BitFire PRO

Turn security alerts into blocked operations.

Upgrade to runtime protection that stops unauthorized PHP file writes, administrator account changes, and admin impersonation, then investigate hidden persistence with Threat Hunter and AI malware analysis.

  • 1,000 AI malware analysis credits
  • Threat Hunter persistence audits
  • Authorization-aware RASP

BitFire FREE is for non-commercial use only: personal blogs, charity websites, and other sites that do not support commercial activity. Business, agency, client, lead-generation, membership, and ecommerce sites require a commercial license.

Review license guidance
Everything unlocked with PRO

Prevent the breach. Find what scanners miss.

PRO combines enforcement during an attack with deeper investigation after suspicious activity. It is designed for sites where compromise has a real business cost.

02 / DEEP INVESTIGATION

Threat Hunter

Inspect database content, WordPress cron jobs, database triggers, must-use plugins, the startup chain, and background PHP processes for persistence normal file scans do not see.

Explore Threat Hunter
03 / FASTER TRIAGE

AI malware analysis

Use 1,000 AI credits to review suspicious code with frontier models, understand why it was flagged, and make a more confident allow, repair, or delete decision.

Read the scanner guide
Runtime Application Self-Protection

Three protected operations attackers depend on.

A WAF asks whether a request looks malicious. BitFire RASP also asks whether that request is authorized to perform a dangerous operation inside WordPress.

REQUESTAUTHORIZATIONPROTECTED OPERATION
Read the RASP settings guide
CONTROL 01

Filesystem protection

BitFire installs a PHP stream wrapper around the filesystem and inspects every write to a .php file. If the active request does not have administrator authorization, the write is blocked before a web shell or backdoor reaches disk.

BLOCKS UNAUTHORIZED PHP WRITES
CONTROL 02

Database protection

BitFire monitors database queries for user creation and privilege changes, with special attention to administrator access. If the request lacks admin-level authorization, the database update is blocked.

BLOCKS ROGUE ADMIN ACCOUNTS
CONTROL 03

Administrator impersonation protection

BitFire monitors attempts to impersonate an administrator. When the requesting session is not authorized for admin access, impersonation fails—blocking WP2Shell and other admin-level access-control failures.

BLOCKS AUTHENTICATION BYPASS
Advanced persistence discovery

Malware does not always live in a file.

Threat Hunter goes beyond a normal filesystem scan to find the mechanisms attackers use to survive cleanup and regain control later.

Startup chainCron tasksMU pluginsAdmin usersMySQL triggersBackground PHPDatabase content

Why it matters: a background process, scheduled task, trigger, or stored script can reinfect a site after every malicious PHP file appears to be removed.

BITFIRE · MALWARE ANALYSISPRO
BitFire malware scanner with AI-assisted analysis of suspicious code
Move from a suspicious finding to an informed decision.Review evidence, use AI analysis, and investigate the persistence paths around it.
Simple annual portfolio pricing

More sites. Lower cost per site.

Enter the commercial WordPress domains you need to protect, then choose self-management, BitFire-managed operation, or around-the-clock priority support.

STEP 01 · MANAGEMENT LEVEL

Choose who manages day-to-day protection.

BitFire blocks third party integrations by default. This security-first approach may initially block some legitimate traffic. Those requests must be reviewed and approved to restore the site's expected functionality.

Choose an annual management and support option
STEP 02 · LICENSE DETAILS

Where should we deliver and assign your licenses?

Use an address you can access later, then add exactly one domain for every license you want to purchase.

Type one public domain and press Enter or select Add domain. Add up to 60 unique domains.
License domains0 licenses
    1 site$40per site / year
    2–9 sites$36per site / year · 10% portfolio discount
    10–24 sites$28per site / year · 30% portfolio discount
    25–49 sites$20per site / year · 50% portfolio discount
    50–60 sites$16per site / year · 60% portfolio discount

    Need more than 60 licenses? Contact BitFire sales.

    ORDER SUMMARY

    Your annual BitFire plan

    Plan price per site$40 / year
    Sites covered1
    Annual total$40

    Your annual order begins today. Verify your email to receive one permanent, domain-specific PRO download link per license. An external system will send the invoice separately.

    Before you upgrade

    Straight answers about PRO.

    Have a licensing or compatibility question we have not covered? Talk directly with the BitFire team.

    Contact BitFire
    What is included with BitFire PRO?

    PRO unlocks 1,000 AI malware analysis credits, advanced Threat Hunter audits, and runtime RASP enforcement for protected filesystem, database, and administrator impersonation operations.

    Do commercial websites need PRO?

    Yes. BitFire FREE is licensed only for personal blogs, charities, and other non-commercial sites. A website used by a business, agency, client, store, membership program, or other commercial operation requires a commercial license.

    How is annual pricing calculated?

    One license covers one domain. Portfolio discounts begin at 2 sites, and the matching tier applies to every license in the purchase. The domain list controls the quantity so there are no unassigned licenses. For example, 10 sites at $28.00 per site is $280.00 per year before an optional per-site management package.

    Why can BitFire require tuning after installation?

    BitFire uses a block-by-default security model. This reduces the chance that unknown or unauthorized activity is allowed, but some legitimate traffic may initially be blocked. Those requests must be reviewed and approved so the site can perform its expected functions without weakening protection unnecessarily.

    Which management option should I choose?

    Self-managed is for teams that will install BitFire, monitor blocks, and approve legitimate traffic themselves. Managed Protection adds BitFire installation, configuration, maintenance, monitoring, and operational tuning during normal U.S. business hours for $200 per site per year. Priority Support includes managed installation and monitoring plus 24/7 coverage and a one-hour response time for any issue for $450 per site per year.

    Will the listed prices change?

    Yes. The annual single-site rate is $40 in September 2026, $50 in October, $60 in November, $70 in December, and $90 beginning January 2027. The portfolio discounts shown in the calculator are applied to those rates. A purchased license remains valid for one year; renewal pricing is handled separately.

    Does RASP need to recognize a known vulnerability?

    No. RASP evaluates the authorization behind a protected operation. An unknown exploit can still be stopped when it tries to write PHP, create or elevate an administrator, or impersonate an admin without the required authorization.

    What does Threat Hunter find that a file scan may miss?

    Threat Hunter checks persistence outside ordinary malware files, including database content, cron tasks, MySQL triggers, the WordPress startup chain, must-use plugins, administrator accounts, and background PHP processes.

    Protection at runtime

    Stop plugin vulnerabilities from becoming compromises.

    Add authorization-aware RASP, deeper persistence hunting, and AI-assisted malware analysis to every site you manage.

    Protect my site free →