Urgent: PrestaShop 1.7.6.5 Malware Removal (Credit Card Skimmer), Security Hardening, Upgrade to PrestaShop 9.x & Migration to secure hosting provider.

Job ID: 40443785

Budget: €250 – €750 EUR

Urgent: PrestaShop 1.7.6.5 Malware Removal (Credit Card Skimmer), Security Hardening, Upgrade to PrestaShop 9.x & Migration to secure hosting provider.


Project Description:
My PrestaShop store (1.7.6.5, ~600 products, low traffic) has been compromised. The site is infected with a “digital skimmer” (a credit card skimmer / Magecart‑type malware) that redirects customers during checkout to a fraudulent payment page. Card payments are disabled, and the shop is in maintenance mode to prevent further harm. The website loads extremely slowly when not in maintenance mode, indicating malicious scripts are present.

I need a complete, permanent solution. You must prove you have successfully completed similar PrestaShop security work before (please provide references or portfolio links). I will share the specific malicious domain and technical details with shortlisted candidates after signing a simple NDA.

Required Scope of Work (Fixed Price – Not Hourly):

Phase 1: Forensic Cleanup & Backdoor Closure

-Perform a full server‑wide search (files and database) to locate and completely eradicate ALL malware, backdoors, and injected code.

-Close the original entry point used by the hacker (vulnerable module, theme file, etc.) to prevent re‑infection.

-Do NOT proceed to Phase 2 until the site is confirmed 100% clean.

Phase 2: Secure Upgrade to PrestaShop 9.x

-Perform a full, secure upgrade from the current 1.7.6.5 to the latest stable PrestaShop 9.x version on a staging environment first.

-Ensure zero data loss for all products (~600), customers, past orders, and all current shop configurations.

-Test and adapt the existing theme and all essential modules to be fully compatible with PrestaShop 9.x.

Phase 3: Security Hardening (2FA & Final Checks)

-After the successful upgrade, install and configure Two‑Factor Authentication (2FA) for all admin/employee accounts. Provide clear instructions for me to use it.

-Perform a final security audit of the live site.

Phase 4: Complete Site Migration to a Secure Hosting Provider (NexonHost/Axarnet/Etc)

-After the site is fully cleaned, upgraded, and secured on the current server, execute a complete migration to a NexonHost / Axarnet / Etc PrestaShop hosting plan (their free migration service, however, the freelancer must coordinate this move and ensure a smooth transition of all files, databases, themes, modules, and configurations).

-This migration must be done with minimal downtime and zero data loss.

Note: If the freelancer believes a different host is a better fit, they can propose it, but it must offer similar free migration services, security features, perfect combination with Prestashop and 24/7 English support.

Project Requirements:

-Fixed Price: Provide a fixed, all‑inclusive price in your bid. No hourly billing.

-Evidence of Expertise: Include links or references to previous PrestaShop malware removal and upgrade projects.

-Communication: Regular updates required at the end of each phase.

- Please include your estimated completion time (in days) for the entire project in your bid.

Please note:
-The live site is currently in maintenance mode, so there is no immediate risk to customers. I am looking for a thorough professional to deliver a permanent, secure result. Thank you.

-Bids below €400 will not be considered – only serious freelancers with proven expertise, please.