AlkantarClanX12
Current Path : /usr/local/maldetect.bk29807/logs/ |
Current File : //usr/local/maldetect.bk29807/logs/event_log |
Oct 18 2024 23:42:13 server maldet(2014): {sigup} performing signature update check... Oct 18 2024 23:42:13 server maldet(2014): {sigup} local signature set is version 20230331490193 Oct 18 2024 23:42:14 server maldet(2014): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Oct 18 2024 23:42:14 server maldet(2014): {sigup} new signature set 20241016273515 available Oct 18 2024 23:42:14 server maldet(2014): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Oct 18 2024 23:42:14 server maldet(2014): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Oct 18 2024 23:42:15 server maldet(2014): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Oct 18 2024 23:42:15 server maldet(2014): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Oct 18 2024 23:42:15 server maldet(2014): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Oct 18 2024 23:42:16 server maldet(2014): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Oct 18 2024 23:42:16 server maldet(2014): {sigup} verified md5sum of maldet-sigpack.tgz Oct 18 2024 23:42:16 server maldet(2014): {sigup} unpacked and installed maldet-sigpack.tgz Oct 18 2024 23:42:16 server maldet(2014): {sigup} verified md5sum of maldet-clean.tgz Oct 18 2024 23:42:16 server maldet(2014): {sigup} unpacked and installed maldet-clean.tgz Oct 18 2024 23:42:16 server maldet(2014): {sigup} signature set update completed Oct 18 2024 23:42:16 server maldet(2014): {sigup} 17638 signatures (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Oct 18 2024 23:43:53 server maldet(2501): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Oct 18 2024 23:43:53 server maldet(2501): {scan} building file list for /home, this might take awhile... Oct 18 2024 23:43:53 server maldet(2501): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Oct 18 2024 23:43:53 server maldet(2501): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Oct 18 2024 23:44:52 server maldet(2501): {scan} file list completed in 58s, found 450533 files... Oct 18 2024 23:44:52 server maldet(2501): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Oct 18 2024 23:44:52 server maldet(2501): {scan} scan of /home (450533 files) in progress... Oct 19 2024 02:55:35 server maldet(2501): {hit} malware hit {HEX}php.malware.magento.599 found for /home/sksps/tmp/awstats/awstats082024.sksps.com.txt Oct 19 2024 02:55:35 server maldet(2501): {hit} malware hit {HEX}php.malware.magento.599 found for /home/sksps/tmp/awstats/awstats052024.sksps.com.txt Oct 19 2024 02:55:35 server maldet(2501): {hit} malware hit {HEX}php.malware.magento.599 found for /home/sksps/tmp/awstats/awstats102024.sksps.com.txt Oct 19 2024 02:55:35 server maldet(2501): {hit} malware hit {HEX}php.malware.magento.599 found for /home/sksps/tmp/awstats/awstats072024.sksps.com.txt Oct 19 2024 02:55:35 server maldet(2501): {hit} malware hit {HEX}php.malware.magento.599 found for /home/sksps/tmp/awstats/awstats062024.sksps.com.txt Oct 19 2024 02:55:35 server maldet(2501): {hit} malware hit {HEX}php.malware.magento.599 found for /home/scpac/tmp/awstats/awstats062024.scp.ac.in.txt Oct 19 2024 02:55:35 server maldet(2501): {hit} malware hit {HEX}php.malware.magento.599 found for /home/scpac/tmp/awstats/awstats082024.scp.ac.in.txt Oct 19 2024 02:55:35 server maldet(2501): {hit} malware hit {HEX}php.malware.magento.599 found for /home/sksintuniversity/tmp/awstats/ssl/awstats082024.sksinternationaluniversity.ac.in.txt Oct 19 2024 02:55:35 server maldet(2501): {hit} malware hit {HEX}php.malware.magento.599 found for /home/sksintuniversity/tmp/awstats/awstats092024.sksinternationaluniversity.ac.in.txt Oct 19 2024 02:55:35 server maldet(2501): {hit} malware hit {HEX}php.malware.magento.599 found for /home/sksintuniversity/tmp/analog/cache Oct 19 2024 02:55:35 server maldet(2501): {hit} malware hit {HEX}php.malware.magento.599 found for /home/sksintuniversity/logs/sksinternationaluniversity.ac.in-Oct-2024.gz Oct 19 2024 02:55:36 server maldet(2501): {hit} malware hit {HEX}php.malware.magento.599 found for /home/bcetdgpac/tmp/awstats/ssl/awstats082024.bcetdgp.ac.in.txt Oct 19 2024 02:55:36 server maldet(2501): {hit} malware hit {HEX}php.malware.magento.599 found for /home/bcetdgpac/tmp/awstats/awstats062024.bcetdgp.ac.in.txt Oct 19 2024 02:55:36 server maldet(2501): {hit} malware hit {HEX}php.malware.magento.596 found for /home/bcetdgpac/tmp/awstats/awstats072024.bcetdgp.ac.in.txt Oct 19 2024 02:55:36 server maldet(2501): {hit} malware hit {HEX}php.malware.magento.599 found for /home/bcetdgpac/tmp/awstats/awstats102024.bcetdgp.ac.in.txt Oct 19 2024 02:55:36 server maldet(2501): {hit} malware hit {HEX}php.malware.magento.599 found for /home/bcetdgpac/tmp/awstats/awstats082024.bcetdgp.ac.in.txt Oct 19 2024 02:55:36 server maldet(2501): {hit} malware hit {HEX}php.malware.magento.599 found for /home/bcetdgpac/logs/bcetdgp.ac.in-Oct-2024.gz Oct 19 2024 02:55:36 server maldet(2501): {hit} malware hit {HEX}php.malware.magento.599 found for /home/krishnaintl/tmp/awstats/ssl/awstats102024.krishnaintl.net.txt Oct 19 2024 02:55:36 server maldet(2501): {hit} malware hit {HEX}php.malware.magento.599 found for /home/krishnaintl/tmp/awstats/awstats082024.krishnaintl.net.txt Oct 19 2024 02:55:36 server maldet(2501): {hit} malware hit {HEX}php.malware.magento.599 found for /home/krishnaintl/logs/krishnaintl.net-ssl_log-Oct-2024.gz Oct 19 2024 02:55:36 server maldet(2501): {hit} malware hit {HEX}php.malware.magento.599 found for /home/myrara/tmp/awstats/awstats082024.myrara.com.txt Oct 19 2024 02:55:36 server maldet(2501): {hit} malware hit {HEX}php.malware.magento.599 found for /home/myrara/tmp/awstats/awstats092024.myrara.com.txt Oct 19 2024 02:55:36 server maldet(2501): {hit} malware hit {HEX}php.malware.magento.599 found for /home/myrara/tmp/awstats/awstats062024.myrara.com.txt Oct 19 2024 02:55:36 server maldet(2501): {hit} malware hit {HEX}php.malware.magento.599 found for /home/sksmedicalcolleg/tmp/awstats/awstats072024.sksmedicalcollege.com.txt Oct 19 2024 02:55:36 server maldet(2501): {hit} malware hit {HEX}php.malware.magento.599 found for /home/sksmedicalcolleg/tmp/awstats/awstats062024.sksmedicalcollege.com.txt Oct 19 2024 02:55:36 server maldet(2501): {hit} malware hit {HEX}php.malware.magento.599 found for /home/dpsbloomingbuds/tmp/awstats/awstats082024.dpsbloomingbuds.com.txt Oct 19 2024 02:55:36 server maldet(2501): {hit} malware hit {HEX}php.malware.magento.599 found for /home/dpsbloomingbuds/tmp/awstats/awstats092024.dpsbloomingbuds.com.txt Oct 19 2024 02:55:36 server maldet(2501): {hit} malware hit {HEX}php.malware.magento.599 found for /home/dilseshaadi/tmp/awstats/awstats102024.dilseshaadi.com.txt Oct 19 2024 02:55:36 server maldet(2501): {hit} malware hit {HEX}php.malware.magento.599 found for /home/dilseshaadi/tmp/analog/cache Oct 19 2024 02:55:37 server maldet(2501): {hit} malware hit {HEX}php.malware.magento.599 found for /home/dilseshaadi/logs/dilseshaadi.com-Oct-2024.gz Oct 19 2024 02:55:37 server maldet(2501): {hit} malware hit {HEX}php.uploader.max.725 found for /home/sksworldschool/caches/caches.php Oct 19 2024 02:55:37 server maldet(2501): {hit} malware hit {HEX}php.uploader.max.725 found for /home/sksworldschool/stats/stats.php Oct 19 2024 02:55:37 server maldet(2501): {hit} malware hit {HEX}php.uploader.max.725 found for /home/sksworldschool/public_html/ajax/caches/caches.php Oct 19 2024 02:55:37 server maldet(2501): {hit} malware hit {HEX}php.uploader.max.725 found for /home/sksworldschool/public_html/ajax/stats/stats.php Oct 19 2024 02:55:37 server maldet(2501): {hit} malware hit {HEX}php.uploader.max.725 found for /home/sksworldschool/public_html/ajax/stats.php Oct 19 2024 02:55:37 server maldet(2501): {hit} malware hit {HEX}php.uploader.max.725 found for /home/sksworldschool/public_html/ajax/creates.php Oct 19 2024 02:55:37 server maldet(2501): {hit} malware hit {HEX}php.uploader.max.725 found for /home/sksworldschool/public_html/ajax/caches.php Oct 19 2024 02:55:37 server maldet(2501): {hit} malware hit {HEX}php.uploader.max.725 found for /home/sksworldschool/public_html/cgi-bin/caches/caches.php Oct 19 2024 02:55:37 server maldet(2501): {hit} malware hit {HEX}php.uploader.max.725 found for /home/sksworldschool/public_html/cgi-bin/stats/stats.php Oct 19 2024 02:55:37 server maldet(2501): {hit} malware hit {HEX}php.uploader.max.725 found for /home/sksworldschool/public_html/cgi-bin/stats.php Oct 19 2024 02:55:37 server maldet(2501): {hit} malware hit {HEX}php.uploader.max.725 found for /home/sksworldschool/public_html/cgi-bin/creates.php Oct 19 2024 02:55:37 server maldet(2501): {hit} malware hit {HEX}php.uploader.max.725 found for /home/sksworldschool/public_html/cgi-bin/caches.php Oct 19 2024 02:55:37 server maldet(2501): {hit} malware hit {HEX}php.uploader.max.725 found for /home/sksworldschool/public_html/caches/caches/caches.php Oct 19 2024 02:55:37 server maldet(2501): {hit} malware hit {HEX}php.uploader.max.725 found for /home/sksworldschool/public_html/caches/stats/stats.php Oct 19 2024 02:55:37 server maldet(2501): {hit} malware hit {HEX}php.uploader.max.725 found for /home/sksworldschool/public_html/caches/stats.php Oct 19 2024 02:55:37 server maldet(2501): {hit} malware hit {HEX}php.uploader.max.725 found for /home/sksworldschool/public_html/caches/creates.php Oct 19 2024 02:55:38 server maldet(2501): {hit} malware hit {HEX}php.uploader.max.725 found for /home/sksworldschool/public_html/caches/caches.php Oct 19 2024 02:55:38 server maldet(2501): {hit} malware hit {HEX}php.uploader.max.725 found for /home/sksworldschool/public_html/wp-admin/caches/caches.php Oct 19 2024 02:55:38 server maldet(2501): {hit} malware hit {HEX}php.uploader.max.725 found for /home/sksworldschool/public_html/wp-admin/stats/stats.php Oct 19 2024 02:55:38 server maldet(2501): {hit} malware hit {HEX}php.uploader.max.725 found for /home/sksworldschool/public_html/wp-admin/stats.php Oct 19 2024 02:55:38 server maldet(2501): {hit} malware hit {HEX}php.uploader.max.725 found for /home/sksworldschool/public_html/wp-admin/creates.php Oct 19 2024 02:55:38 server maldet(2501): {hit} malware hit {HEX}php.uploader.max.725 found for /home/sksworldschool/public_html/wp-admin/caches.php Oct 19 2024 02:55:38 server maldet(2501): {hit} malware hit {HEX}php.uploader.max.725 found for /home/sksworldschool/public_html/wp-snapshots/caches/caches.php Oct 19 2024 02:55:38 server maldet(2501): {hit} malware hit {HEX}php.uploader.max.725 found for /home/sksworldschool/public_html/wp-snapshots/stats/stats.php Oct 19 2024 02:55:38 server maldet(2501): {hit} malware hit {HEX}php.uploader.max.725 found for /home/sksworldschool/public_html/wp-snapshots/stats.php Oct 19 2024 02:55:38 server maldet(2501): {hit} malware hit {HEX}php.uploader.max.725 found for /home/sksworldschool/public_html/wp-snapshots/creates.php Oct 19 2024 02:55:38 server maldet(2501): {hit} malware hit {HEX}php.uploader.max.725 found for /home/sksworldschool/public_html/wp-snapshots/caches.php Oct 19 2024 02:55:38 server maldet(2501): {hit} malware hit {HEX}php.uploader.max.725 found for /home/sksworldschool/public_html/new/caches/caches.php Oct 19 2024 02:55:38 server maldet(2501): {hit} malware hit {HEX}php.uploader.max.725 found for /home/sksworldschool/public_html/new/stats/stats.php Oct 19 2024 02:55:38 server maldet(2501): {hit} malware hit {HEX}php.uploader.max.725 found for /home/sksworldschool/public_html/new/stats.php Oct 19 2024 02:55:39 server maldet(2501): {hit} malware hit {HEX}php.uploader.max.725 found for /home/sksworldschool/public_html/new/creates.php Oct 19 2024 02:55:39 server maldet(2501): {hit} malware hit {HEX}php.uploader.max.725 found for /home/sksworldschool/public_html/new/caches.php Oct 19 2024 02:55:39 server maldet(2501): {hit} malware hit {HEX}php.uploader.max.725 found for /home/sksworldschool/public_html/cacher/caches/caches.php Oct 19 2024 02:55:39 server maldet(2501): {hit} malware hit {HEX}php.uploader.max.725 found for /home/sksworldschool/public_html/cacher/stats/stats.php Oct 19 2024 02:55:39 server maldet(2501): {hit} malware hit {HEX}php.uploader.max.725 found for /home/sksworldschool/public_html/cacher/stats.php Oct 19 2024 02:55:39 server maldet(2501): {hit} malware hit {HEX}php.uploader.max.725 found for /home/sksworldschool/public_html/cacher/creates.php Oct 19 2024 02:55:39 server maldet(2501): {hit} malware hit {HEX}php.uploader.max.725 found for /home/sksworldschool/public_html/cacher/caches.php Oct 19 2024 02:55:39 server maldet(2501): {hit} malware hit {HEX}php.uploader.max.725 found for /home/sksworldschool/public_html/stats/caches/caches.php Oct 19 2024 02:55:39 server maldet(2501): {hit} malware hit {HEX}php.uploader.max.725 found for /home/sksworldschool/public_html/stats/stats/stats.php Oct 19 2024 02:55:39 server maldet(2501): {hit} malware hit {HEX}php.uploader.max.725 found for /home/sksworldschool/public_html/stats/stats.php Oct 19 2024 02:55:39 server maldet(2501): {hit} malware hit {HEX}php.uploader.max.725 found for /home/sksworldschool/public_html/stats/creates.php Oct 19 2024 02:55:39 server maldet(2501): {hit} malware hit {HEX}php.uploader.max.725 found for /home/sksworldschool/public_html/stats/caches.php Oct 19 2024 02:55:39 server maldet(2501): {hit} malware hit {HEX}php.uploader.max.725 found for /home/sksworldschool/public_html/.well-known/caches/caches.php Oct 19 2024 02:55:39 server maldet(2501): {hit} malware hit {HEX}php.uploader.max.725 found for /home/sksworldschool/public_html/.well-known/stats/stats.php Oct 19 2024 02:55:39 server maldet(2501): {hit} malware hit {HEX}php.uploader.max.725 found for /home/sksworldschool/public_html/.well-known/stats.php Oct 19 2024 02:55:40 server maldet(2501): {hit} malware hit {HEX}php.uploader.max.725 found for /home/sksworldschool/public_html/.well-known/creates.php Oct 19 2024 02:55:40 server maldet(2501): {hit} malware hit {HEX}php.uploader.max.725 found for /home/sksworldschool/public_html/.well-known/caches.php Oct 19 2024 02:55:40 server maldet(2501): {hit} malware hit {HEX}php.uploader.max.725 found for /home/sksworldschool/public_html/wp-includes/caches/caches.php Oct 19 2024 02:55:40 server maldet(2501): {hit} malware hit {HEX}php.uploader.max.725 found for /home/sksworldschool/public_html/wp-includes/stats/stats.php Oct 19 2024 02:55:40 server maldet(2501): {hit} malware hit {HEX}php.uploader.max.725 found for /home/sksworldschool/public_html/wp-includes/stats.php Oct 19 2024 02:55:40 server maldet(2501): {hit} malware hit {HEX}php.uploader.max.725 found for /home/sksworldschool/public_html/wp-includes/creates.php Oct 19 2024 02:55:40 server maldet(2501): {hit} malware hit {HEX}php.uploader.max.725 found for /home/sksworldschool/public_html/wp-includes/caches.php Oct 19 2024 02:55:40 server maldet(2501): {hit} malware hit {HEX}php.uploader.max.725 found for /home/sksworldschool/public_html/landing/caches/caches.php Oct 19 2024 02:55:40 server maldet(2501): {hit} malware hit {HEX}php.uploader.max.725 found for /home/sksworldschool/public_html/landing/stats/stats.php Oct 19 2024 02:55:40 server maldet(2501): {hit} malware hit {HEX}php.uploader.max.725 found for /home/sksworldschool/public_html/landing/stats.php Oct 19 2024 02:55:40 server maldet(2501): {hit} malware hit {HEX}php.uploader.max.725 found for /home/sksworldschool/public_html/landing/creates.php Oct 19 2024 02:55:40 server maldet(2501): {hit} malware hit {HEX}php.uploader.max.725 found for /home/sksworldschool/public_html/landing/caches.php Oct 19 2024 02:55:40 server maldet(2501): {hit} malware hit {HEX}php.uploader.max.725 found for /home/sksworldschool/public_html/wp-content/caches/caches.php Oct 19 2024 02:55:40 server maldet(2501): {hit} malware hit {HEX}php.uploader.max.725 found for /home/sksworldschool/public_html/wp-content/stats/stats.php Oct 19 2024 02:55:40 server maldet(2501): {hit} malware hit {HEX}php.uploader.max.725 found for /home/sksworldschool/public_html/TC/caches/caches.php Oct 19 2024 02:55:40 server maldet(2501): {hit} malware hit {HEX}php.uploader.max.725 found for /home/sksworldschool/public_html/TC/stats/stats.php Oct 19 2024 02:55:40 server maldet(2501): {hit} malware hit {HEX}php.uploader.max.725 found for /home/sksworldschool/public_html/TC/stats.php Oct 19 2024 02:55:40 server maldet(2501): {hit} malware hit {HEX}php.uploader.max.725 found for /home/sksworldschool/public_html/TC/creates.php Oct 19 2024 02:55:40 server maldet(2501): {hit} malware hit {HEX}php.uploader.max.725 found for /home/sksworldschool/public_html/TC/caches.php Oct 19 2024 02:55:41 server maldet(2501): {hit} malware hit {HEX}php.uploader.max.725 found for /home/sksworldschool/public_html/ALFA_DATA/caches/caches.php Oct 19 2024 02:55:41 server maldet(2501): {hit} malware hit {HEX}php.uploader.max.725 found for /home/sksworldschool/public_html/ALFA_DATA/stats/stats.php Oct 19 2024 02:55:41 server maldet(2501): {hit} malware hit {HEX}php.uploader.max.725 found for /home/sksworldschool/public_html/ALFA_DATA/stats.php Oct 19 2024 02:55:41 server maldet(2501): {hit} malware hit {HEX}php.uploader.max.725 found for /home/sksworldschool/public_html/ALFA_DATA/creates.php Oct 19 2024 02:55:41 server maldet(2501): {hit} malware hit {HEX}php.uploader.max.725 found for /home/sksworldschool/public_html/ALFA_DATA/caches.php Oct 19 2024 02:55:41 server maldet(2501): {hit} malware hit {HEX}php.uploader.max.725 found for /home/sksworldschool/public_html/registration_form/caches/caches.php Oct 19 2024 02:55:41 server maldet(2501): {hit} malware hit {HEX}php.uploader.max.725 found for /home/sksworldschool/public_html/registration_form/stats/stats.php Oct 19 2024 02:55:41 server maldet(2501): {hit} malware hit {HEX}php.uploader.max.725 found for /home/sksworldschool/public_html/registration_form/stats.php Oct 19 2024 02:55:41 server maldet(2501): {hit} malware hit {HEX}php.uploader.max.725 found for /home/sksworldschool/public_html/registration_form/creates.php Oct 19 2024 02:55:41 server maldet(2501): {hit} malware hit {HEX}php.uploader.max.725 found for /home/sksworldschool/public_html/registration_form/caches.php Oct 19 2024 02:55:41 server maldet(2501): {hit} malware hit {HEX}php.uploader.max.725 found for /home/sksworldschool/public_html/virtual-tour/caches/caches.php Oct 19 2024 02:55:41 server maldet(2501): {hit} malware hit {HEX}php.uploader.max.725 found for /home/sksworldschool/public_html/virtual-tour/stats/stats.php Oct 19 2024 02:55:41 server maldet(2501): {hit} malware hit {HEX}php.uploader.max.725 found for /home/sksworldschool/public_html/virtual-tour/stats.php Oct 19 2024 02:55:41 server maldet(2501): {hit} malware hit {HEX}php.uploader.max.725 found for /home/sksworldschool/public_html/virtual-tour/creates.php Oct 19 2024 02:55:41 server maldet(2501): {hit} malware hit {HEX}php.uploader.max.725 found for /home/sksworldschool/public_html/virtual-tour/caches.php Oct 19 2024 02:55:41 server maldet(2501): {hit} malware hit {HEX}php.uploader.max.725 found for /home/sksworldschool/public_html/emay/caches/caches.php Oct 19 2024 02:55:41 server maldet(2501): {hit} malware hit {HEX}php.uploader.max.725 found for /home/sksworldschool/public_html/emay/stats/stats.php Oct 19 2024 02:55:41 server maldet(2501): {hit} malware hit {HEX}php.uploader.max.725 found for /home/sksworldschool/public_html/emay/stats.php Oct 19 2024 02:55:42 server maldet(2501): {hit} malware hit {HEX}php.uploader.max.725 found for /home/sksworldschool/public_html/emay/emay.php Oct 19 2024 02:55:42 server maldet(2501): {hit} malware hit {HEX}php.uploader.max.725 found for /home/sksworldschool/public_html/emay/creates.php Oct 19 2024 02:55:42 server maldet(2501): {hit} malware hit {HEX}php.uploader.max.725 found for /home/sksworldschool/public_html/emay/caches.php Oct 19 2024 02:55:42 server maldet(2501): {hit} malware hit {HEX}php.uploader.max.725 found for /home/sksworldschool/public_html/.tmb/caches/caches.php Oct 19 2024 02:55:42 server maldet(2501): {hit} malware hit {HEX}php.uploader.max.725 found for /home/sksworldschool/public_html/.tmb/stats/stats.php Oct 19 2024 02:55:42 server maldet(2501): {hit} malware hit {HEX}php.uploader.max.725 found for /home/sksworldschool/public_html/.tmb/stats.php Oct 19 2024 02:55:42 server maldet(2501): {hit} malware hit {HEX}php.uploader.max.725 found for /home/sksworldschool/public_html/.tmb/creates.php Oct 19 2024 02:55:42 server maldet(2501): {hit} malware hit {HEX}php.uploader.max.725 found for /home/sksworldschool/public_html/.tmb/caches.php Oct 19 2024 02:55:42 server maldet(2501): {hit} malware hit {HEX}php.uploader.max.725 found for /home/sksworldschool/public_html/emailer/caches/caches.php Oct 19 2024 02:55:42 server maldet(2501): {hit} malware hit {HEX}php.uploader.max.725 found for /home/sksworldschool/public_html/emailer/stats/stats.php Oct 19 2024 02:55:42 server maldet(2501): {hit} malware hit {HEX}php.uploader.max.725 found for /home/sksworldschool/public_html/emailer/stats.php Oct 19 2024 02:55:42 server maldet(2501): {hit} malware hit {HEX}php.uploader.max.725 found for /home/sksworldschool/public_html/emailer/creates.php Oct 19 2024 02:55:42 server maldet(2501): {hit} malware hit {HEX}php.uploader.max.725 found for /home/sksworldschool/public_html/emailer/caches.php Oct 19 2024 02:55:42 server maldet(2501): {hit} malware hit {HEX}php.uploader.max.725 found for /home/sksworldschool/public_html/wp-contents/caches/caches.php Oct 19 2024 02:55:42 server maldet(2501): {hit} malware hit {HEX}php.uploader.max.725 found for /home/sksworldschool/public_html/wp-contents/stats/stats.php Oct 19 2024 02:55:42 server maldet(2501): {hit} malware hit {HEX}php.uploader.max.725 found for /home/sksworldschool/public_html/wp-contents/stats.php Oct 19 2024 02:55:43 server maldet(2501): {hit} malware hit {HEX}php.uploader.max.725 found for /home/sksworldschool/public_html/wp-contents/creates.php Oct 19 2024 02:55:43 server maldet(2501): {hit} malware hit {HEX}php.uploader.max.725 found for /home/sksworldschool/public_html/wp-contents/caches.php Oct 19 2024 02:55:43 server maldet(2501): {hit} malware hit {HEX}php.uploader.max.725 found for /home/sksworldschool/public_html/wp-contents/config.php Oct 19 2024 02:55:43 server maldet(2501): {hit} malware hit {HEX}php.malware.magento.599 found for /home/sksworldschool/tmp/awstats/awstats072024.sksworldschool.com.txt Oct 19 2024 02:55:43 server maldet(2501): {hit} malware hit {HEX}php.malware.magento.599 found for /home/sksworldschool/tmp/awstats/awstats082024.sksworldschool.com.txt Oct 19 2024 02:55:43 server maldet(2501): {hit} malware hit {HEX}php.malware.magento.599 found for /home/sksworldschool/tmp/awstats/awstats052024.sksworldschool.com.txt Oct 19 2024 02:55:43 server maldet(2501): {hit} malware hit {HEX}php.malware.magento.599 found for /home/sksworldschool/tmp/awstats/awstats062024.sksworldschool.com.txt Oct 19 2024 02:55:43 server maldet(2501): {hit} malware hit {HEX}php.malware.magento.599 found for /home/sksworldschool/tmp/analog/cache Oct 19 2024 02:55:43 server maldet(2501): {hit} malware hit {HEX}php.uploader.max.725 found for /home/sksworldschool/stats.php Oct 19 2024 02:55:43 server maldet(2501): {hit} malware hit {HEX}php.uploader.max.725 found for /home/sksworldschool/creates.php Oct 19 2024 02:55:43 server maldet(2501): {hit} malware hit {HEX}php.uploader.max.725 found for /home/sksworldschool/caches.php Oct 19 2024 02:55:43 server maldet(2501): {hit} malware hit {HEX}php.malware.magento.599 found for /home/sksworldschool/logs/sksworldschool.com-Aug-2024.gz Oct 19 2024 02:55:43 server maldet(2501): {quar} fatal error handling '/home/advertisingindia/mail/advertisingindia.net/directorcag/cur/1663137166.M92175P736336.bh-37.webhostbox.net,S=484360,W=491026' Oct 19 2024 02:55:43 server maldet(2501): {quar} fatal error handling '/home/advertisingindia/mail/advertisingindia.net/directorcag/cur/1663640674.M713555P1045554.bh-37.webhostbox.net,S=840552,W=852133' Oct 19 2024 02:55:43 server maldet(2501): {quar} fatal error handling '/home/advertisingindia/mail/advertisingindia.net/directorcag/cur/1663752560.M816378P297306.bh-37.webhostbox.net,S=733630,W=743708' Oct 19 2024 02:55:44 server maldet(2501): {quar} fatal error handling '/home/advertisingindia/mail/advertisingindia.net/directorcag/cur/1691635042.M57811P894703.bh-37.webhostbox.net,S=23234,W=23631' Oct 19 2024 02:55:44 server maldet(2501): {quar} fatal error handling '/home/advertisingindia/mail/advertisingindia.net/directorcag/cur/1707300849.M216137P849166.bh-37.webhostbox.net,S=899785,W=911537' Oct 19 2024 02:55:44 server maldet(2501): {quar} fatal error handling '/home/advertisingindia/mail/advertisingindia.net/directorcag/cur/1665093655.M617114P432462.bh-37.webhostbox.net,S=3110417,W=3153066' Oct 19 2024 02:55:44 server maldet(2501): {quar} fatal error handling '/home/advertisingindia/mail/advertisingindia.net/directorcag/cur/1676960722.M222478P322137.bh-37.webhostbox.net,S=1511164,W=1531896' Oct 19 2024 02:55:44 server maldet(2501): {quar} fatal error handling '/home/advertisingindia/mail/advertisingindia.net/directorcag/cur/1663581851.M462936P187958.bh-37.webhostbox.net,S=693623,W=703155' Oct 19 2024 02:55:44 server maldet(2501): {quar} fatal error handling '/home/advertisingindia/mail/advertisingindia.net/directorcag/cur/1695336513.M817718P192895.bh-37.webhostbox.net,S=602765,W=611062' Oct 19 2024 02:55:44 server maldet(2501): {quar} fatal error handling '/home/advertisingindia/mail/advertisingindia.net/directorcag/cur/1676634597.M105837P618359.bh-37.webhostbox.net,S=19455,W=19748' Oct 19 2024 02:55:44 server maldet(2501): {quar} fatal error handling '/home/advertisingindia/mail/advertisingindia.net/directorcag/cur/1662951350.M20151P535637.bh-37.webhostbox.net,S=526325,W=533201' Oct 19 2024 02:55:44 server maldet(2501): {quar} fatal error handling '/home/advertisingindia/mail/advertisingindia.net/directorcag/cur/1689403988.M156642P719002.bh-37.webhostbox.net,S=961948,W=975171' Oct 19 2024 02:55:44 server maldet(2501): {quar} fatal error handling '/home/advertisingindia/mail/advertisingindia.net/directorcag/cur/1663662120.M609715P604118.bh-37.webhostbox.net,S=504764,W=511708' Oct 19 2024 02:55:44 server maldet(2501): {quar} fatal error handling '/home/advertisingindia/mail/advertisingindia.net/directorcag/cur/1676555532.M251268P638720.bh-37.webhostbox.net,S=17634,W=17905' Oct 19 2024 02:55:44 server maldet(2501): {quar} fatal error handling '/home/advertisingindia/mail/advertisingindia.net/directorcag/cur/1682045575.M663537P977586.bh-37.webhostbox.net,S=859682,W=871504' Oct 19 2024 02:55:44 server maldet(2501): {hit} malware hit {CAV}Win.Trojan.Generic-9907631-0 found for /home/advertisingindia/mail/advertisingindia.net/directorcag/.spam/new/1726549927.M502665P6675.server.kxo.bgz.mybluehostin.me,S=988956,W=1002535 Oct 19 2024 02:55:44 server maldet(2501): {hit} malware hit {CAV}Win.Ransomware.Cryptojoker-10035834-0 found for /home/advertisingindia/mail/advertisingindia.net/directorcag/.spam/new/1725998746.M485414P29089.server.kxo.bgz.mybluehostin.me,S=929735,W=942513 Oct 19 2024 02:55:44 server maldet(2501): {hit} malware hit {CAV}Win.Packed.Msilzilla-10036417-0 found for /home/advertisingindia/mail/advertisingindia.net/directorcag/.spam/new/1727428304.M671285P30958.server.kxo.bgz.mybluehostin.me,S=704930,W=714629 Oct 19 2024 02:55:44 server maldet(2501): {hit} malware hit {CAV}Win.Packed.Malwarex-10036334-0 found for /home/advertisingindia/mail/advertisingindia.net/directorcag/.spam/new/1727265854.M950159P5624.server.kxo.bgz.mybluehostin.me,S=925882,W=938609 Oct 19 2024 02:55:44 server maldet(2501): {hit} malware hit {CAV}Win.Trojan.Generic-9907631-0 found for /home/advertisingindia/mail/advertisingindia.net/directorcag/.spam/new/1726165772.M514055P29722.server.kxo.bgz.mybluehostin.me,S=1026703,W=1040801 Oct 19 2024 02:55:44 server maldet(2501): {quar} fatal error handling '/home/advertisingindia/mail/advertisingindia.net/hrd/cur/1552469467.M838111P676514.bh-37.webhostbox.net,S=560753,W=568136' Oct 19 2024 02:55:45 server maldet(2501): {quar} fatal error handling '/home/advertisingindia/mail/advertisingindia.net/hrd/cur/1547089828.M824335P755930.bh-37.webhostbox.net,S=1166183,W=1181465' Oct 19 2024 02:55:45 server maldet(2501): {quar} fatal error handling '/home/advertisingindia/mail/advertisingindia.net/hrd/cur/1547786977.M410222P305377.bh-37.webhostbox.net,S=785960,W=796245' Oct 19 2024 02:55:45 server maldet(2501): {quar} fatal error handling '/home/advertisingindia/mail/advertisingindia.net/hrd/cur/1547337467.M913867P722257.bh-37.webhostbox.net,S=1103057,W=1117456' Oct 19 2024 02:55:45 server maldet(2501): {quar} fatal error handling '/home/advertisingindia/mail/advertisingindia.net/hrd/cur/1608531721.M229147P146953.bh-37.webhostbox.net,S=767839,W=777960' Oct 19 2024 02:55:45 server maldet(2501): {quar} fatal error handling '/home/advertisingindia/mail/advertisingindia.net/hrd/cur/1547091569.M578043P24182.bh-37.webhostbox.net,S=1161630,W=1176890' Oct 19 2024 02:55:45 server maldet(2501): {quar} fatal error handling '/home/advertisingindia/mail/advertisingindia.net/hrd/cur/1625694992.M860458P791255.bh-37.webhostbox.net,S=647312,W=655777' Oct 19 2024 02:55:45 server maldet(2501): {quar} fatal error handling '/home/advertisingindia/mail/advertisingindia.net/hrd/cur/1550216364.M586361P566134.bh-37.webhostbox.net,S=653617,W=662151' Oct 19 2024 02:55:45 server maldet(2501): {quar} fatal error handling '/home/advertisingindia/mail/advertisingindia.net/hrd/cur/1597338153.M815761P330631.bh-37.webhostbox.net,S=2223616,W=2252549' Oct 19 2024 02:55:45 server maldet(2501): {quar} fatal error handling '/home/advertisingindia/mail/advertisingindia.net/hrd/cur/1547607981.M111774P555039.bh-37.webhostbox.net,S=1080606,W=1094740' Oct 19 2024 02:55:45 server maldet(2501): {quar} fatal error handling '/home/advertisingindia/mail/advertisingindia.net/hrd/cur/1601859772.M411490P588792.bh-37.webhostbox.net,S=474265,W=480481' Oct 19 2024 02:55:45 server maldet(2501): {quar} fatal error handling '/home/advertisingindia/mail/advertisingindia.net/hrd/cur/1546993650.M218024P722110.bh-37.webhostbox.net,S=1139287,W=1154177' Oct 19 2024 02:55:45 server maldet(2501): {quar} fatal error handling '/home/advertisingindia/mail/advertisingindia.net/hrd/cur/1548110456.M924587P596736.bh-37.webhostbox.net,S=828502,W=839341' Oct 19 2024 02:55:45 server maldet(2501): {quar} fatal error handling '/home/advertisingindia/mail/advertisingindia.net/hrd/cur/1648139001.M37674P308807.bh-37.webhostbox.net,S=457920,W=464230' Oct 19 2024 02:55:45 server maldet(2501): {quar} fatal error handling '/home/advertisingindia/mail/advertisingindia.net/hrd/cur/1557314280.M91768P184279.bh-37.webhostbox.net,S=503471,W=510073' Oct 19 2024 02:55:45 server maldet(2501): {quar} fatal error handling '/home/advertisingindia/mail/advertisingindia.net/hrd/cur/1548645400.M632274P1037534.bh-37.webhostbox.net,S=732639,W=742200' Oct 19 2024 02:55:45 server maldet(2501): {quar} fatal error handling '/home/advertisingindia/mail/advertisingindia.net/hrd/cur/1556863936.M773657P226131.bh-37.webhostbox.net,S=621948,W=630103' Oct 19 2024 02:55:45 server maldet(2501): {quar} fatal error handling '/home/advertisingindia/mail/advertisingindia.net/hrd/cur/1546998645.M546105P397458.bh-37.webhostbox.net,S=1162218,W=1177453' Oct 19 2024 02:55:45 server maldet(2501): {quar} fatal error handling '/home/advertisingindia/mail/advertisingindia.net/hrd/cur/1603710719.M140648P446688.bh-37.webhostbox.net,S=594324,W=602156' Oct 19 2024 02:55:45 server maldet(2501): {quar} fatal error handling '/home/advertisingindia/mail/advertisingindia.net/hrd/cur/1546479516.M526485P792659.bh-37.webhostbox.net,S=558827,W=566143' Oct 19 2024 02:55:45 server maldet(2501): {quar} fatal error handling '/home/advertisingindia/mail/advertisingindia.net/hrd/cur/1560590736.M455387P35955.bh-37.webhostbox.net,S=371768,W=376686' Oct 19 2024 02:55:45 server maldet(2501): {quar} fatal error handling '/home/advertisingindia/mail/advertisingindia.net/hrd/cur/1562900034.M984142P19162.bh-37.webhostbox.net,S=470162,W=476354' Oct 19 2024 02:55:45 server maldet(2501): {quar} fatal error handling '/home/advertisingindia/mail/advertisingindia.net/hrd/cur/1546900815.M887535P286154.bh-37.webhostbox.net,S=1025166,W=1038571' Oct 19 2024 02:55:45 server maldet(2501): {quar} fatal error handling '/home/advertisingindia/mail/advertisingindia.net/info/cur/1661555999.M559484P75249.bh-37.webhostbox.net,S=582828,W=590847' Oct 19 2024 02:55:45 server maldet(2501): {quar} fatal error handling '/home/advertisingindia/mail/advertisingindia.net/info/cur/1668515686.M905460P27346.bh-37.webhostbox.net,S=765711,W=776226' Oct 19 2024 02:55:45 server maldet(2501): {quar} fatal error handling '/home/advertisingindia/mail/advertisingindia.net/info/cur/1663640661.M230210P1045554.bh-37.webhostbox.net,S=840517,W=852098' Oct 19 2024 02:55:45 server maldet(2501): {quar} fatal error handling '/home/advertisingindia/mail/advertisingindia.net/info/cur/1713163106.M822933P46932.bh-37.webhostbox.net,S=923495,W=936173' Oct 19 2024 02:55:45 server maldet(2501): {quar} fatal error handling '/home/advertisingindia/mail/advertisingindia.net/info/cur/1695304831.M561924P357730.bh-37.webhostbox.net,S=473088,W=479600' Oct 19 2024 02:55:46 server maldet(2501): {quar} fatal error handling '/home/advertisingindia/mail/advertisingindia.net/info/cur/1705493222.M216909P1022388.bh-37.webhostbox.net,S=796674,W=807665' Oct 19 2024 02:55:46 server maldet(2501): {quar} fatal error handling '/home/advertisingindia/mail/advertisingindia.net/info/cur/1689742602.M385592P667368.bh-37.webhostbox.net,S=838008,W=849516' Oct 19 2024 02:55:46 server maldet(2501): {quar} fatal error handling '/home/advertisingindia/mail/advertisingindia.net/info/cur/1707300849.M151999P849166.bh-37.webhostbox.net,S=899764,W=911516' Oct 19 2024 02:55:46 server maldet(2501): {quar} fatal error handling '/home/advertisingindia/mail/advertisingindia.net/info/cur/1717592781.M638966P703606.bh-37.webhostbox.net,S=887681,W=899887' Oct 19 2024 02:55:46 server maldet(2501): {quar} fatal error handling '/home/advertisingindia/mail/advertisingindia.net/info/cur/1683634063.M391487P370900.bh-37.webhostbox.net,S=940079,W=955519' Oct 19 2024 02:55:46 server maldet(2501): {quar} fatal error handling '/home/advertisingindia/mail/advertisingindia.net/info/cur/1696935369.M241785P832372.bh-37.webhostbox.net,S=738576,W=748726' Oct 19 2024 02:55:46 server maldet(2501): {quar} fatal error handling '/home/advertisingindia/mail/advertisingindia.net/info/cur/1663236193.M317156P541318.bh-37.webhostbox.net,S=985293,W=998824' Oct 19 2024 02:55:46 server maldet(2501): {quar} fatal error handling '/home/advertisingindia/mail/advertisingindia.net/info/cur/1721760314.M400983P787374.bh-37.webhostbox.net,S=972612,W=985969' Oct 19 2024 02:55:46 server maldet(2501): {quar} fatal error handling '/home/advertisingindia/mail/advertisingindia.net/info/cur/1709090319.M200553P415351.bh-37.webhostbox.net,S=886736,W=898920' Oct 19 2024 02:55:46 server maldet(2501): {quar} fatal error handling '/home/advertisingindia/mail/advertisingindia.net/info/cur/1710270388.M457726P653555.bh-37.webhostbox.net,S=198211,W=200965' Oct 19 2024 02:55:46 server maldet(2501): {quar} fatal error handling '/home/advertisingindia/mail/advertisingindia.net/info/cur/1664187879.M282986P772178.bh-37.webhostbox.net,S=2579610,W=2613160' Oct 19 2024 02:55:46 server maldet(2501): {quar} fatal error handling '/home/advertisingindia/mail/advertisingindia.net/info/cur/1683038131.M744879P872955.bh-37.webhostbox.net,S=28717,W=29146' Oct 19 2024 02:55:46 server maldet(2501): {quar} fatal error handling '/home/advertisingindia/mail/advertisingindia.net/info/cur/1663662076.M800383P614222.bh-37.webhostbox.net,S=504722,W=511666' Oct 19 2024 02:55:46 server maldet(2501): {quar} fatal error handling '/home/advertisingindia/mail/advertisingindia.net/info/cur/1689761678.M138057P151348.bh-37.webhostbox.net,S=131674,W=133508' Oct 19 2024 02:55:46 server maldet(2501): {quar} fatal error handling '/home/advertisingindia/mail/advertisingindia.net/info/cur/1665063163.M618806P737461.bh-37.webhostbox.net,S=1253315,W=1269664' Oct 19 2024 02:55:46 server maldet(2501): {quar} fatal error handling '/home/advertisingindia/mail/advertisingindia.net/info/cur/1665108968.M108510P791741.bh-37.webhostbox.net,S=3110375,W=3153024' Oct 19 2024 02:55:46 server maldet(2501): {quar} fatal error handling '/home/advertisingindia/mail/advertisingindia.net/info/cur/1720460543.M818057P536436.bh-37.webhostbox.net,S=2816098,W=2854700' Oct 19 2024 02:55:46 server maldet(2501): {quar} fatal error handling '/home/advertisingindia/mail/advertisingindia.net/info/cur/1668506277.M651422P815376.bh-37.webhostbox.net,S=873580,W=885596' Oct 19 2024 02:55:46 server maldet(2501): {quar} fatal error handling '/home/advertisingindia/mail/advertisingindia.net/info/cur/1705589008.M262413P674311.bh-37.webhostbox.net,S=796647,W=807638' Oct 19 2024 02:55:46 server maldet(2501): {quar} fatal error handling '/home/advertisingindia/mail/advertisingindia.net/info/cur/1711091076.M132916P625180.bh-37.webhostbox.net,S=1039981,W=1054275' Oct 19 2024 02:55:46 server maldet(2501): {quar} fatal error handling '/home/advertisingindia/mail/advertisingindia.net/info/cur/1672757331.M266319P634527.bh-37.webhostbox.net,S=50111,W=50817' Oct 19 2024 02:55:46 server maldet(2501): {quar} fatal error handling '/home/advertisingindia/mail/advertisingindia.net/info/cur/1710494942.M175752P13570.bh-37.webhostbox.net,S=798858,W=809829' Oct 19 2024 02:55:46 server maldet(2501): {quar} fatal error handling '/home/advertisingindia/mail/advertisingindia.net/info/cur/1692266836.M568166P1007019.bh-37.webhostbox.net,S=311873,W=316174' Oct 19 2024 02:55:46 server maldet(2501): {quar} fatal error handling '/home/advertisingindia/mail/advertisingindia.net/info/cur/1663752565.M367407P297306.bh-37.webhostbox.net,S=733588,W=743666' Oct 19 2024 02:55:46 server maldet(2501): {quar} fatal error handling '/home/advertisingindia/mail/advertisingindia.net/info/cur/1699615785.M574176P123135.bh-37.webhostbox.net,S=1081963,W=1096823' Oct 19 2024 02:55:46 server maldet(2501): {quar} fatal error handling '/home/advertisingindia/mail/advertisingindia.net/info/cur/1666217860.M650147P214816.bh-37.webhostbox.net,S=1165162,W=1181151' Oct 19 2024 02:55:46 server maldet(2501): {quar} fatal error handling '/home/advertisingindia/mail/advertisingindia.net/info/cur/1695345702.M151304P418572.bh-37.webhostbox.net,S=602723,W=611020' Oct 19 2024 02:55:47 server maldet(2501): {quar} fatal error handling '/home/advertisingindia/mail/advertisingindia.net/info/cur/1682022478.M205903P334264.bh-37.webhostbox.net,S=859640,W=871462' Oct 19 2024 02:55:47 server maldet(2501): {quar} fatal error handling '/home/advertisingindia/mail/advertisingindia.net/info/cur/1689704204.M952691P689182.bh-37.webhostbox.net,S=131674,W=133508' Oct 19 2024 02:55:47 server maldet(2501): {quar} fatal error handling '/home/advertisingindia/mail/advertisingindia.net/info/cur/1663581899.M771564P187958.bh-37.webhostbox.net,S=693581,W=703113' Oct 19 2024 02:55:47 server maldet(2501): {quar} fatal error handling '/home/advertisingindia/mail/advertisingindia.net/info/cur/1710228049.M509317P362230.bh-37.webhostbox.net,S=944276,W=957266' Oct 19 2024 02:55:47 server maldet(2501): {quar} fatal error handling '/home/advertisingindia/mail/advertisingindia.net/info/cur/1663137169.M803989P736336.bh-37.webhostbox.net,S=484318,W=490984' Oct 19 2024 02:55:47 server maldet(2501): {quar} fatal error handling '/home/advertisingindia/mail/advertisingindia.net/info/cur/1664978991.M28210P671205.bh-37.webhostbox.net,S=1887300,W=1913206' Oct 19 2024 02:55:47 server maldet(2501): {quar} fatal error handling '/home/advertisingindia/mail/advertisingindia.net/info/cur/1712315381.M672245P464.bh-37.webhostbox.net,S=288601,W=292595' Oct 19 2024 02:55:47 server maldet(2501): {quar} fatal error handling '/home/advertisingindia/mail/advertisingindia.net/info/cur/1705491676.M656794P983742.bh-37.webhostbox.net,S=796674,W=807665' Oct 19 2024 02:55:47 server maldet(2501): {quar} fatal error handling '/home/advertisingindia/mail/advertisingindia.net/info/cur/1717643761.M584874P129061.bh-37.webhostbox.net,S=1033041,W=1047231' Oct 19 2024 02:55:47 server maldet(2501): {quar} fatal error handling '/home/advertisingindia/mail/advertisingindia.net/info/cur/1663155783.M860149P191994.bh-37.webhostbox.net,S=800952,W=812034' Oct 19 2024 02:55:47 server maldet(2501): {quar} fatal error handling '/home/advertisingindia/mail/advertisingindia.net/info/cur/1669601257.M137040P814832.bh-37.webhostbox.net,S=37688,W=38283' Oct 19 2024 02:55:47 server maldet(2501): {hit} malware hit {CAV}Win.Ransomware.Cryptojoker-10035834-0 found for /home/advertisingindia/mail/advertisingindia.net/info/.spam/new/1725950369.M970083P13875.server.kxo.bgz.mybluehostin.me,S=931954,W=944757 Oct 19 2024 02:55:47 server maldet(2501): {hit} malware hit {CAV}Win.Packed.Crypterx-10036466-0 found for /home/advertisingindia/mail/advertisingindia.net/info/.spam/new/1727344170.M38366P9920.server.kxo.bgz.mybluehostin.me,S=958682,W=971856 Oct 19 2024 02:55:47 server maldet(2501): {hit} malware hit {CAV}Win.Packed.Msilzilla-10036417-0 found for /home/advertisingindia/mail/advertisingindia.net/info/.spam/new/1727442146.M633379P10218.server.kxo.bgz.mybluehostin.me,S=770535,W=781125 Oct 19 2024 02:55:47 server maldet(2501): {quar} fatal error handling '/home/advertisingindia/mail/advertisingindia.net/ceo/cur/1713163106.M969911P46932.bh-37.webhostbox.net,S=923489,W=936167' Oct 19 2024 02:55:47 server maldet(2501): {quar} fatal error handling '/home/advertisingindia/mail/advertisingindia.net/ceo/cur/1718844122.M914665P377824.bh-37.webhostbox.net,S=24672,W=25059' Oct 19 2024 02:55:47 server maldet(2501): {quar} fatal error handling '/home/advertisingindia/mail/advertisingindia.net/ceo/.spam/cur/1725995153.M147516P19088.server.kxo.bgz.mybluehostin.me,S=929695,W=942473' Oct 19 2024 02:55:48 server maldet(2501): {quar} fatal error handling '/home/advertisingindia/mail/advertisingindia.net/ceo/.spam/cur/1726160925.M175174P10000.server.kxo.bgz.mybluehostin.me,S=1026663,W=1040761' Oct 19 2024 02:55:48 server maldet(2501): {quar} fatal error handling '/home/advertisingindia/mail/advertisingindia.net/ceo/.spam/cur/1717621489.M386066P553779.bh-37.webhostbox.net,S=594091,W=603873' Oct 19 2024 02:55:48 server maldet(2501): {quar} fatal error handling '/home/advertisingindia/mail/advertisingindia.net/ceo/.spam/cur/1726546641.M707382P10035.server.kxo.bgz.mybluehostin.me,S=988916,W=1002495' Oct 19 2024 02:55:48 server maldet(2501): {quar} fatal error handling '/home/advertisingindia/mail/advertisingindia.net/ceo/.spam/cur/1727254801.M933311P20237.server.kxo.bgz.mybluehostin.me,S=925853,W=938580' Oct 19 2024 02:55:48 server maldet(2501): {quar} fatal error handling '/home/advertisingindia/mail/advertisingindia.net/ceo/.spam/cur/1718867944.M227174P875390.bh-37.webhostbox.net,S=27345,W=27829' Oct 19 2024 02:55:48 server maldet(2501): {quar} fatal error handling '/home/advertisingindia/mail/advertisingindia.net/ceo/.spam/cur/1727423890.M489745P15222.server.kxo.bgz.mybluehostin.me,S=704874,W=714573' Oct 19 2024 02:55:48 server maldet(2501): {quar} fatal error handling '/home/advertisingindia/mail/advertisingindia.net/ceo/.spam/cur/1726144160.M899871P5499.server.kxo.bgz.mybluehostin.me,S=1026412,W=1040504' Oct 19 2024 02:55:48 server maldet(2501): {quar} fatal error handling '/home/advertisingindia/mail/advertisingindia.net/ceo/.spam/cur/1727442145.M467187P10218.server.kxo.bgz.mybluehostin.me,S=770530,W=781120' Oct 19 2024 02:55:48 server maldet(2501): {hit} malware hit {HEX}php.nested.base64.652 found for /home/advertisingindia/public_html/wp-admin/js/wp/WIRhUPaC.php Oct 19 2024 02:55:48 server maldet(2501): {hit} malware hit {HEX}php.exe.globals.416 found for /home/advertisingindia/public_html/wp-includes/uwijit.php Oct 19 2024 02:55:48 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/advertisingindia/public_html/migsunmunchkin/wp-content/plugins/woocommerce/assets/client/admin/app/azHoSNzo.php Oct 19 2024 02:55:48 server maldet(2501): {hit} malware hit {HEX}php.nested.base64.652 found for /home/advertisingindia/public_html/classiccareer.in/.well-known/acme-challenge/CIYVRG.php Oct 19 2024 02:55:48 server maldet(2501): {hit} malware hit {HEX}php.malware.magento.599 found for /home/sksgi/tmp/awstats/awstats072024.sksgi.com.txt Oct 19 2024 02:55:48 server maldet(2501): {hit} malware hit {HEX}php.malware.magento.599 found for /home/sksgi/tmp/awstats/awstats062024.sksgi.com.txt Oct 19 2024 02:55:48 server maldet(2501): {hit} malware hit {HEX}php.malware.magento.599 found for /home/sksgi/tmp/awstats/awstats092024.sksgi.com.txt Oct 19 2024 02:55:48 server maldet(2501): {hit} malware hit {HEX}php.malware.magento.599 found for /home/sksgi/tmp/awstats/awstats082024.sksgi.com.txt Oct 19 2024 02:55:49 server maldet(2501): {hit} malware hit {HEX}php.malware.magento.599 found for /home/sksayurvedic/tmp/analog/cache Oct 19 2024 02:55:49 server maldet(2501): {hit} malware hit {HEX}php.malware.magento.599 found for /home/sksayurvedic/logs/sksayurvedic.com-Oct-2024.gz Oct 19 2024 02:55:49 server maldet(2501): {hit} malware hit {HEX}php.malware.magento.599 found for /home/sksayurvedic/logs/sksayurvedic.com-Aug-2024.gz Oct 19 2024 02:55:49 server maldet(2501): {hit} malware hit {HEX}php.base64.inject.182 found for /home/sksinternational/public_html/wp-lbackupwp.php Oct 19 2024 02:55:49 server maldet(2501): {hit} malware hit {HEX}php.base64.inject.182 found for /home/sksinternational/public_html/wp-content/themes/wp-backup-gqlv/includes/wp-plugin.php Oct 19 2024 02:55:49 server maldet(2501): {hit} malware hit {HEX}php.base64.inject.182 found for /home/sksinternational/public_html/wp-content/themes/wp-backup-hrdp/includes/wp-plugin.php Oct 19 2024 02:55:49 server maldet(2501): {hit} malware hit {HEX}php.base64.inject.182 found for /home/sksinternational/public_html/wp-content/themes/wp-backup-wlzx/includes/wp-plugin.php Oct 19 2024 02:55:49 server maldet(2501): {hit} malware hit {HEX}php.base64.inject.182 found for /home/sksinternational/public_html/wp-lbackupfz.php Oct 19 2024 02:55:49 server maldet(2501): {hit} malware hit {HEX}php.base64.inject.182 found for /home/sksinternational/public_html/wp-lbackupso.php Oct 19 2024 02:55:49 server maldet(2501): {hit} malware hit {HEX}php.base64.inject.182 found for /home/sksinternational/public_html/wp-lbackuppo.php Oct 19 2024 02:55:49 server maldet(2501): {hit} malware hit {HEX}php.malware.magento.599 found for /home/virtfs/bcetdgpac/home/bcetdgpac/tmp/awstats/ssl/awstats082024.bcetdgp.ac.in.txt Oct 19 2024 02:55:49 server maldet(2501): {hit} malware hit {HEX}php.malware.magento.599 found for /home/virtfs/bcetdgpac/home/bcetdgpac/tmp/awstats/awstats062024.bcetdgp.ac.in.txt Oct 19 2024 02:55:49 server maldet(2501): {hit} malware hit {HEX}php.malware.magento.596 found for /home/virtfs/bcetdgpac/home/bcetdgpac/tmp/awstats/awstats072024.bcetdgp.ac.in.txt Oct 19 2024 02:55:49 server maldet(2501): {hit} malware hit {HEX}php.malware.magento.599 found for /home/virtfs/bcetdgpac/home/bcetdgpac/tmp/awstats/awstats102024.bcetdgp.ac.in.txt Oct 19 2024 02:55:49 server maldet(2501): {hit} malware hit {HEX}php.malware.magento.599 found for /home/virtfs/bcetdgpac/home/bcetdgpac/tmp/awstats/awstats082024.bcetdgp.ac.in.txt Oct 19 2024 02:55:49 server maldet(2501): {hit} malware hit {HEX}php.malware.magento.599 found for /home/virtfs/bcetdgpac/home/bcetdgpac/logs/bcetdgp.ac.in-Oct-2024.gz Oct 19 2024 02:55:49 server maldet(2501): {hit} malware hit {HEX}php.cmdshell.cih.237 found for /home/virtfs/bcetdgpac/tmp/systemd-private-ad9fe6a090eb4cdc8f21fecc8c176416-ea-php82-php-fpm.service-d4UWjv/tmp/sess_87611f19dbe63f670e5490895dc17757 Oct 19 2024 02:55:49 server maldet(2501): {hit} malware hit {HEX}php.cmdshell.cih.237 found for /home/virtfs/bcetdgpac/var/tmp/systemd-private-ad9fe6a090eb4cdc8f21fecc8c176416-ea-php82-php-fpm.service-d4UWjv/tmp/sess_87611f19dbe63f670e5490895dc17757 Oct 19 2024 02:55:50 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/bcetdgpac/var/cpanel/php/sessions/ea-php80/_XequHWZTGmrA Oct 19 2024 02:55:50 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/bcetdgpac/var/cpanel/php/sessions/ea-php80/_BIeONBqOIpqr Oct 19 2024 02:55:50 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/bcetdgpac/var/cpanel/php/sessions/ea-php80/_FBohkXyghvNs Oct 19 2024 02:55:50 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/bcetdgpac/var/cpanel/php/sessions/ea-php80/_tTdNhAhUuQris Oct 19 2024 02:55:50 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/bcetdgpac/var/cpanel/php/sessions/ea-php80/_iZsyLDMSrDVO Oct 19 2024 02:55:50 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/bcetdgpac/var/cpanel/php/sessions/ea-php80/_VxazQWOPqwUEQ Oct 19 2024 02:55:50 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/bcetdgpac/var/cpanel/php/sessions/ea-php80/_sluqGEjWxmDTH Oct 19 2024 02:55:50 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/bcetdgpac/var/cpanel/php/sessions/ea-php80/_OPCqQzQDonwpi Oct 19 2024 02:55:50 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/bcetdgpac/var/cpanel/php/sessions/ea-php80/_hHnGmgehhxFfU Oct 19 2024 02:55:50 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/bcetdgpac/var/cpanel/php/sessions/ea-php80/_xOEomrvcyniF Oct 19 2024 02:55:50 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/bcetdgpac/var/cpanel/php/sessions/ea-php80/_lasufBDKfxxC Oct 19 2024 02:55:50 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/bcetdgpac/var/cpanel/php/sessions/ea-php80/_ICMXlYDDbDVjd Oct 19 2024 02:55:50 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/bcetdgpac/var/cpanel/php/sessions/ea-php80/_VqCXNOhqKwTE Oct 19 2024 02:55:50 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/bcetdgpac/var/cpanel/php/sessions/ea-php80/_XkbsQridNoCwJ Oct 19 2024 02:55:51 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/bcetdgpac/var/cpanel/php/sessions/ea-php80/_djTVcEoVvUkt Oct 19 2024 02:55:51 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/bcetdgpac/var/cpanel/php/sessions/ea-php80/_aauUqPwHwIhk Oct 19 2024 02:55:51 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/bcetdgpac/var/cpanel/php/sessions/ea-php80/_CCuDqHLFllGwX Oct 19 2024 02:55:51 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/bcetdgpac/var/cpanel/php/sessions/ea-php80/_rprFJZNZgBeW Oct 19 2024 02:55:51 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/bcetdgpac/var/cpanel/php/sessions/ea-php80/_lSpYSGvbDXGq Oct 19 2024 02:55:51 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/bcetdgpac/var/cpanel/php/sessions/ea-php80/_BHlunAHNPEKJl Oct 19 2024 02:55:51 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/bcetdgpac/var/cpanel/php/sessions/ea-php80/_IZJvzJtoURhg Oct 19 2024 02:55:51 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/bcetdgpac/var/cpanel/php/sessions/ea-php80/_zzMRfewSsdTy Oct 19 2024 02:55:51 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/bcetdgpac/var/cpanel/php/sessions/ea-php80/_rYqCOMIifvKc Oct 19 2024 02:55:51 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/bcetdgpac/var/cpanel/php/sessions/ea-php80/_WGJjmOMuSFGa Oct 19 2024 02:55:51 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/bcetdgpac/var/cpanel/php/sessions/ea-php80/_WfmXSzEtdPeD Oct 19 2024 02:55:51 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/bcetdgpac/var/cpanel/php/sessions/ea-php80/_DIEGXjriWGcj Oct 19 2024 02:55:51 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/bcetdgpac/var/cpanel/php/sessions/ea-php80/_gmaXTgcDfWKaq Oct 19 2024 02:55:51 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/bcetdgpac/var/cpanel/php/sessions/ea-php80/_wbbJHFuWSirJb Oct 19 2024 02:55:51 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/bcetdgpac/var/cpanel/php/sessions/ea-php80/_gtaSfCPfkVpTu Oct 19 2024 02:55:51 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/bcetdgpac/var/cpanel/php/sessions/ea-php80/_vWRWuRnqOhjNR Oct 19 2024 02:55:52 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/bcetdgpac/var/cpanel/php/sessions/ea-php80/_YzXIVApHjDvW Oct 19 2024 02:55:52 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/bcetdgpac/var/cpanel/php/sessions/ea-php80/_zVwOVyqEDRgdk Oct 19 2024 02:55:52 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/bcetdgpac/var/cpanel/php/sessions/ea-php80/_VgSzlqQmxenx Oct 19 2024 02:55:52 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/bcetdgpac/var/cpanel/php/sessions/ea-php80/_cyAmqfpiRbVMi Oct 19 2024 02:55:52 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/bcetdgpac/var/cpanel/php/sessions/ea-php80/_BigXZcrpHArkY Oct 19 2024 02:55:52 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/bcetdgpac/var/cpanel/php/sessions/ea-php80/_PrwOIIzfbaqXA Oct 19 2024 02:55:52 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/bcetdgpac/var/cpanel/php/sessions/ea-php80/_XQnXJWLvKiQs Oct 19 2024 02:55:52 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/bcetdgpac/var/cpanel/php/sessions/ea-php80/_potiGWdvKOdM Oct 19 2024 02:55:52 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/bcetdgpac/var/cpanel/php/sessions/ea-php80/_ZCfAuCuwCozF Oct 19 2024 02:55:52 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/bcetdgpac/var/cpanel/php/sessions/ea-php80/_dNxLugQWxTzgo Oct 19 2024 02:55:52 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/bcetdgpac/var/cpanel/php/sessions/ea-php80/_PxRUKBVwTdsTO Oct 19 2024 02:55:52 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/bcetdgpac/var/cpanel/php/sessions/ea-php80/_LBYJubKXzCtWS Oct 19 2024 02:55:52 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/bcetdgpac/var/cpanel/php/sessions/ea-php80/_WrMhdqCEuCcQI Oct 19 2024 02:55:52 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/bcetdgpac/var/cpanel/php/sessions/ea-php80/_NjLmNzunVOmL Oct 19 2024 02:55:52 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/bcetdgpac/var/cpanel/php/sessions/ea-php80/_FiveVZzlJrOmo Oct 19 2024 02:55:52 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/bcetdgpac/var/cpanel/php/sessions/ea-php80/_BUqbHIeWgOZPc Oct 19 2024 02:55:52 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/bcetdgpac/var/cpanel/php/sessions/ea-php80/_oehTzIlZAoBD Oct 19 2024 02:55:53 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/bcetdgpac/var/cpanel/php/sessions/ea-php80/_QqkagqroRcto Oct 19 2024 02:55:53 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/bcetdgpac/var/cpanel/php/sessions/ea-php80/_iexPgBmHCdxyF Oct 19 2024 02:55:53 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/bcetdgpac/var/cpanel/php/sessions/ea-php80/_KRhnRpLlmely Oct 19 2024 02:55:53 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/bcetdgpac/var/cpanel/php/sessions/ea-php80/_gzESwxWKVWYBP Oct 19 2024 02:55:53 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/bcetdgpac/var/cpanel/php/sessions/ea-php80/_yaOgwwGINnvw Oct 19 2024 02:55:53 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/bcetdgpac/var/cpanel/php/sessions/ea-php80/_kfpcJdbRJJtUn Oct 19 2024 02:55:53 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/bcetdgpac/var/cpanel/php/sessions/ea-php80/_pgJvOzGSLFuFi Oct 19 2024 02:55:53 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/bcetdgpac/var/cpanel/php/sessions/ea-php80/_NJkFUCBoQDxKr Oct 19 2024 02:55:53 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/bcetdgpac/var/cpanel/php/sessions/ea-php80/_pQPaDvptcCcjO Oct 19 2024 02:55:53 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/bcetdgpac/var/cpanel/php/sessions/ea-php80/_SXayYuctedvy Oct 19 2024 02:55:53 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/bcetdgpac/var/cpanel/php/sessions/ea-php80/_bAAhnFmVIaOmP Oct 19 2024 02:55:53 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/bcetdgpac/var/cpanel/php/sessions/ea-php80/_YcyAhIMdlGRm Oct 19 2024 02:55:53 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/bcetdgpac/var/cpanel/php/sessions/ea-php80/_thadFTGOsGgl Oct 19 2024 02:55:53 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/bcetdgpac/var/cpanel/php/sessions/ea-php80/_PmOUQOvxeHuu Oct 19 2024 02:55:53 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/bcetdgpac/var/cpanel/php/sessions/ea-php80/_IVVIlJGVOnbIN Oct 19 2024 02:55:53 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/bcetdgpac/var/cpanel/php/sessions/ea-php80/_oCLjVoKzUDidA Oct 19 2024 02:55:53 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/bcetdgpac/var/cpanel/php/sessions/ea-php80/_gDmKJThUBTKI Oct 19 2024 02:55:53 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/bcetdgpac/var/cpanel/php/sessions/ea-php80/_DGOphfyqhOYh Oct 19 2024 02:55:54 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/bcetdgpac/var/cpanel/php/sessions/ea-php80/_yItIIItJztdy Oct 19 2024 02:55:54 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/bcetdgpac/var/cpanel/php/sessions/ea-php80/_yHkLRWIKSIhk Oct 19 2024 02:55:54 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/bcetdgpac/var/cpanel/php/sessions/ea-php80/_jUpQHIDPFBVOt Oct 19 2024 02:55:54 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/bcetdgpac/var/cpanel/php/sessions/ea-php80/_MAdFcvznEYvES Oct 19 2024 02:55:54 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/bcetdgpac/var/cpanel/php/sessions/ea-php80/_JAqgFasKJpev Oct 19 2024 02:55:54 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/bcetdgpac/var/cpanel/php/sessions/ea-php80/_uBJjmCLFxPcs Oct 19 2024 02:55:54 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/bcetdgpac/var/cpanel/php/sessions/ea-php80/_NNIibLsVLUAj Oct 19 2024 02:55:54 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/bcetdgpac/var/cpanel/php/sessions/ea-php80/_CXguiBlItCeQU Oct 19 2024 02:55:54 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/bcetdgpac/var/cpanel/php/sessions/ea-php80/_lzaRpOWZxuGf Oct 19 2024 02:55:54 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/bcetdgpac/var/cpanel/php/sessions/ea-php80/_ecGKIkbEqCSKY Oct 19 2024 02:55:54 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/bcetdgpac/var/cpanel/php/sessions/ea-php80/_NQaZNfWVZKmW Oct 19 2024 02:55:54 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/bcetdgpac/var/cpanel/php/sessions/ea-php80/_sYIPMVlFidjmY Oct 19 2024 02:55:54 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/bcetdgpac/var/cpanel/php/sessions/ea-php80/_QCoxrTazQvje Oct 19 2024 02:55:54 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/bcetdgpac/var/cpanel/php/sessions/ea-php80/_PLBeonRgfeoXe Oct 19 2024 02:55:54 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/bcetdgpac/var/cpanel/php/sessions/ea-php80/_UOizCriwVqexI Oct 19 2024 02:55:55 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/bcetdgpac/var/cpanel/php/sessions/ea-php80/_riccZIYhfrCet Oct 19 2024 02:55:55 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/bcetdgpac/var/cpanel/php/sessions/ea-php80/_edgiuCSewVHlG Oct 19 2024 02:55:55 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/bcetdgpac/var/cpanel/php/sessions/ea-php80/_xVBGheBpUATKt Oct 19 2024 02:55:55 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/bcetdgpac/var/cpanel/php/sessions/ea-php80/_MwAVWJzOZqFF Oct 19 2024 02:55:55 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/bcetdgpac/var/cpanel/php/sessions/ea-php80/_IJbnHbMTYbeOr Oct 19 2024 02:55:55 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/bcetdgpac/var/cpanel/php/sessions/ea-php80/_CCoOIoIcNckWo Oct 19 2024 02:55:55 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/bcetdgpac/var/cpanel/php/sessions/ea-php80/_NSiRmLqzTCVT Oct 19 2024 02:55:55 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/bcetdgpac/var/cpanel/php/sessions/ea-php80/_MwccWklXshmf Oct 19 2024 02:55:55 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/bcetdgpac/var/cpanel/php/sessions/ea-php80/_mjWAKLLVIisW Oct 19 2024 02:55:55 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/bcetdgpac/var/cpanel/php/sessions/ea-php80/_ccuMwPGxAkqWz Oct 19 2024 02:55:55 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/bcetdgpac/var/cpanel/php/sessions/ea-php80/_mLuVENwgPJeqa Oct 19 2024 02:55:55 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/bcetdgpac/var/cpanel/php/sessions/ea-php80/_VjYipWSHBVYB Oct 19 2024 02:55:56 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/bcetdgpac/var/cpanel/php/sessions/ea-php80/_XNHuwWNTWBnPN Oct 19 2024 02:55:56 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/bcetdgpac/var/cpanel/php/sessions/ea-php80/_ZkkEoEKAvJxqv Oct 19 2024 02:55:56 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/bcetdgpac/var/cpanel/php/sessions/ea-php80/_rgfKkLWhzrWq Oct 19 2024 02:55:56 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/bcetdgpac/var/cpanel/php/sessions/ea-php80/_geslijQctFKL Oct 19 2024 02:55:56 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/bcetdgpac/var/cpanel/php/sessions/ea-php80/_oBIrrAlhFjGFI Oct 19 2024 02:55:56 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/bcetdgpac/var/cpanel/php/sessions/ea-php80/_dhKMSXQitSGz Oct 19 2024 02:55:56 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/bcetdgpac/var/cpanel/php/sessions/ea-php80/_JMzKxdlllBfr Oct 19 2024 02:55:56 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/bcetdgpac/var/cpanel/php/sessions/ea-php80/_tPfLnBkcvulYn Oct 19 2024 02:55:56 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/bcetdgpac/var/cpanel/php/sessions/ea-php80/_ZHQyttnBdBHk Oct 19 2024 02:55:56 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/bcetdgpac/var/cpanel/php/sessions/ea-php80/_tDlNEtUoHdNJr Oct 19 2024 02:55:56 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/bcetdgpac/var/cpanel/php/sessions/ea-php80/_vLuYzPopLLPW Oct 19 2024 02:55:56 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/bcetdgpac/var/cpanel/php/sessions/ea-php80/_cXjtDogyaHOX Oct 19 2024 02:55:56 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/bcetdgpac/var/cpanel/php/sessions/ea-php80/_DNrlJIFhjfme Oct 19 2024 02:55:56 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/bcetdgpac/var/cpanel/php/sessions/ea-php80/_SPZNdjvLoDbu Oct 19 2024 02:55:56 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/bcetdgpac/var/cpanel/php/sessions/ea-php80/_qQnSslVgQtQk Oct 19 2024 02:55:56 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/bcetdgpac/var/cpanel/php/sessions/ea-php80/_fBhEBaAGcklAz Oct 19 2024 02:55:57 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/bcetdgpac/var/cpanel/php/sessions/ea-php80/_xfHUIwfTtdIf Oct 19 2024 02:55:57 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/bcetdgpac/var/cpanel/php/sessions/ea-php80/_WepkesUFNdIK Oct 19 2024 02:55:57 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/bcetdgpac/var/cpanel/php/sessions/ea-php80/_RiVJqqXSgNmL Oct 19 2024 02:55:57 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/bcetdgpac/var/cpanel/php/sessions/ea-php80/_XFbvgTAyKulr Oct 19 2024 02:55:57 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/bcetdgpac/var/cpanel/php/sessions/ea-php80/_bXUVJXgPWwExH Oct 19 2024 02:55:57 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/bcetdgpac/var/cpanel/php/sessions/ea-php80/_MoLfeQMtKbDZ Oct 19 2024 02:55:57 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/bcetdgpac/var/cpanel/php/sessions/ea-php80/_QWpiVWoKbvDO Oct 19 2024 02:55:57 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/bcetdgpac/var/cpanel/php/sessions/ea-php80/_WrCPRfbnEtRSl Oct 19 2024 02:55:57 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/bcetdgpac/var/cpanel/php/sessions/ea-php80/_cqUzkXzdRhmY Oct 19 2024 02:55:57 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/bcetdgpac/var/cpanel/php/sessions/ea-php80/_NUQiwkuLQEBRo Oct 19 2024 02:55:57 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/bcetdgpac/var/cpanel/php/sessions/ea-php80/_gOUxsnrJcsaGQ Oct 19 2024 02:55:57 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/bcetdgpac/var/cpanel/php/sessions/ea-php80/_twsRtSXiYDjId Oct 19 2024 02:55:57 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/bcetdgpac/var/cpanel/php/sessions/ea-php80/_hpDTbtVvqMKtr Oct 19 2024 02:55:57 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/bcetdgpac/var/cpanel/php/sessions/ea-php80/_eezBRuwCJiNz Oct 19 2024 02:55:57 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/bcetdgpac/var/cpanel/php/sessions/ea-php80/_mLrwfKjncLpps Oct 19 2024 02:55:57 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/bcetdgpac/var/cpanel/php/sessions/ea-php80/_RPWVZeEHHgfwk Oct 19 2024 02:55:58 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/bcetdgpac/var/cpanel/php/sessions/ea-php80/_zdZMBiziGJxR Oct 19 2024 02:55:58 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/bcetdgpac/var/cpanel/php/sessions/ea-php80/_VhHVUqqITKwi Oct 19 2024 02:55:58 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/bcetdgpac/var/cpanel/php/sessions/ea-php80/_ojKBIXZehSHjQ Oct 19 2024 02:55:58 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/bcetdgpac/var/cpanel/php/sessions/ea-php80/_PBWMvJdhBgkR Oct 19 2024 02:55:58 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/bcetdgpac/var/cpanel/php/sessions/ea-php80/_PnjEpbazKeoS Oct 19 2024 02:55:58 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/bcetdgpac/var/cpanel/php/sessions/ea-php80/_GMpyPtZHUACrl Oct 19 2024 02:55:58 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/bcetdgpac/var/cpanel/php/sessions/ea-php80/_KrzmiwLKnviyV Oct 19 2024 02:55:58 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/bcetdgpac/var/cpanel/php/sessions/ea-php80/_QdyWWhZmDupVz Oct 19 2024 02:55:58 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/bcetdgpac/var/cpanel/php/sessions/ea-php80/_BmwrTfbXxrgf Oct 19 2024 02:55:58 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/bcetdgpac/var/cpanel/php/sessions/ea-php80/_qBQrJVVhJjhU Oct 19 2024 02:55:58 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/bcetdgpac/var/cpanel/php/sessions/ea-php80/_NRNpWykxrCJt Oct 19 2024 02:55:58 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/bcetdgpac/var/cpanel/php/sessions/ea-php80/_HIhpHhkaacFjZ Oct 19 2024 02:55:58 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/bcetdgpac/var/cpanel/php/sessions/ea-php80/_xHmLmWhRDIAf Oct 19 2024 02:55:58 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/bcetdgpac/var/cpanel/php/sessions/ea-php80/_vhLgyZVGSTVbI Oct 19 2024 02:55:58 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/bcetdgpac/var/cpanel/php/sessions/ea-php80/_NidDdPhLOXdf Oct 19 2024 02:55:58 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/bcetdgpac/var/cpanel/php/sessions/ea-php80/_PyptjPkMGjLWL Oct 19 2024 02:55:59 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/bcetdgpac/var/cpanel/php/sessions/ea-php80/_evsBbUeijjIS Oct 19 2024 02:55:59 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/bcetdgpac/var/cpanel/php/sessions/ea-php80/_HHzgOZNcEsmws Oct 19 2024 02:55:59 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/bcetdgpac/var/cpanel/php/sessions/ea-php80/_JlBuNLdvRQJBe Oct 19 2024 02:55:59 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/bcetdgpac/var/cpanel/php/sessions/ea-php80/_hWaAGjoWeVSTA Oct 19 2024 02:55:59 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/bcetdgpac/var/cpanel/php/sessions/ea-php80/_LPktySMHKWsO Oct 19 2024 02:55:59 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/bcetdgpac/var/cpanel/php/sessions/ea-php80/_simdxeqoPxIck Oct 19 2024 02:55:59 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/bcetdgpac/var/cpanel/php/sessions/ea-php80/_ZCzbiKKfFfJX Oct 19 2024 02:55:59 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/bcetdgpac/var/cpanel/php/sessions/ea-php80/_MbtPxJBGJmia Oct 19 2024 02:55:59 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/bcetdgpac/var/cpanel/php/sessions/ea-php80/_coELLgNxqunD Oct 19 2024 02:55:59 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/bcetdgpac/var/cpanel/php/sessions/ea-php80/_NHPiBUmoTVyp Oct 19 2024 02:55:59 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/bcetdgpac/var/cpanel/php/sessions/ea-php80/_PFzsvHmmBJrQ Oct 19 2024 02:55:59 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/bcetdgpac/var/cpanel/php/sessions/ea-php80/_DMZhYlMyZAWP Oct 19 2024 02:56:00 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/bcetdgpac/var/cpanel/php/sessions/ea-php80/_ceoqhhPhAdauM Oct 19 2024 02:56:00 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/bcetdgpac/var/cpanel/php/sessions/ea-php80/_LsZpqeQGGOIl Oct 19 2024 02:56:00 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/bcetdgpac/var/cpanel/php/sessions/ea-php80/_CZkhXPfRdSEh Oct 19 2024 02:56:00 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/bcetdgpac/var/cpanel/php/sessions/ea-php80/_UiIEdwAnesbys Oct 19 2024 02:56:00 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/bcetdgpac/var/cpanel/php/sessions/ea-php80/_FhwbDtcJraJI Oct 19 2024 02:56:00 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/bcetdgpac/var/cpanel/php/sessions/ea-php80/_jYrRqQioTBfJ Oct 19 2024 02:56:00 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/bcetdgpac/var/cpanel/php/sessions/ea-php80/_wZJLRmNGLMIfm Oct 19 2024 02:56:00 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/bcetdgpac/var/cpanel/php/sessions/ea-php80/_vUURiwqASJxN Oct 19 2024 02:56:00 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/bcetdgpac/var/cpanel/php/sessions/ea-php80/_mwUDjwGlbsQUO Oct 19 2024 02:56:00 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/bcetdgpac/var/cpanel/php/sessions/ea-php80/_BaMAqpXCjuqPV Oct 19 2024 02:56:00 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/bcetdgpac/var/cpanel/php/sessions/ea-php80/_iTcUcpAzUVZwr Oct 19 2024 02:56:00 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/bcetdgpac/var/cpanel/php/sessions/ea-php80/_EGTpUBJLCQAF Oct 19 2024 02:56:00 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/bcetdgpac/var/cpanel/php/sessions/ea-php80/_EaabIkEvbmyXV Oct 19 2024 02:56:00 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/bcetdgpac/var/cpanel/php/sessions/ea-php80/_srjaxAEbGpSdI Oct 19 2024 02:56:00 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/bcetdgpac/var/cpanel/php/sessions/ea-php80/_DLyyeBZRNnbLd Oct 19 2024 02:56:00 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/bcetdgpac/var/cpanel/php/sessions/ea-php80/_gIzWmIcpXxJp Oct 19 2024 02:56:01 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/bcetdgpac/var/cpanel/php/sessions/ea-php80/_pQCdOwYzCrRrQ Oct 19 2024 02:56:01 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/bcetdgpac/var/cpanel/php/sessions/ea-php80/_qMGRPFZEzBOrn Oct 19 2024 02:56:01 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/bcetdgpac/var/cpanel/php/sessions/ea-php80/_llrRWhaShXKvP Oct 19 2024 02:56:01 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/bcetdgpac/var/cpanel/php/sessions/ea-php80/_ZHFcKKqxTvJjz Oct 19 2024 02:56:01 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/bcetdgpac/var/cpanel/php/sessions/ea-php80/_SHqEVfuzyHvD Oct 19 2024 02:56:01 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/bcetdgpac/var/cpanel/php/sessions/ea-php80/_NYMQxozzoXGe Oct 19 2024 02:56:01 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/bcetdgpac/var/cpanel/php/sessions/ea-php80/_eZHylXhDJwTl Oct 19 2024 02:56:01 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/bcetdgpac/var/cpanel/php/sessions/ea-php80/_plQdXBMQIazF Oct 19 2024 02:56:01 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/bcetdgpac/var/cpanel/php/sessions/ea-php80/_bomQPAFHoPMDM Oct 19 2024 02:56:01 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/bcetdgpac/var/cpanel/php/sessions/ea-php80/_hObmvcrqoNxCU Oct 19 2024 02:56:01 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/bcetdgpac/var/cpanel/php/sessions/ea-php80/_fKIhqjIEknJii Oct 19 2024 02:56:01 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/bcetdgpac/var/cpanel/php/sessions/ea-php80/_qczIuGeEJyWuE Oct 19 2024 02:56:01 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/bcetdgpac/var/cpanel/php/sessions/ea-php80/_bSYHODxxDowXL Oct 19 2024 02:56:01 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/bcetdgpac/var/cpanel/php/sessions/ea-php80/_VJmSYrILPEFLv Oct 19 2024 02:56:01 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/bcetdgpac/var/cpanel/php/sessions/ea-php80/_yBCOizYLibHUb Oct 19 2024 02:56:01 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/bcetdgpac/var/cpanel/php/sessions/ea-php80/_wLunPWzQWPGRB Oct 19 2024 02:56:01 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/bcetdgpac/var/cpanel/php/sessions/ea-php80/_BERTzNXveqKJ Oct 19 2024 02:56:01 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/bcetdgpac/var/cpanel/php/sessions/ea-php80/_AFAFXRjgkRXo Oct 19 2024 02:56:02 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/bcetdgpac/var/cpanel/php/sessions/ea-php80/_kZgRMAlRwLdm Oct 19 2024 02:56:02 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/bcetdgpac/var/cpanel/php/sessions/ea-php80/_REqQkQlfTrUk Oct 19 2024 02:56:02 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/bcetdgpac/var/cpanel/php/sessions/ea-php80/_oMZPvEeANTdXq Oct 19 2024 02:56:02 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/bcetdgpac/var/cpanel/php/sessions/ea-php80/_HydbkNQkDVSvF Oct 19 2024 02:56:02 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/bcetdgpac/var/cpanel/php/sessions/ea-php80/_xfRnxLwwwHpAn Oct 19 2024 02:56:02 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/bcetdgpac/var/cpanel/php/sessions/ea-php80/_bBdsNsyjWcdag Oct 19 2024 02:56:02 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/bcetdgpac/var/cpanel/php/sessions/ea-php80/_LDQITspIiJKZ Oct 19 2024 02:56:02 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/bcetdgpac/var/cpanel/php/sessions/ea-php80/_fzOBTUZLifuC Oct 19 2024 02:56:02 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/bcetdgpac/var/cpanel/php/sessions/ea-php80/_ojUUxtoBMRXT Oct 19 2024 02:56:02 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/bcetdgpac/var/cpanel/php/sessions/ea-php80/_OXIIMlJaucij Oct 19 2024 02:56:02 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/bcetdgpac/var/cpanel/php/sessions/ea-php80/_RhTByZNIHnAX Oct 19 2024 02:56:02 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/bcetdgpac/var/cpanel/php/sessions/ea-php80/_JALzBPTFJLufi Oct 19 2024 02:56:03 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/bcetdgpac/var/cpanel/php/sessions/ea-php80/_KPTQTRUlYPuu Oct 19 2024 02:56:03 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/bcetdgpac/var/cpanel/php/sessions/ea-php80/_bAuRRAQZUqXC Oct 19 2024 02:56:03 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/bcetdgpac/var/cpanel/php/sessions/ea-php80/_dvoQxLeehlfF Oct 19 2024 02:56:03 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/bcetdgpac/var/cpanel/php/sessions/ea-php80/_TKrSyUtVSbZS Oct 19 2024 02:56:03 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/bcetdgpac/var/cpanel/php/sessions/ea-php80/_TlPKvFxDQyNBf Oct 19 2024 02:56:03 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/bcetdgpac/var/cpanel/php/sessions/ea-php80/_UoPQOOXeEeSNx Oct 19 2024 02:56:03 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/bcetdgpac/var/cpanel/php/sessions/ea-php80/_xEPXhWajqEHQ Oct 19 2024 02:56:03 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/bcetdgpac/var/cpanel/php/sessions/ea-php80/_twHEkDKdHiREC Oct 19 2024 02:56:03 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/bcetdgpac/var/cpanel/php/sessions/ea-php80/_HjCKLpDZHSgb Oct 19 2024 02:56:03 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/bcetdgpac/var/cpanel/php/sessions/ea-php80/_nGObDEfVRPAmT Oct 19 2024 02:56:03 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/bcetdgpac/var/cpanel/php/sessions/ea-php80/_UHhlVlWZTHFNA Oct 19 2024 02:56:03 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/bcetdgpac/var/cpanel/php/sessions/ea-php80/_AptFVjetaEZUR Oct 19 2024 02:56:03 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/bcetdgpac/var/cpanel/php/sessions/ea-php80/_MRoGcmZXljArt Oct 19 2024 02:56:03 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/bcetdgpac/var/cpanel/php/sessions/ea-php80/_VOPpWUDxDuQA Oct 19 2024 02:56:03 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/bcetdgpac/var/cpanel/php/sessions/ea-php80/_uxUavcetPdYeK Oct 19 2024 02:56:03 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/bcetdgpac/var/cpanel/php/sessions/ea-php80/_OecSbuPLSGMI Oct 19 2024 02:56:03 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/bcetdgpac/var/cpanel/php/sessions/ea-php80/_PgnBYiLgSqpo Oct 19 2024 02:56:03 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/bcetdgpac/var/cpanel/php/sessions/ea-php80/_SxUabNNvGDwP Oct 19 2024 02:56:04 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/bcetdgpac/var/cpanel/php/sessions/ea-php80/_zUTBRUMSwguv Oct 19 2024 02:56:04 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/bcetdgpac/var/cpanel/php/sessions/ea-php80/_iRXdPDHrlGqBi Oct 19 2024 02:56:04 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/bcetdgpac/var/cpanel/php/sessions/ea-php80/_XJFmFbfcPdVN Oct 19 2024 02:56:04 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/bcetdgpac/var/cpanel/php/sessions/ea-php80/_vNYhokbjVJvRQ Oct 19 2024 02:56:04 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/bcetdgpac/var/cpanel/php/sessions/ea-php80/_WAJQeSOJzXtnM Oct 19 2024 02:56:04 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/bcetdgpac/var/cpanel/php/sessions/ea-php80/_FBRJZicASlSJ Oct 19 2024 02:56:04 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/bcetdgpac/var/cpanel/php/sessions/ea-php80/_cWJfugezNabQD Oct 19 2024 02:56:04 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/bcetdgpac/var/cpanel/php/sessions/ea-php80/_nijwUQQjhshsj Oct 19 2024 02:56:04 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/bcetdgpac/var/cpanel/php/sessions/ea-php80/_CATiejbdIiSPb Oct 19 2024 02:56:04 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/bcetdgpac/var/cpanel/php/sessions/ea-php80/_JYLTRuknXzyf Oct 19 2024 02:56:04 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/bcetdgpac/var/cpanel/php/sessions/ea-php80/_BGcYXhrJUHji Oct 19 2024 02:56:04 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/bcetdgpac/var/cpanel/php/sessions/ea-php80/_jsUBibbZrUST Oct 19 2024 02:56:04 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/bcetdgpac/var/cpanel/php/sessions/ea-php80/_WZwJaSxOqgdR Oct 19 2024 02:56:04 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/bcetdgpac/var/cpanel/php/sessions/ea-php80/_dNrnodIYEQkbV Oct 19 2024 02:56:04 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/bcetdgpac/var/cpanel/php/sessions/ea-php80/_pRXSticXXqymq Oct 19 2024 02:56:04 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/bcetdgpac/var/cpanel/php/sessions/ea-php80/_RVctAcejlweWS Oct 19 2024 02:56:04 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/bcetdgpac/var/cpanel/php/sessions/ea-php80/_BOdkWdPBpWri Oct 19 2024 02:56:05 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/bcetdgpac/var/cpanel/php/sessions/ea-php80/_sFFLHDNzonYI Oct 19 2024 02:56:05 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/bcetdgpac/var/cpanel/php/sessions/ea-php80/_wumyEqHdssSP Oct 19 2024 02:56:05 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/bcetdgpac/var/cpanel/php/sessions/ea-php80/_maoQtyDpEADsF Oct 19 2024 02:56:05 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/bcetdgpac/var/cpanel/php/sessions/ea-php80/_oJafEhTvOzXUf Oct 19 2024 02:56:05 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/bcetdgpac/var/cpanel/php/sessions/ea-php80/_sSXQPnjpSRAtM Oct 19 2024 02:56:05 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/bcetdgpac/var/cpanel/php/sessions/ea-php80/_abgnOnfpEAfH Oct 19 2024 02:56:05 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/bcetdgpac/var/cpanel/php/sessions/ea-php80/_gRPACczRNmrw Oct 19 2024 02:56:05 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/bcetdgpac/var/cpanel/php/sessions/ea-php80/_vHTYWGMmtUYY Oct 19 2024 02:56:05 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/bcetdgpac/var/cpanel/php/sessions/ea-php80/_tfswnWTMuhKf Oct 19 2024 02:56:05 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/bcetdgpac/var/cpanel/php/sessions/ea-php80/_klgDxEWYAuXwj Oct 19 2024 02:56:05 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/bcetdgpac/var/cpanel/php/sessions/ea-php80/_YLhvRLYVTuwY Oct 19 2024 02:56:05 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/bcetdgpac/var/cpanel/php/sessions/ea-php80/_HiPQcXOFSqSN Oct 19 2024 02:56:05 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/bcetdgpac/var/cpanel/php/sessions/ea-php80/_IZpIAwOjjTBk Oct 19 2024 02:56:05 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/bcetdgpac/var/cpanel/php/sessions/ea-php80/_FiyBagmDRmGLP Oct 19 2024 02:56:06 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/bcetdgpac/var/cpanel/php/sessions/ea-php80/_PqndoWnSycal Oct 19 2024 02:56:06 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/bcetdgpac/var/cpanel/php/sessions/ea-php80/_IzPFvKQWAYWIe Oct 19 2024 02:56:06 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/bcetdgpac/var/cpanel/php/sessions/ea-php80/_jfaXNncIcdnUn Oct 19 2024 02:56:06 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/bcetdgpac/var/cpanel/php/sessions/ea-php80/_ELrZajldBDAC Oct 19 2024 02:56:06 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/bcetdgpac/var/cpanel/php/sessions/ea-php80/_tEPYmqQpawcT Oct 19 2024 02:56:06 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/bcetdgpac/var/cpanel/php/sessions/ea-php80/_YvQDjxvkDTjt Oct 19 2024 02:56:06 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/bcetdgpac/var/cpanel/php/sessions/ea-php80/_xamNLlEKirDi Oct 19 2024 02:56:06 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/bcetdgpac/var/cpanel/php/sessions/ea-php80/_YborgjzwkCbj Oct 19 2024 02:56:06 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/bcetdgpac/var/cpanel/php/sessions/ea-php80/_crixXOcQoUwzD Oct 19 2024 02:56:06 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/bcetdgpac/var/cpanel/php/sessions/ea-php80/_ItJpNznSeIgnS Oct 19 2024 02:56:06 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/bcetdgpac/var/cpanel/php/sessions/ea-php80/_AJAxcVcqnchC Oct 19 2024 02:56:06 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/bcetdgpac/var/cpanel/php/sessions/ea-php80/_QAPdoscymOKp Oct 19 2024 02:56:06 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/bcetdgpac/var/cpanel/php/sessions/ea-php80/_EafTUcHYggvM Oct 19 2024 02:56:06 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/bcetdgpac/var/cpanel/php/sessions/ea-php80/_YRxCQyZyeFMhv Oct 19 2024 02:56:06 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/bcetdgpac/var/cpanel/php/sessions/ea-php80/_OfvEPGtNMDbau Oct 19 2024 02:56:06 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/bcetdgpac/var/cpanel/php/sessions/ea-php80/_bKEKKYJnvdLAJ Oct 19 2024 02:56:07 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/bcetdgpac/var/cpanel/php/sessions/ea-php80/_yijBWRnzezhS Oct 19 2024 02:56:07 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/bcetdgpac/var/cpanel/php/sessions/ea-php80/_LytOPvdwseBA Oct 19 2024 02:56:07 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/bcetdgpac/var/cpanel/php/sessions/ea-php80/_ALvAObVWkEGzh Oct 19 2024 02:56:07 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/bcetdgpac/var/cpanel/php/sessions/ea-php80/_bJJejrRgRjIg Oct 19 2024 02:56:07 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/bcetdgpac/var/cpanel/php/sessions/ea-php80/_uIVMLFqSAIKm Oct 19 2024 02:56:07 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/bcetdgpac/var/cpanel/php/sessions/ea-php80/_GKgSUHNjUePIS Oct 19 2024 02:56:07 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/bcetdgpac/var/cpanel/php/sessions/ea-php80/_hlRbiwaIzElw Oct 19 2024 02:56:07 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/bcetdgpac/var/cpanel/php/sessions/ea-php80/_ZXsgatyVilZH Oct 19 2024 02:56:07 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/bcetdgpac/var/cpanel/php/sessions/ea-php80/_UavVzvHMfyEDu Oct 19 2024 02:56:07 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/bcetdgpac/var/cpanel/php/sessions/ea-php80/_LQkbSXQezxpq Oct 19 2024 02:56:07 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/bcetdgpac/var/cpanel/php/sessions/ea-php80/_tSiNGCraqWVg Oct 19 2024 02:56:07 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/bcetdgpac/var/cpanel/php/sessions/ea-php80/_bBTwsHrycYjk Oct 19 2024 02:56:07 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/bcetdgpac/var/cpanel/php/sessions/ea-php80/_lWfbLnjzGCIZ Oct 19 2024 02:56:07 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/bcetdgpac/var/cpanel/php/sessions/ea-php80/_VAjArQDQDRGp Oct 19 2024 02:56:07 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/bcetdgpac/var/cpanel/php/sessions/ea-php80/_gYtaVEbuTQluc Oct 19 2024 02:56:07 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/bcetdgpac/var/cpanel/php/sessions/ea-php80/_xwhzpFZpSJRtw Oct 19 2024 02:56:07 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/bcetdgpac/var/cpanel/php/sessions/ea-php80/_WxhvzTDdbzjh Oct 19 2024 02:56:08 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/bcetdgpac/var/cpanel/php/sessions/ea-php80/_xOeVuktNcUiPq Oct 19 2024 02:56:08 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/bcetdgpac/var/cpanel/php/sessions/ea-php80/_tgtHVpFFLaKR Oct 19 2024 02:56:08 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/bcetdgpac/var/cpanel/php/sessions/ea-php80/_pyXFtSYGUUOt Oct 19 2024 02:56:08 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/bcetdgpac/var/cpanel/php/sessions/ea-php80/_XdJmaiwIksqbJ Oct 19 2024 02:56:08 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/bcetdgpac/var/cpanel/php/sessions/ea-php80/_PAjgRopZyBIlG Oct 19 2024 02:56:08 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/bcetdgpac/var/cpanel/php/sessions/ea-php80/_fgynNtAAeaDNw Oct 19 2024 02:56:08 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/bcetdgpac/var/cpanel/php/sessions/ea-php80/_ULXzHANHiTHM Oct 19 2024 02:56:08 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/bcetdgpac/var/cpanel/php/sessions/ea-php80/_ZQnQUwmoCDoeP Oct 19 2024 02:56:08 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/bcetdgpac/var/cpanel/php/sessions/ea-php80/_cnqEvGUAycJD Oct 19 2024 02:56:08 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/bcetdgpac/var/cpanel/php/sessions/ea-php80/_TccOwHUSUAOs Oct 19 2024 02:56:08 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/bcetdgpac/var/cpanel/php/sessions/ea-php80/_vOKUfBvCaqjW Oct 19 2024 02:56:08 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/bcetdgpac/var/cpanel/php/sessions/ea-php80/_RpavDHnnkQPC Oct 19 2024 02:56:08 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/bcetdgpac/var/cpanel/php/sessions/ea-php80/_ApuiXtUrXuKpz Oct 19 2024 02:56:08 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/bcetdgpac/var/cpanel/php/sessions/ea-php80/_pkTEUCmUAgjl Oct 19 2024 02:56:08 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/bcetdgpac/var/cpanel/php/sessions/ea-php80/_WjnUrOyLQGZmf Oct 19 2024 02:56:08 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/bcetdgpac/var/cpanel/php/sessions/ea-php80/_OpXdAJbguJXB Oct 19 2024 02:56:08 server maldet(2501): {hit} malware hit {HEX}php.malware.magento.599 found for /home/virtfs/sksayurvedic/home/sksayurvedic/tmp/analog/cache Oct 19 2024 02:56:08 server maldet(2501): {hit} malware hit {HEX}php.malware.magento.599 found for /home/virtfs/sksayurvedic/home/sksayurvedic/logs/sksayurvedic.com-Oct-2024.gz Oct 19 2024 02:56:08 server maldet(2501): {hit} malware hit {HEX}php.malware.magento.599 found for /home/virtfs/sksayurvedic/home/sksayurvedic/logs/sksayurvedic.com-Aug-2024.gz Oct 19 2024 02:56:09 server maldet(2501): {hit} malware hit {HEX}php.cmdshell.cih.237 found for /home/virtfs/sksayurvedic/tmp/systemd-private-ad9fe6a090eb4cdc8f21fecc8c176416-ea-php82-php-fpm.service-d4UWjv/tmp/sess_87611f19dbe63f670e5490895dc17757 Oct 19 2024 02:56:09 server maldet(2501): {hit} malware hit {HEX}php.cmdshell.cih.237 found for /home/virtfs/sksayurvedic/var/tmp/systemd-private-ad9fe6a090eb4cdc8f21fecc8c176416-ea-php82-php-fpm.service-d4UWjv/tmp/sess_87611f19dbe63f670e5490895dc17757 Oct 19 2024 02:56:09 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/sksayurvedic/var/cpanel/php/sessions/ea-php80/_XequHWZTGmrA Oct 19 2024 02:56:09 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/sksayurvedic/var/cpanel/php/sessions/ea-php80/_BIeONBqOIpqr Oct 19 2024 02:56:09 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/sksayurvedic/var/cpanel/php/sessions/ea-php80/_FBohkXyghvNs Oct 19 2024 02:56:09 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/sksayurvedic/var/cpanel/php/sessions/ea-php80/_tTdNhAhUuQris Oct 19 2024 02:56:09 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/sksayurvedic/var/cpanel/php/sessions/ea-php80/_iZsyLDMSrDVO Oct 19 2024 02:56:09 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/sksayurvedic/var/cpanel/php/sessions/ea-php80/_VxazQWOPqwUEQ Oct 19 2024 02:56:09 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/sksayurvedic/var/cpanel/php/sessions/ea-php80/_sluqGEjWxmDTH Oct 19 2024 02:56:09 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/sksayurvedic/var/cpanel/php/sessions/ea-php80/_OPCqQzQDonwpi Oct 19 2024 02:56:09 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/sksayurvedic/var/cpanel/php/sessions/ea-php80/_hHnGmgehhxFfU Oct 19 2024 02:56:09 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/sksayurvedic/var/cpanel/php/sessions/ea-php80/_xOEomrvcyniF Oct 19 2024 02:56:09 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/sksayurvedic/var/cpanel/php/sessions/ea-php80/_lasufBDKfxxC Oct 19 2024 02:56:09 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/sksayurvedic/var/cpanel/php/sessions/ea-php80/_ICMXlYDDbDVjd Oct 19 2024 02:56:09 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/sksayurvedic/var/cpanel/php/sessions/ea-php80/_VqCXNOhqKwTE Oct 19 2024 02:56:09 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/sksayurvedic/var/cpanel/php/sessions/ea-php80/_XkbsQridNoCwJ Oct 19 2024 02:56:09 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/sksayurvedic/var/cpanel/php/sessions/ea-php80/_djTVcEoVvUkt Oct 19 2024 02:56:10 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/sksayurvedic/var/cpanel/php/sessions/ea-php80/_aauUqPwHwIhk Oct 19 2024 02:56:10 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/sksayurvedic/var/cpanel/php/sessions/ea-php80/_CCuDqHLFllGwX Oct 19 2024 02:56:10 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/sksayurvedic/var/cpanel/php/sessions/ea-php80/_rprFJZNZgBeW Oct 19 2024 02:56:10 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/sksayurvedic/var/cpanel/php/sessions/ea-php80/_lSpYSGvbDXGq Oct 19 2024 02:56:10 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/sksayurvedic/var/cpanel/php/sessions/ea-php80/_BHlunAHNPEKJl Oct 19 2024 02:56:10 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/sksayurvedic/var/cpanel/php/sessions/ea-php80/_IZJvzJtoURhg Oct 19 2024 02:56:10 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/sksayurvedic/var/cpanel/php/sessions/ea-php80/_zzMRfewSsdTy Oct 19 2024 02:56:10 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/sksayurvedic/var/cpanel/php/sessions/ea-php80/_rYqCOMIifvKc Oct 19 2024 02:56:10 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/sksayurvedic/var/cpanel/php/sessions/ea-php80/_WGJjmOMuSFGa Oct 19 2024 02:56:10 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/sksayurvedic/var/cpanel/php/sessions/ea-php80/_WfmXSzEtdPeD Oct 19 2024 02:56:10 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/sksayurvedic/var/cpanel/php/sessions/ea-php80/_DIEGXjriWGcj Oct 19 2024 02:56:10 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/sksayurvedic/var/cpanel/php/sessions/ea-php80/_gmaXTgcDfWKaq Oct 19 2024 02:56:10 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/sksayurvedic/var/cpanel/php/sessions/ea-php80/_wbbJHFuWSirJb Oct 19 2024 02:56:10 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/sksayurvedic/var/cpanel/php/sessions/ea-php80/_gtaSfCPfkVpTu Oct 19 2024 02:56:10 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/sksayurvedic/var/cpanel/php/sessions/ea-php80/_vWRWuRnqOhjNR Oct 19 2024 02:56:10 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/sksayurvedic/var/cpanel/php/sessions/ea-php80/_YzXIVApHjDvW Oct 19 2024 02:56:10 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/sksayurvedic/var/cpanel/php/sessions/ea-php80/_zVwOVyqEDRgdk Oct 19 2024 02:56:11 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/sksayurvedic/var/cpanel/php/sessions/ea-php80/_VgSzlqQmxenx Oct 19 2024 02:56:11 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/sksayurvedic/var/cpanel/php/sessions/ea-php80/_cyAmqfpiRbVMi Oct 19 2024 02:56:11 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/sksayurvedic/var/cpanel/php/sessions/ea-php80/_BigXZcrpHArkY Oct 19 2024 02:56:11 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/sksayurvedic/var/cpanel/php/sessions/ea-php80/_PrwOIIzfbaqXA Oct 19 2024 02:56:11 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/sksayurvedic/var/cpanel/php/sessions/ea-php80/_XQnXJWLvKiQs Oct 19 2024 02:56:11 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/sksayurvedic/var/cpanel/php/sessions/ea-php80/_potiGWdvKOdM Oct 19 2024 02:56:11 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/sksayurvedic/var/cpanel/php/sessions/ea-php80/_ZCfAuCuwCozF Oct 19 2024 02:56:11 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/sksayurvedic/var/cpanel/php/sessions/ea-php80/_dNxLugQWxTzgo Oct 19 2024 02:56:11 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/sksayurvedic/var/cpanel/php/sessions/ea-php80/_PxRUKBVwTdsTO Oct 19 2024 02:56:11 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/sksayurvedic/var/cpanel/php/sessions/ea-php80/_LBYJubKXzCtWS Oct 19 2024 02:56:11 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/sksayurvedic/var/cpanel/php/sessions/ea-php80/_WrMhdqCEuCcQI Oct 19 2024 02:56:11 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/sksayurvedic/var/cpanel/php/sessions/ea-php80/_NjLmNzunVOmL Oct 19 2024 02:56:11 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/sksayurvedic/var/cpanel/php/sessions/ea-php80/_FiveVZzlJrOmo Oct 19 2024 02:56:11 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/sksayurvedic/var/cpanel/php/sessions/ea-php80/_BUqbHIeWgOZPc Oct 19 2024 02:56:11 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/sksayurvedic/var/cpanel/php/sessions/ea-php80/_oehTzIlZAoBD Oct 19 2024 02:56:11 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/sksayurvedic/var/cpanel/php/sessions/ea-php80/_QqkagqroRcto Oct 19 2024 02:56:11 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/sksayurvedic/var/cpanel/php/sessions/ea-php80/_iexPgBmHCdxyF Oct 19 2024 02:56:12 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/sksayurvedic/var/cpanel/php/sessions/ea-php80/_KRhnRpLlmely Oct 19 2024 02:56:12 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/sksayurvedic/var/cpanel/php/sessions/ea-php80/_gzESwxWKVWYBP Oct 19 2024 02:56:12 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/sksayurvedic/var/cpanel/php/sessions/ea-php80/_yaOgwwGINnvw Oct 19 2024 02:56:12 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/sksayurvedic/var/cpanel/php/sessions/ea-php80/_kfpcJdbRJJtUn Oct 19 2024 02:56:12 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/sksayurvedic/var/cpanel/php/sessions/ea-php80/_pgJvOzGSLFuFi Oct 19 2024 02:56:12 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/sksayurvedic/var/cpanel/php/sessions/ea-php80/_NJkFUCBoQDxKr Oct 19 2024 02:56:12 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/sksayurvedic/var/cpanel/php/sessions/ea-php80/_pQPaDvptcCcjO Oct 19 2024 02:56:12 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/sksayurvedic/var/cpanel/php/sessions/ea-php80/_SXayYuctedvy Oct 19 2024 02:56:12 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/sksayurvedic/var/cpanel/php/sessions/ea-php80/_bAAhnFmVIaOmP Oct 19 2024 02:56:12 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/sksayurvedic/var/cpanel/php/sessions/ea-php80/_YcyAhIMdlGRm Oct 19 2024 02:56:12 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/sksayurvedic/var/cpanel/php/sessions/ea-php80/_thadFTGOsGgl Oct 19 2024 02:56:12 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/sksayurvedic/var/cpanel/php/sessions/ea-php80/_PmOUQOvxeHuu Oct 19 2024 02:56:12 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/sksayurvedic/var/cpanel/php/sessions/ea-php80/_IVVIlJGVOnbIN Oct 19 2024 02:56:12 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/sksayurvedic/var/cpanel/php/sessions/ea-php80/_oCLjVoKzUDidA Oct 19 2024 02:56:12 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/sksayurvedic/var/cpanel/php/sessions/ea-php80/_gDmKJThUBTKI Oct 19 2024 02:56:12 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/sksayurvedic/var/cpanel/php/sessions/ea-php80/_DGOphfyqhOYh Oct 19 2024 02:56:13 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/sksayurvedic/var/cpanel/php/sessions/ea-php80/_yItIIItJztdy Oct 19 2024 02:56:13 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/sksayurvedic/var/cpanel/php/sessions/ea-php80/_yHkLRWIKSIhk Oct 19 2024 02:56:13 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/sksayurvedic/var/cpanel/php/sessions/ea-php80/_jUpQHIDPFBVOt Oct 19 2024 02:56:13 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/sksayurvedic/var/cpanel/php/sessions/ea-php80/_MAdFcvznEYvES Oct 19 2024 02:56:13 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/sksayurvedic/var/cpanel/php/sessions/ea-php80/_JAqgFasKJpev Oct 19 2024 02:56:13 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/sksayurvedic/var/cpanel/php/sessions/ea-php80/_uBJjmCLFxPcs Oct 19 2024 02:56:13 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/sksayurvedic/var/cpanel/php/sessions/ea-php80/_NNIibLsVLUAj Oct 19 2024 02:56:13 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/sksayurvedic/var/cpanel/php/sessions/ea-php80/_CXguiBlItCeQU Oct 19 2024 02:56:13 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/sksayurvedic/var/cpanel/php/sessions/ea-php80/_lzaRpOWZxuGf Oct 19 2024 02:56:13 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/sksayurvedic/var/cpanel/php/sessions/ea-php80/_ecGKIkbEqCSKY Oct 19 2024 02:56:13 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/sksayurvedic/var/cpanel/php/sessions/ea-php80/_NQaZNfWVZKmW Oct 19 2024 02:56:13 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/sksayurvedic/var/cpanel/php/sessions/ea-php80/_sYIPMVlFidjmY Oct 19 2024 02:56:13 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/sksayurvedic/var/cpanel/php/sessions/ea-php80/_QCoxrTazQvje Oct 19 2024 02:56:14 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/sksayurvedic/var/cpanel/php/sessions/ea-php80/_PLBeonRgfeoXe Oct 19 2024 02:56:14 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/sksayurvedic/var/cpanel/php/sessions/ea-php80/_UOizCriwVqexI Oct 19 2024 02:56:14 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/sksayurvedic/var/cpanel/php/sessions/ea-php80/_riccZIYhfrCet Oct 19 2024 02:56:14 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/sksayurvedic/var/cpanel/php/sessions/ea-php80/_edgiuCSewVHlG Oct 19 2024 02:56:14 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/sksayurvedic/var/cpanel/php/sessions/ea-php80/_xVBGheBpUATKt Oct 19 2024 02:56:14 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/sksayurvedic/var/cpanel/php/sessions/ea-php80/_MwAVWJzOZqFF Oct 19 2024 02:56:14 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/sksayurvedic/var/cpanel/php/sessions/ea-php80/_IJbnHbMTYbeOr Oct 19 2024 02:56:14 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/sksayurvedic/var/cpanel/php/sessions/ea-php80/_CCoOIoIcNckWo Oct 19 2024 02:56:14 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/sksayurvedic/var/cpanel/php/sessions/ea-php80/_NSiRmLqzTCVT Oct 19 2024 02:56:14 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/sksayurvedic/var/cpanel/php/sessions/ea-php80/_MwccWklXshmf Oct 19 2024 02:56:14 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/sksayurvedic/var/cpanel/php/sessions/ea-php80/_mjWAKLLVIisW Oct 19 2024 02:56:14 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/sksayurvedic/var/cpanel/php/sessions/ea-php80/_ccuMwPGxAkqWz Oct 19 2024 02:56:14 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/sksayurvedic/var/cpanel/php/sessions/ea-php80/_mLuVENwgPJeqa Oct 19 2024 02:56:14 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/sksayurvedic/var/cpanel/php/sessions/ea-php80/_VjYipWSHBVYB Oct 19 2024 02:56:14 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/sksayurvedic/var/cpanel/php/sessions/ea-php80/_XNHuwWNTWBnPN Oct 19 2024 02:56:14 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/sksayurvedic/var/cpanel/php/sessions/ea-php80/_ZkkEoEKAvJxqv Oct 19 2024 02:56:14 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/sksayurvedic/var/cpanel/php/sessions/ea-php80/_rgfKkLWhzrWq Oct 19 2024 02:56:14 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/sksayurvedic/var/cpanel/php/sessions/ea-php80/_geslijQctFKL Oct 19 2024 02:56:15 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/sksayurvedic/var/cpanel/php/sessions/ea-php80/_oBIrrAlhFjGFI Oct 19 2024 02:56:15 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/sksayurvedic/var/cpanel/php/sessions/ea-php80/_dhKMSXQitSGz Oct 19 2024 02:56:15 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/sksayurvedic/var/cpanel/php/sessions/ea-php80/_JMzKxdlllBfr Oct 19 2024 02:56:15 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/sksayurvedic/var/cpanel/php/sessions/ea-php80/_tPfLnBkcvulYn Oct 19 2024 02:56:15 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/sksayurvedic/var/cpanel/php/sessions/ea-php80/_ZHQyttnBdBHk Oct 19 2024 02:56:15 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/sksayurvedic/var/cpanel/php/sessions/ea-php80/_tDlNEtUoHdNJr Oct 19 2024 02:56:15 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/sksayurvedic/var/cpanel/php/sessions/ea-php80/_vLuYzPopLLPW Oct 19 2024 02:56:15 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/sksayurvedic/var/cpanel/php/sessions/ea-php80/_cXjtDogyaHOX Oct 19 2024 02:56:15 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/sksayurvedic/var/cpanel/php/sessions/ea-php80/_DNrlJIFhjfme Oct 19 2024 02:56:15 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/sksayurvedic/var/cpanel/php/sessions/ea-php80/_SPZNdjvLoDbu Oct 19 2024 02:56:15 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/sksayurvedic/var/cpanel/php/sessions/ea-php80/_qQnSslVgQtQk Oct 19 2024 02:56:15 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/sksayurvedic/var/cpanel/php/sessions/ea-php80/_fBhEBaAGcklAz Oct 19 2024 02:56:15 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/sksayurvedic/var/cpanel/php/sessions/ea-php80/_xfHUIwfTtdIf Oct 19 2024 02:56:15 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/sksayurvedic/var/cpanel/php/sessions/ea-php80/_WepkesUFNdIK Oct 19 2024 02:56:15 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/sksayurvedic/var/cpanel/php/sessions/ea-php80/_RiVJqqXSgNmL Oct 19 2024 02:56:15 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/sksayurvedic/var/cpanel/php/sessions/ea-php80/_XFbvgTAyKulr Oct 19 2024 02:56:15 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/sksayurvedic/var/cpanel/php/sessions/ea-php80/_bXUVJXgPWwExH Oct 19 2024 02:56:15 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/sksayurvedic/var/cpanel/php/sessions/ea-php80/_MoLfeQMtKbDZ Oct 19 2024 02:56:15 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/sksayurvedic/var/cpanel/php/sessions/ea-php80/_QWpiVWoKbvDO Oct 19 2024 02:56:16 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/sksayurvedic/var/cpanel/php/sessions/ea-php80/_WrCPRfbnEtRSl Oct 19 2024 02:56:16 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/sksayurvedic/var/cpanel/php/sessions/ea-php80/_cqUzkXzdRhmY Oct 19 2024 02:56:16 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/sksayurvedic/var/cpanel/php/sessions/ea-php80/_NUQiwkuLQEBRo Oct 19 2024 02:56:16 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/sksayurvedic/var/cpanel/php/sessions/ea-php80/_gOUxsnrJcsaGQ Oct 19 2024 02:56:16 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/sksayurvedic/var/cpanel/php/sessions/ea-php80/_twsRtSXiYDjId Oct 19 2024 02:56:16 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/sksayurvedic/var/cpanel/php/sessions/ea-php80/_hpDTbtVvqMKtr Oct 19 2024 02:56:16 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/sksayurvedic/var/cpanel/php/sessions/ea-php80/_eezBRuwCJiNz Oct 19 2024 02:56:16 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/sksayurvedic/var/cpanel/php/sessions/ea-php80/_mLrwfKjncLpps Oct 19 2024 02:56:16 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/sksayurvedic/var/cpanel/php/sessions/ea-php80/_RPWVZeEHHgfwk Oct 19 2024 02:56:16 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/sksayurvedic/var/cpanel/php/sessions/ea-php80/_zdZMBiziGJxR Oct 19 2024 02:56:16 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/sksayurvedic/var/cpanel/php/sessions/ea-php80/_VhHVUqqITKwi Oct 19 2024 02:56:16 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/sksayurvedic/var/cpanel/php/sessions/ea-php80/_ojKBIXZehSHjQ Oct 19 2024 02:56:16 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/sksayurvedic/var/cpanel/php/sessions/ea-php80/_PBWMvJdhBgkR Oct 19 2024 02:56:16 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/sksayurvedic/var/cpanel/php/sessions/ea-php80/_PnjEpbazKeoS Oct 19 2024 02:56:16 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/sksayurvedic/var/cpanel/php/sessions/ea-php80/_GMpyPtZHUACrl Oct 19 2024 02:56:16 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/sksayurvedic/var/cpanel/php/sessions/ea-php80/_KrzmiwLKnviyV Oct 19 2024 02:56:16 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/sksayurvedic/var/cpanel/php/sessions/ea-php80/_QdyWWhZmDupVz Oct 19 2024 02:56:17 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/sksayurvedic/var/cpanel/php/sessions/ea-php80/_BmwrTfbXxrgf Oct 19 2024 02:56:17 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/sksayurvedic/var/cpanel/php/sessions/ea-php80/_qBQrJVVhJjhU Oct 19 2024 02:56:17 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/sksayurvedic/var/cpanel/php/sessions/ea-php80/_NRNpWykxrCJt Oct 19 2024 02:56:17 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/sksayurvedic/var/cpanel/php/sessions/ea-php80/_HIhpHhkaacFjZ Oct 19 2024 02:56:17 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/sksayurvedic/var/cpanel/php/sessions/ea-php80/_xHmLmWhRDIAf Oct 19 2024 02:56:17 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/sksayurvedic/var/cpanel/php/sessions/ea-php80/_vhLgyZVGSTVbI Oct 19 2024 02:56:17 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/sksayurvedic/var/cpanel/php/sessions/ea-php80/_NidDdPhLOXdf Oct 19 2024 02:56:17 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/sksayurvedic/var/cpanel/php/sessions/ea-php80/_PyptjPkMGjLWL Oct 19 2024 02:56:17 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/sksayurvedic/var/cpanel/php/sessions/ea-php80/_evsBbUeijjIS Oct 19 2024 02:56:17 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/sksayurvedic/var/cpanel/php/sessions/ea-php80/_HHzgOZNcEsmws Oct 19 2024 02:56:17 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/sksayurvedic/var/cpanel/php/sessions/ea-php80/_JlBuNLdvRQJBe Oct 19 2024 02:56:17 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/sksayurvedic/var/cpanel/php/sessions/ea-php80/_hWaAGjoWeVSTA Oct 19 2024 02:56:17 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/sksayurvedic/var/cpanel/php/sessions/ea-php80/_LPktySMHKWsO Oct 19 2024 02:56:17 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/sksayurvedic/var/cpanel/php/sessions/ea-php80/_simdxeqoPxIck Oct 19 2024 02:56:17 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/sksayurvedic/var/cpanel/php/sessions/ea-php80/_ZCzbiKKfFfJX Oct 19 2024 02:56:17 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/sksayurvedic/var/cpanel/php/sessions/ea-php80/_MbtPxJBGJmia Oct 19 2024 02:56:17 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/sksayurvedic/var/cpanel/php/sessions/ea-php80/_coELLgNxqunD Oct 19 2024 02:56:17 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/sksayurvedic/var/cpanel/php/sessions/ea-php80/_NHPiBUmoTVyp Oct 19 2024 02:56:17 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/sksayurvedic/var/cpanel/php/sessions/ea-php80/_PFzsvHmmBJrQ Oct 19 2024 02:56:18 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/sksayurvedic/var/cpanel/php/sessions/ea-php80/_DMZhYlMyZAWP Oct 19 2024 02:56:18 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/sksayurvedic/var/cpanel/php/sessions/ea-php80/_ceoqhhPhAdauM Oct 19 2024 02:56:18 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/sksayurvedic/var/cpanel/php/sessions/ea-php80/_LsZpqeQGGOIl Oct 19 2024 02:56:18 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/sksayurvedic/var/cpanel/php/sessions/ea-php80/_CZkhXPfRdSEh Oct 19 2024 02:56:18 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/sksayurvedic/var/cpanel/php/sessions/ea-php80/_UiIEdwAnesbys Oct 19 2024 02:56:18 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/sksayurvedic/var/cpanel/php/sessions/ea-php80/_FhwbDtcJraJI Oct 19 2024 02:56:18 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/sksayurvedic/var/cpanel/php/sessions/ea-php80/_jYrRqQioTBfJ Oct 19 2024 02:56:18 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/sksayurvedic/var/cpanel/php/sessions/ea-php80/_wZJLRmNGLMIfm Oct 19 2024 02:56:18 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/sksayurvedic/var/cpanel/php/sessions/ea-php80/_vUURiwqASJxN Oct 19 2024 02:56:18 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/sksayurvedic/var/cpanel/php/sessions/ea-php80/_mwUDjwGlbsQUO Oct 19 2024 02:56:18 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/sksayurvedic/var/cpanel/php/sessions/ea-php80/_BaMAqpXCjuqPV Oct 19 2024 02:56:18 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/sksayurvedic/var/cpanel/php/sessions/ea-php80/_iTcUcpAzUVZwr Oct 19 2024 02:56:18 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/sksayurvedic/var/cpanel/php/sessions/ea-php80/_EGTpUBJLCQAF Oct 19 2024 02:56:18 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/sksayurvedic/var/cpanel/php/sessions/ea-php80/_EaabIkEvbmyXV Oct 19 2024 02:56:18 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/sksayurvedic/var/cpanel/php/sessions/ea-php80/_srjaxAEbGpSdI Oct 19 2024 02:56:18 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/sksayurvedic/var/cpanel/php/sessions/ea-php80/_DLyyeBZRNnbLd Oct 19 2024 02:56:18 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/sksayurvedic/var/cpanel/php/sessions/ea-php80/_gIzWmIcpXxJp Oct 19 2024 02:56:19 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/sksayurvedic/var/cpanel/php/sessions/ea-php80/_pQCdOwYzCrRrQ Oct 19 2024 02:56:19 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/sksayurvedic/var/cpanel/php/sessions/ea-php80/_qMGRPFZEzBOrn Oct 19 2024 02:56:19 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/sksayurvedic/var/cpanel/php/sessions/ea-php80/_llrRWhaShXKvP Oct 19 2024 02:56:19 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/sksayurvedic/var/cpanel/php/sessions/ea-php80/_ZHFcKKqxTvJjz Oct 19 2024 02:56:19 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/sksayurvedic/var/cpanel/php/sessions/ea-php80/_SHqEVfuzyHvD Oct 19 2024 02:56:19 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/sksayurvedic/var/cpanel/php/sessions/ea-php80/_NYMQxozzoXGe Oct 19 2024 02:56:19 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/sksayurvedic/var/cpanel/php/sessions/ea-php80/_eZHylXhDJwTl Oct 19 2024 02:56:19 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/sksayurvedic/var/cpanel/php/sessions/ea-php80/_plQdXBMQIazF Oct 19 2024 02:56:19 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/sksayurvedic/var/cpanel/php/sessions/ea-php80/_bomQPAFHoPMDM Oct 19 2024 02:56:19 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/sksayurvedic/var/cpanel/php/sessions/ea-php80/_hObmvcrqoNxCU Oct 19 2024 02:56:19 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/sksayurvedic/var/cpanel/php/sessions/ea-php80/_fKIhqjIEknJii Oct 19 2024 02:56:19 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/sksayurvedic/var/cpanel/php/sessions/ea-php80/_qczIuGeEJyWuE Oct 19 2024 02:56:19 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/sksayurvedic/var/cpanel/php/sessions/ea-php80/_bSYHODxxDowXL Oct 19 2024 02:56:19 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/sksayurvedic/var/cpanel/php/sessions/ea-php80/_VJmSYrILPEFLv Oct 19 2024 02:56:19 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/sksayurvedic/var/cpanel/php/sessions/ea-php80/_yBCOizYLibHUb Oct 19 2024 02:56:19 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/sksayurvedic/var/cpanel/php/sessions/ea-php80/_wLunPWzQWPGRB Oct 19 2024 02:56:19 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/sksayurvedic/var/cpanel/php/sessions/ea-php80/_BERTzNXveqKJ Oct 19 2024 02:56:20 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/sksayurvedic/var/cpanel/php/sessions/ea-php80/_AFAFXRjgkRXo Oct 19 2024 02:56:20 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/sksayurvedic/var/cpanel/php/sessions/ea-php80/_kZgRMAlRwLdm Oct 19 2024 02:56:20 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/sksayurvedic/var/cpanel/php/sessions/ea-php80/_REqQkQlfTrUk Oct 19 2024 02:56:20 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/sksayurvedic/var/cpanel/php/sessions/ea-php80/_oMZPvEeANTdXq Oct 19 2024 02:56:20 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/sksayurvedic/var/cpanel/php/sessions/ea-php80/_HydbkNQkDVSvF Oct 19 2024 02:56:20 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/sksayurvedic/var/cpanel/php/sessions/ea-php80/_xfRnxLwwwHpAn Oct 19 2024 02:56:20 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/sksayurvedic/var/cpanel/php/sessions/ea-php80/_bBdsNsyjWcdag Oct 19 2024 02:56:20 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/sksayurvedic/var/cpanel/php/sessions/ea-php80/_LDQITspIiJKZ Oct 19 2024 02:56:20 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/sksayurvedic/var/cpanel/php/sessions/ea-php80/_fzOBTUZLifuC Oct 19 2024 02:56:20 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/sksayurvedic/var/cpanel/php/sessions/ea-php80/_ojUUxtoBMRXT Oct 19 2024 02:56:20 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/sksayurvedic/var/cpanel/php/sessions/ea-php80/_OXIIMlJaucij Oct 19 2024 02:56:20 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/sksayurvedic/var/cpanel/php/sessions/ea-php80/_RhTByZNIHnAX Oct 19 2024 02:56:20 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/sksayurvedic/var/cpanel/php/sessions/ea-php80/_JALzBPTFJLufi Oct 19 2024 02:56:21 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/sksayurvedic/var/cpanel/php/sessions/ea-php80/_KPTQTRUlYPuu Oct 19 2024 02:56:21 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/sksayurvedic/var/cpanel/php/sessions/ea-php80/_bAuRRAQZUqXC Oct 19 2024 02:56:21 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/sksayurvedic/var/cpanel/php/sessions/ea-php80/_dvoQxLeehlfF Oct 19 2024 02:56:21 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/sksayurvedic/var/cpanel/php/sessions/ea-php80/_TKrSyUtVSbZS Oct 19 2024 02:56:21 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/sksayurvedic/var/cpanel/php/sessions/ea-php80/_TlPKvFxDQyNBf Oct 19 2024 02:56:21 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/sksayurvedic/var/cpanel/php/sessions/ea-php80/_UoPQOOXeEeSNx Oct 19 2024 02:56:21 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/sksayurvedic/var/cpanel/php/sessions/ea-php80/_xEPXhWajqEHQ Oct 19 2024 02:56:21 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/sksayurvedic/var/cpanel/php/sessions/ea-php80/_twHEkDKdHiREC Oct 19 2024 02:56:21 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/sksayurvedic/var/cpanel/php/sessions/ea-php80/_HjCKLpDZHSgb Oct 19 2024 02:56:21 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/sksayurvedic/var/cpanel/php/sessions/ea-php80/_nGObDEfVRPAmT Oct 19 2024 02:56:21 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/sksayurvedic/var/cpanel/php/sessions/ea-php80/_UHhlVlWZTHFNA Oct 19 2024 02:56:21 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/sksayurvedic/var/cpanel/php/sessions/ea-php80/_AptFVjetaEZUR Oct 19 2024 02:56:21 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/sksayurvedic/var/cpanel/php/sessions/ea-php80/_MRoGcmZXljArt Oct 19 2024 02:56:21 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/sksayurvedic/var/cpanel/php/sessions/ea-php80/_VOPpWUDxDuQA Oct 19 2024 02:56:21 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/sksayurvedic/var/cpanel/php/sessions/ea-php80/_uxUavcetPdYeK Oct 19 2024 02:56:21 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/sksayurvedic/var/cpanel/php/sessions/ea-php80/_OecSbuPLSGMI Oct 19 2024 02:56:22 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/sksayurvedic/var/cpanel/php/sessions/ea-php80/_PgnBYiLgSqpo Oct 19 2024 02:56:22 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/sksayurvedic/var/cpanel/php/sessions/ea-php80/_SxUabNNvGDwP Oct 19 2024 02:56:22 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/sksayurvedic/var/cpanel/php/sessions/ea-php80/_zUTBRUMSwguv Oct 19 2024 02:56:22 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/sksayurvedic/var/cpanel/php/sessions/ea-php80/_iRXdPDHrlGqBi Oct 19 2024 02:56:22 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/sksayurvedic/var/cpanel/php/sessions/ea-php80/_XJFmFbfcPdVN Oct 19 2024 02:56:22 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/sksayurvedic/var/cpanel/php/sessions/ea-php80/_vNYhokbjVJvRQ Oct 19 2024 02:56:22 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/sksayurvedic/var/cpanel/php/sessions/ea-php80/_WAJQeSOJzXtnM Oct 19 2024 02:56:22 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/sksayurvedic/var/cpanel/php/sessions/ea-php80/_FBRJZicASlSJ Oct 19 2024 02:56:22 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/sksayurvedic/var/cpanel/php/sessions/ea-php80/_cWJfugezNabQD Oct 19 2024 02:56:22 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/sksayurvedic/var/cpanel/php/sessions/ea-php80/_nijwUQQjhshsj Oct 19 2024 02:56:22 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/sksayurvedic/var/cpanel/php/sessions/ea-php80/_CATiejbdIiSPb Oct 19 2024 02:56:22 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/sksayurvedic/var/cpanel/php/sessions/ea-php80/_JYLTRuknXzyf Oct 19 2024 02:56:22 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/sksayurvedic/var/cpanel/php/sessions/ea-php80/_BGcYXhrJUHji Oct 19 2024 02:56:22 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/sksayurvedic/var/cpanel/php/sessions/ea-php80/_jsUBibbZrUST Oct 19 2024 02:56:22 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/sksayurvedic/var/cpanel/php/sessions/ea-php80/_WZwJaSxOqgdR Oct 19 2024 02:56:22 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/sksayurvedic/var/cpanel/php/sessions/ea-php80/_dNrnodIYEQkbV Oct 19 2024 02:56:22 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/sksayurvedic/var/cpanel/php/sessions/ea-php80/_pRXSticXXqymq Oct 19 2024 02:56:22 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/sksayurvedic/var/cpanel/php/sessions/ea-php80/_RVctAcejlweWS Oct 19 2024 02:56:22 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/sksayurvedic/var/cpanel/php/sessions/ea-php80/_BOdkWdPBpWri Oct 19 2024 02:56:22 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/sksayurvedic/var/cpanel/php/sessions/ea-php80/_sFFLHDNzonYI Oct 19 2024 02:56:22 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/sksayurvedic/var/cpanel/php/sessions/ea-php80/_wumyEqHdssSP Oct 19 2024 02:56:23 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/sksayurvedic/var/cpanel/php/sessions/ea-php80/_maoQtyDpEADsF Oct 19 2024 02:56:23 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/sksayurvedic/var/cpanel/php/sessions/ea-php80/_oJafEhTvOzXUf Oct 19 2024 02:56:23 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/sksayurvedic/var/cpanel/php/sessions/ea-php80/_sSXQPnjpSRAtM Oct 19 2024 02:56:23 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/sksayurvedic/var/cpanel/php/sessions/ea-php80/_abgnOnfpEAfH Oct 19 2024 02:56:23 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/sksayurvedic/var/cpanel/php/sessions/ea-php80/_gRPACczRNmrw Oct 19 2024 02:56:23 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/sksayurvedic/var/cpanel/php/sessions/ea-php80/_vHTYWGMmtUYY Oct 19 2024 02:56:23 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/sksayurvedic/var/cpanel/php/sessions/ea-php80/_tfswnWTMuhKf Oct 19 2024 02:56:23 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/sksayurvedic/var/cpanel/php/sessions/ea-php80/_klgDxEWYAuXwj Oct 19 2024 02:56:23 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/sksayurvedic/var/cpanel/php/sessions/ea-php80/_YLhvRLYVTuwY Oct 19 2024 02:56:23 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/sksayurvedic/var/cpanel/php/sessions/ea-php80/_HiPQcXOFSqSN Oct 19 2024 02:56:23 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/sksayurvedic/var/cpanel/php/sessions/ea-php80/_IZpIAwOjjTBk Oct 19 2024 02:56:23 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/sksayurvedic/var/cpanel/php/sessions/ea-php80/_FiyBagmDRmGLP Oct 19 2024 02:56:23 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/sksayurvedic/var/cpanel/php/sessions/ea-php80/_PqndoWnSycal Oct 19 2024 02:56:23 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/sksayurvedic/var/cpanel/php/sessions/ea-php80/_IzPFvKQWAYWIe Oct 19 2024 02:56:23 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/sksayurvedic/var/cpanel/php/sessions/ea-php80/_jfaXNncIcdnUn Oct 19 2024 02:56:23 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/sksayurvedic/var/cpanel/php/sessions/ea-php80/_ELrZajldBDAC Oct 19 2024 02:56:23 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/sksayurvedic/var/cpanel/php/sessions/ea-php80/_tEPYmqQpawcT Oct 19 2024 02:56:24 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/sksayurvedic/var/cpanel/php/sessions/ea-php80/_YvQDjxvkDTjt Oct 19 2024 02:56:24 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/sksayurvedic/var/cpanel/php/sessions/ea-php80/_xamNLlEKirDi Oct 19 2024 02:56:24 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/sksayurvedic/var/cpanel/php/sessions/ea-php80/_YborgjzwkCbj Oct 19 2024 02:56:24 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/sksayurvedic/var/cpanel/php/sessions/ea-php80/_crixXOcQoUwzD Oct 19 2024 02:56:24 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/sksayurvedic/var/cpanel/php/sessions/ea-php80/_ItJpNznSeIgnS Oct 19 2024 02:56:24 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/sksayurvedic/var/cpanel/php/sessions/ea-php80/_AJAxcVcqnchC Oct 19 2024 02:56:24 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/sksayurvedic/var/cpanel/php/sessions/ea-php80/_QAPdoscymOKp Oct 19 2024 02:56:24 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/sksayurvedic/var/cpanel/php/sessions/ea-php80/_EafTUcHYggvM Oct 19 2024 02:56:24 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/sksayurvedic/var/cpanel/php/sessions/ea-php80/_YRxCQyZyeFMhv Oct 19 2024 02:56:24 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/sksayurvedic/var/cpanel/php/sessions/ea-php80/_OfvEPGtNMDbau Oct 19 2024 02:56:24 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/sksayurvedic/var/cpanel/php/sessions/ea-php80/_bKEKKYJnvdLAJ Oct 19 2024 02:56:24 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/sksayurvedic/var/cpanel/php/sessions/ea-php80/_yijBWRnzezhS Oct 19 2024 02:56:24 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/sksayurvedic/var/cpanel/php/sessions/ea-php80/_LytOPvdwseBA Oct 19 2024 02:56:24 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/sksayurvedic/var/cpanel/php/sessions/ea-php80/_ALvAObVWkEGzh Oct 19 2024 02:56:24 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/sksayurvedic/var/cpanel/php/sessions/ea-php80/_bJJejrRgRjIg Oct 19 2024 02:56:24 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/sksayurvedic/var/cpanel/php/sessions/ea-php80/_uIVMLFqSAIKm Oct 19 2024 02:56:24 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/sksayurvedic/var/cpanel/php/sessions/ea-php80/_GKgSUHNjUePIS Oct 19 2024 02:56:24 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/sksayurvedic/var/cpanel/php/sessions/ea-php80/_hlRbiwaIzElw Oct 19 2024 02:56:24 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/sksayurvedic/var/cpanel/php/sessions/ea-php80/_ZXsgatyVilZH Oct 19 2024 02:56:24 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/sksayurvedic/var/cpanel/php/sessions/ea-php80/_UavVzvHMfyEDu Oct 19 2024 02:56:25 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/sksayurvedic/var/cpanel/php/sessions/ea-php80/_LQkbSXQezxpq Oct 19 2024 02:56:25 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/sksayurvedic/var/cpanel/php/sessions/ea-php80/_tSiNGCraqWVg Oct 19 2024 02:56:25 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/sksayurvedic/var/cpanel/php/sessions/ea-php80/_bBTwsHrycYjk Oct 19 2024 02:56:25 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/sksayurvedic/var/cpanel/php/sessions/ea-php80/_lWfbLnjzGCIZ Oct 19 2024 02:56:25 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/sksayurvedic/var/cpanel/php/sessions/ea-php80/_VAjArQDQDRGp Oct 19 2024 02:56:25 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/sksayurvedic/var/cpanel/php/sessions/ea-php80/_gYtaVEbuTQluc Oct 19 2024 02:56:25 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/sksayurvedic/var/cpanel/php/sessions/ea-php80/_xwhzpFZpSJRtw Oct 19 2024 02:56:25 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/sksayurvedic/var/cpanel/php/sessions/ea-php80/_WxhvzTDdbzjh Oct 19 2024 02:56:25 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/sksayurvedic/var/cpanel/php/sessions/ea-php80/_xOeVuktNcUiPq Oct 19 2024 02:56:25 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/sksayurvedic/var/cpanel/php/sessions/ea-php80/_tgtHVpFFLaKR Oct 19 2024 02:56:25 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/sksayurvedic/var/cpanel/php/sessions/ea-php80/_pyXFtSYGUUOt Oct 19 2024 02:56:25 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/sksayurvedic/var/cpanel/php/sessions/ea-php80/_XdJmaiwIksqbJ Oct 19 2024 02:56:25 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/sksayurvedic/var/cpanel/php/sessions/ea-php80/_PAjgRopZyBIlG Oct 19 2024 02:56:25 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/sksayurvedic/var/cpanel/php/sessions/ea-php80/_fgynNtAAeaDNw Oct 19 2024 02:56:25 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/sksayurvedic/var/cpanel/php/sessions/ea-php80/_ULXzHANHiTHM Oct 19 2024 02:56:26 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/sksayurvedic/var/cpanel/php/sessions/ea-php80/_ZQnQUwmoCDoeP Oct 19 2024 02:56:26 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/sksayurvedic/var/cpanel/php/sessions/ea-php80/_cnqEvGUAycJD Oct 19 2024 02:56:26 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/sksayurvedic/var/cpanel/php/sessions/ea-php80/_TccOwHUSUAOs Oct 19 2024 02:56:26 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/sksayurvedic/var/cpanel/php/sessions/ea-php80/_vOKUfBvCaqjW Oct 19 2024 02:56:26 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/sksayurvedic/var/cpanel/php/sessions/ea-php80/_RpavDHnnkQPC Oct 19 2024 02:56:26 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/sksayurvedic/var/cpanel/php/sessions/ea-php80/_ApuiXtUrXuKpz Oct 19 2024 02:56:26 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/sksayurvedic/var/cpanel/php/sessions/ea-php80/_pkTEUCmUAgjl Oct 19 2024 02:56:26 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/sksayurvedic/var/cpanel/php/sessions/ea-php80/_WjnUrOyLQGZmf Oct 19 2024 02:56:26 server maldet(2501): {hit} malware hit {YARA}eval_post found for /home/virtfs/sksayurvedic/var/cpanel/php/sessions/ea-php80/_OpXdAJbguJXB Oct 19 2024 02:56:26 server maldet(2501): {hit} malware hit {HEX}php.cmdshell.cih.237 found for /tmp/systemd-private-ad9fe6a090eb4cdc8f21fecc8c176416-ea-php82-php-fpm.service-d4UWjv/tmp/sess_87611f19dbe63f670e5490895dc17757 Oct 19 2024 02:56:26 server maldet(2501): {hit} malware hit {HEX}php.cmdshell.cih.237 found for /var/tmp/systemd-private-ad9fe6a090eb4cdc8f21fecc8c176416-ea-php82-php-fpm.service-d4UWjv/tmp/sess_87611f19dbe63f670e5490895dc17757 Oct 19 2024 02:56:26 server maldet(2501): {scan} scan completed on /home: files 450533, malware hits 773, cleaned hits 0, time 11553s Oct 19 2024 02:56:26 server maldet(2501): {scan} scan report saved, to view run: maldet --report 241018-2343.2501 Oct 19 2024 02:56:26 server maldet(2501): {scan} quarantine is disabled! set quarantine_hits=1 in conf.maldet or to quarantine results run: maldet -q 241018-2343.2501 Oct 19 2024 02:56:26 server maldet(2501): {alert} sent scan report to kkumarclassic123@gmail.com Oct 19 2024 03:30:40 server maldet(26375): {update} checking for available updates... Oct 19 2024 03:30:41 server maldet(26375): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Oct 19 2024 03:30:41 server maldet(26375): {update} hashing install files and checking against server... Oct 19 2024 03:30:41 server maldet(26375): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Oct 19 2024 03:30:41 server maldet(26375): {update} latest version already installed. Oct 19 2024 03:30:41 server maldet(26515): {sigup} performing signature update check... Oct 19 2024 03:30:41 server maldet(26515): {sigup} local signature set is version 20241016273515 Oct 19 2024 03:30:41 server maldet(26515): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Oct 19 2024 03:30:41 server maldet(26515): {sigup} new signature set 20241019573743 available Oct 19 2024 03:30:41 server maldet(26515): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Oct 19 2024 03:30:42 server maldet(26515): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Oct 19 2024 03:30:42 server maldet(26515): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Oct 19 2024 03:30:42 server maldet(26515): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Oct 19 2024 03:30:42 server maldet(26515): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Oct 19 2024 03:30:43 server maldet(26515): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Oct 19 2024 03:30:43 server maldet(26515): {sigup} verified md5sum of maldet-sigpack.tgz Oct 19 2024 03:30:43 server maldet(26515): {sigup} unpacked and installed maldet-sigpack.tgz Oct 19 2024 03:30:43 server maldet(26515): {sigup} verified md5sum of maldet-clean.tgz Oct 19 2024 03:30:43 server maldet(26515): {sigup} unpacked and installed maldet-clean.tgz Oct 19 2024 03:30:44 server maldet(26515): {sigup} signature set update completed Oct 19 2024 03:30:44 server maldet(26515): {sigup} 17638 signatures (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Oct 19 2024 03:30:44 server maldet(26755): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Oct 19 2024 03:30:45 server maldet(26755): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Oct 19 2024 03:30:45 server maldet(26755): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Oct 19 2024 03:30:45 server maldet(26755): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Oct 19 2024 03:30:45 server maldet(26755): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/advertisingindia/public_html/" "/home/bcetdgpac/public_html/" "/home/bengalhospital/public_html/" "/home/binsdgp/public_html/" "/home/dilseshaadi/public_html/" "/home/dpsbloomingbuds/public_html/" "/home/dpsdgp/public_html/" "/home/krishnaintl/public_html/" "/home/kxobgzmy/public_html/" "/home/myrara/public_html/" "/home/scpac/public_html/" "/home/sksayurvedic/public_html/" "/home/sksgi/public_html/" "/home/sksinternational/public_html/" "/home/sksintuniversity/public_html/" "/home/sksmedicalcolleg/public_html/" "/home/sksps/public_html/" "/home/sksworldschool/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Oct 19 2024 03:31:14 server maldet(26755): {scan} file list completed in 29s, found 29108 files... Oct 19 2024 03:31:14 server maldet(26755): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Oct 19 2024 03:31:14 server maldet(26755): {scan} scan of (29108 files) in progress... Oct 19 2024 03:40:46 server maldet(26755): {scan} scan completed on : files 29108, malware hits 0, cleaned hits 0, time 602s Oct 19 2024 03:40:46 server maldet(26755): {scan} scan report saved, to view run: maldet --report 241019-0330.26755 Oct 20 2024 04:37:22 server maldet(13854): {update} checking for available updates... Oct 20 2024 04:37:22 server maldet(13854): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Oct 20 2024 04:37:22 server maldet(13854): {update} hashing install files and checking against server... Oct 20 2024 04:37:22 server maldet(13854): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Oct 20 2024 04:37:22 server maldet(13854): {update} latest version already installed. Oct 20 2024 04:37:23 server maldet(13988): {sigup} performing signature update check... Oct 20 2024 04:37:23 server maldet(13988): {sigup} local signature set is version 20241019573743 Oct 20 2024 04:37:23 server maldet(13988): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Oct 20 2024 04:37:23 server maldet(13988): {sigup} latest signature set already installed Oct 20 2024 04:37:23 server maldet(14108): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Oct 20 2024 04:37:24 server maldet(14108): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Oct 20 2024 04:37:24 server maldet(14108): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Oct 20 2024 04:37:24 server maldet(14108): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Oct 20 2024 04:37:24 server maldet(14108): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/advertisingindia/public_html/" "/home/bcetdgpac/public_html/" "/home/bengalhospital/public_html/" "/home/binsdgp/public_html/" "/home/dilseshaadi/public_html/" "/home/dpsbloomingbuds/public_html/" "/home/dpsdgp/public_html/" "/home/krishnaintl/public_html/" "/home/kxobgzmy/public_html/" "/home/myrara/public_html/" "/home/scpac/public_html/" "/home/sksayurvedic/public_html/" "/home/sksgi/public_html/" "/home/sksinternational/public_html/" "/home/sksintuniversity/public_html/" "/home/sksmedicalcolleg/public_html/" "/home/sksps/public_html/" "/home/sksworldschool/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Oct 20 2024 04:37:51 server maldet(14108): {scan} file list completed in 27s, found 3856 files... Oct 20 2024 04:37:51 server maldet(14108): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Oct 20 2024 04:37:51 server maldet(14108): {scan} scan of (3856 files) in progress... Oct 20 2024 04:38:36 server maldet(14108): {hit} malware hit {HEX}php.nested.base64.652 found for /home/sksayurvedic/public_html/.well-known/acme-challenge/cha-kwetiaw.php Oct 20 2024 04:38:36 server maldet(14108): {hit} malware hit {HEX}php.base64.inject.182 found for /home/sksayurvedic/public_html/wp-includes/widgets/class-wp-engine.php Oct 20 2024 04:38:36 server maldet(14108): {hit} malware hit {HEX}php.base64.inject.182 found for /home/sksayurvedic/public_html/wp-content/plugins/wordpress-seo/vendor_prefixed/psr/http-factory/src/Responecache.php Oct 20 2024 04:38:36 server maldet(14108): {hit} malware hit {HEX}php.nested.base64.652 found for /home/sksayurvedic/public_html/wp-content/themes/dbcj8pzv/fooster1337.php Oct 20 2024 04:38:36 server maldet(14108): {hit} malware hit {HEX}php.base64.inject.182 found for /home/sksayurvedic/public_html/wp-content/themes/twentytwentyfour/patterns/text-faq.php Oct 20 2024 04:38:36 server maldet(14108): {scan} scan completed on : files 3856, malware hits 5, cleaned hits 0, time 73s Oct 20 2024 04:38:36 server maldet(14108): {scan} scan report saved, to view run: maldet --report 241020-0437.14108 Oct 20 2024 04:38:36 server maldet(14108): {scan} quarantine is disabled! set quarantine_hits=1 in conf.maldet or to quarantine results run: maldet -q 241020-0437.14108 Oct 20 2024 04:38:36 server maldet(14108): {alert} sent scan report to kkumarclassic123@gmail.com Oct 21 2024 04:01:58 server maldet(8675): {update} checking for available updates... Oct 21 2024 04:01:59 server maldet(8675): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Oct 21 2024 04:01:59 server maldet(8675): {update} hashing install files and checking against server... Oct 21 2024 04:01:59 server maldet(8675): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Oct 21 2024 04:01:59 server maldet(8675): {update} latest version already installed. Oct 21 2024 04:01:59 server maldet(8977): {sigup} performing signature update check... Oct 21 2024 04:01:59 server maldet(8977): {sigup} local signature set is version 20241019573743 Oct 21 2024 04:01:59 server maldet(8977): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Oct 21 2024 04:02:00 server maldet(8977): {sigup} latest signature set already installed Oct 21 2024 04:02:00 server maldet(9181): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Oct 21 2024 04:02:01 server maldet(9181): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Oct 21 2024 04:02:01 server maldet(9181): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Oct 21 2024 04:02:01 server maldet(9181): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Oct 21 2024 04:02:01 server maldet(9181): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/advertisingindia/public_html/" "/home/bcetdgpac/public_html/" "/home/bengalhospital/public_html/" "/home/binsdgp/public_html/" "/home/dilseshaadi/public_html/" "/home/dpsbloomingbuds/public_html/" "/home/dpsdgp/public_html/" "/home/krishnaintl/public_html/" "/home/kxobgzmy/public_html/" "/home/myrara/public_html/" "/home/scpac/public_html/" "/home/sksayurvedic/public_html/" "/home/sksgi/public_html/" "/home/sksinternational/public_html/" "/home/sksintuniversity/public_html/" "/home/sksmedicalcolleg/public_html/" "/home/sksps/public_html/" "/home/sksworldschool/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Oct 21 2024 04:02:26 server maldet(9181): {scan} file list completed in 25s, found 23950 files... Oct 21 2024 04:02:26 server maldet(9181): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Oct 21 2024 04:02:26 server maldet(9181): {scan} scan of (23950 files) in progress... Oct 21 2024 04:10:17 server maldet(9181): {hit} malware hit {HEX}php.base64.inject.182 found for /home/sksinternational/public_html/wp-content/plugins/pwnd/nsts2.PhP7 Oct 21 2024 04:10:17 server maldet(9181): {hit} malware hit {HEX}php.base64.inject.182 found for /home/sksinternational/public_html/wp-content/plugins/pwnd/nsts2.php Oct 21 2024 04:10:17 server maldet(9181): {hit} malware hit {CAV}Unix.Exploit.Pkexecexploit-10034078-0 found for /home/sksinternational/public_html/wp-content/plugins/pwnd/pwnkit Oct 21 2024 04:10:17 server maldet(9181): {scan} scan completed on : files 23950, malware hits 3, cleaned hits 0, time 497s Oct 21 2024 04:10:17 server maldet(9181): {scan} scan report saved, to view run: maldet --report 241021-0402.9181 Oct 21 2024 04:10:17 server maldet(9181): {scan} quarantine is disabled! set quarantine_hits=1 in conf.maldet or to quarantine results run: maldet -q 241021-0402.9181 Oct 21 2024 04:10:17 server maldet(9181): {alert} sent scan report to kkumarclassic123@gmail.com Oct 22 2024 03:49:51 server maldet(11763): {update} checking for available updates... Oct 22 2024 03:49:52 server maldet(11763): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Oct 22 2024 03:49:52 server maldet(11763): {update} hashing install files and checking against server... Oct 22 2024 03:49:52 server maldet(11763): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Oct 22 2024 03:49:52 server maldet(11763): {update} latest version already installed. Oct 22 2024 03:49:52 server maldet(11898): {sigup} performing signature update check... Oct 22 2024 03:49:52 server maldet(11898): {sigup} local signature set is version 20241019573743 Oct 22 2024 03:49:52 server maldet(11898): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Oct 22 2024 03:49:53 server maldet(11898): {sigup} latest signature set already installed Oct 22 2024 03:49:53 server maldet(12020): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Oct 22 2024 03:49:55 server maldet(12020): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Oct 22 2024 03:49:55 server maldet(12020): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Oct 22 2024 03:49:55 server maldet(12020): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Oct 22 2024 03:49:56 server maldet(12020): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/advertisingindia/public_html/" "/home/bcetdgpac/public_html/" "/home/bengalhospital/public_html/" "/home/binsdgp/public_html/" "/home/dilseshaadi/public_html/" "/home/dpsbloomingbuds/public_html/" "/home/dpsdgp/public_html/" "/home/krishnaintl/public_html/" "/home/kxobgzmy/public_html/" "/home/myrara/public_html/" "/home/scpac/public_html/" "/home/sksayurvedic/public_html/" "/home/sksgi/public_html/" "/home/sksinternational/public_html/" "/home/sksintuniversity/public_html/" "/home/sksmedicalcolleg/public_html/" "/home/sksps/public_html/" "/home/sksworldschool/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Oct 22 2024 03:50:24 server maldet(12020): {scan} file list completed in 29s, found 70501 files... Oct 22 2024 03:50:24 server maldet(12020): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Oct 22 2024 03:50:24 server maldet(12020): {scan} scan of (70501 files) in progress... Oct 22 2024 04:17:05 server maldet(12020): {hit} malware hit {YARA}spam_mailer found for /home/bengalhospital/public_html/wp-content/plugins/null/cron2.php Oct 22 2024 04:17:05 server maldet(12020): {hit} malware hit {YARA}spam_mailer found for /home/binsdgp/public_html/wp-content/plugins/null/cron2.php Oct 22 2024 04:17:05 server maldet(12020): {hit} malware hit {YARA}spam_mailer found for /home/dpsdgp/public_html/wp-content/plugins/null/cron2.php Oct 22 2024 04:17:05 server maldet(12020): {hit} malware hit {YARA}spam_mailer found for /home/krishnaintl/public_html/wp-content/plugins/null/cron2.php Oct 22 2024 04:17:05 server maldet(12020): {hit} malware hit {HEX}php.cmdshell.egyspider.244 found for /home/sksayurvedic/public_html/wp-admin/admin-handler.php Oct 22 2024 04:17:06 server maldet(12020): {hit} malware hit {HEX}php.nested.base64.652 found for /home/sksintuniversity/public_html/wp-includes/interactivity-api/wp/VhuwmDCTIB.php Oct 22 2024 04:17:06 server maldet(12020): {hit} malware hit {HEX}php.exe.globals.416 found for /home/sksintuniversity/public_html/wp-includes/kasdcc.php Oct 22 2024 04:17:06 server maldet(12020): {hit} malware hit {YARA}eval_post found for /home/sksintuniversity/public_html/wp-content/plugins/essential-blocks/src/blocks/feature-list/nmMtYwhT.php Oct 22 2024 04:17:06 server maldet(12020): {hit} malware hit {YARA}spam_mailer found for /home/sksps/public_html/wp-content/plugins/null/cron2.php Oct 22 2024 04:17:06 server maldet(12020): {scan} scan completed on : files 70501, malware hits 9, cleaned hits 0, time 1633s Oct 22 2024 04:17:06 server maldet(12020): {scan} scan report saved, to view run: maldet --report 241022-0349.12020 Oct 22 2024 04:17:06 server maldet(12020): {scan} quarantine is disabled! set quarantine_hits=1 in conf.maldet or to quarantine results run: maldet -q 241022-0349.12020 Oct 22 2024 04:17:06 server maldet(12020): {alert} sent scan report to kkumarclassic123@gmail.com Oct 23 2024 04:29:48 server maldet(6769): {update} checking for available updates... Oct 23 2024 04:29:48 server maldet(6769): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Oct 23 2024 04:29:49 server maldet(6769): {update} hashing install files and checking against server... Oct 23 2024 04:29:49 server maldet(6769): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Oct 23 2024 04:29:49 server maldet(6769): {update} latest version already installed. Oct 23 2024 04:29:49 server maldet(6908): {sigup} performing signature update check... Oct 23 2024 04:29:49 server maldet(6908): {sigup} local signature set is version 20241019573743 Oct 23 2024 04:29:49 server maldet(6908): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Oct 23 2024 04:29:49 server maldet(6908): {sigup} new signature set 202410221331455 available Oct 23 2024 04:29:49 server maldet(6908): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Oct 23 2024 04:29:50 server maldet(6908): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Oct 23 2024 04:29:50 server maldet(6908): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Oct 23 2024 04:29:50 server maldet(6908): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Oct 23 2024 04:29:50 server maldet(6908): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Oct 23 2024 04:29:51 server maldet(6908): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Oct 23 2024 04:29:51 server maldet(6908): {sigup} verified md5sum of maldet-sigpack.tgz Oct 23 2024 04:29:51 server maldet(6908): {sigup} unpacked and installed maldet-sigpack.tgz Oct 23 2024 04:29:51 server maldet(6908): {sigup} verified md5sum of maldet-clean.tgz Oct 23 2024 04:29:51 server maldet(6908): {sigup} unpacked and installed maldet-clean.tgz Oct 23 2024 04:29:51 server maldet(6908): {sigup} signature set update completed Oct 23 2024 04:29:51 server maldet(6908): {sigup} 17638 signatures (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Oct 23 2024 04:29:51 server maldet(7154): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Oct 23 2024 04:29:52 server maldet(7154): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Oct 23 2024 04:29:52 server maldet(7154): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Oct 23 2024 04:29:52 server maldet(7154): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Oct 23 2024 04:29:52 server maldet(7154): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/advertisingindia/public_html/" "/home/bcetdgpac/public_html/" "/home/bengalhospital/public_html/" "/home/binsdgp/public_html/" "/home/dilseshaadi/public_html/" "/home/dpsbloomingbuds/public_html/" "/home/dpsdgp/public_html/" "/home/krishnaintl/public_html/" "/home/kxobgzmy/public_html/" "/home/myrara/public_html/" "/home/scpac/public_html/" "/home/sksayurvedic/public_html/" "/home/sksgi/public_html/" "/home/sksinternational/public_html/" "/home/sksintuniversity/public_html/" "/home/sksmedicalcolleg/public_html/" "/home/sksps/public_html/" "/home/sksworldschool/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Oct 23 2024 04:30:28 server maldet(7154): {scan} file list completed in 36s, found 3338 files... Oct 23 2024 04:30:28 server maldet(7154): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Oct 23 2024 04:30:28 server maldet(7154): {scan} scan of (3338 files) in progress... Oct 23 2024 04:31:19 server maldet(7154): {hit} malware hit {CAV}Unix.Malware.Ngioweb-9999424-0 found for /home/advertisingindia/public_html/hs4.advertisingindia.net/wp-includes/SimplePie/XML/Declaration/Declaration/iwspy Oct 23 2024 04:31:19 server maldet(7154): {scan} scan completed on : files 3338, malware hits 1, cleaned hits 0, time 88s Oct 23 2024 04:31:19 server maldet(7154): {scan} scan report saved, to view run: maldet --report 241023-0429.7154 Oct 23 2024 04:31:19 server maldet(7154): {scan} quarantine is disabled! set quarantine_hits=1 in conf.maldet or to quarantine results run: maldet -q 241023-0429.7154 Oct 23 2024 04:31:19 server maldet(7154): {alert} sent scan report to kkumarclassic123@gmail.com Oct 24 2024 04:11:50 server maldet(18594): {update} checking for available updates... Oct 24 2024 04:11:50 server maldet(18594): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Oct 24 2024 04:11:50 server maldet(18594): {update} hashing install files and checking against server... Oct 24 2024 04:11:51 server maldet(18594): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Oct 24 2024 04:11:51 server maldet(18594): {update} latest version already installed. Oct 24 2024 04:11:51 server maldet(18739): {sigup} performing signature update check... Oct 24 2024 04:11:51 server maldet(18739): {sigup} local signature set is version 202410221331455 Oct 24 2024 04:11:52 server maldet(18739): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Oct 24 2024 04:11:52 server maldet(18739): {sigup} latest signature set already installed Oct 24 2024 04:11:52 server maldet(18854): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Oct 24 2024 04:11:53 server maldet(18854): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Oct 24 2024 04:11:53 server maldet(18854): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Oct 24 2024 04:11:53 server maldet(18854): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Oct 24 2024 04:11:53 server maldet(18854): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/advertisingindia/public_html/" "/home/bcetdgpac/public_html/" "/home/bengalhospital/public_html/" "/home/binsdgp/public_html/" "/home/dilseshaadi/public_html/" "/home/dpsbloomingbuds/public_html/" "/home/dpsdgp/public_html/" "/home/krishnaintl/public_html/" "/home/kxobgzmy/public_html/" "/home/myrara/public_html/" "/home/scpac/public_html/" "/home/sksayurvedic/public_html/" "/home/sksgi/public_html/" "/home/sksinternational/public_html/" "/home/sksintuniversity/public_html/" "/home/sksmedicalcolleg/public_html/" "/home/sksps/public_html/" "/home/sksworldschool/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Oct 24 2024 04:13:23 server maldet(18854): {scan} file list completed in 90s, found 51509 files... Oct 24 2024 04:13:23 server maldet(18854): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Oct 24 2024 04:13:23 server maldet(18854): {scan} scan of (51509 files) in progress... Oct 24 2024 05:25:06 server maldet(18854): {scan} clamscan returned an error, check /usr/local/maldetect/logs/clamscan_log for details! Oct 24 2024 05:25:06 server maldet(18854): {scan} clamscan returned a fatal error in scan results, check /usr/local/maldetect/logs/clamscan_log for details; quarantine has been disabled! Oct 24 2024 05:25:07 server maldet(18854): {scan} scan completed on : files 51509, malware hits 0, cleaned hits 0, time 4394s Oct 24 2024 05:25:07 server maldet(18854): {scan} scan report saved, to view run: maldet --report 241024-0411.18854 Oct 25 2024 04:04:42 server maldet(4984): {update} checking for available updates... Oct 25 2024 04:04:42 server maldet(4984): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Oct 25 2024 04:04:43 server maldet(4984): {update} hashing install files and checking against server... Oct 25 2024 04:04:43 server maldet(4984): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Oct 25 2024 04:04:43 server maldet(4984): {update} latest version already installed. Oct 25 2024 04:04:43 server maldet(5133): {sigup} performing signature update check... Oct 25 2024 04:04:43 server maldet(5133): {sigup} local signature set is version 202410221331455 Oct 25 2024 04:04:44 server maldet(5133): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Oct 25 2024 04:04:44 server maldet(5133): {sigup} latest signature set already installed Oct 25 2024 04:04:44 server maldet(5254): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Oct 25 2024 04:04:46 server maldet(5254): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Oct 25 2024 04:04:46 server maldet(5254): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Oct 25 2024 04:04:46 server maldet(5254): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Oct 25 2024 04:04:46 server maldet(5254): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/advertisingindia/public_html/" "/home/bcetdgpac/public_html/" "/home/bengalhospital/public_html/" "/home/binsdgp/public_html/" "/home/dilseshaadi/public_html/" "/home/dpsbloomingbuds/public_html/" "/home/dpsdgp/public_html/" "/home/krishnaintl/public_html/" "/home/kxobgzmy/public_html/" "/home/myrara/public_html/" "/home/scpac/public_html/" "/home/sksayurvedic/public_html/" "/home/sksgi/public_html/" "/home/sksinternational/public_html/" "/home/sksintuniversity/public_html/" "/home/sksmedicalcolleg/public_html/" "/home/sksps/public_html/" "/home/sksworldschool/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Oct 25 2024 04:05:08 server maldet(5254): {scan} file list completed in 21s, found 26611 files... Oct 25 2024 04:05:08 server maldet(5254): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Oct 25 2024 04:05:08 server maldet(5254): {scan} scan of (26611 files) in progress... Oct 25 2024 04:14:49 server maldet(5254): {scan} scan completed on : files 26611, malware hits 0, cleaned hits 0, time 605s Oct 25 2024 04:14:49 server maldet(5254): {scan} scan report saved, to view run: maldet --report 241025-0404.5254 Oct 26 2024 03:23:30 server maldet(26782): {update} checking for available updates... Oct 26 2024 03:23:32 server maldet(26782): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Oct 26 2024 03:23:32 server maldet(26782): {update} hashing install files and checking against server... Oct 26 2024 03:23:34 server maldet(26782): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Oct 26 2024 03:23:34 server maldet(26782): {update} latest version already installed. Oct 26 2024 03:23:35 server maldet(26937): {sigup} performing signature update check... Oct 26 2024 03:23:35 server maldet(26937): {sigup} local signature set is version 202410221331455 Oct 26 2024 03:23:36 server maldet(26937): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Oct 26 2024 03:23:37 server maldet(26937): {sigup} new signature set 202410252090927 available Oct 26 2024 03:23:37 server maldet(26937): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Oct 26 2024 03:23:39 server maldet(26937): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Oct 26 2024 03:23:41 server maldet(26937): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Oct 26 2024 03:23:41 server maldet(26937): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Oct 26 2024 03:23:43 server maldet(26937): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Oct 26 2024 03:23:44 server maldet(26937): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Oct 26 2024 03:23:44 server maldet(26937): {sigup} verified md5sum of maldet-sigpack.tgz Oct 26 2024 03:23:44 server maldet(26937): {sigup} unpacked and installed maldet-sigpack.tgz Oct 26 2024 03:23:44 server maldet(26937): {sigup} verified md5sum of maldet-clean.tgz Oct 26 2024 03:23:44 server maldet(26937): {sigup} unpacked and installed maldet-clean.tgz Oct 26 2024 03:23:44 server maldet(26937): {sigup} signature set update completed Oct 26 2024 03:23:45 server maldet(26937): {sigup} 17638 signatures (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Oct 26 2024 03:23:50 server maldet(27197): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Oct 26 2024 03:23:56 server maldet(27197): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Oct 26 2024 03:23:56 server maldet(27197): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Oct 26 2024 03:23:56 server maldet(27197): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Oct 26 2024 03:23:56 server maldet(27197): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/advertisingindia/public_html/" "/home/bcetdgpac/public_html/" "/home/bengalhospital/public_html/" "/home/binsdgp/public_html/" "/home/dilseshaadi/public_html/" "/home/dpsbloomingbuds/public_html/" "/home/dpsdgp/public_html/" "/home/krishnaintl/public_html/" "/home/kxobgzmy/public_html/" "/home/myrara/public_html/" "/home/scpac/public_html/" "/home/sksayurvedic/public_html/" "/home/sksgi/public_html/" "/home/sksintuniversity/public_html/" "/home/sksmedicalcolleg/public_html/" "/home/sksps/public_html/" "/home/sksworldschool/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Oct 26 2024 03:29:28 server maldet(27197): {scan} file list completed in 332s, found 47932 files... Oct 26 2024 03:29:29 server maldet(27197): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Oct 26 2024 03:29:29 server maldet(27197): {scan} scan of (47932 files) in progress... Oct 26 2024 03:56:41 server maldet(27197): {hit} malware hit {YARA}eval_post found for /home/advertisingindia/public_html/migsunmunchkin/wp-content/plugins/woocommerce/assets/client/admin/app/azHoSNzo.php Oct 26 2024 03:56:41 server maldet(27197): {hit} malware hit {HEX}php.nested.base64.663 found for /home/sksayurvedic/public_html/wp-content/plugins/sammyimut/..ultra.php Oct 26 2024 03:56:42 server maldet(27197): {scan} scan completed on : files 47932, malware hits 2, cleaned hits 0, time 1971s Oct 26 2024 03:56:42 server maldet(27197): {scan} scan report saved, to view run: maldet --report 241026-0323.27197 Oct 26 2024 03:56:42 server maldet(27197): {scan} quarantine is disabled! set quarantine_hits=1 in conf.maldet or to quarantine results run: maldet -q 241026-0323.27197 Oct 26 2024 03:56:42 server maldet(27197): {alert} sent scan report to kkumarclassic123@gmail.com Oct 27 2024 04:16:22 server maldet(17674): {update} checking for available updates... Oct 27 2024 04:16:23 server maldet(17674): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Oct 27 2024 04:16:23 server maldet(17674): {update} hashing install files and checking against server... Oct 27 2024 04:16:23 server maldet(17674): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Oct 27 2024 04:16:23 server maldet(17674): {update} latest version already installed. Oct 27 2024 04:16:23 server maldet(17814): {sigup} performing signature update check... Oct 27 2024 04:16:23 server maldet(17814): {sigup} local signature set is version 202410252090927 Oct 27 2024 04:16:24 server maldet(17814): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Oct 27 2024 04:16:24 server maldet(17814): {sigup} latest signature set already installed Oct 27 2024 04:16:24 server maldet(17927): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Oct 27 2024 04:16:24 server maldet(17927): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Oct 27 2024 04:16:24 server maldet(17927): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Oct 27 2024 04:16:24 server maldet(17927): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Oct 27 2024 04:16:24 server maldet(17927): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/advertisingindia/public_html/" "/home/bcetdgpac/public_html/" "/home/bengalhospital/public_html/" "/home/binsdgp/public_html/" "/home/dilseshaadi/public_html/" "/home/dpsbloomingbuds/public_html/" "/home/dpsdgp/public_html/" "/home/krishnaintl/public_html/" "/home/kxobgzmy/public_html/" "/home/myrara/public_html/" "/home/scpac/public_html/" "/home/sksayurvedic/public_html/" "/home/sksgi/public_html/" "/home/sksintuniversity/public_html/" "/home/sksmedicalcolleg/public_html/" "/home/sksps/public_html/" "/home/sksworldschool/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Oct 27 2024 04:16:48 server maldet(17927): {scan} file list completed in 24s, found 3585 files... Oct 27 2024 04:16:48 server maldet(17927): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Oct 27 2024 04:16:48 server maldet(17927): {scan} scan of (3585 files) in progress... Oct 27 2024 04:17:31 server maldet(17927): {scan} scan completed on : files 3585, malware hits 0, cleaned hits 0, time 67s Oct 27 2024 04:17:31 server maldet(17927): {scan} scan report saved, to view run: maldet --report 241027-0416.17927 Oct 28 2024 03:36:54 server maldet(20884): {update} checking for available updates... Oct 28 2024 03:36:55 server maldet(20884): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Oct 28 2024 03:36:55 server maldet(20884): {update} hashing install files and checking against server... Oct 28 2024 03:36:55 server maldet(20884): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Oct 28 2024 03:36:55 server maldet(20884): {update} latest version already installed. Oct 28 2024 03:36:55 server maldet(21220): {sigup} performing signature update check... Oct 28 2024 03:36:55 server maldet(21220): {sigup} local signature set is version 202410252090927 Oct 28 2024 03:36:55 server maldet(21220): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Oct 28 2024 03:36:55 server maldet(21220): {sigup} latest signature set already installed Oct 28 2024 03:36:55 server maldet(21663): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Oct 28 2024 03:36:56 server maldet(21663): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Oct 28 2024 03:36:56 server maldet(21663): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Oct 28 2024 03:36:56 server maldet(21663): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Oct 28 2024 03:36:56 server maldet(21663): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/advertisingindia/public_html/" "/home/bcetdgpac/public_html/" "/home/bengalhospital/public_html/" "/home/binsdgp/public_html/" "/home/dilseshaadi/public_html/" "/home/dpsbloomingbuds/public_html/" "/home/dpsdgp/public_html/" "/home/krishnaintl/public_html/" "/home/kxobgzmy/public_html/" "/home/myrara/public_html/" "/home/scpac/public_html/" "/home/sksayurvedic/public_html/" "/home/sksgi/public_html/" "/home/sksmedicalcolleg/public_html/" "/home/sksps/public_html/" "/home/sksworldschool/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Oct 28 2024 03:37:05 server maldet(21663): {scan} file list completed in 9s, found 111253 files... Oct 28 2024 03:37:05 server maldet(21663): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Oct 28 2024 03:37:05 server maldet(21663): {scan} scan of (111253 files) in progress... Oct 28 2024 04:11:47 server maldet(21663): {hit} malware hit {YARA}eval_post found for /home/sksworldschool/public_html/ALFA_DATA/alfacgiapi/fox.php Oct 28 2024 04:11:47 server maldet(21663): {scan} scan completed on : files 111253, malware hits 1, cleaned hits 0, time 2092s Oct 28 2024 04:11:47 server maldet(21663): {scan} scan report saved, to view run: maldet --report 241028-0336.21663 Oct 28 2024 04:11:47 server maldet(21663): {scan} quarantine is disabled! set quarantine_hits=1 in conf.maldet or to quarantine results run: maldet -q 241028-0336.21663 Oct 28 2024 04:11:47 server maldet(21663): {alert} sent scan report to kkumarclassic123@gmail.com Oct 29 2024 03:36:19 server maldet(23860): {update} checking for available updates... Oct 29 2024 03:36:21 server maldet(23860): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Oct 29 2024 03:36:21 server maldet(23860): {update} hashing install files and checking against server... Oct 29 2024 03:36:24 server maldet(23860): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Oct 29 2024 03:36:24 server maldet(23860): {update} latest version already installed. Oct 29 2024 03:36:27 server maldet(24140): {sigup} performing signature update check... Oct 29 2024 03:36:27 server maldet(24140): {sigup} local signature set is version 202410252090927 Oct 29 2024 03:36:28 server maldet(24140): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Oct 29 2024 03:36:29 server maldet(24140): {sigup} new signature set 202410282846833 available Oct 29 2024 03:36:29 server maldet(24140): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Oct 29 2024 03:36:30 server maldet(24140): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Oct 29 2024 03:36:32 server maldet(24140): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Oct 29 2024 03:36:32 server maldet(24140): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Oct 29 2024 03:36:34 server maldet(24140): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Oct 29 2024 03:36:34 server maldet(24140): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Oct 29 2024 03:36:35 server maldet(24140): {sigup} verified md5sum of maldet-sigpack.tgz Oct 29 2024 03:36:36 server maldet(24140): {sigup} unpacked and installed maldet-sigpack.tgz Oct 29 2024 03:36:37 server maldet(24140): {sigup} verified md5sum of maldet-clean.tgz Oct 29 2024 03:36:38 server maldet(24140): {sigup} unpacked and installed maldet-clean.tgz Oct 29 2024 03:36:38 server maldet(24140): {sigup} signature set update completed Oct 29 2024 03:36:38 server maldet(24140): {sigup} 17638 signatures (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Oct 29 2024 03:36:40 server maldet(24442): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Oct 29 2024 03:36:46 server maldet(24442): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Oct 29 2024 03:36:46 server maldet(24442): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Oct 29 2024 03:36:47 server maldet(24442): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Oct 29 2024 03:36:47 server maldet(24442): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/advertisingindia/public_html/" "/home/bcetdgpac/public_html/" "/home/bengalhospital/public_html/" "/home/binsdgp/public_html/" "/home/dilseshaadi/public_html/" "/home/dpsbloomingbuds/public_html/" "/home/dpsdgp/public_html/" "/home/krishnaintl/public_html/" "/home/kxobgzmy/public_html/" "/home/myrara/public_html/" "/home/scpac/public_html/" "/home/sksayurvedic/public_html/" "/home/sksgi/public_html/" "/home/sksmedicalcolleg/public_html/" "/home/sksps/public_html/" "/home/sksworldschool/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Oct 29 2024 03:43:28 server maldet(24442): {scan} file list completed in 400s, found 40504 files... Oct 29 2024 03:43:28 server maldet(24442): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Oct 29 2024 03:43:28 server maldet(24442): {scan} scan of (40504 files) in progress... Oct 29 2024 04:15:38 server maldet(24442): {scan} scan completed on : files 40504, malware hits 0, cleaned hits 0, time 2338s Oct 29 2024 04:15:38 server maldet(24442): {scan} scan report saved, to view run: maldet --report 241029-0336.24442 Oct 30 2024 04:08:20 server maldet(22498): {update} checking for available updates... Oct 30 2024 04:08:21 server maldet(22498): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Oct 30 2024 04:08:21 server maldet(22498): {update} hashing install files and checking against server... Oct 30 2024 04:08:21 server maldet(22498): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Oct 30 2024 04:08:21 server maldet(22498): {update} latest version already installed. Oct 30 2024 04:08:21 server maldet(22632): {sigup} performing signature update check... Oct 30 2024 04:08:21 server maldet(22632): {sigup} local signature set is version 202410282846833 Oct 30 2024 04:08:22 server maldet(22632): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Oct 30 2024 04:08:22 server maldet(22632): {sigup} latest signature set already installed Oct 30 2024 04:08:22 server maldet(22747): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Oct 30 2024 04:08:22 server maldet(22747): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Oct 30 2024 04:08:22 server maldet(22747): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Oct 30 2024 04:08:22 server maldet(22747): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Oct 30 2024 04:08:22 server maldet(22747): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/advertisingindia/public_html/" "/home/bcetdgpac/public_html/" "/home/bengalhospital/public_html/" "/home/binsdgp/public_html/" "/home/dilseshaadi/public_html/" "/home/dpsbloomingbuds/public_html/" "/home/dpsdgp/public_html/" "/home/krishnaintl/public_html/" "/home/kxobgzmy/public_html/" "/home/myrara/public_html/" "/home/scpac/public_html/" "/home/sksayurvedic/public_html/" "/home/sksgi/public_html/" "/home/sksmedicalcolleg/public_html/" "/home/sksps/public_html/" "/home/sksworldschool/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Oct 30 2024 04:08:34 server maldet(22747): {scan} file list completed in 12s, found 7672 files... Oct 30 2024 04:08:34 server maldet(22747): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Oct 30 2024 04:08:34 server maldet(22747): {scan} scan of (7672 files) in progress... Oct 30 2024 04:11:21 server maldet(22747): {scan} scan completed on : files 7672, malware hits 0, cleaned hits 0, time 179s Oct 30 2024 04:11:21 server maldet(22747): {scan} scan report saved, to view run: maldet --report 241030-0408.22747 Oct 31 2024 04:15:46 server maldet(6648): {update} checking for available updates... Oct 31 2024 04:15:47 server maldet(6648): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Oct 31 2024 04:15:47 server maldet(6648): {update} hashing install files and checking against server... Oct 31 2024 04:15:47 server maldet(6648): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Oct 31 2024 04:15:47 server maldet(6648): {update} latest version already installed. Oct 31 2024 04:15:47 server maldet(6795): {sigup} performing signature update check... Oct 31 2024 04:15:47 server maldet(6795): {sigup} local signature set is version 202410282846833 Oct 31 2024 04:15:48 server maldet(6795): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Oct 31 2024 04:15:48 server maldet(6795): {sigup} latest signature set already installed Oct 31 2024 04:15:48 server maldet(6910): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Oct 31 2024 04:15:48 server maldet(6910): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Oct 31 2024 04:15:48 server maldet(6910): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Oct 31 2024 04:15:48 server maldet(6910): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Oct 31 2024 04:15:48 server maldet(6910): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/advertisingindia/public_html/" "/home/bcetdgpac/public_html/" "/home/bengalhospital/public_html/" "/home/binsdgp/public_html/" "/home/dilseshaadi/public_html/" "/home/dpsbloomingbuds/public_html/" "/home/dpsdgp/public_html/" "/home/krishnaintl/public_html/" "/home/kxobgzmy/public_html/" "/home/myrara/public_html/" "/home/scpac/public_html/" "/home/sksayurvedic/public_html/" "/home/sksgi/public_html/" "/home/sksmedicalcolleg/public_html/" "/home/sksps/public_html/" "/home/sksworldschool/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Oct 31 2024 04:16:00 server maldet(6910): {scan} file list completed in 12s, found 1476 files... Oct 31 2024 04:16:00 server maldet(6910): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Oct 31 2024 04:16:00 server maldet(6910): {scan} scan of (1476 files) in progress... Oct 31 2024 04:16:44 server maldet(6910): {scan} scan completed on : files 1476, malware hits 0, cleaned hits 0, time 56s Oct 31 2024 04:16:44 server maldet(6910): {scan} scan report saved, to view run: maldet --report 241031-0415.6910 Nov 01 2024 03:50:46 server maldet(18455): {update} checking for available updates... Nov 01 2024 03:50:47 server maldet(18455): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Nov 01 2024 03:50:47 server maldet(18455): {update} hashing install files and checking against server... Nov 01 2024 03:50:47 server maldet(18455): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Nov 01 2024 03:50:47 server maldet(18455): {update} latest version already installed. Nov 01 2024 03:50:47 server maldet(18590): {sigup} performing signature update check... Nov 01 2024 03:50:47 server maldet(18590): {sigup} local signature set is version 202410282846833 Nov 01 2024 03:50:48 server maldet(18590): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Nov 01 2024 03:50:48 server maldet(18590): {sigup} new signature set 202410313602166 available Nov 01 2024 03:50:48 server maldet(18590): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Nov 01 2024 03:50:48 server maldet(18590): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Nov 01 2024 03:50:49 server maldet(18590): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Nov 01 2024 03:50:49 server maldet(18590): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Nov 01 2024 03:50:49 server maldet(18590): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Nov 01 2024 03:50:49 server maldet(18590): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Nov 01 2024 03:50:49 server maldet(18590): {sigup} verified md5sum of maldet-sigpack.tgz Nov 01 2024 03:50:49 server maldet(18590): {sigup} unpacked and installed maldet-sigpack.tgz Nov 01 2024 03:50:49 server maldet(18590): {sigup} verified md5sum of maldet-clean.tgz Nov 01 2024 03:50:49 server maldet(18590): {sigup} unpacked and installed maldet-clean.tgz Nov 01 2024 03:50:49 server maldet(18590): {sigup} signature set update completed Nov 01 2024 03:50:49 server maldet(18590): {sigup} 17638 signatures (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Nov 01 2024 03:50:50 server maldet(18827): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Nov 01 2024 03:50:50 server maldet(18827): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Nov 01 2024 03:50:50 server maldet(18827): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Nov 01 2024 03:50:50 server maldet(18827): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Nov 01 2024 03:50:50 server maldet(18827): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/advertisingindia/public_html/" "/home/bcetdgpac/public_html/" "/home/bengalhospital/public_html/" "/home/binsdgp/public_html/" "/home/dilseshaadi/public_html/" "/home/dpsbloomingbuds/public_html/" "/home/dpsdgp/public_html/" "/home/krishnaintl/public_html/" "/home/kxobgzmy/public_html/" "/home/myrara/public_html/" "/home/scpac/public_html/" "/home/sksayurvedic/public_html/" "/home/sksgi/public_html/" "/home/sksmedicalcolleg/public_html/" "/home/sksps/public_html/" "/home/sksworldschool/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Nov 01 2024 03:51:18 server maldet(18827): {scan} file list completed in 28s, found 626 files... Nov 01 2024 03:51:18 server maldet(18827): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Nov 01 2024 03:51:18 server maldet(18827): {scan} scan of (626 files) in progress... Nov 01 2024 03:51:51 server maldet(18827): {scan} scan completed on : files 626, malware hits 0, cleaned hits 0, time 61s Nov 01 2024 03:51:51 server maldet(18827): {scan} scan report saved, to view run: maldet --report 241101-0350.18827 Nov 02 2024 03:53:09 server maldet(19029): {update} checking for available updates... Nov 02 2024 03:53:09 server maldet(19029): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Nov 02 2024 03:53:09 server maldet(19029): {update} hashing install files and checking against server... Nov 02 2024 03:53:09 server maldet(19029): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Nov 02 2024 03:53:09 server maldet(19029): {update} latest version already installed. Nov 02 2024 03:53:10 server maldet(19165): {sigup} performing signature update check... Nov 02 2024 03:53:10 server maldet(19165): {sigup} local signature set is version 202410313602166 Nov 02 2024 03:53:10 server maldet(19165): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Nov 02 2024 03:53:10 server maldet(19165): {sigup} new signature set 20241101119716 available Nov 02 2024 03:53:10 server maldet(19165): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Nov 02 2024 03:53:10 server maldet(19165): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Nov 02 2024 03:53:11 server maldet(19165): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Nov 02 2024 03:53:11 server maldet(19165): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Nov 02 2024 03:53:11 server maldet(19165): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Nov 02 2024 03:53:11 server maldet(19165): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Nov 02 2024 03:53:11 server maldet(19165): {sigup} verified md5sum of maldet-sigpack.tgz Nov 02 2024 03:53:11 server maldet(19165): {sigup} unpacked and installed maldet-sigpack.tgz Nov 02 2024 03:53:11 server maldet(19165): {sigup} verified md5sum of maldet-clean.tgz Nov 02 2024 03:53:11 server maldet(19165): {sigup} unpacked and installed maldet-clean.tgz Nov 02 2024 03:53:11 server maldet(19165): {sigup} signature set update completed Nov 02 2024 03:53:11 server maldet(19165): {sigup} 17638 signatures (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Nov 02 2024 03:53:12 server maldet(19399): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Nov 02 2024 03:53:12 server maldet(19399): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Nov 02 2024 03:53:12 server maldet(19399): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Nov 02 2024 03:53:12 server maldet(19399): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Nov 02 2024 03:53:12 server maldet(19399): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/advertisingindia/public_html/" "/home/bcetdgpac/public_html/" "/home/bengalhospital/public_html/" "/home/binsdgp/public_html/" "/home/dilseshaadi/public_html/" "/home/dpsbloomingbuds/public_html/" "/home/dpsdgp/public_html/" "/home/krishnaintl/public_html/" "/home/kxobgzmy/public_html/" "/home/myrara/public_html/" "/home/scpac/public_html/" "/home/sksayurvedic/public_html/" "/home/sksgi/public_html/" "/home/sksmedicalcolleg/public_html/" "/home/sksps/public_html/" "/home/sksworldschool/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Nov 02 2024 03:53:31 server maldet(19399): {scan} file list completed in 19s, found 365 files... Nov 02 2024 03:53:31 server maldet(19399): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Nov 02 2024 03:53:31 server maldet(19399): {scan} scan of (365 files) in progress... Nov 02 2024 03:53:52 server maldet(19399): {scan} scan completed on : files 365, malware hits 0, cleaned hits 0, time 40s Nov 02 2024 03:53:52 server maldet(19399): {scan} scan report saved, to view run: maldet --report 241102-0353.19399 Nov 03 2024 03:55:03 server maldet(15370): {update} checking for available updates... Nov 03 2024 03:55:03 server maldet(15370): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Nov 03 2024 03:55:03 server maldet(15370): {update} hashing install files and checking against server... Nov 03 2024 03:55:04 server maldet(15370): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Nov 03 2024 03:55:04 server maldet(15370): {update} latest version already installed. Nov 03 2024 03:55:04 server maldet(15669): {sigup} performing signature update check... Nov 03 2024 03:55:04 server maldet(15669): {sigup} local signature set is version 20241101119716 Nov 03 2024 03:55:04 server maldet(15669): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Nov 03 2024 03:55:05 server maldet(15669): {sigup} latest signature set already installed Nov 03 2024 03:55:05 server maldet(15799): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Nov 03 2024 03:55:06 server maldet(15799): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Nov 03 2024 03:55:06 server maldet(15799): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Nov 03 2024 03:55:06 server maldet(15799): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Nov 03 2024 03:55:06 server maldet(15799): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/advertisingindia/public_html/" "/home/bcetdgpac/public_html/" "/home/bengalhospital/public_html/" "/home/binsdgp/public_html/" "/home/dilseshaadi/public_html/" "/home/dpsbloomingbuds/public_html/" "/home/dpsdgp/public_html/" "/home/krishnaintl/public_html/" "/home/kxobgzmy/public_html/" "/home/myrara/public_html/" "/home/scpac/public_html/" "/home/sksayurvedic/public_html/" "/home/sksgi/public_html/" "/home/sksmedicalcolleg/public_html/" "/home/sksps/public_html/" "/home/sksworldschool/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Nov 03 2024 03:55:53 server maldet(15799): {scan} file list completed in 47s, found 723 files... Nov 03 2024 03:55:53 server maldet(15799): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Nov 03 2024 03:55:53 server maldet(15799): {scan} scan of (723 files) in progress... Nov 03 2024 03:56:43 server maldet(15799): {scan} scan completed on : files 723, malware hits 0, cleaned hits 0, time 98s Nov 03 2024 03:56:43 server maldet(15799): {scan} scan report saved, to view run: maldet --report 241103-0355.15799 Nov 04 2024 04:05:19 server maldet(21452): {update} checking for available updates... Nov 04 2024 04:05:19 server maldet(21452): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Nov 04 2024 04:05:19 server maldet(21452): {update} hashing install files and checking against server... Nov 04 2024 04:05:19 server maldet(21452): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Nov 04 2024 04:05:20 server maldet(21452): {update} latest version already installed. Nov 04 2024 04:05:20 server maldet(21604): {sigup} performing signature update check... Nov 04 2024 04:05:20 server maldet(21604): {sigup} local signature set is version 20241101119716 Nov 04 2024 04:05:20 server maldet(21604): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Nov 04 2024 04:05:20 server maldet(21604): {sigup} new signature set 20241104598085 available Nov 04 2024 04:05:20 server maldet(21604): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Nov 04 2024 04:05:20 server maldet(21604): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Nov 04 2024 04:05:21 server maldet(21604): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Nov 04 2024 04:05:21 server maldet(21604): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Nov 04 2024 04:05:21 server maldet(21604): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Nov 04 2024 04:05:22 server maldet(21604): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Nov 04 2024 04:05:22 server maldet(21604): {sigup} verified md5sum of maldet-sigpack.tgz Nov 04 2024 04:05:22 server maldet(21604): {sigup} unpacked and installed maldet-sigpack.tgz Nov 04 2024 04:05:22 server maldet(21604): {sigup} verified md5sum of maldet-clean.tgz Nov 04 2024 04:05:22 server maldet(21604): {sigup} unpacked and installed maldet-clean.tgz Nov 04 2024 04:05:22 server maldet(21604): {sigup} signature set update completed Nov 04 2024 04:05:22 server maldet(21604): {sigup} 17638 signatures (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Nov 04 2024 04:05:22 server maldet(21844): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Nov 04 2024 04:05:23 server maldet(21844): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Nov 04 2024 04:05:23 server maldet(21844): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Nov 04 2024 04:05:23 server maldet(21844): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Nov 04 2024 04:05:23 server maldet(21844): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/advertisingindia/public_html/" "/home/bcetdgpac/public_html/" "/home/bengalhospital/public_html/" "/home/binsdgp/public_html/" "/home/dilseshaadi/public_html/" "/home/dpsbloomingbuds/public_html/" "/home/dpsdgp/public_html/" "/home/krishnaintl/public_html/" "/home/kxobgzmy/public_html/" "/home/myrara/public_html/" "/home/scpac/public_html/" "/home/sksayurvedic/public_html/" "/home/sksgi/public_html/" "/home/sksmedicalcolleg/public_html/" "/home/sksps/public_html/" "/home/sksworldschool/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Nov 04 2024 04:05:43 server maldet(21844): {scan} file list completed in 20s, found 7695 files... Nov 04 2024 04:05:43 server maldet(21844): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Nov 04 2024 04:05:43 server maldet(21844): {scan} scan of (7695 files) in progress... Nov 04 2024 04:08:16 server maldet(21844): {scan} scan completed on : files 7695, malware hits 0, cleaned hits 0, time 174s Nov 04 2024 04:08:16 server maldet(21844): {scan} scan report saved, to view run: maldet --report 241104-0405.21844 Nov 05 2024 04:14:41 server maldet(30887): {update} checking for available updates... Nov 05 2024 04:14:41 server maldet(30887): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Nov 05 2024 04:14:41 server maldet(30887): {update} hashing install files and checking against server... Nov 05 2024 04:14:42 server maldet(30887): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Nov 05 2024 04:14:42 server maldet(30887): {update} latest version already installed. Nov 05 2024 04:14:42 server maldet(31025): {sigup} performing signature update check... Nov 05 2024 04:14:42 server maldet(31025): {sigup} local signature set is version 20241104598085 Nov 05 2024 04:14:42 server maldet(31025): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Nov 05 2024 04:14:42 server maldet(31025): {sigup} latest signature set already installed Nov 05 2024 04:14:42 server maldet(31137): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Nov 05 2024 04:14:43 server maldet(31137): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Nov 05 2024 04:14:43 server maldet(31137): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Nov 05 2024 04:14:43 server maldet(31137): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Nov 05 2024 04:14:43 server maldet(31137): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/advertisingindia/public_html/" "/home/bcetdgpac/public_html/" "/home/bengalhospital/public_html/" "/home/binsdgp/public_html/" "/home/dilseshaadi/public_html/" "/home/dpsbloomingbuds/public_html/" "/home/dpsdgp/public_html/" "/home/krishnaintl/public_html/" "/home/kxobgzmy/public_html/" "/home/myrara/public_html/" "/home/scpac/public_html/" "/home/sksayurvedic/public_html/" "/home/sksgi/public_html/" "/home/sksmedicalcolleg/public_html/" "/home/sksps/public_html/" "/home/sksworldschool/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Nov 05 2024 04:14:58 server maldet(31137): {scan} file list completed in 15s, found 1478 files... Nov 05 2024 04:14:58 server maldet(31137): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Nov 05 2024 04:14:58 server maldet(31137): {scan} scan of (1478 files) in progress... Nov 05 2024 04:15:55 server maldet(31137): {scan} scan completed on : files 1478, malware hits 0, cleaned hits 0, time 73s Nov 05 2024 04:15:55 server maldet(31137): {scan} scan report saved, to view run: maldet --report 241105-0414.31137 Nov 06 2024 04:23:20 server maldet(3867): {update} checking for available updates... Nov 06 2024 04:23:20 server maldet(3867): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Nov 06 2024 04:23:20 server maldet(3867): {update} hashing install files and checking against server... Nov 06 2024 04:23:20 server maldet(3867): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Nov 06 2024 04:23:21 server maldet(3867): {update} latest version already installed. Nov 06 2024 04:23:21 server maldet(4002): {sigup} performing signature update check... Nov 06 2024 04:23:21 server maldet(4002): {sigup} local signature set is version 20241104598085 Nov 06 2024 04:23:21 server maldet(4002): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Nov 06 2024 04:23:21 server maldet(4002): {sigup} latest signature set already installed Nov 06 2024 04:23:21 server maldet(4113): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Nov 06 2024 04:23:22 server maldet(4113): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Nov 06 2024 04:23:22 server maldet(4113): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Nov 06 2024 04:23:22 server maldet(4113): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Nov 06 2024 04:23:22 server maldet(4113): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/advertisingindia/public_html/" "/home/bcetdgpac/public_html/" "/home/bengalhospital/public_html/" "/home/binsdgp/public_html/" "/home/dilseshaadi/public_html/" "/home/dpsbloomingbuds/public_html/" "/home/dpsdgp/public_html/" "/home/krishnaintl/public_html/" "/home/kxobgzmy/public_html/" "/home/myrara/public_html/" "/home/scpac/public_html/" "/home/sksayurvedic/public_html/" "/home/sksgi/public_html/" "/home/sksmedicalcolleg/public_html/" "/home/sksps/public_html/" "/home/sksworldschool/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Nov 06 2024 04:23:39 server maldet(4113): {scan} file list completed in 17s, found 1830 files... Nov 06 2024 04:23:39 server maldet(4113): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Nov 06 2024 04:23:39 server maldet(4113): {scan} scan of (1830 files) in progress... Nov 06 2024 04:24:36 server maldet(4113): {scan} scan completed on : files 1830, malware hits 0, cleaned hits 0, time 75s Nov 06 2024 04:24:36 server maldet(4113): {scan} scan report saved, to view run: maldet --report 241106-0423.4113 Nov 07 2024 04:45:05 server maldet(28062): {update} checking for available updates... Nov 07 2024 04:45:05 server maldet(28062): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Nov 07 2024 04:45:05 server maldet(28062): {update} hashing install files and checking against server... Nov 07 2024 04:45:06 server maldet(28062): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Nov 07 2024 04:45:06 server maldet(28062): {update} latest version already installed. Nov 07 2024 04:45:06 server maldet(28201): {sigup} performing signature update check... Nov 07 2024 04:45:06 server maldet(28201): {sigup} local signature set is version 20241104598085 Nov 07 2024 04:45:06 server maldet(28201): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Nov 07 2024 04:45:07 server maldet(28201): {sigup} new signature set 20241107590174 available Nov 07 2024 04:45:07 server maldet(28201): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Nov 07 2024 04:45:07 server maldet(28201): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Nov 07 2024 04:45:07 server maldet(28201): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Nov 07 2024 04:45:07 server maldet(28201): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Nov 07 2024 04:45:08 server maldet(28201): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Nov 07 2024 04:45:08 server maldet(28201): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Nov 07 2024 04:45:08 server maldet(28201): {sigup} verified md5sum of maldet-sigpack.tgz Nov 07 2024 04:45:08 server maldet(28201): {sigup} unpacked and installed maldet-sigpack.tgz Nov 07 2024 04:45:08 server maldet(28201): {sigup} verified md5sum of maldet-clean.tgz Nov 07 2024 04:45:08 server maldet(28201): {sigup} unpacked and installed maldet-clean.tgz Nov 07 2024 04:45:08 server maldet(28201): {sigup} signature set update completed Nov 07 2024 04:45:08 server maldet(28201): {sigup} 17638 signatures (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Nov 07 2024 04:45:10 server maldet(28459): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Nov 07 2024 04:45:12 server maldet(28459): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Nov 07 2024 04:45:12 server maldet(28459): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Nov 07 2024 04:45:12 server maldet(28459): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Nov 07 2024 04:45:13 server maldet(28459): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/advertisingindia/public_html/" "/home/bcetdgpac/public_html/" "/home/bengalhospital/public_html/" "/home/binsdgp/public_html/" "/home/dilseshaadi/public_html/" "/home/dpsbloomingbuds/public_html/" "/home/dpsdgp/public_html/" "/home/krishnaintl/public_html/" "/home/kxobgzmy/public_html/" "/home/myrara/public_html/" "/home/scpac/public_html/" "/home/sksayurvedic/public_html/" "/home/sksgi/public_html/" "/home/sksmedicalcolleg/public_html/" "/home/sksps/public_html/" "/home/sksworldschool/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Nov 07 2024 04:45:44 server maldet(28459): {scan} file list completed in 30s, found 11276 files... Nov 07 2024 04:45:44 server maldet(28459): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Nov 07 2024 04:45:44 server maldet(28459): {scan} scan of (11276 files) in progress... Nov 07 2024 04:49:43 server maldet(28459): {scan} clamscan returned an error, check /usr/local/maldetect/logs/clamscan_log for details! Nov 07 2024 04:49:43 server maldet(28459): {scan} scan completed on : files 11276, malware hits 0, cleaned hits 0, time 273s Nov 07 2024 04:49:43 server maldet(28459): {scan} scan report saved, to view run: maldet --report 241107-0445.28459 Nov 08 2024 04:09:02 server maldet(12128): {update} checking for available updates... Nov 08 2024 04:09:03 server maldet(12128): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Nov 08 2024 04:09:03 server maldet(12128): {update} hashing install files and checking against server... Nov 08 2024 04:09:04 server maldet(12128): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Nov 08 2024 04:09:04 server maldet(12128): {update} latest version already installed. Nov 08 2024 04:09:05 server maldet(12268): {sigup} performing signature update check... Nov 08 2024 04:09:05 server maldet(12268): {sigup} local signature set is version 20241107590174 Nov 08 2024 04:09:06 server maldet(12268): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Nov 08 2024 04:09:07 server maldet(12268): {sigup} latest signature set already installed Nov 08 2024 04:09:08 server maldet(12392): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Nov 08 2024 04:09:09 server maldet(12392): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Nov 08 2024 04:09:09 server maldet(12392): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Nov 08 2024 04:09:09 server maldet(12392): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Nov 08 2024 04:09:09 server maldet(12392): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/advertisingindia/public_html/" "/home/bcetdgpac/public_html/" "/home/bengalhospital/public_html/" "/home/binsdgp/public_html/" "/home/dilseshaadi/public_html/" "/home/dpsbloomingbuds/public_html/" "/home/dpsdgp/public_html/" "/home/krishnaintl/public_html/" "/home/kxobgzmy/public_html/" "/home/myrara/public_html/" "/home/scpac/public_html/" "/home/sksayurvedic/public_html/" "/home/sksgi/public_html/" "/home/sksmedicalcolleg/public_html/" "/home/sksps/public_html/" "/home/sksworldschool/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Nov 08 2024 04:09:31 server maldet(12392): {scan} file list completed in 22s, found 6782 files... Nov 08 2024 04:09:31 server maldet(12392): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Nov 08 2024 04:09:31 server maldet(12392): {scan} scan of (6782 files) in progress... Nov 08 2024 04:11:39 server maldet(12392): {hit} malware hit {HEX}php.shell.black-id.719 found for /home/advertisingindia/public_html/wp-content/ovazozvwk.php Nov 08 2024 04:11:39 server maldet(12392): {hit} malware hit {HEX}php.shell.black-id.719 found for /home/advertisingindia/public_html/wp-content/ovalxyjme.php Nov 08 2024 04:11:39 server maldet(12392): {hit} malware hit {HEX}php.shell.black-id.719 found for /home/advertisingindia/public_html/wp-content/ovaassosy.php Nov 08 2024 04:11:39 server maldet(12392): {hit} malware hit {HEX}php.shell.black-id.719 found for /home/advertisingindia/public_html/wp-content/ovaolulgy.php Nov 08 2024 04:11:40 server maldet(12392): {hit} malware hit {HEX}php.shell.black-id.719 found for /home/advertisingindia/public_html/wp-content/ovaomlass.php Nov 08 2024 04:11:40 server maldet(12392): {hit} malware hit {HEX}php.shell.black-id.719 found for /home/advertisingindia/public_html/wp-content/ovahqszsp.php Nov 08 2024 04:11:40 server maldet(12392): {hit} malware hit {HEX}php.shell.black-id.719 found for /home/advertisingindia/public_html/wp-content/ovaseqbue.php Nov 08 2024 04:11:40 server maldet(12392): {hit} malware hit {HEX}php.shell.black-id.719 found for /home/advertisingindia/public_html/wp-content/ovayejkpd.php Nov 08 2024 04:11:40 server maldet(12392): {scan} scan completed on : files 6782, malware hits 8, cleaned hits 0, time 152s Nov 08 2024 04:11:40 server maldet(12392): {scan} scan report saved, to view run: maldet --report 241108-0409.12392 Nov 08 2024 04:11:40 server maldet(12392): {scan} quarantine is disabled! set quarantine_hits=1 in conf.maldet or to quarantine results run: maldet -q 241108-0409.12392 Nov 08 2024 04:11:40 server maldet(12392): {alert} sent scan report to kkumarclassic123@gmail.com Nov 09 2024 04:51:30 server maldet(9479): {update} checking for available updates... Nov 09 2024 04:51:30 server maldet(9479): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Nov 09 2024 04:51:30 server maldet(9479): {update} hashing install files and checking against server... Nov 09 2024 04:51:31 server maldet(9479): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Nov 09 2024 04:51:31 server maldet(9479): {update} latest version already installed. Nov 09 2024 04:51:31 server maldet(9616): {sigup} performing signature update check... Nov 09 2024 04:51:31 server maldet(9616): {sigup} local signature set is version 20241107590174 Nov 09 2024 04:51:31 server maldet(9616): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Nov 09 2024 04:51:31 server maldet(9616): {sigup} latest signature set already installed Nov 09 2024 04:51:31 server maldet(9727): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Nov 09 2024 04:51:32 server maldet(9727): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Nov 09 2024 04:51:32 server maldet(9727): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Nov 09 2024 04:51:32 server maldet(9727): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Nov 09 2024 04:51:32 server maldet(9727): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/advertisingindia/public_html/" "/home/bcetdgpac/public_html/" "/home/bengalhospital/public_html/" "/home/binsdgp/public_html/" "/home/dilseshaadi/public_html/" "/home/dpsbloomingbuds/public_html/" "/home/dpsdgp/public_html/" "/home/krishnaintl/public_html/" "/home/kxobgzmy/public_html/" "/home/myrara/public_html/" "/home/scpac/public_html/" "/home/sksayurvedic/public_html/" "/home/sksgi/public_html/" "/home/sksmedicalcolleg/public_html/" "/home/sksps/public_html/" "/home/sksworldschool/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Nov 09 2024 04:51:41 server maldet(9727): {scan} file list completed in 9s, found 15976 files... Nov 09 2024 04:51:41 server maldet(9727): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Nov 09 2024 04:51:41 server maldet(9727): {scan} scan of (15976 files) in progress... Nov 09 2024 04:59:16 server maldet(9727): {scan} clamscan returned an error, check /usr/local/maldetect/logs/clamscan_log for details! Nov 09 2024 04:59:16 server maldet(9727): {scan} scan completed on : files 15976, malware hits 0, cleaned hits 0, time 465s Nov 09 2024 04:59:16 server maldet(9727): {scan} scan report saved, to view run: maldet --report 241109-0451.9727 Nov 10 2024 04:20:38 server maldet(27742): {update} checking for available updates... Nov 10 2024 04:20:38 server maldet(27742): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Nov 10 2024 04:20:38 server maldet(27742): {update} hashing install files and checking against server... Nov 10 2024 04:20:38 server maldet(27742): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Nov 10 2024 04:20:38 server maldet(27742): {update} latest version already installed. Nov 10 2024 04:20:39 server maldet(27877): {sigup} performing signature update check... Nov 10 2024 04:20:39 server maldet(27877): {sigup} local signature set is version 20241107590174 Nov 10 2024 04:20:39 server maldet(27877): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Nov 10 2024 04:20:39 server maldet(27877): {sigup} new signature set 202411101345636 available Nov 10 2024 04:20:39 server maldet(27877): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Nov 10 2024 04:20:39 server maldet(27877): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Nov 10 2024 04:20:40 server maldet(27877): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Nov 10 2024 04:20:40 server maldet(27877): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Nov 10 2024 04:20:40 server maldet(27877): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Nov 10 2024 04:20:40 server maldet(27877): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Nov 10 2024 04:20:40 server maldet(27877): {sigup} verified md5sum of maldet-sigpack.tgz Nov 10 2024 04:20:41 server maldet(27877): {sigup} unpacked and installed maldet-sigpack.tgz Nov 10 2024 04:20:41 server maldet(27877): {sigup} verified md5sum of maldet-clean.tgz Nov 10 2024 04:20:41 server maldet(27877): {sigup} unpacked and installed maldet-clean.tgz Nov 10 2024 04:20:41 server maldet(27877): {sigup} signature set update completed Nov 10 2024 04:20:41 server maldet(27877): {sigup} 17638 signatures (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Nov 10 2024 04:20:41 server maldet(28112): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Nov 10 2024 04:20:41 server maldet(28112): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Nov 10 2024 04:20:41 server maldet(28112): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Nov 10 2024 04:20:41 server maldet(28112): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Nov 10 2024 04:20:41 server maldet(28112): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/advertisingindia/public_html/" "/home/bcetdgpac/public_html/" "/home/bengalhospital/public_html/" "/home/binsdgp/public_html/" "/home/dilseshaadi/public_html/" "/home/dpsbloomingbuds/public_html/" "/home/dpsdgp/public_html/" "/home/krishnaintl/public_html/" "/home/kxobgzmy/public_html/" "/home/myrara/public_html/" "/home/scpac/public_html/" "/home/sksayurvedic/public_html/" "/home/sksgi/public_html/" "/home/sksmedicalcolleg/public_html/" "/home/sksps/public_html/" "/home/sksworldschool/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Nov 10 2024 04:20:55 server maldet(28112): {scan} file list completed in 14s, found 293 files... Nov 10 2024 04:20:55 server maldet(28112): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Nov 10 2024 04:20:55 server maldet(28112): {scan} scan of (293 files) in progress... Nov 10 2024 04:21:13 server maldet(28112): {scan} scan completed on : files 293, malware hits 0, cleaned hits 0, time 32s Nov 10 2024 04:21:13 server maldet(28112): {scan} scan report saved, to view run: maldet --report 241110-0420.28112 Nov 11 2024 03:44:51 server maldet(1716): {update} checking for available updates... Nov 11 2024 03:44:51 server maldet(1716): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Nov 11 2024 03:44:51 server maldet(1716): {update} hashing install files and checking against server... Nov 11 2024 03:44:52 server maldet(1716): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Nov 11 2024 03:44:52 server maldet(1716): {update} latest version already installed. Nov 11 2024 03:44:52 server maldet(1851): {sigup} performing signature update check... Nov 11 2024 03:44:52 server maldet(1851): {sigup} local signature set is version 202411101345636 Nov 11 2024 03:44:52 server maldet(1851): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Nov 11 2024 03:44:52 server maldet(1851): {sigup} latest signature set already installed Nov 11 2024 03:44:52 server maldet(1965): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Nov 11 2024 03:44:53 server maldet(1965): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Nov 11 2024 03:44:53 server maldet(1965): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Nov 11 2024 03:44:53 server maldet(1965): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Nov 11 2024 03:44:53 server maldet(1965): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/advertisingindia/public_html/" "/home/bcetdgpac/public_html/" "/home/bengalhospital/public_html/" "/home/binsdgp/public_html/" "/home/dilseshaadi/public_html/" "/home/dpsbloomingbuds/public_html/" "/home/dpsdgp/public_html/" "/home/krishnaintl/public_html/" "/home/kxobgzmy/public_html/" "/home/myrara/public_html/" "/home/scpac/public_html/" "/home/sksayurvedic/public_html/" "/home/sksgi/public_html/" "/home/sksmedicalcolleg/public_html/" "/home/sksps/public_html/" "/home/sksworldschool/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Nov 11 2024 03:45:12 server maldet(1965): {scan} file list completed in 19s, found 3595 files... Nov 11 2024 03:45:12 server maldet(1965): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Nov 11 2024 03:45:12 server maldet(1965): {scan} scan of (3595 files) in progress... Nov 11 2024 03:47:21 server maldet(1965): {scan} scan completed on : files 3595, malware hits 0, cleaned hits 0, time 149s Nov 11 2024 03:47:21 server maldet(1965): {scan} scan report saved, to view run: maldet --report 241111-0344.1965 Nov 12 2024 04:38:23 server maldet(5454): {update} checking for available updates... Nov 12 2024 04:38:23 server maldet(5454): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Nov 12 2024 04:38:23 server maldet(5454): {update} hashing install files and checking against server... Nov 12 2024 04:38:24 server maldet(5454): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Nov 12 2024 04:38:24 server maldet(5454): {update} latest version already installed. Nov 12 2024 04:38:24 server maldet(5598): {sigup} performing signature update check... Nov 12 2024 04:38:24 server maldet(5598): {sigup} local signature set is version 202411101345636 Nov 12 2024 04:38:24 server maldet(5598): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Nov 12 2024 04:38:24 server maldet(5598): {sigup} latest signature set already installed Nov 12 2024 04:38:24 server maldet(5715): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Nov 12 2024 04:38:26 server maldet(5715): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Nov 12 2024 04:38:26 server maldet(5715): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Nov 12 2024 04:38:26 server maldet(5715): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Nov 12 2024 04:38:26 server maldet(5715): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/advertisingindia/public_html/" "/home/bcetdgpac/public_html/" "/home/bengalhospital/public_html/" "/home/binsdgp/public_html/" "/home/dilseshaadi/public_html/" "/home/dpsbloomingbuds/public_html/" "/home/dpsdgp/public_html/" "/home/krishnaintl/public_html/" "/home/kxobgzmy/public_html/" "/home/myrara/public_html/" "/home/scpac/public_html/" "/home/sksayurvedic/public_html/" "/home/sksgi/public_html/" "/home/sksmedicalcolleg/public_html/" "/home/sksps/public_html/" "/home/sksworldschool/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Nov 12 2024 04:38:42 server maldet(5715): {scan} file list completed in 16s, found 33308 files... Nov 12 2024 04:38:42 server maldet(5715): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Nov 12 2024 04:38:42 server maldet(5715): {scan} scan of (33308 files) in progress... Nov 12 2024 04:50:56 server maldet(5715): {scan} scan completed on : files 33308, malware hits 0, cleaned hits 0, time 751s Nov 12 2024 04:50:56 server maldet(5715): {scan} scan report saved, to view run: maldet --report 241112-0438.5715 Nov 13 2024 04:40:41 server maldet(23696): {update} checking for available updates... Nov 13 2024 04:40:42 server maldet(23696): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Nov 13 2024 04:40:42 server maldet(23696): {update} hashing install files and checking against server... Nov 13 2024 04:40:42 server maldet(23696): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Nov 13 2024 04:40:42 server maldet(23696): {update} latest version already installed. Nov 13 2024 04:40:42 server maldet(23836): {sigup} performing signature update check... Nov 13 2024 04:40:42 server maldet(23836): {sigup} local signature set is version 202411101345636 Nov 13 2024 04:40:43 server maldet(23836): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Nov 13 2024 04:40:43 server maldet(23836): {sigup} new signature set 202411132100752 available Nov 13 2024 04:40:43 server maldet(23836): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Nov 13 2024 04:40:43 server maldet(23836): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Nov 13 2024 04:40:43 server maldet(23836): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Nov 13 2024 04:40:43 server maldet(23836): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Nov 13 2024 04:40:44 server maldet(23836): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Nov 13 2024 04:40:44 server maldet(23836): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Nov 13 2024 04:40:44 server maldet(23836): {sigup} verified md5sum of maldet-sigpack.tgz Nov 13 2024 04:40:44 server maldet(23836): {sigup} unpacked and installed maldet-sigpack.tgz Nov 13 2024 04:40:44 server maldet(23836): {sigup} verified md5sum of maldet-clean.tgz Nov 13 2024 04:40:44 server maldet(23836): {sigup} unpacked and installed maldet-clean.tgz Nov 13 2024 04:40:44 server maldet(23836): {sigup} signature set update completed Nov 13 2024 04:40:44 server maldet(23836): {sigup} 17638 signatures (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Nov 13 2024 04:40:45 server maldet(24080): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Nov 13 2024 04:40:45 server maldet(24080): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Nov 13 2024 04:40:45 server maldet(24080): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Nov 13 2024 04:40:45 server maldet(24080): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Nov 13 2024 04:40:45 server maldet(24080): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/advertisingindia/public_html/" "/home/bcetdgpac/public_html/" "/home/bengalhospital/public_html/" "/home/binsdgp/public_html/" "/home/dilseshaadi/public_html/" "/home/dpsbloomingbuds/public_html/" "/home/dpsdgp/public_html/" "/home/krishnaintl/public_html/" "/home/kxobgzmy/public_html/" "/home/myrara/public_html/" "/home/scpac/public_html/" "/home/sksayurvedic/public_html/" "/home/sksgi/public_html/" "/home/sksmedicalcolleg/public_html/" "/home/sksps/public_html/" "/home/sksworldschool/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Nov 13 2024 04:41:09 server maldet(24080): {scan} file list completed in 23s, found 15380 files... Nov 13 2024 04:41:09 server maldet(24080): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Nov 13 2024 04:41:09 server maldet(24080): {scan} scan of (15380 files) in progress... Nov 13 2024 04:47:37 server maldet(24080): {scan} scan completed on : files 15380, malware hits 0, cleaned hits 0, time 412s Nov 13 2024 04:47:37 server maldet(24080): {scan} scan report saved, to view run: maldet --report 241113-0440.24080 Nov 14 2024 04:16:21 server maldet(26624): {update} checking for available updates... Nov 14 2024 04:16:22 server maldet(26624): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Nov 14 2024 04:16:22 server maldet(26624): {update} hashing install files and checking against server... Nov 14 2024 04:16:22 server maldet(26624): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Nov 14 2024 04:16:22 server maldet(26624): {update} latest version already installed. Nov 14 2024 04:16:22 server maldet(26760): {sigup} performing signature update check... Nov 14 2024 04:16:22 server maldet(26760): {sigup} local signature set is version 202411132100752 Nov 14 2024 04:16:23 server maldet(26760): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Nov 14 2024 04:16:23 server maldet(26760): {sigup} latest signature set already installed Nov 14 2024 04:16:23 server maldet(26874): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Nov 14 2024 04:16:24 server maldet(26874): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Nov 14 2024 04:16:24 server maldet(26874): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Nov 14 2024 04:16:24 server maldet(26874): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Nov 14 2024 04:16:24 server maldet(26874): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/advertisingindia/public_html/" "/home/bcetdgpac/public_html/" "/home/bengalhospital/public_html/" "/home/binsdgp/public_html/" "/home/dilseshaadi/public_html/" "/home/dpsbloomingbuds/public_html/" "/home/dpsdgp/public_html/" "/home/krishnaintl/public_html/" "/home/kxobgzmy/public_html/" "/home/myrara/public_html/" "/home/scpac/public_html/" "/home/sksayurvedic/public_html/" "/home/sksgi/public_html/" "/home/sksmedicalcolleg/public_html/" "/home/sksps/public_html/" "/home/sksworldschool/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Nov 14 2024 04:16:40 server maldet(26874): {scan} file list completed in 16s, found 15681 files... Nov 14 2024 04:16:40 server maldet(26874): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Nov 14 2024 04:16:40 server maldet(26874): {scan} scan of (15681 files) in progress... Nov 14 2024 04:20:24 server maldet(26874): {scan} scan completed on : files 15681, malware hits 0, cleaned hits 0, time 241s Nov 14 2024 04:20:24 server maldet(26874): {scan} scan report saved, to view run: maldet --report 241114-0416.26874 Nov 15 2024 03:47:45 server maldet(14180): {update} checking for available updates... Nov 15 2024 03:47:46 server maldet(14180): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Nov 15 2024 03:47:46 server maldet(14180): {update} hashing install files and checking against server... Nov 15 2024 03:47:46 server maldet(14180): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Nov 15 2024 03:47:46 server maldet(14180): {update} latest version already installed. Nov 15 2024 03:47:46 server maldet(14316): {sigup} performing signature update check... Nov 15 2024 03:47:46 server maldet(14316): {sigup} local signature set is version 202411132100752 Nov 15 2024 03:47:46 server maldet(14316): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Nov 15 2024 03:47:46 server maldet(14316): {sigup} latest signature set already installed Nov 15 2024 03:47:47 server maldet(14436): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Nov 15 2024 03:47:47 server maldet(14436): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Nov 15 2024 03:47:47 server maldet(14436): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Nov 15 2024 03:47:47 server maldet(14436): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Nov 15 2024 03:47:47 server maldet(14436): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/advertisingindia/public_html/" "/home/bcetdgpac/public_html/" "/home/bengalhospital/public_html/" "/home/binsdgp/public_html/" "/home/dilseshaadi/public_html/" "/home/dpsbloomingbuds/public_html/" "/home/dpsdgp/public_html/" "/home/krishnaintl/public_html/" "/home/kxobgzmy/public_html/" "/home/myrara/public_html/" "/home/scpac/public_html/" "/home/sksayurvedic/public_html/" "/home/sksgi/public_html/" "/home/sksmedicalcolleg/public_html/" "/home/sksps/public_html/" "/home/sksworldschool/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Nov 15 2024 03:47:56 server maldet(14436): {scan} file list completed in 9s, found 25938 files... Nov 15 2024 03:47:56 server maldet(14436): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Nov 15 2024 03:47:56 server maldet(14436): {scan} scan of (25938 files) in progress... Nov 15 2024 03:52:09 server maldet(14436): {scan} scan completed on : files 25938, malware hits 0, cleaned hits 0, time 262s Nov 15 2024 03:52:10 server maldet(14436): {scan} scan report saved, to view run: maldet --report 241115-0347.14436 Nov 16 2024 03:57:08 server maldet(519): {update} checking for available updates... Nov 16 2024 03:57:08 server maldet(519): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Nov 16 2024 03:57:08 server maldet(519): {update} hashing install files and checking against server... Nov 16 2024 03:57:09 server maldet(519): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Nov 16 2024 03:57:09 server maldet(519): {update} latest version already installed. Nov 16 2024 03:57:10 server maldet(668): {sigup} performing signature update check... Nov 16 2024 03:57:10 server maldet(668): {sigup} local signature set is version 202411132100752 Nov 16 2024 03:57:10 server maldet(668): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Nov 16 2024 03:57:10 server maldet(668): {sigup} new signature set 20241116556149 available Nov 16 2024 03:57:10 server maldet(668): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Nov 16 2024 03:57:11 server maldet(668): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Nov 16 2024 03:57:11 server maldet(668): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Nov 16 2024 03:57:11 server maldet(668): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Nov 16 2024 03:57:12 server maldet(668): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Nov 16 2024 03:57:12 server maldet(668): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Nov 16 2024 03:57:12 server maldet(668): {sigup} verified md5sum of maldet-sigpack.tgz Nov 16 2024 03:57:12 server maldet(668): {sigup} unpacked and installed maldet-sigpack.tgz Nov 16 2024 03:57:12 server maldet(668): {sigup} verified md5sum of maldet-clean.tgz Nov 16 2024 03:57:12 server maldet(668): {sigup} unpacked and installed maldet-clean.tgz Nov 16 2024 03:57:12 server maldet(668): {sigup} signature set update completed Nov 16 2024 03:57:12 server maldet(668): {sigup} 17638 signatures (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Nov 16 2024 03:57:12 server maldet(909): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Nov 16 2024 03:57:13 server maldet(909): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Nov 16 2024 03:57:13 server maldet(909): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Nov 16 2024 03:57:13 server maldet(909): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Nov 16 2024 03:57:13 server maldet(909): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/advertisingindia/public_html/" "/home/bcetdgpac/public_html/" "/home/bengalhospital/public_html/" "/home/binsdgp/public_html/" "/home/dilseshaadi/public_html/" "/home/dpsbloomingbuds/public_html/" "/home/dpsdgp/public_html/" "/home/krishnaintl/public_html/" "/home/kxobgzmy/public_html/" "/home/myrara/public_html/" "/home/scpac/public_html/" "/home/sksayurvedic/public_html/" "/home/sksgi/public_html/" "/home/sksmedicalcolleg/public_html/" "/home/sksps/public_html/" "/home/sksworldschool/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Nov 16 2024 03:57:47 server maldet(909): {scan} file list completed in 34s, found 2195 files... Nov 16 2024 03:57:47 server maldet(909): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Nov 16 2024 03:57:47 server maldet(909): {scan} scan of (2195 files) in progress... Nov 16 2024 03:58:51 server maldet(909): {scan} scan completed on : files 2195, malware hits 0, cleaned hits 0, time 98s Nov 16 2024 03:58:51 server maldet(909): {scan} scan report saved, to view run: maldet --report 241116-0357.909 Nov 17 2024 04:13:55 server maldet(28400): {update} checking for available updates... Nov 17 2024 04:13:56 server maldet(28400): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Nov 17 2024 04:13:56 server maldet(28400): {update} hashing install files and checking against server... Nov 17 2024 04:13:56 server maldet(28400): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Nov 17 2024 04:13:56 server maldet(28400): {update} latest version already installed. Nov 17 2024 04:13:56 server maldet(28548): {sigup} performing signature update check... Nov 17 2024 04:13:56 server maldet(28548): {sigup} local signature set is version 20241116556149 Nov 17 2024 04:13:56 server maldet(28548): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Nov 17 2024 04:13:56 server maldet(28548): {sigup} latest signature set already installed Nov 17 2024 04:13:57 server maldet(28662): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Nov 17 2024 04:13:57 server maldet(28662): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Nov 17 2024 04:13:57 server maldet(28662): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Nov 17 2024 04:13:57 server maldet(28662): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Nov 17 2024 04:13:57 server maldet(28662): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/advertisingindia/public_html/" "/home/bcetdgpac/public_html/" "/home/bengalhospital/public_html/" "/home/binsdgp/public_html/" "/home/dilseshaadi/public_html/" "/home/dpsbloomingbuds/public_html/" "/home/dpsdgp/public_html/" "/home/krishnaintl/public_html/" "/home/kxobgzmy/public_html/" "/home/myrara/public_html/" "/home/scpac/public_html/" "/home/sksayurvedic/public_html/" "/home/sksgi/public_html/" "/home/sksmedicalcolleg/public_html/" "/home/sksps/public_html/" "/home/sksworldschool/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Nov 17 2024 04:14:15 server maldet(28662): {scan} file list completed in 18s, found 827 files... Nov 17 2024 04:14:15 server maldet(28662): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Nov 17 2024 04:14:15 server maldet(28662): {scan} scan of (827 files) in progress... Nov 17 2024 04:14:46 server maldet(28662): {scan} scan completed on : files 827, malware hits 0, cleaned hits 0, time 49s Nov 17 2024 04:14:46 server maldet(28662): {scan} scan report saved, to view run: maldet --report 241117-0413.28662 Nov 18 2024 03:49:18 server maldet(23266): {update} checking for available updates... Nov 18 2024 03:49:18 server maldet(23266): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Nov 18 2024 03:49:18 server maldet(23266): {update} hashing install files and checking against server... Nov 18 2024 03:49:19 server maldet(23266): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Nov 18 2024 03:49:19 server maldet(23266): {update} latest version already installed. Nov 18 2024 03:49:19 server maldet(23399): {sigup} performing signature update check... Nov 18 2024 03:49:19 server maldet(23399): {sigup} local signature set is version 20241116556149 Nov 18 2024 03:49:19 server maldet(23399): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Nov 18 2024 03:49:19 server maldet(23399): {sigup} latest signature set already installed Nov 18 2024 03:49:19 server maldet(23514): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Nov 18 2024 03:49:20 server maldet(23514): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Nov 18 2024 03:49:20 server maldet(23514): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Nov 18 2024 03:49:20 server maldet(23514): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Nov 18 2024 03:49:20 server maldet(23514): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/advertisingindia/public_html/" "/home/bcetdgpac/public_html/" "/home/bengalhospital/public_html/" "/home/binsdgp/public_html/" "/home/dilseshaadi/public_html/" "/home/dpsbloomingbuds/public_html/" "/home/dpsdgp/public_html/" "/home/krishnaintl/public_html/" "/home/kxobgzmy/public_html/" "/home/myrara/public_html/" "/home/scpac/public_html/" "/home/sksayurvedic/public_html/" "/home/sksgi/public_html/" "/home/sksmedicalcolleg/public_html/" "/home/sksps/public_html/" "/home/sksworldschool/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Nov 18 2024 03:49:30 server maldet(23514): {scan} file list completed in 10s, found 458 files... Nov 18 2024 03:49:30 server maldet(23514): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Nov 18 2024 03:49:30 server maldet(23514): {scan} scan of (458 files) in progress... Nov 18 2024 03:49:50 server maldet(23514): {scan} scan completed on : files 458, malware hits 0, cleaned hits 0, time 31s Nov 18 2024 03:49:50 server maldet(23514): {scan} scan report saved, to view run: maldet --report 241118-0349.23514 Nov 19 2024 03:36:42 server maldet(19561): {update} checking for available updates... Nov 19 2024 03:36:44 server maldet(19561): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Nov 19 2024 03:36:44 server maldet(19561): {update} hashing install files and checking against server... Nov 19 2024 03:36:45 server maldet(19561): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Nov 19 2024 03:36:45 server maldet(19561): {update} latest version already installed. Nov 19 2024 03:36:46 server maldet(19705): {sigup} performing signature update check... Nov 19 2024 03:36:46 server maldet(19705): {sigup} local signature set is version 20241116556149 Nov 19 2024 03:36:47 server maldet(19705): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Nov 19 2024 03:36:48 server maldet(19705): {sigup} new signature set 202411191312395 available Nov 19 2024 03:36:48 server maldet(19705): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Nov 19 2024 03:36:51 server maldet(19705): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Nov 19 2024 03:36:54 server maldet(19705): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Nov 19 2024 03:36:54 server maldet(19705): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Nov 19 2024 03:36:55 server maldet(19705): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Nov 19 2024 03:36:57 server maldet(19705): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Nov 19 2024 03:36:58 server maldet(19705): {sigup} verified md5sum of maldet-sigpack.tgz Nov 19 2024 03:37:00 server maldet(19705): {sigup} unpacked and installed maldet-sigpack.tgz Nov 19 2024 03:37:00 server maldet(19705): {sigup} verified md5sum of maldet-clean.tgz Nov 19 2024 03:37:00 server maldet(19705): {sigup} unpacked and installed maldet-clean.tgz Nov 19 2024 03:37:00 server maldet(19705): {sigup} signature set update completed Nov 19 2024 03:37:00 server maldet(19705): {sigup} 17638 signatures (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Nov 19 2024 03:37:02 server maldet(20003): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Nov 19 2024 03:37:04 server maldet(20003): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Nov 19 2024 03:37:04 server maldet(20003): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Nov 19 2024 03:37:05 server maldet(20003): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Nov 19 2024 03:37:05 server maldet(20003): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/advertisingindia/public_html/" "/home/bcetdgpac/public_html/" "/home/bengalhospital/public_html/" "/home/binsdgp/public_html/" "/home/dilseshaadi/public_html/" "/home/dpsbloomingbuds/public_html/" "/home/dpsdgp/public_html/" "/home/krishnaintl/public_html/" "/home/kxobgzmy/public_html/" "/home/myrara/public_html/" "/home/scpac/public_html/" "/home/sksayurvedic/public_html/" "/home/sksgi/public_html/" "/home/sksmedicalcolleg/public_html/" "/home/sksps/public_html/" "/home/sksworldschool/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Nov 19 2024 03:42:51 server maldet(20003): {scan} file list completed in 346s, found 13536 files... Nov 19 2024 03:42:51 server maldet(20003): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Nov 19 2024 03:42:52 server maldet(20003): {scan} scan of (13536 files) in progress... Nov 19 2024 03:54:31 server maldet(20003): {scan} clamscan returned an error, check /usr/local/maldetect/logs/clamscan_log for details! Nov 19 2024 03:54:32 server maldet(20003): {scan} scan completed on : files 13536, malware hits 0, cleaned hits 0, time 1050s Nov 19 2024 03:54:32 server maldet(20003): {scan} scan report saved, to view run: maldet --report 241119-0337.20003 Nov 20 2024 04:14:40 server maldet(11007): {update} checking for available updates... Nov 20 2024 04:14:40 server maldet(11007): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Nov 20 2024 04:14:40 server maldet(11007): {update} hashing install files and checking against server... Nov 20 2024 04:14:40 server maldet(11007): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Nov 20 2024 04:14:40 server maldet(11007): {update} latest version already installed. Nov 20 2024 04:14:41 server maldet(11151): {sigup} performing signature update check... Nov 20 2024 04:14:41 server maldet(11151): {sigup} local signature set is version 202411191312395 Nov 20 2024 04:14:41 server maldet(11151): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Nov 20 2024 04:14:41 server maldet(11151): {sigup} latest signature set already installed Nov 20 2024 04:14:41 server maldet(11267): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Nov 20 2024 04:14:42 server maldet(11267): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Nov 20 2024 04:14:42 server maldet(11267): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Nov 20 2024 04:14:42 server maldet(11267): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Nov 20 2024 04:14:42 server maldet(11267): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/advertisingindia/public_html/" "/home/bcetdgpac/public_html/" "/home/bengalhospital/public_html/" "/home/binsdgp/public_html/" "/home/dilseshaadi/public_html/" "/home/dpsbloomingbuds/public_html/" "/home/dpsdgp/public_html/" "/home/krishnaintl/public_html/" "/home/kxobgzmy/public_html/" "/home/myrara/public_html/" "/home/scpac/public_html/" "/home/sksayurvedic/public_html/" "/home/sksgi/public_html/" "/home/sksmedicalcollac/public_html/" "/home/sksmedicalcolleg/public_html/" "/home/sksps/public_html/" "/home/sksworldschool/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Nov 20 2024 04:14:54 server maldet(11267): {scan} file list completed in 12s, found 28780 files... Nov 20 2024 04:14:54 server maldet(11267): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Nov 20 2024 04:14:54 server maldet(11267): {scan} scan of (28780 files) in progress... Nov 20 2024 04:24:41 server maldet(11267): {hit} malware hit {HEX}php.generic.malware.447 found for /home/dpsdgp/public_html/test/index.php Nov 20 2024 04:24:41 server maldet(11267): {hit} malware hit {HEX}php.exe.globals.416 found for /home/sksayurvedic/public_html/wp-includes/ibdgkj.php Nov 20 2024 04:24:41 server maldet(11267): {hit} malware hit {HEX}php.nested.base64.652 found for /home/sksayurvedic/public_html/wp-content/plugins/wp-file-manager/lib/codemirror/mode/crystal/bCwuIa.php Nov 20 2024 04:24:41 server maldet(11267): {hit} malware hit {HEX}php.nested.base64.652 found for /home/sksayurvedic/public_html/wp-content/plugins/wp/meSPK.php Nov 20 2024 04:24:41 server maldet(11267): {scan} scan completed on : files 28780, malware hits 4, cleaned hits 0, time 600s Nov 20 2024 04:24:41 server maldet(11267): {scan} scan report saved, to view run: maldet --report 241120-0414.11267 Nov 20 2024 04:24:41 server maldet(11267): {scan} quarantine is disabled! set quarantine_hits=1 in conf.maldet or to quarantine results run: maldet -q 241120-0414.11267 Nov 20 2024 04:24:41 server maldet(11267): {alert} sent scan report to kkumarclassic123@gmail.com Nov 21 2024 04:05:19 server maldet(15376): {update} checking for available updates... Nov 21 2024 04:05:20 server maldet(15376): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Nov 21 2024 04:05:20 server maldet(15376): {update} hashing install files and checking against server... Nov 21 2024 04:05:20 server maldet(15376): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Nov 21 2024 04:05:20 server maldet(15376): {update} latest version already installed. Nov 21 2024 04:05:20 server maldet(15515): {sigup} performing signature update check... Nov 21 2024 04:05:20 server maldet(15515): {sigup} local signature set is version 202411191312395 Nov 21 2024 04:05:21 server maldet(15515): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Nov 21 2024 04:05:21 server maldet(15515): {sigup} latest signature set already installed Nov 21 2024 04:05:21 server maldet(15630): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Nov 21 2024 04:05:22 server maldet(15630): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Nov 21 2024 04:05:22 server maldet(15630): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Nov 21 2024 04:05:22 server maldet(15630): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Nov 21 2024 04:05:22 server maldet(15630): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/advertisingindia/public_html/" "/home/bcetdgpac/public_html/" "/home/bengalhospital/public_html/" "/home/binsdgp/public_html/" "/home/dilseshaadi/public_html/" "/home/dpsbloomingbuds/public_html/" "/home/dpsdgp/public_html/" "/home/krishnaintl/public_html/" "/home/kxobgzmy/public_html/" "/home/myrara/public_html/" "/home/scpac/public_html/" "/home/sksayurvedic/public_html/" "/home/sksgi/public_html/" "/home/sksmedicalcollac/public_html/" "/home/sksmedicalcolleg/public_html/" "/home/sksps/public_html/" "/home/sksworldschool/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Nov 21 2024 04:05:43 server maldet(15630): {scan} file list completed in 21s, found 62470 files... Nov 21 2024 04:05:43 server maldet(15630): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Nov 21 2024 04:05:43 server maldet(15630): {scan} scan of (62470 files) in progress... Nov 21 2024 04:26:37 server maldet(15630): {scan} clamscan returned an error, check /usr/local/maldetect/logs/clamscan_log for details! Nov 21 2024 04:26:37 server maldet(15630): {scan} scan completed on : files 62470, malware hits 0, cleaned hits 0, time 1276s Nov 21 2024 04:26:37 server maldet(15630): {scan} scan report saved, to view run: maldet --report 241121-0405.15630 Nov 22 2024 03:27:42 server maldet(15688): {update} checking for available updates... Nov 22 2024 03:27:42 server maldet(15688): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Nov 22 2024 03:27:43 server maldet(15688): {update} hashing install files and checking against server... Nov 22 2024 03:27:43 server maldet(15688): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Nov 22 2024 03:27:43 server maldet(15688): {update} latest version already installed. Nov 22 2024 03:27:44 server maldet(15826): {sigup} performing signature update check... Nov 22 2024 03:27:44 server maldet(15826): {sigup} local signature set is version 202411191312395 Nov 22 2024 03:27:44 server maldet(15826): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Nov 22 2024 03:27:44 server maldet(15826): {sigup} latest signature set already installed Nov 22 2024 03:27:44 server maldet(15939): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Nov 22 2024 03:27:46 server maldet(15939): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Nov 22 2024 03:27:46 server maldet(15939): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Nov 22 2024 03:27:46 server maldet(15939): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Nov 22 2024 03:27:46 server maldet(15939): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/advertisingindia/public_html/" "/home/bcetdgpac/public_html/" "/home/bengalhospital/public_html/" "/home/binsdgp/public_html/" "/home/dilseshaadi/public_html/" "/home/dpsbloomingbuds/public_html/" "/home/dpsdgp/public_html/" "/home/krishnaintl/public_html/" "/home/kxobgzmy/public_html/" "/home/myrara/public_html/" "/home/scpac/public_html/" "/home/sksayurvedic/public_html/" "/home/sksgi/public_html/" "/home/sksmedicalcollac/public_html/" "/home/sksmedicalcolleg/public_html/" "/home/sksps/public_html/" "/home/sksworldschool/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Nov 22 2024 03:28:45 server maldet(15939): {scan} file list completed in 59s, found 1982 files... Nov 22 2024 03:28:45 server maldet(15939): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Nov 22 2024 03:28:45 server maldet(15939): {scan} scan of (1982 files) in progress... Nov 22 2024 03:31:07 server maldet(15939): {scan} scan completed on : files 1982, malware hits 0, cleaned hits 0, time 203s Nov 22 2024 03:31:07 server maldet(15939): {scan} scan report saved, to view run: maldet --report 241122-0327.15939 Nov 23 2024 03:37:41 server maldet(6816): {update} checking for available updates... Nov 23 2024 03:37:41 server maldet(6816): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Nov 23 2024 03:37:41 server maldet(6816): {update} hashing install files and checking against server... Nov 23 2024 03:37:41 server maldet(6816): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Nov 23 2024 03:37:41 server maldet(6816): {update} latest version already installed. Nov 23 2024 03:37:42 server maldet(6952): {sigup} performing signature update check... Nov 23 2024 03:37:42 server maldet(6952): {sigup} local signature set is version 202411191312395 Nov 23 2024 03:37:42 server maldet(6952): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Nov 23 2024 03:37:42 server maldet(6952): {sigup} new signature set 202411222071516 available Nov 23 2024 03:37:42 server maldet(6952): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Nov 23 2024 03:37:42 server maldet(6952): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Nov 23 2024 03:37:43 server maldet(6952): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Nov 23 2024 03:37:43 server maldet(6952): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Nov 23 2024 03:37:43 server maldet(6952): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Nov 23 2024 03:37:43 server maldet(6952): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Nov 23 2024 03:37:43 server maldet(6952): {sigup} verified md5sum of maldet-sigpack.tgz Nov 23 2024 03:37:43 server maldet(6952): {sigup} unpacked and installed maldet-sigpack.tgz Nov 23 2024 03:37:44 server maldet(6952): {sigup} verified md5sum of maldet-clean.tgz Nov 23 2024 03:37:44 server maldet(6952): {sigup} unpacked and installed maldet-clean.tgz Nov 23 2024 03:37:44 server maldet(6952): {sigup} signature set update completed Nov 23 2024 03:37:45 server maldet(6952): {sigup} 17638 signatures (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Nov 23 2024 03:37:45 server maldet(7200): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Nov 23 2024 03:37:45 server maldet(7200): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Nov 23 2024 03:37:45 server maldet(7200): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Nov 23 2024 03:37:45 server maldet(7200): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Nov 23 2024 03:37:45 server maldet(7200): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/advertisingindia/public_html/" "/home/bcetdgpac/public_html/" "/home/bengalhospital/public_html/" "/home/binsdgp/public_html/" "/home/dilseshaadi/public_html/" "/home/dpsbloomingbuds/public_html/" "/home/dpsdgp/public_html/" "/home/krishnaintl/public_html/" "/home/kxobgzmy/public_html/" "/home/myrara/public_html/" "/home/scpac/public_html/" "/home/sksayurvedic/public_html/" "/home/sksgi/public_html/" "/home/sksmedicalcollac/public_html/" "/home/sksmedicalcolleg/public_html/" "/home/sksps/public_html/" "/home/sksworldschool/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Nov 23 2024 03:37:59 server maldet(7200): {scan} file list completed in 14s, found 23904 files... Nov 23 2024 03:37:59 server maldet(7200): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Nov 23 2024 03:37:59 server maldet(7200): {scan} scan of (23904 files) in progress... Nov 23 2024 03:47:52 server maldet(7200): {scan} scan completed on : files 23904, malware hits 0, cleaned hits 0, time 607s Nov 23 2024 03:47:52 server maldet(7200): {scan} scan report saved, to view run: maldet --report 241123-0337.7200 Nov 24 2024 03:59:55 server maldet(3045): {update} checking for available updates... Nov 24 2024 03:59:55 server maldet(3045): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Nov 24 2024 03:59:55 server maldet(3045): {update} hashing install files and checking against server... Nov 24 2024 03:59:56 server maldet(3045): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Nov 24 2024 03:59:56 server maldet(3045): {update} latest version already installed. Nov 24 2024 03:59:56 server maldet(3182): {sigup} performing signature update check... Nov 24 2024 03:59:56 server maldet(3182): {sigup} local signature set is version 202411222071516 Nov 24 2024 03:59:56 server maldet(3182): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Nov 24 2024 03:59:56 server maldet(3182): {sigup} latest signature set already installed Nov 24 2024 03:59:56 server maldet(3294): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Nov 24 2024 03:59:57 server maldet(3294): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Nov 24 2024 03:59:57 server maldet(3294): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Nov 24 2024 03:59:57 server maldet(3294): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Nov 24 2024 03:59:57 server maldet(3294): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/advertisingindia/public_html/" "/home/bcetdgpac/public_html/" "/home/bengalhospital/public_html/" "/home/binsdgp/public_html/" "/home/dilseshaadi/public_html/" "/home/dpsbloomingbuds/public_html/" "/home/dpsdgp/public_html/" "/home/krishnaintl/public_html/" "/home/kxobgzmy/public_html/" "/home/myrara/public_html/" "/home/scpac/public_html/" "/home/sksayurvedic/public_html/" "/home/sksgi/public_html/" "/home/sksmedicalcollac/public_html/" "/home/sksmedicalcolleg/public_html/" "/home/sksps/public_html/" "/home/sksworldschool/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Nov 24 2024 04:00:16 server maldet(3294): {scan} file list completed in 19s, found 416 files... Nov 24 2024 04:00:16 server maldet(3294): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Nov 24 2024 04:00:16 server maldet(3294): {scan} scan of (416 files) in progress... Nov 24 2024 04:00:38 server maldet(3294): {scan} scan completed on : files 416, malware hits 0, cleaned hits 0, time 42s Nov 24 2024 04:00:38 server maldet(3294): {scan} scan report saved, to view run: maldet --report 241124-0359.3294 Nov 25 2024 04:11:25 server maldet(23992): {update} checking for available updates... Nov 25 2024 04:11:25 server maldet(23992): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Nov 25 2024 04:11:25 server maldet(23992): {update} hashing install files and checking against server... Nov 25 2024 04:11:26 server maldet(23992): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Nov 25 2024 04:11:26 server maldet(23992): {update} latest version already installed. Nov 25 2024 04:11:26 server maldet(24135): {sigup} performing signature update check... Nov 25 2024 04:11:26 server maldet(24135): {sigup} local signature set is version 202411222071516 Nov 25 2024 04:11:26 server maldet(24135): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Nov 25 2024 04:11:26 server maldet(24135): {sigup} new signature set 202411252823427 available Nov 25 2024 04:11:26 server maldet(24135): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Nov 25 2024 04:11:27 server maldet(24135): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Nov 25 2024 04:11:27 server maldet(24135): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Nov 25 2024 04:11:27 server maldet(24135): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Nov 25 2024 04:11:27 server maldet(24135): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Nov 25 2024 04:11:28 server maldet(24135): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Nov 25 2024 04:11:28 server maldet(24135): {sigup} verified md5sum of maldet-sigpack.tgz Nov 25 2024 04:11:28 server maldet(24135): {sigup} unpacked and installed maldet-sigpack.tgz Nov 25 2024 04:11:28 server maldet(24135): {sigup} verified md5sum of maldet-clean.tgz Nov 25 2024 04:11:28 server maldet(24135): {sigup} unpacked and installed maldet-clean.tgz Nov 25 2024 04:11:28 server maldet(24135): {sigup} signature set update completed Nov 25 2024 04:11:28 server maldet(24135): {sigup} 17638 signatures (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Nov 25 2024 04:11:28 server maldet(24380): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Nov 25 2024 04:11:29 server maldet(24380): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Nov 25 2024 04:11:29 server maldet(24380): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Nov 25 2024 04:11:29 server maldet(24380): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Nov 25 2024 04:11:29 server maldet(24380): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/advertisingindia/public_html/" "/home/bcetdgpac/public_html/" "/home/bengalhospital/public_html/" "/home/binsdgp/public_html/" "/home/dilseshaadi/public_html/" "/home/dpsbloomingbuds/public_html/" "/home/dpsdgp/public_html/" "/home/krishnaintl/public_html/" "/home/kxobgzmy/public_html/" "/home/myrara/public_html/" "/home/scpac/public_html/" "/home/sksayurvedic/public_html/" "/home/sksgi/public_html/" "/home/sksmedicalcollac/public_html/" "/home/sksmedicalcolleg/public_html/" "/home/sksps/public_html/" "/home/sksworldschool/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Nov 25 2024 04:11:58 server maldet(24380): {scan} file list completed in 28s, found 5347 files... Nov 25 2024 04:11:58 server maldet(24380): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Nov 25 2024 04:11:58 server maldet(24380): {scan} scan of (5347 files) in progress... Nov 25 2024 04:14:42 server maldet(24380): {scan} clamscan returned an error, check /usr/local/maldetect/logs/clamscan_log for details! Nov 25 2024 04:14:42 server maldet(24380): {scan} scan completed on : files 5347, malware hits 0, cleaned hits 0, time 194s Nov 25 2024 04:14:42 server maldet(24380): {scan} scan report saved, to view run: maldet --report 241125-0411.24380 Nov 26 2024 04:09:38 server maldet(4392): {update} checking for available updates... Nov 26 2024 04:09:38 server maldet(4392): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Nov 26 2024 04:09:38 server maldet(4392): {update} hashing install files and checking against server... Nov 26 2024 04:09:39 server maldet(4392): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Nov 26 2024 04:09:39 server maldet(4392): {update} latest version already installed. Nov 26 2024 04:09:39 server maldet(4526): {sigup} performing signature update check... Nov 26 2024 04:09:39 server maldet(4526): {sigup} local signature set is version 202411252823427 Nov 26 2024 04:09:39 server maldet(4526): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Nov 26 2024 04:09:39 server maldet(4526): {sigup} latest signature set already installed Nov 26 2024 04:09:39 server maldet(4640): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Nov 26 2024 04:09:40 server maldet(4640): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Nov 26 2024 04:09:40 server maldet(4640): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Nov 26 2024 04:09:40 server maldet(4640): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Nov 26 2024 04:09:40 server maldet(4640): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/advertisingindia/public_html/" "/home/bcetdgpac/public_html/" "/home/bengalhospital/public_html/" "/home/binsdgp/public_html/" "/home/dilseshaadi/public_html/" "/home/dpsbloomingbuds/public_html/" "/home/dpsdgp/public_html/" "/home/krishnaintl/public_html/" "/home/kxobgzmy/public_html/" "/home/myrara/public_html/" "/home/scpac/public_html/" "/home/sksayurvedic/public_html/" "/home/sksgi/public_html/" "/home/sksmedicalcollac/public_html/" "/home/sksmedicalcolleg/public_html/" "/home/sksps/public_html/" "/home/sksworldschool/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Nov 26 2024 04:09:52 server maldet(4640): {scan} file list completed in 12s, found 18604 files... Nov 26 2024 04:09:52 server maldet(4640): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Nov 26 2024 04:09:52 server maldet(4640): {scan} scan of (18604 files) in progress... Nov 26 2024 04:17:48 server maldet(4640): {scan} scan completed on : files 18604, malware hits 0, cleaned hits 0, time 489s Nov 26 2024 04:17:48 server maldet(4640): {scan} scan report saved, to view run: maldet --report 241126-0409.4640 Nov 27 2024 03:53:15 server maldet(28933): {update} checking for available updates... Nov 27 2024 03:53:15 server maldet(28933): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Nov 27 2024 03:53:15 server maldet(28933): {update} hashing install files and checking against server... Nov 27 2024 03:53:16 server maldet(28933): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Nov 27 2024 03:53:16 server maldet(28933): {update} latest version already installed. Nov 27 2024 03:53:16 server maldet(29067): {sigup} performing signature update check... Nov 27 2024 03:53:16 server maldet(29067): {sigup} local signature set is version 202411252823427 Nov 27 2024 03:53:16 server maldet(29067): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Nov 27 2024 03:53:16 server maldet(29067): {sigup} latest signature set already installed Nov 27 2024 03:53:16 server maldet(29179): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Nov 27 2024 03:53:17 server maldet(29179): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Nov 27 2024 03:53:17 server maldet(29179): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Nov 27 2024 03:53:17 server maldet(29179): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Nov 27 2024 03:53:17 server maldet(29179): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/advertisingindia/public_html/" "/home/bcetdgpac/public_html/" "/home/bengalhospital/public_html/" "/home/binsdgp/public_html/" "/home/dilseshaadi/public_html/" "/home/dpsbloomingbuds/public_html/" "/home/dpsdgp/public_html/" "/home/krishnaintl/public_html/" "/home/kxobgzmy/public_html/" "/home/myrara/public_html/" "/home/scpac/public_html/" "/home/sksayurvedic/public_html/" "/home/sksgi/public_html/" "/home/sksmedicalcollac/public_html/" "/home/sksmedicalcolleg/public_html/" "/home/sksps/public_html/" "/home/sksworldschool/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Nov 27 2024 03:53:26 server maldet(29179): {scan} file list completed in 9s, found 9537 files... Nov 27 2024 03:53:26 server maldet(29179): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Nov 27 2024 03:53:26 server maldet(29179): {scan} scan of (9537 files) in progress... Nov 27 2024 03:56:33 server maldet(29179): {scan} scan completed on : files 9537, malware hits 0, cleaned hits 0, time 197s Nov 27 2024 03:56:33 server maldet(29179): {scan} scan report saved, to view run: maldet --report 241127-0353.29179 Nov 28 2024 04:41:05 server maldet(1782): {update} checking for available updates... Nov 28 2024 04:41:06 server maldet(1782): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Nov 28 2024 04:41:06 server maldet(1782): {update} hashing install files and checking against server... Nov 28 2024 04:41:06 server maldet(1782): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Nov 28 2024 04:41:06 server maldet(1782): {update} latest version already installed. Nov 28 2024 04:41:06 server maldet(1920): {sigup} performing signature update check... Nov 28 2024 04:41:06 server maldet(1920): {sigup} local signature set is version 202411252823427 Nov 28 2024 04:41:07 server maldet(1920): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Nov 28 2024 04:41:07 server maldet(1920): {sigup} new signature set 202411283582038 available Nov 28 2024 04:41:07 server maldet(1920): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Nov 28 2024 04:41:07 server maldet(1920): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Nov 28 2024 04:41:08 server maldet(1920): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Nov 28 2024 04:41:08 server maldet(1920): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Nov 28 2024 04:41:08 server maldet(1920): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Nov 28 2024 04:41:09 server maldet(1920): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Nov 28 2024 04:41:09 server maldet(1920): {sigup} verified md5sum of maldet-sigpack.tgz Nov 28 2024 04:41:09 server maldet(1920): {sigup} unpacked and installed maldet-sigpack.tgz Nov 28 2024 04:41:09 server maldet(1920): {sigup} verified md5sum of maldet-clean.tgz Nov 28 2024 04:41:09 server maldet(1920): {sigup} unpacked and installed maldet-clean.tgz Nov 28 2024 04:41:09 server maldet(1920): {sigup} signature set update completed Nov 28 2024 04:41:10 server maldet(1920): {sigup} 17638 signatures (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Nov 28 2024 04:41:10 server maldet(2170): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Nov 28 2024 04:41:12 server maldet(2170): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Nov 28 2024 04:41:12 server maldet(2170): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Nov 28 2024 04:41:12 server maldet(2170): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Nov 28 2024 04:41:12 server maldet(2170): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/advertisingindia/public_html/" "/home/bcetdgpac/public_html/" "/home/bengalhospital/public_html/" "/home/binsdgp/public_html/" "/home/dilseshaadi/public_html/" "/home/dpsbloomingbuds/public_html/" "/home/dpsdgp/public_html/" "/home/krishnaintl/public_html/" "/home/kxobgzmy/public_html/" "/home/myrara/public_html/" "/home/scpac/public_html/" "/home/sksayurvedic/public_html/" "/home/sksgi/public_html/" "/home/sksmedicalcolleg/public_html/" "/home/sksps/public_html/" "/home/sksworldschool/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Nov 28 2024 04:42:56 server maldet(2170): {scan} file list completed in 103s, found 1668 files... Nov 28 2024 04:42:56 server maldet(2170): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Nov 28 2024 04:42:56 server maldet(2170): {scan} scan of (1668 files) in progress... Nov 28 2024 04:43:47 server maldet(2170): {hit} malware hit {HEX}php.nested.base64.652 found for /home/dpsbloomingbuds/public_html/wp-content/plugins/ziuxkuck/0x1949.php Nov 28 2024 04:43:47 server maldet(2170): {hit} malware hit {HEX}php.nested.base64.652 found for /home/dpsbloomingbuds/public_html/wp-content/themes/pridmag/0x1949.php Nov 28 2024 04:43:48 server maldet(2170): {hit} malware hit {HEX}php.nested.base64.652 found for /home/dpsbloomingbuds/public_html/wp-content/themes/wordpress-mag/0x1949.php Nov 28 2024 04:43:48 server maldet(2170): {scan} scan completed on : files 1668, malware hits 3, cleaned hits 0, time 158s Nov 28 2024 04:43:48 server maldet(2170): {scan} scan report saved, to view run: maldet --report 241128-0441.2170 Nov 28 2024 04:43:48 server maldet(2170): {scan} quarantine is disabled! set quarantine_hits=1 in conf.maldet or to quarantine results run: maldet -q 241128-0441.2170 Nov 28 2024 04:43:48 server maldet(2170): {alert} sent scan report to kkumarclassic123@gmail.com Nov 29 2024 03:41:27 server maldet(32131): {update} checking for available updates... Nov 29 2024 03:41:27 server maldet(32131): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Nov 29 2024 03:41:27 server maldet(32131): {update} hashing install files and checking against server... Nov 29 2024 03:41:27 server maldet(32131): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Nov 29 2024 03:41:27 server maldet(32131): {update} latest version already installed. Nov 29 2024 03:41:27 server maldet(32271): {sigup} performing signature update check... Nov 29 2024 03:41:27 server maldet(32271): {sigup} local signature set is version 202411283582038 Nov 29 2024 03:41:28 server maldet(32271): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Nov 29 2024 03:41:28 server maldet(32271): {sigup} latest signature set already installed Nov 29 2024 03:41:28 server maldet(32386): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Nov 29 2024 03:41:28 server maldet(32386): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Nov 29 2024 03:41:28 server maldet(32386): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Nov 29 2024 03:41:28 server maldet(32386): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Nov 29 2024 03:41:28 server maldet(32386): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/advertisingindia/public_html/" "/home/bcetdgpac/public_html/" "/home/bengalhospital/public_html/" "/home/binsdgp/public_html/" "/home/dilseshaadi/public_html/" "/home/dpsbloomingbuds/public_html/" "/home/dpsdgp/public_html/" "/home/krishnaintl/public_html/" "/home/kxobgzmy/public_html/" "/home/myrara/public_html/" "/home/scpac/public_html/" "/home/sksayurvedic/public_html/" "/home/sksgi/public_html/" "/home/sksmedicalcolleg/public_html/" "/home/sksps/public_html/" "/home/sksworldschool/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Nov 29 2024 03:41:39 server maldet(32386): {scan} file list completed in 11s, found 3633 files... Nov 29 2024 03:41:39 server maldet(32386): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Nov 29 2024 03:41:39 server maldet(32386): {scan} scan of (3633 files) in progress... Nov 29 2024 03:43:16 server maldet(32386): {scan} scan completed on : files 3633, malware hits 0, cleaned hits 0, time 108s Nov 29 2024 03:43:16 server maldet(32386): {scan} scan report saved, to view run: maldet --report 241129-0341.32386 Nov 30 2024 04:13:01 server maldet(24932): {update} checking for available updates... Nov 30 2024 04:13:01 server maldet(24932): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Nov 30 2024 04:13:01 server maldet(24932): {update} hashing install files and checking against server... Nov 30 2024 04:13:02 server maldet(24932): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Nov 30 2024 04:13:02 server maldet(24932): {update} latest version already installed. Nov 30 2024 04:13:02 server maldet(25069): {sigup} performing signature update check... Nov 30 2024 04:13:02 server maldet(25069): {sigup} local signature set is version 202411283582038 Nov 30 2024 04:13:02 server maldet(25069): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Nov 30 2024 04:13:02 server maldet(25069): {sigup} latest signature set already installed Nov 30 2024 04:13:03 server maldet(25184): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Nov 30 2024 04:13:03 server maldet(25184): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Nov 30 2024 04:13:03 server maldet(25184): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Nov 30 2024 04:13:03 server maldet(25184): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Nov 30 2024 04:13:03 server maldet(25184): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/advertisingindia/public_html/" "/home/bcetdgpac/public_html/" "/home/bengalhospital/public_html/" "/home/binsdgp/public_html/" "/home/dilseshaadi/public_html/" "/home/dpsbloomingbuds/public_html/" "/home/dpsdgp/public_html/" "/home/krishnaintl/public_html/" "/home/kxobgzmy/public_html/" "/home/myrara/public_html/" "/home/scpac/public_html/" "/home/sksayurvedicacin/public_html/" "/home/sksayurvedic/public_html/" "/home/sksgi/public_html/" "/home/sksmedicalcolleg/public_html/" "/home/sksps/public_html/" "/home/sksworldschool/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Nov 30 2024 04:13:15 server maldet(25184): {scan} file list completed in 12s, found 17595 files... Nov 30 2024 04:13:15 server maldet(25184): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Nov 30 2024 04:13:15 server maldet(25184): {scan} scan of (17595 files) in progress... Nov 30 2024 04:21:03 server maldet(25184): {scan} scan completed on : files 17595, malware hits 0, cleaned hits 0, time 480s Nov 30 2024 04:21:03 server maldet(25184): {scan} scan report saved, to view run: maldet --report 241130-0413.25184 Dec 01 2024 04:23:55 server maldet(24286): {update} checking for available updates... Dec 01 2024 04:23:56 server maldet(24286): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Dec 01 2024 04:23:56 server maldet(24286): {update} hashing install files and checking against server... Dec 01 2024 04:23:58 server maldet(24286): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Dec 01 2024 04:23:58 server maldet(24286): {update} latest version already installed. Dec 01 2024 04:24:00 server maldet(24451): {sigup} performing signature update check... Dec 01 2024 04:24:00 server maldet(24451): {sigup} local signature set is version 202411283582038 Dec 01 2024 04:24:00 server maldet(24451): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Dec 01 2024 04:24:00 server maldet(24451): {sigup} latest signature set already installed Dec 01 2024 04:24:01 server maldet(24565): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Dec 01 2024 04:24:02 server maldet(24565): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Dec 01 2024 04:24:02 server maldet(24565): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Dec 01 2024 04:24:02 server maldet(24565): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Dec 01 2024 04:24:02 server maldet(24565): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/advertisingindia/public_html/" "/home/bcetdgpac/public_html/" "/home/bengalhospital/public_html/" "/home/binsdgp/public_html/" "/home/dilseshaadi/public_html/" "/home/dpsbloomingbuds/public_html/" "/home/dpsdgp/public_html/" "/home/krishnaintl/public_html/" "/home/kxobgzmy/public_html/" "/home/myrara/public_html/" "/home/scpac/public_html/" "/home/sksayurvedicacin/public_html/" "/home/sksayurvedic/public_html/" "/home/sksgi/public_html/" "/home/sksmedicalcolleg/public_html/" "/home/sksps/public_html/" "/home/sksworldschool/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Dec 01 2024 04:25:00 server maldet(24565): {scan} file list completed in 58s, found 718 files... Dec 01 2024 04:25:00 server maldet(24565): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Dec 01 2024 04:25:00 server maldet(24565): {scan} scan of (718 files) in progress... Dec 01 2024 04:26:14 server maldet(24565): {scan} scan completed on : files 718, malware hits 0, cleaned hits 0, time 133s Dec 01 2024 04:26:14 server maldet(24565): {scan} scan report saved, to view run: maldet --report 241201-0424.24565 Dec 02 2024 03:39:13 server maldet(9188): {update} checking for available updates... Dec 02 2024 03:39:13 server maldet(9188): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Dec 02 2024 03:39:14 server maldet(9188): {update} hashing install files and checking against server... Dec 02 2024 03:39:14 server maldet(9188): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Dec 02 2024 03:39:14 server maldet(9188): {update} latest version already installed. Dec 02 2024 03:39:14 server maldet(9335): {sigup} performing signature update check... Dec 02 2024 03:39:14 server maldet(9335): {sigup} local signature set is version 202411283582038 Dec 02 2024 03:39:15 server maldet(9335): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Dec 02 2024 03:39:15 server maldet(9335): {sigup} new signature set 20241201128768 available Dec 02 2024 03:39:15 server maldet(9335): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Dec 02 2024 03:39:15 server maldet(9335): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Dec 02 2024 03:39:16 server maldet(9335): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Dec 02 2024 03:39:16 server maldet(9335): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Dec 02 2024 03:39:16 server maldet(9335): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Dec 02 2024 03:39:17 server maldet(9335): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Dec 02 2024 03:39:17 server maldet(9335): {sigup} verified md5sum of maldet-sigpack.tgz Dec 02 2024 03:39:17 server maldet(9335): {sigup} unpacked and installed maldet-sigpack.tgz Dec 02 2024 03:39:18 server maldet(9335): {sigup} verified md5sum of maldet-clean.tgz Dec 02 2024 03:39:18 server maldet(9335): {sigup} unpacked and installed maldet-clean.tgz Dec 02 2024 03:39:18 server maldet(9335): {sigup} signature set update completed Dec 02 2024 03:39:19 server maldet(9335): {sigup} 17638 signatures (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Dec 02 2024 03:39:21 server maldet(9604): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Dec 02 2024 03:39:22 server maldet(9604): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Dec 02 2024 03:39:22 server maldet(9604): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Dec 02 2024 03:39:22 server maldet(9604): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Dec 02 2024 03:39:22 server maldet(9604): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/advertisingindia/public_html/" "/home/bcetdgpac/public_html/" "/home/bengalhospital/public_html/" "/home/binsdgp/public_html/" "/home/dilseshaadi/public_html/" "/home/dpsbloomingbuds/public_html/" "/home/dpsdgp/public_html/" "/home/krishnaintl/public_html/" "/home/kxobgzmy/public_html/" "/home/myrara/public_html/" "/home/scpac/public_html/" "/home/sksayurvedicacin/public_html/" "/home/sksayurvedic/public_html/" "/home/sksgi/public_html/" "/home/sksmedicalcolleg/public_html/" "/home/sksps/public_html/" "/home/sksworldschool/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Dec 02 2024 03:39:54 server maldet(9604): {scan} file list completed in 32s, found 15859 files... Dec 02 2024 03:39:54 server maldet(9604): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Dec 02 2024 03:39:54 server maldet(9604): {scan} scan of (15859 files) in progress... Dec 02 2024 03:49:21 server maldet(9604): {scan} scan completed on : files 15859, malware hits 0, cleaned hits 0, time 600s Dec 02 2024 03:49:21 server maldet(9604): {scan} scan report saved, to view run: maldet --report 241202-0339.9604 Dec 03 2024 03:54:41 server maldet(27289): {update} checking for available updates... Dec 03 2024 03:54:42 server maldet(27289): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Dec 03 2024 03:54:42 server maldet(27289): {update} hashing install files and checking against server... Dec 03 2024 03:54:43 server maldet(27289): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Dec 03 2024 03:54:43 server maldet(27289): {update} latest version already installed. Dec 03 2024 03:54:43 server maldet(27430): {sigup} performing signature update check... Dec 03 2024 03:54:43 server maldet(27430): {sigup} local signature set is version 20241201128768 Dec 03 2024 03:54:43 server maldet(27430): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Dec 03 2024 03:54:43 server maldet(27430): {sigup} latest signature set already installed Dec 03 2024 03:54:44 server maldet(27549): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Dec 03 2024 03:54:44 server maldet(27549): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Dec 03 2024 03:54:44 server maldet(27549): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Dec 03 2024 03:54:44 server maldet(27549): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Dec 03 2024 03:54:44 server maldet(27549): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/advertisingindia/public_html/" "/home/bcetdgpac/public_html/" "/home/bengalhospital/public_html/" "/home/binsdgp/public_html/" "/home/dilseshaadi/public_html/" "/home/dpsbloomingbuds/public_html/" "/home/dpsdgp/public_html/" "/home/krishnaintl/public_html/" "/home/kxobgzmy/public_html/" "/home/myrara/public_html/" "/home/scpac/public_html/" "/home/sksayurvedicacin/public_html/" "/home/sksayurvedic/public_html/" "/home/sksgi/public_html/" "/home/sksmedicalcolleg/public_html/" "/home/sksps/public_html/" "/home/sksworldschool/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Dec 03 2024 03:55:04 server maldet(27549): {scan} file list completed in 20s, found 844 files... Dec 03 2024 03:55:04 server maldet(27549): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Dec 03 2024 03:55:04 server maldet(27549): {scan} scan of (844 files) in progress... Dec 03 2024 03:56:00 server maldet(27549): {hit} malware hit {CAV}Win.Trojan.Hide-1 found for /home/dpsbloomingbuds/public_html/radio.php Dec 03 2024 03:56:00 server maldet(27549): {scan} scan completed on : files 844, malware hits 1, cleaned hits 0, time 76s Dec 03 2024 03:56:00 server maldet(27549): {scan} scan report saved, to view run: maldet --report 241203-0354.27549 Dec 03 2024 03:56:00 server maldet(27549): {scan} quarantine is disabled! set quarantine_hits=1 in conf.maldet or to quarantine results run: maldet -q 241203-0354.27549 Dec 03 2024 03:56:01 server maldet(27549): {alert} sent scan report to kkumarclassic123@gmail.com Dec 04 2024 04:32:06 server maldet(15609): {update} checking for available updates... Dec 04 2024 04:32:06 server maldet(15609): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Dec 04 2024 04:32:06 server maldet(15609): {update} hashing install files and checking against server... Dec 04 2024 04:32:07 server maldet(15609): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Dec 04 2024 04:32:07 server maldet(15609): {update} latest version already installed. Dec 04 2024 04:32:07 server maldet(15751): {sigup} performing signature update check... Dec 04 2024 04:32:07 server maldet(15751): {sigup} local signature set is version 20241201128768 Dec 04 2024 04:32:07 server maldet(15751): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Dec 04 2024 04:32:07 server maldet(15751): {sigup} new signature set 20241204548533 available Dec 04 2024 04:32:07 server maldet(15751): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Dec 04 2024 04:32:08 server maldet(15751): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Dec 04 2024 04:32:08 server maldet(15751): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Dec 04 2024 04:32:08 server maldet(15751): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Dec 04 2024 04:32:09 server maldet(15751): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Dec 04 2024 04:32:09 server maldet(15751): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Dec 04 2024 04:32:09 server maldet(15751): {sigup} verified md5sum of maldet-sigpack.tgz Dec 04 2024 04:32:09 server maldet(15751): {sigup} unpacked and installed maldet-sigpack.tgz Dec 04 2024 04:32:09 server maldet(15751): {sigup} verified md5sum of maldet-clean.tgz Dec 04 2024 04:32:10 server maldet(15751): {sigup} unpacked and installed maldet-clean.tgz Dec 04 2024 04:32:10 server maldet(15751): {sigup} signature set update completed Dec 04 2024 04:32:10 server maldet(15751): {sigup} 17638 signatures (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Dec 04 2024 04:32:11 server maldet(16006): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Dec 04 2024 04:32:12 server maldet(16006): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Dec 04 2024 04:32:12 server maldet(16006): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Dec 04 2024 04:32:12 server maldet(16006): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Dec 04 2024 04:32:12 server maldet(16006): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/advertisingindia/public_html/" "/home/bcetdgpac/public_html/" "/home/bengalhospital/public_html/" "/home/binsdgp/public_html/" "/home/dilseshaadi/public_html/" "/home/dpsbloomingbuds/public_html/" "/home/dpsdgp/public_html/" "/home/krishnaintl/public_html/" "/home/kxobgzmy/public_html/" "/home/myrara/public_html/" "/home/scpac/public_html/" "/home/sksayurvedicacin/public_html/" "/home/sksayurvedic/public_html/" "/home/sksgi/public_html/" "/home/sksmedicalcolleg/public_html/" "/home/sksps/public_html/" "/home/sksworldschool/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Dec 04 2024 04:32:56 server maldet(16006): {scan} file list completed in 44s, found 9355 files... Dec 04 2024 04:32:56 server maldet(16006): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Dec 04 2024 04:32:56 server maldet(16006): {scan} scan of (9355 files) in progress... Dec 04 2024 04:35:42 server maldet(16006): {scan} scan completed on : files 9355, malware hits 0, cleaned hits 0, time 210s Dec 04 2024 04:35:42 server maldet(16006): {scan} scan report saved, to view run: maldet --report 241204-0432.16006 Dec 05 2024 03:49:14 server maldet(30098): {update} checking for available updates... Dec 05 2024 03:49:14 server maldet(30098): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Dec 05 2024 03:49:15 server maldet(30098): {update} hashing install files and checking against server... Dec 05 2024 03:49:15 server maldet(30098): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Dec 05 2024 03:49:15 server maldet(30098): {update} latest version already installed. Dec 05 2024 03:49:15 server maldet(30922): {sigup} performing signature update check... Dec 05 2024 03:49:15 server maldet(30922): {sigup} local signature set is version 20241204548533 Dec 05 2024 03:49:16 server maldet(30922): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Dec 05 2024 03:49:16 server maldet(30922): {sigup} latest signature set already installed Dec 05 2024 03:49:16 server maldet(31247): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Dec 05 2024 03:49:16 server maldet(31247): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Dec 05 2024 03:49:16 server maldet(31247): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Dec 05 2024 03:49:16 server maldet(31247): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Dec 05 2024 03:49:16 server maldet(31247): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/advertisingindia/public_html/" "/home/bcetdgpac/public_html/" "/home/bengalhospital/public_html/" "/home/binsdgp/public_html/" "/home/dilseshaadi/public_html/" "/home/dpsbloomingbuds/public_html/" "/home/dpsdgp/public_html/" "/home/krishnaintl/public_html/" "/home/kxobgzmy/public_html/" "/home/myrara/public_html/" "/home/scpac/public_html/" "/home/sksayurvedicacin/public_html/" "/home/sksayurvedic/public_html/" "/home/sksgi/public_html/" "/home/sksmedicalcolleg/public_html/" "/home/sksps/public_html/" "/home/sksworldschool/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Dec 05 2024 03:49:33 server maldet(31247): {scan} file list completed in 17s, found 4208 files... Dec 05 2024 03:49:33 server maldet(31247): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Dec 05 2024 03:49:33 server maldet(31247): {scan} scan of (4208 files) in progress... Dec 05 2024 03:51:24 server maldet(31247): {hit} malware hit {CAV}Win.Trojan.Hide-1 found for /home/dpsbloomingbuds/public_html/radio/function.php Dec 05 2024 03:51:24 server maldet(31247): {hit} malware hit {HEX}php.nested.base64.652 found for /home/dpsbloomingbuds/public_html/wp-content/plugins/ziuxkuck/0x1949.php Dec 05 2024 03:51:24 server maldet(31247): {scan} scan completed on : files 4208, malware hits 2, cleaned hits 0, time 128s Dec 05 2024 03:51:24 server maldet(31247): {scan} scan report saved, to view run: maldet --report 241205-0349.31247 Dec 05 2024 03:51:24 server maldet(31247): {scan} quarantine is disabled! set quarantine_hits=1 in conf.maldet or to quarantine results run: maldet -q 241205-0349.31247 Dec 05 2024 03:51:24 server maldet(31247): {alert} sent scan report to kkumarclassic123@gmail.com Dec 06 2024 03:56:53 server maldet(639): {update} checking for available updates... Dec 06 2024 03:56:54 server maldet(639): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Dec 06 2024 03:56:54 server maldet(639): {update} hashing install files and checking against server... Dec 06 2024 03:56:54 server maldet(639): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Dec 06 2024 03:56:54 server maldet(639): {update} latest version already installed. Dec 06 2024 03:56:54 server maldet(779): {sigup} performing signature update check... Dec 06 2024 03:56:54 server maldet(779): {sigup} local signature set is version 20241204548533 Dec 06 2024 03:56:55 server maldet(779): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Dec 06 2024 03:56:55 server maldet(779): {sigup} latest signature set already installed Dec 06 2024 03:56:55 server maldet(912): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Dec 06 2024 03:56:55 server maldet(912): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Dec 06 2024 03:56:55 server maldet(912): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Dec 06 2024 03:56:55 server maldet(912): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Dec 06 2024 03:56:55 server maldet(912): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/advertisingindia/public_html/" "/home/bcetdgpac/public_html/" "/home/bengalhospital/public_html/" "/home/binsdgp/public_html/" "/home/dilseshaadi/public_html/" "/home/dpsbloomingbuds/public_html/" "/home/dpsdgp/public_html/" "/home/krishnaintl/public_html/" "/home/kxobgzmy/public_html/" "/home/myrara/public_html/" "/home/scpac/public_html/" "/home/sksayurvedicacin/public_html/" "/home/sksayurvedic/public_html/" "/home/sksgi/public_html/" "/home/sksmedicalcolleg/public_html/" "/home/sksps/public_html/" "/home/sksworldschool/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Dec 06 2024 03:57:20 server maldet(912): {scan} file list completed in 25s, found 11534 files... Dec 06 2024 03:57:20 server maldet(912): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Dec 06 2024 03:57:20 server maldet(912): {scan} scan of (11534 files) in progress... Dec 06 2024 04:04:39 server maldet(912): {scan} scan completed on : files 11534, malware hits 0, cleaned hits 0, time 464s Dec 06 2024 04:04:39 server maldet(912): {scan} scan report saved, to view run: maldet --report 241206-0356.912 Dec 07 2024 03:56:49 server maldet(8074): {update} checking for available updates... Dec 07 2024 03:56:49 server maldet(8074): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Dec 07 2024 03:56:50 server maldet(8074): {update} hashing install files and checking against server... Dec 07 2024 03:56:50 server maldet(8074): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Dec 07 2024 03:56:50 server maldet(8074): {update} latest version already installed. Dec 07 2024 03:56:50 server maldet(8212): {sigup} performing signature update check... Dec 07 2024 03:56:50 server maldet(8212): {sigup} local signature set is version 20241204548533 Dec 07 2024 03:56:50 server maldet(8212): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Dec 07 2024 03:56:50 server maldet(8212): {sigup} new signature set 20241207552742 available Dec 07 2024 03:56:50 server maldet(8212): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Dec 07 2024 03:56:51 server maldet(8212): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Dec 07 2024 03:56:51 server maldet(8212): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Dec 07 2024 03:56:51 server maldet(8212): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Dec 07 2024 03:56:51 server maldet(8212): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Dec 07 2024 03:56:52 server maldet(8212): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Dec 07 2024 03:56:52 server maldet(8212): {sigup} verified md5sum of maldet-sigpack.tgz Dec 07 2024 03:56:52 server maldet(8212): {sigup} unpacked and installed maldet-sigpack.tgz Dec 07 2024 03:56:52 server maldet(8212): {sigup} verified md5sum of maldet-clean.tgz Dec 07 2024 03:56:52 server maldet(8212): {sigup} unpacked and installed maldet-clean.tgz Dec 07 2024 03:56:52 server maldet(8212): {sigup} signature set update completed Dec 07 2024 03:56:52 server maldet(8212): {sigup} 17638 signatures (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Dec 07 2024 03:56:52 server maldet(8447): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Dec 07 2024 03:56:52 server maldet(8447): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Dec 07 2024 03:56:52 server maldet(8447): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Dec 07 2024 03:56:52 server maldet(8447): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Dec 07 2024 03:56:52 server maldet(8447): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/advertisingindia/public_html/" "/home/bcetdgpac/public_html/" "/home/bengalhospital/public_html/" "/home/binsdgp/public_html/" "/home/dilseshaadi/public_html/" "/home/dpsbloomingbuds/public_html/" "/home/dpsdgp/public_html/" "/home/krishnaintl/public_html/" "/home/kxobgzmy/public_html/" "/home/myrara/public_html/" "/home/scpac/public_html/" "/home/sksayurvedicacin/public_html/" "/home/sksayurvedic/public_html/" "/home/sksgi/public_html/" "/home/sksmedicalcolleg/public_html/" "/home/sksps/public_html/" "/home/sksworldschool/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Dec 07 2024 03:57:15 server maldet(8447): {scan} file list completed in 23s, found 646 files... Dec 07 2024 03:57:15 server maldet(8447): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Dec 07 2024 03:57:15 server maldet(8447): {scan} scan of (646 files) in progress... Dec 07 2024 03:57:44 server maldet(8447): {scan} scan completed on : files 646, malware hits 0, cleaned hits 0, time 52s Dec 07 2024 03:57:44 server maldet(8447): {scan} scan report saved, to view run: maldet --report 241207-0356.8447 Dec 08 2024 03:55:37 server maldet(22641): {update} checking for available updates... Dec 08 2024 03:55:37 server maldet(22641): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Dec 08 2024 03:55:37 server maldet(22641): {update} hashing install files and checking against server... Dec 08 2024 03:55:37 server maldet(22641): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Dec 08 2024 03:55:37 server maldet(22641): {update} latest version already installed. Dec 08 2024 03:55:37 server maldet(22778): {sigup} performing signature update check... Dec 08 2024 03:55:38 server maldet(22778): {sigup} local signature set is version 20241207552742 Dec 08 2024 03:55:38 server maldet(22778): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Dec 08 2024 03:55:39 server maldet(22778): {sigup} latest signature set already installed Dec 08 2024 03:55:39 server maldet(22916): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Dec 08 2024 03:55:40 server maldet(22916): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Dec 08 2024 03:55:40 server maldet(22916): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Dec 08 2024 03:55:40 server maldet(22916): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Dec 08 2024 03:55:40 server maldet(22916): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/advertisingindia/public_html/" "/home/bcetdgpac/public_html/" "/home/bengalhospital/public_html/" "/home/binsdgp/public_html/" "/home/dilseshaadi/public_html/" "/home/dpsbloomingbuds/public_html/" "/home/dpsdgp/public_html/" "/home/krishnaintl/public_html/" "/home/kxobgzmy/public_html/" "/home/myrara/public_html/" "/home/scpac/public_html/" "/home/sksayurvedicacin/public_html/" "/home/sksayurvedic/public_html/" "/home/sksgi/public_html/" "/home/sksmedicalcolleg/public_html/" "/home/sksps/public_html/" "/home/sksworldschool/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Dec 08 2024 03:56:03 server maldet(22916): {scan} file list completed in 23s, found 2204 files... Dec 08 2024 03:56:03 server maldet(22916): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Dec 08 2024 03:56:03 server maldet(22916): {scan} scan of (2204 files) in progress... Dec 08 2024 03:57:24 server maldet(22916): {scan} scan completed on : files 2204, malware hits 0, cleaned hits 0, time 105s Dec 08 2024 03:57:24 server maldet(22916): {scan} scan report saved, to view run: maldet --report 241208-0355.22916 Dec 09 2024 03:31:33 server maldet(5322): {update} checking for available updates... Dec 09 2024 03:31:33 server maldet(5322): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Dec 09 2024 03:31:33 server maldet(5322): {update} hashing install files and checking against server... Dec 09 2024 03:31:34 server maldet(5322): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Dec 09 2024 03:31:34 server maldet(5322): {update} latest version already installed. Dec 09 2024 03:31:34 server maldet(5459): {sigup} performing signature update check... Dec 09 2024 03:31:34 server maldet(5459): {sigup} local signature set is version 20241207552742 Dec 09 2024 03:31:35 server maldet(5459): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Dec 09 2024 03:31:36 server maldet(5459): {sigup} latest signature set already installed Dec 09 2024 03:31:36 server maldet(5578): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Dec 09 2024 03:31:38 server maldet(5578): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Dec 09 2024 03:31:38 server maldet(5578): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Dec 09 2024 03:31:38 server maldet(5578): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Dec 09 2024 03:31:38 server maldet(5578): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/advertisingindia/public_html/" "/home/bcetdgpac/public_html/" "/home/bengalhospital/public_html/" "/home/binsdgp/public_html/" "/home/dilseshaadi/public_html/" "/home/dpsbloomingbuds/public_html/" "/home/dpsdgp/public_html/" "/home/krishnaintl/public_html/" "/home/kxobgzmy/public_html/" "/home/myrara/public_html/" "/home/scpac/public_html/" "/home/sksayurvedicacin/public_html/" "/home/sksayurvedic/public_html/" "/home/sksgi/public_html/" "/home/sksmedicalcolleg/public_html/" "/home/sksps/public_html/" "/home/sksworldschool/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Dec 09 2024 03:32:01 server maldet(5578): {scan} file list completed in 23s, found 1313 files... Dec 09 2024 03:32:01 server maldet(5578): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Dec 09 2024 03:32:01 server maldet(5578): {scan} scan of (1313 files) in progress... Dec 09 2024 03:32:35 server maldet(5578): {scan} scan completed on : files 1313, malware hits 0, cleaned hits 0, time 59s Dec 09 2024 03:32:35 server maldet(5578): {scan} scan report saved, to view run: maldet --report 241209-0331.5578 Dec 10 2024 04:07:49 server maldet(6912): {update} checking for available updates... Dec 10 2024 04:07:49 server maldet(6912): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Dec 10 2024 04:07:49 server maldet(6912): {update} hashing install files and checking against server... Dec 10 2024 04:07:50 server maldet(6912): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Dec 10 2024 04:07:50 server maldet(6912): {update} latest version already installed. Dec 10 2024 04:07:50 server maldet(7052): {sigup} performing signature update check... Dec 10 2024 04:07:50 server maldet(7052): {sigup} local signature set is version 20241207552742 Dec 10 2024 04:07:50 server maldet(7052): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Dec 10 2024 04:07:50 server maldet(7052): {sigup} new signature set 20241210573652 available Dec 10 2024 04:07:50 server maldet(7052): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Dec 10 2024 04:07:51 server maldet(7052): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Dec 10 2024 04:07:51 server maldet(7052): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Dec 10 2024 04:07:51 server maldet(7052): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Dec 10 2024 04:07:51 server maldet(7052): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Dec 10 2024 04:07:51 server maldet(7052): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Dec 10 2024 04:07:51 server maldet(7052): {sigup} verified md5sum of maldet-sigpack.tgz Dec 10 2024 04:07:52 server maldet(7052): {sigup} unpacked and installed maldet-sigpack.tgz Dec 10 2024 04:07:52 server maldet(7052): {sigup} verified md5sum of maldet-clean.tgz Dec 10 2024 04:07:52 server maldet(7052): {sigup} unpacked and installed maldet-clean.tgz Dec 10 2024 04:07:52 server maldet(7052): {sigup} signature set update completed Dec 10 2024 04:07:52 server maldet(7052): {sigup} 17638 signatures (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Dec 10 2024 04:07:52 server maldet(7289): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Dec 10 2024 04:07:52 server maldet(7289): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Dec 10 2024 04:07:52 server maldet(7289): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Dec 10 2024 04:07:52 server maldet(7289): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Dec 10 2024 04:07:52 server maldet(7289): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/advertisingindia/public_html/" "/home/bcetdgpac/public_html/" "/home/bengalhospital/public_html/" "/home/binsdgp/public_html/" "/home/dilseshaadi/public_html/" "/home/dpsbloomingbuds/public_html/" "/home/dpsdgp/public_html/" "/home/krishnaintl/public_html/" "/home/kxobgzmy/public_html/" "/home/myrara/public_html/" "/home/scpac/public_html/" "/home/sksayurvedicacin/public_html/" "/home/sksayurvedic/public_html/" "/home/sksgi/public_html/" "/home/sksmedicalcolleg/public_html/" "/home/sksps/public_html/" "/home/sksworldschool/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Dec 10 2024 04:08:20 server maldet(7289): {scan} file list completed in 28s, found 3409 files... Dec 10 2024 04:08:20 server maldet(7289): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Dec 10 2024 04:08:20 server maldet(7289): {scan} scan of (3409 files) in progress... Dec 10 2024 04:10:29 server maldet(7289): {scan} scan completed on : files 3409, malware hits 0, cleaned hits 0, time 157s Dec 10 2024 04:10:29 server maldet(7289): {scan} scan report saved, to view run: maldet --report 241210-0407.7289 Dec 11 2024 03:44:10 server maldet(7537): {update} checking for available updates... Dec 11 2024 03:44:11 server maldet(7537): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Dec 11 2024 03:44:11 server maldet(7537): {update} hashing install files and checking against server... Dec 11 2024 03:44:11 server maldet(7537): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Dec 11 2024 03:44:11 server maldet(7537): {update} latest version already installed. Dec 11 2024 03:44:11 server maldet(7673): {sigup} performing signature update check... Dec 11 2024 03:44:11 server maldet(7673): {sigup} local signature set is version 20241210573652 Dec 11 2024 03:44:12 server maldet(7673): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Dec 11 2024 03:44:12 server maldet(7673): {sigup} latest signature set already installed Dec 11 2024 03:44:12 server maldet(7787): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Dec 11 2024 03:44:12 server maldet(7787): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Dec 11 2024 03:44:12 server maldet(7787): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Dec 11 2024 03:44:12 server maldet(7787): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Dec 11 2024 03:44:12 server maldet(7787): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/advertisingindia/public_html/" "/home/bcetdgpac/public_html/" "/home/bengalhospital/public_html/" "/home/binsdgp/public_html/" "/home/dilseshaadi/public_html/" "/home/dpsbloomingbuds/public_html/" "/home/dpsdgp/public_html/" "/home/krishnaintl/public_html/" "/home/kxobgzmy/public_html/" "/home/myrara/public_html/" "/home/scpac/public_html/" "/home/sksayurvedicacin/public_html/" "/home/sksayurvedic/public_html/" "/home/sksgi/public_html/" "/home/sksmedicalcolleg/public_html/" "/home/sksps/public_html/" "/home/sksworldschool/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Dec 11 2024 03:44:29 server maldet(7787): {scan} file list completed in 17s, found 6478 files... Dec 11 2024 03:44:29 server maldet(7787): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Dec 11 2024 03:44:29 server maldet(7787): {scan} scan of (6478 files) in progress... Dec 11 2024 03:46:46 server maldet(7787): {scan} scan completed on : files 6478, malware hits 0, cleaned hits 0, time 154s Dec 11 2024 03:46:46 server maldet(7787): {scan} scan report saved, to view run: maldet --report 241211-0344.7787 Dec 12 2024 04:13:43 server maldet(25935): {update} checking for available updates... Dec 12 2024 04:13:44 server maldet(25935): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Dec 12 2024 04:13:44 server maldet(25935): {update} hashing install files and checking against server... Dec 12 2024 04:13:44 server maldet(25935): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Dec 12 2024 04:13:44 server maldet(25935): {update} latest version already installed. Dec 12 2024 04:13:44 server maldet(26070): {sigup} performing signature update check... Dec 12 2024 04:13:44 server maldet(26070): {sigup} local signature set is version 20241210573652 Dec 12 2024 04:13:45 server maldet(26070): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Dec 12 2024 04:13:45 server maldet(26070): {sigup} latest signature set already installed Dec 12 2024 04:13:45 server maldet(26186): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Dec 12 2024 04:13:45 server maldet(26186): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Dec 12 2024 04:13:45 server maldet(26186): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Dec 12 2024 04:13:45 server maldet(26186): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Dec 12 2024 04:13:45 server maldet(26186): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/advertisingindia/public_html/" "/home/bcetdgpac/public_html/" "/home/bengalhospital/public_html/" "/home/binsdgp/public_html/" "/home/dilseshaadi/public_html/" "/home/dpsbloomingbuds/public_html/" "/home/dpsdgp/public_html/" "/home/krishnaintl/public_html/" "/home/kxobgzmy/public_html/" "/home/myrara/public_html/" "/home/scpac/public_html/" "/home/sksayurvedicacin/public_html/" "/home/sksayurvedic/public_html/" "/home/sksgi/public_html/" "/home/sksmedicalcolleg/public_html/" "/home/sksps/public_html/" "/home/sksworldschool/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Dec 12 2024 04:13:57 server maldet(26186): {scan} file list completed in 12s, found 1937 files... Dec 12 2024 04:13:57 server maldet(26186): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Dec 12 2024 04:13:57 server maldet(26186): {scan} scan of (1937 files) in progress... Dec 12 2024 04:14:53 server maldet(26186): {scan} scan completed on : files 1937, malware hits 0, cleaned hits 0, time 68s Dec 12 2024 04:14:53 server maldet(26186): {scan} scan report saved, to view run: maldet --report 241212-0413.26186 Dec 13 2024 03:48:23 server maldet(17696): {update} checking for available updates... Dec 13 2024 03:48:24 server maldet(17696): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Dec 13 2024 03:48:24 server maldet(17696): {update} hashing install files and checking against server... Dec 13 2024 03:48:24 server maldet(17696): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Dec 13 2024 03:48:24 server maldet(17696): {update} latest version already installed. Dec 13 2024 03:48:24 server maldet(17830): {sigup} performing signature update check... Dec 13 2024 03:48:24 server maldet(17830): {sigup} local signature set is version 20241210573652 Dec 13 2024 03:48:25 server maldet(17830): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Dec 13 2024 03:48:27 server maldet(17830): {sigup} new signature set 202412131329178 available Dec 13 2024 03:48:27 server maldet(17830): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Dec 13 2024 03:48:27 server maldet(17830): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Dec 13 2024 03:48:27 server maldet(17830): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Dec 13 2024 03:48:27 server maldet(17830): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Dec 13 2024 03:48:28 server maldet(17830): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Dec 13 2024 03:48:28 server maldet(17830): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Dec 13 2024 03:48:28 server maldet(17830): {sigup} verified md5sum of maldet-sigpack.tgz Dec 13 2024 03:48:28 server maldet(17830): {sigup} unpacked and installed maldet-sigpack.tgz Dec 13 2024 03:48:28 server maldet(17830): {sigup} verified md5sum of maldet-clean.tgz Dec 13 2024 03:48:28 server maldet(17830): {sigup} unpacked and installed maldet-clean.tgz Dec 13 2024 03:48:28 server maldet(17830): {sigup} signature set update completed Dec 13 2024 03:48:28 server maldet(17830): {sigup} 17638 signatures (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Dec 13 2024 03:48:29 server maldet(18064): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Dec 13 2024 03:48:29 server maldet(18064): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Dec 13 2024 03:48:29 server maldet(18064): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Dec 13 2024 03:48:29 server maldet(18064): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Dec 13 2024 03:48:29 server maldet(18064): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/advertisingindia/public_html/" "/home/bcetdgpac/public_html/" "/home/bengalhospital/public_html/" "/home/binsdgp/public_html/" "/home/dilseshaadi/public_html/" "/home/dpsbloomingbuds/public_html/" "/home/dpsdgp/public_html/" "/home/krishnaintl/public_html/" "/home/kxobgzmy/public_html/" "/home/myrara/public_html/" "/home/scpac/public_html/" "/home/sksayurvedicacin/public_html/" "/home/sksayurvedic/public_html/" "/home/sksgi/public_html/" "/home/sksmedicalcolleg/public_html/" "/home/sksps/public_html/" "/home/sksworldschool/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Dec 13 2024 03:48:54 server maldet(18064): {scan} file list completed in 25s, found 2522 files... Dec 13 2024 03:48:54 server maldet(18064): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Dec 13 2024 03:48:54 server maldet(18064): {scan} scan of (2522 files) in progress... Dec 13 2024 03:50:17 server maldet(18064): {scan} scan completed on : files 2522, malware hits 0, cleaned hits 0, time 108s Dec 13 2024 03:50:17 server maldet(18064): {scan} scan report saved, to view run: maldet --report 241213-0348.18064 Dec 14 2024 03:43:20 server maldet(4819): {update} checking for available updates... Dec 14 2024 03:43:20 server maldet(4819): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Dec 14 2024 03:43:20 server maldet(4819): {update} hashing install files and checking against server... Dec 14 2024 03:43:21 server maldet(4819): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Dec 14 2024 03:43:21 server maldet(4819): {update} latest version already installed. Dec 14 2024 03:43:21 server maldet(4955): {sigup} performing signature update check... Dec 14 2024 03:43:21 server maldet(4955): {sigup} local signature set is version 202412131329178 Dec 14 2024 03:43:21 server maldet(4955): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Dec 14 2024 03:43:21 server maldet(4955): {sigup} latest signature set already installed Dec 14 2024 03:43:21 server maldet(5069): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Dec 14 2024 03:43:22 server maldet(5069): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Dec 14 2024 03:43:22 server maldet(5069): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Dec 14 2024 03:43:22 server maldet(5069): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Dec 14 2024 03:43:22 server maldet(5069): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/advertisingindia/public_html/" "/home/bcetdgpac/public_html/" "/home/bengalhospital/public_html/" "/home/binsdgp/public_html/" "/home/dilseshaadi/public_html/" "/home/dpsbloomingbuds/public_html/" "/home/dpsdgp/public_html/" "/home/krishnaintl/public_html/" "/home/kxobgzmy/public_html/" "/home/myrara/public_html/" "/home/scpac/public_html/" "/home/sksayurvedicacin/public_html/" "/home/sksayurvedic/public_html/" "/home/sksgi/public_html/" "/home/sksmedicalcolleg/public_html/" "/home/sksps/public_html/" "/home/sksworldschool/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Dec 14 2024 03:43:38 server maldet(5069): {scan} file list completed in 16s, found 970 files... Dec 14 2024 03:43:38 server maldet(5069): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Dec 14 2024 03:43:38 server maldet(5069): {scan} scan of (970 files) in progress... Dec 14 2024 03:44:17 server maldet(5069): {scan} scan completed on : files 970, malware hits 0, cleaned hits 0, time 54s Dec 14 2024 03:44:17 server maldet(5069): {scan} scan report saved, to view run: maldet --report 241214-0343.5069 Dec 15 2024 03:20:25 server maldet(30215): {update} checking for available updates... Dec 15 2024 03:20:26 server maldet(30215): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Dec 15 2024 03:20:26 server maldet(30215): {update} hashing install files and checking against server... Dec 15 2024 03:20:27 server maldet(30215): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Dec 15 2024 03:20:27 server maldet(30215): {update} latest version already installed. Dec 15 2024 03:20:27 server maldet(30358): {sigup} performing signature update check... Dec 15 2024 03:20:27 server maldet(30358): {sigup} local signature set is version 202412131329178 Dec 15 2024 03:20:27 server maldet(30358): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Dec 15 2024 03:20:27 server maldet(30358): {sigup} latest signature set already installed Dec 15 2024 03:20:28 server maldet(30471): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Dec 15 2024 03:20:28 server maldet(30471): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Dec 15 2024 03:20:28 server maldet(30471): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Dec 15 2024 03:20:28 server maldet(30471): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Dec 15 2024 03:20:28 server maldet(30471): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/advertisingindia/public_html/" "/home/bcetdgpac/public_html/" "/home/bengalhospital/public_html/" "/home/binsdgp/public_html/" "/home/dilseshaadi/public_html/" "/home/dpsbloomingbuds/public_html/" "/home/dpsdgp/public_html/" "/home/krishnaintl/public_html/" "/home/kxobgzmy/public_html/" "/home/myrara/public_html/" "/home/scpac/public_html/" "/home/sksayurvedicacin/public_html/" "/home/sksayurvedic/public_html/" "/home/sksgi/public_html/" "/home/sksmedicalcolleg/public_html/" "/home/sksps/public_html/" "/home/sksworldschool/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Dec 15 2024 03:20:45 server maldet(30471): {scan} file list completed in 17s, found 725 files... Dec 15 2024 03:20:46 server maldet(30471): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Dec 15 2024 03:20:46 server maldet(30471): {scan} scan of (725 files) in progress... Dec 15 2024 03:21:15 server maldet(30471): {scan} scan completed on : files 725, malware hits 0, cleaned hits 0, time 47s Dec 15 2024 03:21:15 server maldet(30471): {scan} scan report saved, to view run: maldet --report 241215-0320.30471 Dec 16 2024 04:26:01 server maldet(15876): {update} checking for available updates... Dec 16 2024 04:26:02 server maldet(15876): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Dec 16 2024 04:26:02 server maldet(15876): {update} hashing install files and checking against server... Dec 16 2024 04:26:03 server maldet(15876): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Dec 16 2024 04:26:03 server maldet(15876): {update} latest version already installed. Dec 16 2024 04:26:03 server maldet(16045): {sigup} performing signature update check... Dec 16 2024 04:26:03 server maldet(16045): {sigup} local signature set is version 202412131329178 Dec 16 2024 04:26:04 server maldet(16045): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Dec 16 2024 04:26:04 server maldet(16045): {sigup} new signature set 20241216540968 available Dec 16 2024 04:26:04 server maldet(16045): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Dec 16 2024 04:26:04 server maldet(16045): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Dec 16 2024 04:26:04 server maldet(16045): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Dec 16 2024 04:26:05 server maldet(16045): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Dec 16 2024 04:26:05 server maldet(16045): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Dec 16 2024 04:26:05 server maldet(16045): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Dec 16 2024 04:26:05 server maldet(16045): {sigup} verified md5sum of maldet-sigpack.tgz Dec 16 2024 04:26:06 server maldet(16045): {sigup} unpacked and installed maldet-sigpack.tgz Dec 16 2024 04:26:06 server maldet(16045): {sigup} verified md5sum of maldet-clean.tgz Dec 16 2024 04:26:06 server maldet(16045): {sigup} unpacked and installed maldet-clean.tgz Dec 16 2024 04:26:06 server maldet(16045): {sigup} signature set update completed Dec 16 2024 04:26:06 server maldet(16045): {sigup} 17638 signatures (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Dec 16 2024 04:26:06 server maldet(16281): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Dec 16 2024 04:26:07 server maldet(16281): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Dec 16 2024 04:26:07 server maldet(16281): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Dec 16 2024 04:26:07 server maldet(16281): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Dec 16 2024 04:26:07 server maldet(16281): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/advertisingindia/public_html/" "/home/bcetdgpac/public_html/" "/home/bengalhospital/public_html/" "/home/binsdgp/public_html/" "/home/dilseshaadi/public_html/" "/home/dpsbloomingbudsa/public_html/" "/home/dpsbloomingbuds/public_html/" "/home/dpsdgp/public_html/" "/home/krishnaintl/public_html/" "/home/kxobgzmy/public_html/" "/home/myrara/public_html/" "/home/scpac/public_html/" "/home/sksayurvedicacin/public_html/" "/home/sksayurvedic/public_html/" "/home/sksgi/public_html/" "/home/sksmedicalcolleg/public_html/" "/home/sksps/public_html/" "/home/sksworldschool/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Dec 16 2024 04:26:34 server maldet(16281): {scan} file list completed in 27s, found 11495 files... Dec 16 2024 04:26:34 server maldet(16281): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Dec 16 2024 04:26:34 server maldet(16281): {scan} scan of (11495 files) in progress... Dec 16 2024 04:32:48 server maldet(16281): {scan} scan completed on : files 11495, malware hits 0, cleaned hits 0, time 402s Dec 16 2024 04:32:48 server maldet(16281): {scan} scan report saved, to view run: maldet --report 241216-0426.16281 Dec 17 2024 04:19:35 server maldet(22389): {update} checking for available updates... Dec 17 2024 04:19:40 server maldet(22389): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Dec 17 2024 04:19:40 server maldet(22389): {update} hashing install files and checking against server... Dec 17 2024 04:19:44 server maldet(22389): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Dec 17 2024 04:19:44 server maldet(22389): {update} latest version already installed. Dec 17 2024 04:19:47 server maldet(22697): {sigup} performing signature update check... Dec 17 2024 04:19:48 server maldet(22697): {sigup} local signature set is version 20241216540968 Dec 17 2024 04:19:50 server maldet(22697): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Dec 17 2024 04:19:51 server maldet(22697): {sigup} latest signature set already installed Dec 17 2024 04:19:55 server maldet(22838): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Dec 17 2024 04:19:58 server maldet(22838): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Dec 17 2024 04:19:59 server maldet(22838): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Dec 17 2024 04:20:00 server maldet(22838): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Dec 17 2024 04:20:01 server maldet(22838): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/advertisingindia/public_html/" "/home/bcetdgpac/public_html/" "/home/bengalhospital/public_html/" "/home/binsdgp/public_html/" "/home/dilseshaadi/public_html/" "/home/dpsbloomingbudsa/public_html/" "/home/dpsbloomingbuds/public_html/" "/home/dpsdgp/public_html/" "/home/krishnaintl/public_html/" "/home/kxobgzmy/public_html/" "/home/myrara/public_html/" "/home/scpac/public_html/" "/home/sksayurvedicacin/public_html/" "/home/sksayurvedic/public_html/" "/home/sksgi/public_html/" "/home/sksmedicalcolleg/public_html/" "/home/sksps/public_html/" "/home/sksworldschool/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Dec 17 2024 04:27:47 server maldet(22838): {scan} file list completed in 466s, found 7749 files... Dec 17 2024 04:27:47 server maldet(22838): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Dec 17 2024 04:27:47 server maldet(22838): {scan} scan of (7749 files) in progress... Dec 17 2024 04:44:08 server maldet(22838): {hit} malware hit {HEX}php.cmdshell.egyspider.244 found for /home/dpsbloomingbuds/public_html/wp-includes/IXR/levi.php Dec 17 2024 04:44:10 server maldet(22838): {scan} scan completed on : files 7749, malware hits 1, cleaned hits 0, time 1454s Dec 17 2024 04:44:10 server maldet(22838): {scan} scan report saved, to view run: maldet --report 241217-0419.22838 Dec 17 2024 04:44:11 server maldet(22838): {scan} quarantine is disabled! set quarantine_hits=1 in conf.maldet or to quarantine results run: maldet -q 241217-0419.22838 Dec 17 2024 04:44:12 server maldet(22838): {alert} sent scan report to kkumarclassic123@gmail.com Dec 18 2024 03:58:03 server maldet(24064): {update} checking for available updates... Dec 18 2024 03:58:03 server maldet(24064): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Dec 18 2024 03:58:03 server maldet(24064): {update} hashing install files and checking against server... Dec 18 2024 03:58:03 server maldet(24064): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Dec 18 2024 03:58:03 server maldet(24064): {update} latest version already installed. Dec 18 2024 03:58:03 server maldet(24218): {sigup} performing signature update check... Dec 18 2024 03:58:03 server maldet(24218): {sigup} local signature set is version 20241216540968 Dec 18 2024 03:58:04 server maldet(24218): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Dec 18 2024 03:58:04 server maldet(24218): {sigup} latest signature set already installed Dec 18 2024 03:58:04 server maldet(24336): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Dec 18 2024 03:58:04 server maldet(24336): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Dec 18 2024 03:58:04 server maldet(24336): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Dec 18 2024 03:58:04 server maldet(24336): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Dec 18 2024 03:58:04 server maldet(24336): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/advertisingindia/public_html/" "/home/bcetdgpac/public_html/" "/home/bengalhospital/public_html/" "/home/binsdgp/public_html/" "/home/dilseshaadi/public_html/" "/home/dpsbloomingbudsa/public_html/" "/home/dpsbloomingbuds/public_html/" "/home/dpsdgp/public_html/" "/home/krishnaintl/public_html/" "/home/kxobgzmy/public_html/" "/home/myrara/public_html/" "/home/scpac/public_html/" "/home/sksayurvedicacin/public_html/" "/home/sksayurvedic/public_html/" "/home/sksgi/public_html/" "/home/sksmedicalcolleg/public_html/" "/home/sksps/public_html/" "/home/sksworldschool/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Dec 18 2024 03:58:14 server maldet(24336): {scan} file list completed in 10s, found 12415 files... Dec 18 2024 03:58:14 server maldet(24336): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Dec 18 2024 03:58:14 server maldet(24336): {scan} scan of (12415 files) in progress... Dec 18 2024 04:03:27 server maldet(24336): {scan} scan completed on : files 12415, malware hits 0, cleaned hits 0, time 323s Dec 18 2024 04:03:27 server maldet(24336): {scan} scan report saved, to view run: maldet --report 241218-0358.24336 Dec 19 2024 04:00:17 server maldet(6256): {update} checking for available updates... Dec 19 2024 04:00:18 server maldet(6256): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Dec 19 2024 04:00:18 server maldet(6256): {update} hashing install files and checking against server... Dec 19 2024 04:00:18 server maldet(6256): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Dec 19 2024 04:00:18 server maldet(6256): {update} latest version already installed. Dec 19 2024 04:00:18 server maldet(6392): {sigup} performing signature update check... Dec 19 2024 04:00:18 server maldet(6392): {sigup} local signature set is version 20241216540968 Dec 19 2024 04:00:19 server maldet(6392): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Dec 19 2024 04:00:20 server maldet(6392): {sigup} latest signature set already installed Dec 19 2024 04:00:21 server maldet(6507): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Dec 19 2024 04:00:22 server maldet(6507): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Dec 19 2024 04:00:22 server maldet(6507): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Dec 19 2024 04:00:22 server maldet(6507): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Dec 19 2024 04:00:22 server maldet(6507): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/advertisingindia/public_html/" "/home/bcetdgpac/public_html/" "/home/bengalhospital/public_html/" "/home/binsdgp/public_html/" "/home/dilseshaadi/public_html/" "/home/dpsbloomingbudsa/public_html/" "/home/dpsbloomingbuds/public_html/" "/home/dpsdgp/public_html/" "/home/krishnaintl/public_html/" "/home/kxobgzmy/public_html/" "/home/myrara/public_html/" "/home/scpac/public_html/" "/home/sksayurvedicacin/public_html/" "/home/sksayurvedic/public_html/" "/home/sksgi/public_html/" "/home/sksmedicalcolleg/public_html/" "/home/sksps/public_html/" "/home/sksworldschool/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Dec 19 2024 04:00:42 server maldet(6507): {scan} file list completed in 20s, found 10400 files... Dec 19 2024 04:00:42 server maldet(6507): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Dec 19 2024 04:00:42 server maldet(6507): {scan} scan of (10400 files) in progress... Dec 19 2024 04:04:18 server maldet(6507): {scan} scan completed on : files 10400, malware hits 0, cleaned hits 0, time 237s Dec 19 2024 04:04:18 server maldet(6507): {scan} scan report saved, to view run: maldet --report 241219-0400.6507 Dec 20 2024 04:09:33 server maldet(11005): {update} checking for available updates... Dec 20 2024 04:09:34 server maldet(11005): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Dec 20 2024 04:09:34 server maldet(11005): {update} hashing install files and checking against server... Dec 20 2024 04:09:35 server maldet(11005): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Dec 20 2024 04:09:35 server maldet(11005): {update} latest version already installed. Dec 20 2024 04:09:35 server maldet(11149): {sigup} performing signature update check... Dec 20 2024 04:09:35 server maldet(11149): {sigup} local signature set is version 20241216540968 Dec 20 2024 04:09:35 server maldet(11149): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Dec 20 2024 04:09:35 server maldet(11149): {sigup} new signature set 202412191297071 available Dec 20 2024 04:09:35 server maldet(11149): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Dec 20 2024 04:09:36 server maldet(11149): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Dec 20 2024 04:09:36 server maldet(11149): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Dec 20 2024 04:09:36 server maldet(11149): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Dec 20 2024 04:09:36 server maldet(11149): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Dec 20 2024 04:09:37 server maldet(11149): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Dec 20 2024 04:09:37 server maldet(11149): {sigup} verified md5sum of maldet-sigpack.tgz Dec 20 2024 04:09:37 server maldet(11149): {sigup} unpacked and installed maldet-sigpack.tgz Dec 20 2024 04:09:38 server maldet(11149): {sigup} verified md5sum of maldet-clean.tgz Dec 20 2024 04:09:38 server maldet(11149): {sigup} unpacked and installed maldet-clean.tgz Dec 20 2024 04:09:38 server maldet(11149): {sigup} signature set update completed Dec 20 2024 04:09:38 server maldet(11149): {sigup} 17638 signatures (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Dec 20 2024 04:09:40 server maldet(11384): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Dec 20 2024 04:09:42 server maldet(11384): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Dec 20 2024 04:09:42 server maldet(11384): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Dec 20 2024 04:09:42 server maldet(11384): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Dec 20 2024 04:09:42 server maldet(11384): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/advertisingindia/public_html/" "/home/bcetdgpac/public_html/" "/home/bengalhospital/public_html/" "/home/binsdgp/public_html/" "/home/dilseshaadi/public_html/" "/home/dpsbloomingbudsa/public_html/" "/home/dpsbloomingbuds/public_html/" "/home/dpsdgp/public_html/" "/home/krishnaintl/public_html/" "/home/kxobgzmy/public_html/" "/home/myrara/public_html/" "/home/scpac/public_html/" "/home/sksayurvedicacin/public_html/" "/home/sksayurvedic/public_html/" "/home/sksgi/public_html/" "/home/sksmedicalcolleg/public_html/" "/home/sksps/public_html/" "/home/sksworldschool/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Dec 20 2024 04:10:58 server maldet(11384): {scan} file list completed in 76s, found 5879 files... Dec 20 2024 04:10:58 server maldet(11384): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Dec 20 2024 04:10:58 server maldet(11384): {scan} scan of (5879 files) in progress... Dec 20 2024 04:14:02 server maldet(11384): {hit} malware hit {HEX}php.cmdshell.egyspider.244 found for /tmp/systemd-private-ad9fe6a090eb4cdc8f21fecc8c176416-ea-php82-php-fpm.service-pfgWek/tmp/unix.1145bkuo Dec 20 2024 04:14:02 server maldet(11384): {hit} malware hit {HEX}php.cmdshell.egyspider.244 found for /tmp/systemd-private-ad9fe6a090eb4cdc8f21fecc8c176416-ea-php82-php-fpm.service-pfgWek/tmp/unix.11OQFOFb Dec 20 2024 04:14:03 server maldet(11384): {hit} malware hit {HEX}php.cmdshell.egyspider.244 found for /var/tmp/systemd-private-ad9fe6a090eb4cdc8f21fecc8c176416-ea-php82-php-fpm.service-pfgWek/tmp/unix.1145bkuo Dec 20 2024 04:14:03 server maldet(11384): {hit} malware hit {HEX}php.cmdshell.egyspider.244 found for /var/tmp/systemd-private-ad9fe6a090eb4cdc8f21fecc8c176416-ea-php82-php-fpm.service-pfgWek/tmp/unix.11OQFOFb Dec 20 2024 04:14:04 server maldet(11384): {scan} scan completed on : files 5879, malware hits 4, cleaned hits 0, time 264s Dec 20 2024 04:14:04 server maldet(11384): {scan} scan report saved, to view run: maldet --report 241220-0409.11384 Dec 20 2024 04:14:04 server maldet(11384): {scan} quarantine is disabled! set quarantine_hits=1 in conf.maldet or to quarantine results run: maldet -q 241220-0409.11384 Dec 20 2024 04:14:04 server maldet(11384): {alert} sent scan report to kkumarclassic123@gmail.com Dec 21 2024 03:26:19 server maldet(24871): {update} checking for available updates... Dec 21 2024 03:26:19 server maldet(24871): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Dec 21 2024 03:26:19 server maldet(24871): {update} hashing install files and checking against server... Dec 21 2024 03:26:19 server maldet(24871): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Dec 21 2024 03:26:19 server maldet(24871): {update} latest version already installed. Dec 21 2024 03:26:20 server maldet(25012): {sigup} performing signature update check... Dec 21 2024 03:26:20 server maldet(25012): {sigup} local signature set is version 202412191297071 Dec 21 2024 03:26:20 server maldet(25012): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Dec 21 2024 03:26:20 server maldet(25012): {sigup} latest signature set already installed Dec 21 2024 03:26:20 server maldet(25128): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Dec 21 2024 03:26:21 server maldet(25128): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Dec 21 2024 03:26:21 server maldet(25128): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Dec 21 2024 03:26:21 server maldet(25128): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Dec 21 2024 03:26:21 server maldet(25128): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/advertisingindia/public_html/" "/home/bcetdgpac/public_html/" "/home/bengalhospital/public_html/" "/home/binsdgp/public_html/" "/home/dilseshaadi/public_html/" "/home/dpsbloomingbudsa/public_html/" "/home/dpsbloomingbuds/public_html/" "/home/dpsdgp/public_html/" "/home/krishnaintl/public_html/" "/home/kxobgzmy/public_html/" "/home/myrara/public_html/" "/home/scpac/public_html/" "/home/sksayurvedicacin/public_html/" "/home/sksayurvedic/public_html/" "/home/sksgi/public_html/" "/home/sksmedicalcolleg/public_html/" "/home/sksps/public_html/" "/home/sksworldschool/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Dec 21 2024 03:26:40 server maldet(25128): {scan} file list completed in 19s, found 2781 files... Dec 21 2024 03:26:40 server maldet(25128): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Dec 21 2024 03:26:40 server maldet(25128): {scan} scan of (2781 files) in progress... Dec 21 2024 03:28:08 server maldet(25128): {scan} scan completed on : files 2781, malware hits 0, cleaned hits 0, time 108s Dec 21 2024 03:28:08 server maldet(25128): {scan} scan report saved, to view run: maldet --report 241221-0326.25128 Dec 22 2024 04:22:32 server maldet(31380): {update} checking for available updates... Dec 22 2024 04:22:32 server maldet(31380): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Dec 22 2024 04:22:32 server maldet(31380): {update} hashing install files and checking against server... Dec 22 2024 04:22:32 server maldet(31380): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Dec 22 2024 04:22:33 server maldet(31380): {update} latest version already installed. Dec 22 2024 04:22:33 server maldet(31513): {sigup} performing signature update check... Dec 22 2024 04:22:33 server maldet(31513): {sigup} local signature set is version 202412191297071 Dec 22 2024 04:22:33 server maldet(31513): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Dec 22 2024 04:22:33 server maldet(31513): {sigup} new signature set 20241222594668 available Dec 22 2024 04:22:33 server maldet(31513): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Dec 22 2024 04:22:33 server maldet(31513): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Dec 22 2024 04:22:34 server maldet(31513): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Dec 22 2024 04:22:34 server maldet(31513): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Dec 22 2024 04:22:34 server maldet(31513): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Dec 22 2024 04:22:34 server maldet(31513): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Dec 22 2024 04:22:34 server maldet(31513): {sigup} verified md5sum of maldet-sigpack.tgz Dec 22 2024 04:22:34 server maldet(31513): {sigup} unpacked and installed maldet-sigpack.tgz Dec 22 2024 04:22:35 server maldet(31513): {sigup} verified md5sum of maldet-clean.tgz Dec 22 2024 04:22:35 server maldet(31513): {sigup} unpacked and installed maldet-clean.tgz Dec 22 2024 04:22:35 server maldet(31513): {sigup} signature set update completed Dec 22 2024 04:22:35 server maldet(31513): {sigup} 17638 signatures (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Dec 22 2024 04:22:35 server maldet(31743): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Dec 22 2024 04:22:35 server maldet(31743): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Dec 22 2024 04:22:35 server maldet(31743): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Dec 22 2024 04:22:35 server maldet(31743): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Dec 22 2024 04:22:35 server maldet(31743): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/advertisingindia/public_html/" "/home/bcetdgpac/public_html/" "/home/bengalhospital/public_html/" "/home/binsdgp/public_html/" "/home/dilseshaadi/public_html/" "/home/dpsbloomingbudsa/public_html/" "/home/dpsbloomingbuds/public_html/" "/home/dpsdgp/public_html/" "/home/krishnaintl/public_html/" "/home/kxobgzmy/public_html/" "/home/myrara/public_html/" "/home/scpac/public_html/" "/home/sksayurvedicacin/public_html/" "/home/sksayurvedic/public_html/" "/home/sksgi/public_html/" "/home/sksmedicalcolleg/public_html/" "/home/sksps/public_html/" "/home/sksworldschool/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Dec 22 2024 04:22:55 server maldet(31743): {scan} file list completed in 20s, found 1315 files... Dec 22 2024 04:22:55 server maldet(31743): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Dec 22 2024 04:22:55 server maldet(31743): {scan} scan of (1315 files) in progress... Dec 22 2024 04:23:34 server maldet(31743): {scan} scan completed on : files 1315, malware hits 0, cleaned hits 0, time 59s Dec 22 2024 04:23:34 server maldet(31743): {scan} scan report saved, to view run: maldet --report 241222-0422.31743 Dec 23 2024 04:09:21 server maldet(4140): {update} checking for available updates... Dec 23 2024 04:09:21 server maldet(4140): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Dec 23 2024 04:09:21 server maldet(4140): {update} hashing install files and checking against server... Dec 23 2024 04:09:21 server maldet(4140): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Dec 23 2024 04:09:21 server maldet(4140): {update} latest version already installed. Dec 23 2024 04:09:21 server maldet(4275): {sigup} performing signature update check... Dec 23 2024 04:09:21 server maldet(4275): {sigup} local signature set is version 20241222594668 Dec 23 2024 04:09:22 server maldet(4275): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Dec 23 2024 04:09:22 server maldet(4275): {sigup} latest signature set already installed Dec 23 2024 04:09:22 server maldet(4387): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Dec 23 2024 04:09:23 server maldet(4387): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Dec 23 2024 04:09:23 server maldet(4387): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Dec 23 2024 04:09:24 server maldet(4387): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Dec 23 2024 04:09:24 server maldet(4387): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/advertisingindia/public_html/" "/home/bcetdgpac/public_html/" "/home/bengalhospital/public_html/" "/home/binsdgp/public_html/" "/home/dilseshaadi/public_html/" "/home/dpsbloomingbudsa/public_html/" "/home/dpsbloomingbuds/public_html/" "/home/dpsdgp/public_html/" "/home/krishnaintl/public_html/" "/home/kxobgzmy/public_html/" "/home/myrara/public_html/" "/home/scpac/public_html/" "/home/sksayurvedic/public_html/" "/home/sksgi/public_html/" "/home/sksmedicalcolleg/public_html/" "/home/sksps/public_html/" "/home/sksworldschool/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Dec 23 2024 04:09:34 server maldet(4387): {scan} file list completed in 10s, found 7777 files... Dec 23 2024 04:09:34 server maldet(4387): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Dec 23 2024 04:09:34 server maldet(4387): {scan} scan of (7777 files) in progress... Dec 23 2024 04:11:09 server maldet(4387): {scan} scan completed on : files 7777, malware hits 0, cleaned hits 0, time 107s Dec 23 2024 04:11:09 server maldet(4387): {scan} scan report saved, to view run: maldet --report 241223-0409.4387 Dec 24 2024 03:59:05 server maldet(854): {update} checking for available updates... Dec 24 2024 03:59:06 server maldet(854): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Dec 24 2024 03:59:06 server maldet(854): {update} hashing install files and checking against server... Dec 24 2024 03:59:06 server maldet(854): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Dec 24 2024 03:59:06 server maldet(854): {update} latest version already installed. Dec 24 2024 03:59:06 server maldet(988): {sigup} performing signature update check... Dec 24 2024 03:59:06 server maldet(988): {sigup} local signature set is version 20241222594668 Dec 24 2024 03:59:07 server maldet(988): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Dec 24 2024 03:59:07 server maldet(988): {sigup} latest signature set already installed Dec 24 2024 03:59:07 server maldet(1104): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Dec 24 2024 03:59:07 server maldet(1104): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Dec 24 2024 03:59:07 server maldet(1104): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Dec 24 2024 03:59:07 server maldet(1104): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Dec 24 2024 03:59:07 server maldet(1104): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/advertisingindia/public_html/" "/home/bcetdgpac/public_html/" "/home/bengalhospital/public_html/" "/home/binsdgp/public_html/" "/home/dilseshaadi/public_html/" "/home/dpsbloomingbuds/public_html/" "/home/dpsdgp/public_html/" "/home/krishnaintl/public_html/" "/home/kxobgzmy/public_html/" "/home/myrara/public_html/" "/home/scpac/public_html/" "/home/sksayurvedic/public_html/" "/home/sksgi/public_html/" "/home/sksmedicalcolleg/public_html/" "/home/sksps/public_html/" "/home/sksworldschool/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Dec 24 2024 03:59:18 server maldet(1104): {scan} file list completed in 11s, found 103839 files... Dec 24 2024 03:59:18 server maldet(1104): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Dec 24 2024 03:59:18 server maldet(1104): {scan} scan of (103839 files) in progress... Dec 24 2024 04:38:58 server maldet(1104): {hit} malware hit {HEX}php.exe.globals.416 found for /home/dpsbloomingbuds/public_html/wp-includes/qrxvuu.php Dec 24 2024 04:38:58 server maldet(1104): {hit} malware hit {HEX}php.nested.base64.652 found for /home/dpsbloomingbuds/public_html/wp-includes/pomo/wp/USXkic.php Dec 24 2024 04:38:58 server maldet(1104): {hit} malware hit {HEX}php.nested.base64.652 found for /home/dpsbloomingbuds/public_html/wp-includes/Requests/src/Exception/Http/yBNlzaYxoL.php Dec 24 2024 04:38:58 server maldet(1104): {scan} scan completed on : files 103839, malware hits 3, cleaned hits 0, time 2391s Dec 24 2024 04:38:58 server maldet(1104): {scan} scan report saved, to view run: maldet --report 241224-0359.1104 Dec 24 2024 04:38:58 server maldet(1104): {scan} quarantine is disabled! set quarantine_hits=1 in conf.maldet or to quarantine results run: maldet -q 241224-0359.1104 Dec 24 2024 04:38:58 server maldet(1104): {alert} sent scan report to kkumarclassic123@gmail.com Dec 25 2024 04:07:19 server maldet(14400): {update} checking for available updates... Dec 25 2024 04:07:20 server maldet(14400): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Dec 25 2024 04:07:20 server maldet(14400): {update} hashing install files and checking against server... Dec 25 2024 04:07:20 server maldet(14400): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Dec 25 2024 04:07:20 server maldet(14400): {update} latest version already installed. Dec 25 2024 04:07:20 server maldet(14544): {sigup} performing signature update check... Dec 25 2024 04:07:20 server maldet(14544): {sigup} local signature set is version 20241222594668 Dec 25 2024 04:07:20 server maldet(14544): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Dec 25 2024 04:07:20 server maldet(14544): {sigup} new signature set 202412251350335 available Dec 25 2024 04:07:20 server maldet(14544): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Dec 25 2024 04:07:21 server maldet(14544): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Dec 25 2024 04:07:21 server maldet(14544): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Dec 25 2024 04:07:21 server maldet(14544): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Dec 25 2024 04:07:21 server maldet(14544): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Dec 25 2024 04:07:22 server maldet(14544): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Dec 25 2024 04:07:22 server maldet(14544): {sigup} verified md5sum of maldet-sigpack.tgz Dec 25 2024 04:07:22 server maldet(14544): {sigup} unpacked and installed maldet-sigpack.tgz Dec 25 2024 04:07:22 server maldet(14544): {sigup} verified md5sum of maldet-clean.tgz Dec 25 2024 04:07:22 server maldet(14544): {sigup} unpacked and installed maldet-clean.tgz Dec 25 2024 04:07:22 server maldet(14544): {sigup} signature set update completed Dec 25 2024 04:07:22 server maldet(14544): {sigup} 17638 signatures (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Dec 25 2024 04:07:22 server maldet(14776): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Dec 25 2024 04:07:23 server maldet(14776): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Dec 25 2024 04:07:23 server maldet(14776): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Dec 25 2024 04:07:23 server maldet(14776): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Dec 25 2024 04:07:23 server maldet(14776): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/advertisingindia/public_html/" "/home/bcetdgpac/public_html/" "/home/bengalhospital/public_html/" "/home/binsdgp/public_html/" "/home/dilseshaadi/public_html/" "/home/dpsbloomingbuds/public_html/" "/home/dpsdgp/public_html/" "/home/krishnaintl/public_html/" "/home/kxobgzmy/public_html/" "/home/myrara/public_html/" "/home/scpac/public_html/" "/home/sksayurvedic/public_html/" "/home/sksgi/public_html/" "/home/sksmedicalcolleg/public_html/" "/home/sksps/public_html/" "/home/sksworldschool/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Dec 25 2024 04:07:37 server maldet(14776): {scan} file list completed in 14s, found 4725 files... Dec 25 2024 04:07:37 server maldet(14776): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Dec 25 2024 04:07:37 server maldet(14776): {scan} scan of (4725 files) in progress... Dec 25 2024 04:09:18 server maldet(14776): {scan} scan completed on : files 4725, malware hits 0, cleaned hits 0, time 116s Dec 25 2024 04:09:18 server maldet(14776): {scan} scan report saved, to view run: maldet --report 241225-0407.14776 Dec 26 2024 03:30:28 server maldet(12629): {update} checking for available updates... Dec 26 2024 03:30:29 server maldet(12629): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Dec 26 2024 03:30:29 server maldet(12629): {update} hashing install files and checking against server... Dec 26 2024 03:30:29 server maldet(12629): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Dec 26 2024 03:30:29 server maldet(12629): {update} latest version already installed. Dec 26 2024 03:30:29 server maldet(12764): {sigup} performing signature update check... Dec 26 2024 03:30:29 server maldet(12764): {sigup} local signature set is version 202412251350335 Dec 26 2024 03:30:30 server maldet(12764): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Dec 26 2024 03:30:30 server maldet(12764): {sigup} latest signature set already installed Dec 26 2024 03:30:30 server maldet(12876): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Dec 26 2024 03:30:31 server maldet(12876): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Dec 26 2024 03:30:31 server maldet(12876): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Dec 26 2024 03:30:31 server maldet(12876): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Dec 26 2024 03:30:31 server maldet(12876): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/advertisingindia/public_html/" "/home/bcetdgpac/public_html/" "/home/bengalhospital/public_html/" "/home/binsdgp/public_html/" "/home/dilseshaadi/public_html/" "/home/dpsbloomingbuds/public_html/" "/home/dpsdgp/public_html/" "/home/krishnaintl/public_html/" "/home/kxobgzmy/public_html/" "/home/myrara/public_html/" "/home/scpac/public_html/" "/home/sksayurvedic/public_html/" "/home/sksgi/public_html/" "/home/sksmedicalcolleg/public_html/" "/home/sksps/public_html/" "/home/sksworldschool/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Dec 26 2024 03:30:58 server maldet(12876): {scan} file list completed in 27s, found 7064 files... Dec 26 2024 03:30:58 server maldet(12876): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Dec 26 2024 03:30:58 server maldet(12876): {scan} scan of (7064 files) in progress... Dec 26 2024 03:34:45 server maldet(12876): {scan} scan completed on : files 7064, malware hits 0, cleaned hits 0, time 254s Dec 26 2024 03:34:45 server maldet(12876): {scan} scan report saved, to view run: maldet --report 241226-0330.12876 Dec 27 2024 04:09:44 server maldet(1073): {update} checking for available updates... Dec 27 2024 04:09:44 server maldet(1073): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Dec 27 2024 04:09:45 server maldet(1073): {update} hashing install files and checking against server... Dec 27 2024 04:09:45 server maldet(1073): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Dec 27 2024 04:09:45 server maldet(1073): {update} latest version already installed. Dec 27 2024 04:09:45 server maldet(1210): {sigup} performing signature update check... Dec 27 2024 04:09:45 server maldet(1210): {sigup} local signature set is version 202412251350335 Dec 27 2024 04:09:45 server maldet(1210): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Dec 27 2024 04:09:45 server maldet(1210): {sigup} latest signature set already installed Dec 27 2024 04:09:46 server maldet(1325): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Dec 27 2024 04:09:46 server maldet(1325): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Dec 27 2024 04:09:46 server maldet(1325): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Dec 27 2024 04:09:46 server maldet(1325): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Dec 27 2024 04:09:46 server maldet(1325): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/advertisingindia/public_html/" "/home/bcetdgpac/public_html/" "/home/bengalhospital/public_html/" "/home/binsdgp/public_html/" "/home/dilseshaadi/public_html/" "/home/dpsbloomingbuds/public_html/" "/home/dpsdgp/public_html/" "/home/krishnaintl/public_html/" "/home/kxobgzmy/public_html/" "/home/myrara/public_html/" "/home/scpac/public_html/" "/home/sksayurvedic/public_html/" "/home/sksgi/public_html/" "/home/sksmedicalcolleg/public_html/" "/home/sksps/public_html/" "/home/sksworldschool/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Dec 27 2024 04:10:12 server maldet(1325): {scan} file list completed in 26s, found 3294 files... Dec 27 2024 04:10:12 server maldet(1325): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Dec 27 2024 04:10:12 server maldet(1325): {scan} scan of (3294 files) in progress... Dec 27 2024 04:10:46 server maldet(1325): {scan} scan completed on : files 3294, malware hits 0, cleaned hits 0, time 60s Dec 27 2024 04:10:46 server maldet(1325): {scan} scan report saved, to view run: maldet --report 241227-0409.1325 Dec 28 2024 03:38:59 server maldet(5521): {update} checking for available updates... Dec 28 2024 03:38:59 server maldet(5521): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Dec 28 2024 03:38:59 server maldet(5521): {update} hashing install files and checking against server... Dec 28 2024 03:39:00 server maldet(5521): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Dec 28 2024 03:39:00 server maldet(5521): {update} latest version already installed. Dec 28 2024 03:39:00 server maldet(5657): {sigup} performing signature update check... Dec 28 2024 03:39:00 server maldet(5657): {sigup} local signature set is version 202412251350335 Dec 28 2024 03:39:01 server maldet(5657): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Dec 28 2024 03:39:02 server maldet(5657): {sigup} new signature set 202412282106009 available Dec 28 2024 03:39:02 server maldet(5657): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Dec 28 2024 03:39:07 server maldet(5657): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Dec 28 2024 03:39:08 server maldet(5657): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Dec 28 2024 03:39:08 server maldet(5657): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Dec 28 2024 03:39:09 server maldet(5657): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Dec 28 2024 03:39:09 server maldet(5657): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Dec 28 2024 03:39:09 server maldet(5657): {sigup} verified md5sum of maldet-sigpack.tgz Dec 28 2024 03:39:09 server maldet(5657): {sigup} unpacked and installed maldet-sigpack.tgz Dec 28 2024 03:39:10 server maldet(5657): {sigup} verified md5sum of maldet-clean.tgz Dec 28 2024 03:39:10 server maldet(5657): {sigup} unpacked and installed maldet-clean.tgz Dec 28 2024 03:39:10 server maldet(5657): {sigup} signature set update completed Dec 28 2024 03:39:10 server maldet(5657): {sigup} 17638 signatures (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Dec 28 2024 03:39:11 server maldet(5942): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Dec 28 2024 03:39:12 server maldet(5942): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Dec 28 2024 03:39:12 server maldet(5942): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Dec 28 2024 03:39:12 server maldet(5942): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Dec 28 2024 03:39:13 server maldet(5942): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/advertisingindia/public_html/" "/home/bcetdgpac/public_html/" "/home/bengalhospital/public_html/" "/home/binsdgp/public_html/" "/home/dilseshaadi/public_html/" "/home/dpsbloomingbuds/public_html/" "/home/dpsdgp/public_html/" "/home/krishnaintl/public_html/" "/home/kxobgzmy/public_html/" "/home/myrara/public_html/" "/home/scpac/public_html/" "/home/sksayurvedic/public_html/" "/home/sksgi/public_html/" "/home/sksmedicalcolleg/public_html/" "/home/sksps/public_html/" "/home/sksworldschool/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Dec 28 2024 03:39:53 server maldet(5942): {scan} file list completed in 41s, found 4748 files... Dec 28 2024 03:39:53 server maldet(5942): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Dec 28 2024 03:39:53 server maldet(5942): {scan} scan of (4748 files) in progress... Dec 28 2024 03:41:16 server maldet(5942): {scan} clamscan returned an error, check /usr/local/maldetect/logs/clamscan_log for details! Dec 28 2024 03:41:16 server maldet(5942): {scan} scan completed on : files 4748, malware hits 0, cleaned hits 0, time 125s Dec 28 2024 03:41:16 server maldet(5942): {scan} scan report saved, to view run: maldet --report 241228-0339.5942 Dec 29 2024 03:56:53 server maldet(10212): {update} checking for available updates... Dec 29 2024 03:56:54 server maldet(10212): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Dec 29 2024 03:56:54 server maldet(10212): {update} hashing install files and checking against server... Dec 29 2024 03:56:54 server maldet(10212): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Dec 29 2024 03:56:54 server maldet(10212): {update} latest version already installed. Dec 29 2024 03:56:54 server maldet(10352): {sigup} performing signature update check... Dec 29 2024 03:56:54 server maldet(10352): {sigup} local signature set is version 202412282106009 Dec 29 2024 03:56:55 server maldet(10352): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Dec 29 2024 03:56:55 server maldet(10352): {sigup} latest signature set already installed Dec 29 2024 03:56:55 server maldet(10463): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Dec 29 2024 03:56:55 server maldet(10463): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Dec 29 2024 03:56:55 server maldet(10463): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Dec 29 2024 03:56:55 server maldet(10463): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Dec 29 2024 03:56:55 server maldet(10463): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/advertisingindia/public_html/" "/home/bcetdgpac/public_html/" "/home/bengalhospital/public_html/" "/home/binsdgp/public_html/" "/home/dilseshaadi/public_html/" "/home/dpsbloomingbuds/public_html/" "/home/dpsdgp/public_html/" "/home/krishnaintl/public_html/" "/home/kxobgzmy/public_html/" "/home/myrara/public_html/" "/home/scpac/public_html/" "/home/sksayurvedic/public_html/" "/home/sksgi/public_html/" "/home/sksmedicalcolleg/public_html/" "/home/sksps/public_html/" "/home/sksworldschool/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Dec 29 2024 03:57:18 server maldet(10463): {scan} file list completed in 23s, found 1928 files... Dec 29 2024 03:57:18 server maldet(10463): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Dec 29 2024 03:57:18 server maldet(10463): {scan} scan of (1928 files) in progress... Dec 29 2024 03:57:49 server maldet(10463): {scan} clamscan returned an error, check /usr/local/maldetect/logs/clamscan_log for details! Dec 29 2024 03:57:49 server maldet(10463): {scan} scan completed on : files 1928, malware hits 0, cleaned hits 0, time 54s Dec 29 2024 03:57:49 server maldet(10463): {scan} scan report saved, to view run: maldet --report 241229-0356.10463 Dec 30 2024 04:15:06 server maldet(7173): {update} checking for available updates... Dec 30 2024 04:15:07 server maldet(7173): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Dec 30 2024 04:15:07 server maldet(7173): {update} hashing install files and checking against server... Dec 30 2024 04:15:07 server maldet(7173): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Dec 30 2024 04:15:07 server maldet(7173): {update} latest version already installed. Dec 30 2024 04:15:08 server maldet(7311): {sigup} performing signature update check... Dec 30 2024 04:15:08 server maldet(7311): {sigup} local signature set is version 202412282106009 Dec 30 2024 04:15:08 server maldet(7311): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Dec 30 2024 04:15:08 server maldet(7311): {sigup} latest signature set already installed Dec 30 2024 04:15:08 server maldet(7423): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Dec 30 2024 04:15:09 server maldet(7423): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Dec 30 2024 04:15:09 server maldet(7423): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Dec 30 2024 04:15:09 server maldet(7423): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Dec 30 2024 04:15:09 server maldet(7423): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/advertisingindia/public_html/" "/home/bcetdgpac/public_html/" "/home/bengalhospital/public_html/" "/home/binsdgp/public_html/" "/home/dilseshaadi/public_html/" "/home/dpsbloomingbuds/public_html/" "/home/dpsdgp/public_html/" "/home/krishnaintl/public_html/" "/home/kxobgzmy/public_html/" "/home/myrara/public_html/" "/home/scpac/public_html/" "/home/sksayurvedic/public_html/" "/home/sksgi/public_html/" "/home/sksmedicalcolleg/public_html/" "/home/sksps/public_html/" "/home/sksworldschool/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Dec 30 2024 04:15:34 server maldet(7423): {scan} file list completed in 25s, found 1833 files... Dec 30 2024 04:15:34 server maldet(7423): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Dec 30 2024 04:15:34 server maldet(7423): {scan} scan of (1833 files) in progress... Dec 30 2024 04:16:25 server maldet(7423): {scan} scan completed on : files 1833, malware hits 0, cleaned hits 0, time 76s Dec 30 2024 04:16:25 server maldet(7423): {scan} scan report saved, to view run: maldet --report 241230-0415.7423 Dec 31 2024 04:24:50 server maldet(12558): {update} checking for available updates... Dec 31 2024 04:24:50 server maldet(12558): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Dec 31 2024 04:24:50 server maldet(12558): {update} hashing install files and checking against server... Dec 31 2024 04:24:51 server maldet(12558): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Dec 31 2024 04:24:51 server maldet(12558): {update} latest version already installed. Dec 31 2024 04:24:51 server maldet(12695): {sigup} performing signature update check... Dec 31 2024 04:24:51 server maldet(12695): {sigup} local signature set is version 202412282106009 Dec 31 2024 04:24:51 server maldet(12695): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Dec 31 2024 04:24:51 server maldet(12695): {sigup} new signature set 202412312825989 available Dec 31 2024 04:24:52 server maldet(12695): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Dec 31 2024 04:24:52 server maldet(12695): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Dec 31 2024 04:24:52 server maldet(12695): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Dec 31 2024 04:24:52 server maldet(12695): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Dec 31 2024 04:24:53 server maldet(12695): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Dec 31 2024 04:24:53 server maldet(12695): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Dec 31 2024 04:24:53 server maldet(12695): {sigup} verified md5sum of maldet-sigpack.tgz Dec 31 2024 04:24:53 server maldet(12695): {sigup} unpacked and installed maldet-sigpack.tgz Dec 31 2024 04:24:53 server maldet(12695): {sigup} verified md5sum of maldet-clean.tgz Dec 31 2024 04:24:53 server maldet(12695): {sigup} unpacked and installed maldet-clean.tgz Dec 31 2024 04:24:54 server maldet(12695): {sigup} signature set update completed Dec 31 2024 04:24:54 server maldet(12695): {sigup} 17638 signatures (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Dec 31 2024 04:24:54 server maldet(12934): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Dec 31 2024 04:24:55 server maldet(12934): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Dec 31 2024 04:24:55 server maldet(12934): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Dec 31 2024 04:24:55 server maldet(12934): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Dec 31 2024 04:24:55 server maldet(12934): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/advertisingindia/public_html/" "/home/bcetdgpac/public_html/" "/home/bengalhospital/public_html/" "/home/binsdgp/public_html/" "/home/dilseshaadi/public_html/" "/home/dpsbloomingbuds/public_html/" "/home/dpsdgp/public_html/" "/home/krishnaintl/public_html/" "/home/kxobgzmy/public_html/" "/home/myrara/public_html/" "/home/scpac/public_html/" "/home/sksayurvedic/public_html/" "/home/sksgi/public_html/" "/home/sksmedicalcolleg/public_html/" "/home/sksps/public_html/" "/home/sksworldschool/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Dec 31 2024 04:31:47 server maldet(12934): {scan} file list completed in 412s, found 11664 files... Dec 31 2024 04:31:47 server maldet(12934): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Dec 31 2024 04:31:47 server maldet(12934): {scan} scan of (11664 files) in progress... Dec 31 2024 04:38:21 server maldet(12934): {scan} clamscan returned an error, check /usr/local/maldetect/logs/clamscan_log for details! Dec 31 2024 04:38:21 server maldet(12934): {scan} scan completed on : files 11664, malware hits 0, cleaned hits 0, time 807s Dec 31 2024 04:38:21 server maldet(12934): {scan} scan report saved, to view run: maldet --report 241231-0424.12934 Jan 01 2025 04:02:49 server maldet(15937): {update} checking for available updates... Jan 01 2025 04:02:49 server maldet(15937): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Jan 01 2025 04:02:49 server maldet(15937): {update} hashing install files and checking against server... Jan 01 2025 04:02:50 server maldet(15937): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Jan 01 2025 04:02:50 server maldet(15937): {update} latest version already installed. Jan 01 2025 04:02:50 server maldet(16076): {sigup} performing signature update check... Jan 01 2025 04:02:50 server maldet(16076): {sigup} local signature set is version 202412312825989 Jan 01 2025 04:02:50 server maldet(16076): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Jan 01 2025 04:02:50 server maldet(16076): {sigup} latest signature set already installed Jan 01 2025 04:02:51 server maldet(16193): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Jan 01 2025 04:02:51 server maldet(16193): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Jan 01 2025 04:02:51 server maldet(16193): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Jan 01 2025 04:02:51 server maldet(16193): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Jan 01 2025 04:02:51 server maldet(16193): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/advertisingindia/public_html/" "/home/bcetdgpac/public_html/" "/home/bengalhospital/public_html/" "/home/binsdgp/public_html/" "/home/dilseshaadi/public_html/" "/home/dpsbloomingbuds/public_html/" "/home/dpsdgp/public_html/" "/home/krishnaintl/public_html/" "/home/kxobgzmy/public_html/" "/home/myrara/public_html/" "/home/scpac/public_html/" "/home/sksayurvedic/public_html/" "/home/sksgi/public_html/" "/home/sksmedicalcolleg/public_html/" "/home/sksps/public_html/" "/home/sksworldschool/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Jan 01 2025 04:03:22 server maldet(16193): {scan} file list completed in 31s, found 13249 files... Jan 01 2025 04:03:22 server maldet(16193): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Jan 01 2025 04:03:22 server maldet(16193): {scan} scan of (13249 files) in progress... Jan 01 2025 04:08:35 server maldet(16193): {scan} clamscan returned an error, check /usr/local/maldetect/logs/clamscan_log for details! Jan 01 2025 04:08:35 server maldet(16193): {scan} scan completed on : files 13249, malware hits 0, cleaned hits 0, time 344s Jan 01 2025 04:08:35 server maldet(16193): {scan} scan report saved, to view run: maldet --report 250101-0402.16193 Jan 02 2025 04:00:04 server maldet(24064): {update} checking for available updates... Jan 02 2025 04:00:05 server maldet(24064): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Jan 02 2025 04:00:05 server maldet(24064): {update} hashing install files and checking against server... Jan 02 2025 04:00:06 server maldet(24064): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Jan 02 2025 04:00:06 server maldet(24064): {update} latest version already installed. Jan 02 2025 04:00:06 server maldet(24204): {sigup} performing signature update check... Jan 02 2025 04:00:06 server maldet(24204): {sigup} local signature set is version 202412312825989 Jan 02 2025 04:00:06 server maldet(24204): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Jan 02 2025 04:00:07 server maldet(24204): {sigup} latest signature set already installed Jan 02 2025 04:00:07 server maldet(24324): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Jan 02 2025 04:00:08 server maldet(24324): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Jan 02 2025 04:00:08 server maldet(24324): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Jan 02 2025 04:00:08 server maldet(24324): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Jan 02 2025 04:00:08 server maldet(24324): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/advertisingindia/public_html/" "/home/bcetdgpac/public_html/" "/home/bengalhospital/public_html/" "/home/binsdgp/public_html/" "/home/dilseshaadi/public_html/" "/home/dpsbloomingbuds/public_html/" "/home/dpsdgp/public_html/" "/home/krishnaintl/public_html/" "/home/kxobgzmy/public_html/" "/home/myrara/public_html/" "/home/scpac/public_html/" "/home/sksayurvedic/public_html/" "/home/sksgi/public_html/" "/home/sksmedicalcolleg/public_html/" "/home/sksps/public_html/" "/home/sksworldschool/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Jan 02 2025 04:00:43 server maldet(24324): {scan} file list completed in 35s, found 5449 files... Jan 02 2025 04:00:43 server maldet(24324): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Jan 02 2025 04:00:43 server maldet(24324): {scan} scan of (5449 files) in progress... Jan 02 2025 04:01:45 server maldet(24324): {scan} clamscan returned an error, check /usr/local/maldetect/logs/clamscan_log for details! Jan 02 2025 04:01:46 server maldet(24324): {scan} scan completed on : files 5449, malware hits 0, cleaned hits 0, time 99s Jan 02 2025 04:01:46 server maldet(24324): {scan} scan report saved, to view run: maldet --report 250102-0400.24324 Jan 03 2025 04:03:19 server maldet(13500): {update} checking for available updates... Jan 03 2025 04:03:19 server maldet(13500): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Jan 03 2025 04:03:20 server maldet(13500): {update} hashing install files and checking against server... Jan 03 2025 04:03:20 server maldet(13500): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Jan 03 2025 04:03:20 server maldet(13500): {update} latest version already installed. Jan 03 2025 04:03:20 server maldet(13636): {sigup} performing signature update check... Jan 03 2025 04:03:20 server maldet(13636): {sigup} local signature set is version 202412312825989 Jan 03 2025 04:03:21 server maldet(13636): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Jan 03 2025 04:03:21 server maldet(13636): {sigup} latest signature set already installed Jan 03 2025 04:03:21 server maldet(13753): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Jan 03 2025 04:03:22 server maldet(13753): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Jan 03 2025 04:03:22 server maldet(13753): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Jan 03 2025 04:03:22 server maldet(13753): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Jan 03 2025 04:03:22 server maldet(13753): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/advertisingindia/public_html/" "/home/bcetdgpac/public_html/" "/home/bengalhospital/public_html/" "/home/binsdgp/public_html/" "/home/dilseshaadi/public_html/" "/home/dpsbloomingbuds/public_html/" "/home/dpsdgp/public_html/" "/home/krishnaintl/public_html/" "/home/kxobgzmy/public_html/" "/home/myrara/public_html/" "/home/scpac/public_html/" "/home/sksayurvedic/public_html/" "/home/sksgi/public_html/" "/home/sksmedicalcolleg/public_html/" "/home/sksps/public_html/" "/home/sksworldschool/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Jan 03 2025 04:03:36 server maldet(13753): {scan} file list completed in 14s, found 28529 files... Jan 03 2025 04:03:36 server maldet(13753): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Jan 03 2025 04:03:36 server maldet(13753): {scan} scan of (28529 files) in progress... Jan 03 2025 04:16:45 server maldet(13753): {scan} scan completed on : files 28529, malware hits 0, cleaned hits 0, time 804s Jan 03 2025 04:16:45 server maldet(13753): {scan} scan report saved, to view run: maldet --report 250103-0403.13753 Jan 04 2025 04:17:27 server maldet(19515): {update} checking for available updates... Jan 04 2025 04:17:27 server maldet(19515): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Jan 04 2025 04:17:27 server maldet(19515): {update} hashing install files and checking against server... Jan 04 2025 04:17:28 server maldet(19515): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Jan 04 2025 04:17:28 server maldet(19515): {update} latest version already installed. Jan 04 2025 04:17:28 server maldet(19653): {sigup} performing signature update check... Jan 04 2025 04:17:28 server maldet(19653): {sigup} local signature set is version 202412312825989 Jan 04 2025 04:17:29 server maldet(19653): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Jan 04 2025 04:17:29 server maldet(19653): {sigup} new signature set 20250104545340 available Jan 04 2025 04:17:29 server maldet(19653): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Jan 04 2025 04:17:29 server maldet(19653): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Jan 04 2025 04:17:30 server maldet(19653): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Jan 04 2025 04:17:30 server maldet(19653): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Jan 04 2025 04:17:30 server maldet(19653): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Jan 04 2025 04:17:30 server maldet(19653): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Jan 04 2025 04:17:30 server maldet(19653): {sigup} verified md5sum of maldet-sigpack.tgz Jan 04 2025 04:17:31 server maldet(19653): {sigup} unpacked and installed maldet-sigpack.tgz Jan 04 2025 04:17:31 server maldet(19653): {sigup} verified md5sum of maldet-clean.tgz Jan 04 2025 04:17:31 server maldet(19653): {sigup} unpacked and installed maldet-clean.tgz Jan 04 2025 04:17:31 server maldet(19653): {sigup} signature set update completed Jan 04 2025 04:17:31 server maldet(19653): {sigup} 17638 signatures (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Jan 04 2025 04:17:31 server maldet(19888): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Jan 04 2025 04:17:32 server maldet(19888): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Jan 04 2025 04:17:32 server maldet(19888): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Jan 04 2025 04:17:32 server maldet(19888): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Jan 04 2025 04:17:32 server maldet(19888): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/advertisingindia/public_html/" "/home/bcetdgpac/public_html/" "/home/bengalhospital/public_html/" "/home/binsdgp/public_html/" "/home/dilseshaadi/public_html/" "/home/dpsbloomingbuds/public_html/" "/home/dpsdgp/public_html/" "/home/krishnaintl/public_html/" "/home/kxobgzmy/public_html/" "/home/myrara/public_html/" "/home/scpac/public_html/" "/home/sksayurvedic/public_html/" "/home/sksgi/public_html/" "/home/sksmedicalcolleg/public_html/" "/home/sksps/public_html/" "/home/sksworldschool/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Jan 04 2025 04:18:05 server maldet(19888): {scan} file list completed in 33s, found 83800 files... Jan 04 2025 04:18:05 server maldet(19888): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Jan 04 2025 04:18:05 server maldet(19888): {scan} scan of (83800 files) in progress... Jan 04 2025 04:45:38 server maldet(19888): {scan} scan completed on : files 83800, malware hits 0, cleaned hits 0, time 1687s Jan 04 2025 04:45:38 server maldet(19888): {scan} scan report saved, to view run: maldet --report 250104-0417.19888 Jan 05 2025 04:41:30 server maldet(8536): {update} checking for available updates... Jan 05 2025 04:41:37 server maldet(8536): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Jan 05 2025 04:41:39 server maldet(8536): {update} hashing install files and checking against server... Jan 05 2025 04:41:47 server maldet(8536): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Jan 05 2025 04:41:47 server maldet(8536): {update} latest version already installed. Jan 05 2025 04:41:55 server maldet(8806): {sigup} performing signature update check... Jan 05 2025 04:41:55 server maldet(8806): {sigup} local signature set is version 20250104545340 Jan 05 2025 04:41:57 server maldet(8806): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Jan 05 2025 04:41:58 server maldet(8806): {sigup} latest signature set already installed Jan 05 2025 04:42:02 server maldet(9050): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Jan 05 2025 04:42:03 server maldet(9050): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Jan 05 2025 04:42:03 server maldet(9050): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Jan 05 2025 04:42:03 server maldet(9050): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Jan 05 2025 04:42:03 server maldet(9050): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/advertisingindia/public_html/" "/home/bcetdgpac/public_html/" "/home/bengalhospital/public_html/" "/home/binsdgp/public_html/" "/home/dilseshaadi/public_html/" "/home/dpsbloomingbuds/public_html/" "/home/dpsdgp/public_html/" "/home/krishnaintl/public_html/" "/home/kxobgzmy/public_html/" "/home/myrara/public_html/" "/home/scpac/public_html/" "/home/sksayurvedic/public_html/" "/home/sksgi/public_html/" "/home/sksmedicalcolleg/public_html/" "/home/sksps/public_html/" "/home/sksworldschool/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Jan 05 2025 04:42:23 server maldet(9050): {scan} file list completed in 20s, found 2861 files... Jan 05 2025 04:42:23 server maldet(9050): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Jan 05 2025 04:42:23 server maldet(9050): {scan} scan of (2861 files) in progress... Jan 05 2025 04:43:27 server maldet(9050): {scan} scan completed on : files 2861, malware hits 0, cleaned hits 0, time 85s Jan 05 2025 04:43:27 server maldet(9050): {scan} scan report saved, to view run: maldet --report 250105-0442.9050 Jan 06 2025 03:45:57 server maldet(1555): {update} checking for available updates... Jan 06 2025 03:45:57 server maldet(1555): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Jan 06 2025 03:45:57 server maldet(1555): {update} hashing install files and checking against server... Jan 06 2025 03:45:57 server maldet(1555): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Jan 06 2025 03:45:57 server maldet(1555): {update} latest version already installed. Jan 06 2025 03:45:57 server maldet(1691): {sigup} performing signature update check... Jan 06 2025 03:45:57 server maldet(1691): {sigup} local signature set is version 20250104545340 Jan 06 2025 03:45:58 server maldet(1691): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Jan 06 2025 03:45:58 server maldet(1691): {sigup} latest signature set already installed Jan 06 2025 03:45:58 server maldet(1804): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Jan 06 2025 03:45:58 server maldet(1804): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Jan 06 2025 03:45:58 server maldet(1804): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Jan 06 2025 03:45:58 server maldet(1804): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Jan 06 2025 03:45:58 server maldet(1804): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/advertisingindia/public_html/" "/home/bcetdgpac/public_html/" "/home/bengalhospital/public_html/" "/home/binsdgp/public_html/" "/home/dilseshaadi/public_html/" "/home/dpsbloomingbuds/public_html/" "/home/dpsdgp/public_html/" "/home/krishnaintl/public_html/" "/home/kxobgzmy/public_html/" "/home/myrara/public_html/" "/home/scpac/public_html/" "/home/sksayurvedic/public_html/" "/home/sksgi/public_html/" "/home/sksmedicalcolleg/public_html/" "/home/sksps/public_html/" "/home/sksworldschool/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Jan 06 2025 03:46:16 server maldet(1804): {scan} file list completed in 18s, found 4834 files... Jan 06 2025 03:46:16 server maldet(1804): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Jan 06 2025 03:46:16 server maldet(1804): {scan} scan of (4834 files) in progress... Jan 06 2025 03:47:35 server maldet(1804): {scan} clamscan returned an error, check /usr/local/maldetect/logs/clamscan_log for details! Jan 06 2025 03:47:35 server maldet(1804): {scan} scan completed on : files 4834, malware hits 0, cleaned hits 0, time 97s Jan 06 2025 03:47:35 server maldet(1804): {scan} scan report saved, to view run: maldet --report 250106-0345.1804 Jan 07 2025 04:42:26 server maldet(31526): {update} checking for available updates... Jan 07 2025 04:42:27 server maldet(31526): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Jan 07 2025 04:42:27 server maldet(31526): {update} hashing install files and checking against server... Jan 07 2025 04:42:27 server maldet(31526): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Jan 07 2025 04:42:27 server maldet(31526): {update} latest version already installed. Jan 07 2025 04:42:27 server maldet(31682): {sigup} performing signature update check... Jan 07 2025 04:42:27 server maldet(31682): {sigup} local signature set is version 20250104545340 Jan 07 2025 04:42:28 server maldet(31682): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Jan 07 2025 04:42:28 server maldet(31682): {sigup} latest signature set already installed Jan 07 2025 04:42:28 server maldet(31800): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Jan 07 2025 04:42:28 server maldet(31800): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Jan 07 2025 04:42:28 server maldet(31800): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Jan 07 2025 04:42:28 server maldet(31800): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Jan 07 2025 04:42:28 server maldet(31800): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/advertisingindia/public_html/" "/home/bcetdgpac/public_html/" "/home/bengalhospital/public_html/" "/home/binsdgp/public_html/" "/home/dilseshaadi/public_html/" "/home/dpsbloomingbuds/public_html/" "/home/dpsdgp/public_html/" "/home/krishnaintl/public_html/" "/home/kxobgzmy/public_html/" "/home/myrara/public_html/" "/home/scpac/public_html/" "/home/sksayurvedic/public_html/" "/home/sksgi/public_html/" "/home/sksmedicalcolleg/public_html/" "/home/sksps/public_html/" "/home/sksworldschool/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Jan 07 2025 04:42:43 server maldet(31800): {scan} file list completed in 15s, found 1996 files... Jan 07 2025 04:42:43 server maldet(31800): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Jan 07 2025 04:42:43 server maldet(31800): {scan} scan of (1996 files) in progress... Jan 07 2025 04:43:25 server maldet(31800): {scan} scan completed on : files 1996, malware hits 0, cleaned hits 0, time 57s Jan 07 2025 04:43:25 server maldet(31800): {scan} scan report saved, to view run: maldet --report 250107-0442.31800 Jan 08 2025 04:07:31 server maldet(26102): {update} checking for available updates... Jan 08 2025 04:07:32 server maldet(26102): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Jan 08 2025 04:07:32 server maldet(26102): {update} hashing install files and checking against server... Jan 08 2025 04:07:32 server maldet(26102): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Jan 08 2025 04:07:32 server maldet(26102): {update} latest version already installed. Jan 08 2025 04:07:32 server maldet(26240): {sigup} performing signature update check... Jan 08 2025 04:07:32 server maldet(26240): {sigup} local signature set is version 20250104545340 Jan 08 2025 04:07:33 server maldet(26240): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Jan 08 2025 04:07:33 server maldet(26240): {sigup} latest signature set already installed Jan 08 2025 04:07:33 server maldet(26352): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Jan 08 2025 04:07:33 server maldet(26352): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Jan 08 2025 04:07:33 server maldet(26352): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Jan 08 2025 04:07:34 server maldet(26352): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Jan 08 2025 04:07:34 server maldet(26352): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/advertisingindia/public_html/" "/home/bcetdgpac/public_html/" "/home/bengalhospital/public_html/" "/home/binsdgp/public_html/" "/home/dilseshaadi/public_html/" "/home/dpsbloomingbuds/public_html/" "/home/dpsdgp/public_html/" "/home/krishnaintl/public_html/" "/home/kxobgzmy/public_html/" "/home/myrara/public_html/" "/home/scpac/public_html/" "/home/sksayurvedic/public_html/" "/home/sksgi/public_html/" "/home/sksmedicalcolleg/public_html/" "/home/sksps/public_html/" "/home/sksworldschool/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Jan 08 2025 04:07:54 server maldet(26352): {scan} file list completed in 20s, found 15635 files... Jan 08 2025 04:07:54 server maldet(26352): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Jan 08 2025 04:07:54 server maldet(26352): {scan} scan of (15635 files) in progress... Jan 08 2025 04:12:09 server maldet(26352): {scan} scan completed on : files 15635, malware hits 0, cleaned hits 0, time 276s Jan 08 2025 04:12:09 server maldet(26352): {scan} scan report saved, to view run: maldet --report 250108-0407.26352 Jan 09 2025 04:05:34 server maldet(26547): {update} checking for available updates... Jan 09 2025 04:05:35 server maldet(26547): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Jan 09 2025 04:05:35 server maldet(26547): {update} hashing install files and checking against server... Jan 09 2025 04:05:35 server maldet(26547): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Jan 09 2025 04:05:35 server maldet(26547): {update} latest version already installed. Jan 09 2025 04:05:36 server maldet(26697): {sigup} performing signature update check... Jan 09 2025 04:05:36 server maldet(26697): {sigup} local signature set is version 20250104545340 Jan 09 2025 04:05:36 server maldet(26697): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Jan 09 2025 04:05:36 server maldet(26697): {sigup} latest signature set already installed Jan 09 2025 04:05:36 server maldet(26809): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Jan 09 2025 04:05:37 server maldet(26809): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Jan 09 2025 04:05:37 server maldet(26809): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Jan 09 2025 04:05:37 server maldet(26809): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Jan 09 2025 04:05:37 server maldet(26809): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/advertisingindia/public_html/" "/home/bcetdgpac/public_html/" "/home/bengalhospital/public_html/" "/home/binsdgp/public_html/" "/home/dilseshaadi/public_html/" "/home/dpsbloomingbuds/public_html/" "/home/dpsdgp/public_html/" "/home/krishnaintl/public_html/" "/home/kxobgzmy/public_html/" "/home/myrara/public_html/" "/home/scpac/public_html/" "/home/sksayurvedic/public_html/" "/home/sksgi/public_html/" "/home/sksmedicalcolleg/public_html/" "/home/sksps/public_html/" "/home/sksworldschool/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Jan 09 2025 04:06:21 server maldet(26809): {scan} file list completed in 44s, found 13600 files... Jan 09 2025 04:06:21 server maldet(26809): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Jan 09 2025 04:06:21 server maldet(26809): {scan} scan of (13600 files) in progress... Jan 09 2025 04:13:33 server maldet(26809): {scan} clamscan returned an error, check /usr/local/maldetect/logs/clamscan_log for details! Jan 09 2025 04:13:33 server maldet(26809): {scan} scan completed on : files 13600, malware hits 0, cleaned hits 0, time 477s Jan 09 2025 04:13:33 server maldet(26809): {scan} scan report saved, to view run: maldet --report 250109-0405.26809 Jan 10 2025 03:57:55 server maldet(6351): {update} checking for available updates... Jan 10 2025 03:57:55 server maldet(6351): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Jan 10 2025 03:57:55 server maldet(6351): {update} hashing install files and checking against server... Jan 10 2025 03:57:56 server maldet(6351): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Jan 10 2025 03:57:56 server maldet(6351): {update} latest version already installed. Jan 10 2025 03:57:56 server maldet(6500): {sigup} performing signature update check... Jan 10 2025 03:57:56 server maldet(6500): {sigup} local signature set is version 20250104545340 Jan 10 2025 03:57:56 server maldet(6500): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Jan 10 2025 03:57:56 server maldet(6500): {sigup} latest signature set already installed Jan 10 2025 03:57:56 server maldet(6613): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Jan 10 2025 03:57:57 server maldet(6613): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Jan 10 2025 03:57:57 server maldet(6613): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Jan 10 2025 03:57:57 server maldet(6613): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Jan 10 2025 03:57:57 server maldet(6613): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/advertisingindia/public_html/" "/home/bcetdgpac/public_html/" "/home/bengalhospital/public_html/" "/home/binsdgp/public_html/" "/home/dilseshaadi/public_html/" "/home/dpsbloomingbuds/public_html/" "/home/dpsdgp/public_html/" "/home/krishnaintl/public_html/" "/home/kxobgzmy/public_html/" "/home/myrara/public_html/" "/home/scpac/public_html/" "/home/sksayurvedic/public_html/" "/home/sksgi/public_html/" "/home/sksmedicalcolleg/public_html/" "/home/sksps/public_html/" "/home/sksworldschool/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Jan 10 2025 03:58:19 server maldet(6613): {scan} file list completed in 21s, found 17777 files... Jan 10 2025 03:58:19 server maldet(6613): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Jan 10 2025 03:58:19 server maldet(6613): {scan} scan of (17777 files) in progress... Jan 10 2025 04:04:58 server maldet(6613): {scan} scan completed on : files 17777, malware hits 0, cleaned hits 0, time 422s Jan 10 2025 04:04:58 server maldet(6613): {scan} scan report saved, to view run: maldet --report 250110-0357.6613 Jan 11 2025 04:09:14 server maldet(32063): {update} checking for available updates... Jan 11 2025 04:09:14 server maldet(32063): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Jan 11 2025 04:09:14 server maldet(32063): {update} hashing install files and checking against server... Jan 11 2025 04:09:15 server maldet(32063): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Jan 11 2025 04:09:15 server maldet(32063): {update} latest version already installed. Jan 11 2025 04:09:15 server maldet(32201): {sigup} performing signature update check... Jan 11 2025 04:09:15 server maldet(32201): {sigup} local signature set is version 20250104545340 Jan 11 2025 04:09:16 server maldet(32201): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Jan 11 2025 04:09:16 server maldet(32201): {sigup} latest signature set already installed Jan 11 2025 04:09:16 server maldet(32321): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Jan 11 2025 04:09:17 server maldet(32321): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Jan 11 2025 04:09:17 server maldet(32321): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Jan 11 2025 04:09:17 server maldet(32321): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Jan 11 2025 04:09:17 server maldet(32321): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/advertisingindia/public_html/" "/home/bcetdgpac/public_html/" "/home/bengalhospital/public_html/" "/home/binsdgp/public_html/" "/home/dilseshaadi/public_html/" "/home/dpsbloomingbuds/public_html/" "/home/dpsdgp/public_html/" "/home/krishnaintl/public_html/" "/home/kxobgzmy/public_html/" "/home/myrara/public_html/" "/home/scpac/public_html/" "/home/sksayurvedic/public_html/" "/home/sksgi/public_html/" "/home/sksmedicalcolleg/public_html/" "/home/sksps/public_html/" "/home/sksworldschool/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Jan 11 2025 04:09:35 server maldet(32321): {scan} file list completed in 18s, found 4709 files... Jan 11 2025 04:09:35 server maldet(32321): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Jan 11 2025 04:09:35 server maldet(32321): {scan} scan of (4709 files) in progress... Jan 11 2025 04:11:30 server maldet(32321): {scan} scan completed on : files 4709, malware hits 0, cleaned hits 0, time 134s Jan 11 2025 04:11:30 server maldet(32321): {scan} scan report saved, to view run: maldet --report 250111-0409.32321 Jan 12 2025 04:32:51 server maldet(27426): {update} checking for available updates... Jan 12 2025 04:32:52 server maldet(27426): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Jan 12 2025 04:32:52 server maldet(27426): {update} hashing install files and checking against server... Jan 12 2025 04:32:52 server maldet(27426): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Jan 12 2025 04:32:52 server maldet(27426): {update} latest version already installed. Jan 12 2025 04:32:52 server maldet(27574): {sigup} performing signature update check... Jan 12 2025 04:32:52 server maldet(27574): {sigup} local signature set is version 20250104545340 Jan 12 2025 04:32:53 server maldet(27574): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Jan 12 2025 04:32:53 server maldet(27574): {sigup} latest signature set already installed Jan 12 2025 04:32:53 server maldet(27693): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Jan 12 2025 04:32:53 server maldet(27693): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Jan 12 2025 04:32:53 server maldet(27693): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Jan 12 2025 04:32:53 server maldet(27693): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Jan 12 2025 04:32:53 server maldet(27693): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/advertisingindia/public_html/" "/home/bcetdgpac/public_html/" "/home/bengalhospital/public_html/" "/home/binsdgp/public_html/" "/home/dilseshaadi/public_html/" "/home/dpsbloomingbuds/public_html/" "/home/dpsdgp/public_html/" "/home/krishnaintl/public_html/" "/home/kxobgzmy/public_html/" "/home/myrara/public_html/" "/home/scpac/public_html/" "/home/sksayurvedic/public_html/" "/home/sksgi/public_html/" "/home/sksmedicalcolleg/public_html/" "/home/sksps/public_html/" "/home/sksworldschool/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Jan 12 2025 04:33:13 server maldet(27693): {scan} file list completed in 20s, found 1274 files... Jan 12 2025 04:33:13 server maldet(27693): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Jan 12 2025 04:33:13 server maldet(27693): {scan} scan of (1274 files) in progress... Jan 12 2025 04:33:35 server maldet(27693): {scan} scan completed on : files 1274, malware hits 0, cleaned hits 0, time 42s Jan 12 2025 04:33:35 server maldet(27693): {scan} scan report saved, to view run: maldet --report 250112-0432.27693 Jan 13 2025 03:19:16 server maldet(1047): {update} checking for available updates... Jan 13 2025 03:19:16 server maldet(1047): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Jan 13 2025 03:19:16 server maldet(1047): {update} hashing install files and checking against server... Jan 13 2025 03:19:17 server maldet(1047): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Jan 13 2025 03:19:17 server maldet(1047): {update} latest version already installed. Jan 13 2025 03:19:17 server maldet(1188): {sigup} performing signature update check... Jan 13 2025 03:19:17 server maldet(1188): {sigup} local signature set is version 20250104545340 Jan 13 2025 03:19:18 server maldet(1188): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Jan 13 2025 03:19:18 server maldet(1188): {sigup} new signature set 20250113611953 available Jan 13 2025 03:19:18 server maldet(1188): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Jan 13 2025 03:19:19 server maldet(1188): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Jan 13 2025 03:19:19 server maldet(1188): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Jan 13 2025 03:19:19 server maldet(1188): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Jan 13 2025 03:19:20 server maldet(1188): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Jan 13 2025 03:19:21 server maldet(1188): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Jan 13 2025 03:19:21 server maldet(1188): {sigup} verified md5sum of maldet-sigpack.tgz Jan 13 2025 03:19:21 server maldet(1188): {sigup} unpacked and installed maldet-sigpack.tgz Jan 13 2025 03:19:21 server maldet(1188): {sigup} verified md5sum of maldet-clean.tgz Jan 13 2025 03:19:21 server maldet(1188): {sigup} unpacked and installed maldet-clean.tgz Jan 13 2025 03:19:22 server maldet(1188): {sigup} signature set update completed Jan 13 2025 03:19:22 server maldet(1188): {sigup} 17638 signatures (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Jan 13 2025 03:19:23 server maldet(1459): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Jan 13 2025 03:19:29 server maldet(1459): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Jan 13 2025 03:19:29 server maldet(1459): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Jan 13 2025 03:19:29 server maldet(1459): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Jan 13 2025 03:19:29 server maldet(1459): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/advertisingindia/public_html/" "/home/bcetdgpac/public_html/" "/home/bengalhospital/public_html/" "/home/binsdgp/public_html/" "/home/dilseshaadi/public_html/" "/home/dpsbloomingbuds/public_html/" "/home/dpsdgp/public_html/" "/home/krishnaintl/public_html/" "/home/kxobgzmy/public_html/" "/home/myrara/public_html/" "/home/scpac/public_html/" "/home/sksayurvedic/public_html/" "/home/sksgi/public_html/" "/home/sksmedicalcolleg/public_html/" "/home/sksps/public_html/" "/home/sksworldschool/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Jan 13 2025 03:20:01 server maldet(1459): {scan} file list completed in 32s, found 1341 files... Jan 13 2025 03:20:01 server maldet(1459): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Jan 13 2025 03:20:01 server maldet(1459): {scan} scan of (1341 files) in progress... Jan 13 2025 03:21:11 server maldet(1459): {scan} clamscan returned an error, check /usr/local/maldetect/logs/clamscan_log for details! Jan 13 2025 03:21:12 server maldet(1459): {scan} scan completed on : files 1341, malware hits 0, cleaned hits 0, time 108s Jan 13 2025 03:21:12 server maldet(1459): {scan} scan report saved, to view run: maldet --report 250113-0319.1459 Jan 14 2025 04:37:04 server maldet(26839): {update} checking for available updates... Jan 14 2025 04:37:06 server maldet(26839): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Jan 14 2025 04:37:07 server maldet(26839): {update} hashing install files and checking against server... Jan 14 2025 04:37:08 server maldet(26839): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Jan 14 2025 04:37:08 server maldet(26839): {update} latest version already installed. Jan 14 2025 04:37:08 server maldet(27012): {sigup} performing signature update check... Jan 14 2025 04:37:08 server maldet(27012): {sigup} local signature set is version 20250113611953 Jan 14 2025 04:37:09 server maldet(27012): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Jan 14 2025 04:37:10 server maldet(27012): {sigup} latest signature set already installed Jan 14 2025 04:37:11 server maldet(27151): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Jan 14 2025 04:37:13 server maldet(27151): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Jan 14 2025 04:37:13 server maldet(27151): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Jan 14 2025 04:37:13 server maldet(27151): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Jan 14 2025 04:37:13 server maldet(27151): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/advertisingindia/public_html/" "/home/bcetdgpac/public_html/" "/home/bengalhospital/public_html/" "/home/binsdgp/public_html/" "/home/dilseshaadi/public_html/" "/home/dpsbloomingbuds/public_html/" "/home/dpsdgp/public_html/" "/home/krishnaintl/public_html/" "/home/kxobgzmy/public_html/" "/home/myrara/public_html/" "/home/scpac/public_html/" "/home/sksayurvedic/public_html/" "/home/sksgi/public_html/" "/home/sksmedicalcolleg/public_html/" "/home/sksps/public_html/" "/home/sksworldschool/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Jan 14 2025 04:40:18 server maldet(27151): {scan} file list completed in 184s, found 16552 files... Jan 14 2025 04:40:18 server maldet(27151): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Jan 14 2025 04:40:18 server maldet(27151): {scan} scan of (16552 files) in progress... Jan 14 2025 04:59:22 server maldet(27151): {hit} malware hit {HEX}php.nested.base64.652 found for /home/advertisingindia/public_html/utech.advertisingindia.net/wp-content/themes/pridmag/0x1949.php Jan 14 2025 04:59:22 server maldet(27151): {hit} malware hit {HEX}php.nested.base64.652 found for /home/advertisingindia/public_html/utech.advertisingindia.net/wp-content/themes/wordpress-mag/0x1949.php Jan 14 2025 04:59:22 server maldet(27151): {scan} scan completed on : files 16552, malware hits 2, cleaned hits 0, time 1331s Jan 14 2025 04:59:22 server maldet(27151): {scan} scan report saved, to view run: maldet --report 250114-0437.27151 Jan 14 2025 04:59:22 server maldet(27151): {scan} quarantine is disabled! set quarantine_hits=1 in conf.maldet or to quarantine results run: maldet -q 250114-0437.27151 Jan 14 2025 04:59:22 server maldet(27151): {alert} sent scan report to kkumarclassic123@gmail.com Jan 15 2025 04:21:54 server maldet(13981): {update} checking for available updates... Jan 15 2025 04:21:54 server maldet(13981): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Jan 15 2025 04:21:54 server maldet(13981): {update} hashing install files and checking against server... Jan 15 2025 04:21:55 server maldet(13981): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Jan 15 2025 04:21:55 server maldet(13981): {update} latest version already installed. Jan 15 2025 04:21:55 server maldet(14141): {sigup} performing signature update check... Jan 15 2025 04:21:55 server maldet(14141): {sigup} local signature set is version 20250113611953 Jan 15 2025 04:21:56 server maldet(14141): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Jan 15 2025 04:21:56 server maldet(14141): {sigup} latest signature set already installed Jan 15 2025 04:21:56 server maldet(14265): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Jan 15 2025 04:21:57 server maldet(14265): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Jan 15 2025 04:21:57 server maldet(14265): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Jan 15 2025 04:21:57 server maldet(14265): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Jan 15 2025 04:21:57 server maldet(14265): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/advertisingindia/public_html/" "/home/bcetdgpac/public_html/" "/home/bengalhospital/public_html/" "/home/binsdgp/public_html/" "/home/dilseshaadi/public_html/" "/home/dpsbloomingbuds/public_html/" "/home/dpsdgp/public_html/" "/home/krishnaintl/public_html/" "/home/kxobgzmy/public_html/" "/home/myrara/public_html/" "/home/scpac/public_html/" "/home/sksayurvedic/public_html/" "/home/sksgi/public_html/" "/home/sksmedicalcolleg/public_html/" "/home/sksps/public_html/" "/home/sksworldschool/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Jan 15 2025 04:22:33 server maldet(14265): {scan} file list completed in 36s, found 40421 files... Jan 15 2025 04:22:33 server maldet(14265): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Jan 15 2025 04:22:33 server maldet(14265): {scan} scan of (40421 files) in progress... Jan 15 2025 04:33:17 server maldet(14265): {hit} malware hit {HEX}php.base64.inject.179 found for /home/advertisingindia/public_html/wp-includes/public/js/wp-kbbrands/index.php Jan 15 2025 04:33:18 server maldet(14265): {scan} scan completed on : files 40421, malware hits 1, cleaned hits 0, time 682s Jan 15 2025 04:33:18 server maldet(14265): {scan} scan report saved, to view run: maldet --report 250115-0421.14265 Jan 15 2025 04:33:18 server maldet(14265): {scan} quarantine is disabled! set quarantine_hits=1 in conf.maldet or to quarantine results run: maldet -q 250115-0421.14265 Jan 15 2025 04:33:18 server maldet(14265): {alert} sent scan report to kkumarclassic123@gmail.com Jan 16 2025 04:31:55 server maldet(12949): {update} checking for available updates... Jan 16 2025 04:31:56 server maldet(12949): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Jan 16 2025 04:31:56 server maldet(12949): {update} hashing install files and checking against server... Jan 16 2025 04:31:58 server maldet(12949): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Jan 16 2025 04:31:58 server maldet(12949): {update} latest version already installed. Jan 16 2025 04:31:58 server maldet(13115): {sigup} performing signature update check... Jan 16 2025 04:31:58 server maldet(13115): {sigup} local signature set is version 20250113611953 Jan 16 2025 04:31:59 server maldet(13115): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Jan 16 2025 04:31:59 server maldet(13115): {sigup} new signature set 202501161368332 available Jan 16 2025 04:31:59 server maldet(13115): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Jan 16 2025 04:32:00 server maldet(13115): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Jan 16 2025 04:32:00 server maldet(13115): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Jan 16 2025 04:32:00 server maldet(13115): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Jan 16 2025 04:32:01 server maldet(13115): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Jan 16 2025 04:32:01 server maldet(13115): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Jan 16 2025 04:32:01 server maldet(13115): {sigup} verified md5sum of maldet-sigpack.tgz Jan 16 2025 04:32:01 server maldet(13115): {sigup} unpacked and installed maldet-sigpack.tgz Jan 16 2025 04:32:02 server maldet(13115): {sigup} verified md5sum of maldet-clean.tgz Jan 16 2025 04:32:02 server maldet(13115): {sigup} unpacked and installed maldet-clean.tgz Jan 16 2025 04:32:02 server maldet(13115): {sigup} signature set update completed Jan 16 2025 04:32:02 server maldet(13115): {sigup} 17638 signatures (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Jan 16 2025 04:32:03 server maldet(13404): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Jan 16 2025 04:32:04 server maldet(13404): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Jan 16 2025 04:32:04 server maldet(13404): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Jan 16 2025 04:32:04 server maldet(13404): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Jan 16 2025 04:32:04 server maldet(13404): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/advertisingindia/public_html/" "/home/bcetdgpac/public_html/" "/home/bengalhospital/public_html/" "/home/binsdgp/public_html/" "/home/dilseshaadi/public_html/" "/home/dpsbloomingbuds/public_html/" "/home/dpsdgp/public_html/" "/home/krishnaintl/public_html/" "/home/kxobgzmy/public_html/" "/home/myrara/public_html/" "/home/scpac/public_html/" "/home/sksayurvedic/public_html/" "/home/sksgi/public_html/" "/home/sksmedicalcolleg/public_html/" "/home/sksps/public_html/" "/home/sksworldschool/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Jan 16 2025 04:33:11 server maldet(13404): {scan} file list completed in 67s, found 3513 files... Jan 16 2025 04:33:11 server maldet(13404): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Jan 16 2025 04:33:11 server maldet(13404): {scan} scan of (3513 files) in progress... Jan 16 2025 04:35:45 server maldet(13404): {scan} scan completed on : files 3513, malware hits 0, cleaned hits 0, time 222s Jan 16 2025 04:35:45 server maldet(13404): {scan} scan report saved, to view run: maldet --report 250116-0432.13404 Jan 17 2025 03:50:07 server maldet(29898): {update} checking for available updates... Jan 17 2025 03:50:08 server maldet(29898): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Jan 17 2025 03:50:08 server maldet(29898): {update} hashing install files and checking against server... Jan 17 2025 03:50:09 server maldet(29898): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Jan 17 2025 03:50:09 server maldet(29898): {update} latest version already installed. Jan 17 2025 03:50:09 server maldet(30080): {sigup} performing signature update check... Jan 17 2025 03:50:09 server maldet(30080): {sigup} local signature set is version 202501161368332 Jan 17 2025 03:50:10 server maldet(30080): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Jan 17 2025 03:50:10 server maldet(30080): {sigup} latest signature set already installed Jan 17 2025 03:50:10 server maldet(30216): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Jan 17 2025 03:50:12 server maldet(30216): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Jan 17 2025 03:50:12 server maldet(30216): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Jan 17 2025 03:50:12 server maldet(30216): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Jan 17 2025 03:50:12 server maldet(30216): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/advertisingindia/public_html/" "/home/bcetdgpac/public_html/" "/home/bengalhospital/public_html/" "/home/binsdgp/public_html/" "/home/dilseshaadi/public_html/" "/home/dpsbloomingbuds/public_html/" "/home/dpsdgp/public_html/" "/home/krishnaintl/public_html/" "/home/kxobgzmy/public_html/" "/home/myrara/public_html/" "/home/scpac/public_html/" "/home/sksayurvedic/public_html/" "/home/sksgi/public_html/" "/home/sksmedicalcolleg/public_html/" "/home/sksps/public_html/" "/home/sksworldschool/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Jan 17 2025 03:50:38 server maldet(30216): {scan} file list completed in 26s, found 1585 files... Jan 17 2025 03:50:38 server maldet(30216): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Jan 17 2025 03:50:38 server maldet(30216): {scan} scan of (1585 files) in progress... Jan 17 2025 03:51:55 server maldet(30216): {scan} scan completed on : files 1585, malware hits 0, cleaned hits 0, time 105s Jan 17 2025 03:51:55 server maldet(30216): {scan} scan report saved, to view run: maldet --report 250117-0350.30216 Jan 18 2025 03:59:12 server maldet(6756): {update} checking for available updates... Jan 18 2025 03:59:13 server maldet(6756): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Jan 18 2025 03:59:13 server maldet(6756): {update} hashing install files and checking against server... Jan 18 2025 03:59:15 server maldet(6756): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Jan 18 2025 03:59:16 server maldet(6756): {update} latest version already installed. Jan 18 2025 03:59:17 server maldet(7042): {sigup} performing signature update check... Jan 18 2025 03:59:17 server maldet(7042): {sigup} local signature set is version 202501161368332 Jan 18 2025 03:59:19 server maldet(7042): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Jan 18 2025 03:59:20 server maldet(7042): {sigup} latest signature set already installed Jan 18 2025 03:59:23 server maldet(7319): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Jan 18 2025 03:59:25 server maldet(7319): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Jan 18 2025 03:59:26 server maldet(7319): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Jan 18 2025 03:59:26 server maldet(7319): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Jan 18 2025 03:59:26 server maldet(7319): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/advertisingindia/public_html/" "/home/bcetdgpac/public_html/" "/home/bengalhospital/public_html/" "/home/binsdgp/public_html/" "/home/dilseshaadi/public_html/" "/home/dpsbloomingbuds/public_html/" "/home/dpsdgp/public_html/" "/home/krishnaintl/public_html/" "/home/kxobgzmy/public_html/" "/home/myrara/public_html/" "/home/scpac/public_html/" "/home/sksayurvedic/public_html/" "/home/sksgi/public_html/" "/home/sksmedicalcolleg/public_html/" "/home/sksps/public_html/" "/home/sksworldschool/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Jan 18 2025 04:03:02 server maldet(7319): {scan} file list completed in 216s, found 768 files... Jan 18 2025 04:03:03 server maldet(7319): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Jan 18 2025 04:03:03 server maldet(7319): {scan} scan of (768 files) in progress... Jan 18 2025 04:04:58 server maldet(7319): {scan} scan completed on : files 768, malware hits 0, cleaned hits 0, time 334s Jan 18 2025 04:04:58 server maldet(7319): {scan} scan report saved, to view run: maldet --report 250118-0359.7319 Jan 19 2025 03:54:22 server maldet(26964): {update} checking for available updates... Jan 19 2025 03:54:23 server maldet(26964): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Jan 19 2025 03:54:23 server maldet(26964): {update} hashing install files and checking against server... Jan 19 2025 03:54:24 server maldet(26964): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Jan 19 2025 03:54:24 server maldet(26964): {update} latest version already installed. Jan 19 2025 03:54:25 server maldet(27142): {sigup} performing signature update check... Jan 19 2025 03:54:25 server maldet(27142): {sigup} local signature set is version 202501161368332 Jan 19 2025 03:54:25 server maldet(27142): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Jan 19 2025 03:54:25 server maldet(27142): {sigup} new signature set 202501192124524 available Jan 19 2025 03:54:25 server maldet(27142): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Jan 19 2025 03:54:26 server maldet(27142): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Jan 19 2025 03:54:27 server maldet(27142): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Jan 19 2025 03:54:27 server maldet(27142): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Jan 19 2025 03:54:27 server maldet(27142): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Jan 19 2025 03:54:27 server maldet(27142): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Jan 19 2025 03:54:27 server maldet(27142): {sigup} verified md5sum of maldet-sigpack.tgz Jan 19 2025 03:54:28 server maldet(27142): {sigup} unpacked and installed maldet-sigpack.tgz Jan 19 2025 03:54:29 server maldet(27142): {sigup} verified md5sum of maldet-clean.tgz Jan 19 2025 03:54:29 server maldet(27142): {sigup} unpacked and installed maldet-clean.tgz Jan 19 2025 03:54:29 server maldet(27142): {sigup} signature set update completed Jan 19 2025 03:54:29 server maldet(27142): {sigup} 17638 signatures (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Jan 19 2025 03:54:30 server maldet(27466): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Jan 19 2025 03:54:31 server maldet(27466): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Jan 19 2025 03:54:31 server maldet(27466): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Jan 19 2025 03:54:31 server maldet(27466): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Jan 19 2025 03:54:32 server maldet(27466): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/advertisingindia/public_html/" "/home/bcetdgpac/public_html/" "/home/bengalhospital/public_html/" "/home/binsdgp/public_html/" "/home/dilseshaadi/public_html/" "/home/dpsbloomingbuds/public_html/" "/home/dpsdgp/public_html/" "/home/krishnaintl/public_html/" "/home/kxobgzmy/public_html/" "/home/myrara/public_html/" "/home/scpac/public_html/" "/home/sksayurvedic/public_html/" "/home/sksgi/public_html/" "/home/sksmedicalcolleg/public_html/" "/home/sksps/public_html/" "/home/sksworldschool/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Jan 19 2025 03:56:05 server maldet(27466): {scan} file list completed in 94s, found 613 files... Jan 19 2025 03:56:06 server maldet(27466): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Jan 19 2025 03:56:06 server maldet(27466): {scan} scan of (613 files) in progress... Jan 19 2025 03:57:05 server maldet(27466): {scan} scan completed on : files 613, malware hits 0, cleaned hits 0, time 154s Jan 19 2025 03:57:05 server maldet(27466): {scan} scan report saved, to view run: maldet --report 250119-0354.27466 Jan 20 2025 03:26:07 server maldet(29241): {update} checking for available updates... Jan 20 2025 03:26:08 server maldet(29241): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Jan 20 2025 03:26:09 server maldet(29241): {update} hashing install files and checking against server... Jan 20 2025 03:26:09 server maldet(29241): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Jan 20 2025 03:26:09 server maldet(29241): {update} latest version already installed. Jan 20 2025 03:26:10 server maldet(29472): {sigup} performing signature update check... Jan 20 2025 03:26:10 server maldet(29472): {sigup} local signature set is version 202501192124524 Jan 20 2025 03:26:10 server maldet(29472): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Jan 20 2025 03:26:10 server maldet(29472): {sigup} latest signature set already installed Jan 20 2025 03:26:11 server maldet(29602): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Jan 20 2025 03:26:13 server maldet(29602): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Jan 20 2025 03:26:13 server maldet(29602): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Jan 20 2025 03:26:13 server maldet(29602): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Jan 20 2025 03:26:13 server maldet(29602): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/advertisingindia/public_html/" "/home/bcetdgpac/public_html/" "/home/bengalhospital/public_html/" "/home/binsdgp/public_html/" "/home/dilseshaadi/public_html/" "/home/dpsbloomingbuds/public_html/" "/home/dpsdgp/public_html/" "/home/krishnaintl/public_html/" "/home/kxobgzmy/public_html/" "/home/myrara/public_html/" "/home/scpac/public_html/" "/home/sksayurvedic/public_html/" "/home/sksgi/public_html/" "/home/sksmedicalcolleg/public_html/" "/home/sksps/public_html/" "/home/sksworldschool/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Jan 20 2025 03:28:42 server maldet(29602): {scan} file list completed in 149s, found 326 files... Jan 20 2025 03:28:42 server maldet(29602): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Jan 20 2025 03:28:42 server maldet(29602): {scan} scan of (326 files) in progress... Jan 20 2025 03:29:28 server maldet(29602): {scan} scan completed on : files 326, malware hits 0, cleaned hits 0, time 196s Jan 20 2025 03:29:28 server maldet(29602): {scan} scan report saved, to view run: maldet --report 250120-0326.29602 Jan 21 2025 03:16:30 server maldet(11138): {update} checking for available updates... Jan 21 2025 03:16:31 server maldet(11138): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Jan 21 2025 03:16:31 server maldet(11138): {update} hashing install files and checking against server... Jan 21 2025 03:16:31 server maldet(11138): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Jan 21 2025 03:16:31 server maldet(11138): {update} latest version already installed. Jan 21 2025 03:16:32 server maldet(11290): {sigup} performing signature update check... Jan 21 2025 03:16:32 server maldet(11290): {sigup} local signature set is version 202501192124524 Jan 21 2025 03:16:32 server maldet(11290): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Jan 21 2025 03:16:32 server maldet(11290): {sigup} latest signature set already installed Jan 21 2025 03:16:33 server maldet(11415): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Jan 21 2025 03:16:33 server maldet(11415): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Jan 21 2025 03:16:33 server maldet(11415): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Jan 21 2025 03:16:33 server maldet(11415): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Jan 21 2025 03:16:33 server maldet(11415): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/advertisingindia/public_html/" "/home/bcetdgpac/public_html/" "/home/bengalhospital/public_html/" "/home/binsdgp/public_html/" "/home/dilseshaadi/public_html/" "/home/dpsbloomingbuds/public_html/" "/home/dpsdgp/public_html/" "/home/krishnaintl/public_html/" "/home/kxobgzmy/public_html/" "/home/myrara/public_html/" "/home/scpac/public_html/" "/home/sksayurvedic/public_html/" "/home/sksgi/public_html/" "/home/sksmedicalcolleg/public_html/" "/home/sksps/public_html/" "/home/sksworldschool/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Jan 21 2025 03:17:03 server maldet(11415): {scan} file list completed in 28s, found 15515 files... Jan 21 2025 03:17:03 server maldet(11415): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Jan 21 2025 03:17:03 server maldet(11415): {scan} scan of (15515 files) in progress... Jan 21 2025 03:25:28 server maldet(11415): {scan} scan completed on : files 15515, malware hits 0, cleaned hits 0, time 535s Jan 21 2025 03:25:28 server maldet(11415): {scan} scan report saved, to view run: maldet --report 250121-0316.11415 Jan 22 2025 03:56:49 server maldet(5313): {update} checking for available updates... Jan 22 2025 03:56:50 server maldet(5313): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Jan 22 2025 03:56:50 server maldet(5313): {update} hashing install files and checking against server... Jan 22 2025 03:56:52 server maldet(5313): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Jan 22 2025 03:56:52 server maldet(5313): {update} latest version already installed. Jan 22 2025 03:56:54 server maldet(5469): {sigup} performing signature update check... Jan 22 2025 03:56:54 server maldet(5469): {sigup} local signature set is version 202501192124524 Jan 22 2025 03:56:54 server maldet(5469): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Jan 22 2025 03:56:54 server maldet(5469): {sigup} new signature set 202501222816618 available Jan 22 2025 03:56:54 server maldet(5469): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Jan 22 2025 03:56:56 server maldet(5469): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Jan 22 2025 03:56:56 server maldet(5469): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Jan 22 2025 03:56:56 server maldet(5469): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Jan 22 2025 03:56:57 server maldet(5469): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Jan 22 2025 03:56:57 server maldet(5469): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Jan 22 2025 03:56:57 server maldet(5469): {sigup} verified md5sum of maldet-sigpack.tgz Jan 22 2025 03:56:57 server maldet(5469): {sigup} unpacked and installed maldet-sigpack.tgz Jan 22 2025 03:56:57 server maldet(5469): {sigup} verified md5sum of maldet-clean.tgz Jan 22 2025 03:56:58 server maldet(5469): {sigup} unpacked and installed maldet-clean.tgz Jan 22 2025 03:56:58 server maldet(5469): {sigup} signature set update completed Jan 22 2025 03:56:58 server maldet(5469): {sigup} 17638 signatures (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Jan 22 2025 03:56:58 server maldet(5751): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Jan 22 2025 03:56:59 server maldet(5751): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Jan 22 2025 03:56:59 server maldet(5751): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Jan 22 2025 03:56:59 server maldet(5751): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Jan 22 2025 03:56:59 server maldet(5751): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/advertisingindia/public_html/" "/home/bcetdgpac/public_html/" "/home/bengalhospital/public_html/" "/home/binsdgp/public_html/" "/home/dilseshaadi/public_html/" "/home/dpsbloomingbuds/public_html/" "/home/dpsdgp/public_html/" "/home/krishnaintl/public_html/" "/home/kxobgzmy/public_html/" "/home/myrara/public_html/" "/home/scpac/public_html/" "/home/sksayurvedic/public_html/" "/home/sksgi/public_html/" "/home/sksmedicalcolleg/public_html/" "/home/sksps/public_html/" "/home/sksworldschool/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Jan 22 2025 03:58:13 server maldet(5751): {scan} file list completed in 73s, found 2737 files... Jan 22 2025 03:58:13 server maldet(5751): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Jan 22 2025 03:58:13 server maldet(5751): {scan} scan of (2737 files) in progress... Jan 22 2025 04:01:04 server maldet(5751): {scan} scan completed on : files 2737, malware hits 0, cleaned hits 0, time 245s Jan 22 2025 04:01:04 server maldet(5751): {scan} scan report saved, to view run: maldet --report 250122-0356.5751 Jan 23 2025 04:33:11 server maldet(31952): {update} checking for available updates... Jan 23 2025 04:33:11 server maldet(31952): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Jan 23 2025 04:33:11 server maldet(31952): {update} hashing install files and checking against server... Jan 23 2025 04:33:12 server maldet(31952): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Jan 23 2025 04:33:12 server maldet(31952): {update} latest version already installed. Jan 23 2025 04:33:12 server maldet(32116): {sigup} performing signature update check... Jan 23 2025 04:33:12 server maldet(32116): {sigup} local signature set is version 202501222816618 Jan 23 2025 04:33:12 server maldet(32116): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Jan 23 2025 04:33:12 server maldet(32116): {sigup} latest signature set already installed Jan 23 2025 04:33:13 server maldet(32251): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Jan 23 2025 04:33:14 server maldet(32251): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Jan 23 2025 04:33:14 server maldet(32251): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Jan 23 2025 04:33:14 server maldet(32251): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Jan 23 2025 04:33:14 server maldet(32251): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/advertisingindia/public_html/" "/home/bcetdgpac/public_html/" "/home/bengalhospital/public_html/" "/home/binsdgp/public_html/" "/home/dilseshaadi/public_html/" "/home/dpsbloomingbuds/public_html/" "/home/dpsdgp/public_html/" "/home/krishnaintl/public_html/" "/home/kxobgzmy/public_html/" "/home/myrara/public_html/" "/home/scpac/public_html/" "/home/sksayurvedic/public_html/" "/home/sksgi/public_html/" "/home/sksmedicalcolleg/public_html/" "/home/sksps/public_html/" "/home/sksworldschool/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Jan 23 2025 04:33:29 server maldet(32251): {scan} file list completed in 15s, found 624 files... Jan 23 2025 04:33:29 server maldet(32251): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Jan 23 2025 04:33:29 server maldet(32251): {scan} scan of (624 files) in progress... Jan 23 2025 04:33:58 server maldet(32251): {scan} scan completed on : files 624, malware hits 0, cleaned hits 0, time 44s Jan 23 2025 04:33:58 server maldet(32251): {scan} scan report saved, to view run: maldet --report 250123-0433.32251 Jan 24 2025 04:19:37 server maldet(26033): {update} checking for available updates... Jan 24 2025 04:19:38 server maldet(26033): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Jan 24 2025 04:19:38 server maldet(26033): {update} hashing install files and checking against server... Jan 24 2025 04:19:38 server maldet(26033): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Jan 24 2025 04:19:38 server maldet(26033): {update} latest version already installed. Jan 24 2025 04:19:38 server maldet(26176): {sigup} performing signature update check... Jan 24 2025 04:19:38 server maldet(26176): {sigup} local signature set is version 202501222816618 Jan 24 2025 04:19:39 server maldet(26176): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Jan 24 2025 04:19:39 server maldet(26176): {sigup} latest signature set already installed Jan 24 2025 04:19:39 server maldet(26308): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Jan 24 2025 04:19:40 server maldet(26308): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Jan 24 2025 04:19:40 server maldet(26308): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Jan 24 2025 04:19:40 server maldet(26308): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Jan 24 2025 04:19:40 server maldet(26308): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/advertisingindia/public_html/" "/home/bcetdgpac/public_html/" "/home/bengalhospital/public_html/" "/home/binsdgp/public_html/" "/home/dilseshaadi/public_html/" "/home/dpsbloomingbuds/public_html/" "/home/dpsdgp/public_html/" "/home/krishnaintl/public_html/" "/home/kxobgzmy/public_html/" "/home/myrara/public_html/" "/home/scpac/public_html/" "/home/sksayurvedic/public_html/" "/home/sksgi/public_html/" "/home/sksmedicalcolleg/public_html/" "/home/sksps/public_html/" "/home/sksworldschool/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Jan 24 2025 04:20:40 server maldet(26308): {scan} file list completed in 60s, found 85483 files... Jan 24 2025 04:20:40 server maldet(26308): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Jan 24 2025 04:20:40 server maldet(26308): {scan} scan of (85483 files) in progress... Jan 24 2025 05:24:27 server maldet(26308): {scan} clamscan returned an error, check /usr/local/maldetect/logs/clamscan_log for details! Jan 24 2025 05:24:28 server maldet(26308): {scan} scan completed on : files 85483, malware hits 0, cleaned hits 0, time 3889s Jan 24 2025 05:24:28 server maldet(26308): {scan} scan report saved, to view run: maldet --report 250124-0419.26308 Jan 25 2025 04:45:40 server maldet(25059): {update} checking for available updates... Jan 25 2025 04:45:41 server maldet(25059): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Jan 25 2025 04:45:41 server maldet(25059): {update} hashing install files and checking against server... Jan 25 2025 04:45:41 server maldet(25059): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Jan 25 2025 04:45:41 server maldet(25059): {update} latest version already installed. Jan 25 2025 04:45:41 server maldet(25219): {sigup} performing signature update check... Jan 25 2025 04:45:41 server maldet(25219): {sigup} local signature set is version 202501222816618 Jan 25 2025 04:45:42 server maldet(25219): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Jan 25 2025 04:45:42 server maldet(25219): {sigup} new signature set 202501253509456 available Jan 25 2025 04:45:42 server maldet(25219): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Jan 25 2025 04:45:42 server maldet(25219): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Jan 25 2025 04:45:43 server maldet(25219): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Jan 25 2025 04:45:43 server maldet(25219): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Jan 25 2025 04:45:44 server maldet(25219): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Jan 25 2025 04:45:45 server maldet(25219): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Jan 25 2025 04:45:45 server maldet(25219): {sigup} verified md5sum of maldet-sigpack.tgz Jan 25 2025 04:45:45 server maldet(25219): {sigup} unpacked and installed maldet-sigpack.tgz Jan 25 2025 04:45:46 server maldet(25219): {sigup} verified md5sum of maldet-clean.tgz Jan 25 2025 04:45:46 server maldet(25219): {sigup} unpacked and installed maldet-clean.tgz Jan 25 2025 04:45:46 server maldet(25219): {sigup} signature set update completed Jan 25 2025 04:45:47 server maldet(25219): {sigup} 17638 signatures (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Jan 25 2025 04:45:48 server maldet(25546): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Jan 25 2025 04:45:50 server maldet(25546): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Jan 25 2025 04:45:50 server maldet(25546): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Jan 25 2025 04:45:50 server maldet(25546): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Jan 25 2025 04:45:50 server maldet(25546): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/advertisingindia/public_html/" "/home/bcetdgpac/public_html/" "/home/bengalhospital/public_html/" "/home/binsdgp/public_html/" "/home/dilseshaadi/public_html/" "/home/dpsbloomingbuds/public_html/" "/home/dpsdgp/public_html/" "/home/krishnaintl/public_html/" "/home/kxobgzmy/public_html/" "/home/myrara/public_html/" "/home/scpac/public_html/" "/home/sksayurvedic/public_html/" "/home/sksgi/public_html/" "/home/sksmedicalcolleg/public_html/" "/home/sksps/public_html/" "/home/sksworldschool/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Jan 25 2025 04:47:06 server maldet(25546): {scan} file list completed in 76s, found 3524 files... Jan 25 2025 04:47:06 server maldet(25546): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Jan 25 2025 04:47:06 server maldet(25546): {scan} scan of (3524 files) in progress... Jan 25 2025 04:49:32 server maldet(25546): {scan} clamscan returned an error, check /usr/local/maldetect/logs/clamscan_log for details! Jan 25 2025 04:49:32 server maldet(25546): {scan} scan completed on : files 3524, malware hits 0, cleaned hits 0, time 224s Jan 25 2025 04:49:32 server maldet(25546): {scan} scan report saved, to view run: maldet --report 250125-0445.25546 Jan 26 2025 04:11:15 server maldet(27614): {update} checking for available updates... Jan 26 2025 04:11:16 server maldet(27614): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Jan 26 2025 04:11:16 server maldet(27614): {update} hashing install files and checking against server... Jan 26 2025 04:11:16 server maldet(27614): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Jan 26 2025 04:11:16 server maldet(27614): {update} latest version already installed. Jan 26 2025 04:11:16 server maldet(27777): {sigup} performing signature update check... Jan 26 2025 04:11:16 server maldet(27777): {sigup} local signature set is version 202501253509456 Jan 26 2025 04:11:16 server maldet(27777): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Jan 26 2025 04:11:16 server maldet(27777): {sigup} latest signature set already installed Jan 26 2025 04:11:17 server maldet(27911): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Jan 26 2025 04:11:18 server maldet(27911): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Jan 26 2025 04:11:18 server maldet(27911): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Jan 26 2025 04:11:18 server maldet(27911): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Jan 26 2025 04:11:18 server maldet(27911): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/advertisingindia/public_html/" "/home/bcetdgpac/public_html/" "/home/bengalhospital/public_html/" "/home/binsdgp/public_html/" "/home/dilseshaadi/public_html/" "/home/dpsbloomingbuds/public_html/" "/home/dpsdgp/public_html/" "/home/krishnaintl/public_html/" "/home/kxobgzmy/public_html/" "/home/myrara/public_html/" "/home/scpac/public_html/" "/home/sksayurvedic/public_html/" "/home/sksgi/public_html/" "/home/sksmedicalcolleg/public_html/" "/home/sksps/public_html/" "/home/sksworldschool/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Jan 26 2025 04:11:36 server maldet(27911): {scan} file list completed in 18s, found 1750 files... Jan 26 2025 04:11:36 server maldet(27911): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Jan 26 2025 04:11:36 server maldet(27911): {scan} scan of (1750 files) in progress... Jan 26 2025 04:12:06 server maldet(27911): {scan} scan completed on : files 1750, malware hits 0, cleaned hits 0, time 48s Jan 26 2025 04:12:06 server maldet(27911): {scan} scan report saved, to view run: maldet --report 250126-0411.27911 Jan 27 2025 03:44:28 server maldet(26556): {update} checking for available updates... Jan 27 2025 03:44:29 server maldet(26556): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Jan 27 2025 03:44:29 server maldet(26556): {update} hashing install files and checking against server... Jan 27 2025 03:44:29 server maldet(26556): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Jan 27 2025 03:44:29 server maldet(26556): {update} latest version already installed. Jan 27 2025 03:44:30 server maldet(26718): {sigup} performing signature update check... Jan 27 2025 03:44:30 server maldet(26718): {sigup} local signature set is version 202501253509456 Jan 27 2025 03:44:31 server maldet(26718): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Jan 27 2025 03:44:31 server maldet(26718): {sigup} latest signature set already installed Jan 27 2025 03:44:33 server maldet(26869): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Jan 27 2025 03:44:35 server maldet(26869): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Jan 27 2025 03:44:35 server maldet(26869): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Jan 27 2025 03:44:35 server maldet(26869): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Jan 27 2025 03:44:35 server maldet(26869): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/advertisingindia/public_html/" "/home/bcetdgpac/public_html/" "/home/bengalhospital/public_html/" "/home/binsdgp/public_html/" "/home/dilseshaadi/public_html/" "/home/dpsbloomingbuds/public_html/" "/home/dpsdgp/public_html/" "/home/krishnaintl/public_html/" "/home/kxobgzmy/public_html/" "/home/myrara/public_html/" "/home/scpac/public_html/" "/home/sksayurvedic/public_html/" "/home/sksgi/public_html/" "/home/sksmedicalcolleg/public_html/" "/home/sksps/public_html/" "/home/sksworldschool/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Jan 27 2025 03:45:35 server maldet(26869): {scan} file list completed in 60s, found 1843 files... Jan 27 2025 03:45:35 server maldet(26869): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Jan 27 2025 03:45:35 server maldet(26869): {scan} scan of (1843 files) in progress... Jan 27 2025 03:47:44 server maldet(26869): {scan} scan completed on : files 1843, malware hits 0, cleaned hits 0, time 190s Jan 27 2025 03:47:44 server maldet(26869): {scan} scan report saved, to view run: maldet --report 250127-0344.26869 Jan 28 2025 04:15:13 server maldet(20526): {update} checking for available updates... Jan 28 2025 04:15:13 server maldet(20526): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Jan 28 2025 04:15:13 server maldet(20526): {update} hashing install files and checking against server... Jan 28 2025 04:15:14 server maldet(20526): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Jan 28 2025 04:15:14 server maldet(20526): {update} latest version already installed. Jan 28 2025 04:15:14 server maldet(20695): {sigup} performing signature update check... Jan 28 2025 04:15:14 server maldet(20695): {sigup} local signature set is version 202501253509456 Jan 28 2025 04:15:14 server maldet(20695): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Jan 28 2025 04:15:14 server maldet(20695): {sigup} new signature set 202501287825 available Jan 28 2025 04:15:14 server maldet(20695): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Jan 28 2025 04:15:15 server maldet(20695): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Jan 28 2025 04:15:15 server maldet(20695): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Jan 28 2025 04:15:15 server maldet(20695): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Jan 28 2025 04:15:15 server maldet(20695): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Jan 28 2025 04:15:16 server maldet(20695): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Jan 28 2025 04:15:16 server maldet(20695): {sigup} verified md5sum of maldet-sigpack.tgz Jan 28 2025 04:15:16 server maldet(20695): {sigup} unpacked and installed maldet-sigpack.tgz Jan 28 2025 04:15:16 server maldet(20695): {sigup} verified md5sum of maldet-clean.tgz Jan 28 2025 04:15:16 server maldet(20695): {sigup} unpacked and installed maldet-clean.tgz Jan 28 2025 04:15:16 server maldet(20695): {sigup} signature set update completed Jan 28 2025 04:15:16 server maldet(20695): {sigup} 17638 signatures (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Jan 28 2025 04:15:17 server maldet(20941): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Jan 28 2025 04:15:18 server maldet(20941): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Jan 28 2025 04:15:18 server maldet(20941): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Jan 28 2025 04:15:18 server maldet(20941): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Jan 28 2025 04:15:19 server maldet(20941): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/advertisingindia/public_html/" "/home/bcetdgpac/public_html/" "/home/bengalhospital/public_html/" "/home/binsdgp/public_html/" "/home/dilseshaadi/public_html/" "/home/dpsbloomingbuds/public_html/" "/home/dpsdgp/public_html/" "/home/krishnaintl/public_html/" "/home/kxobgzmy/public_html/" "/home/myrara/public_html/" "/home/scpac/public_html/" "/home/sksayurvedic/public_html/" "/home/sksgi/public_html/" "/home/sksmedicalcolleg/public_html/" "/home/sksps/public_html/" "/home/sksworldschool/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Jan 28 2025 04:16:08 server maldet(20941): {scan} file list completed in 49s, found 5441 files... Jan 28 2025 04:16:08 server maldet(20941): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Jan 28 2025 04:16:08 server maldet(20941): {scan} scan of (5441 files) in progress... Jan 28 2025 04:18:53 server maldet(20941): {scan} scan completed on : files 5441, malware hits 0, cleaned hits 0, time 216s Jan 28 2025 04:18:53 server maldet(20941): {scan} scan report saved, to view run: maldet --report 250128-0415.20941 Jan 29 2025 04:20:47 server maldet(12742): {update} checking for available updates... Jan 29 2025 04:20:47 server maldet(12742): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Jan 29 2025 04:20:47 server maldet(12742): {update} hashing install files and checking against server... Jan 29 2025 04:20:47 server maldet(12742): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Jan 29 2025 04:20:48 server maldet(12742): {update} latest version already installed. Jan 29 2025 04:20:48 server maldet(12900): {sigup} performing signature update check... Jan 29 2025 04:20:48 server maldet(12900): {sigup} local signature set is version 202501287825 Jan 29 2025 04:20:49 server maldet(12900): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Jan 29 2025 04:20:49 server maldet(12900): {sigup} latest signature set already installed Jan 29 2025 04:20:50 server maldet(13029): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Jan 29 2025 04:20:51 server maldet(13029): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Jan 29 2025 04:20:51 server maldet(13029): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Jan 29 2025 04:20:52 server maldet(13029): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Jan 29 2025 04:20:52 server maldet(13029): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/advertisingindia/public_html/" "/home/bcetdgpac/public_html/" "/home/bengalhospital/public_html/" "/home/binsdgp/public_html/" "/home/dilseshaadi/public_html/" "/home/dpsbloomingbuds/public_html/" "/home/dpsdgp/public_html/" "/home/krishnaintl/public_html/" "/home/kxobgzmy/public_html/" "/home/myrara/public_html/" "/home/scpac/public_html/" "/home/sksayurvedic/public_html/" "/home/sksgi/public_html/" "/home/sksmedicalcolleg/public_html/" "/home/sksps/public_html/" "/home/sksworldschool/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Jan 29 2025 04:21:27 server maldet(13029): {scan} file list completed in 35s, found 7141 files... Jan 29 2025 04:21:27 server maldet(13029): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Jan 29 2025 04:21:27 server maldet(13029): {scan} scan of (7141 files) in progress... Jan 29 2025 04:25:38 server maldet(13029): {scan} scan completed on : files 7141, malware hits 0, cleaned hits 0, time 288s Jan 29 2025 04:25:38 server maldet(13029): {scan} scan report saved, to view run: maldet --report 250129-0420.13029 Jan 30 2025 04:30:08 server maldet(7174): {update} checking for available updates... Jan 30 2025 04:30:12 server maldet(7174): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Jan 30 2025 04:30:12 server maldet(7174): {update} hashing install files and checking against server... Jan 30 2025 04:30:13 server maldet(7174): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Jan 30 2025 04:30:13 server maldet(7174): {update} latest version already installed. Jan 30 2025 04:30:16 server maldet(7372): {sigup} performing signature update check... Jan 30 2025 04:30:16 server maldet(7372): {sigup} local signature set is version 202501287825 Jan 30 2025 04:30:18 server maldet(7372): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Jan 30 2025 04:30:19 server maldet(7372): {sigup} latest signature set already installed Jan 30 2025 04:30:26 server maldet(7578): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Jan 30 2025 04:30:39 server maldet(7578): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Jan 30 2025 04:30:40 server maldet(7578): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Jan 30 2025 04:30:41 server maldet(7578): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Jan 30 2025 04:30:42 server maldet(7578): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/advertisingindia/public_html/" "/home/bcetdgpac/public_html/" "/home/bengalhospital/public_html/" "/home/binsdgp/public_html/" "/home/dilseshaadi/public_html/" "/home/dpsbloomingbuds/public_html/" "/home/dpsdgp/public_html/" "/home/krishnaintl/public_html/" "/home/kxobgzmy/public_html/" "/home/myrara/public_html/" "/home/scpac/public_html/" "/home/sksayurvedic/public_html/" "/home/sksgi/public_html/" "/home/sksmedicalcolleg/public_html/" "/home/sksps/public_html/" "/home/sksworldschool/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Jan 30 2025 04:36:31 server maldet(7578): {scan} file list completed in 349s, found 2522 files... Jan 30 2025 04:36:32 server maldet(7578): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Jan 30 2025 04:36:32 server maldet(7578): {scan} scan of (2522 files) in progress... Jan 30 2025 04:40:24 server maldet(7578): {hit} malware hit {HEX}php.nested.base64.652 found for /home/advertisingindia/public_html/wp-content/themes/boldial/admin/front-end/index.php Jan 30 2025 04:40:25 server maldet(7578): {hit} malware hit {HEX}php.base64.inject.182 found for /home/advertisingindia/public_html/utech.advertisingindia.net/wp-content/themes/pridmag/nsts3.PhP7 Jan 30 2025 04:40:25 server maldet(7578): {scan} scan completed on : files 2522, malware hits 2, cleaned hits 0, time 599s Jan 30 2025 04:40:25 server maldet(7578): {scan} scan report saved, to view run: maldet --report 250130-0430.7578 Jan 30 2025 04:40:25 server maldet(7578): {scan} quarantine is disabled! set quarantine_hits=1 in conf.maldet or to quarantine results run: maldet -q 250130-0430.7578 Jan 30 2025 04:40:26 server maldet(7578): {alert} sent scan report to kkumarclassic123@gmail.com Jan 31 2025 04:13:35 server maldet(30588): {update} checking for available updates... Jan 31 2025 04:13:36 server maldet(30588): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Jan 31 2025 04:13:37 server maldet(30588): {update} hashing install files and checking against server... Jan 31 2025 04:13:37 server maldet(30588): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Jan 31 2025 04:13:37 server maldet(30588): {update} latest version already installed. Jan 31 2025 04:13:38 server maldet(30968): {sigup} performing signature update check... Jan 31 2025 04:13:38 server maldet(30968): {sigup} local signature set is version 202501287825 Jan 31 2025 04:13:41 server maldet(30968): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Jan 31 2025 04:13:42 server maldet(30968): {sigup} new signature set 20250131488045 available Jan 31 2025 04:13:42 server maldet(30968): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Jan 31 2025 04:13:44 server maldet(30968): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Jan 31 2025 04:13:45 server maldet(30968): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Jan 31 2025 04:13:45 server maldet(30968): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Jan 31 2025 04:13:46 server maldet(30968): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Jan 31 2025 04:13:47 server maldet(30968): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Jan 31 2025 04:13:47 server maldet(30968): {sigup} verified md5sum of maldet-sigpack.tgz Jan 31 2025 04:13:48 server maldet(30968): {sigup} unpacked and installed maldet-sigpack.tgz Jan 31 2025 04:13:49 server maldet(30968): {sigup} verified md5sum of maldet-clean.tgz Jan 31 2025 04:13:49 server maldet(30968): {sigup} unpacked and installed maldet-clean.tgz Jan 31 2025 04:13:49 server maldet(30968): {sigup} signature set update completed Jan 31 2025 04:13:50 server maldet(30968): {sigup} 17638 signatures (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Jan 31 2025 04:13:58 server maldet(32142): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Jan 31 2025 04:14:12 server maldet(32142): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Jan 31 2025 04:14:12 server maldet(32142): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Jan 31 2025 04:14:12 server maldet(32142): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Jan 31 2025 04:14:13 server maldet(32142): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/advertisingindia/public_html/" "/home/bcetdgpac/public_html/" "/home/bengalhospital/public_html/" "/home/binsdgp/public_html/" "/home/dilseshaadi/public_html/" "/home/dpsbloomingbuds/public_html/" "/home/dpsdgp/public_html/" "/home/krishnaintl/public_html/" "/home/kxobgzmy/public_html/" "/home/myrara/public_html/" "/home/scpac/public_html/" "/home/sksayurvedic/public_html/" "/home/sksgi/public_html/" "/home/sksmedicalcolleg/public_html/" "/home/sksps/public_html/" "/home/sksworldschool/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Jan 31 2025 04:17:46 server maldet(32142): {scan} file list completed in 213s, found 1095 files... Jan 31 2025 04:17:46 server maldet(32142): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Jan 31 2025 04:17:46 server maldet(32142): {scan} scan of (1095 files) in progress... Jan 31 2025 04:22:42 server maldet(32142): {hit} malware hit {HEX}php.cmdshell.egyspider.244 found for /home/advertisingindia/public_html/utech.advertisingindia.net/wp-admin/lib.php Jan 31 2025 04:22:49 server maldet(32142): {scan} scan completed on : files 1095, malware hits 1, cleaned hits 0, time 526s Jan 31 2025 04:22:50 server maldet(32142): {scan} scan report saved, to view run: maldet --report 250131-0413.32142 Jan 31 2025 04:22:51 server maldet(32142): {scan} quarantine is disabled! set quarantine_hits=1 in conf.maldet or to quarantine results run: maldet -q 250131-0413.32142 Jan 31 2025 04:22:54 server maldet(32142): {alert} sent scan report to kkumarclassic123@gmail.com Feb 01 2025 04:09:48 server maldet(17995): {update} checking for available updates... Feb 01 2025 04:09:48 server maldet(17995): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Feb 01 2025 04:09:48 server maldet(17995): {update} hashing install files and checking against server... Feb 01 2025 04:09:49 server maldet(17995): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Feb 01 2025 04:09:49 server maldet(17995): {update} latest version already installed. Feb 01 2025 04:09:50 server maldet(18227): {sigup} performing signature update check... Feb 01 2025 04:09:50 server maldet(18227): {sigup} local signature set is version 20250131488045 Feb 01 2025 04:09:50 server maldet(18227): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Feb 01 2025 04:09:50 server maldet(18227): {sigup} new signature set 202502011136909 available Feb 01 2025 04:09:50 server maldet(18227): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Feb 01 2025 04:09:51 server maldet(18227): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Feb 01 2025 04:09:51 server maldet(18227): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Feb 01 2025 04:09:51 server maldet(18227): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Feb 01 2025 04:09:52 server maldet(18227): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Feb 01 2025 04:09:52 server maldet(18227): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Feb 01 2025 04:09:52 server maldet(18227): {sigup} verified md5sum of maldet-sigpack.tgz Feb 01 2025 04:09:52 server maldet(18227): {sigup} unpacked and installed maldet-sigpack.tgz Feb 01 2025 04:09:53 server maldet(18227): {sigup} verified md5sum of maldet-clean.tgz Feb 01 2025 04:09:54 server maldet(18227): {sigup} unpacked and installed maldet-clean.tgz Feb 01 2025 04:09:54 server maldet(18227): {sigup} signature set update completed Feb 01 2025 04:09:54 server maldet(18227): {sigup} 17638 signatures (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Feb 01 2025 04:09:55 server maldet(18513): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Feb 01 2025 04:09:58 server maldet(18513): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Feb 01 2025 04:09:58 server maldet(18513): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Feb 01 2025 04:09:58 server maldet(18513): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Feb 01 2025 04:09:59 server maldet(18513): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/advertisingindia/public_html/" "/home/bcetdgpac/public_html/" "/home/bengalhospital/public_html/" "/home/binsdgp/public_html/" "/home/dilseshaadi/public_html/" "/home/dpsbloomingbuds/public_html/" "/home/dpsdgp/public_html/" "/home/krishnaintl/public_html/" "/home/kxobgzmy/public_html/" "/home/myrara/public_html/" "/home/scpac/public_html/" "/home/sksayurvedic/public_html/" "/home/sksgi/public_html/" "/home/sksmedicalcolleg/public_html/" "/home/sksps/public_html/" "/home/sksworldschool/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Feb 01 2025 04:11:19 server maldet(18513): {scan} file list completed in 80s, found 83757 files... Feb 01 2025 04:11:19 server maldet(18513): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Feb 01 2025 04:11:19 server maldet(18513): {scan} scan of (83757 files) in progress... Feb 01 2025 04:51:20 server maldet(18513): {scan} clamscan returned an error, check /usr/local/maldetect/logs/clamscan_log for details! Feb 01 2025 04:51:20 server maldet(18513): {scan} scan completed on : files 83757, malware hits 0, cleaned hits 0, time 2485s Feb 01 2025 04:51:20 server maldet(18513): {scan} scan report saved, to view run: maldet --report 250201-0409.18513 Feb 02 2025 03:17:33 server maldet(11782): {update} checking for available updates... Feb 02 2025 03:17:35 server maldet(11782): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Feb 02 2025 03:17:35 server maldet(11782): {update} hashing install files and checking against server... Feb 02 2025 03:17:35 server maldet(11782): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Feb 02 2025 03:17:35 server maldet(11782): {update} latest version already installed. Feb 02 2025 03:17:36 server maldet(11955): {sigup} performing signature update check... Feb 02 2025 03:17:36 server maldet(11955): {sigup} local signature set is version 202502011136909 Feb 02 2025 03:17:36 server maldet(11955): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Feb 02 2025 03:17:36 server maldet(11955): {sigup} latest signature set already installed Feb 02 2025 03:17:37 server maldet(12090): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Feb 02 2025 03:17:38 server maldet(12090): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Feb 02 2025 03:17:38 server maldet(12090): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Feb 02 2025 03:17:38 server maldet(12090): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Feb 02 2025 03:17:38 server maldet(12090): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/advertisingindia/public_html/" "/home/bcetdgpac/public_html/" "/home/bengalhospital/public_html/" "/home/binsdgp/public_html/" "/home/dilseshaadi/public_html/" "/home/dpsbloomingbuds/public_html/" "/home/dpsdgp/public_html/" "/home/krishnaintl/public_html/" "/home/kxobgzmy/public_html/" "/home/myrara/public_html/" "/home/scpac/public_html/" "/home/sksayurvedic/public_html/" "/home/sksgi/public_html/" "/home/sksmedicalcolleg/public_html/" "/home/sksps/public_html/" "/home/sksworldschool/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Feb 02 2025 03:17:59 server maldet(12090): {scan} file list completed in 20s, found 5185 files... Feb 02 2025 03:17:59 server maldet(12090): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Feb 02 2025 03:17:59 server maldet(12090): {scan} scan of (5185 files) in progress... Feb 02 2025 03:20:25 server maldet(12090): {hit} malware hit {HEX}php.nested.base64.652 found for /home/advertisingindia/public_html/wp-includes/widgets/1945.php Feb 02 2025 03:20:25 server maldet(12090): {hit} malware hit {HEX}php.nested.base64.652 found for /home/advertisingindia/public_html/1945.php Feb 02 2025 03:20:25 server maldet(12090): {scan} scan completed on : files 5185, malware hits 2, cleaned hits 0, time 168s Feb 02 2025 03:20:25 server maldet(12090): {scan} scan report saved, to view run: maldet --report 250202-0317.12090 Feb 02 2025 03:20:25 server maldet(12090): {scan} quarantine is disabled! set quarantine_hits=1 in conf.maldet or to quarantine results run: maldet -q 250202-0317.12090 Feb 02 2025 03:20:25 server maldet(12090): {alert} sent scan report to kkumarclassic123@gmail.com Feb 03 2025 04:34:52 server maldet(32241): {update} checking for available updates... Feb 03 2025 04:34:53 server maldet(32241): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Feb 03 2025 04:34:53 server maldet(32241): {update} hashing install files and checking against server... Feb 03 2025 04:34:53 server maldet(32241): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Feb 03 2025 04:34:53 server maldet(32241): {update} latest version already installed. Feb 03 2025 04:34:53 server maldet(32391): {sigup} performing signature update check... Feb 03 2025 04:34:53 server maldet(32391): {sigup} local signature set is version 202502011136909 Feb 03 2025 04:34:54 server maldet(32391): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Feb 03 2025 04:34:54 server maldet(32391): {sigup} latest signature set already installed Feb 03 2025 04:34:55 server maldet(32527): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Feb 03 2025 04:34:55 server maldet(32527): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Feb 03 2025 04:34:55 server maldet(32527): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Feb 03 2025 04:34:55 server maldet(32527): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Feb 03 2025 04:34:55 server maldet(32527): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/advertisingindia/public_html/" "/home/bcetdgpac/public_html/" "/home/bengalhospital/public_html/" "/home/binsdgp/public_html/" "/home/dilseshaadi/public_html/" "/home/dpsbloomingbuds/public_html/" "/home/dpsdgp/public_html/" "/home/krishnaintl/public_html/" "/home/kxobgzmy/public_html/" "/home/myrara/public_html/" "/home/scpac/public_html/" "/home/sksayurvedic/public_html/" "/home/sksgi/public_html/" "/home/sksmedicalcolleg/public_html/" "/home/sksps/public_html/" "/home/sksworldschool/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Feb 03 2025 04:35:26 server maldet(32527): {scan} file list completed in 31s, found 2254 files... Feb 03 2025 04:35:26 server maldet(32527): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Feb 03 2025 04:35:26 server maldet(32527): {scan} scan of (2254 files) in progress... Feb 03 2025 04:36:11 server maldet(32527): {scan} scan completed on : files 2254, malware hits 0, cleaned hits 0, time 76s Feb 03 2025 04:36:11 server maldet(32527): {scan} scan report saved, to view run: maldet --report 250203-0434.32527 Feb 04 2025 04:07:44 server maldet(11767): {update} checking for available updates... Feb 04 2025 04:07:44 server maldet(11767): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Feb 04 2025 04:07:44 server maldet(11767): {update} hashing install files and checking against server... Feb 04 2025 04:07:45 server maldet(11767): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Feb 04 2025 04:07:45 server maldet(11767): {update} latest version already installed. Feb 04 2025 04:07:46 server maldet(12149): {sigup} performing signature update check... Feb 04 2025 04:07:46 server maldet(12149): {sigup} local signature set is version 202502011136909 Feb 04 2025 04:07:47 server maldet(12149): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Feb 04 2025 04:07:47 server maldet(12149): {sigup} new signature set 20250204487606 available Feb 04 2025 04:07:47 server maldet(12149): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Feb 04 2025 04:07:47 server maldet(12149): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Feb 04 2025 04:07:48 server maldet(12149): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Feb 04 2025 04:07:48 server maldet(12149): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Feb 04 2025 04:07:48 server maldet(12149): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Feb 04 2025 04:07:49 server maldet(12149): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Feb 04 2025 04:07:49 server maldet(12149): {sigup} verified md5sum of maldet-sigpack.tgz Feb 04 2025 04:07:49 server maldet(12149): {sigup} unpacked and installed maldet-sigpack.tgz Feb 04 2025 04:07:50 server maldet(12149): {sigup} verified md5sum of maldet-clean.tgz Feb 04 2025 04:07:50 server maldet(12149): {sigup} unpacked and installed maldet-clean.tgz Feb 04 2025 04:07:50 server maldet(12149): {sigup} signature set update completed Feb 04 2025 04:07:50 server maldet(12149): {sigup} 17638 signatures (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Feb 04 2025 04:07:54 server maldet(13061): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Feb 04 2025 04:07:59 server maldet(13061): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Feb 04 2025 04:07:59 server maldet(13061): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Feb 04 2025 04:08:00 server maldet(13061): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Feb 04 2025 04:08:00 server maldet(13061): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/advertisingindia/public_html/" "/home/bcetdgpac/public_html/" "/home/bengalhospital/public_html/" "/home/binsdgp/public_html/" "/home/dilseshaadi/public_html/" "/home/dpsbloomingbuds/public_html/" "/home/dpsdgp/public_html/" "/home/krishnaintl/public_html/" "/home/kxobgzmy/public_html/" "/home/myrara/public_html/" "/home/scpac/public_html/" "/home/sksayurvedic/public_html/" "/home/sksgi/public_html/" "/home/sksmedicalcolleg/public_html/" "/home/sksps/public_html/" "/home/sksworldschool/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Feb 04 2025 04:08:48 server maldet(13061): {scan} file list completed in 48s, found 5663 files... Feb 04 2025 04:08:48 server maldet(13061): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Feb 04 2025 04:08:48 server maldet(13061): {scan} scan of (5663 files) in progress... Feb 04 2025 04:11:39 server maldet(13061): {scan} scan completed on : files 5663, malware hits 0, cleaned hits 0, time 225s Feb 04 2025 04:11:39 server maldet(13061): {scan} scan report saved, to view run: maldet --report 250204-0407.13061 Feb 05 2025 04:34:13 server maldet(28846): {update} checking for available updates... Feb 05 2025 04:34:14 server maldet(28846): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Feb 05 2025 04:34:14 server maldet(28846): {update} hashing install files and checking against server... Feb 05 2025 04:34:14 server maldet(28846): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Feb 05 2025 04:34:14 server maldet(28846): {update} latest version already installed. Feb 05 2025 04:34:14 server maldet(29025): {sigup} performing signature update check... Feb 05 2025 04:34:14 server maldet(29025): {sigup} local signature set is version 20250204487606 Feb 05 2025 04:34:14 server maldet(29025): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Feb 05 2025 04:34:14 server maldet(29025): {sigup} latest signature set already installed Feb 05 2025 04:34:15 server maldet(29172): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Feb 05 2025 04:34:17 server maldet(29172): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Feb 05 2025 04:34:17 server maldet(29172): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Feb 05 2025 04:34:17 server maldet(29172): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Feb 05 2025 04:34:17 server maldet(29172): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/advertisingindia/public_html/" "/home/bcetdgpac/public_html/" "/home/bengalhospital/public_html/" "/home/binsdgp/public_html/" "/home/dilseshaadi/public_html/" "/home/dpsbloomingbuds/public_html/" "/home/dpsdgp/public_html/" "/home/krishnaintl/public_html/" "/home/kxobgzmy/public_html/" "/home/myrara/public_html/" "/home/scpac/public_html/" "/home/sksayurvedic/public_html/" "/home/sksgi/public_html/" "/home/sksmedicalcolleg/public_html/" "/home/sksps/public_html/" "/home/sksworldschool/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Feb 05 2025 04:34:37 server maldet(29172): {scan} file list completed in 20s, found 8460 files... Feb 05 2025 04:34:37 server maldet(29172): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Feb 05 2025 04:34:37 server maldet(29172): {scan} scan of (8460 files) in progress... Feb 05 2025 04:39:53 server maldet(29172): {scan} scan completed on : files 8460, malware hits 0, cleaned hits 0, time 337s Feb 05 2025 04:39:53 server maldet(29172): {scan} scan report saved, to view run: maldet --report 250205-0434.29172 Feb 06 2025 03:47:03 server maldet(6004): {update} checking for available updates... Feb 06 2025 03:47:07 server maldet(6004): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Feb 06 2025 03:47:07 server maldet(6004): {update} hashing install files and checking against server... Feb 06 2025 03:47:08 server maldet(6004): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Feb 06 2025 03:47:10 server maldet(6004): {update} latest version already installed. Feb 06 2025 03:47:28 server maldet(6382): {sigup} performing signature update check... Feb 06 2025 03:47:29 server maldet(6382): {sigup} local signature set is version 20250204487606 Feb 06 2025 03:47:35 server maldet(6382): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Feb 06 2025 03:47:35 server maldet(6382): {sigup} latest signature set already installed Feb 06 2025 03:48:34 server maldet(6794): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Feb 06 2025 03:48:40 server maldet(6794): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Feb 06 2025 03:48:40 server maldet(6794): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Feb 06 2025 03:48:40 server maldet(6794): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Feb 06 2025 03:48:40 server maldet(6794): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/advertisingindia/public_html/" "/home/bcetdgpac/public_html/" "/home/bengalhospital/public_html/" "/home/binsdgp/public_html/" "/home/dilseshaadi/public_html/" "/home/dpsbloomingbuds/public_html/" "/home/dpsdgp/public_html/" "/home/krishnaintl/public_html/" "/home/kxobgzmy/public_html/" "/home/myrara/public_html/" "/home/scpac/public_html/" "/home/sksayurvedic/public_html/" "/home/sksgi/public_html/" "/home/sksmedicalcolleg/public_html/" "/home/sksps/public_html/" "/home/sksworldschool/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Feb 06 2025 03:51:31 server maldet(6794): {scan} file list completed in 170s, found 476 files... Feb 06 2025 03:51:31 server maldet(6794): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamscan, using clamav scanner engine... Feb 06 2025 03:51:31 server maldet(6794): {scan} scan of (476 files) in progress... Feb 06 2025 03:55:39 server maldet(6794): {scan} scan completed on : files 476, malware hits 0, cleaned hits 0, time 422s Feb 06 2025 03:55:41 server maldet(6794): {scan} scan report saved, to view run: maldet --report 250206-0348.6794 Feb 07 2025 03:21:46 server maldet(10931): {update} checking for available updates... Feb 07 2025 03:21:46 server maldet(10931): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Feb 07 2025 03:21:46 server maldet(10931): {update} hashing install files and checking against server... Feb 07 2025 03:21:47 server maldet(10931): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Feb 07 2025 03:21:47 server maldet(10931): {update} latest version already installed. Feb 07 2025 03:21:47 server maldet(11108): {sigup} performing signature update check... Feb 07 2025 03:21:47 server maldet(11108): {sigup} local signature set is version 20250204487606 Feb 07 2025 03:21:47 server maldet(11108): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Feb 07 2025 03:21:47 server maldet(11108): {sigup} new signature set 202502071181419 available Feb 07 2025 03:21:47 server maldet(11108): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Feb 07 2025 03:21:48 server maldet(11108): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Feb 07 2025 03:21:48 server maldet(11108): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Feb 07 2025 03:21:48 server maldet(11108): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Feb 07 2025 03:21:48 server maldet(11108): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Feb 07 2025 03:21:49 server maldet(11108): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Feb 07 2025 03:21:49 server maldet(11108): {sigup} verified md5sum of maldet-sigpack.tgz Feb 07 2025 03:21:49 server maldet(11108): {sigup} unpacked and installed maldet-sigpack.tgz Feb 07 2025 03:21:49 server maldet(11108): {sigup} verified md5sum of maldet-clean.tgz Feb 07 2025 03:21:49 server maldet(11108): {sigup} unpacked and installed maldet-clean.tgz Feb 07 2025 03:21:49 server maldet(11108): {sigup} signature set update completed Feb 07 2025 03:21:49 server maldet(11108): {sigup} 17638 signatures (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Feb 07 2025 03:21:52 server maldet(11437): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Feb 07 2025 03:21:53 server maldet(11437): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Feb 07 2025 03:21:53 server maldet(11437): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Feb 07 2025 03:21:53 server maldet(11437): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Feb 07 2025 03:21:53 server maldet(11437): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/advertisingindia/public_html/" "/home/bcetdgpac/public_html/" "/home/bengalhospital/public_html/" "/home/binsdgp/public_html/" "/home/dilseshaadi/public_html/" "/home/dpsbloomingbuds/public_html/" "/home/dpsdgp/public_html/" "/home/krishnaintl/public_html/" "/home/kxobgzmy/public_html/" "/home/myrara/public_html/" "/home/scpac/public_html/" "/home/sksayurvedic/public_html/" "/home/sksgi/public_html/" "/home/sksmedicalcolleg/public_html/" "/home/sksps/public_html/" "/home/sksworldschool/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Feb 07 2025 03:22:45 server maldet(11437): {scan} file list completed in 51s, found 863 files... Feb 07 2025 03:22:45 server maldet(11437): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Feb 07 2025 03:22:45 server maldet(11437): {scan} scan of (863 files) in progress... Feb 07 2025 03:23:30 server maldet(11437): {scan} clamscan returned an error, check /usr/local/maldetect/logs/clamscan_log for details! Feb 07 2025 03:23:30 server maldet(11437): {scan} scan completed on : files 863, malware hits 0, cleaned hits 0, time 98s Feb 07 2025 03:23:30 server maldet(11437): {scan} scan report saved, to view run: maldet --report 250207-0321.11437 Feb 08 2025 04:09:59 server maldet(25056): {update} checking for available updates... Feb 08 2025 04:09:59 server maldet(25056): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Feb 08 2025 04:09:59 server maldet(25056): {update} hashing install files and checking against server... Feb 08 2025 04:10:00 server maldet(25056): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Feb 08 2025 04:10:00 server maldet(25056): {update} latest version already installed. Feb 08 2025 04:10:00 server maldet(25224): {sigup} performing signature update check... Feb 08 2025 04:10:00 server maldet(25224): {sigup} local signature set is version 202502071181419 Feb 08 2025 04:10:00 server maldet(25224): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Feb 08 2025 04:10:01 server maldet(25224): {sigup} latest signature set already installed Feb 08 2025 04:10:09 server maldet(25591): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Feb 08 2025 04:10:28 server maldet(25591): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Feb 08 2025 04:10:28 server maldet(25591): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Feb 08 2025 04:10:28 server maldet(25591): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Feb 08 2025 04:10:29 server maldet(25591): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/advertisingindia/public_html/" "/home/bcetdgpac/public_html/" "/home/bengalhospital/public_html/" "/home/binsdgp/public_html/" "/home/dilseshaadi/public_html/" "/home/dpsbloomingbuds/public_html/" "/home/dpsdgp/public_html/" "/home/krishnaintl/public_html/" "/home/kxobgzmy/public_html/" "/home/myrara/public_html/" "/home/scpac/public_html/" "/home/sksayurvedic/public_html/" "/home/sksgi/public_html/" "/home/sksmedicalcolleg/public_html/" "/home/sksps/public_html/" "/home/sksworldschool/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Feb 08 2025 04:11:13 server maldet(25591): {scan} file list completed in 41s, found 1907 files... Feb 08 2025 04:11:13 server maldet(25591): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Feb 08 2025 04:11:13 server maldet(25591): {scan} scan of (1907 files) in progress... Feb 08 2025 04:13:27 server maldet(25591): {scan} scan completed on : files 1907, malware hits 0, cleaned hits 0, time 196s Feb 08 2025 04:13:27 server maldet(25591): {scan} scan report saved, to view run: maldet --report 250208-0410.25591 Feb 09 2025 03:43:38 server maldet(12429): {update} checking for available updates... Feb 09 2025 03:43:39 server maldet(12429): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Feb 09 2025 03:43:39 server maldet(12429): {update} hashing install files and checking against server... Feb 09 2025 03:43:39 server maldet(12429): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Feb 09 2025 03:43:39 server maldet(12429): {update} latest version already installed. Feb 09 2025 03:43:39 server maldet(12603): {sigup} performing signature update check... Feb 09 2025 03:43:39 server maldet(12603): {sigup} local signature set is version 202502071181419 Feb 09 2025 03:43:40 server maldet(12603): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Feb 09 2025 03:43:40 server maldet(12603): {sigup} latest signature set already installed Feb 09 2025 03:43:41 server maldet(12750): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Feb 09 2025 03:43:43 server maldet(12750): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Feb 09 2025 03:43:43 server maldet(12750): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Feb 09 2025 03:43:43 server maldet(12750): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Feb 09 2025 03:43:43 server maldet(12750): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/advertisingindia/public_html/" "/home/bcetdgpac/public_html/" "/home/bengalhospital/public_html/" "/home/binsdgp/public_html/" "/home/dilseshaadi/public_html/" "/home/dpsbloomingbuds/public_html/" "/home/dpsdgp/public_html/" "/home/krishnaintl/public_html/" "/home/kxobgzmy/public_html/" "/home/myrara/public_html/" "/home/scpac/public_html/" "/home/sksayurvedic/public_html/" "/home/sksgi/public_html/" "/home/sksmedicalcolleg/public_html/" "/home/sksps/public_html/" "/home/sksworldschool/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Feb 09 2025 03:44:19 server maldet(12750): {scan} file list completed in 35s, found 388 files... Feb 09 2025 03:44:19 server maldet(12750): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Feb 09 2025 03:44:19 server maldet(12750): {scan} scan of (388 files) in progress... Feb 09 2025 03:44:43 server maldet(12750): {scan} scan completed on : files 388, malware hits 0, cleaned hits 0, time 62s Feb 09 2025 03:44:43 server maldet(12750): {scan} scan report saved, to view run: maldet --report 250209-0343.12750 Feb 10 2025 03:46:40 server maldet(7565): {update} checking for available updates... Feb 10 2025 03:46:41 server maldet(7565): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Feb 10 2025 03:46:41 server maldet(7565): {update} hashing install files and checking against server... Feb 10 2025 03:46:41 server maldet(7565): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Feb 10 2025 03:46:42 server maldet(7565): {update} latest version already installed. Feb 10 2025 03:46:42 server maldet(8068): {sigup} performing signature update check... Feb 10 2025 03:46:42 server maldet(8068): {sigup} local signature set is version 202502071181419 Feb 10 2025 03:46:43 server maldet(8068): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Feb 10 2025 03:46:43 server maldet(8068): {sigup} new signature set 202502101887208 available Feb 10 2025 03:46:43 server maldet(8068): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Feb 10 2025 03:46:43 server maldet(8068): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Feb 10 2025 03:46:43 server maldet(8068): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Feb 10 2025 03:46:43 server maldet(8068): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Feb 10 2025 03:46:44 server maldet(8068): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Feb 10 2025 03:46:44 server maldet(8068): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Feb 10 2025 03:46:44 server maldet(8068): {sigup} verified md5sum of maldet-sigpack.tgz Feb 10 2025 03:46:44 server maldet(8068): {sigup} unpacked and installed maldet-sigpack.tgz Feb 10 2025 03:46:44 server maldet(8068): {sigup} verified md5sum of maldet-clean.tgz Feb 10 2025 03:46:44 server maldet(8068): {sigup} unpacked and installed maldet-clean.tgz Feb 10 2025 03:46:45 server maldet(8068): {sigup} signature set update completed Feb 10 2025 03:46:45 server maldet(8068): {sigup} 17638 signatures (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Feb 10 2025 03:46:48 server maldet(9496): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Feb 10 2025 03:46:51 server maldet(9496): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Feb 10 2025 03:46:51 server maldet(9496): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Feb 10 2025 03:46:51 server maldet(9496): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Feb 10 2025 03:46:51 server maldet(9496): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/advertisingindia/public_html/" "/home/bcetdgpac/public_html/" "/home/bengalhospital/public_html/" "/home/binsdgp/public_html/" "/home/dilseshaadi/public_html/" "/home/dpsbloomingbuds/public_html/" "/home/dpsdgp/public_html/" "/home/krishnaintl/public_html/" "/home/kxobgzmy/public_html/" "/home/myrara/public_html/" "/home/scpac/public_html/" "/home/sksayurvedic/public_html/" "/home/sksgi/public_html/" "/home/sksmedicalcolleg/public_html/" "/home/sksps/public_html/" "/home/sksworldschool/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Feb 10 2025 03:47:38 server maldet(9496): {scan} file list completed in 46s, found 528 files... Feb 10 2025 03:47:38 server maldet(9496): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Feb 10 2025 03:47:38 server maldet(9496): {scan} scan of (528 files) in progress... Feb 10 2025 03:48:04 server maldet(9496): {scan} scan completed on : files 528, malware hits 0, cleaned hits 0, time 76s Feb 10 2025 03:48:04 server maldet(9496): {scan} scan report saved, to view run: maldet --report 250210-0346.9496 Feb 11 2025 03:20:29 server maldet(31135): {update} checking for available updates... Feb 11 2025 03:20:29 server maldet(31135): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Feb 11 2025 03:20:30 server maldet(31135): {update} hashing install files and checking against server... Feb 11 2025 03:20:30 server maldet(31135): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Feb 11 2025 03:20:30 server maldet(31135): {update} latest version already installed. Feb 11 2025 03:20:31 server maldet(31544): {sigup} performing signature update check... Feb 11 2025 03:20:31 server maldet(31544): {sigup} local signature set is version 202502101887208 Feb 11 2025 03:20:31 server maldet(31544): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Feb 11 2025 03:20:31 server maldet(31544): {sigup} latest signature set already installed Feb 11 2025 03:20:32 server maldet(32221): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Feb 11 2025 03:20:36 server maldet(32221): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Feb 11 2025 03:20:36 server maldet(32221): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Feb 11 2025 03:20:36 server maldet(32221): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Feb 11 2025 03:20:36 server maldet(32221): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/advertisingindia/public_html/" "/home/bcetdgpac/public_html/" "/home/bengalhospital/public_html/" "/home/binsdgp/public_html/" "/home/dilseshaadi/public_html/" "/home/dpsbloomingbuds/public_html/" "/home/dpsdgp/public_html/" "/home/krishnaintl/public_html/" "/home/kxobgzmy/public_html/" "/home/myrara/public_html/" "/home/scpac/public_html/" "/home/sksayurvedic/public_html/" "/home/sksgi/public_html/" "/home/sksmedicalcolleg/public_html/" "/home/sksps/public_html/" "/home/sksworldschool/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Feb 11 2025 03:21:14 server maldet(32221): {scan} file list completed in 37s, found 1707 files... Feb 11 2025 03:21:14 server maldet(32221): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Feb 11 2025 03:21:14 server maldet(32221): {scan} scan of (1707 files) in progress... Feb 11 2025 03:22:12 server maldet(32221): {scan} scan completed on : files 1707, malware hits 0, cleaned hits 0, time 100s Feb 11 2025 03:22:12 server maldet(32221): {scan} scan report saved, to view run: maldet --report 250211-0320.32221 Feb 12 2025 04:27:55 server maldet(6499): {update} checking for available updates... Feb 12 2025 04:27:57 server maldet(6499): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Feb 12 2025 04:27:57 server maldet(6499): {update} hashing install files and checking against server... Feb 12 2025 04:27:58 server maldet(6499): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Feb 12 2025 04:27:58 server maldet(6499): {update} latest version already installed. Feb 12 2025 04:27:59 server maldet(6985): {sigup} performing signature update check... Feb 12 2025 04:27:59 server maldet(6985): {sigup} local signature set is version 202502101887208 Feb 12 2025 04:28:00 server maldet(6985): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Feb 12 2025 04:28:01 server maldet(6985): {sigup} latest signature set already installed Feb 12 2025 04:28:04 server maldet(7295): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Feb 12 2025 04:28:11 server maldet(7295): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Feb 12 2025 04:28:11 server maldet(7295): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Feb 12 2025 04:28:12 server maldet(7295): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Feb 12 2025 04:28:12 server maldet(7295): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/advertisingindia/public_html/" "/home/bcetdgpac/public_html/" "/home/bengalhospital/public_html/" "/home/binsdgp/public_html/" "/home/dilseshaadi/public_html/" "/home/dpsbloomingbuds/public_html/" "/home/dpsdgp/public_html/" "/home/krishnaintl/public_html/" "/home/kxobgzmy/public_html/" "/home/myrara/public_html/" "/home/scpac/public_html/" "/home/sksayurvedic/public_html/" "/home/sksgi/public_html/" "/home/sksmedicalcolleg/public_html/" "/home/sksps/public_html/" "/home/sksworldschool/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Feb 12 2025 04:32:10 server maldet(7295): {scan} file list completed in 237s, found 4054 files... Feb 12 2025 04:32:10 server maldet(7295): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Feb 12 2025 04:32:10 server maldet(7295): {scan} scan of (4054 files) in progress... Feb 12 2025 04:36:28 server maldet(7295): {scan} scan completed on : files 4054, malware hits 0, cleaned hits 0, time 504s Feb 12 2025 04:36:28 server maldet(7295): {scan} scan report saved, to view run: maldet --report 250212-0428.7295 Feb 13 2025 04:09:35 server maldet(22794): {update} checking for available updates... Feb 13 2025 04:09:35 server maldet(22794): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Feb 13 2025 04:09:35 server maldet(22794): {update} hashing install files and checking against server... Feb 13 2025 04:09:36 server maldet(22794): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Feb 13 2025 04:09:36 server maldet(22794): {update} latest version already installed. Feb 13 2025 04:09:36 server maldet(22971): {sigup} performing signature update check... Feb 13 2025 04:09:36 server maldet(22971): {sigup} local signature set is version 202502101887208 Feb 13 2025 04:09:37 server maldet(22971): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Feb 13 2025 04:09:37 server maldet(22971): {sigup} new signature set 20250213535116 available Feb 13 2025 04:09:37 server maldet(22971): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Feb 13 2025 04:09:37 server maldet(22971): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Feb 13 2025 04:09:38 server maldet(22971): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Feb 13 2025 04:09:38 server maldet(22971): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Feb 13 2025 04:09:38 server maldet(22971): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Feb 13 2025 04:09:38 server maldet(22971): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Feb 13 2025 04:09:39 server maldet(22971): {sigup} verified md5sum of maldet-sigpack.tgz Feb 13 2025 04:09:39 server maldet(22971): {sigup} unpacked and installed maldet-sigpack.tgz Feb 13 2025 04:09:39 server maldet(22971): {sigup} verified md5sum of maldet-clean.tgz Feb 13 2025 04:09:39 server maldet(22971): {sigup} unpacked and installed maldet-clean.tgz Feb 13 2025 04:09:39 server maldet(22971): {sigup} signature set update completed Feb 13 2025 04:09:40 server maldet(22971): {sigup} 17638 signatures (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Feb 13 2025 04:09:41 server maldet(23360): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Feb 13 2025 04:09:42 server maldet(23360): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Feb 13 2025 04:09:42 server maldet(23360): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Feb 13 2025 04:09:42 server maldet(23360): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Feb 13 2025 04:09:43 server maldet(23360): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/advertisingindia/public_html/" "/home/bcetdgpac/public_html/" "/home/bengalhospital/public_html/" "/home/binsdgp/public_html/" "/home/dilseshaadi/public_html/" "/home/dpsbloomingbuds/public_html/" "/home/dpsdgp/public_html/" "/home/krishnaintl/public_html/" "/home/kxobgzmy/public_html/" "/home/myrara/public_html/" "/home/scpac/public_html/" "/home/sksayurvedic/public_html/" "/home/sksgi/public_html/" "/home/sksmedicalcolleg/public_html/" "/home/sksps/public_html/" "/home/sksworldschool/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Feb 13 2025 04:12:56 server maldet(23360): {scan} file list completed in 192s, found 343 files... Feb 13 2025 04:12:57 server maldet(23360): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Feb 13 2025 04:12:57 server maldet(23360): {scan} scan of (343 files) in progress... Feb 13 2025 04:14:01 server maldet(23360): {scan} scan completed on : files 343, malware hits 0, cleaned hits 0, time 251s Feb 13 2025 04:14:02 server maldet(23360): {scan} scan report saved, to view run: maldet --report 250213-0409.23360 Feb 14 2025 04:22:38 server maldet(3867): {update} checking for available updates... Feb 14 2025 04:22:39 server maldet(3867): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Feb 14 2025 04:22:39 server maldet(3867): {update} hashing install files and checking against server... Feb 14 2025 04:22:39 server maldet(3867): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Feb 14 2025 04:22:39 server maldet(3867): {update} latest version already installed. Feb 14 2025 04:22:39 server maldet(4129): {sigup} performing signature update check... Feb 14 2025 04:22:39 server maldet(4129): {sigup} local signature set is version 20250213535116 Feb 14 2025 04:22:39 server maldet(4129): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Feb 14 2025 04:22:40 server maldet(4129): {sigup} latest signature set already installed Feb 14 2025 04:22:41 server maldet(4302): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Feb 14 2025 04:22:42 server maldet(4302): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Feb 14 2025 04:22:42 server maldet(4302): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Feb 14 2025 04:22:42 server maldet(4302): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Feb 14 2025 04:22:43 server maldet(4302): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/advertisingindia/public_html/" "/home/bcetdgpac/public_html/" "/home/bengalhospital/public_html/" "/home/binsdgp/public_html/" "/home/dilseshaadi/public_html/" "/home/dpsbloomingbuds/public_html/" "/home/dpsdgp/public_html/" "/home/krishnaintl/public_html/" "/home/kxobgzmy/public_html/" "/home/myrara/public_html/" "/home/scpac/public_html/" "/home/sksayurvedic/public_html/" "/home/sksgi/public_html/" "/home/sksmedicalcolleg/public_html/" "/home/sksps/public_html/" "/home/sksworldschool/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Feb 14 2025 04:25:40 server maldet(4302): {scan} file list completed in 168s, found 5112 files... Feb 14 2025 04:25:40 server maldet(4302): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Feb 14 2025 04:25:41 server maldet(4302): {scan} scan of (5112 files) in progress... Feb 14 2025 04:25:53 server maldet(4302): {scan} clamscan returned an error, check /usr/local/maldetect/logs/clamscan_log for details! Feb 14 2025 04:25:54 server maldet(4302): {scan} scan completed on : files 5112, malware hits 0, cleaned hits 0, time 193s Feb 14 2025 04:25:54 server maldet(4302): {scan} scan report saved, to view run: maldet --report 250214-0422.4302 Feb 15 2025 04:20:04 server maldet(15111): {update} checking for available updates... Feb 15 2025 04:20:04 server maldet(15111): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Feb 15 2025 04:20:04 server maldet(15111): {update} hashing install files and checking against server... Feb 15 2025 04:20:05 server maldet(15111): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Feb 15 2025 04:20:05 server maldet(15111): {update} latest version already installed. Feb 15 2025 04:20:05 server maldet(15339): {sigup} performing signature update check... Feb 15 2025 04:20:05 server maldet(15339): {sigup} local signature set is version 20250213535116 Feb 15 2025 04:20:06 server maldet(15339): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Feb 15 2025 04:20:06 server maldet(15339): {sigup} latest signature set already installed Feb 15 2025 04:20:07 server maldet(15524): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Feb 15 2025 04:20:08 server maldet(15524): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Feb 15 2025 04:20:08 server maldet(15524): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Feb 15 2025 04:20:08 server maldet(15524): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Feb 15 2025 04:20:08 server maldet(15524): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/advertisingindia/public_html/" "/home/bcetdgpac/public_html/" "/home/bengalhospital/public_html/" "/home/binsdgp/public_html/" "/home/dilseshaadi/public_html/" "/home/dpsbloomingbuds/public_html/" "/home/dpsdgp/public_html/" "/home/krishnaintl/public_html/" "/home/kxobgzmy/public_html/" "/home/myrara/public_html/" "/home/scpac/public_html/" "/home/sksayurvedic/public_html/" "/home/sksgi/public_html/" "/home/sksmedicalcolleg/public_html/" "/home/sksps/public_html/" "/home/sksworldschool/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Feb 15 2025 04:20:31 server maldet(15524): {scan} file list completed in 23s, found 522 files... Feb 15 2025 04:20:31 server maldet(15524): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Feb 15 2025 04:20:31 server maldet(15524): {scan} scan of (522 files) in progress... Feb 15 2025 04:21:05 server maldet(15524): {scan} scan completed on : files 522, malware hits 0, cleaned hits 0, time 58s Feb 15 2025 04:21:05 server maldet(15524): {scan} scan report saved, to view run: maldet --report 250215-0420.15524 Feb 16 2025 04:47:31 server maldet(25214): {update} checking for available updates... Feb 16 2025 04:47:32 server maldet(25214): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Feb 16 2025 04:47:32 server maldet(25214): {update} hashing install files and checking against server... Feb 16 2025 04:47:32 server maldet(25214): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Feb 16 2025 04:47:32 server maldet(25214): {update} latest version already installed. Feb 16 2025 04:47:33 server maldet(25437): {sigup} performing signature update check... Feb 16 2025 04:47:33 server maldet(25437): {sigup} local signature set is version 20250213535116 Feb 16 2025 04:47:33 server maldet(25437): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Feb 16 2025 04:47:34 server maldet(25437): {sigup} new signature set 202502161228229 available Feb 16 2025 04:47:34 server maldet(25437): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Feb 16 2025 04:47:34 server maldet(25437): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Feb 16 2025 04:47:34 server maldet(25437): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Feb 16 2025 04:47:34 server maldet(25437): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Feb 16 2025 04:47:34 server maldet(25437): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Feb 16 2025 04:47:35 server maldet(25437): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Feb 16 2025 04:47:35 server maldet(25437): {sigup} verified md5sum of maldet-sigpack.tgz Feb 16 2025 04:47:35 server maldet(25437): {sigup} unpacked and installed maldet-sigpack.tgz Feb 16 2025 04:47:35 server maldet(25437): {sigup} verified md5sum of maldet-clean.tgz Feb 16 2025 04:47:35 server maldet(25437): {sigup} unpacked and installed maldet-clean.tgz Feb 16 2025 04:47:35 server maldet(25437): {sigup} signature set update completed Feb 16 2025 04:47:36 server maldet(25437): {sigup} 17638 signatures (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Feb 16 2025 04:47:37 server maldet(25788): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Feb 16 2025 04:47:38 server maldet(25788): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Feb 16 2025 04:47:38 server maldet(25788): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Feb 16 2025 04:47:38 server maldet(25788): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Feb 16 2025 04:47:38 server maldet(25788): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/advertisingindia/public_html/" "/home/bcetdgpac/public_html/" "/home/bengalhospital/public_html/" "/home/binsdgp/public_html/" "/home/dilseshaadi/public_html/" "/home/dpsbloomingbuds/public_html/" "/home/dpsdgp/public_html/" "/home/krishnaintl/public_html/" "/home/kxobgzmy/public_html/" "/home/myrara/public_html/" "/home/scpac/public_html/" "/home/sksayurvedic/public_html/" "/home/sksgi/public_html/" "/home/sksmedicalcolleg/public_html/" "/home/sksps/public_html/" "/home/sksworldschool/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Feb 16 2025 04:49:17 server maldet(25788): {scan} file list completed in 99s, found 517 files... Feb 16 2025 04:49:17 server maldet(25788): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Feb 16 2025 04:49:17 server maldet(25788): {scan} scan of (517 files) in progress... Feb 16 2025 04:49:17 server maldet(25788): {scan} clamscan returned an error, check /usr/local/maldetect/logs/clamscan_log for details! Feb 16 2025 04:49:17 server maldet(25788): {scan} scan completed on : files 517, malware hits 0, cleaned hits 0, time 100s Feb 16 2025 04:49:17 server maldet(25788): {scan} scan report saved, to view run: maldet --report 250216-0447.25788 Feb 17 2025 04:36:40 server maldet(12786): {update} checking for available updates... Feb 17 2025 04:36:40 server maldet(12786): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Feb 17 2025 04:36:40 server maldet(12786): {update} hashing install files and checking against server... Feb 17 2025 04:36:40 server maldet(12786): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Feb 17 2025 04:36:40 server maldet(12786): {update} latest version already installed. Feb 17 2025 04:36:41 server maldet(12977): {sigup} performing signature update check... Feb 17 2025 04:36:41 server maldet(12977): {sigup} local signature set is version 202502161228229 Feb 17 2025 04:36:41 server maldet(12977): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Feb 17 2025 04:36:41 server maldet(12977): {sigup} latest signature set already installed Feb 17 2025 04:36:44 server maldet(13137): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Feb 17 2025 04:36:47 server maldet(13137): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Feb 17 2025 04:36:47 server maldet(13137): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Feb 17 2025 04:36:47 server maldet(13137): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Feb 17 2025 04:36:47 server maldet(13137): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/advertisingindia/public_html/" "/home/bcetdgpac/public_html/" "/home/bengalhospital/public_html/" "/home/binsdgp/public_html/" "/home/dilseshaadi/public_html/" "/home/dpsbloomingbuds/public_html/" "/home/dpsdgp/public_html/" "/home/krishnaintl/public_html/" "/home/kxobgzmy/public_html/" "/home/myrara/public_html/" "/home/scpac/public_html/" "/home/sksayurvedic/public_html/" "/home/sksgi/public_html/" "/home/sksmedicalcolleg/public_html/" "/home/sksps/public_html/" "/home/sksworldschool/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Feb 17 2025 04:37:29 server maldet(13137): {scan} file list completed in 41s, found 5818 files... Feb 17 2025 04:37:29 server maldet(13137): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Feb 17 2025 04:37:29 server maldet(13137): {scan} scan of (5818 files) in progress... Feb 17 2025 04:40:20 server maldet(13137): {scan} scan completed on : files 5818, malware hits 0, cleaned hits 0, time 216s Feb 17 2025 04:40:20 server maldet(13137): {scan} scan report saved, to view run: maldet --report 250217-0436.13137 Feb 18 2025 04:05:24 server maldet(9102): {update} checking for available updates... Feb 18 2025 04:05:25 server maldet(9102): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Feb 18 2025 04:05:25 server maldet(9102): {update} hashing install files and checking against server... Feb 18 2025 04:05:25 server maldet(9102): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Feb 18 2025 04:05:25 server maldet(9102): {update} latest version already installed. Feb 18 2025 04:05:25 server maldet(9290): {sigup} performing signature update check... Feb 18 2025 04:05:25 server maldet(9290): {sigup} local signature set is version 202502161228229 Feb 18 2025 04:05:26 server maldet(9290): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Feb 18 2025 04:05:26 server maldet(9290): {sigup} latest signature set already installed Feb 18 2025 04:05:27 server maldet(9451): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Feb 18 2025 04:05:28 server maldet(9451): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Feb 18 2025 04:05:28 server maldet(9451): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Feb 18 2025 04:05:28 server maldet(9451): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Feb 18 2025 04:05:28 server maldet(9451): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/advertisingindia/public_html/" "/home/bcetdgpac/public_html/" "/home/bengalhospital/public_html/" "/home/binsdgp/public_html/" "/home/dilseshaadi/public_html/" "/home/dpsbloomingbuds/public_html/" "/home/dpsdgp/public_html/" "/home/krishnaintl/public_html/" "/home/kxobgzmy/public_html/" "/home/myrara/public_html/" "/home/scpac/public_html/" "/home/sksayurvedic/public_html/" "/home/sksgi/public_html/" "/home/sksmedicalcolleg/public_html/" "/home/sksps/public_html/" "/home/sksworldschool/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Feb 18 2025 04:05:49 server maldet(9451): {scan} file list completed in 21s, found 14901 files... Feb 18 2025 04:05:49 server maldet(9451): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Feb 18 2025 04:05:49 server maldet(9451): {scan} scan of (14901 files) in progress... Feb 18 2025 04:13:30 server maldet(9451): {scan} scan completed on : files 14901, malware hits 0, cleaned hits 0, time 483s Feb 18 2025 04:13:30 server maldet(9451): {scan} scan report saved, to view run: maldet --report 250218-0405.9451 Feb 19 2025 03:38:48 server maldet(28243): {update} checking for available updates... Feb 19 2025 03:38:48 server maldet(28243): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Feb 19 2025 03:38:48 server maldet(28243): {update} hashing install files and checking against server... Feb 19 2025 03:38:49 server maldet(28243): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Feb 19 2025 03:38:49 server maldet(28243): {update} latest version already installed. Feb 19 2025 03:38:49 server maldet(28394): {sigup} performing signature update check... Feb 19 2025 03:38:49 server maldet(28394): {sigup} local signature set is version 202502161228229 Feb 19 2025 03:38:49 server maldet(28394): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Feb 19 2025 03:38:50 server maldet(28394): {sigup} new signature set 20250219501964 available Feb 19 2025 03:38:50 server maldet(28394): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Feb 19 2025 03:38:50 server maldet(28394): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Feb 19 2025 03:38:51 server maldet(28394): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Feb 19 2025 03:38:51 server maldet(28394): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Feb 19 2025 03:38:51 server maldet(28394): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Feb 19 2025 03:38:51 server maldet(28394): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Feb 19 2025 03:38:51 server maldet(28394): {sigup} verified md5sum of maldet-sigpack.tgz Feb 19 2025 03:38:51 server maldet(28394): {sigup} unpacked and installed maldet-sigpack.tgz Feb 19 2025 03:38:52 server maldet(28394): {sigup} verified md5sum of maldet-clean.tgz Feb 19 2025 03:38:52 server maldet(28394): {sigup} unpacked and installed maldet-clean.tgz Feb 19 2025 03:38:52 server maldet(28394): {sigup} signature set update completed Feb 19 2025 03:38:52 server maldet(28394): {sigup} 17638 signatures (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Feb 19 2025 03:38:54 server maldet(28733): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Feb 19 2025 03:38:55 server maldet(28733): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Feb 19 2025 03:38:55 server maldet(28733): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Feb 19 2025 03:38:56 server maldet(28733): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Feb 19 2025 03:38:56 server maldet(28733): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/advertisingindia/public_html/" "/home/bcetdgpac/public_html/" "/home/bengalhospital/public_html/" "/home/binsdgp/public_html/" "/home/dilseshaadi/public_html/" "/home/dpsbloomingbuds/public_html/" "/home/dpsdgp/public_html/" "/home/krishnaintl/public_html/" "/home/kxobgzmy/public_html/" "/home/myrara/public_html/" "/home/scpac/public_html/" "/home/sksayurvedic/public_html/" "/home/sksgi/public_html/" "/home/sksmedicalcolleg/public_html/" "/home/sksps/public_html/" "/home/sksworldschool/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Feb 19 2025 03:39:59 server maldet(28733): {scan} file list completed in 62s, found 4806 files... Feb 19 2025 03:39:59 server maldet(28733): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Feb 19 2025 03:39:59 server maldet(28733): {scan} scan of (4806 files) in progress... Feb 19 2025 03:42:39 server maldet(28733): {scan} scan completed on : files 4806, malware hits 0, cleaned hits 0, time 225s Feb 19 2025 03:42:39 server maldet(28733): {scan} scan report saved, to view run: maldet --report 250219-0338.28733 Feb 20 2025 03:52:33 server maldet(25605): {update} checking for available updates... Feb 20 2025 03:52:33 server maldet(25605): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Feb 20 2025 03:52:33 server maldet(25605): {update} hashing install files and checking against server... Feb 20 2025 03:52:34 server maldet(25605): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Feb 20 2025 03:52:34 server maldet(25605): {update} latest version already installed. Feb 20 2025 03:52:34 server maldet(25803): {sigup} performing signature update check... Feb 20 2025 03:52:34 server maldet(25803): {sigup} local signature set is version 20250219501964 Feb 20 2025 03:52:34 server maldet(25803): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Feb 20 2025 03:52:34 server maldet(25803): {sigup} latest signature set already installed Feb 20 2025 03:52:36 server maldet(25946): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Feb 20 2025 03:52:37 server maldet(25946): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Feb 20 2025 03:52:37 server maldet(25946): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Feb 20 2025 03:52:37 server maldet(25946): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Feb 20 2025 03:52:38 server maldet(25946): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/advertisingindia/public_html/" "/home/bcetdgpac/public_html/" "/home/bengalhospital/public_html/" "/home/binsdgp/public_html/" "/home/dilseshaadi/public_html/" "/home/dpsbloomingbuds/public_html/" "/home/dpsdgp/public_html/" "/home/krishnaintl/public_html/" "/home/kxobgzmy/public_html/" "/home/myrara/public_html/" "/home/scpac/public_html/" "/home/sksayurvedic/public_html/" "/home/sksgi/public_html/" "/home/sksmedicalcolleg/public_html/" "/home/sksps/public_html/" "/home/sksworldschool/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Feb 20 2025 03:52:49 server maldet(25946): {scan} file list completed in 12s, found 527 files... Feb 20 2025 03:52:49 server maldet(25946): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Feb 20 2025 03:52:49 server maldet(25946): {scan} scan of (527 files) in progress... Feb 20 2025 03:53:44 server maldet(25946): {scan} clamscan returned an error, check /usr/local/maldetect/logs/clamscan_log for details! Feb 20 2025 03:53:45 server maldet(25946): {scan} clamscan returned a fatal error in scan results, check /usr/local/maldetect/logs/clamscan_log for details; quarantine has been disabled! Feb 20 2025 03:53:46 server maldet(25946): {scan} scan completed on : files 527, malware hits 0, cleaned hits 0, time 69s Feb 20 2025 03:53:46 server maldet(25946): {scan} scan report saved, to view run: maldet --report 250220-0352.25946 Feb 21 2025 03:58:31 server maldet(17547): {update} checking for available updates... Feb 21 2025 03:58:31 server maldet(17547): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Feb 21 2025 03:58:31 server maldet(17547): {update} hashing install files and checking against server... Feb 21 2025 03:58:32 server maldet(17547): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Feb 21 2025 03:58:32 server maldet(17547): {update} latest version already installed. Feb 21 2025 03:58:32 server maldet(17740): {sigup} performing signature update check... Feb 21 2025 03:58:32 server maldet(17740): {sigup} local signature set is version 20250219501964 Feb 21 2025 03:58:32 server maldet(17740): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Feb 21 2025 03:58:32 server maldet(17740): {sigup} latest signature set already installed Feb 21 2025 03:58:33 server maldet(17898): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Feb 21 2025 03:58:34 server maldet(17898): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Feb 21 2025 03:58:34 server maldet(17898): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Feb 21 2025 03:58:34 server maldet(17898): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Feb 21 2025 03:58:34 server maldet(17898): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/advertisingindia/public_html/" "/home/bcetdgpac/public_html/" "/home/bengalhospital/public_html/" "/home/binsdgp/public_html/" "/home/dilseshaadi/public_html/" "/home/dpsbloomingbuds/public_html/" "/home/dpsdgp/public_html/" "/home/krishnaintl/public_html/" "/home/kxobgzmy/public_html/" "/home/myrara/public_html/" "/home/scpac/public_html/" "/home/sksayurvedic/public_html/" "/home/sksgi/public_html/" "/home/sksmedicalcolleg/public_html/" "/home/sksps/public_html/" "/home/sksworldschool/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Feb 21 2025 03:58:44 server maldet(17898): {scan} file list completed in 9s, found 511 files... Feb 21 2025 03:58:44 server maldet(17898): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Feb 21 2025 03:58:44 server maldet(17898): {scan} scan of (511 files) in progress... Feb 21 2025 03:59:13 server maldet(17898): {scan} scan completed on : files 511, malware hits 0, cleaned hits 0, time 40s Feb 21 2025 03:59:13 server maldet(17898): {scan} scan report saved, to view run: maldet --report 250221-0358.17898 Feb 22 2025 04:09:05 server maldet(11570): {update} checking for available updates... Feb 22 2025 04:09:06 server maldet(11570): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Feb 22 2025 04:09:07 server maldet(11570): {update} hashing install files and checking against server... Feb 22 2025 04:09:08 server maldet(11570): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Feb 22 2025 04:09:08 server maldet(11570): {update} latest version already installed. Feb 22 2025 04:09:09 server maldet(11765): {sigup} performing signature update check... Feb 22 2025 04:09:09 server maldet(11765): {sigup} local signature set is version 20250219501964 Feb 22 2025 04:09:09 server maldet(11765): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Feb 22 2025 04:09:09 server maldet(11765): {sigup} new signature set 202502221194053 available Feb 22 2025 04:09:09 server maldet(11765): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Feb 22 2025 04:09:10 server maldet(11765): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Feb 22 2025 04:09:11 server maldet(11765): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Feb 22 2025 04:09:11 server maldet(11765): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Feb 22 2025 04:09:11 server maldet(11765): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Feb 22 2025 04:09:12 server maldet(11765): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Feb 22 2025 04:09:12 server maldet(11765): {sigup} verified md5sum of maldet-sigpack.tgz Feb 22 2025 04:09:12 server maldet(11765): {sigup} unpacked and installed maldet-sigpack.tgz Feb 22 2025 04:09:13 server maldet(11765): {sigup} verified md5sum of maldet-clean.tgz Feb 22 2025 04:09:14 server maldet(11765): {sigup} unpacked and installed maldet-clean.tgz Feb 22 2025 04:09:14 server maldet(11765): {sigup} signature set update completed Feb 22 2025 04:09:14 server maldet(11765): {sigup} 17638 signatures (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Feb 22 2025 04:09:19 server maldet(12178): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Feb 22 2025 04:09:24 server maldet(12178): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Feb 22 2025 04:09:25 server maldet(12178): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Feb 22 2025 04:09:25 server maldet(12178): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Feb 22 2025 04:09:25 server maldet(12178): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/advertisingindia/public_html/" "/home/bcetdgpac/public_html/" "/home/bengalhospital/public_html/" "/home/binsdgp/public_html/" "/home/dilseshaadi/public_html/" "/home/dpsbloomingbuds/public_html/" "/home/dpsdgp/public_html/" "/home/krishnaintl/public_html/" "/home/kxobgzmy/public_html/" "/home/myrara/public_html/" "/home/scpac/public_html/" "/home/sksayurvedic/public_html/" "/home/sksgi/public_html/" "/home/sksmedicalcolleg/public_html/" "/home/sksps/public_html/" "/home/sksworldschool/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Feb 22 2025 04:10:22 server maldet(12178): {scan} file list completed in 56s, found 447 files... Feb 22 2025 04:10:22 server maldet(12178): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Feb 22 2025 04:10:22 server maldet(12178): {scan} scan of (447 files) in progress... Feb 22 2025 04:10:55 server maldet(12178): {scan} scan completed on : files 447, malware hits 0, cleaned hits 0, time 96s Feb 22 2025 04:10:55 server maldet(12178): {scan} scan report saved, to view run: maldet --report 250222-0409.12178 Feb 23 2025 03:56:43 server maldet(29620): {update} checking for available updates... Feb 23 2025 03:56:43 server maldet(29620): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Feb 23 2025 03:56:43 server maldet(29620): {update} new version 1.6.6 found, updating... Feb 23 2025 03:56:44 server maldet(29620): {update} downloaded https://cdn.rfxn.com/downloads/maldetect-current.tar.gz Feb 23 2025 03:56:44 server maldet(29620): {update} downloaded https://cdn.rfxn.com/downloads/maldetect-current.tar.gz.md5 Feb 23 2025 03:56:44 server maldet(29620): {update} verified md5sum of maldetect-current.tar.gz