WordPress Malware Removal, SEO Spam Cleanup & Full Security Audit — Kinsta Hosting

Posted 3 hours ago

Worldwide

Summary

Our WordPress website, https://topdocbrasil.com.br/, has been compromised again after a previous cleanup. The current visible issue is SEO spam: the website is publishing unauthorized gambling and casino articles in multiple languages, including Russian, German, Azerbaijani, and English. Examples can currently be seen at: https://topdocbrasil.com.br/blog/ These are not simple visual redirects. The malicious content exists as individual WordPress pages/posts with indexable URLs, canonical tags, full articles, images, and external links. Therefore, we need an experienced WordPress security specialist who can perform a complete forensic investigation, remove the infection, identify the original entry point, and prevent reinfection. The website is hosted on Kinsta. We do not want to migrate hosting. Required scope of work 1 - Create a safe backup/snapshot before making changes and preserve relevant evidence. 2 - Review Kinsta access, error, PHP and server logs to determine when and how the compromise occurred. 3 - Scan and manually audit the complete WordPress filesystem. 4 - Verify WordPress core files against official checksums. 5 - Audit all plugins, themes, must-use plugins, drop-ins and custom code. 6 - Inspect the custom topdoc theme for unauthorized or obfuscated code. 7 - Inspect wp-config.php, .htaccess, cron jobs, scheduled actions and server configuration. 8 - Check the uploads directory and other writable directories for PHP files, web shells and backdoors. 9 - Perform a complete database audit, including: Unauthorized gambling/casino posts and pages, Malicious JavaScript, iframes and external links, Injected content in posts, widgets and options Suspicious autoloaded options, Unauthorized administrator accounts Modified user roles and capabilities Application passwords and active sessions Spam redirects and conditional malware If possible Identify and document the root cause and original point of entry. Remove all malware, backdoors, unauthorized content and persistence mechanisms. Remove or replace abandoned, pirated, vulnerable or unnecessary plugins and themes. Update WordPress, plugins and themes safely, with regression testing. Rotate or help us rotate all relevant credentials: WordPress administrators Kinsta SFTP/SSH Database WordPress salts and sessions DNS/CDN and related administrator accounts where applicable Configure appropriate file permissions and WordPress security hardening. Check whether other Kinsta environments, backups or connected services are compromised. Clean caches and verify the website from logged-in and logged-out sessions, desktop and mobile. Assist with SEO recovery:Produce a list of all malicious URLs Remove malicious URLs from sitemaps and internal links Return appropriate 404 or 410 responses Help request removals/reindexing in Google Search Console Check for spam pages indexed by Google Required experience Proven experience investigating hacked WordPress websites Manual malware and database analysis—not only running an automated scanner Experience with SEO spam, Japanese keyword hacks, casino/gambling spam and persistent backdoors Experience with Kinsta or similar managed WordPress hosting Ability to analyze PHP, JavaScript, SQL, WordPress cron and server logs

  • Less than 30 hrs/week
    Hourly
  • 1-3 months
    Duration
  • Intermediate
    Experience Level
  • $20.00

    -

    $50.00

    Hourly
  • Remote Job
  • Ongoing project
    Project Type

Contract-to-hire opportunity

This lets talent know that this job could become full time.
Learn more
Skills and Expertise
Mandatory skills
WordPress
WordPress Malware Removal
Activity on this job
  • Proposals:20 to 50
  • Last viewed by client:2 hours ago
  • Interviewing:
    0
  • Invites sent:
    0
  • Unanswered invites:
    0
About the client
Member since Jan 28, 2024
  • BRA
    Sao Paulo1:21 AM
  • $7.7K total spent
    5 hires, 2 active
  • 318 hours
  • Travel & Hospitality
    Small company (2-9 people)

Explore similar jobs on Upwork

DMO Audit EngagementHourly‐ Posted 2 months ago
Cybersecurity Management
Business Analysis
Information Technology
Governance, Risk Management & Compliance
Financial Audit
GDPR
Data Privacy
Risk Assessment
NIST SP 800-53
ISO 27001
Product Strategy
Digital Transformation
Secure SDLC
Program Management
AI Governance
ISO 9001
Change Management
IT Compliance Audit
Incident Management
Artificial Intelligence
Lead Generation
Internet Marketing
Cloud Computing
Cloud Security Framework
Network Security
Solution Architecture
Security Infrastructure
Application Security
Security Engineering

How it works

  • Post a job icon
    Create your free profile
    Highlight your skills and experience, show your portfolio, and set your ideal pay rate.
  • Talent comes to you icon
    Work the way you want
    Apply for jobs, create easy-to-by projects, or access exclusive opportunities that come to you.
  • Payment simplified icon
    Get paid securely
    From contract to payment, we help you work safely and get paid securely.
Want to get started? Create a profile

About Upwork

  • Rating is 4.9 out of 5.
    4.9/5
    (Average rating of clients by professionals)
  • G2 2021
    #1 freelance platform
  • 49,000+
    Signed contract every week
  • $2.3B
    Freelancers earned on Upwork in 2020

Find the best freelance jobs

Growing your career is as easy as creating a free profile and finding work like this that fits your skills.

Trusted by

  • Microsoft Logo
  • Airbnb Logo
  • Bissell Logo
  • GoDaddy Logo