🎁 Current offer — SUPER25: 25% off your subscription, until August 31, 2026.
star-1
star-2
Expert intervention, picked up within 2 hours

We clean your PrestaShop, completely

Malware removed, backdoors closed, altered files restored from the official archive, and the hole they came in through sealed. By people who work on nothing but PrestaShop.

One-off fee €345 excl. VAT

Detailed report handed over at the end. If anything is left behind after our pass, we come back at no charge.

Not sure yet whether you are infected?

Redirects that only show up from Google, the red "Dangerous site" screen, unknown PHP files in /upload or /modules, spam reported by your host, admin accounts that appeared on their own. Those are the six signs that come up most often.

The details and what to do right now

Six hours as a rule, and you know where we are

Every step has a duration and a deliverable. If your case runs over, several backdoors or a database that has been touched, you hear about it at step three, before we commit the extra time.

H+0

Access and handover

You send us FTP or SSH access and the back office. We start within the next working hour.

Intervention slot confirmed
H+0:30

Full backup

Files and database saved before anything is touched. Nothing we do afterwards is irreversible.

Restore point
H+1:30

Scan and identification

Core, modules, themes and uploads, compared against the official archive for your PrestaShop version.

Exact list of rogue files, accounts and cron jobs
H+4

Cleanup and fixes

Malicious code removed, core files restored, rogue accounts and modules deleted, the entry point sealed.

Clean shop, hole closed
H+6

Protection and report

PrestaSecure module installed. If your domain was blacklisted, we walk you through the review request with Google.

Detailed report, it is yours

What we find in a compromised shop

The pattern barely changes. A hole in a third-party module opens the door, a web shell is dropped, then several backdoors are scattered around to keep access even after a quick cleanup. Deleting the file you can see is never enough.

2 365 infected files identified
4 966 suspicious files flagged
185 ghost modules removed
4 421 full scans run

Running totals across every shop we analyse.

What is covered and what is not

Covered by the €345

  • Full scan of the installation: core, modules, themes, uploads
  • Removal of malware, backdoors and injected code
  • Core files restored from the official PrestaShop archive
  • Rogue admin accounts, modules and cron jobs deleted
  • The identified entry point sealed
  • PrestaSecure module installed and configured
  • Detailed report, forwardable to your host or your agency
  • Free second pass if anything is left behind after our work

Not covered

  • PrestaShop version migration
  • Theme rebuild or repair
  • Performance tuning
  • Recovery of data lost before we stepped in
  • Hosting upgrade

We tell you which of these applies to you, with a separate quote if you want one.

€345 excl. VAT, one off

One price, whatever the size of the shop

No subscription, no setup fee, no surcharge for the number of files or modules. Picked up within two hours.

After the cleanup

A cleanup settles today, not next year

A cleaned shop stays exposed to whatever brought it down: third-party modules, whose vulnerabilities surface long after they were installed. We track those of 219 different modules, plus the ones in the PrestaShop core. Most never got a fix from their vendor, and close to one in six appears in no public database. Those, we found ourselves.

That is what Serenity covers. Once the shop is clean, we carry on applying fixes, updating vulnerable modules and removing abandoned directories. If the infection comes back anyway, we clean again at no charge.

Cleanup on its own, payable again at every incident €345
Serenity, the whole year, interventions included, antivirus and firewall on top €575

Two incidents in a year and the subscription has paid for itself. Its real job, mind you, is making sure there is no second incident.

Frequently asked questions

Cleaning a hacked PrestaShop store

Hundreds of PrestaShop stores are compromised every day. Attackers exploit a hole in a third-party module, a PrestaShop version that is no longer maintained or a password that was too simple, then inject their code, drop backdoors and siphon off customer data.

Our cleanup does not stop at deleting infected files. We look for how they got in, close that door, and install the protection that prevents a relapse. You walk away with a report listing every file we handled, the vulnerability we identified and the hardening steps to plan for, hosting included.

If you have been hacked once, the odds of it happening again are high: the same modules are still installed, and new vulnerabilities surface in them every month. The Serenity plan covers that risk over twelve months, fixes and cleanups included.

Every day infected is a day of lost sales

A site blacklisted by Google loses most of its organic traffic. Our team picks it up within two hours.

Avis Vérifiés 5 avis clients ★★★★★ ★★★★★ 5/5