# threatover > WordPress malware removal and forensics. Manual cleanup of compromised WordPress sites with a written report at the end of every engagement. Flat $279 per cleanup. 30-day reinfection guarantee. ## What we do - Manual cleanup of WordPress malware, backdoors, web shells, JS skimmers, and conditional redirects. - Identification of the entry vector (vulnerable plugin, leaked credential, server-level issue). - Hardening: wp-config lockdown, secret rotation, login surface reduction. - Reconsideration requests to Google Safe Browsing, Sucuri, McAfee, Norton, Yandex. - Plain-English forensic report suitable for clients, insurers, and acquirers. ## Cleanups by symptom - [WordPress hacked](https://threatover.com/wordpress-hacked/) - [Japanese SEO spam removal](https://threatover.com/japanese-seo-spam-removal/) - [Pharma hack removal](https://threatover.com/pharma-hack-removal/) - [WooCommerce malware and skimmer removal](https://threatover.com/woocommerce-malware-removal/) - [Google 'Deceptive site ahead' warning removal](https://threatover.com/google-deceptive-site-warning-removal/) ## Cleanups by incident / CVE - [Really Simple Security CVE-2024-10924](https://threatover.com/really-simple-security-hack-cleanup/) - [Bricks Builder CVE-2024-25600](https://threatover.com/bricks-builder-hack-cleanup/) - [LiteSpeed Cache CVE-2024-50550 / CVE-2024-44000](https://threatover.com/litespeed-cache-hack-cleanup/) - [WP Automatic CVE-2024-27956](https://threatover.com/wp-automatic-hack-cleanup/) - [GiveWP CVE-2024-5932](https://threatover.com/givewp-hack-cleanup/) - [Hunk Companion CVE-2024-9707 / CVE-2024-11972](https://threatover.com/hunk-companion-hack-cleanup/) - [WPML CVE-2024-6386](https://threatover.com/wpml-hack-cleanup/) - [LayerSlider CVE-2024-2879](https://threatover.com/layerslider-hack-cleanup/) ## Site - [Home](https://threatover.com/) - [Services](https://threatover.com/services/) - [Pricing](https://threatover.com/pricing/) - [About](https://threatover.com/about/) - [Contact](https://threatover.com/contact/) - [Guides](https://threatover.com/guides/) - [Blog](https://threatover.com/blog/) - [Research](https://threatover.com/research/) - [News](https://threatover.com/news/) - [Responsible disclosure](https://threatover.com/responsible-disclosure/) - [Sitemap (XML)](https://threatover.com/sitemap.xml) ## Crawling AI training and answer-engine crawlers are explicitly allowed in [robots.txt](https://threatover.com/robots.txt). Citations welcome.