShop or plain PHP, not WordPress. Can you help?
Yes, we clean those too - Joomla and custom PHP sites are regular work for us. This gig is priced for WordPress, so send us the URL and we will send a custom offer with the right scope and price.
How do you stop it from happening again?
Honestly: nobody can promise a site will never be hacked again. What we can do is find the hole that was used, close it, remove every backdoor we find, update everything, and add a firewall and login protection. Most reinfections happen because the entry point was never found.
What if the site gets reinfected right after you finish?
On Standard and Premium: if the site is reinfected through the same entry point within 30 days of delivery, we clean it again at no cost. A new, unrelated attack is a new job. Basic is a cleanup only and does not include the re-clean, so order Standard if you want the hole closed.
How fast can you start?
We respond within one working day and usually start the same day on Premium. If the site is suspended by your host or actively redirecting visitors, say so in the first message - we move those to the front of the queue.

