![]() Server : Apache System : Linux server2.corals.io 4.18.0-348.2.1.el8_5.x86_64 #1 SMP Mon Nov 15 09:17:08 EST 2021 x86_64 User : corals ( 1002) PHP Version : 7.4.33 Disable Function : exec,passthru,shell_exec,system Directory : /proc/self/root/usr/local/maldetect.bk1361510/logs/ |
Apr 11 2023 03:09:42 server2 maldet(3554230): {sigup} performing signature update check... Apr 11 2023 03:09:42 server2 maldet(3554230): {sigup} local signature set is version 20230331490193 Apr 11 2023 03:09:42 server2 maldet(3554230): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Apr 11 2023 03:09:42 server2 maldet(3554230): {sigup} new signature set 202304103956725 available Apr 11 2023 03:09:42 server2 maldet(3554230): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Apr 11 2023 03:09:42 server2 maldet(3554230): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Apr 11 2023 03:09:42 server2 maldet(3554230): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Apr 11 2023 03:09:42 server2 maldet(3554230): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Apr 11 2023 03:09:42 server2 maldet(3554230): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Apr 11 2023 03:09:42 server2 maldet(3554230): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Apr 11 2023 03:09:42 server2 maldet(3554230): {sigup} verified md5sum of maldet-sigpack.tgz Apr 11 2023 03:09:42 server2 maldet(3554230): {sigup} unpacked and installed maldet-sigpack.tgz Apr 11 2023 03:09:42 server2 maldet(3554230): {sigup} verified md5sum of maldet-clean.tgz Apr 11 2023 03:09:42 server2 maldet(3554230): {sigup} unpacked and installed maldet-clean.tgz Apr 11 2023 03:09:42 server2 maldet(3554230): {sigup} signature set update completed Apr 11 2023 03:09:42 server2 maldet(3554230): {sigup} 17638 signatures (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Apr 11 2023 03:09:42 server2 maldet(3553863): {update} completed update v1.6.5 cd06ce => v1.6.5 7510e7, running signature updates... Apr 11 2023 03:09:42 server2 maldet(3554460): {sigup} performing signature update check... Apr 11 2023 03:09:42 server2 maldet(3554460): {sigup} local signature set is version 202304103956725 Apr 11 2023 03:09:42 server2 maldet(3554460): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Apr 11 2023 03:09:42 server2 maldet(3554460): {sigup} latest signature set already installed Apr 11 2023 03:09:42 server2 maldet(3553863): {update} update and config import completed Apr 11 2023 03:09:43 server2 maldet(3554575): {sigup} performing signature update check... Apr 11 2023 03:09:43 server2 maldet(3554575): {sigup} local signature set is version 202304103956725 Apr 11 2023 03:09:43 server2 maldet(3554575): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Apr 11 2023 03:09:43 server2 maldet(3554575): {sigup} latest signature set already installed Apr 11 2023 03:09:43 server2 maldet(3554687): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Apr 11 2023 03:09:43 server2 maldet(3554687): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Apr 11 2023 03:09:43 server2 maldet(3554687): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Apr 11 2023 03:09:43 server2 maldet(3554687): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Apr 11 2023 03:09:43 server2 maldet(3554687): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Apr 11 2023 03:10:18 server2 maldet(3554687): {scan} file list completed in 35s, found 3793 files... Apr 11 2023 03:10:18 server2 maldet(3554687): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Apr 11 2023 03:10:18 server2 maldet(3554687): {scan} scan of (3793 files) in progress... Apr 11 2023 03:11:41 server2 maldet(3554687): {scan} scan completed on : files 3793, malware hits 0, cleaned hits 0, time 118s Apr 11 2023 03:11:41 server2 maldet(3554687): {scan} scan report saved, to view run: maldet --report 230411-0309.3554687 Apr 12 2023 03:52:35 server2 maldet(3758433): {update} checking for available updates... Apr 12 2023 03:52:35 server2 maldet(3758433): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Apr 12 2023 03:52:35 server2 maldet(3758433): {update} hashing install files and checking against server... Apr 12 2023 03:52:35 server2 maldet(3758433): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Apr 12 2023 03:52:35 server2 maldet(3758433): {update} latest version already installed. Apr 12 2023 03:52:35 server2 maldet(3758567): {sigup} performing signature update check... Apr 12 2023 03:52:35 server2 maldet(3758567): {sigup} local signature set is version 202304103956725 Apr 12 2023 03:52:35 server2 maldet(3758567): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Apr 12 2023 03:52:35 server2 maldet(3758567): {sigup} latest signature set already installed Apr 12 2023 03:52:35 server2 maldet(3758678): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Apr 12 2023 03:52:36 server2 maldet(3758678): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Apr 12 2023 03:52:36 server2 maldet(3758678): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Apr 12 2023 03:52:36 server2 maldet(3758678): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Apr 12 2023 03:52:36 server2 maldet(3758678): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Apr 12 2023 03:52:49 server2 maldet(3758678): {scan} file list completed in 13s, found 2353 files... Apr 12 2023 03:52:49 server2 maldet(3758678): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Apr 12 2023 03:52:49 server2 maldet(3758678): {scan} scan of (2353 files) in progress... Apr 12 2023 03:54:17 server2 maldet(3758678): {scan} scan completed on : files 2353, malware hits 0, cleaned hits 0, time 102s Apr 12 2023 03:54:17 server2 maldet(3758678): {scan} scan report saved, to view run: maldet --report 230412-0352.3758678 Apr 13 2023 03:42:00 server2 maldet(3959142): {update} checking for available updates... Apr 13 2023 03:42:00 server2 maldet(3959142): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Apr 13 2023 03:42:00 server2 maldet(3959142): {update} hashing install files and checking against server... Apr 13 2023 03:42:00 server2 maldet(3959142): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Apr 13 2023 03:42:00 server2 maldet(3959142): {update} latest version already installed. Apr 13 2023 03:42:00 server2 maldet(3959275): {sigup} performing signature update check... Apr 13 2023 03:42:00 server2 maldet(3959275): {sigup} local signature set is version 202304103956725 Apr 13 2023 03:42:00 server2 maldet(3959275): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Apr 13 2023 03:42:01 server2 maldet(3959275): {sigup} new signature set 20230413508146 available Apr 13 2023 03:42:01 server2 maldet(3959275): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Apr 13 2023 03:42:01 server2 maldet(3959275): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Apr 13 2023 03:42:01 server2 maldet(3959275): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Apr 13 2023 03:42:01 server2 maldet(3959275): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Apr 13 2023 03:42:01 server2 maldet(3959275): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Apr 13 2023 03:42:01 server2 maldet(3959275): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Apr 13 2023 03:42:01 server2 maldet(3959275): {sigup} verified md5sum of maldet-sigpack.tgz Apr 13 2023 03:42:01 server2 maldet(3959275): {sigup} unpacked and installed maldet-sigpack.tgz Apr 13 2023 03:42:01 server2 maldet(3959275): {sigup} verified md5sum of maldet-clean.tgz Apr 13 2023 03:42:01 server2 maldet(3959275): {sigup} unpacked and installed maldet-clean.tgz Apr 13 2023 03:42:01 server2 maldet(3959275): {sigup} signature set update completed Apr 13 2023 03:42:01 server2 maldet(3959275): {sigup} 17638 signatures (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Apr 13 2023 03:42:01 server2 maldet(3959503): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Apr 13 2023 03:42:01 server2 maldet(3959503): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Apr 13 2023 03:42:01 server2 maldet(3959503): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Apr 13 2023 03:42:01 server2 maldet(3959503): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Apr 13 2023 03:42:01 server2 maldet(3959503): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Apr 13 2023 03:42:24 server2 maldet(3959503): {scan} file list completed in 23s, found 1232 files... Apr 13 2023 03:42:24 server2 maldet(3959503): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Apr 13 2023 03:42:24 server2 maldet(3959503): {scan} scan of (1232 files) in progress... Apr 13 2023 03:43:28 server2 maldet(3959503): {scan} scan completed on : files 1232, malware hits 0, cleaned hits 0, time 87s Apr 13 2023 03:43:28 server2 maldet(3959503): {scan} scan report saved, to view run: maldet --report 230413-0342.3959503 Apr 14 2023 03:17:57 server2 maldet(4155279): {update} checking for available updates... Apr 14 2023 03:17:57 server2 maldet(4155279): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Apr 14 2023 03:17:57 server2 maldet(4155279): {update} hashing install files and checking against server... Apr 14 2023 03:17:58 server2 maldet(4155279): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Apr 14 2023 03:17:58 server2 maldet(4155279): {update} latest version already installed. Apr 14 2023 03:17:58 server2 maldet(4155412): {sigup} performing signature update check... Apr 14 2023 03:17:58 server2 maldet(4155412): {sigup} local signature set is version 20230413508146 Apr 14 2023 03:17:58 server2 maldet(4155412): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Apr 14 2023 03:17:58 server2 maldet(4155412): {sigup} new signature set 202304131144055 available Apr 14 2023 03:17:58 server2 maldet(4155412): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Apr 14 2023 03:17:58 server2 maldet(4155412): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Apr 14 2023 03:17:58 server2 maldet(4155412): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Apr 14 2023 03:17:58 server2 maldet(4155412): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Apr 14 2023 03:17:58 server2 maldet(4155412): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Apr 14 2023 03:17:58 server2 maldet(4155412): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Apr 14 2023 03:17:58 server2 maldet(4155412): {sigup} verified md5sum of maldet-sigpack.tgz Apr 14 2023 03:17:58 server2 maldet(4155412): {sigup} unpacked and installed maldet-sigpack.tgz Apr 14 2023 03:17:58 server2 maldet(4155412): {sigup} verified md5sum of maldet-clean.tgz Apr 14 2023 03:17:58 server2 maldet(4155412): {sigup} unpacked and installed maldet-clean.tgz Apr 14 2023 03:17:58 server2 maldet(4155412): {sigup} signature set update completed Apr 14 2023 03:17:58 server2 maldet(4155412): {sigup} 17637 signatures (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Apr 14 2023 03:17:59 server2 maldet(4155640): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Apr 14 2023 03:17:59 server2 maldet(4155640): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Apr 14 2023 03:17:59 server2 maldet(4155640): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Apr 14 2023 03:17:59 server2 maldet(4155640): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Apr 14 2023 03:17:59 server2 maldet(4155640): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Apr 14 2023 03:18:19 server2 maldet(4155640): {scan} file list completed in 20s, found 836 files... Apr 14 2023 03:18:19 server2 maldet(4155640): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Apr 14 2023 03:18:19 server2 maldet(4155640): {scan} scan of (836 files) in progress... Apr 14 2023 03:19:07 server2 maldet(4155640): {scan} scan completed on : files 836, malware hits 0, cleaned hits 0, time 68s Apr 14 2023 03:19:07 server2 maldet(4155640): {scan} scan report saved, to view run: maldet --report 230414-0317.4155640 Apr 15 2023 03:15:30 server2 maldet(163165): {update} checking for available updates... Apr 15 2023 03:15:31 server2 maldet(163165): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Apr 15 2023 03:15:31 server2 maldet(163165): {update} hashing install files and checking against server... Apr 15 2023 03:15:31 server2 maldet(163165): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Apr 15 2023 03:15:31 server2 maldet(163165): {update} latest version already installed. Apr 15 2023 03:15:31 server2 maldet(163298): {sigup} performing signature update check... Apr 15 2023 03:15:31 server2 maldet(163298): {sigup} local signature set is version 202304131144055 Apr 15 2023 03:15:31 server2 maldet(163298): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Apr 15 2023 03:15:31 server2 maldet(163298): {sigup} latest signature set already installed Apr 15 2023 03:15:31 server2 maldet(163409): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Apr 15 2023 03:15:31 server2 maldet(163409): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Apr 15 2023 03:15:31 server2 maldet(163409): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Apr 15 2023 03:15:31 server2 maldet(163409): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Apr 15 2023 03:15:31 server2 maldet(163409): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Apr 15 2023 03:15:49 server2 maldet(163409): {scan} file list completed in 18s, found 951 files... Apr 15 2023 03:15:49 server2 maldet(163409): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Apr 15 2023 03:15:49 server2 maldet(163409): {scan} scan of (951 files) in progress... Apr 15 2023 03:16:33 server2 maldet(163409): {scan} scan completed on : files 951, malware hits 0, cleaned hits 0, time 62s Apr 15 2023 03:16:33 server2 maldet(163409): {scan} scan report saved, to view run: maldet --report 230415-0315.163409 Apr 16 2023 03:14:13 server2 maldet(372264): {update} checking for available updates... Apr 16 2023 03:14:13 server2 maldet(372264): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Apr 16 2023 03:14:13 server2 maldet(372264): {update} hashing install files and checking against server... Apr 16 2023 03:14:13 server2 maldet(372264): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Apr 16 2023 03:14:13 server2 maldet(372264): {update} latest version already installed. Apr 16 2023 03:14:13 server2 maldet(372397): {sigup} performing signature update check... Apr 16 2023 03:14:13 server2 maldet(372397): {sigup} local signature set is version 202304131144055 Apr 16 2023 03:14:13 server2 maldet(372397): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Apr 16 2023 03:14:13 server2 maldet(372397): {sigup} new signature set 20230416491380 available Apr 16 2023 03:14:13 server2 maldet(372397): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Apr 16 2023 03:14:14 server2 maldet(372397): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Apr 16 2023 03:14:14 server2 maldet(372397): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Apr 16 2023 03:14:14 server2 maldet(372397): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Apr 16 2023 03:14:14 server2 maldet(372397): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Apr 16 2023 03:14:14 server2 maldet(372397): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Apr 16 2023 03:14:14 server2 maldet(372397): {sigup} verified md5sum of maldet-sigpack.tgz Apr 16 2023 03:14:14 server2 maldet(372397): {sigup} unpacked and installed maldet-sigpack.tgz Apr 16 2023 03:14:14 server2 maldet(372397): {sigup} verified md5sum of maldet-clean.tgz Apr 16 2023 03:14:14 server2 maldet(372397): {sigup} unpacked and installed maldet-clean.tgz Apr 16 2023 03:14:14 server2 maldet(372397): {sigup} signature set update completed Apr 16 2023 03:14:14 server2 maldet(372397): {sigup} 17637 signatures (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Apr 16 2023 03:14:14 server2 maldet(372631): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Apr 16 2023 03:14:15 server2 maldet(372631): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Apr 16 2023 03:14:15 server2 maldet(372631): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Apr 16 2023 03:14:15 server2 maldet(372631): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Apr 16 2023 03:14:15 server2 maldet(372631): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Apr 16 2023 03:14:33 server2 maldet(372631): {scan} file list completed in 18s, found 1333 files... Apr 16 2023 03:14:33 server2 maldet(372631): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Apr 16 2023 03:14:33 server2 maldet(372631): {scan} scan of (1333 files) in progress... Apr 16 2023 03:15:48 server2 maldet(372631): {scan} scan completed on : files 1333, malware hits 0, cleaned hits 0, time 94s Apr 16 2023 03:15:48 server2 maldet(372631): {scan} scan report saved, to view run: maldet --report 230416-0314.372631 Apr 17 2023 03:18:25 server2 maldet(588007): {update} checking for available updates... Apr 17 2023 03:18:25 server2 maldet(588007): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Apr 17 2023 03:18:25 server2 maldet(588007): {update} hashing install files and checking against server... Apr 17 2023 03:18:25 server2 maldet(588007): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Apr 17 2023 03:18:25 server2 maldet(588007): {update} latest version already installed. Apr 17 2023 03:18:26 server2 maldet(588140): {sigup} performing signature update check... Apr 17 2023 03:18:26 server2 maldet(588140): {sigup} local signature set is version 20230416491380 Apr 17 2023 03:18:26 server2 maldet(588140): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Apr 17 2023 03:18:26 server2 maldet(588140): {sigup} latest signature set already installed Apr 17 2023 03:18:26 server2 maldet(588254): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Apr 17 2023 03:18:26 server2 maldet(588254): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Apr 17 2023 03:18:26 server2 maldet(588254): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Apr 17 2023 03:18:26 server2 maldet(588254): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Apr 17 2023 03:18:26 server2 maldet(588254): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Apr 17 2023 03:18:44 server2 maldet(588254): {scan} file list completed in 18s, found 1107 files... Apr 17 2023 03:18:44 server2 maldet(588254): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Apr 17 2023 03:18:44 server2 maldet(588254): {scan} scan of (1107 files) in progress... Apr 17 2023 03:19:40 server2 maldet(588254): {scan} scan completed on : files 1107, malware hits 0, cleaned hits 0, time 74s Apr 17 2023 03:19:40 server2 maldet(588254): {scan} scan report saved, to view run: maldet --report 230417-0318.588254 Apr 18 2023 03:50:32 server2 maldet(805211): {update} checking for available updates... Apr 18 2023 03:50:32 server2 maldet(805211): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Apr 18 2023 03:50:32 server2 maldet(805211): {update} hashing install files and checking against server... Apr 18 2023 03:50:32 server2 maldet(805211): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Apr 18 2023 03:50:32 server2 maldet(805211): {update} latest version already installed. Apr 18 2023 03:50:32 server2 maldet(805345): {sigup} performing signature update check... Apr 18 2023 03:50:33 server2 maldet(805345): {sigup} local signature set is version 20230416491380 Apr 18 2023 03:50:33 server2 maldet(805345): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Apr 18 2023 03:50:33 server2 maldet(805345): {sigup} latest signature set already installed Apr 18 2023 03:50:33 server2 maldet(805456): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Apr 18 2023 03:50:33 server2 maldet(805456): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Apr 18 2023 03:50:33 server2 maldet(805456): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Apr 18 2023 03:50:33 server2 maldet(805456): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Apr 18 2023 03:50:33 server2 maldet(805456): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Apr 18 2023 03:50:49 server2 maldet(805456): {scan} file list completed in 16s, found 769 files... Apr 18 2023 03:50:49 server2 maldet(805456): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Apr 18 2023 03:50:49 server2 maldet(805456): {scan} scan of (769 files) in progress... Apr 18 2023 03:51:28 server2 maldet(805456): {scan} scan completed on : files 769, malware hits 0, cleaned hits 0, time 55s Apr 18 2023 03:51:28 server2 maldet(805456): {scan} scan report saved, to view run: maldet --report 230418-0350.805456 Apr 19 2023 03:52:43 server2 maldet(1011670): {update} checking for available updates... Apr 19 2023 03:52:43 server2 maldet(1011670): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Apr 19 2023 03:52:43 server2 maldet(1011670): {update} hashing install files and checking against server... Apr 19 2023 03:52:43 server2 maldet(1011670): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Apr 19 2023 03:52:43 server2 maldet(1011670): {update} latest version already installed. Apr 19 2023 03:52:43 server2 maldet(1011803): {sigup} performing signature update check... Apr 19 2023 03:52:43 server2 maldet(1011803): {sigup} local signature set is version 20230416491380 Apr 19 2023 03:52:43 server2 maldet(1011803): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Apr 19 2023 03:52:43 server2 maldet(1011803): {sigup} new signature set 202304191182804 available Apr 19 2023 03:52:43 server2 maldet(1011803): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Apr 19 2023 03:52:43 server2 maldet(1011803): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Apr 19 2023 03:52:43 server2 maldet(1011803): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Apr 19 2023 03:52:43 server2 maldet(1011803): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Apr 19 2023 03:52:43 server2 maldet(1011803): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Apr 19 2023 03:52:44 server2 maldet(1011803): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Apr 19 2023 03:52:44 server2 maldet(1011803): {sigup} verified md5sum of maldet-sigpack.tgz Apr 19 2023 03:52:44 server2 maldet(1011803): {sigup} unpacked and installed maldet-sigpack.tgz Apr 19 2023 03:52:44 server2 maldet(1011803): {sigup} verified md5sum of maldet-clean.tgz Apr 19 2023 03:52:44 server2 maldet(1011803): {sigup} unpacked and installed maldet-clean.tgz Apr 19 2023 03:52:44 server2 maldet(1011803): {sigup} signature set update completed Apr 19 2023 03:52:44 server2 maldet(1011803): {sigup} 17637 signatures (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Apr 19 2023 03:52:44 server2 maldet(1012031): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Apr 19 2023 03:52:44 server2 maldet(1012031): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Apr 19 2023 03:52:44 server2 maldet(1012031): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Apr 19 2023 03:52:44 server2 maldet(1012031): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Apr 19 2023 03:52:44 server2 maldet(1012031): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Apr 19 2023 03:52:58 server2 maldet(1012031): {scan} file list completed in 14s, found 1029 files... Apr 19 2023 03:52:58 server2 maldet(1012031): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Apr 19 2023 03:52:58 server2 maldet(1012031): {scan} scan of (1029 files) in progress... Apr 19 2023 03:54:04 server2 maldet(1012031): {scan} scan completed on : files 1029, malware hits 0, cleaned hits 0, time 80s Apr 19 2023 03:54:04 server2 maldet(1012031): {scan} scan report saved, to view run: maldet --report 230419-0352.1012031 Apr 20 2023 03:39:51 server2 maldet(1223912): {update} checking for available updates... Apr 20 2023 03:39:51 server2 maldet(1223912): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Apr 20 2023 03:39:51 server2 maldet(1223912): {update} hashing install files and checking against server... Apr 20 2023 03:39:51 server2 maldet(1223912): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Apr 20 2023 03:39:51 server2 maldet(1223912): {update} latest version already installed. Apr 20 2023 03:39:51 server2 maldet(1224045): {sigup} performing signature update check... Apr 20 2023 03:39:51 server2 maldet(1224045): {sigup} local signature set is version 202304191182804 Apr 20 2023 03:39:52 server2 maldet(1224045): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Apr 20 2023 03:39:52 server2 maldet(1224045): {sigup} latest signature set already installed Apr 20 2023 03:39:52 server2 maldet(1224157): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Apr 20 2023 03:39:52 server2 maldet(1224157): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Apr 20 2023 03:39:52 server2 maldet(1224157): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Apr 20 2023 03:39:52 server2 maldet(1224157): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Apr 20 2023 03:39:52 server2 maldet(1224157): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Apr 20 2023 03:40:11 server2 maldet(1224157): {scan} file list completed in 19s, found 1011 files... Apr 20 2023 03:40:11 server2 maldet(1224157): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Apr 20 2023 03:40:11 server2 maldet(1224157): {scan} scan of (1011 files) in progress... Apr 20 2023 03:40:59 server2 maldet(1224157): {scan} scan completed on : files 1011, malware hits 0, cleaned hits 0, time 67s Apr 20 2023 03:40:59 server2 maldet(1224157): {scan} scan report saved, to view run: maldet --report 230420-0339.1224157 Apr 21 2023 03:20:39 server2 maldet(1440867): {update} checking for available updates... Apr 21 2023 03:20:39 server2 maldet(1440867): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Apr 21 2023 03:20:39 server2 maldet(1440867): {update} hashing install files and checking against server... Apr 21 2023 03:20:39 server2 maldet(1440867): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Apr 21 2023 03:20:39 server2 maldet(1440867): {update} latest version already installed. Apr 21 2023 03:20:39 server2 maldet(1441000): {sigup} performing signature update check... Apr 21 2023 03:20:39 server2 maldet(1441000): {sigup} local signature set is version 202304191182804 Apr 21 2023 03:20:39 server2 maldet(1441000): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Apr 21 2023 03:20:39 server2 maldet(1441000): {sigup} latest signature set already installed Apr 21 2023 03:20:39 server2 maldet(1441111): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Apr 21 2023 03:20:40 server2 maldet(1441111): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Apr 21 2023 03:20:40 server2 maldet(1441111): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Apr 21 2023 03:20:40 server2 maldet(1441111): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Apr 21 2023 03:20:40 server2 maldet(1441111): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Apr 21 2023 03:20:59 server2 maldet(1441111): {scan} file list completed in 19s, found 1063 files... Apr 21 2023 03:20:59 server2 maldet(1441111): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Apr 21 2023 03:20:59 server2 maldet(1441111): {scan} scan of (1063 files) in progress... Apr 21 2023 03:21:57 server2 maldet(1441111): {scan} scan completed on : files 1063, malware hits 0, cleaned hits 0, time 78s Apr 21 2023 03:21:57 server2 maldet(1441111): {scan} scan report saved, to view run: maldet --report 230421-0320.1441111 Apr 22 2023 03:25:13 server2 maldet(1659669): {update} checking for available updates... Apr 22 2023 03:25:13 server2 maldet(1659669): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Apr 22 2023 03:25:13 server2 maldet(1659669): {update} hashing install files and checking against server... Apr 22 2023 03:25:13 server2 maldet(1659669): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Apr 22 2023 03:25:13 server2 maldet(1659669): {update} latest version already installed. Apr 22 2023 03:25:14 server2 maldet(1659802): {sigup} performing signature update check... Apr 22 2023 03:25:14 server2 maldet(1659802): {sigup} local signature set is version 202304191182804 Apr 22 2023 03:25:14 server2 maldet(1659802): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Apr 22 2023 03:25:14 server2 maldet(1659802): {sigup} new signature set 20230422539465 available Apr 22 2023 03:25:14 server2 maldet(1659802): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Apr 22 2023 03:25:14 server2 maldet(1659802): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Apr 22 2023 03:25:14 server2 maldet(1659802): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Apr 22 2023 03:25:14 server2 maldet(1659802): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Apr 22 2023 03:25:14 server2 maldet(1659802): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Apr 22 2023 03:25:14 server2 maldet(1659802): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Apr 22 2023 03:25:14 server2 maldet(1659802): {sigup} verified md5sum of maldet-sigpack.tgz Apr 22 2023 03:25:14 server2 maldet(1659802): {sigup} unpacked and installed maldet-sigpack.tgz Apr 22 2023 03:25:14 server2 maldet(1659802): {sigup} verified md5sum of maldet-clean.tgz Apr 22 2023 03:25:14 server2 maldet(1659802): {sigup} unpacked and installed maldet-clean.tgz Apr 22 2023 03:25:14 server2 maldet(1659802): {sigup} signature set update completed Apr 22 2023 03:25:14 server2 maldet(1659802): {sigup} 17637 signatures (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Apr 22 2023 03:25:15 server2 maldet(1660038): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Apr 22 2023 03:25:15 server2 maldet(1660038): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Apr 22 2023 03:25:15 server2 maldet(1660038): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Apr 22 2023 03:25:15 server2 maldet(1660038): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Apr 22 2023 03:25:15 server2 maldet(1660038): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Apr 22 2023 03:25:34 server2 maldet(1660038): {scan} file list completed in 19s, found 929 files... Apr 22 2023 03:25:34 server2 maldet(1660038): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Apr 22 2023 03:25:34 server2 maldet(1660038): {scan} scan of (929 files) in progress... Apr 22 2023 03:26:28 server2 maldet(1660038): {scan} scan completed on : files 929, malware hits 0, cleaned hits 0, time 73s Apr 22 2023 03:26:28 server2 maldet(1660038): {scan} scan report saved, to view run: maldet --report 230422-0325.1660038 Apr 23 2023 03:18:04 server2 maldet(1887495): {update} checking for available updates... Apr 23 2023 03:18:04 server2 maldet(1887495): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Apr 23 2023 03:18:04 server2 maldet(1887495): {update} hashing install files and checking against server... Apr 23 2023 03:18:05 server2 maldet(1887495): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Apr 23 2023 03:18:05 server2 maldet(1887495): {update} latest version already installed. Apr 23 2023 03:18:05 server2 maldet(1887629): {sigup} performing signature update check... Apr 23 2023 03:18:05 server2 maldet(1887629): {sigup} local signature set is version 20230422539465 Apr 23 2023 03:18:05 server2 maldet(1887629): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Apr 23 2023 03:18:05 server2 maldet(1887629): {sigup} latest signature set already installed Apr 23 2023 03:18:05 server2 maldet(1887740): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Apr 23 2023 03:18:06 server2 maldet(1887740): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Apr 23 2023 03:18:06 server2 maldet(1887740): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Apr 23 2023 03:18:06 server2 maldet(1887740): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Apr 23 2023 03:18:06 server2 maldet(1887740): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Apr 23 2023 03:18:22 server2 maldet(1887740): {scan} file list completed in 16s, found 733 files... Apr 23 2023 03:18:22 server2 maldet(1887740): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Apr 23 2023 03:18:22 server2 maldet(1887740): {scan} scan of (733 files) in progress... Apr 23 2023 03:19:08 server2 maldet(1887740): {scan} scan completed on : files 733, malware hits 0, cleaned hits 0, time 63s Apr 23 2023 03:19:08 server2 maldet(1887740): {scan} scan report saved, to view run: maldet --report 230423-0318.1887740 Apr 23 2023 21:17:49 server2 maldet(1230): {mon} could not find inotifywait command, install yum package inotify-tools or download from https://github.com/rvoicilas/inotify-tools/wiki/ Apr 24 2023 03:49:19 server2 maldet(102767): {update} checking for available updates... Apr 24 2023 03:49:19 server2 maldet(102767): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Apr 24 2023 03:49:19 server2 maldet(102767): {update} hashing install files and checking against server... Apr 24 2023 03:49:19 server2 maldet(102767): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Apr 24 2023 03:49:19 server2 maldet(102767): {update} latest version already installed. Apr 24 2023 03:49:19 server2 maldet(102900): {sigup} performing signature update check... Apr 24 2023 03:49:19 server2 maldet(102900): {sigup} local signature set is version 20230422539465 Apr 24 2023 03:49:19 server2 maldet(102900): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Apr 24 2023 03:49:19 server2 maldet(102900): {sigup} latest signature set already installed Apr 24 2023 03:49:19 server2 maldet(103011): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Apr 24 2023 03:49:19 server2 maldet(103011): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Apr 24 2023 03:49:19 server2 maldet(103011): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Apr 24 2023 03:49:19 server2 maldet(103011): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Apr 24 2023 03:49:19 server2 maldet(103011): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Apr 24 2023 03:49:30 server2 maldet(103011): {scan} file list completed in 11s, found 681 files... Apr 24 2023 03:49:30 server2 maldet(103011): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Apr 24 2023 03:49:30 server2 maldet(103011): {scan} scan of (681 files) in progress... Apr 24 2023 03:50:02 server2 maldet(103011): {scan} scan completed on : files 681, malware hits 0, cleaned hits 0, time 43s Apr 24 2023 03:50:02 server2 maldet(103011): {scan} scan report saved, to view run: maldet --report 230424-0349.103011 Apr 25 2023 03:50:03 server2 maldet(323479): {update} checking for available updates... Apr 25 2023 03:50:03 server2 maldet(323479): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Apr 25 2023 03:50:03 server2 maldet(323479): {update} hashing install files and checking against server... Apr 25 2023 03:50:03 server2 maldet(323479): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Apr 25 2023 03:50:03 server2 maldet(323479): {update} latest version already installed. Apr 25 2023 03:50:03 server2 maldet(323612): {sigup} performing signature update check... Apr 25 2023 03:50:03 server2 maldet(323612): {sigup} local signature set is version 20230422539465 Apr 25 2023 03:50:03 server2 maldet(323612): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Apr 25 2023 03:50:03 server2 maldet(323612): {sigup} new signature set 202304251237452 available Apr 25 2023 03:50:03 server2 maldet(323612): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Apr 25 2023 03:50:03 server2 maldet(323612): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Apr 25 2023 03:50:03 server2 maldet(323612): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Apr 25 2023 03:50:03 server2 maldet(323612): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Apr 25 2023 03:50:03 server2 maldet(323612): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Apr 25 2023 03:50:04 server2 maldet(323612): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Apr 25 2023 03:50:04 server2 maldet(323612): {sigup} verified md5sum of maldet-sigpack.tgz Apr 25 2023 03:50:04 server2 maldet(323612): {sigup} unpacked and installed maldet-sigpack.tgz Apr 25 2023 03:50:04 server2 maldet(323612): {sigup} verified md5sum of maldet-clean.tgz Apr 25 2023 03:50:04 server2 maldet(323612): {sigup} unpacked and installed maldet-clean.tgz Apr 25 2023 03:50:04 server2 maldet(323612): {sigup} signature set update completed Apr 25 2023 03:50:04 server2 maldet(323612): {sigup} 17637 signatures (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Apr 25 2023 03:50:04 server2 maldet(323840): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Apr 25 2023 03:50:04 server2 maldet(323840): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Apr 25 2023 03:50:04 server2 maldet(323840): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Apr 25 2023 03:50:04 server2 maldet(323840): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Apr 25 2023 03:50:04 server2 maldet(323840): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Apr 25 2023 03:50:18 server2 maldet(323840): {scan} file list completed in 14s, found 2544 files... Apr 25 2023 03:50:18 server2 maldet(323840): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Apr 25 2023 03:50:18 server2 maldet(323840): {scan} scan of (2544 files) in progress... Apr 25 2023 03:51:43 server2 maldet(323840): {scan} scan completed on : files 2544, malware hits 0, cleaned hits 0, time 99s Apr 25 2023 03:51:43 server2 maldet(323840): {scan} scan report saved, to view run: maldet --report 230425-0350.323840 Apr 26 2023 03:40:49 server2 maldet(530161): {update} checking for available updates... Apr 26 2023 03:40:49 server2 maldet(530161): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Apr 26 2023 03:40:50 server2 maldet(530161): {update} hashing install files and checking against server... Apr 26 2023 03:40:50 server2 maldet(530161): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Apr 26 2023 03:40:50 server2 maldet(530161): {update} latest version already installed. Apr 26 2023 03:40:50 server2 maldet(530294): {sigup} performing signature update check... Apr 26 2023 03:40:50 server2 maldet(530294): {sigup} local signature set is version 202304251237452 Apr 26 2023 03:40:50 server2 maldet(530294): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Apr 26 2023 03:40:50 server2 maldet(530294): {sigup} latest signature set already installed Apr 26 2023 03:40:50 server2 maldet(530405): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Apr 26 2023 03:40:50 server2 maldet(530405): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Apr 26 2023 03:40:50 server2 maldet(530405): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Apr 26 2023 03:40:50 server2 maldet(530405): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Apr 26 2023 03:40:50 server2 maldet(530405): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Apr 26 2023 03:41:04 server2 maldet(530405): {scan} file list completed in 14s, found 817 files... Apr 26 2023 03:41:04 server2 maldet(530405): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Apr 26 2023 03:41:04 server2 maldet(530405): {scan} scan of (817 files) in progress... Apr 26 2023 03:41:46 server2 maldet(530405): {scan} scan completed on : files 817, malware hits 0, cleaned hits 0, time 56s Apr 26 2023 03:41:46 server2 maldet(530405): {scan} scan report saved, to view run: maldet --report 230426-0340.530405 Apr 27 2023 03:46:48 server2 maldet(744549): {update} checking for available updates... Apr 27 2023 03:46:48 server2 maldet(744549): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Apr 27 2023 03:46:48 server2 maldet(744549): {update} hashing install files and checking against server... Apr 27 2023 03:46:48 server2 maldet(744549): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Apr 27 2023 03:46:48 server2 maldet(744549): {update} latest version already installed. Apr 27 2023 03:46:48 server2 maldet(744682): {sigup} performing signature update check... Apr 27 2023 03:46:48 server2 maldet(744682): {sigup} local signature set is version 202304251237452 Apr 27 2023 03:46:48 server2 maldet(744682): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Apr 27 2023 03:46:48 server2 maldet(744682): {sigup} latest signature set already installed Apr 27 2023 03:46:48 server2 maldet(744793): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Apr 27 2023 03:46:48 server2 maldet(744793): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Apr 27 2023 03:46:48 server2 maldet(744793): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Apr 27 2023 03:46:48 server2 maldet(744793): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Apr 27 2023 03:46:48 server2 maldet(744793): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Apr 27 2023 03:47:03 server2 maldet(744793): {scan} file list completed in 15s, found 771 files... Apr 27 2023 03:47:03 server2 maldet(744793): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Apr 27 2023 03:47:03 server2 maldet(744793): {scan} scan of (771 files) in progress... Apr 27 2023 03:47:39 server2 maldet(744793): {scan} scan completed on : files 771, malware hits 0, cleaned hits 0, time 51s Apr 27 2023 03:47:39 server2 maldet(744793): {scan} scan report saved, to view run: maldet --report 230427-0346.744793 Apr 28 2023 03:33:49 server2 maldet(994691): {update} checking for available updates... Apr 28 2023 03:33:49 server2 maldet(994691): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Apr 28 2023 03:33:49 server2 maldet(994691): {update} hashing install files and checking against server... Apr 28 2023 03:33:49 server2 maldet(994691): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Apr 28 2023 03:33:49 server2 maldet(994691): {update} latest version already installed. Apr 28 2023 03:33:49 server2 maldet(994824): {sigup} performing signature update check... Apr 28 2023 03:33:49 server2 maldet(994824): {sigup} local signature set is version 202304251237452 Apr 28 2023 03:33:49 server2 maldet(994824): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Apr 28 2023 03:33:49 server2 maldet(994824): {sigup} new signature set 202304281928720 available Apr 28 2023 03:33:49 server2 maldet(994824): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Apr 28 2023 03:33:49 server2 maldet(994824): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Apr 28 2023 03:33:49 server2 maldet(994824): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Apr 28 2023 03:33:49 server2 maldet(994824): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Apr 28 2023 03:33:49 server2 maldet(994824): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Apr 28 2023 03:33:50 server2 maldet(994824): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Apr 28 2023 03:33:50 server2 maldet(994824): {sigup} verified md5sum of maldet-sigpack.tgz Apr 28 2023 03:33:50 server2 maldet(994824): {sigup} unpacked and installed maldet-sigpack.tgz Apr 28 2023 03:33:50 server2 maldet(994824): {sigup} verified md5sum of maldet-clean.tgz Apr 28 2023 03:33:50 server2 maldet(994824): {sigup} unpacked and installed maldet-clean.tgz Apr 28 2023 03:33:50 server2 maldet(994824): {sigup} signature set update completed Apr 28 2023 03:33:50 server2 maldet(994824): {sigup} 17637 signatures (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Apr 28 2023 03:33:50 server2 maldet(995053): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Apr 28 2023 03:33:50 server2 maldet(995053): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Apr 28 2023 03:33:50 server2 maldet(995053): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Apr 28 2023 03:33:50 server2 maldet(995053): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Apr 28 2023 03:33:50 server2 maldet(995053): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Apr 28 2023 03:34:08 server2 maldet(995053): {scan} file list completed in 18s, found 1221 files... Apr 28 2023 03:34:08 server2 maldet(995053): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Apr 28 2023 03:34:08 server2 maldet(995053): {scan} scan of (1221 files) in progress... Apr 28 2023 03:35:23 server2 maldet(995053): {scan} scan completed on : files 1221, malware hits 0, cleaned hits 0, time 93s Apr 28 2023 03:35:23 server2 maldet(995053): {scan} scan report saved, to view run: maldet --report 230428-0333.995053 Apr 29 2023 03:09:06 server2 maldet(1275603): {update} checking for available updates... Apr 29 2023 03:09:07 server2 maldet(1275603): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Apr 29 2023 03:09:07 server2 maldet(1275603): {update} hashing install files and checking against server... Apr 29 2023 03:09:07 server2 maldet(1275603): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Apr 29 2023 03:09:07 server2 maldet(1275603): {update} latest version already installed. Apr 29 2023 03:09:07 server2 maldet(1275736): {sigup} performing signature update check... Apr 29 2023 03:09:07 server2 maldet(1275736): {sigup} local signature set is version 202304281928720 Apr 29 2023 03:09:07 server2 maldet(1275736): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Apr 29 2023 03:09:07 server2 maldet(1275736): {sigup} latest signature set already installed Apr 29 2023 03:09:07 server2 maldet(1275847): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Apr 29 2023 03:09:07 server2 maldet(1275847): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Apr 29 2023 03:09:07 server2 maldet(1275847): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Apr 29 2023 03:09:07 server2 maldet(1275847): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Apr 29 2023 03:09:07 server2 maldet(1275847): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Apr 29 2023 03:09:24 server2 maldet(1275847): {scan} file list completed in 17s, found 1109 files... Apr 29 2023 03:09:24 server2 maldet(1275847): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Apr 29 2023 03:09:24 server2 maldet(1275847): {scan} scan of (1109 files) in progress... Apr 29 2023 03:10:28 server2 maldet(1275847): {scan} scan completed on : files 1109, malware hits 0, cleaned hits 0, time 81s Apr 29 2023 03:10:28 server2 maldet(1275847): {scan} scan report saved, to view run: maldet --report 230429-0309.1275847 Apr 30 2023 03:39:10 server2 maldet(1612029): {update} checking for available updates... Apr 30 2023 03:39:10 server2 maldet(1612029): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Apr 30 2023 03:39:10 server2 maldet(1612029): {update} hashing install files and checking against server... Apr 30 2023 03:39:10 server2 maldet(1612029): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Apr 30 2023 03:39:10 server2 maldet(1612029): {update} latest version already installed. Apr 30 2023 03:39:10 server2 maldet(1612162): {sigup} performing signature update check... Apr 30 2023 03:39:10 server2 maldet(1612162): {sigup} local signature set is version 202304281928720 Apr 30 2023 03:39:10 server2 maldet(1612162): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Apr 30 2023 03:39:10 server2 maldet(1612162): {sigup} latest signature set already installed Apr 30 2023 03:39:10 server2 maldet(1612273): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Apr 30 2023 03:39:11 server2 maldet(1612273): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Apr 30 2023 03:39:11 server2 maldet(1612273): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Apr 30 2023 03:39:11 server2 maldet(1612273): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Apr 30 2023 03:39:11 server2 maldet(1612273): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Apr 30 2023 03:39:29 server2 maldet(1612273): {scan} file list completed in 18s, found 1453 files... Apr 30 2023 03:39:29 server2 maldet(1612273): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Apr 30 2023 03:39:29 server2 maldet(1612273): {scan} scan of (1453 files) in progress... Apr 30 2023 03:40:55 server2 maldet(1612273): {scan} scan completed on : files 1453, malware hits 0, cleaned hits 0, time 105s Apr 30 2023 03:40:55 server2 maldet(1612273): {scan} scan report saved, to view run: maldet --report 230430-0339.1612273 May 01 2023 03:55:28 server2 maldet(1860683): {update} checking for available updates... May 01 2023 03:55:28 server2 maldet(1860683): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver May 01 2023 03:55:28 server2 maldet(1860683): {update} hashing install files and checking against server... May 01 2023 03:55:28 server2 maldet(1860683): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash May 01 2023 03:55:28 server2 maldet(1860683): {update} latest version already installed. May 01 2023 03:55:28 server2 maldet(1860816): {sigup} performing signature update check... May 01 2023 03:55:28 server2 maldet(1860816): {sigup} local signature set is version 202304281928720 May 01 2023 03:55:29 server2 maldet(1860816): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver May 01 2023 03:55:29 server2 maldet(1860816): {sigup} latest signature set already installed May 01 2023 03:55:29 server2 maldet(1860927): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress May 01 2023 03:55:29 server2 maldet(1860927): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) May 01 2023 03:55:29 server2 maldet(1860927): {scan} building file list for of new/modified files from last 1 days, this might take awhile... May 01 2023 03:55:29 server2 maldet(1860927): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 May 01 2023 03:55:29 server2 maldet(1860927): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 May 01 2023 03:55:45 server2 maldet(1860927): {scan} file list completed in 16s, found 15737 files... May 01 2023 03:55:45 server2 maldet(1860927): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... May 01 2023 03:55:45 server2 maldet(1860927): {scan} scan of (15737 files) in progress... May 01 2023 04:01:55 server2 maldet(1860927): {scan} scan completed on : files 15737, malware hits 0, cleaned hits 0, time 386s May 01 2023 04:01:55 server2 maldet(1860927): {scan} scan report saved, to view run: maldet --report 230501-0355.1860927 May 02 2023 03:49:44 server2 maldet(2077765): {update} checking for available updates... May 02 2023 03:49:44 server2 maldet(2077765): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver May 02 2023 03:49:44 server2 maldet(2077765): {update} hashing install files and checking against server... May 02 2023 03:49:44 server2 maldet(2077765): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash May 02 2023 03:49:44 server2 maldet(2077765): {update} latest version already installed. May 02 2023 03:49:44 server2 maldet(2077898): {sigup} performing signature update check... May 02 2023 03:49:44 server2 maldet(2077898): {sigup} local signature set is version 202304281928720 May 02 2023 03:49:44 server2 maldet(2077898): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver May 02 2023 03:49:44 server2 maldet(2077898): {sigup} latest signature set already installed May 02 2023 03:49:44 server2 maldet(2078009): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress May 02 2023 03:49:44 server2 maldet(2078009): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) May 02 2023 03:49:44 server2 maldet(2078009): {scan} building file list for of new/modified files from last 1 days, this might take awhile... May 02 2023 03:49:44 server2 maldet(2078009): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 May 02 2023 03:49:44 server2 maldet(2078009): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 May 02 2023 03:50:01 server2 maldet(2078009): {scan} file list completed in 17s, found 6068 files... May 02 2023 03:50:01 server2 maldet(2078009): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... May 02 2023 03:50:01 server2 maldet(2078009): {scan} scan of (6068 files) in progress... May 02 2023 03:56:24 server2 maldet(2078009): {scan} scan completed on : files 6068, malware hits 0, cleaned hits 0, time 400s May 02 2023 03:56:24 server2 maldet(2078009): {scan} scan report saved, to view run: maldet --report 230502-0349.2078009 May 03 2023 03:11:55 server2 maldet(2285622): {update} checking for available updates... May 03 2023 03:11:55 server2 maldet(2285622): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver May 03 2023 03:11:55 server2 maldet(2285622): {update} hashing install files and checking against server... May 03 2023 03:11:55 server2 maldet(2285622): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash May 03 2023 03:11:55 server2 maldet(2285622): {update} latest version already installed. May 03 2023 03:11:55 server2 maldet(2285755): {sigup} performing signature update check... May 03 2023 03:11:55 server2 maldet(2285755): {sigup} local signature set is version 202304281928720 May 03 2023 03:11:55 server2 maldet(2285755): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver May 03 2023 03:11:55 server2 maldet(2285755): {sigup} latest signature set already installed May 03 2023 03:11:55 server2 maldet(2285866): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress May 03 2023 03:11:55 server2 maldet(2285866): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) May 03 2023 03:11:55 server2 maldet(2285866): {scan} building file list for of new/modified files from last 1 days, this might take awhile... May 03 2023 03:11:55 server2 maldet(2285866): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 May 03 2023 03:11:56 server2 maldet(2285866): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 May 03 2023 03:12:10 server2 maldet(2285866): {scan} file list completed in 15s, found 942 files... May 03 2023 03:12:10 server2 maldet(2285866): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... May 03 2023 03:12:10 server2 maldet(2285866): {scan} scan of (942 files) in progress... May 03 2023 03:13:08 server2 maldet(2285866): {scan} scan completed on : files 942, malware hits 0, cleaned hits 0, time 73s May 03 2023 03:13:08 server2 maldet(2285866): {scan} scan report saved, to view run: maldet --report 230503-0311.2285866 May 04 2023 03:20:25 server2 maldet(2500881): {update} checking for available updates... May 04 2023 03:20:25 server2 maldet(2500881): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver May 04 2023 03:20:25 server2 maldet(2500881): {update} hashing install files and checking against server... May 04 2023 03:20:25 server2 maldet(2500881): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash May 04 2023 03:20:25 server2 maldet(2500881): {update} latest version already installed. May 04 2023 03:20:25 server2 maldet(2501014): {sigup} performing signature update check... May 04 2023 03:20:25 server2 maldet(2501014): {sigup} local signature set is version 202304281928720 May 04 2023 03:20:25 server2 maldet(2501014): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver May 04 2023 03:20:25 server2 maldet(2501014): {sigup} new signature set 20230504491938 available May 04 2023 03:20:25 server2 maldet(2501014): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz May 04 2023 03:20:25 server2 maldet(2501014): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz May 04 2023 03:20:25 server2 maldet(2501014): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 May 04 2023 03:20:25 server2 maldet(2501014): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz May 04 2023 03:20:26 server2 maldet(2501014): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz May 04 2023 03:20:26 server2 maldet(2501014): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 May 04 2023 03:20:26 server2 maldet(2501014): {sigup} verified md5sum of maldet-sigpack.tgz May 04 2023 03:20:26 server2 maldet(2501014): {sigup} unpacked and installed maldet-sigpack.tgz May 04 2023 03:20:26 server2 maldet(2501014): {sigup} verified md5sum of maldet-clean.tgz May 04 2023 03:20:26 server2 maldet(2501014): {sigup} unpacked and installed maldet-clean.tgz May 04 2023 03:20:26 server2 maldet(2501014): {sigup} signature set update completed May 04 2023 03:20:26 server2 maldet(2501014): {sigup} 17637 signatures (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) May 04 2023 03:20:26 server2 maldet(2501243): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress May 04 2023 03:20:26 server2 maldet(2501243): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) May 04 2023 03:20:26 server2 maldet(2501243): {scan} building file list for of new/modified files from last 1 days, this might take awhile... May 04 2023 03:20:26 server2 maldet(2501243): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 May 04 2023 03:20:26 server2 maldet(2501243): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 May 04 2023 03:20:48 server2 maldet(2501243): {scan} file list completed in 22s, found 2990 files... May 04 2023 03:20:48 server2 maldet(2501243): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... May 04 2023 03:20:49 server2 maldet(2501243): {scan} scan of (2990 files) in progress... May 04 2023 03:24:31 server2 maldet(2501243): {scan} scan completed on : files 2990, malware hits 0, cleaned hits 0, time 245s May 04 2023 03:24:31 server2 maldet(2501243): {scan} scan report saved, to view run: maldet --report 230504-0320.2501243 May 05 2023 03:52:50 server2 maldet(2725775): {update} checking for available updates... May 05 2023 03:52:50 server2 maldet(2725775): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver May 05 2023 03:52:50 server2 maldet(2725775): {update} hashing install files and checking against server... May 05 2023 03:52:50 server2 maldet(2725775): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash May 05 2023 03:52:50 server2 maldet(2725775): {update} latest version already installed. May 05 2023 03:52:50 server2 maldet(2725908): {sigup} performing signature update check... May 05 2023 03:52:50 server2 maldet(2725908): {sigup} local signature set is version 20230504491938 May 05 2023 03:52:50 server2 maldet(2725908): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver May 05 2023 03:52:50 server2 maldet(2725908): {sigup} latest signature set already installed May 05 2023 03:52:50 server2 maldet(2726019): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress May 05 2023 03:52:50 server2 maldet(2726019): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) May 05 2023 03:52:50 server2 maldet(2726019): {scan} building file list for of new/modified files from last 1 days, this might take awhile... May 05 2023 03:52:50 server2 maldet(2726019): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 May 05 2023 03:52:50 server2 maldet(2726019): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 May 05 2023 03:53:07 server2 maldet(2726019): {scan} file list completed in 17s, found 1810 files... May 05 2023 03:53:07 server2 maldet(2726019): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... May 05 2023 03:53:07 server2 maldet(2726019): {scan} scan of (1810 files) in progress... May 05 2023 03:54:54 server2 maldet(2726019): {scan} scan completed on : files 1810, malware hits 0, cleaned hits 0, time 124s May 05 2023 03:54:54 server2 maldet(2726019): {scan} scan report saved, to view run: maldet --report 230505-0352.2726019 May 06 2023 03:18:56 server2 maldet(2938506): {update} checking for available updates... May 06 2023 03:18:56 server2 maldet(2938506): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver May 06 2023 03:18:56 server2 maldet(2938506): {update} hashing install files and checking against server... May 06 2023 03:18:56 server2 maldet(2938506): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash May 06 2023 03:18:56 server2 maldet(2938506): {update} latest version already installed. May 06 2023 03:18:56 server2 maldet(2938639): {sigup} performing signature update check... May 06 2023 03:18:56 server2 maldet(2938639): {sigup} local signature set is version 20230504491938 May 06 2023 03:18:56 server2 maldet(2938639): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver May 06 2023 03:18:56 server2 maldet(2938639): {sigup} latest signature set already installed May 06 2023 03:18:56 server2 maldet(2938750): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress May 06 2023 03:18:56 server2 maldet(2938750): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) May 06 2023 03:18:56 server2 maldet(2938750): {scan} building file list for of new/modified files from last 1 days, this might take awhile... May 06 2023 03:18:56 server2 maldet(2938750): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 May 06 2023 03:18:56 server2 maldet(2938750): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 May 06 2023 03:19:12 server2 maldet(2938750): {scan} file list completed in 16s, found 1130 files... May 06 2023 03:19:12 server2 maldet(2938750): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... May 06 2023 03:19:12 server2 maldet(2938750): {scan} scan of (1130 files) in progress... May 06 2023 03:20:22 server2 maldet(2938750): {scan} scan completed on : files 1130, malware hits 0, cleaned hits 0, time 86s May 06 2023 03:20:22 server2 maldet(2938750): {scan} scan report saved, to view run: maldet --report 230506-0318.2938750 May 07 2023 03:41:54 server2 maldet(3177740): {update} checking for available updates... May 07 2023 03:41:54 server2 maldet(3177740): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver May 07 2023 03:41:54 server2 maldet(3177740): {update} hashing install files and checking against server... May 07 2023 03:41:54 server2 maldet(3177740): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash May 07 2023 03:41:54 server2 maldet(3177740): {update} latest version already installed. May 07 2023 03:41:54 server2 maldet(3177875): {sigup} performing signature update check... May 07 2023 03:41:54 server2 maldet(3177875): {sigup} local signature set is version 20230504491938 May 07 2023 03:41:54 server2 maldet(3177875): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver May 07 2023 03:41:54 server2 maldet(3177875): {sigup} new signature set 202305071183635 available May 07 2023 03:41:54 server2 maldet(3177875): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz May 07 2023 03:41:55 server2 maldet(3177875): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz May 07 2023 03:41:55 server2 maldet(3177875): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 May 07 2023 03:41:55 server2 maldet(3177875): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz May 07 2023 03:41:55 server2 maldet(3177875): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz May 07 2023 03:41:55 server2 maldet(3177875): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 May 07 2023 03:41:55 server2 maldet(3177875): {sigup} verified md5sum of maldet-sigpack.tgz May 07 2023 03:41:55 server2 maldet(3177875): {sigup} unpacked and installed maldet-sigpack.tgz May 07 2023 03:41:55 server2 maldet(3177875): {sigup} verified md5sum of maldet-clean.tgz May 07 2023 03:41:55 server2 maldet(3177875): {sigup} unpacked and installed maldet-clean.tgz May 07 2023 03:41:55 server2 maldet(3177875): {sigup} signature set update completed May 07 2023 03:41:55 server2 maldet(3177875): {sigup} 17637 signatures (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) May 07 2023 03:41:55 server2 maldet(3178104): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress May 07 2023 03:41:56 server2 maldet(3178104): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) May 07 2023 03:41:56 server2 maldet(3178104): {scan} building file list for of new/modified files from last 1 days, this might take awhile... May 07 2023 03:41:56 server2 maldet(3178104): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 May 07 2023 03:41:56 server2 maldet(3178104): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 May 07 2023 03:42:09 server2 maldet(3178104): {scan} file list completed in 12s, found 1126 files... May 07 2023 03:42:09 server2 maldet(3178104): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... May 07 2023 03:42:09 server2 maldet(3178104): {scan} scan of (1126 files) in progress... May 07 2023 03:43:29 server2 maldet(3178104): {scan} scan completed on : files 1126, malware hits 0, cleaned hits 0, time 94s May 07 2023 03:43:29 server2 maldet(3178104): {scan} scan report saved, to view run: maldet --report 230507-0341.3178104 May 08 2023 03:49:48 server2 maldet(3408561): {update} checking for available updates... May 08 2023 03:49:48 server2 maldet(3408561): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver May 08 2023 03:49:48 server2 maldet(3408561): {update} hashing install files and checking against server... May 08 2023 03:49:48 server2 maldet(3408561): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash May 08 2023 03:49:48 server2 maldet(3408561): {update} latest version already installed. May 08 2023 03:49:48 server2 maldet(3408694): {sigup} performing signature update check... May 08 2023 03:49:48 server2 maldet(3408694): {sigup} local signature set is version 202305071183635 May 08 2023 03:49:48 server2 maldet(3408694): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver May 08 2023 03:49:48 server2 maldet(3408694): {sigup} latest signature set already installed May 08 2023 03:49:49 server2 maldet(3408806): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress May 08 2023 03:49:49 server2 maldet(3408806): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) May 08 2023 03:49:49 server2 maldet(3408806): {scan} building file list for of new/modified files from last 1 days, this might take awhile... May 08 2023 03:49:49 server2 maldet(3408806): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 May 08 2023 03:49:49 server2 maldet(3408806): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 May 08 2023 03:50:07 server2 maldet(3408806): {scan} file list completed in 18s, found 1367 files... May 08 2023 03:50:07 server2 maldet(3408806): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... May 08 2023 03:50:07 server2 maldet(3408806): {scan} scan of (1367 files) in progress... May 08 2023 03:51:37 server2 maldet(3408806): {scan} scan completed on : files 1367, malware hits 0, cleaned hits 0, time 108s May 08 2023 03:51:37 server2 maldet(3408806): {scan} scan report saved, to view run: maldet --report 230508-0349.3408806 May 09 2023 03:28:32 server2 maldet(3630590): {update} checking for available updates... May 09 2023 03:28:32 server2 maldet(3630590): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver May 09 2023 03:28:32 server2 maldet(3630590): {update} hashing install files and checking against server... May 09 2023 03:28:33 server2 maldet(3630590): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash May 09 2023 03:28:33 server2 maldet(3630590): {update} latest version already installed. May 09 2023 03:28:33 server2 maldet(3630723): {sigup} performing signature update check... May 09 2023 03:28:33 server2 maldet(3630723): {sigup} local signature set is version 202305071183635 May 09 2023 03:28:33 server2 maldet(3630723): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver May 09 2023 03:28:33 server2 maldet(3630723): {sigup} latest signature set already installed May 09 2023 03:28:33 server2 maldet(3630834): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress May 09 2023 03:28:33 server2 maldet(3630834): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) May 09 2023 03:28:33 server2 maldet(3630834): {scan} building file list for of new/modified files from last 1 days, this might take awhile... May 09 2023 03:28:33 server2 maldet(3630834): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 May 09 2023 03:28:33 server2 maldet(3630834): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 May 09 2023 03:28:48 server2 maldet(3630834): {scan} file list completed in 15s, found 1080 files... May 09 2023 03:28:48 server2 maldet(3630834): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... May 09 2023 03:28:48 server2 maldet(3630834): {scan} scan of (1080 files) in progress... May 09 2023 03:29:59 server2 maldet(3630834): {scan} scan completed on : files 1080, malware hits 0, cleaned hits 0, time 86s May 09 2023 03:29:59 server2 maldet(3630834): {scan} scan report saved, to view run: maldet --report 230509-0328.3630834 May 10 2023 03:26:04 server2 maldet(3858504): {update} checking for available updates... May 10 2023 03:26:04 server2 maldet(3858504): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver May 10 2023 03:26:04 server2 maldet(3858504): {update} hashing install files and checking against server... May 10 2023 03:26:04 server2 maldet(3858504): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash May 10 2023 03:26:04 server2 maldet(3858504): {update} latest version already installed. May 10 2023 03:26:05 server2 maldet(3858637): {sigup} performing signature update check... May 10 2023 03:26:05 server2 maldet(3858637): {sigup} local signature set is version 202305071183635 May 10 2023 03:26:05 server2 maldet(3858637): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver May 10 2023 03:26:05 server2 maldet(3858637): {sigup} new signature set 202305101874994 available May 10 2023 03:26:05 server2 maldet(3858637): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz May 10 2023 03:26:05 server2 maldet(3858637): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz May 10 2023 03:26:05 server2 maldet(3858637): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 May 10 2023 03:26:05 server2 maldet(3858637): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz May 10 2023 03:26:05 server2 maldet(3858637): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz May 10 2023 03:26:05 server2 maldet(3858637): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 May 10 2023 03:26:05 server2 maldet(3858637): {sigup} verified md5sum of maldet-sigpack.tgz May 10 2023 03:26:05 server2 maldet(3858637): {sigup} unpacked and installed maldet-sigpack.tgz May 10 2023 03:26:05 server2 maldet(3858637): {sigup} verified md5sum of maldet-clean.tgz May 10 2023 03:26:05 server2 maldet(3858637): {sigup} unpacked and installed maldet-clean.tgz May 10 2023 03:26:05 server2 maldet(3858637): {sigup} signature set update completed May 10 2023 03:26:05 server2 maldet(3858637): {sigup} 17637 signatures (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) May 10 2023 03:26:05 server2 maldet(3858867): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress May 10 2023 03:26:06 server2 maldet(3858867): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) May 10 2023 03:26:06 server2 maldet(3858867): {scan} building file list for of new/modified files from last 1 days, this might take awhile... May 10 2023 03:26:06 server2 maldet(3858867): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 May 10 2023 03:26:06 server2 maldet(3858867): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 May 10 2023 03:26:21 server2 maldet(3858867): {scan} file list completed in 15s, found 871 files... May 10 2023 03:26:21 server2 maldet(3858867): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... May 10 2023 03:26:21 server2 maldet(3858867): {scan} scan of (871 files) in progress... May 10 2023 03:27:14 server2 maldet(3858867): {scan} scan completed on : files 871, malware hits 0, cleaned hits 0, time 69s May 10 2023 03:27:14 server2 maldet(3858867): {scan} scan report saved, to view run: maldet --report 230510-0326.3858867 May 11 2023 03:49:59 server2 maldet(4079637): {update} checking for available updates... May 11 2023 03:49:59 server2 maldet(4079637): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver May 11 2023 03:49:59 server2 maldet(4079637): {update} hashing install files and checking against server... May 11 2023 03:49:59 server2 maldet(4079637): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash May 11 2023 03:49:59 server2 maldet(4079637): {update} latest version already installed. May 11 2023 03:49:59 server2 maldet(4079770): {sigup} performing signature update check... May 11 2023 03:49:59 server2 maldet(4079770): {sigup} local signature set is version 202305101874994 May 11 2023 03:49:59 server2 maldet(4079770): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver May 11 2023 03:49:59 server2 maldet(4079770): {sigup} latest signature set already installed May 11 2023 03:49:59 server2 maldet(4079881): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress May 11 2023 03:49:59 server2 maldet(4079881): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) May 11 2023 03:49:59 server2 maldet(4079881): {scan} building file list for of new/modified files from last 1 days, this might take awhile... May 11 2023 03:49:59 server2 maldet(4079881): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 May 11 2023 03:49:59 server2 maldet(4079881): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 May 11 2023 03:50:17 server2 maldet(4079881): {scan} file list completed in 17s, found 888 files... May 11 2023 03:50:17 server2 maldet(4079881): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... May 11 2023 03:50:17 server2 maldet(4079881): {scan} scan of (888 files) in progress... May 11 2023 03:51:02 server2 maldet(4079881): {scan} scan completed on : files 888, malware hits 0, cleaned hits 0, time 63s May 11 2023 03:51:02 server2 maldet(4079881): {scan} scan report saved, to view run: maldet --report 230511-0349.4079881 May 12 2023 03:44:18 server2 maldet(112670): {update} checking for available updates... May 12 2023 03:44:19 server2 maldet(112670): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver May 12 2023 03:44:19 server2 maldet(112670): {update} hashing install files and checking against server... May 12 2023 03:44:19 server2 maldet(112670): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash May 12 2023 03:44:19 server2 maldet(112670): {update} latest version already installed. May 12 2023 03:44:19 server2 maldet(112808): {sigup} performing signature update check... May 12 2023 03:44:19 server2 maldet(112808): {sigup} local signature set is version 202305101874994 May 12 2023 03:44:19 server2 maldet(112808): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver May 12 2023 03:44:19 server2 maldet(112808): {sigup} latest signature set already installed May 12 2023 03:44:19 server2 maldet(112919): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress May 12 2023 03:44:19 server2 maldet(112919): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) May 12 2023 03:44:19 server2 maldet(112919): {scan} building file list for of new/modified files from last 1 days, this might take awhile... May 12 2023 03:44:19 server2 maldet(112919): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 May 12 2023 03:44:19 server2 maldet(112919): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 May 12 2023 03:44:34 server2 maldet(112919): {scan} file list completed in 15s, found 938 files... May 12 2023 03:44:34 server2 maldet(112919): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... May 12 2023 03:44:34 server2 maldet(112919): {scan} scan of (938 files) in progress... May 12 2023 03:45:31 server2 maldet(112919): {scan} scan completed on : files 938, malware hits 0, cleaned hits 0, time 72s May 12 2023 03:45:31 server2 maldet(112919): {scan} scan report saved, to view run: maldet --report 230512-0344.112919 May 13 2023 03:22:44 server2 maldet(324078): {update} checking for available updates... May 13 2023 03:22:44 server2 maldet(324078): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver May 13 2023 03:22:44 server2 maldet(324078): {update} hashing install files and checking against server... May 13 2023 03:22:44 server2 maldet(324078): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash May 13 2023 03:22:44 server2 maldet(324078): {update} latest version already installed. May 13 2023 03:22:44 server2 maldet(324212): {sigup} performing signature update check... May 13 2023 03:22:44 server2 maldet(324212): {sigup} local signature set is version 202305101874994 May 13 2023 03:22:44 server2 maldet(324212): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver May 13 2023 03:22:44 server2 maldet(324212): {sigup} new signature set 20230513510879 available May 13 2023 03:22:44 server2 maldet(324212): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz May 13 2023 03:22:44 server2 maldet(324212): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz May 13 2023 03:22:44 server2 maldet(324212): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 May 13 2023 03:22:44 server2 maldet(324212): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz May 13 2023 03:22:44 server2 maldet(324212): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz May 13 2023 03:22:44 server2 maldet(324212): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 May 13 2023 03:22:44 server2 maldet(324212): {sigup} verified md5sum of maldet-sigpack.tgz May 13 2023 03:22:44 server2 maldet(324212): {sigup} unpacked and installed maldet-sigpack.tgz May 13 2023 03:22:44 server2 maldet(324212): {sigup} verified md5sum of maldet-clean.tgz May 13 2023 03:22:45 server2 maldet(324212): {sigup} unpacked and installed maldet-clean.tgz May 13 2023 03:22:45 server2 maldet(324212): {sigup} signature set update completed May 13 2023 03:22:45 server2 maldet(324212): {sigup} 17637 signatures (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) May 13 2023 03:22:45 server2 maldet(324440): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress May 13 2023 03:22:45 server2 maldet(324440): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) May 13 2023 03:22:45 server2 maldet(324440): {scan} building file list for of new/modified files from last 1 days, this might take awhile... May 13 2023 03:22:45 server2 maldet(324440): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 May 13 2023 03:22:45 server2 maldet(324440): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 May 13 2023 03:22:59 server2 maldet(324440): {scan} file list completed in 14s, found 1524 files... May 13 2023 03:22:59 server2 maldet(324440): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... May 13 2023 03:22:59 server2 maldet(324440): {scan} scan of (1524 files) in progress... May 13 2023 03:24:43 server2 maldet(324440): {scan} scan completed on : files 1524, malware hits 0, cleaned hits 0, time 118s May 13 2023 03:24:43 server2 maldet(324440): {scan} scan report saved, to view run: maldet --report 230513-0322.324440 May 14 2023 03:20:02 server2 maldet(547993): {update} checking for available updates... May 14 2023 03:20:09 server2 maldet(547993): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver May 14 2023 03:20:09 server2 maldet(547993): {update} hashing install files and checking against server... May 14 2023 03:20:11 server2 maldet(547993): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash May 14 2023 03:20:11 server2 maldet(547993): {update} latest version already installed. May 14 2023 03:20:11 server2 maldet(548294): {sigup} performing signature update check... May 14 2023 03:20:11 server2 maldet(548294): {sigup} local signature set is version 20230513510879 May 14 2023 03:20:11 server2 maldet(548294): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver May 14 2023 03:20:11 server2 maldet(548294): {sigup} latest signature set already installed May 14 2023 03:20:11 server2 maldet(548406): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress May 14 2023 03:20:11 server2 maldet(548406): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) May 14 2023 03:20:11 server2 maldet(548406): {scan} building file list for of new/modified files from last 1 days, this might take awhile... May 14 2023 03:20:11 server2 maldet(548406): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 May 14 2023 03:20:11 server2 maldet(548406): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 May 14 2023 03:20:28 server2 maldet(548406): {scan} file list completed in 17s, found 1343 files... May 14 2023 03:20:28 server2 maldet(548406): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... May 14 2023 03:20:28 server2 maldet(548406): {scan} scan of (1343 files) in progress... May 14 2023 03:21:58 server2 maldet(548406): {scan} scan completed on : files 1343, malware hits 0, cleaned hits 0, time 107s May 14 2023 03:21:58 server2 maldet(548406): {scan} scan report saved, to view run: maldet --report 230514-0320.548406 May 15 2023 03:44:13 server2 maldet(819303): {update} checking for available updates... May 15 2023 03:44:13 server2 maldet(819303): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver May 15 2023 03:44:13 server2 maldet(819303): {update} hashing install files and checking against server... May 15 2023 03:44:13 server2 maldet(819303): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash May 15 2023 03:44:13 server2 maldet(819303): {update} latest version already installed. May 15 2023 03:44:13 server2 maldet(819436): {sigup} performing signature update check... May 15 2023 03:44:13 server2 maldet(819436): {sigup} local signature set is version 20230513510879 May 15 2023 03:44:13 server2 maldet(819436): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver May 15 2023 03:44:13 server2 maldet(819436): {sigup} latest signature set already installed May 15 2023 03:44:14 server2 maldet(819547): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress May 15 2023 03:44:14 server2 maldet(819547): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) May 15 2023 03:44:14 server2 maldet(819547): {scan} building file list for of new/modified files from last 1 days, this might take awhile... May 15 2023 03:44:14 server2 maldet(819547): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 May 15 2023 03:44:14 server2 maldet(819547): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 May 15 2023 03:44:28 server2 maldet(819547): {scan} file list completed in 14s, found 810 files... May 15 2023 03:44:28 server2 maldet(819547): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... May 15 2023 03:44:28 server2 maldet(819547): {scan} scan of (810 files) in progress... May 15 2023 03:45:19 server2 maldet(819547): {scan} scan completed on : files 810, malware hits 0, cleaned hits 0, time 65s May 15 2023 03:45:19 server2 maldet(819547): {scan} scan report saved, to view run: maldet --report 230515-0344.819547 May 16 2023 03:47:26 server2 maldet(1113583): {update} checking for available updates... May 16 2023 03:47:26 server2 maldet(1113583): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver May 16 2023 03:47:26 server2 maldet(1113583): {update} hashing install files and checking against server... May 16 2023 03:47:26 server2 maldet(1113583): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash May 16 2023 03:47:26 server2 maldet(1113583): {update} latest version already installed. May 16 2023 03:47:26 server2 maldet(1113720): {sigup} performing signature update check... May 16 2023 03:47:26 server2 maldet(1113720): {sigup} local signature set is version 20230513510879 May 16 2023 03:47:26 server2 maldet(1113720): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver May 16 2023 03:47:26 server2 maldet(1113720): {sigup} new signature set 202305161200869 available May 16 2023 03:47:26 server2 maldet(1113720): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz May 16 2023 03:47:26 server2 maldet(1113720): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz May 16 2023 03:47:27 server2 maldet(1113720): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 May 16 2023 03:47:27 server2 maldet(1113720): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz May 16 2023 03:47:27 server2 maldet(1113720): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz May 16 2023 03:47:27 server2 maldet(1113720): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 May 16 2023 03:47:27 server2 maldet(1113720): {sigup} verified md5sum of maldet-sigpack.tgz May 16 2023 03:47:27 server2 maldet(1113720): {sigup} unpacked and installed maldet-sigpack.tgz May 16 2023 03:47:27 server2 maldet(1113720): {sigup} verified md5sum of maldet-clean.tgz May 16 2023 03:47:27 server2 maldet(1113720): {sigup} unpacked and installed maldet-clean.tgz May 16 2023 03:47:27 server2 maldet(1113720): {sigup} signature set update completed May 16 2023 03:47:27 server2 maldet(1113720): {sigup} 17637 signatures (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) May 16 2023 03:47:27 server2 maldet(1113948): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress May 16 2023 03:47:27 server2 maldet(1113948): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) May 16 2023 03:47:27 server2 maldet(1113948): {scan} building file list for of new/modified files from last 1 days, this might take awhile... May 16 2023 03:47:27 server2 maldet(1113948): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 May 16 2023 03:47:27 server2 maldet(1113948): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 May 16 2023 03:47:43 server2 maldet(1113948): {scan} file list completed in 16s, found 1134 files... May 16 2023 03:47:43 server2 maldet(1113948): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... May 16 2023 03:47:43 server2 maldet(1113948): {scan} scan of (1134 files) in progress... May 16 2023 03:48:59 server2 maldet(1113948): {scan} scan completed on : files 1134, malware hits 0, cleaned hits 0, time 92s May 16 2023 03:48:59 server2 maldet(1113948): {scan} scan report saved, to view run: maldet --report 230516-0347.1113948 May 17 2023 03:30:48 server2 maldet(1343677): {update} checking for available updates... May 17 2023 03:30:48 server2 maldet(1343677): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver May 17 2023 03:30:48 server2 maldet(1343677): {update} hashing install files and checking against server... May 17 2023 03:30:48 server2 maldet(1343677): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash May 17 2023 03:30:48 server2 maldet(1343677): {update} latest version already installed. May 17 2023 03:30:48 server2 maldet(1343810): {sigup} performing signature update check... May 17 2023 03:30:48 server2 maldet(1343810): {sigup} local signature set is version 202305161200869 May 17 2023 03:30:48 server2 maldet(1343810): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver May 17 2023 03:30:48 server2 maldet(1343810): {sigup} latest signature set already installed May 17 2023 03:30:48 server2 maldet(1343921): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress May 17 2023 03:30:48 server2 maldet(1343921): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) May 17 2023 03:30:48 server2 maldet(1343921): {scan} building file list for of new/modified files from last 1 days, this might take awhile... May 17 2023 03:30:48 server2 maldet(1343921): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 May 17 2023 03:30:48 server2 maldet(1343921): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 May 17 2023 03:31:03 server2 maldet(1343921): {scan} file list completed in 15s, found 17446 files... May 17 2023 03:31:03 server2 maldet(1343921): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... May 17 2023 03:31:03 server2 maldet(1343921): {scan} scan of (17446 files) in progress... May 17 2023 03:37:56 server2 maldet(1343921): {scan} scan completed on : files 17446, malware hits 0, cleaned hits 0, time 428s May 17 2023 03:37:56 server2 maldet(1343921): {scan} scan report saved, to view run: maldet --report 230517-0330.1343921 May 18 2023 03:41:45 server2 maldet(1581725): {update} checking for available updates... May 18 2023 03:41:45 server2 maldet(1581725): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver May 18 2023 03:41:45 server2 maldet(1581725): {update} hashing install files and checking against server... May 18 2023 03:41:45 server2 maldet(1581725): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash May 18 2023 03:41:45 server2 maldet(1581725): {update} latest version already installed. May 18 2023 03:41:45 server2 maldet(1581858): {sigup} performing signature update check... May 18 2023 03:41:45 server2 maldet(1581858): {sigup} local signature set is version 202305161200869 May 18 2023 03:41:45 server2 maldet(1581858): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver May 18 2023 03:41:45 server2 maldet(1581858): {sigup} latest signature set already installed May 18 2023 03:41:45 server2 maldet(1581969): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress May 18 2023 03:41:45 server2 maldet(1581969): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) May 18 2023 03:41:45 server2 maldet(1581969): {scan} building file list for of new/modified files from last 1 days, this might take awhile... May 18 2023 03:41:46 server2 maldet(1581969): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 May 18 2023 03:41:46 server2 maldet(1581969): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 May 18 2023 03:42:00 server2 maldet(1581969): {scan} file list completed in 14s, found 2010 files... May 18 2023 03:42:00 server2 maldet(1581969): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... May 18 2023 03:42:00 server2 maldet(1581969): {scan} scan of (2010 files) in progress... May 18 2023 03:44:04 server2 maldet(1581969): {scan} scan completed on : files 2010, malware hits 0, cleaned hits 0, time 139s May 18 2023 03:44:04 server2 maldet(1581969): {scan} scan report saved, to view run: maldet --report 230518-0341.1581969 May 19 2023 03:37:01 server2 maldet(1808453): {update} checking for available updates... May 19 2023 03:37:01 server2 maldet(1808453): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver May 19 2023 03:37:01 server2 maldet(1808453): {update} hashing install files and checking against server... May 19 2023 03:37:01 server2 maldet(1808453): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash May 19 2023 03:37:01 server2 maldet(1808453): {update} latest version already installed. May 19 2023 03:37:02 server2 maldet(1808586): {sigup} performing signature update check... May 19 2023 03:37:02 server2 maldet(1808586): {sigup} local signature set is version 202305161200869 May 19 2023 03:37:02 server2 maldet(1808586): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver May 19 2023 03:37:02 server2 maldet(1808586): {sigup} new signature set 20230519491100 available May 19 2023 03:37:02 server2 maldet(1808586): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz May 19 2023 03:37:02 server2 maldet(1808586): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz May 19 2023 03:37:02 server2 maldet(1808586): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 May 19 2023 03:37:02 server2 maldet(1808586): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz May 19 2023 03:37:02 server2 maldet(1808586): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz May 19 2023 03:37:02 server2 maldet(1808586): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 May 19 2023 03:37:02 server2 maldet(1808586): {sigup} verified md5sum of maldet-sigpack.tgz May 19 2023 03:37:02 server2 maldet(1808586): {sigup} unpacked and installed maldet-sigpack.tgz May 19 2023 03:37:02 server2 maldet(1808586): {sigup} verified md5sum of maldet-clean.tgz May 19 2023 03:37:02 server2 maldet(1808586): {sigup} unpacked and installed maldet-clean.tgz May 19 2023 03:37:02 server2 maldet(1808586): {sigup} signature set update completed May 19 2023 03:37:02 server2 maldet(1808586): {sigup} 17637 signatures (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) May 19 2023 03:37:02 server2 maldet(1808833): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress May 19 2023 03:37:03 server2 maldet(1808833): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) May 19 2023 03:37:03 server2 maldet(1808833): {scan} building file list for of new/modified files from last 1 days, this might take awhile... May 19 2023 03:37:03 server2 maldet(1808833): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 May 19 2023 03:37:03 server2 maldet(1808833): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 May 19 2023 03:37:22 server2 maldet(1808833): {scan} file list completed in 19s, found 1289 files... May 19 2023 03:37:22 server2 maldet(1808833): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... May 19 2023 03:37:22 server2 maldet(1808833): {scan} scan of (1289 files) in progress... May 19 2023 03:38:37 server2 maldet(1808833): {scan} scan completed on : files 1289, malware hits 0, cleaned hits 0, time 95s May 19 2023 03:38:37 server2 maldet(1808833): {scan} scan report saved, to view run: maldet --report 230519-0337.1808833 May 20 2023 03:52:36 server2 maldet(2088081): {update} checking for available updates... May 20 2023 03:52:36 server2 maldet(2088081): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver May 20 2023 03:52:36 server2 maldet(2088081): {update} hashing install files and checking against server... May 20 2023 03:52:36 server2 maldet(2088081): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash May 20 2023 03:52:36 server2 maldet(2088081): {update} latest version already installed. May 20 2023 03:52:36 server2 maldet(2088214): {sigup} performing signature update check... May 20 2023 03:52:36 server2 maldet(2088214): {sigup} local signature set is version 20230519491100 May 20 2023 03:52:36 server2 maldet(2088214): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver May 20 2023 03:52:36 server2 maldet(2088214): {sigup} latest signature set already installed May 20 2023 03:52:36 server2 maldet(2088325): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress May 20 2023 03:52:36 server2 maldet(2088325): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) May 20 2023 03:52:36 server2 maldet(2088325): {scan} building file list for of new/modified files from last 1 days, this might take awhile... May 20 2023 03:52:36 server2 maldet(2088325): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 May 20 2023 03:52:36 server2 maldet(2088325): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 May 20 2023 03:52:56 server2 maldet(2088325): {scan} file list completed in 20s, found 1047 files... May 20 2023 03:52:56 server2 maldet(2088325): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... May 20 2023 03:52:56 server2 maldet(2088325): {scan} scan of (1047 files) in progress... May 20 2023 03:54:06 server2 maldet(2088325): {scan} scan completed on : files 1047, malware hits 0, cleaned hits 0, time 90s May 20 2023 03:54:06 server2 maldet(2088325): {scan} scan report saved, to view run: maldet --report 230520-0352.2088325 May 21 2023 03:50:22 server2 maldet(2339656): {update} checking for available updates... May 21 2023 03:50:22 server2 maldet(2339656): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver May 21 2023 03:50:22 server2 maldet(2339656): {update} hashing install files and checking against server... May 21 2023 03:50:22 server2 maldet(2339656): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash May 21 2023 03:50:22 server2 maldet(2339656): {update} latest version already installed. May 21 2023 03:50:22 server2 maldet(2339789): {sigup} performing signature update check... May 21 2023 03:50:22 server2 maldet(2339789): {sigup} local signature set is version 20230519491100 May 21 2023 03:50:22 server2 maldet(2339789): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver May 21 2023 03:50:22 server2 maldet(2339789): {sigup} latest signature set already installed May 21 2023 03:50:22 server2 maldet(2339900): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress May 21 2023 03:50:23 server2 maldet(2339900): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) May 21 2023 03:50:23 server2 maldet(2339900): {scan} building file list for of new/modified files from last 1 days, this might take awhile... May 21 2023 03:50:23 server2 maldet(2339900): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 May 21 2023 03:50:23 server2 maldet(2339900): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 May 21 2023 03:50:51 server2 maldet(2339900): {scan} file list completed in 28s, found 1498 files... May 21 2023 03:50:51 server2 maldet(2339900): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... May 21 2023 03:50:51 server2 maldet(2339900): {scan} scan of (1498 files) in progress... May 21 2023 03:53:09 server2 maldet(2339900): {scan} scan completed on : files 1498, malware hits 0, cleaned hits 0, time 167s May 21 2023 03:53:09 server2 maldet(2339900): {scan} scan report saved, to view run: maldet --report 230521-0350.2339900 May 22 2023 03:13:53 server2 maldet(2580637): {update} checking for available updates... May 22 2023 03:13:53 server2 maldet(2580637): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver May 22 2023 03:13:53 server2 maldet(2580637): {update} hashing install files and checking against server... May 22 2023 03:13:53 server2 maldet(2580637): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash May 22 2023 03:13:53 server2 maldet(2580637): {update} latest version already installed. May 22 2023 03:13:53 server2 maldet(2580770): {sigup} performing signature update check... May 22 2023 03:13:53 server2 maldet(2580770): {sigup} local signature set is version 20230519491100 May 22 2023 03:13:53 server2 maldet(2580770): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver May 22 2023 03:13:53 server2 maldet(2580770): {sigup} new signature set 202305221181514 available May 22 2023 03:13:53 server2 maldet(2580770): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz May 22 2023 03:13:53 server2 maldet(2580770): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz May 22 2023 03:13:53 server2 maldet(2580770): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 May 22 2023 03:13:53 server2 maldet(2580770): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz May 22 2023 03:13:53 server2 maldet(2580770): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz May 22 2023 03:13:53 server2 maldet(2580770): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 May 22 2023 03:13:54 server2 maldet(2580770): {sigup} verified md5sum of maldet-sigpack.tgz May 22 2023 03:13:54 server2 maldet(2580770): {sigup} unpacked and installed maldet-sigpack.tgz May 22 2023 03:13:54 server2 maldet(2580770): {sigup} verified md5sum of maldet-clean.tgz May 22 2023 03:13:54 server2 maldet(2580770): {sigup} unpacked and installed maldet-clean.tgz May 22 2023 03:13:54 server2 maldet(2580770): {sigup} signature set update completed May 22 2023 03:13:54 server2 maldet(2580770): {sigup} 17637 signatures (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) May 22 2023 03:13:54 server2 maldet(2580998): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress May 22 2023 03:13:54 server2 maldet(2580998): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) May 22 2023 03:13:54 server2 maldet(2580998): {scan} building file list for of new/modified files from last 1 days, this might take awhile... May 22 2023 03:13:54 server2 maldet(2580998): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 May 22 2023 03:13:54 server2 maldet(2580998): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 May 22 2023 03:14:17 server2 maldet(2580998): {scan} file list completed in 23s, found 1495 files... May 22 2023 03:14:17 server2 maldet(2580998): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... May 22 2023 03:14:17 server2 maldet(2580998): {scan} scan of (1495 files) in progress... May 22 2023 03:16:03 server2 maldet(2580998): {scan} scan completed on : files 1495, malware hits 0, cleaned hits 0, time 129s May 22 2023 03:16:03 server2 maldet(2580998): {scan} scan report saved, to view run: maldet --report 230522-0313.2580998 May 23 2023 03:48:23 server2 maldet(2819568): {update} checking for available updates... May 23 2023 03:48:23 server2 maldet(2819568): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver May 23 2023 03:48:23 server2 maldet(2819568): {update} hashing install files and checking against server... May 23 2023 03:48:23 server2 maldet(2819568): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash May 23 2023 03:48:23 server2 maldet(2819568): {update} latest version already installed. May 23 2023 03:48:23 server2 maldet(2819701): {sigup} performing signature update check... May 23 2023 03:48:23 server2 maldet(2819701): {sigup} local signature set is version 202305221181514 May 23 2023 03:48:23 server2 maldet(2819701): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver May 23 2023 03:48:23 server2 maldet(2819701): {sigup} latest signature set already installed May 23 2023 03:48:24 server2 maldet(2819812): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress May 23 2023 03:48:24 server2 maldet(2819812): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) May 23 2023 03:48:24 server2 maldet(2819812): {scan} building file list for of new/modified files from last 1 days, this might take awhile... May 23 2023 03:48:24 server2 maldet(2819812): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 May 23 2023 03:48:24 server2 maldet(2819812): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 May 23 2023 03:48:42 server2 maldet(2819812): {scan} file list completed in 18s, found 1427 files... May 23 2023 03:48:42 server2 maldet(2819812): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... May 23 2023 03:48:42 server2 maldet(2819812): {scan} scan of (1427 files) in progress... May 23 2023 03:50:16 server2 maldet(2819812): {scan} scan completed on : files 1427, malware hits 0, cleaned hits 0, time 112s May 23 2023 03:50:17 server2 maldet(2819812): {scan} scan report saved, to view run: maldet --report 230523-0348.2819812 May 24 2023 03:31:07 server2 maldet(3077967): {update} checking for available updates... May 24 2023 03:31:07 server2 maldet(3077967): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver May 24 2023 03:31:07 server2 maldet(3077967): {update} hashing install files and checking against server... May 24 2023 03:31:07 server2 maldet(3077967): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash May 24 2023 03:31:07 server2 maldet(3077967): {update} latest version already installed. May 24 2023 03:31:08 server2 maldet(3078102): {sigup} performing signature update check... May 24 2023 03:31:08 server2 maldet(3078102): {sigup} local signature set is version 202305221181514 May 24 2023 03:31:08 server2 maldet(3078102): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver May 24 2023 03:31:08 server2 maldet(3078102): {sigup} latest signature set already installed May 24 2023 03:31:08 server2 maldet(3078213): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress May 24 2023 03:31:08 server2 maldet(3078213): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) May 24 2023 03:31:08 server2 maldet(3078213): {scan} building file list for of new/modified files from last 1 days, this might take awhile... May 24 2023 03:31:08 server2 maldet(3078213): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 May 24 2023 03:31:08 server2 maldet(3078213): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 May 24 2023 03:31:28 server2 maldet(3078213): {scan} file list completed in 20s, found 6553 files... May 24 2023 03:31:28 server2 maldet(3078213): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... May 24 2023 03:31:28 server2 maldet(3078213): {scan} scan of (6553 files) in progress... May 24 2023 03:34:49 server2 maldet(3078213): {scan} scan completed on : files 6553, malware hits 0, cleaned hits 0, time 221s May 24 2023 03:34:49 server2 maldet(3078213): {scan} scan report saved, to view run: maldet --report 230524-0331.3078213 May 25 2023 03:48:48 server2 maldet(3345897): {update} checking for available updates... May 25 2023 03:48:48 server2 maldet(3345897): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver May 25 2023 03:48:48 server2 maldet(3345897): {update} hashing install files and checking against server... May 25 2023 03:48:48 server2 maldet(3345897): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash May 25 2023 03:48:48 server2 maldet(3345897): {update} latest version already installed. May 25 2023 03:48:49 server2 maldet(3346032): {sigup} performing signature update check... May 25 2023 03:48:49 server2 maldet(3346032): {sigup} local signature set is version 202305221181514 May 25 2023 03:48:49 server2 maldet(3346032): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver May 25 2023 03:48:49 server2 maldet(3346032): {sigup} new signature set 202305251872464 available May 25 2023 03:48:49 server2 maldet(3346032): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz May 25 2023 03:48:49 server2 maldet(3346032): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz May 25 2023 03:48:49 server2 maldet(3346032): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 May 25 2023 03:48:49 server2 maldet(3346032): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz May 25 2023 03:48:49 server2 maldet(3346032): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz May 25 2023 03:48:49 server2 maldet(3346032): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 May 25 2023 03:48:49 server2 maldet(3346032): {sigup} verified md5sum of maldet-sigpack.tgz May 25 2023 03:48:49 server2 maldet(3346032): {sigup} unpacked and installed maldet-sigpack.tgz May 25 2023 03:48:49 server2 maldet(3346032): {sigup} verified md5sum of maldet-clean.tgz May 25 2023 03:48:49 server2 maldet(3346032): {sigup} unpacked and installed maldet-clean.tgz May 25 2023 03:48:49 server2 maldet(3346032): {sigup} signature set update completed May 25 2023 03:48:49 server2 maldet(3346032): {sigup} 17637 signatures (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) May 25 2023 03:48:49 server2 maldet(3346260): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress May 25 2023 03:48:50 server2 maldet(3346260): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) May 25 2023 03:48:50 server2 maldet(3346260): {scan} building file list for of new/modified files from last 1 days, this might take awhile... May 25 2023 03:48:50 server2 maldet(3346260): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 May 25 2023 03:48:50 server2 maldet(3346260): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 May 25 2023 03:49:12 server2 maldet(3346260): {scan} file list completed in 22s, found 1105 files... May 25 2023 03:49:12 server2 maldet(3346260): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... May 25 2023 03:49:12 server2 maldet(3346260): {scan} scan of (1105 files) in progress... May 25 2023 03:50:30 server2 maldet(3346260): {scan} scan completed on : files 1105, malware hits 0, cleaned hits 0, time 101s May 25 2023 03:50:30 server2 maldet(3346260): {scan} scan report saved, to view run: maldet --report 230525-0348.3346260 May 26 2023 03:43:23 server2 maldet(3627775): {update} checking for available updates... May 26 2023 03:43:23 server2 maldet(3627775): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver May 26 2023 03:43:23 server2 maldet(3627775): {update} hashing install files and checking against server... May 26 2023 03:43:23 server2 maldet(3627775): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash May 26 2023 03:43:23 server2 maldet(3627775): {update} latest version already installed. May 26 2023 03:43:24 server2 maldet(3627909): {sigup} performing signature update check... May 26 2023 03:43:24 server2 maldet(3627909): {sigup} local signature set is version 202305251872464 May 26 2023 03:43:24 server2 maldet(3627909): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver May 26 2023 03:43:24 server2 maldet(3627909): {sigup} latest signature set already installed May 26 2023 03:43:24 server2 maldet(3628020): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress May 26 2023 03:43:24 server2 maldet(3628020): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) May 26 2023 03:43:24 server2 maldet(3628020): {scan} building file list for of new/modified files from last 1 days, this might take awhile... May 26 2023 03:43:24 server2 maldet(3628020): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 May 26 2023 03:43:24 server2 maldet(3628020): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 May 26 2023 03:43:39 server2 maldet(3628020): {scan} file list completed in 15s, found 1113 files... May 26 2023 03:43:39 server2 maldet(3628020): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... May 26 2023 03:43:39 server2 maldet(3628020): {scan} scan of (1113 files) in progress... May 26 2023 03:44:44 server2 maldet(3628020): {scan} scan completed on : files 1113, malware hits 0, cleaned hits 0, time 80s May 26 2023 03:44:44 server2 maldet(3628020): {scan} scan report saved, to view run: maldet --report 230526-0343.3628020 May 27 2023 03:39:22 server2 maldet(3923718): {update} checking for available updates... May 27 2023 03:39:22 server2 maldet(3923718): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver May 27 2023 03:39:22 server2 maldet(3923718): {update} hashing install files and checking against server... May 27 2023 03:39:23 server2 maldet(3923718): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash May 27 2023 03:39:23 server2 maldet(3923718): {update} latest version already installed. May 27 2023 03:39:23 server2 maldet(3923853): {sigup} performing signature update check... May 27 2023 03:39:23 server2 maldet(3923853): {sigup} local signature set is version 202305251872464 May 27 2023 03:39:23 server2 maldet(3923853): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver May 27 2023 03:39:23 server2 maldet(3923853): {sigup} latest signature set already installed May 27 2023 03:39:23 server2 maldet(3923964): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress May 27 2023 03:39:23 server2 maldet(3923964): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) May 27 2023 03:39:23 server2 maldet(3923964): {scan} building file list for of new/modified files from last 1 days, this might take awhile... May 27 2023 03:39:23 server2 maldet(3923964): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 May 27 2023 03:39:23 server2 maldet(3923964): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 May 27 2023 03:39:40 server2 maldet(3923964): {scan} file list completed in 17s, found 1149 files... May 27 2023 03:39:40 server2 maldet(3923964): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... May 27 2023 03:39:40 server2 maldet(3923964): {scan} scan of (1149 files) in progress... May 27 2023 03:40:51 server2 maldet(3923964): {scan} scan completed on : files 1149, malware hits 0, cleaned hits 0, time 87s May 27 2023 03:40:51 server2 maldet(3923964): {scan} scan report saved, to view run: maldet --report 230527-0339.3923964 May 28 2023 03:22:43 server2 maldet(26643): {update} checking for available updates... May 28 2023 03:22:44 server2 maldet(26643): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver May 28 2023 03:22:44 server2 maldet(26643): {update} hashing install files and checking against server... May 28 2023 03:22:44 server2 maldet(26643): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash May 28 2023 03:22:44 server2 maldet(26643): {update} latest version already installed. May 28 2023 03:22:44 server2 maldet(26777): {sigup} performing signature update check... May 28 2023 03:22:44 server2 maldet(26777): {sigup} local signature set is version 202305251872464 May 28 2023 03:22:44 server2 maldet(26777): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver May 28 2023 03:22:44 server2 maldet(26777): {sigup} new signature set 202305282563293 available May 28 2023 03:22:44 server2 maldet(26777): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz May 28 2023 03:22:44 server2 maldet(26777): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz May 28 2023 03:22:44 server2 maldet(26777): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 May 28 2023 03:22:45 server2 maldet(26777): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz May 28 2023 03:22:45 server2 maldet(26777): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz May 28 2023 03:22:45 server2 maldet(26777): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 May 28 2023 03:22:45 server2 maldet(26777): {sigup} verified md5sum of maldet-sigpack.tgz May 28 2023 03:22:45 server2 maldet(26777): {sigup} unpacked and installed maldet-sigpack.tgz May 28 2023 03:22:45 server2 maldet(26777): {sigup} verified md5sum of maldet-clean.tgz May 28 2023 03:22:45 server2 maldet(26777): {sigup} unpacked and installed maldet-clean.tgz May 28 2023 03:22:45 server2 maldet(26777): {sigup} signature set update completed May 28 2023 03:22:45 server2 maldet(26777): {sigup} 17637 signatures (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) May 28 2023 03:22:45 server2 maldet(27006): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress May 28 2023 03:22:45 server2 maldet(27006): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) May 28 2023 03:22:45 server2 maldet(27006): {scan} building file list for of new/modified files from last 1 days, this might take awhile... May 28 2023 03:22:46 server2 maldet(27006): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 May 28 2023 03:22:46 server2 maldet(27006): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 May 28 2023 03:23:01 server2 maldet(27006): {scan} file list completed in 15s, found 793 files... May 28 2023 03:23:01 server2 maldet(27006): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... May 28 2023 03:23:01 server2 maldet(27006): {scan} scan of (793 files) in progress... May 28 2023 03:23:58 server2 maldet(27006): {scan} scan completed on : files 793, malware hits 0, cleaned hits 0, time 73s May 28 2023 03:23:58 server2 maldet(27006): {scan} scan report saved, to view run: maldet --report 230528-0322.27006 May 29 2023 03:39:35 server2 maldet(316606): {update} checking for available updates... May 29 2023 03:39:35 server2 maldet(316606): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver May 29 2023 03:39:35 server2 maldet(316606): {update} hashing install files and checking against server... May 29 2023 03:39:35 server2 maldet(316606): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash May 29 2023 03:39:35 server2 maldet(316606): {update} latest version already installed. May 29 2023 03:39:35 server2 maldet(316739): {sigup} performing signature update check... May 29 2023 03:39:35 server2 maldet(316739): {sigup} local signature set is version 202305282563293 May 29 2023 03:39:35 server2 maldet(316739): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver May 29 2023 03:39:35 server2 maldet(316739): {sigup} latest signature set already installed May 29 2023 03:39:35 server2 maldet(316850): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress May 29 2023 03:39:36 server2 maldet(316850): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) May 29 2023 03:39:36 server2 maldet(316850): {scan} building file list for of new/modified files from last 1 days, this might take awhile... May 29 2023 03:39:36 server2 maldet(316850): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 May 29 2023 03:39:36 server2 maldet(316850): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 May 29 2023 03:39:57 server2 maldet(316850): {scan} file list completed in 21s, found 781 files... May 29 2023 03:39:57 server2 maldet(316850): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... May 29 2023 03:39:57 server2 maldet(316850): {scan} scan of (781 files) in progress... May 29 2023 03:40:52 server2 maldet(316850): {scan} scan completed on : files 781, malware hits 0, cleaned hits 0, time 77s May 29 2023 03:40:52 server2 maldet(316850): {scan} scan report saved, to view run: maldet --report 230529-0339.316850 May 30 2023 03:38:25 server2 maldet(599536): {update} checking for available updates... May 30 2023 03:38:25 server2 maldet(599536): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver May 30 2023 03:38:25 server2 maldet(599536): {update} hashing install files and checking against server... May 30 2023 03:38:25 server2 maldet(599536): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash May 30 2023 03:38:25 server2 maldet(599536): {update} latest version already installed. May 30 2023 03:38:25 server2 maldet(599672): {sigup} performing signature update check... May 30 2023 03:38:25 server2 maldet(599672): {sigup} local signature set is version 202305282563293 May 30 2023 03:38:25 server2 maldet(599672): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver May 30 2023 03:38:26 server2 maldet(599672): {sigup} latest signature set already installed May 30 2023 03:38:26 server2 maldet(599783): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress May 30 2023 03:38:26 server2 maldet(599783): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) May 30 2023 03:38:26 server2 maldet(599783): {scan} building file list for of new/modified files from last 1 days, this might take awhile... May 30 2023 03:38:26 server2 maldet(599783): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 May 30 2023 03:38:26 server2 maldet(599783): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 May 30 2023 03:38:43 server2 maldet(599783): {scan} file list completed in 16s, found 849 files... May 30 2023 03:38:43 server2 maldet(599783): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... May 30 2023 03:38:43 server2 maldet(599783): {scan} scan of (849 files) in progress... May 30 2023 03:39:35 server2 maldet(599783): {scan} scan completed on : files 849, malware hits 0, cleaned hits 0, time 69s May 30 2023 03:39:35 server2 maldet(599783): {scan} scan report saved, to view run: maldet --report 230530-0338.599783 May 31 2023 03:47:06 server2 maldet(864240): {update} checking for available updates... May 31 2023 03:47:22 server2 maldet(864240): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver May 31 2023 03:47:22 server2 maldet(864240): {update} hashing install files and checking against server... May 31 2023 03:47:38 server2 maldet(864240): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash May 31 2023 03:47:38 server2 maldet(864240): {update} latest version already installed. May 31 2023 03:47:38 server2 maldet(864487): {sigup} performing signature update check... May 31 2023 03:47:38 server2 maldet(864487): {sigup} local signature set is version 202305282563293 May 31 2023 03:47:53 server2 maldet(864487): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver May 31 2023 03:47:53 server2 maldet(864487): {sigup} latest signature set already installed May 31 2023 03:47:54 server2 maldet(864601): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress May 31 2023 03:47:54 server2 maldet(864601): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) May 31 2023 03:47:54 server2 maldet(864601): {scan} building file list for of new/modified files from last 1 days, this might take awhile... May 31 2023 03:47:54 server2 maldet(864601): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 May 31 2023 03:47:54 server2 maldet(864601): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 May 31 2023 03:48:14 server2 maldet(864601): {scan} file list completed in 20s, found 928 files... May 31 2023 03:48:14 server2 maldet(864601): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... May 31 2023 03:48:14 server2 maldet(864601): {scan} scan of (928 files) in progress... May 31 2023 03:49:16 server2 maldet(864601): {scan} scan completed on : files 928, malware hits 0, cleaned hits 0, time 82s May 31 2023 03:49:16 server2 maldet(864601): {scan} scan report saved, to view run: maldet --report 230531-0347.864601 Jun 01 2023 03:52:26 server2 maldet(1146206): {update} checking for available updates... Jun 01 2023 03:52:26 server2 maldet(1146206): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Jun 01 2023 03:52:26 server2 maldet(1146206): {update} hashing install files and checking against server... Jun 01 2023 03:52:26 server2 maldet(1146206): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Jun 01 2023 03:52:26 server2 maldet(1146206): {update} latest version already installed. Jun 01 2023 03:52:26 server2 maldet(1146339): {sigup} performing signature update check... Jun 01 2023 03:52:26 server2 maldet(1146339): {sigup} local signature set is version 202305282563293 Jun 01 2023 03:52:26 server2 maldet(1146339): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Jun 01 2023 03:52:26 server2 maldet(1146339): {sigup} new signature set 202306011138897 available Jun 01 2023 03:52:26 server2 maldet(1146339): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Jun 01 2023 03:52:26 server2 maldet(1146339): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Jun 01 2023 03:52:26 server2 maldet(1146339): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Jun 01 2023 03:52:26 server2 maldet(1146339): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Jun 01 2023 03:52:26 server2 maldet(1146339): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Jun 01 2023 03:52:27 server2 maldet(1146339): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Jun 01 2023 03:52:27 server2 maldet(1146339): {sigup} verified md5sum of maldet-sigpack.tgz Jun 01 2023 03:52:27 server2 maldet(1146339): {sigup} unpacked and installed maldet-sigpack.tgz Jun 01 2023 03:52:27 server2 maldet(1146339): {sigup} verified md5sum of maldet-clean.tgz Jun 01 2023 03:52:27 server2 maldet(1146339): {sigup} unpacked and installed maldet-clean.tgz Jun 01 2023 03:52:27 server2 maldet(1146339): {sigup} signature set update completed Jun 01 2023 03:52:27 server2 maldet(1146339): {sigup} 17637 signatures (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Jun 01 2023 03:52:27 server2 maldet(1146569): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Jun 01 2023 03:52:27 server2 maldet(1146569): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Jun 01 2023 03:52:27 server2 maldet(1146569): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Jun 01 2023 03:52:27 server2 maldet(1146569): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Jun 01 2023 03:52:27 server2 maldet(1146569): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Jun 01 2023 03:52:45 server2 maldet(1146569): {scan} file list completed in 18s, found 1001 files... Jun 01 2023 03:52:45 server2 maldet(1146569): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Jun 01 2023 03:52:45 server2 maldet(1146569): {scan} scan of (1001 files) in progress... Jun 01 2023 03:53:52 server2 maldet(1146569): {scan} scan completed on : files 1001, malware hits 0, cleaned hits 0, time 85s Jun 01 2023 03:53:52 server2 maldet(1146569): {scan} scan report saved, to view run: maldet --report 230601-0352.1146569 Jun 02 2023 03:25:02 server2 maldet(1408664): {update} checking for available updates... Jun 02 2023 03:25:02 server2 maldet(1408664): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Jun 02 2023 03:25:02 server2 maldet(1408664): {update} hashing install files and checking against server... Jun 02 2023 03:25:02 server2 maldet(1408664): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Jun 02 2023 03:25:02 server2 maldet(1408664): {update} latest version already installed. Jun 02 2023 03:25:02 server2 maldet(1408799): {sigup} performing signature update check... Jun 02 2023 03:25:02 server2 maldet(1408799): {sigup} local signature set is version 202306011138897 Jun 02 2023 03:25:02 server2 maldet(1408799): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Jun 02 2023 03:25:02 server2 maldet(1408799): {sigup} latest signature set already installed Jun 02 2023 03:25:03 server2 maldet(1408916): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Jun 02 2023 03:25:03 server2 maldet(1408916): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Jun 02 2023 03:25:03 server2 maldet(1408916): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Jun 02 2023 03:25:03 server2 maldet(1408916): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Jun 02 2023 03:25:03 server2 maldet(1408916): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Jun 02 2023 03:25:24 server2 maldet(1408916): {scan} file list completed in 21s, found 1374 files... Jun 02 2023 03:25:24 server2 maldet(1408916): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Jun 02 2023 03:25:24 server2 maldet(1408916): {scan} scan of (1374 files) in progress... Jun 02 2023 03:26:43 server2 maldet(1408916): {scan} scan completed on : files 1374, malware hits 0, cleaned hits 0, time 100s Jun 02 2023 03:26:43 server2 maldet(1408916): {scan} scan report saved, to view run: maldet --report 230602-0325.1408916 Jun 03 2023 03:48:02 server2 maldet(1666258): {update} checking for available updates... Jun 03 2023 03:48:02 server2 maldet(1666258): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Jun 03 2023 03:48:02 server2 maldet(1666258): {update} hashing install files and checking against server... Jun 03 2023 03:48:02 server2 maldet(1666258): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Jun 03 2023 03:48:02 server2 maldet(1666258): {update} latest version already installed. Jun 03 2023 03:48:03 server2 maldet(1666391): {sigup} performing signature update check... Jun 03 2023 03:48:03 server2 maldet(1666391): {sigup} local signature set is version 202306011138897 Jun 03 2023 03:48:03 server2 maldet(1666391): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Jun 03 2023 03:48:03 server2 maldet(1666391): {sigup} latest signature set already installed Jun 03 2023 03:48:03 server2 maldet(1666508): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Jun 03 2023 03:48:03 server2 maldet(1666508): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Jun 03 2023 03:48:03 server2 maldet(1666508): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Jun 03 2023 03:48:03 server2 maldet(1666508): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Jun 03 2023 03:48:03 server2 maldet(1666508): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Jun 03 2023 03:48:20 server2 maldet(1666508): {scan} file list completed in 17s, found 1112 files... Jun 03 2023 03:48:20 server2 maldet(1666508): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Jun 03 2023 03:48:20 server2 maldet(1666508): {scan} scan of (1112 files) in progress... Jun 03 2023 03:49:23 server2 maldet(1666508): {scan} scan completed on : files 1112, malware hits 0, cleaned hits 0, time 80s Jun 03 2023 03:49:23 server2 maldet(1666508): {scan} scan report saved, to view run: maldet --report 230603-0348.1666508 Jun 04 2023 03:13:00 server2 maldet(1905841): {update} checking for available updates... Jun 04 2023 03:13:01 server2 maldet(1905841): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Jun 04 2023 03:13:01 server2 maldet(1905841): {update} hashing install files and checking against server... Jun 04 2023 03:13:01 server2 maldet(1905841): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Jun 04 2023 03:13:01 server2 maldet(1905841): {update} latest version already installed. Jun 04 2023 03:13:01 server2 maldet(1905985): {sigup} performing signature update check... Jun 04 2023 03:13:01 server2 maldet(1905985): {sigup} local signature set is version 202306011138897 Jun 04 2023 03:13:01 server2 maldet(1905985): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Jun 04 2023 03:13:01 server2 maldet(1905985): {sigup} new signature set 202306041830514 available Jun 04 2023 03:13:01 server2 maldet(1905985): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Jun 04 2023 03:13:01 server2 maldet(1905985): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Jun 04 2023 03:13:01 server2 maldet(1905985): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Jun 04 2023 03:13:01 server2 maldet(1905985): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Jun 04 2023 03:13:01 server2 maldet(1905985): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Jun 04 2023 03:13:01 server2 maldet(1905985): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Jun 04 2023 03:13:01 server2 maldet(1905985): {sigup} verified md5sum of maldet-sigpack.tgz Jun 04 2023 03:13:02 server2 maldet(1905985): {sigup} unpacked and installed maldet-sigpack.tgz Jun 04 2023 03:13:02 server2 maldet(1905985): {sigup} verified md5sum of maldet-clean.tgz Jun 04 2023 03:13:02 server2 maldet(1905985): {sigup} unpacked and installed maldet-clean.tgz Jun 04 2023 03:13:02 server2 maldet(1905985): {sigup} signature set update completed Jun 04 2023 03:13:02 server2 maldet(1905985): {sigup} 17637 signatures (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Jun 04 2023 03:13:02 server2 maldet(1906290): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Jun 04 2023 03:13:02 server2 maldet(1906290): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Jun 04 2023 03:13:02 server2 maldet(1906290): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Jun 04 2023 03:13:02 server2 maldet(1906290): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Jun 04 2023 03:13:02 server2 maldet(1906290): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Jun 04 2023 03:13:26 server2 maldet(1906290): {scan} file list completed in 24s, found 975 files... Jun 04 2023 03:13:26 server2 maldet(1906290): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Jun 04 2023 03:13:26 server2 maldet(1906290): {scan} scan of (975 files) in progress... Jun 04 2023 03:14:40 server2 maldet(1906290): {scan} scan completed on : files 975, malware hits 0, cleaned hits 0, time 98s Jun 04 2023 03:14:40 server2 maldet(1906290): {scan} scan report saved, to view run: maldet --report 230604-0313.1906290 Jun 05 2023 03:12:32 server2 maldet(2160654): {update} checking for available updates... Jun 05 2023 03:12:32 server2 maldet(2160654): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Jun 05 2023 03:12:32 server2 maldet(2160654): {update} hashing install files and checking against server... Jun 05 2023 03:12:32 server2 maldet(2160654): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Jun 05 2023 03:12:32 server2 maldet(2160654): {update} latest version already installed. Jun 05 2023 03:12:32 server2 maldet(2160787): {sigup} performing signature update check... Jun 05 2023 03:12:32 server2 maldet(2160787): {sigup} local signature set is version 202306041830514 Jun 05 2023 03:12:32 server2 maldet(2160787): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Jun 05 2023 03:12:32 server2 maldet(2160787): {sigup} latest signature set already installed Jun 05 2023 03:12:32 server2 maldet(2160899): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Jun 05 2023 03:12:33 server2 maldet(2160899): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Jun 05 2023 03:12:33 server2 maldet(2160899): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Jun 05 2023 03:12:33 server2 maldet(2160899): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Jun 05 2023 03:12:33 server2 maldet(2160899): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Jun 05 2023 03:12:50 server2 maldet(2160899): {scan} file list completed in 17s, found 1532 files... Jun 05 2023 03:12:50 server2 maldet(2160899): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Jun 05 2023 03:12:50 server2 maldet(2160899): {scan} scan of (1532 files) in progress... Jun 05 2023 03:14:03 server2 maldet(2160899): {scan} scan completed on : files 1532, malware hits 0, cleaned hits 0, time 91s Jun 05 2023 03:14:03 server2 maldet(2160899): {scan} scan report saved, to view run: maldet --report 230605-0312.2160899 Jun 06 2023 03:11:34 server2 maldet(2419534): {update} checking for available updates... Jun 06 2023 03:11:34 server2 maldet(2419534): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Jun 06 2023 03:11:34 server2 maldet(2419534): {update} hashing install files and checking against server... Jun 06 2023 03:11:34 server2 maldet(2419534): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Jun 06 2023 03:11:34 server2 maldet(2419534): {update} latest version already installed. Jun 06 2023 03:11:34 server2 maldet(2419667): {sigup} performing signature update check... Jun 06 2023 03:11:34 server2 maldet(2419667): {sigup} local signature set is version 202306041830514 Jun 06 2023 03:11:34 server2 maldet(2419667): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Jun 06 2023 03:11:34 server2 maldet(2419667): {sigup} latest signature set already installed Jun 06 2023 03:11:35 server2 maldet(2419778): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Jun 06 2023 03:11:35 server2 maldet(2419778): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Jun 06 2023 03:11:35 server2 maldet(2419778): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Jun 06 2023 03:11:35 server2 maldet(2419778): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Jun 06 2023 03:11:35 server2 maldet(2419778): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Jun 06 2023 03:11:53 server2 maldet(2419778): {scan} file list completed in 18s, found 2292 files... Jun 06 2023 03:11:53 server2 maldet(2419778): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Jun 06 2023 03:11:53 server2 maldet(2419778): {scan} scan of (2292 files) in progress... Jun 06 2023 03:13:12 server2 maldet(2419778): {scan} scan completed on : files 2292, malware hits 0, cleaned hits 0, time 97s Jun 06 2023 03:13:12 server2 maldet(2419778): {scan} scan report saved, to view run: maldet --report 230606-0311.2419778 Jun 07 2023 03:52:35 server2 maldet(2666027): {update} checking for available updates... Jun 07 2023 03:52:36 server2 maldet(2666027): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Jun 07 2023 03:52:36 server2 maldet(2666027): {update} hashing install files and checking against server... Jun 07 2023 03:52:36 server2 maldet(2666027): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Jun 07 2023 03:52:36 server2 maldet(2666027): {update} latest version already installed. Jun 07 2023 03:52:36 server2 maldet(2666162): {sigup} performing signature update check... Jun 07 2023 03:52:36 server2 maldet(2666162): {sigup} local signature set is version 202306041830514 Jun 07 2023 03:52:36 server2 maldet(2666162): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Jun 07 2023 03:52:36 server2 maldet(2666162): {sigup} latest signature set already installed Jun 07 2023 03:52:36 server2 maldet(2666273): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Jun 07 2023 03:52:37 server2 maldet(2666273): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Jun 07 2023 03:52:37 server2 maldet(2666273): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Jun 07 2023 03:52:37 server2 maldet(2666273): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Jun 07 2023 03:52:37 server2 maldet(2666273): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Jun 07 2023 03:52:52 server2 maldet(2666273): {scan} file list completed in 15s, found 1164 files... Jun 07 2023 03:52:52 server2 maldet(2666273): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Jun 07 2023 03:52:52 server2 maldet(2666273): {scan} scan of (1164 files) in progress... Jun 07 2023 03:54:09 server2 maldet(2666273): {scan} scan completed on : files 1164, malware hits 0, cleaned hits 0, time 93s Jun 07 2023 03:54:09 server2 maldet(2666273): {scan} scan report saved, to view run: maldet --report 230607-0352.2666273 Jun 08 2023 03:48:33 server2 maldet(2934743): {update} checking for available updates... Jun 08 2023 03:48:33 server2 maldet(2934743): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Jun 08 2023 03:48:33 server2 maldet(2934743): {update} hashing install files and checking against server... Jun 08 2023 03:48:33 server2 maldet(2934743): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Jun 08 2023 03:48:33 server2 maldet(2934743): {update} latest version already installed. Jun 08 2023 03:48:33 server2 maldet(2934876): {sigup} performing signature update check... Jun 08 2023 03:48:33 server2 maldet(2934876): {sigup} local signature set is version 202306041830514 Jun 08 2023 03:48:33 server2 maldet(2934876): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Jun 08 2023 03:48:33 server2 maldet(2934876): {sigup} latest signature set already installed Jun 08 2023 03:48:33 server2 maldet(2934987): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Jun 08 2023 03:48:34 server2 maldet(2934987): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Jun 08 2023 03:48:34 server2 maldet(2934987): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Jun 08 2023 03:48:34 server2 maldet(2934987): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Jun 08 2023 03:48:34 server2 maldet(2934987): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Jun 08 2023 03:48:49 server2 maldet(2934987): {scan} file list completed in 15s, found 1339 files... Jun 08 2023 03:48:49 server2 maldet(2934987): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Jun 08 2023 03:48:49 server2 maldet(2934987): {scan} scan of (1339 files) in progress... Jun 08 2023 03:50:07 server2 maldet(2934987): {scan} scan completed on : files 1339, malware hits 0, cleaned hits 0, time 94s Jun 08 2023 03:50:07 server2 maldet(2934987): {scan} scan report saved, to view run: maldet --report 230608-0348.2934987 Jun 09 2023 03:47:07 server2 maldet(3201512): {update} checking for available updates... Jun 09 2023 03:47:07 server2 maldet(3201512): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Jun 09 2023 03:47:07 server2 maldet(3201512): {update} hashing install files and checking against server... Jun 09 2023 03:47:07 server2 maldet(3201512): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Jun 09 2023 03:47:07 server2 maldet(3201512): {update} latest version already installed. Jun 09 2023 03:47:07 server2 maldet(3201646): {sigup} performing signature update check... Jun 09 2023 03:47:07 server2 maldet(3201646): {sigup} local signature set is version 202306041830514 Jun 09 2023 03:47:07 server2 maldet(3201646): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Jun 09 2023 03:47:07 server2 maldet(3201646): {sigup} latest signature set already installed Jun 09 2023 03:47:07 server2 maldet(3201757): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Jun 09 2023 03:47:08 server2 maldet(3201757): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Jun 09 2023 03:47:08 server2 maldet(3201757): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Jun 09 2023 03:47:08 server2 maldet(3201757): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Jun 09 2023 03:47:08 server2 maldet(3201757): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Jun 09 2023 03:47:24 server2 maldet(3201757): {scan} file list completed in 16s, found 1016 files... Jun 09 2023 03:47:24 server2 maldet(3201757): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Jun 09 2023 03:47:24 server2 maldet(3201757): {scan} scan of (1016 files) in progress... Jun 09 2023 03:48:26 server2 maldet(3201757): {scan} scan completed on : files 1016, malware hits 0, cleaned hits 0, time 78s Jun 09 2023 03:48:26 server2 maldet(3201757): {scan} scan report saved, to view run: maldet --report 230609-0347.3201757 Jun 10 2023 03:34:26 server2 maldet(3466183): {update} checking for available updates... Jun 10 2023 03:34:26 server2 maldet(3466183): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Jun 10 2023 03:34:26 server2 maldet(3466183): {update} hashing install files and checking against server... Jun 10 2023 03:34:27 server2 maldet(3466183): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Jun 10 2023 03:34:27 server2 maldet(3466183): {update} latest version already installed. Jun 10 2023 03:34:27 server2 maldet(3466316): {sigup} performing signature update check... Jun 10 2023 03:34:27 server2 maldet(3466316): {sigup} local signature set is version 202306041830514 Jun 10 2023 03:34:27 server2 maldet(3466316): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Jun 10 2023 03:34:27 server2 maldet(3466316): {sigup} new signature set 202306101175576 available Jun 10 2023 03:34:27 server2 maldet(3466316): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Jun 10 2023 03:34:27 server2 maldet(3466316): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Jun 10 2023 03:34:27 server2 maldet(3466316): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Jun 10 2023 03:34:27 server2 maldet(3466316): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Jun 10 2023 03:34:27 server2 maldet(3466316): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Jun 10 2023 03:34:27 server2 maldet(3466316): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Jun 10 2023 03:34:27 server2 maldet(3466316): {sigup} verified md5sum of maldet-sigpack.tgz Jun 10 2023 03:34:27 server2 maldet(3466316): {sigup} unpacked and installed maldet-sigpack.tgz Jun 10 2023 03:34:27 server2 maldet(3466316): {sigup} verified md5sum of maldet-clean.tgz Jun 10 2023 03:34:27 server2 maldet(3466316): {sigup} unpacked and installed maldet-clean.tgz Jun 10 2023 03:34:27 server2 maldet(3466316): {sigup} signature set update completed Jun 10 2023 03:34:27 server2 maldet(3466316): {sigup} 17637 signatures (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Jun 10 2023 03:34:27 server2 maldet(3466544): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Jun 10 2023 03:34:28 server2 maldet(3466544): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Jun 10 2023 03:34:28 server2 maldet(3466544): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Jun 10 2023 03:34:28 server2 maldet(3466544): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Jun 10 2023 03:34:28 server2 maldet(3466544): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Jun 10 2023 03:34:45 server2 maldet(3466544): {scan} file list completed in 17s, found 1369 files... Jun 10 2023 03:34:45 server2 maldet(3466544): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Jun 10 2023 03:34:45 server2 maldet(3466544): {scan} scan of (1369 files) in progress... Jun 10 2023 03:36:09 server2 maldet(3466544): {scan} scan completed on : files 1369, malware hits 0, cleaned hits 0, time 102s Jun 10 2023 03:36:09 server2 maldet(3466544): {scan} scan report saved, to view run: maldet --report 230610-0334.3466544 Jun 11 2023 03:28:29 server2 maldet(3738281): {update} checking for available updates... Jun 11 2023 03:28:30 server2 maldet(3738281): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Jun 11 2023 03:28:30 server2 maldet(3738281): {update} hashing install files and checking against server... Jun 11 2023 03:28:30 server2 maldet(3738281): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Jun 11 2023 03:28:30 server2 maldet(3738281): {update} latest version already installed. Jun 11 2023 03:28:30 server2 maldet(3738414): {sigup} performing signature update check... Jun 11 2023 03:28:30 server2 maldet(3738414): {sigup} local signature set is version 202306101175576 Jun 11 2023 03:28:30 server2 maldet(3738414): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Jun 11 2023 03:28:30 server2 maldet(3738414): {sigup} latest signature set already installed Jun 11 2023 03:28:30 server2 maldet(3738525): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Jun 11 2023 03:28:31 server2 maldet(3738525): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Jun 11 2023 03:28:31 server2 maldet(3738525): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Jun 11 2023 03:28:31 server2 maldet(3738525): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Jun 11 2023 03:28:31 server2 maldet(3738525): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Jun 11 2023 03:28:46 server2 maldet(3738525): {scan} file list completed in 15s, found 4277 files... Jun 11 2023 03:28:46 server2 maldet(3738525): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Jun 11 2023 03:28:46 server2 maldet(3738525): {scan} scan of (4277 files) in progress... Jun 11 2023 03:31:18 server2 maldet(3738525): {scan} scan completed on : files 4277, malware hits 0, cleaned hits 0, time 168s Jun 11 2023 03:31:18 server2 maldet(3738525): {scan} scan report saved, to view run: maldet --report 230611-0328.3738525 Jun 12 2023 03:52:10 server2 maldet(4007736): {update} checking for available updates... Jun 12 2023 03:52:10 server2 maldet(4007736): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Jun 12 2023 03:52:10 server2 maldet(4007736): {update} hashing install files and checking against server... Jun 12 2023 03:52:10 server2 maldet(4007736): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Jun 12 2023 03:52:11 server2 maldet(4007736): {update} latest version already installed. Jun 12 2023 03:52:11 server2 maldet(4007869): {sigup} performing signature update check... Jun 12 2023 03:52:11 server2 maldet(4007869): {sigup} local signature set is version 202306101175576 Jun 12 2023 03:52:11 server2 maldet(4007869): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Jun 12 2023 03:52:11 server2 maldet(4007869): {sigup} latest signature set already installed Jun 12 2023 03:52:11 server2 maldet(4007980): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Jun 12 2023 03:52:11 server2 maldet(4007980): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Jun 12 2023 03:52:11 server2 maldet(4007980): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Jun 12 2023 03:52:11 server2 maldet(4007980): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Jun 12 2023 03:52:11 server2 maldet(4007980): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Jun 12 2023 03:52:28 server2 maldet(4007980): {scan} file list completed in 17s, found 1411 files... Jun 12 2023 03:52:28 server2 maldet(4007980): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Jun 12 2023 03:52:28 server2 maldet(4007980): {scan} scan of (1411 files) in progress... Jun 12 2023 03:53:36 server2 maldet(4007980): {scan} scan completed on : files 1411, malware hits 0, cleaned hits 0, time 85s Jun 12 2023 03:53:36 server2 maldet(4007980): {scan} scan report saved, to view run: maldet --report 230612-0352.4007980 Jun 13 2023 03:53:27 server2 maldet(100519): {update} checking for available updates... Jun 13 2023 03:53:27 server2 maldet(100519): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Jun 13 2023 03:53:27 server2 maldet(100519): {update} hashing install files and checking against server... Jun 13 2023 03:53:27 server2 maldet(100519): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Jun 13 2023 03:53:27 server2 maldet(100519): {update} latest version already installed. Jun 13 2023 03:53:28 server2 maldet(100652): {sigup} performing signature update check... Jun 13 2023 03:53:28 server2 maldet(100652): {sigup} local signature set is version 202306101175576 Jun 13 2023 03:53:28 server2 maldet(100652): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Jun 13 2023 03:53:28 server2 maldet(100652): {sigup} new signature set 202306131866083 available Jun 13 2023 03:53:28 server2 maldet(100652): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Jun 13 2023 03:53:28 server2 maldet(100652): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Jun 13 2023 03:53:28 server2 maldet(100652): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Jun 13 2023 03:53:28 server2 maldet(100652): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Jun 13 2023 03:53:28 server2 maldet(100652): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Jun 13 2023 03:53:28 server2 maldet(100652): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Jun 13 2023 03:53:28 server2 maldet(100652): {sigup} verified md5sum of maldet-sigpack.tgz Jun 13 2023 03:53:28 server2 maldet(100652): {sigup} unpacked and installed maldet-sigpack.tgz Jun 13 2023 03:53:28 server2 maldet(100652): {sigup} verified md5sum of maldet-clean.tgz Jun 13 2023 03:53:28 server2 maldet(100652): {sigup} unpacked and installed maldet-clean.tgz Jun 13 2023 03:53:28 server2 maldet(100652): {sigup} signature set update completed Jun 13 2023 03:53:28 server2 maldet(100652): {sigup} 17637 signatures (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Jun 13 2023 03:53:28 server2 maldet(100883): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Jun 13 2023 03:53:29 server2 maldet(100883): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Jun 13 2023 03:53:29 server2 maldet(100883): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Jun 13 2023 03:53:29 server2 maldet(100883): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Jun 13 2023 03:53:29 server2 maldet(100883): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Jun 13 2023 03:53:46 server2 maldet(100883): {scan} file list completed in 17s, found 1005 files... Jun 13 2023 03:53:46 server2 maldet(100883): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Jun 13 2023 03:53:46 server2 maldet(100883): {scan} scan of (1005 files) in progress... Jun 13 2023 03:54:41 server2 maldet(100883): {scan} scan completed on : files 1005, malware hits 0, cleaned hits 0, time 73s Jun 13 2023 03:54:41 server2 maldet(100883): {scan} scan report saved, to view run: maldet --report 230613-0353.100883 Jun 14 2023 04:04:03 server2 maldet(371824): {update} checking for available updates... Jun 14 2023 04:04:03 server2 maldet(371824): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Jun 14 2023 04:04:03 server2 maldet(371824): {update} hashing install files and checking against server... Jun 14 2023 04:04:03 server2 maldet(371824): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Jun 14 2023 04:04:03 server2 maldet(371824): {update} latest version already installed. Jun 14 2023 04:04:03 server2 maldet(371963): {sigup} performing signature update check... Jun 14 2023 04:04:03 server2 maldet(371963): {sigup} local signature set is version 202306131866083 Jun 14 2023 04:04:03 server2 maldet(371963): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Jun 14 2023 04:04:03 server2 maldet(371963): {sigup} latest signature set already installed Jun 14 2023 04:04:03 server2 maldet(372074): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Jun 14 2023 04:04:04 server2 maldet(372074): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Jun 14 2023 04:04:04 server2 maldet(372074): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Jun 14 2023 04:04:04 server2 maldet(372074): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Jun 14 2023 04:04:04 server2 maldet(372074): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Jun 14 2023 04:04:19 server2 maldet(372074): {scan} file list completed in 15s, found 1057 files... Jun 14 2023 04:04:19 server2 maldet(372074): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Jun 14 2023 04:04:19 server2 maldet(372074): {scan} scan of (1057 files) in progress... Jun 14 2023 04:05:19 server2 maldet(372074): {scan} scan completed on : files 1057, malware hits 0, cleaned hits 0, time 76s Jun 14 2023 04:05:19 server2 maldet(372074): {scan} scan report saved, to view run: maldet --report 230614-0404.372074 Jun 15 2023 03:53:23 server2 maldet(653602): {update} checking for available updates... Jun 15 2023 03:53:23 server2 maldet(653602): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Jun 15 2023 03:53:23 server2 maldet(653602): {update} hashing install files and checking against server... Jun 15 2023 03:53:23 server2 maldet(653602): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Jun 15 2023 03:53:23 server2 maldet(653602): {update} latest version already installed. Jun 15 2023 03:53:23 server2 maldet(653735): {sigup} performing signature update check... Jun 15 2023 03:53:23 server2 maldet(653735): {sigup} local signature set is version 202306131866083 Jun 15 2023 03:53:23 server2 maldet(653735): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Jun 15 2023 03:53:23 server2 maldet(653735): {sigup} latest signature set already installed Jun 15 2023 03:53:23 server2 maldet(653846): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Jun 15 2023 03:53:23 server2 maldet(653846): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Jun 15 2023 03:53:23 server2 maldet(653846): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Jun 15 2023 03:53:23 server2 maldet(653846): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Jun 15 2023 03:53:23 server2 maldet(653846): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Jun 15 2023 03:53:43 server2 maldet(653846): {scan} file list completed in 20s, found 1245 files... Jun 15 2023 03:53:43 server2 maldet(653846): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Jun 15 2023 03:53:43 server2 maldet(653846): {scan} scan of (1245 files) in progress... Jun 15 2023 03:55:15 server2 maldet(653846): {scan} scan completed on : files 1245, malware hits 0, cleaned hits 0, time 112s Jun 15 2023 03:55:15 server2 maldet(653846): {scan} scan report saved, to view run: maldet --report 230615-0353.653846 Jun 16 2023 03:22:47 server2 maldet(984551): {update} checking for available updates... Jun 16 2023 03:22:47 server2 maldet(984551): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Jun 16 2023 03:22:48 server2 maldet(984551): {update} hashing install files and checking against server... Jun 16 2023 03:22:48 server2 maldet(984551): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Jun 16 2023 03:22:48 server2 maldet(984551): {update} latest version already installed. Jun 16 2023 03:22:48 server2 maldet(984685): {sigup} performing signature update check... Jun 16 2023 03:22:48 server2 maldet(984685): {sigup} local signature set is version 202306131866083 Jun 16 2023 03:22:48 server2 maldet(984685): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Jun 16 2023 03:22:48 server2 maldet(984685): {sigup} new signature set 202306162562538 available Jun 16 2023 03:22:48 server2 maldet(984685): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Jun 16 2023 03:22:48 server2 maldet(984685): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Jun 16 2023 03:22:48 server2 maldet(984685): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Jun 16 2023 03:22:48 server2 maldet(984685): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Jun 16 2023 03:22:48 server2 maldet(984685): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Jun 16 2023 03:22:48 server2 maldet(984685): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Jun 16 2023 03:22:48 server2 maldet(984685): {sigup} verified md5sum of maldet-sigpack.tgz Jun 16 2023 03:22:49 server2 maldet(984685): {sigup} unpacked and installed maldet-sigpack.tgz Jun 16 2023 03:22:49 server2 maldet(984685): {sigup} verified md5sum of maldet-clean.tgz Jun 16 2023 03:22:49 server2 maldet(984685): {sigup} unpacked and installed maldet-clean.tgz Jun 16 2023 03:22:49 server2 maldet(984685): {sigup} signature set update completed Jun 16 2023 03:22:49 server2 maldet(984685): {sigup} 17637 signatures (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Jun 16 2023 03:22:49 server2 maldet(984913): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Jun 16 2023 03:22:49 server2 maldet(984913): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Jun 16 2023 03:22:49 server2 maldet(984913): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Jun 16 2023 03:22:49 server2 maldet(984913): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Jun 16 2023 03:22:49 server2 maldet(984913): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Jun 16 2023 03:23:16 server2 maldet(984913): {scan} file list completed in 27s, found 1470 files... Jun 16 2023 03:23:16 server2 maldet(984913): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Jun 16 2023 03:23:16 server2 maldet(984913): {scan} scan of (1470 files) in progress... Jun 16 2023 03:24:52 server2 maldet(984913): {scan} scan completed on : files 1470, malware hits 0, cleaned hits 0, time 123s Jun 16 2023 03:24:52 server2 maldet(984913): {scan} scan report saved, to view run: maldet --report 230616-0322.984913 Jun 17 2023 03:23:43 server2 maldet(1265483): {update} checking for available updates... Jun 17 2023 03:23:43 server2 maldet(1265483): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Jun 17 2023 03:23:43 server2 maldet(1265483): {update} hashing install files and checking against server... Jun 17 2023 03:23:43 server2 maldet(1265483): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Jun 17 2023 03:23:43 server2 maldet(1265483): {update} latest version already installed. Jun 17 2023 03:23:43 server2 maldet(1265616): {sigup} performing signature update check... Jun 17 2023 03:23:43 server2 maldet(1265616): {sigup} local signature set is version 202306162562538 Jun 17 2023 03:23:44 server2 maldet(1265616): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Jun 17 2023 03:23:44 server2 maldet(1265616): {sigup} latest signature set already installed Jun 17 2023 03:23:44 server2 maldet(1265727): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Jun 17 2023 03:23:44 server2 maldet(1265727): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Jun 17 2023 03:23:44 server2 maldet(1265727): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Jun 17 2023 03:23:44 server2 maldet(1265727): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Jun 17 2023 03:23:44 server2 maldet(1265727): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Jun 17 2023 03:24:00 server2 maldet(1265727): {scan} file list completed in 15s, found 889 files... Jun 17 2023 03:24:00 server2 maldet(1265727): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Jun 17 2023 03:24:00 server2 maldet(1265727): {scan} scan of (889 files) in progress... Jun 17 2023 03:24:53 server2 maldet(1265727): {scan} scan completed on : files 889, malware hits 0, cleaned hits 0, time 69s Jun 17 2023 03:24:53 server2 maldet(1265727): {scan} scan report saved, to view run: maldet --report 230617-0323.1265727 Jun 18 2023 03:13:17 server2 maldet(1541034): {update} checking for available updates... Jun 18 2023 03:13:17 server2 maldet(1541034): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Jun 18 2023 03:13:17 server2 maldet(1541034): {update} hashing install files and checking against server... Jun 18 2023 03:13:17 server2 maldet(1541034): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Jun 18 2023 03:13:17 server2 maldet(1541034): {update} latest version already installed. Jun 18 2023 03:13:17 server2 maldet(1541167): {sigup} performing signature update check... Jun 18 2023 03:13:17 server2 maldet(1541167): {sigup} local signature set is version 202306162562538 Jun 18 2023 03:13:17 server2 maldet(1541167): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Jun 18 2023 03:13:17 server2 maldet(1541167): {sigup} latest signature set already installed Jun 18 2023 03:13:17 server2 maldet(1541278): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Jun 18 2023 03:13:18 server2 maldet(1541278): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Jun 18 2023 03:13:18 server2 maldet(1541278): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Jun 18 2023 03:13:18 server2 maldet(1541278): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Jun 18 2023 03:13:18 server2 maldet(1541278): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Jun 18 2023 03:13:45 server2 maldet(1541278): {scan} file list completed in 27s, found 1033 files... Jun 18 2023 03:13:45 server2 maldet(1541278): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Jun 18 2023 03:13:45 server2 maldet(1541278): {scan} scan of (1033 files) in progress... Jun 18 2023 03:14:53 server2 maldet(1541278): {scan} scan completed on : files 1033, malware hits 0, cleaned hits 0, time 96s Jun 18 2023 03:14:53 server2 maldet(1541278): {scan} scan report saved, to view run: maldet --report 230618-0313.1541278 Jun 19 2023 03:47:49 server2 maldet(1830428): {update} checking for available updates... Jun 19 2023 03:47:50 server2 maldet(1830428): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Jun 19 2023 03:47:50 server2 maldet(1830428): {update} hashing install files and checking against server... Jun 19 2023 03:47:50 server2 maldet(1830428): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Jun 19 2023 03:47:50 server2 maldet(1830428): {update} latest version already installed. Jun 19 2023 03:47:50 server2 maldet(1830561): {sigup} performing signature update check... Jun 19 2023 03:47:50 server2 maldet(1830561): {sigup} local signature set is version 202306162562538 Jun 19 2023 03:47:50 server2 maldet(1830561): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Jun 19 2023 03:47:50 server2 maldet(1830561): {sigup} latest signature set already installed Jun 19 2023 03:47:50 server2 maldet(1830672): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Jun 19 2023 03:47:50 server2 maldet(1830672): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Jun 19 2023 03:47:50 server2 maldet(1830672): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Jun 19 2023 03:47:50 server2 maldet(1830672): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Jun 19 2023 03:47:50 server2 maldet(1830672): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Jun 19 2023 03:48:07 server2 maldet(1830672): {scan} file list completed in 17s, found 1407 files... Jun 19 2023 03:48:07 server2 maldet(1830672): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Jun 19 2023 03:48:07 server2 maldet(1830672): {scan} scan of (1407 files) in progress... Jun 19 2023 03:49:36 server2 maldet(1830672): {scan} scan completed on : files 1407, malware hits 0, cleaned hits 0, time 106s Jun 19 2023 03:49:36 server2 maldet(1830672): {scan} scan report saved, to view run: maldet --report 230619-0347.1830672 Jun 20 2023 03:24:47 server2 maldet(2096988): {update} checking for available updates... Jun 20 2023 03:24:47 server2 maldet(2096988): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Jun 20 2023 03:24:47 server2 maldet(2096988): {update} hashing install files and checking against server... Jun 20 2023 03:24:47 server2 maldet(2096988): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Jun 20 2023 03:24:47 server2 maldet(2096988): {update} latest version already installed. Jun 20 2023 03:24:47 server2 maldet(2097122): {sigup} performing signature update check... Jun 20 2023 03:24:47 server2 maldet(2097122): {sigup} local signature set is version 202306162562538 Jun 20 2023 03:24:47 server2 maldet(2097122): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Jun 20 2023 03:24:47 server2 maldet(2097122): {sigup} latest signature set already installed Jun 20 2023 03:24:47 server2 maldet(2097233): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Jun 20 2023 03:24:48 server2 maldet(2097233): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Jun 20 2023 03:24:48 server2 maldet(2097233): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Jun 20 2023 03:24:48 server2 maldet(2097233): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Jun 20 2023 03:24:48 server2 maldet(2097233): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Jun 20 2023 03:25:16 server2 maldet(2097233): {scan} file list completed in 28s, found 4852 files... Jun 20 2023 03:25:16 server2 maldet(2097233): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Jun 20 2023 03:25:16 server2 maldet(2097233): {scan} scan of (4852 files) in progress... Jun 20 2023 03:29:52 server2 maldet(2097233): {scan} scan completed on : files 4852, malware hits 0, cleaned hits 0, time 305s Jun 20 2023 03:29:52 server2 maldet(2097233): {scan} scan report saved, to view run: maldet --report 230620-0324.2097233 Jun 21 2023 03:54:11 server2 maldet(2370915): {update} checking for available updates... Jun 21 2023 03:54:12 server2 maldet(2370915): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Jun 21 2023 03:54:12 server2 maldet(2370915): {update} hashing install files and checking against server... Jun 21 2023 03:54:12 server2 maldet(2370915): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Jun 21 2023 03:54:12 server2 maldet(2370915): {update} latest version already installed. Jun 21 2023 03:54:12 server2 maldet(2371048): {sigup} performing signature update check... Jun 21 2023 03:54:12 server2 maldet(2371048): {sigup} local signature set is version 202306162562538 Jun 21 2023 03:54:12 server2 maldet(2371048): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Jun 21 2023 03:54:12 server2 maldet(2371048): {sigup} latest signature set already installed Jun 21 2023 03:54:12 server2 maldet(2371165): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Jun 21 2023 03:54:12 server2 maldet(2371165): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Jun 21 2023 03:54:12 server2 maldet(2371165): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Jun 21 2023 03:54:12 server2 maldet(2371165): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Jun 21 2023 03:54:12 server2 maldet(2371165): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Jun 21 2023 03:54:30 server2 maldet(2371165): {scan} file list completed in 17s, found 2696 files... Jun 21 2023 03:54:30 server2 maldet(2371165): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Jun 21 2023 03:54:30 server2 maldet(2371165): {scan} scan of (2696 files) in progress... Jun 21 2023 03:56:32 server2 maldet(2371165): {scan} scan completed on : files 2696, malware hits 0, cleaned hits 0, time 140s Jun 21 2023 03:56:32 server2 maldet(2371165): {scan} scan report saved, to view run: maldet --report 230621-0354.2371165 Jun 22 2023 03:33:50 server2 maldet(2637324): {update} checking for available updates... Jun 22 2023 03:33:50 server2 maldet(2637324): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Jun 22 2023 03:33:50 server2 maldet(2637324): {update} hashing install files and checking against server... Jun 22 2023 03:33:50 server2 maldet(2637324): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Jun 22 2023 03:33:50 server2 maldet(2637324): {update} latest version already installed. Jun 22 2023 03:33:50 server2 maldet(2637457): {sigup} performing signature update check... Jun 22 2023 03:33:50 server2 maldet(2637457): {sigup} local signature set is version 202306162562538 Jun 22 2023 03:33:50 server2 maldet(2637457): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Jun 22 2023 03:33:50 server2 maldet(2637457): {sigup} new signature set 20230622486882 available Jun 22 2023 03:33:50 server2 maldet(2637457): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Jun 22 2023 03:33:50 server2 maldet(2637457): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Jun 22 2023 03:33:50 server2 maldet(2637457): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Jun 22 2023 03:33:50 server2 maldet(2637457): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Jun 22 2023 03:33:50 server2 maldet(2637457): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Jun 22 2023 03:33:50 server2 maldet(2637457): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Jun 22 2023 03:33:50 server2 maldet(2637457): {sigup} verified md5sum of maldet-sigpack.tgz Jun 22 2023 03:33:51 server2 maldet(2637457): {sigup} unpacked and installed maldet-sigpack.tgz Jun 22 2023 03:33:51 server2 maldet(2637457): {sigup} verified md5sum of maldet-clean.tgz Jun 22 2023 03:33:51 server2 maldet(2637457): {sigup} unpacked and installed maldet-clean.tgz Jun 22 2023 03:33:51 server2 maldet(2637457): {sigup} signature set update completed Jun 22 2023 03:33:51 server2 maldet(2637457): {sigup} 17637 signatures (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Jun 22 2023 03:33:51 server2 maldet(2637685): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Jun 22 2023 03:33:51 server2 maldet(2637685): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Jun 22 2023 03:33:51 server2 maldet(2637685): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Jun 22 2023 03:33:51 server2 maldet(2637685): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Jun 22 2023 03:33:51 server2 maldet(2637685): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Jun 22 2023 03:34:17 server2 maldet(2637685): {scan} file list completed in 26s, found 877 files... Jun 22 2023 03:34:17 server2 maldet(2637685): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Jun 22 2023 03:34:17 server2 maldet(2637685): {scan} scan of (877 files) in progress... Jun 22 2023 03:35:09 server2 maldet(2637685): {scan} scan completed on : files 877, malware hits 0, cleaned hits 0, time 78s Jun 22 2023 03:35:09 server2 maldet(2637685): {scan} scan report saved, to view run: maldet --report 230622-0333.2637685 Jun 23 2023 03:54:02 server2 maldet(2921108): {update} checking for available updates... Jun 23 2023 03:54:02 server2 maldet(2921108): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Jun 23 2023 03:54:02 server2 maldet(2921108): {update} hashing install files and checking against server... Jun 23 2023 03:54:03 server2 maldet(2921108): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Jun 23 2023 03:54:03 server2 maldet(2921108): {update} latest version already installed. Jun 23 2023 03:54:03 server2 maldet(2921247): {sigup} performing signature update check... Jun 23 2023 03:54:03 server2 maldet(2921247): {sigup} local signature set is version 20230622486882 Jun 23 2023 03:54:03 server2 maldet(2921247): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Jun 23 2023 03:54:03 server2 maldet(2921247): {sigup} latest signature set already installed Jun 23 2023 03:54:03 server2 maldet(2921358): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Jun 23 2023 03:54:03 server2 maldet(2921358): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Jun 23 2023 03:54:03 server2 maldet(2921358): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Jun 23 2023 03:54:03 server2 maldet(2921358): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Jun 23 2023 03:54:03 server2 maldet(2921358): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Jun 23 2023 03:54:18 server2 maldet(2921358): {scan} file list completed in 15s, found 1025 files... Jun 23 2023 03:54:18 server2 maldet(2921358): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Jun 23 2023 03:54:18 server2 maldet(2921358): {scan} scan of (1025 files) in progress... Jun 23 2023 03:55:17 server2 maldet(2921358): {scan} scan completed on : files 1025, malware hits 0, cleaned hits 0, time 74s Jun 23 2023 03:55:17 server2 maldet(2921358): {scan} scan report saved, to view run: maldet --report 230623-0354.2921358 Jun 24 2023 03:15:40 server2 maldet(3250893): {update} checking for available updates... Jun 24 2023 03:15:40 server2 maldet(3250893): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Jun 24 2023 03:15:40 server2 maldet(3250893): {update} hashing install files and checking against server... Jun 24 2023 03:15:40 server2 maldet(3250893): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Jun 24 2023 03:15:40 server2 maldet(3250893): {update} latest version already installed. Jun 24 2023 03:15:40 server2 maldet(3251026): {sigup} performing signature update check... Jun 24 2023 03:15:40 server2 maldet(3251026): {sigup} local signature set is version 20230622486882 Jun 24 2023 03:15:41 server2 maldet(3251026): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Jun 24 2023 03:15:41 server2 maldet(3251026): {sigup} latest signature set already installed Jun 24 2023 03:15:41 server2 maldet(3251137): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Jun 24 2023 03:15:41 server2 maldet(3251137): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Jun 24 2023 03:15:41 server2 maldet(3251137): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Jun 24 2023 03:15:41 server2 maldet(3251137): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Jun 24 2023 03:15:41 server2 maldet(3251137): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Jun 24 2023 03:15:57 server2 maldet(3251137): {scan} file list completed in 16s, found 858 files... Jun 24 2023 03:15:57 server2 maldet(3251137): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Jun 24 2023 03:15:57 server2 maldet(3251137): {scan} scan of (858 files) in progress... Jun 24 2023 03:16:45 server2 maldet(3251137): {scan} scan completed on : files 858, malware hits 0, cleaned hits 0, time 64s Jun 24 2023 03:16:45 server2 maldet(3251137): {scan} scan report saved, to view run: maldet --report 230624-0315.3251137 Jun 25 2023 03:36:05 server2 maldet(3528563): {update} checking for available updates... Jun 25 2023 03:36:05 server2 maldet(3528563): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Jun 25 2023 03:36:05 server2 maldet(3528563): {update} hashing install files and checking against server... Jun 25 2023 03:36:05 server2 maldet(3528563): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Jun 25 2023 03:36:05 server2 maldet(3528563): {update} latest version already installed. Jun 25 2023 03:36:05 server2 maldet(3528699): {sigup} performing signature update check... Jun 25 2023 03:36:05 server2 maldet(3528699): {sigup} local signature set is version 20230622486882 Jun 25 2023 03:36:05 server2 maldet(3528699): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Jun 25 2023 03:36:05 server2 maldet(3528699): {sigup} new signature set 202306251216229 available Jun 25 2023 03:36:05 server2 maldet(3528699): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Jun 25 2023 03:36:05 server2 maldet(3528699): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Jun 25 2023 03:36:05 server2 maldet(3528699): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Jun 25 2023 03:36:05 server2 maldet(3528699): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Jun 25 2023 03:36:05 server2 maldet(3528699): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Jun 25 2023 03:36:06 server2 maldet(3528699): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Jun 25 2023 03:36:06 server2 maldet(3528699): {sigup} verified md5sum of maldet-sigpack.tgz Jun 25 2023 03:36:06 server2 maldet(3528699): {sigup} unpacked and installed maldet-sigpack.tgz Jun 25 2023 03:36:06 server2 maldet(3528699): {sigup} verified md5sum of maldet-clean.tgz Jun 25 2023 03:36:06 server2 maldet(3528699): {sigup} unpacked and installed maldet-clean.tgz Jun 25 2023 03:36:06 server2 maldet(3528699): {sigup} signature set update completed Jun 25 2023 03:36:06 server2 maldet(3528699): {sigup} 17637 signatures (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Jun 25 2023 03:36:06 server2 maldet(3528927): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Jun 25 2023 03:36:06 server2 maldet(3528927): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Jun 25 2023 03:36:06 server2 maldet(3528927): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Jun 25 2023 03:36:06 server2 maldet(3528927): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Jun 25 2023 03:36:06 server2 maldet(3528927): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Jun 25 2023 03:36:19 server2 maldet(3528927): {scan} file list completed in 13s, found 753 files... Jun 25 2023 03:36:19 server2 maldet(3528927): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Jun 25 2023 03:36:19 server2 maldet(3528927): {scan} scan of (753 files) in progress... Jun 25 2023 03:37:13 server2 maldet(3528927): {scan} scan completed on : files 753, malware hits 0, cleaned hits 0, time 66s Jun 25 2023 03:37:13 server2 maldet(3528927): {scan} scan report saved, to view run: maldet --report 230625-0336.3528927 Jun 26 2023 03:33:33 server2 maldet(3808838): {update} checking for available updates... Jun 26 2023 03:33:33 server2 maldet(3808838): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Jun 26 2023 03:33:33 server2 maldet(3808838): {update} hashing install files and checking against server... Jun 26 2023 03:33:33 server2 maldet(3808838): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Jun 26 2023 03:33:33 server2 maldet(3808838): {update} latest version already installed. Jun 26 2023 03:33:33 server2 maldet(3808971): {sigup} performing signature update check... Jun 26 2023 03:33:33 server2 maldet(3808971): {sigup} local signature set is version 202306251216229 Jun 26 2023 03:33:33 server2 maldet(3808971): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Jun 26 2023 03:33:33 server2 maldet(3808971): {sigup} latest signature set already installed Jun 26 2023 03:33:34 server2 maldet(3809082): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Jun 26 2023 03:33:34 server2 maldet(3809082): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Jun 26 2023 03:33:34 server2 maldet(3809082): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Jun 26 2023 03:33:34 server2 maldet(3809082): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Jun 26 2023 03:33:34 server2 maldet(3809082): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Jun 26 2023 03:33:48 server2 maldet(3809082): {scan} file list completed in 14s, found 2029 files... Jun 26 2023 03:33:48 server2 maldet(3809082): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Jun 26 2023 03:33:48 server2 maldet(3809082): {scan} scan of (2029 files) in progress... Jun 26 2023 03:35:58 server2 maldet(3809082): {scan} scan completed on : files 2029, malware hits 0, cleaned hits 0, time 144s Jun 26 2023 03:35:58 server2 maldet(3809082): {scan} scan report saved, to view run: maldet --report 230626-0333.3809082 Jun 27 2023 03:10:18 server2 maldet(4078897): {update} checking for available updates... Jun 27 2023 03:10:18 server2 maldet(4078897): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Jun 27 2023 03:10:18 server2 maldet(4078897): {update} hashing install files and checking against server... Jun 27 2023 03:10:18 server2 maldet(4078897): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Jun 27 2023 03:10:18 server2 maldet(4078897): {update} latest version already installed. Jun 27 2023 03:10:18 server2 maldet(4079033): {sigup} performing signature update check... Jun 27 2023 03:10:18 server2 maldet(4079033): {sigup} local signature set is version 202306251216229 Jun 27 2023 03:10:18 server2 maldet(4079033): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Jun 27 2023 03:10:18 server2 maldet(4079033): {sigup} latest signature set already installed Jun 27 2023 03:10:19 server2 maldet(4079144): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Jun 27 2023 03:10:19 server2 maldet(4079144): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Jun 27 2023 03:10:19 server2 maldet(4079144): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Jun 27 2023 03:10:19 server2 maldet(4079144): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Jun 27 2023 03:10:19 server2 maldet(4079144): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Jun 27 2023 03:10:36 server2 maldet(4079144): {scan} file list completed in 17s, found 805 files... Jun 27 2023 03:10:36 server2 maldet(4079144): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Jun 27 2023 03:10:36 server2 maldet(4079144): {scan} scan of (805 files) in progress... Jun 27 2023 03:11:17 server2 maldet(4079144): {scan} scan completed on : files 805, malware hits 0, cleaned hits 0, time 58s Jun 27 2023 03:11:17 server2 maldet(4079144): {scan} scan report saved, to view run: maldet --report 230627-0310.4079144 Jun 28 2023 03:33:49 server2 maldet(176139): {update} checking for available updates... Jun 28 2023 03:33:49 server2 maldet(176139): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Jun 28 2023 03:33:49 server2 maldet(176139): {update} hashing install files and checking against server... Jun 28 2023 03:33:49 server2 maldet(176139): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Jun 28 2023 03:33:49 server2 maldet(176139): {update} latest version already installed. Jun 28 2023 03:33:50 server2 maldet(176272): {sigup} performing signature update check... Jun 28 2023 03:33:50 server2 maldet(176272): {sigup} local signature set is version 202306251216229 Jun 28 2023 03:33:50 server2 maldet(176272): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Jun 28 2023 03:33:50 server2 maldet(176272): {sigup} new signature set 20230628518475 available Jun 28 2023 03:33:50 server2 maldet(176272): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Jun 28 2023 03:33:50 server2 maldet(176272): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Jun 28 2023 03:33:50 server2 maldet(176272): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Jun 28 2023 03:33:50 server2 maldet(176272): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Jun 28 2023 03:33:50 server2 maldet(176272): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Jun 28 2023 03:33:50 server2 maldet(176272): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Jun 28 2023 03:33:50 server2 maldet(176272): {sigup} verified md5sum of maldet-sigpack.tgz Jun 28 2023 03:33:50 server2 maldet(176272): {sigup} unpacked and installed maldet-sigpack.tgz Jun 28 2023 03:33:50 server2 maldet(176272): {sigup} verified md5sum of maldet-clean.tgz Jun 28 2023 03:33:50 server2 maldet(176272): {sigup} unpacked and installed maldet-clean.tgz Jun 28 2023 03:33:50 server2 maldet(176272): {sigup} signature set update completed Jun 28 2023 03:33:50 server2 maldet(176272): {sigup} 17637 signatures (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Jun 28 2023 03:33:51 server2 maldet(176501): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Jun 28 2023 03:33:51 server2 maldet(176501): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Jun 28 2023 03:33:51 server2 maldet(176501): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Jun 28 2023 03:33:51 server2 maldet(176501): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Jun 28 2023 03:33:51 server2 maldet(176501): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Jun 28 2023 03:34:08 server2 maldet(176501): {scan} file list completed in 17s, found 1063 files... Jun 28 2023 03:34:08 server2 maldet(176501): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Jun 28 2023 03:34:08 server2 maldet(176501): {scan} scan of (1063 files) in progress... Jun 28 2023 03:35:08 server2 maldet(176501): {scan} scan completed on : files 1063, malware hits 0, cleaned hits 0, time 77s Jun 28 2023 03:35:08 server2 maldet(176501): {scan} scan report saved, to view run: maldet --report 230628-0333.176501 Jun 29 2023 03:54:40 server2 maldet(469089): {update} checking for available updates... Jun 29 2023 03:54:40 server2 maldet(469089): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Jun 29 2023 03:54:40 server2 maldet(469089): {update} hashing install files and checking against server... Jun 29 2023 03:54:40 server2 maldet(469089): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Jun 29 2023 03:54:40 server2 maldet(469089): {update} latest version already installed. Jun 29 2023 03:54:40 server2 maldet(469223): {sigup} performing signature update check... Jun 29 2023 03:54:40 server2 maldet(469223): {sigup} local signature set is version 20230628518475 Jun 29 2023 03:54:40 server2 maldet(469223): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Jun 29 2023 03:54:40 server2 maldet(469223): {sigup} latest signature set already installed Jun 29 2023 03:54:40 server2 maldet(469334): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Jun 29 2023 03:54:41 server2 maldet(469334): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Jun 29 2023 03:54:41 server2 maldet(469334): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Jun 29 2023 03:54:41 server2 maldet(469334): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Jun 29 2023 03:54:41 server2 maldet(469334): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Jun 29 2023 03:54:56 server2 maldet(469334): {scan} file list completed in 14s, found 792 files... Jun 29 2023 03:54:56 server2 maldet(469334): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Jun 29 2023 03:54:56 server2 maldet(469334): {scan} scan of (792 files) in progress... Jun 29 2023 03:55:33 server2 maldet(469334): {scan} scan completed on : files 792, malware hits 0, cleaned hits 0, time 53s Jun 29 2023 03:55:33 server2 maldet(469334): {scan} scan report saved, to view run: maldet --report 230629-0354.469334 Jun 30 2023 03:50:17 server2 maldet(741390): {update} checking for available updates... Jun 30 2023 03:50:17 server2 maldet(741390): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Jun 30 2023 03:50:17 server2 maldet(741390): {update} hashing install files and checking against server... Jun 30 2023 03:50:17 server2 maldet(741390): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Jun 30 2023 03:50:17 server2 maldet(741390): {update} latest version already installed. Jun 30 2023 03:50:17 server2 maldet(741530): {sigup} performing signature update check... Jun 30 2023 03:50:17 server2 maldet(741530): {sigup} local signature set is version 20230628518475 Jun 30 2023 03:50:17 server2 maldet(741530): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Jun 30 2023 03:50:17 server2 maldet(741530): {sigup} latest signature set already installed Jun 30 2023 03:50:18 server2 maldet(741642): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Jun 30 2023 03:50:18 server2 maldet(741642): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Jun 30 2023 03:50:18 server2 maldet(741642): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Jun 30 2023 03:50:18 server2 maldet(741642): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Jun 30 2023 03:50:18 server2 maldet(741642): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Jun 30 2023 03:50:35 server2 maldet(741642): {scan} file list completed in 17s, found 996 files... Jun 30 2023 03:50:35 server2 maldet(741642): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Jun 30 2023 03:50:35 server2 maldet(741642): {scan} scan of (996 files) in progress... Jun 30 2023 03:51:25 server2 maldet(741642): {scan} scan completed on : files 996, malware hits 0, cleaned hits 0, time 67s Jun 30 2023 03:51:25 server2 maldet(741642): {scan} scan report saved, to view run: maldet --report 230630-0350.741642 Jul 01 2023 03:26:54 server2 maldet(1027050): {update} checking for available updates... Jul 01 2023 03:26:54 server2 maldet(1027050): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Jul 01 2023 03:26:54 server2 maldet(1027050): {update} hashing install files and checking against server... Jul 01 2023 03:26:54 server2 maldet(1027050): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Jul 01 2023 03:26:54 server2 maldet(1027050): {update} latest version already installed. Jul 01 2023 03:26:54 server2 maldet(1027183): {sigup} performing signature update check... Jul 01 2023 03:26:54 server2 maldet(1027183): {sigup} local signature set is version 20230628518475 Jul 01 2023 03:26:55 server2 maldet(1027183): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Jul 01 2023 03:26:55 server2 maldet(1027183): {sigup} new signature set 20230701478685 available Jul 01 2023 03:26:55 server2 maldet(1027183): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Jul 01 2023 03:26:55 server2 maldet(1027183): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Jul 01 2023 03:26:55 server2 maldet(1027183): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Jul 01 2023 03:26:55 server2 maldet(1027183): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Jul 01 2023 03:26:55 server2 maldet(1027183): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Jul 01 2023 03:26:55 server2 maldet(1027183): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Jul 01 2023 03:26:55 server2 maldet(1027183): {sigup} verified md5sum of maldet-sigpack.tgz Jul 01 2023 03:26:55 server2 maldet(1027183): {sigup} unpacked and installed maldet-sigpack.tgz Jul 01 2023 03:26:55 server2 maldet(1027183): {sigup} verified md5sum of maldet-clean.tgz Jul 01 2023 03:26:55 server2 maldet(1027183): {sigup} unpacked and installed maldet-clean.tgz Jul 01 2023 03:26:55 server2 maldet(1027183): {sigup} signature set update completed Jul 01 2023 03:26:55 server2 maldet(1027183): {sigup} 17637 signatures (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Jul 01 2023 03:26:55 server2 maldet(1027412): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Jul 01 2023 03:26:56 server2 maldet(1027412): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Jul 01 2023 03:26:56 server2 maldet(1027412): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Jul 01 2023 03:26:56 server2 maldet(1027412): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Jul 01 2023 03:26:56 server2 maldet(1027412): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Jul 01 2023 03:27:15 server2 maldet(1027412): {scan} file list completed in 19s, found 1002 files... Jul 01 2023 03:27:15 server2 maldet(1027412): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Jul 01 2023 03:27:15 server2 maldet(1027412): {scan} scan of (1002 files) in progress... Jul 01 2023 03:28:03 server2 maldet(1027412): {scan} scan completed on : files 1002, malware hits 0, cleaned hits 0, time 68s Jul 01 2023 03:28:03 server2 maldet(1027412): {scan} scan report saved, to view run: maldet --report 230701-0326.1027412 Jul 02 2023 03:54:05 server2 maldet(1322494): {update} checking for available updates... Jul 02 2023 03:54:06 server2 maldet(1322494): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Jul 02 2023 03:54:06 server2 maldet(1322494): {update} hashing install files and checking against server... Jul 02 2023 03:54:06 server2 maldet(1322494): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Jul 02 2023 03:54:06 server2 maldet(1322494): {update} latest version already installed. Jul 02 2023 03:54:06 server2 maldet(1322627): {sigup} performing signature update check... Jul 02 2023 03:54:06 server2 maldet(1322627): {sigup} local signature set is version 20230701478685 Jul 02 2023 03:54:06 server2 maldet(1322627): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Jul 02 2023 03:54:06 server2 maldet(1322627): {sigup} latest signature set already installed Jul 02 2023 03:54:06 server2 maldet(1322738): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Jul 02 2023 03:54:07 server2 maldet(1322738): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Jul 02 2023 03:54:07 server2 maldet(1322738): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Jul 02 2023 03:54:07 server2 maldet(1322738): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Jul 02 2023 03:54:07 server2 maldet(1322738): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Jul 02 2023 03:54:22 server2 maldet(1322738): {scan} file list completed in 15s, found 871 files... Jul 02 2023 03:54:22 server2 maldet(1322738): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Jul 02 2023 03:54:22 server2 maldet(1322738): {scan} scan of (871 files) in progress... Jul 02 2023 03:54:56 server2 maldet(1322738): {scan} scan completed on : files 871, malware hits 0, cleaned hits 0, time 50s Jul 02 2023 03:54:56 server2 maldet(1322738): {scan} scan report saved, to view run: maldet --report 230702-0354.1322738 Jul 03 2023 03:50:03 server2 maldet(1577303): {update} checking for available updates... Jul 03 2023 03:50:03 server2 maldet(1577303): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Jul 03 2023 03:50:03 server2 maldet(1577303): {update} hashing install files and checking against server... Jul 03 2023 03:50:03 server2 maldet(1577303): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Jul 03 2023 03:50:03 server2 maldet(1577303): {update} latest version already installed. Jul 03 2023 03:50:03 server2 maldet(1577453): {sigup} performing signature update check... Jul 03 2023 03:50:03 server2 maldet(1577453): {sigup} local signature set is version 20230701478685 Jul 03 2023 03:50:03 server2 maldet(1577453): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Jul 03 2023 03:50:03 server2 maldet(1577453): {sigup} latest signature set already installed Jul 03 2023 03:50:03 server2 maldet(1577578): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Jul 03 2023 03:50:04 server2 maldet(1577578): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Jul 03 2023 03:50:04 server2 maldet(1577578): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Jul 03 2023 03:50:04 server2 maldet(1577578): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Jul 03 2023 03:50:04 server2 maldet(1577578): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Jul 03 2023 03:50:20 server2 maldet(1577578): {scan} file list completed in 16s, found 14024 files... Jul 03 2023 03:50:20 server2 maldet(1577578): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Jul 03 2023 03:50:20 server2 maldet(1577578): {scan} scan of (14024 files) in progress... Jul 03 2023 03:53:56 server2 maldet(1577578): {scan} scan completed on : files 14024, malware hits 0, cleaned hits 0, time 233s Jul 03 2023 03:53:56 server2 maldet(1577578): {scan} scan report saved, to view run: maldet --report 230703-0350.1577578 Jul 04 2023 03:18:28 server2 maldet(1835102): {update} checking for available updates... Jul 04 2023 03:18:28 server2 maldet(1835102): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Jul 04 2023 03:18:28 server2 maldet(1835102): {update} hashing install files and checking against server... Jul 04 2023 03:18:28 server2 maldet(1835102): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Jul 04 2023 03:18:28 server2 maldet(1835102): {update} latest version already installed. Jul 04 2023 03:18:28 server2 maldet(1835235): {sigup} performing signature update check... Jul 04 2023 03:18:28 server2 maldet(1835235): {sigup} local signature set is version 20230701478685 Jul 04 2023 03:18:28 server2 maldet(1835235): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Jul 04 2023 03:18:28 server2 maldet(1835235): {sigup} new signature set 202307041177952 available Jul 04 2023 03:18:28 server2 maldet(1835235): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Jul 04 2023 03:18:28 server2 maldet(1835235): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Jul 04 2023 03:18:28 server2 maldet(1835235): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Jul 04 2023 03:18:28 server2 maldet(1835235): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Jul 04 2023 03:18:28 server2 maldet(1835235): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Jul 04 2023 03:18:28 server2 maldet(1835235): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Jul 04 2023 03:18:29 server2 maldet(1835235): {sigup} verified md5sum of maldet-sigpack.tgz Jul 04 2023 03:18:29 server2 maldet(1835235): {sigup} unpacked and installed maldet-sigpack.tgz Jul 04 2023 03:18:29 server2 maldet(1835235): {sigup} verified md5sum of maldet-clean.tgz Jul 04 2023 03:18:29 server2 maldet(1835235): {sigup} unpacked and installed maldet-clean.tgz Jul 04 2023 03:18:29 server2 maldet(1835235): {sigup} signature set update completed Jul 04 2023 03:18:29 server2 maldet(1835235): {sigup} 17637 signatures (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Jul 04 2023 03:18:29 server2 maldet(1835463): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Jul 04 2023 03:18:29 server2 maldet(1835463): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Jul 04 2023 03:18:29 server2 maldet(1835463): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Jul 04 2023 03:18:29 server2 maldet(1835463): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Jul 04 2023 03:18:29 server2 maldet(1835463): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Jul 04 2023 03:18:48 server2 maldet(1835463): {scan} file list completed in 19s, found 2414 files... Jul 04 2023 03:18:48 server2 maldet(1835463): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Jul 04 2023 03:18:48 server2 maldet(1835463): {scan} scan of (2414 files) in progress... Jul 04 2023 03:20:09 server2 maldet(1835463): {scan} scan completed on : files 2414, malware hits 0, cleaned hits 0, time 100s Jul 04 2023 03:20:09 server2 maldet(1835463): {scan} scan report saved, to view run: maldet --report 230704-0318.1835463 Jul 05 2023 03:34:22 server2 maldet(2107210): {update} checking for available updates... Jul 05 2023 03:34:22 server2 maldet(2107210): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Jul 05 2023 03:34:22 server2 maldet(2107210): {update} hashing install files and checking against server... Jul 05 2023 03:34:22 server2 maldet(2107210): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Jul 05 2023 03:34:22 server2 maldet(2107210): {update} latest version already installed. Jul 05 2023 03:34:22 server2 maldet(2107343): {sigup} performing signature update check... Jul 05 2023 03:34:22 server2 maldet(2107343): {sigup} local signature set is version 202307041177952 Jul 05 2023 03:34:23 server2 maldet(2107343): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Jul 05 2023 03:34:23 server2 maldet(2107343): {sigup} latest signature set already installed Jul 05 2023 03:34:23 server2 maldet(2107454): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Jul 05 2023 03:34:23 server2 maldet(2107454): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Jul 05 2023 03:34:23 server2 maldet(2107454): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Jul 05 2023 03:34:23 server2 maldet(2107454): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Jul 05 2023 03:34:23 server2 maldet(2107454): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Jul 05 2023 03:34:39 server2 maldet(2107454): {scan} file list completed in 16s, found 983 files... Jul 05 2023 03:34:39 server2 maldet(2107454): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Jul 05 2023 03:34:39 server2 maldet(2107454): {scan} scan of (983 files) in progress... Jul 05 2023 03:35:22 server2 maldet(2107454): {scan} scan completed on : files 983, malware hits 0, cleaned hits 0, time 59s Jul 05 2023 03:35:22 server2 maldet(2107454): {scan} scan report saved, to view run: maldet --report 230705-0334.2107454 Jul 06 2023 03:38:45 server2 maldet(2370838): {update} checking for available updates... Jul 06 2023 03:38:45 server2 maldet(2370838): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Jul 06 2023 03:38:45 server2 maldet(2370838): {update} hashing install files and checking against server... Jul 06 2023 03:38:45 server2 maldet(2370838): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Jul 06 2023 03:38:45 server2 maldet(2370838): {update} latest version already installed. Jul 06 2023 03:38:45 server2 maldet(2370972): {sigup} performing signature update check... Jul 06 2023 03:38:45 server2 maldet(2370972): {sigup} local signature set is version 202307041177952 Jul 06 2023 03:38:45 server2 maldet(2370972): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Jul 06 2023 03:38:45 server2 maldet(2370972): {sigup} latest signature set already installed Jul 06 2023 03:38:45 server2 maldet(2371083): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Jul 06 2023 03:38:46 server2 maldet(2371083): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Jul 06 2023 03:38:46 server2 maldet(2371083): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Jul 06 2023 03:38:46 server2 maldet(2371083): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Jul 06 2023 03:38:46 server2 maldet(2371083): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Jul 06 2023 03:39:05 server2 maldet(2371083): {scan} file list completed in 19s, found 1305 files... Jul 06 2023 03:39:05 server2 maldet(2371083): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Jul 06 2023 03:39:05 server2 maldet(2371083): {scan} scan of (1305 files) in progress... Jul 06 2023 03:39:58 server2 maldet(2371083): {scan} scan completed on : files 1305, malware hits 0, cleaned hits 0, time 72s Jul 06 2023 03:39:58 server2 maldet(2371083): {scan} scan report saved, to view run: maldet --report 230706-0338.2371083 Jul 07 2023 03:19:08 server2 maldet(2625697): {update} checking for available updates... Jul 07 2023 03:19:13 server2 maldet(2625697): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Jul 07 2023 03:19:13 server2 maldet(2625697): {update} hashing install files and checking against server... Jul 07 2023 03:19:13 server2 maldet(2625697): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Jul 07 2023 03:19:13 server2 maldet(2625697): {update} latest version already installed. Jul 07 2023 03:19:13 server2 maldet(2625840): {sigup} performing signature update check... Jul 07 2023 03:19:13 server2 maldet(2625840): {sigup} local signature set is version 202307041177952 Jul 07 2023 03:19:13 server2 maldet(2625840): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Jul 07 2023 03:19:13 server2 maldet(2625840): {sigup} new signature set 202307071878302 available Jul 07 2023 03:19:13 server2 maldet(2625840): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Jul 07 2023 03:19:13 server2 maldet(2625840): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Jul 07 2023 03:19:13 server2 maldet(2625840): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Jul 07 2023 03:19:13 server2 maldet(2625840): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Jul 07 2023 03:19:14 server2 maldet(2625840): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Jul 07 2023 03:19:14 server2 maldet(2625840): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Jul 07 2023 03:19:14 server2 maldet(2625840): {sigup} verified md5sum of maldet-sigpack.tgz Jul 07 2023 03:19:14 server2 maldet(2625840): {sigup} unpacked and installed maldet-sigpack.tgz Jul 07 2023 03:19:14 server2 maldet(2625840): {sigup} verified md5sum of maldet-clean.tgz Jul 07 2023 03:19:14 server2 maldet(2625840): {sigup} unpacked and installed maldet-clean.tgz Jul 07 2023 03:19:14 server2 maldet(2625840): {sigup} signature set update completed Jul 07 2023 03:19:14 server2 maldet(2625840): {sigup} 17637 signatures (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Jul 07 2023 03:19:14 server2 maldet(2626074): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Jul 07 2023 03:19:14 server2 maldet(2626074): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Jul 07 2023 03:19:14 server2 maldet(2626074): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Jul 07 2023 03:19:14 server2 maldet(2626074): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Jul 07 2023 03:19:14 server2 maldet(2626074): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Jul 07 2023 03:19:32 server2 maldet(2626074): {scan} file list completed in 18s, found 944 files... Jul 07 2023 03:19:32 server2 maldet(2626074): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Jul 07 2023 03:19:32 server2 maldet(2626074): {scan} scan of (944 files) in progress... Jul 07 2023 03:20:16 server2 maldet(2626074): {scan} scan completed on : files 944, malware hits 0, cleaned hits 0, time 62s Jul 07 2023 03:20:16 server2 maldet(2626074): {scan} scan report saved, to view run: maldet --report 230707-0319.2626074 Jul 08 2023 03:29:14 server2 maldet(2889607): {update} checking for available updates... Jul 08 2023 03:29:14 server2 maldet(2889607): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Jul 08 2023 03:29:14 server2 maldet(2889607): {update} hashing install files and checking against server... Jul 08 2023 03:29:14 server2 maldet(2889607): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Jul 08 2023 03:29:14 server2 maldet(2889607): {update} latest version already installed. Jul 08 2023 03:29:14 server2 maldet(2889740): {sigup} performing signature update check... Jul 08 2023 03:29:14 server2 maldet(2889740): {sigup} local signature set is version 202307071878302 Jul 08 2023 03:29:14 server2 maldet(2889740): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Jul 08 2023 03:29:14 server2 maldet(2889740): {sigup} latest signature set already installed Jul 08 2023 03:29:14 server2 maldet(2889858): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Jul 08 2023 03:29:14 server2 maldet(2889858): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Jul 08 2023 03:29:14 server2 maldet(2889858): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Jul 08 2023 03:29:14 server2 maldet(2889858): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Jul 08 2023 03:29:14 server2 maldet(2889858): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Jul 08 2023 03:29:30 server2 maldet(2889858): {scan} file list completed in 16s, found 826 files... Jul 08 2023 03:29:30 server2 maldet(2889858): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Jul 08 2023 03:29:30 server2 maldet(2889858): {scan} scan of (826 files) in progress... Jul 08 2023 03:30:05 server2 maldet(2889858): {scan} scan completed on : files 826, malware hits 0, cleaned hits 0, time 51s Jul 08 2023 03:30:05 server2 maldet(2889858): {scan} scan report saved, to view run: maldet --report 230708-0329.2889858 Jul 09 2023 03:50:50 server2 maldet(3138918): {update} checking for available updates... Jul 09 2023 03:50:50 server2 maldet(3138918): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Jul 09 2023 03:50:50 server2 maldet(3138918): {update} hashing install files and checking against server... Jul 09 2023 03:50:50 server2 maldet(3138918): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Jul 09 2023 03:50:50 server2 maldet(3138918): {update} latest version already installed. Jul 09 2023 03:50:50 server2 maldet(3139051): {sigup} performing signature update check... Jul 09 2023 03:50:50 server2 maldet(3139051): {sigup} local signature set is version 202307071878302 Jul 09 2023 03:50:50 server2 maldet(3139051): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Jul 09 2023 03:50:50 server2 maldet(3139051): {sigup} latest signature set already installed Jul 09 2023 03:50:50 server2 maldet(3139162): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Jul 09 2023 03:50:51 server2 maldet(3139162): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Jul 09 2023 03:50:51 server2 maldet(3139162): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Jul 09 2023 03:50:51 server2 maldet(3139162): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Jul 09 2023 03:50:51 server2 maldet(3139162): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Jul 09 2023 03:51:08 server2 maldet(3139162): {scan} file list completed in 17s, found 1225 files... Jul 09 2023 03:51:08 server2 maldet(3139162): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Jul 09 2023 03:51:08 server2 maldet(3139162): {scan} scan of (1225 files) in progress... Jul 09 2023 03:51:49 server2 maldet(3139162): {scan} scan completed on : files 1225, malware hits 0, cleaned hits 0, time 59s Jul 09 2023 03:51:49 server2 maldet(3139162): {scan} scan report saved, to view run: maldet --report 230709-0350.3139162 Jul 10 2023 03:09:52 server2 maldet(3377961): {update} checking for available updates... Jul 10 2023 03:09:52 server2 maldet(3377961): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Jul 10 2023 03:09:52 server2 maldet(3377961): {update} hashing install files and checking against server... Jul 10 2023 03:09:52 server2 maldet(3377961): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Jul 10 2023 03:09:52 server2 maldet(3377961): {update} latest version already installed. Jul 10 2023 03:09:52 server2 maldet(3378094): {sigup} performing signature update check... Jul 10 2023 03:09:52 server2 maldet(3378094): {sigup} local signature set is version 202307071878302 Jul 10 2023 03:09:52 server2 maldet(3378094): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Jul 10 2023 03:09:52 server2 maldet(3378094): {sigup} new signature set 202307102576578 available Jul 10 2023 03:09:52 server2 maldet(3378094): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Jul 10 2023 03:09:52 server2 maldet(3378094): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Jul 10 2023 03:09:52 server2 maldet(3378094): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Jul 10 2023 03:09:52 server2 maldet(3378094): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Jul 10 2023 03:09:52 server2 maldet(3378094): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Jul 10 2023 03:09:52 server2 maldet(3378094): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Jul 10 2023 03:09:52 server2 maldet(3378094): {sigup} verified md5sum of maldet-sigpack.tgz Jul 10 2023 03:09:52 server2 maldet(3378094): {sigup} unpacked and installed maldet-sigpack.tgz Jul 10 2023 03:09:53 server2 maldet(3378094): {sigup} verified md5sum of maldet-clean.tgz Jul 10 2023 03:09:53 server2 maldet(3378094): {sigup} unpacked and installed maldet-clean.tgz Jul 10 2023 03:09:53 server2 maldet(3378094): {sigup} signature set update completed Jul 10 2023 03:09:53 server2 maldet(3378094): {sigup} 17637 signatures (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Jul 10 2023 03:09:53 server2 maldet(3378322): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Jul 10 2023 03:09:53 server2 maldet(3378322): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Jul 10 2023 03:09:53 server2 maldet(3378322): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Jul 10 2023 03:09:53 server2 maldet(3378322): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Jul 10 2023 03:09:53 server2 maldet(3378322): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Jul 10 2023 03:10:14 server2 maldet(3378322): {scan} file list completed in 21s, found 897 files... Jul 10 2023 03:10:14 server2 maldet(3378322): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Jul 10 2023 03:10:14 server2 maldet(3378322): {scan} scan of (897 files) in progress... Jul 10 2023 03:10:50 server2 maldet(3378322): {scan} scan completed on : files 897, malware hits 0, cleaned hits 0, time 57s Jul 10 2023 03:10:50 server2 maldet(3378322): {scan} scan report saved, to view run: maldet --report 230710-0309.3378322 Jul 11 2023 03:30:38 server2 maldet(3639348): {update} checking for available updates... Jul 11 2023 03:30:38 server2 maldet(3639348): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Jul 11 2023 03:30:38 server2 maldet(3639348): {update} hashing install files and checking against server... Jul 11 2023 03:30:38 server2 maldet(3639348): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Jul 11 2023 03:30:38 server2 maldet(3639348): {update} latest version already installed. Jul 11 2023 03:30:38 server2 maldet(3639481): {sigup} performing signature update check... Jul 11 2023 03:30:38 server2 maldet(3639481): {sigup} local signature set is version 202307102576578 Jul 11 2023 03:30:38 server2 maldet(3639481): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Jul 11 2023 03:30:38 server2 maldet(3639481): {sigup} latest signature set already installed Jul 11 2023 03:30:38 server2 maldet(3639592): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Jul 11 2023 03:30:39 server2 maldet(3639592): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Jul 11 2023 03:30:39 server2 maldet(3639592): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Jul 11 2023 03:30:39 server2 maldet(3639592): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Jul 11 2023 03:30:39 server2 maldet(3639592): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Jul 11 2023 03:30:53 server2 maldet(3639592): {scan} file list completed in 14s, found 12374 files... Jul 11 2023 03:30:53 server2 maldet(3639592): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Jul 11 2023 03:30:53 server2 maldet(3639592): {scan} scan of (12374 files) in progress... Jul 11 2023 03:34:13 server2 maldet(3639592): {scan} scan completed on : files 12374, malware hits 0, cleaned hits 0, time 215s Jul 11 2023 03:34:13 server2 maldet(3639592): {scan} scan report saved, to view run: maldet --report 230711-0330.3639592 Jul 12 2023 03:53:06 server2 maldet(3905159): {update} checking for available updates... Jul 12 2023 03:53:06 server2 maldet(3905159): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Jul 12 2023 03:53:06 server2 maldet(3905159): {update} hashing install files and checking against server... Jul 12 2023 03:53:06 server2 maldet(3905159): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Jul 12 2023 03:53:06 server2 maldet(3905159): {update} latest version already installed. Jul 12 2023 03:53:06 server2 maldet(3905292): {sigup} performing signature update check... Jul 12 2023 03:53:06 server2 maldet(3905292): {sigup} local signature set is version 202307102576578 Jul 12 2023 03:53:06 server2 maldet(3905292): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Jul 12 2023 03:53:06 server2 maldet(3905292): {sigup} latest signature set already installed Jul 12 2023 03:53:07 server2 maldet(3905403): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Jul 12 2023 03:53:07 server2 maldet(3905403): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Jul 12 2023 03:53:07 server2 maldet(3905403): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Jul 12 2023 03:53:07 server2 maldet(3905403): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Jul 12 2023 03:53:07 server2 maldet(3905403): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Jul 12 2023 03:53:20 server2 maldet(3905403): {scan} file list completed in 13s, found 1002 files... Jul 12 2023 03:53:20 server2 maldet(3905403): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Jul 12 2023 03:53:20 server2 maldet(3905403): {scan} scan of (1002 files) in progress... Jul 12 2023 03:53:59 server2 maldet(3905403): {scan} scan completed on : files 1002, malware hits 0, cleaned hits 0, time 52s Jul 12 2023 03:53:59 server2 maldet(3905403): {scan} scan report saved, to view run: maldet --report 230712-0353.3905403 Jul 13 2023 03:27:16 server2 maldet(4168702): {update} checking for available updates... Jul 13 2023 03:27:17 server2 maldet(4168702): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Jul 13 2023 03:27:17 server2 maldet(4168702): {update} hashing install files and checking against server... Jul 13 2023 03:27:17 server2 maldet(4168702): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Jul 13 2023 03:27:17 server2 maldet(4168702): {update} latest version already installed. Jul 13 2023 03:27:17 server2 maldet(4168835): {sigup} performing signature update check... Jul 13 2023 03:27:17 server2 maldet(4168835): {sigup} local signature set is version 202307102576578 Jul 13 2023 03:27:17 server2 maldet(4168835): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Jul 13 2023 03:27:17 server2 maldet(4168835): {sigup} new signature set 202307133277687 available Jul 13 2023 03:27:17 server2 maldet(4168835): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Jul 13 2023 03:27:17 server2 maldet(4168835): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Jul 13 2023 03:27:17 server2 maldet(4168835): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Jul 13 2023 03:27:17 server2 maldet(4168835): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Jul 13 2023 03:27:17 server2 maldet(4168835): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Jul 13 2023 03:27:17 server2 maldet(4168835): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Jul 13 2023 03:27:17 server2 maldet(4168835): {sigup} verified md5sum of maldet-sigpack.tgz Jul 13 2023 03:27:17 server2 maldet(4168835): {sigup} unpacked and installed maldet-sigpack.tgz Jul 13 2023 03:27:17 server2 maldet(4168835): {sigup} verified md5sum of maldet-clean.tgz Jul 13 2023 03:27:17 server2 maldet(4168835): {sigup} unpacked and installed maldet-clean.tgz Jul 13 2023 03:27:17 server2 maldet(4168835): {sigup} signature set update completed Jul 13 2023 03:27:17 server2 maldet(4168835): {sigup} 17637 signatures (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Jul 13 2023 03:27:18 server2 maldet(4169063): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Jul 13 2023 03:27:18 server2 maldet(4169063): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Jul 13 2023 03:27:18 server2 maldet(4169063): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Jul 13 2023 03:27:18 server2 maldet(4169063): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Jul 13 2023 03:27:18 server2 maldet(4169063): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Jul 13 2023 03:27:36 server2 maldet(4169063): {scan} file list completed in 18s, found 962 files... Jul 13 2023 03:27:36 server2 maldet(4169063): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Jul 13 2023 03:27:36 server2 maldet(4169063): {scan} scan of (962 files) in progress... Jul 13 2023 03:28:25 server2 maldet(4169063): {scan} scan completed on : files 962, malware hits 0, cleaned hits 0, time 67s Jul 13 2023 03:28:25 server2 maldet(4169063): {scan} scan report saved, to view run: maldet --report 230713-0327.4169063 Jul 14 2023 03:47:18 server2 maldet(281418): {update} checking for available updates... Jul 14 2023 03:47:18 server2 maldet(281418): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Jul 14 2023 03:47:18 server2 maldet(281418): {update} hashing install files and checking against server... Jul 14 2023 03:47:18 server2 maldet(281418): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Jul 14 2023 03:47:18 server2 maldet(281418): {update} latest version already installed. Jul 14 2023 03:47:18 server2 maldet(281551): {sigup} performing signature update check... Jul 14 2023 03:47:18 server2 maldet(281551): {sigup} local signature set is version 202307133277687 Jul 14 2023 03:47:18 server2 maldet(281551): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Jul 14 2023 03:47:18 server2 maldet(281551): {sigup} latest signature set already installed Jul 14 2023 03:47:18 server2 maldet(281662): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Jul 14 2023 03:47:18 server2 maldet(281662): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Jul 14 2023 03:47:18 server2 maldet(281662): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Jul 14 2023 03:47:18 server2 maldet(281662): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Jul 14 2023 03:47:18 server2 maldet(281662): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Jul 14 2023 03:47:33 server2 maldet(281662): {scan} file list completed in 15s, found 900 files... Jul 14 2023 03:47:33 server2 maldet(281662): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Jul 14 2023 03:47:33 server2 maldet(281662): {scan} scan of (900 files) in progress... Jul 14 2023 03:48:14 server2 maldet(281662): {scan} scan completed on : files 900, malware hits 0, cleaned hits 0, time 56s Jul 14 2023 03:48:14 server2 maldet(281662): {scan} scan report saved, to view run: maldet --report 230714-0347.281662 Jul 15 2023 03:18:41 server2 maldet(524552): {update} checking for available updates... Jul 15 2023 03:18:42 server2 maldet(524552): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Jul 15 2023 03:18:42 server2 maldet(524552): {update} hashing install files and checking against server... Jul 15 2023 03:18:42 server2 maldet(524552): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Jul 15 2023 03:18:42 server2 maldet(524552): {update} latest version already installed. Jul 15 2023 03:18:42 server2 maldet(524685): {sigup} performing signature update check... Jul 15 2023 03:18:42 server2 maldet(524685): {sigup} local signature set is version 202307133277687 Jul 15 2023 03:18:42 server2 maldet(524685): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Jul 15 2023 03:18:42 server2 maldet(524685): {sigup} latest signature set already installed Jul 15 2023 03:18:42 server2 maldet(524796): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Jul 15 2023 03:18:42 server2 maldet(524796): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Jul 15 2023 03:18:42 server2 maldet(524796): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Jul 15 2023 03:18:42 server2 maldet(524796): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Jul 15 2023 03:18:42 server2 maldet(524796): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Jul 15 2023 03:18:56 server2 maldet(524796): {scan} file list completed in 14s, found 5617 files... Jul 15 2023 03:18:56 server2 maldet(524796): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Jul 15 2023 03:18:56 server2 maldet(524796): {scan} scan of (5617 files) in progress... Jul 15 2023 03:20:32 server2 maldet(524796): {scan} scan completed on : files 5617, malware hits 0, cleaned hits 0, time 110s Jul 15 2023 03:20:32 server2 maldet(524796): {scan} scan report saved, to view run: maldet --report 230715-0318.524796 Jul 16 2023 03:13:53 server2 maldet(790628): {update} checking for available updates... Jul 16 2023 03:13:53 server2 maldet(790628): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Jul 16 2023 03:13:53 server2 maldet(790628): {update} hashing install files and checking against server... Jul 16 2023 03:13:53 server2 maldet(790628): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Jul 16 2023 03:13:53 server2 maldet(790628): {update} latest version already installed. Jul 16 2023 03:13:53 server2 maldet(790761): {sigup} performing signature update check... Jul 16 2023 03:13:53 server2 maldet(790761): {sigup} local signature set is version 202307133277687 Jul 16 2023 03:13:53 server2 maldet(790761): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Jul 16 2023 03:13:53 server2 maldet(790761): {sigup} new signature set 20230716521865 available Jul 16 2023 03:13:53 server2 maldet(790761): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Jul 16 2023 03:13:53 server2 maldet(790761): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Jul 16 2023 03:13:53 server2 maldet(790761): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Jul 16 2023 03:13:53 server2 maldet(790761): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Jul 16 2023 03:13:53 server2 maldet(790761): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Jul 16 2023 03:13:53 server2 maldet(790761): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Jul 16 2023 03:13:53 server2 maldet(790761): {sigup} verified md5sum of maldet-sigpack.tgz Jul 16 2023 03:13:54 server2 maldet(790761): {sigup} unpacked and installed maldet-sigpack.tgz Jul 16 2023 03:13:54 server2 maldet(790761): {sigup} verified md5sum of maldet-clean.tgz Jul 16 2023 03:13:54 server2 maldet(790761): {sigup} unpacked and installed maldet-clean.tgz Jul 16 2023 03:13:54 server2 maldet(790761): {sigup} signature set update completed Jul 16 2023 03:13:54 server2 maldet(790761): {sigup} 17637 signatures (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Jul 16 2023 03:13:54 server2 maldet(790990): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Jul 16 2023 03:13:54 server2 maldet(790990): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Jul 16 2023 03:13:54 server2 maldet(790990): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Jul 16 2023 03:13:54 server2 maldet(790990): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Jul 16 2023 03:13:54 server2 maldet(790990): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Jul 16 2023 03:14:10 server2 maldet(790990): {scan} file list completed in 16s, found 1063 files... Jul 16 2023 03:14:10 server2 maldet(790990): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Jul 16 2023 03:14:10 server2 maldet(790990): {scan} scan of (1063 files) in progress... Jul 16 2023 03:14:57 server2 maldet(790990): {scan} scan completed on : files 1063, malware hits 0, cleaned hits 0, time 63s Jul 16 2023 03:14:57 server2 maldet(790990): {scan} scan report saved, to view run: maldet --report 230716-0313.790990 Jul 17 2023 03:55:01 server2 maldet(1048151): {update} checking for available updates... Jul 17 2023 03:55:01 server2 maldet(1048151): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Jul 17 2023 03:55:01 server2 maldet(1048151): {update} hashing install files and checking against server... Jul 17 2023 03:55:02 server2 maldet(1048151): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Jul 17 2023 03:55:02 server2 maldet(1048151): {update} latest version already installed. Jul 17 2023 03:55:02 server2 maldet(1048425): {sigup} performing signature update check... Jul 17 2023 03:55:02 server2 maldet(1048425): {sigup} local signature set is version 20230716521865 Jul 17 2023 03:55:02 server2 maldet(1048425): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Jul 17 2023 03:55:02 server2 maldet(1048425): {sigup} latest signature set already installed Jul 17 2023 03:55:03 server2 maldet(1048554): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Jul 17 2023 03:55:03 server2 maldet(1048554): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Jul 17 2023 03:55:03 server2 maldet(1048554): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Jul 17 2023 03:55:03 server2 maldet(1048554): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Jul 17 2023 03:55:03 server2 maldet(1048554): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Jul 17 2023 03:55:17 server2 maldet(1048554): {scan} file list completed in 14s, found 1458 files... Jul 17 2023 03:55:17 server2 maldet(1048554): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Jul 17 2023 03:55:17 server2 maldet(1048554): {scan} scan of (1458 files) in progress... Jul 17 2023 03:56:04 server2 maldet(1048554): {scan} scan completed on : files 1458, malware hits 0, cleaned hits 0, time 61s Jul 17 2023 03:56:04 server2 maldet(1048554): {scan} scan report saved, to view run: maldet --report 230717-0355.1048554 Jul 18 2023 03:37:12 server2 maldet(1290030): {update} checking for available updates... Jul 18 2023 03:37:12 server2 maldet(1290030): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Jul 18 2023 03:37:12 server2 maldet(1290030): {update} hashing install files and checking against server... Jul 18 2023 03:37:12 server2 maldet(1290030): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Jul 18 2023 03:37:12 server2 maldet(1290030): {update} latest version already installed. Jul 18 2023 03:37:12 server2 maldet(1290163): {sigup} performing signature update check... Jul 18 2023 03:37:12 server2 maldet(1290163): {sigup} local signature set is version 20230716521865 Jul 18 2023 03:37:13 server2 maldet(1290163): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Jul 18 2023 03:37:13 server2 maldet(1290163): {sigup} latest signature set already installed Jul 18 2023 03:37:13 server2 maldet(1290274): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Jul 18 2023 03:37:13 server2 maldet(1290274): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Jul 18 2023 03:37:13 server2 maldet(1290274): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Jul 18 2023 03:37:13 server2 maldet(1290274): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Jul 18 2023 03:37:13 server2 maldet(1290274): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Jul 18 2023 03:37:29 server2 maldet(1290274): {scan} file list completed in 16s, found 2515 files... Jul 18 2023 03:37:29 server2 maldet(1290274): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Jul 18 2023 03:37:29 server2 maldet(1290274): {scan} scan of (2515 files) in progress... Jul 18 2023 03:38:39 server2 maldet(1290274): {scan} scan completed on : files 2515, malware hits 0, cleaned hits 0, time 86s Jul 18 2023 03:38:39 server2 maldet(1290274): {scan} scan report saved, to view run: maldet --report 230718-0337.1290274 Jul 19 2023 03:50:32 server2 maldet(1550446): {update} checking for available updates... Jul 19 2023 03:50:32 server2 maldet(1550446): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Jul 19 2023 03:50:32 server2 maldet(1550446): {update} hashing install files and checking against server... Jul 19 2023 03:50:32 server2 maldet(1550446): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Jul 19 2023 03:50:32 server2 maldet(1550446): {update} latest version already installed. Jul 19 2023 03:50:32 server2 maldet(1550579): {sigup} performing signature update check... Jul 19 2023 03:50:32 server2 maldet(1550579): {sigup} local signature set is version 20230716521865 Jul 19 2023 03:50:32 server2 maldet(1550579): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Jul 19 2023 03:50:32 server2 maldet(1550579): {sigup} new signature set 202307191228844 available Jul 19 2023 03:50:32 server2 maldet(1550579): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Jul 19 2023 03:50:32 server2 maldet(1550579): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Jul 19 2023 03:50:32 server2 maldet(1550579): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Jul 19 2023 03:50:32 server2 maldet(1550579): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Jul 19 2023 03:50:32 server2 maldet(1550579): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Jul 19 2023 03:50:33 server2 maldet(1550579): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Jul 19 2023 03:50:33 server2 maldet(1550579): {sigup} verified md5sum of maldet-sigpack.tgz Jul 19 2023 03:50:33 server2 maldet(1550579): {sigup} unpacked and installed maldet-sigpack.tgz Jul 19 2023 03:50:33 server2 maldet(1550579): {sigup} verified md5sum of maldet-clean.tgz Jul 19 2023 03:50:33 server2 maldet(1550579): {sigup} unpacked and installed maldet-clean.tgz Jul 19 2023 03:50:33 server2 maldet(1550579): {sigup} signature set update completed Jul 19 2023 03:50:33 server2 maldet(1550579): {sigup} 17637 signatures (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Jul 19 2023 03:50:33 server2 maldet(1550807): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Jul 19 2023 03:50:33 server2 maldet(1550807): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Jul 19 2023 03:50:33 server2 maldet(1550807): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Jul 19 2023 03:50:33 server2 maldet(1550807): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Jul 19 2023 03:50:33 server2 maldet(1550807): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Jul 19 2023 03:50:48 server2 maldet(1550807): {scan} file list completed in 15s, found 849 files... Jul 19 2023 03:50:48 server2 maldet(1550807): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Jul 19 2023 03:50:48 server2 maldet(1550807): {scan} scan of (849 files) in progress... Jul 19 2023 03:51:32 server2 maldet(1550807): {scan} scan completed on : files 849, malware hits 0, cleaned hits 0, time 59s Jul 19 2023 03:51:32 server2 maldet(1550807): {scan} scan report saved, to view run: maldet --report 230719-0350.1550807 Jul 20 2023 03:15:14 server2 maldet(1802163): {update} checking for available updates... Jul 20 2023 03:15:14 server2 maldet(1802163): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Jul 20 2023 03:15:14 server2 maldet(1802163): {update} hashing install files and checking against server... Jul 20 2023 03:15:14 server2 maldet(1802163): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Jul 20 2023 03:15:14 server2 maldet(1802163): {update} latest version already installed. Jul 20 2023 03:15:14 server2 maldet(1802297): {sigup} performing signature update check... Jul 20 2023 03:15:14 server2 maldet(1802297): {sigup} local signature set is version 202307191228844 Jul 20 2023 03:15:15 server2 maldet(1802297): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Jul 20 2023 03:15:15 server2 maldet(1802297): {sigup} latest signature set already installed Jul 20 2023 03:15:15 server2 maldet(1802408): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Jul 20 2023 03:15:15 server2 maldet(1802408): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Jul 20 2023 03:15:15 server2 maldet(1802408): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Jul 20 2023 03:15:15 server2 maldet(1802408): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Jul 20 2023 03:15:15 server2 maldet(1802408): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Jul 20 2023 03:15:38 server2 maldet(1802408): {scan} file list completed in 23s, found 658 files... Jul 20 2023 03:15:38 server2 maldet(1802408): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Jul 20 2023 03:15:38 server2 maldet(1802408): {scan} scan of (658 files) in progress... Jul 20 2023 03:16:04 server2 maldet(1802408): {scan} scan completed on : files 658, malware hits 0, cleaned hits 0, time 49s Jul 20 2023 03:16:04 server2 maldet(1802408): {scan} scan report saved, to view run: maldet --report 230720-0315.1802408 Jul 21 2023 03:29:09 server2 maldet(2112915): {update} checking for available updates... Jul 21 2023 03:29:09 server2 maldet(2112915): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Jul 21 2023 03:29:09 server2 maldet(2112915): {update} hashing install files and checking against server... Jul 21 2023 03:29:09 server2 maldet(2112915): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Jul 21 2023 03:29:09 server2 maldet(2112915): {update} latest version already installed. Jul 21 2023 03:29:09 server2 maldet(2113049): {sigup} performing signature update check... Jul 21 2023 03:29:09 server2 maldet(2113049): {sigup} local signature set is version 202307191228844 Jul 21 2023 03:29:10 server2 maldet(2113049): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Jul 21 2023 03:29:10 server2 maldet(2113049): {sigup} latest signature set already installed Jul 21 2023 03:29:10 server2 maldet(2113160): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Jul 21 2023 03:29:10 server2 maldet(2113160): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Jul 21 2023 03:29:10 server2 maldet(2113160): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Jul 21 2023 03:29:10 server2 maldet(2113160): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Jul 21 2023 03:29:10 server2 maldet(2113160): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Jul 21 2023 03:29:30 server2 maldet(2113160): {scan} file list completed in 20s, found 1447 files... Jul 21 2023 03:29:31 server2 maldet(2113160): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Jul 21 2023 03:29:31 server2 maldet(2113160): {scan} scan of (1447 files) in progress... Jul 21 2023 03:30:47 server2 maldet(2113160): {scan} scan completed on : files 1447, malware hits 0, cleaned hits 0, time 97s Jul 21 2023 03:30:47 server2 maldet(2113160): {scan} scan report saved, to view run: maldet --report 230721-0329.2113160 Jul 22 2023 03:32:58 server2 maldet(2361743): {update} checking for available updates... Jul 22 2023 03:32:58 server2 maldet(2361743): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Jul 22 2023 03:32:58 server2 maldet(2361743): {update} hashing install files and checking against server... Jul 22 2023 03:32:58 server2 maldet(2361743): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Jul 22 2023 03:32:58 server2 maldet(2361743): {update} latest version already installed. Jul 22 2023 03:32:58 server2 maldet(2361876): {sigup} performing signature update check... Jul 22 2023 03:32:58 server2 maldet(2361876): {sigup} local signature set is version 202307191228844 Jul 22 2023 03:32:58 server2 maldet(2361876): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Jul 22 2023 03:32:58 server2 maldet(2361876): {sigup} new signature set 202307221934471 available Jul 22 2023 03:32:58 server2 maldet(2361876): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Jul 22 2023 03:32:59 server2 maldet(2361876): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Jul 22 2023 03:32:59 server2 maldet(2361876): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Jul 22 2023 03:32:59 server2 maldet(2361876): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Jul 22 2023 03:32:59 server2 maldet(2361876): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Jul 22 2023 03:32:59 server2 maldet(2361876): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Jul 22 2023 03:32:59 server2 maldet(2361876): {sigup} verified md5sum of maldet-sigpack.tgz Jul 22 2023 03:32:59 server2 maldet(2361876): {sigup} unpacked and installed maldet-sigpack.tgz Jul 22 2023 03:32:59 server2 maldet(2361876): {sigup} verified md5sum of maldet-clean.tgz Jul 22 2023 03:32:59 server2 maldet(2361876): {sigup} unpacked and installed maldet-clean.tgz Jul 22 2023 03:32:59 server2 maldet(2361876): {sigup} signature set update completed Jul 22 2023 03:32:59 server2 maldet(2361876): {sigup} 17637 signatures (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Jul 22 2023 03:32:59 server2 maldet(2362105): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Jul 22 2023 03:33:00 server2 maldet(2362105): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Jul 22 2023 03:33:00 server2 maldet(2362105): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Jul 22 2023 03:33:00 server2 maldet(2362105): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Jul 22 2023 03:33:00 server2 maldet(2362105): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Jul 22 2023 03:33:23 server2 maldet(2362105): {scan} file list completed in 23s, found 973 files... Jul 22 2023 03:33:23 server2 maldet(2362105): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Jul 22 2023 03:33:23 server2 maldet(2362105): {scan} scan of (973 files) in progress... Jul 22 2023 03:34:06 server2 maldet(2362105): {scan} scan completed on : files 973, malware hits 0, cleaned hits 0, time 67s Jul 22 2023 03:34:07 server2 maldet(2362105): {scan} scan report saved, to view run: maldet --report 230722-0332.2362105 Jul 23 2023 03:15:59 server2 maldet(2615603): {update} checking for available updates... Jul 23 2023 03:15:59 server2 maldet(2615603): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Jul 23 2023 03:15:59 server2 maldet(2615603): {update} hashing install files and checking against server... Jul 23 2023 03:15:59 server2 maldet(2615603): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Jul 23 2023 03:15:59 server2 maldet(2615603): {update} latest version already installed. Jul 23 2023 03:15:59 server2 maldet(2615736): {sigup} performing signature update check... Jul 23 2023 03:15:59 server2 maldet(2615736): {sigup} local signature set is version 202307221934471 Jul 23 2023 03:15:59 server2 maldet(2615736): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Jul 23 2023 03:15:59 server2 maldet(2615736): {sigup} latest signature set already installed Jul 23 2023 03:15:59 server2 maldet(2615847): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Jul 23 2023 03:16:00 server2 maldet(2615847): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Jul 23 2023 03:16:00 server2 maldet(2615847): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Jul 23 2023 03:16:00 server2 maldet(2615847): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Jul 23 2023 03:16:00 server2 maldet(2615847): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Jul 23 2023 03:16:17 server2 maldet(2615847): {scan} file list completed in 17s, found 625 files... Jul 23 2023 03:16:17 server2 maldet(2615847): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Jul 23 2023 03:16:17 server2 maldet(2615847): {scan} scan of (625 files) in progress... Jul 23 2023 03:16:47 server2 maldet(2615847): {scan} scan completed on : files 625, malware hits 0, cleaned hits 0, time 48s Jul 23 2023 03:16:47 server2 maldet(2615847): {scan} scan report saved, to view run: maldet --report 230723-0315.2615847 Jul 24 2023 03:54:28 server2 maldet(2874904): {update} checking for available updates... Jul 24 2023 03:54:28 server2 maldet(2874904): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Jul 24 2023 03:54:28 server2 maldet(2874904): {update} hashing install files and checking against server... Jul 24 2023 03:54:28 server2 maldet(2874904): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Jul 24 2023 03:54:28 server2 maldet(2874904): {update} latest version already installed. Jul 24 2023 03:54:28 server2 maldet(2875037): {sigup} performing signature update check... Jul 24 2023 03:54:28 server2 maldet(2875037): {sigup} local signature set is version 202307221934471 Jul 24 2023 03:54:28 server2 maldet(2875037): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Jul 24 2023 03:54:28 server2 maldet(2875037): {sigup} latest signature set already installed Jul 24 2023 03:54:28 server2 maldet(2875148): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Jul 24 2023 03:54:28 server2 maldet(2875148): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Jul 24 2023 03:54:28 server2 maldet(2875148): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Jul 24 2023 03:54:28 server2 maldet(2875148): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Jul 24 2023 03:54:28 server2 maldet(2875148): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Jul 24 2023 03:54:43 server2 maldet(2875148): {scan} file list completed in 15s, found 434 files... Jul 24 2023 03:54:43 server2 maldet(2875148): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Jul 24 2023 03:54:43 server2 maldet(2875148): {scan} scan of (434 files) in progress... Jul 24 2023 03:54:53 server2 maldet(2875148): {scan} scan completed on : files 434, malware hits 0, cleaned hits 0, time 25s Jul 24 2023 03:54:53 server2 maldet(2875148): {scan} scan report saved, to view run: maldet --report 230724-0354.2875148 Jul 25 2023 03:28:37 server2 maldet(3151618): {update} checking for available updates... Jul 25 2023 03:28:37 server2 maldet(3151618): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Jul 25 2023 03:28:37 server2 maldet(3151618): {update} hashing install files and checking against server... Jul 25 2023 03:28:37 server2 maldet(3151618): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Jul 25 2023 03:28:37 server2 maldet(3151618): {update} latest version already installed. Jul 25 2023 03:28:37 server2 maldet(3151752): {sigup} performing signature update check... Jul 25 2023 03:28:37 server2 maldet(3151752): {sigup} local signature set is version 202307221934471 Jul 25 2023 03:28:37 server2 maldet(3151752): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Jul 25 2023 03:28:37 server2 maldet(3151752): {sigup} new signature set 202307252752593 available Jul 25 2023 03:28:37 server2 maldet(3151752): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Jul 25 2023 03:28:37 server2 maldet(3151752): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Jul 25 2023 03:28:37 server2 maldet(3151752): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Jul 25 2023 03:28:37 server2 maldet(3151752): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Jul 25 2023 03:28:37 server2 maldet(3151752): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Jul 25 2023 03:28:38 server2 maldet(3151752): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Jul 25 2023 03:28:38 server2 maldet(3151752): {sigup} verified md5sum of maldet-sigpack.tgz Jul 25 2023 03:28:38 server2 maldet(3151752): {sigup} unpacked and installed maldet-sigpack.tgz Jul 25 2023 03:28:38 server2 maldet(3151752): {sigup} verified md5sum of maldet-clean.tgz Jul 25 2023 03:28:38 server2 maldet(3151752): {sigup} unpacked and installed maldet-clean.tgz Jul 25 2023 03:28:38 server2 maldet(3151752): {sigup} signature set update completed Jul 25 2023 03:28:38 server2 maldet(3151752): {sigup} 17637 signatures (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Jul 25 2023 03:28:38 server2 maldet(3151982): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Jul 25 2023 03:28:38 server2 maldet(3151982): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Jul 25 2023 03:28:38 server2 maldet(3151982): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Jul 25 2023 03:28:38 server2 maldet(3151982): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Jul 25 2023 03:28:38 server2 maldet(3151982): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Jul 25 2023 03:28:53 server2 maldet(3151982): {scan} file list completed in 15s, found 1260 files... Jul 25 2023 03:28:53 server2 maldet(3151982): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Jul 25 2023 03:28:53 server2 maldet(3151982): {scan} scan of (1260 files) in progress... Jul 25 2023 03:29:57 server2 maldet(3151982): {scan} scan completed on : files 1260, malware hits 0, cleaned hits 0, time 79s Jul 25 2023 03:29:58 server2 maldet(3151982): {scan} scan report saved, to view run: maldet --report 230725-0328.3151982 Jul 26 2023 03:30:43 server2 maldet(3412174): {update} checking for available updates... Jul 26 2023 03:30:43 server2 maldet(3412174): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Jul 26 2023 03:30:43 server2 maldet(3412174): {update} hashing install files and checking against server... Jul 26 2023 03:30:43 server2 maldet(3412174): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Jul 26 2023 03:30:43 server2 maldet(3412174): {update} latest version already installed. Jul 26 2023 03:30:43 server2 maldet(3412307): {sigup} performing signature update check... Jul 26 2023 03:30:43 server2 maldet(3412307): {sigup} local signature set is version 202307252752593 Jul 26 2023 03:30:43 server2 maldet(3412307): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Jul 26 2023 03:30:44 server2 maldet(3412307): {sigup} latest signature set already installed Jul 26 2023 03:30:44 server2 maldet(3412418): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Jul 26 2023 03:30:44 server2 maldet(3412418): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Jul 26 2023 03:30:44 server2 maldet(3412418): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Jul 26 2023 03:30:44 server2 maldet(3412418): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Jul 26 2023 03:30:44 server2 maldet(3412418): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Jul 26 2023 03:30:53 server2 maldet(3412418): {scan} file list completed in 9s, found 901 files... Jul 26 2023 03:30:53 server2 maldet(3412418): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Jul 26 2023 03:30:53 server2 maldet(3412418): {scan} scan of (901 files) in progress... Jul 26 2023 03:31:26 server2 maldet(3412418): {scan} scan completed on : files 901, malware hits 0, cleaned hits 0, time 42s Jul 26 2023 03:31:26 server2 maldet(3412418): {scan} scan report saved, to view run: maldet --report 230726-0330.3412418 Jul 27 2023 03:29:57 server2 maldet(3681502): {update} checking for available updates... Jul 27 2023 03:29:57 server2 maldet(3681502): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Jul 27 2023 03:29:57 server2 maldet(3681502): {update} hashing install files and checking against server... Jul 27 2023 03:29:57 server2 maldet(3681502): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Jul 27 2023 03:29:58 server2 maldet(3681502): {update} latest version already installed. Jul 27 2023 03:29:58 server2 maldet(3681635): {sigup} performing signature update check... Jul 27 2023 03:29:58 server2 maldet(3681635): {sigup} local signature set is version 202307252752593 Jul 27 2023 03:29:58 server2 maldet(3681635): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Jul 27 2023 03:29:58 server2 maldet(3681635): {sigup} latest signature set already installed Jul 27 2023 03:29:58 server2 maldet(3681746): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Jul 27 2023 03:29:58 server2 maldet(3681746): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Jul 27 2023 03:29:58 server2 maldet(3681746): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Jul 27 2023 03:29:58 server2 maldet(3681746): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Jul 27 2023 03:29:58 server2 maldet(3681746): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Jul 27 2023 03:30:18 server2 maldet(3681746): {scan} file list completed in 20s, found 1246 files... Jul 27 2023 03:30:18 server2 maldet(3681746): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Jul 27 2023 03:30:18 server2 maldet(3681746): {scan} scan of (1246 files) in progress... Jul 27 2023 03:31:07 server2 maldet(3681746): {scan} scan completed on : files 1246, malware hits 0, cleaned hits 0, time 69s Jul 27 2023 03:31:07 server2 maldet(3681746): {scan} scan report saved, to view run: maldet --report 230727-0329.3681746 Jul 28 2023 03:09:05 server2 maldet(3944171): {update} checking for available updates... Jul 28 2023 03:09:05 server2 maldet(3944171): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Jul 28 2023 03:09:05 server2 maldet(3944171): {update} hashing install files and checking against server... Jul 28 2023 03:09:05 server2 maldet(3944171): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Jul 28 2023 03:09:05 server2 maldet(3944171): {update} latest version already installed. Jul 28 2023 03:09:05 server2 maldet(3944304): {sigup} performing signature update check... Jul 28 2023 03:09:06 server2 maldet(3944304): {sigup} local signature set is version 202307252752593 Jul 28 2023 03:09:06 server2 maldet(3944304): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Jul 28 2023 03:09:06 server2 maldet(3944304): {sigup} new signature set 202307283459186 available Jul 28 2023 03:09:06 server2 maldet(3944304): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Jul 28 2023 03:09:06 server2 maldet(3944304): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Jul 28 2023 03:09:06 server2 maldet(3944304): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Jul 28 2023 03:09:06 server2 maldet(3944304): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Jul 28 2023 03:09:06 server2 maldet(3944304): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Jul 28 2023 03:09:06 server2 maldet(3944304): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Jul 28 2023 03:09:06 server2 maldet(3944304): {sigup} verified md5sum of maldet-sigpack.tgz Jul 28 2023 03:09:06 server2 maldet(3944304): {sigup} unpacked and installed maldet-sigpack.tgz Jul 28 2023 03:09:06 server2 maldet(3944304): {sigup} verified md5sum of maldet-clean.tgz Jul 28 2023 03:09:06 server2 maldet(3944304): {sigup} unpacked and installed maldet-clean.tgz Jul 28 2023 03:09:06 server2 maldet(3944304): {sigup} signature set update completed Jul 28 2023 03:09:06 server2 maldet(3944304): {sigup} 17637 signatures (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Jul 28 2023 03:09:06 server2 maldet(3944532): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Jul 28 2023 03:09:07 server2 maldet(3944532): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Jul 28 2023 03:09:07 server2 maldet(3944532): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Jul 28 2023 03:09:07 server2 maldet(3944532): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Jul 28 2023 03:09:07 server2 maldet(3944532): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Jul 28 2023 03:09:26 server2 maldet(3944532): {scan} file list completed in 19s, found 1570 files... Jul 28 2023 03:09:26 server2 maldet(3944532): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Jul 28 2023 03:09:26 server2 maldet(3944532): {scan} scan of (1570 files) in progress... Jul 28 2023 03:10:50 server2 maldet(3944532): {scan} scan completed on : files 1570, malware hits 0, cleaned hits 0, time 104s Jul 28 2023 03:10:51 server2 maldet(3944532): {scan} scan report saved, to view run: maldet --report 230728-0309.3944532 Jul 29 2023 03:55:43 server2 maldet(2094): {update} checking for available updates... Jul 29 2023 03:55:43 server2 maldet(2094): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Jul 29 2023 03:55:43 server2 maldet(2094): {update} hashing install files and checking against server... Jul 29 2023 03:55:43 server2 maldet(2094): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Jul 29 2023 03:55:43 server2 maldet(2094): {update} latest version already installed. Jul 29 2023 03:55:44 server2 maldet(2227): {sigup} performing signature update check... Jul 29 2023 03:55:44 server2 maldet(2227): {sigup} local signature set is version 202307283459186 Jul 29 2023 03:55:44 server2 maldet(2227): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Jul 29 2023 03:55:44 server2 maldet(2227): {sigup} latest signature set already installed Jul 29 2023 03:55:44 server2 maldet(2338): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Jul 29 2023 03:55:44 server2 maldet(2338): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Jul 29 2023 03:55:44 server2 maldet(2338): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Jul 29 2023 03:55:44 server2 maldet(2338): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Jul 29 2023 03:55:44 server2 maldet(2338): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Jul 29 2023 03:56:01 server2 maldet(2338): {scan} file list completed in 17s, found 3096 files... Jul 29 2023 03:56:01 server2 maldet(2338): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Jul 29 2023 03:56:01 server2 maldet(2338): {scan} scan of (3096 files) in progress... Jul 29 2023 03:58:16 server2 maldet(2338): {scan} scan completed on : files 3096, malware hits 0, cleaned hits 0, time 152s Jul 29 2023 03:58:16 server2 maldet(2338): {scan} scan report saved, to view run: maldet --report 230729-0355.2338 Jul 30 2023 03:43:44 server2 maldet(247208): {update} checking for available updates... Jul 30 2023 03:43:44 server2 maldet(247208): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Jul 30 2023 03:43:44 server2 maldet(247208): {update} hashing install files and checking against server... Jul 30 2023 03:43:44 server2 maldet(247208): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Jul 30 2023 03:43:44 server2 maldet(247208): {update} latest version already installed. Jul 30 2023 03:43:44 server2 maldet(247343): {sigup} performing signature update check... Jul 30 2023 03:43:44 server2 maldet(247343): {sigup} local signature set is version 202307283459186 Jul 30 2023 03:43:44 server2 maldet(247343): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Jul 30 2023 03:43:44 server2 maldet(247343): {sigup} latest signature set already installed Jul 30 2023 03:43:45 server2 maldet(247454): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Jul 30 2023 03:43:45 server2 maldet(247454): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Jul 30 2023 03:43:45 server2 maldet(247454): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Jul 30 2023 03:43:45 server2 maldet(247454): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Jul 30 2023 03:43:45 server2 maldet(247454): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Jul 30 2023 03:44:05 server2 maldet(247454): {scan} file list completed in 20s, found 880 files... Jul 30 2023 03:44:05 server2 maldet(247454): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Jul 30 2023 03:44:05 server2 maldet(247454): {scan} scan of (880 files) in progress... Jul 30 2023 03:44:46 server2 maldet(247454): {scan} scan completed on : files 880, malware hits 0, cleaned hits 0, time 61s Jul 30 2023 03:44:46 server2 maldet(247454): {scan} scan report saved, to view run: maldet --report 230730-0343.247454 Jul 31 2023 03:18:51 server2 maldet(487412): {update} checking for available updates... Jul 31 2023 03:18:51 server2 maldet(487412): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Jul 31 2023 03:18:51 server2 maldet(487412): {update} hashing install files and checking against server... Jul 31 2023 03:18:51 server2 maldet(487412): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Jul 31 2023 03:18:51 server2 maldet(487412): {update} latest version already installed. Jul 31 2023 03:18:51 server2 maldet(487545): {sigup} performing signature update check... Jul 31 2023 03:18:51 server2 maldet(487545): {sigup} local signature set is version 202307283459186 Jul 31 2023 03:18:52 server2 maldet(487545): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Jul 31 2023 03:18:52 server2 maldet(487545): {sigup} new signature set 20230731491014 available Jul 31 2023 03:18:52 server2 maldet(487545): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Jul 31 2023 03:18:52 server2 maldet(487545): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Jul 31 2023 03:18:52 server2 maldet(487545): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Jul 31 2023 03:18:52 server2 maldet(487545): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Jul 31 2023 03:18:52 server2 maldet(487545): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Jul 31 2023 03:18:52 server2 maldet(487545): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Jul 31 2023 03:18:52 server2 maldet(487545): {sigup} verified md5sum of maldet-sigpack.tgz Jul 31 2023 03:18:52 server2 maldet(487545): {sigup} unpacked and installed maldet-sigpack.tgz Jul 31 2023 03:18:52 server2 maldet(487545): {sigup} verified md5sum of maldet-clean.tgz Jul 31 2023 03:18:52 server2 maldet(487545): {sigup} unpacked and installed maldet-clean.tgz Jul 31 2023 03:18:52 server2 maldet(487545): {sigup} signature set update completed Jul 31 2023 03:18:52 server2 maldet(487545): {sigup} 17637 signatures (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Jul 31 2023 03:18:52 server2 maldet(487776): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Jul 31 2023 03:18:52 server2 maldet(487776): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Jul 31 2023 03:18:52 server2 maldet(487776): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Jul 31 2023 03:18:52 server2 maldet(487776): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Jul 31 2023 03:18:52 server2 maldet(487776): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Jul 31 2023 03:19:11 server2 maldet(487776): {scan} file list completed in 19s, found 828 files... Jul 31 2023 03:19:11 server2 maldet(487776): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Jul 31 2023 03:19:11 server2 maldet(487776): {scan} scan of (828 files) in progress... Jul 31 2023 03:19:49 server2 maldet(487776): {scan} scan completed on : files 828, malware hits 0, cleaned hits 0, time 57s Jul 31 2023 03:19:49 server2 maldet(487776): {scan} scan report saved, to view run: maldet --report 230731-0318.487776 Aug 01 2023 03:20:33 server2 maldet(723946): {update} checking for available updates... Aug 01 2023 03:20:34 server2 maldet(723946): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Aug 01 2023 03:20:34 server2 maldet(723946): {update} hashing install files and checking against server... Aug 01 2023 03:20:34 server2 maldet(723946): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Aug 01 2023 03:20:34 server2 maldet(723946): {update} latest version already installed. Aug 01 2023 03:20:34 server2 maldet(724081): {sigup} performing signature update check... Aug 01 2023 03:20:34 server2 maldet(724081): {sigup} local signature set is version 20230731491014 Aug 01 2023 03:20:34 server2 maldet(724081): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Aug 01 2023 03:20:34 server2 maldet(724081): {sigup} new signature set 202308011141420 available Aug 01 2023 03:20:34 server2 maldet(724081): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Aug 01 2023 03:20:34 server2 maldet(724081): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Aug 01 2023 03:20:34 server2 maldet(724081): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Aug 01 2023 03:20:34 server2 maldet(724081): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Aug 01 2023 03:20:34 server2 maldet(724081): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Aug 01 2023 03:20:34 server2 maldet(724081): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Aug 01 2023 03:20:34 server2 maldet(724081): {sigup} verified md5sum of maldet-sigpack.tgz Aug 01 2023 03:20:34 server2 maldet(724081): {sigup} unpacked and installed maldet-sigpack.tgz Aug 01 2023 03:20:34 server2 maldet(724081): {sigup} verified md5sum of maldet-clean.tgz Aug 01 2023 03:20:34 server2 maldet(724081): {sigup} unpacked and installed maldet-clean.tgz Aug 01 2023 03:20:34 server2 maldet(724081): {sigup} signature set update completed Aug 01 2023 03:20:34 server2 maldet(724081): {sigup} 17637 signatures (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Aug 01 2023 03:20:35 server2 maldet(724309): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Aug 01 2023 03:20:35 server2 maldet(724309): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Aug 01 2023 03:20:35 server2 maldet(724309): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Aug 01 2023 03:20:35 server2 maldet(724309): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Aug 01 2023 03:20:35 server2 maldet(724309): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Aug 01 2023 03:20:56 server2 maldet(724309): {scan} file list completed in 21s, found 2556 files... Aug 01 2023 03:20:56 server2 maldet(724309): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Aug 01 2023 03:20:56 server2 maldet(724309): {scan} scan of (2556 files) in progress... Aug 01 2023 03:22:12 server2 maldet(724309): {scan} scan completed on : files 2556, malware hits 0, cleaned hits 0, time 97s Aug 01 2023 03:22:12 server2 maldet(724309): {scan} scan report saved, to view run: maldet --report 230801-0320.724309 Aug 02 2023 03:27:24 server2 maldet(956146): {update} checking for available updates... Aug 02 2023 03:27:24 server2 maldet(956146): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Aug 02 2023 03:27:24 server2 maldet(956146): {update} hashing install files and checking against server... Aug 02 2023 03:27:25 server2 maldet(956146): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Aug 02 2023 03:27:25 server2 maldet(956146): {update} latest version already installed. Aug 02 2023 03:27:25 server2 maldet(956279): {sigup} performing signature update check... Aug 02 2023 03:27:25 server2 maldet(956279): {sigup} local signature set is version 202308011141420 Aug 02 2023 03:27:25 server2 maldet(956279): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Aug 02 2023 03:27:25 server2 maldet(956279): {sigup} latest signature set already installed Aug 02 2023 03:27:25 server2 maldet(956390): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Aug 02 2023 03:27:25 server2 maldet(956390): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Aug 02 2023 03:27:25 server2 maldet(956390): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Aug 02 2023 03:27:25 server2 maldet(956390): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Aug 02 2023 03:27:25 server2 maldet(956390): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Aug 02 2023 03:27:40 server2 maldet(956390): {scan} file list completed in 15s, found 803 files... Aug 02 2023 03:27:40 server2 maldet(956390): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Aug 02 2023 03:27:41 server2 maldet(956390): {scan} scan of (803 files) in progress... Aug 02 2023 03:28:17 server2 maldet(956390): {scan} scan completed on : files 803, malware hits 0, cleaned hits 0, time 51s Aug 02 2023 03:28:17 server2 maldet(956390): {scan} scan report saved, to view run: maldet --report 230802-0327.956390 Aug 03 2023 03:15:21 server2 maldet(1196541): {update} checking for available updates... Aug 03 2023 03:15:21 server2 maldet(1196541): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Aug 03 2023 03:15:21 server2 maldet(1196541): {update} hashing install files and checking against server... Aug 03 2023 03:15:21 server2 maldet(1196541): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Aug 03 2023 03:15:21 server2 maldet(1196541): {update} latest version already installed. Aug 03 2023 03:15:21 server2 maldet(1196674): {sigup} performing signature update check... Aug 03 2023 03:15:21 server2 maldet(1196674): {sigup} local signature set is version 202308011141420 Aug 03 2023 03:15:21 server2 maldet(1196674): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Aug 03 2023 03:15:21 server2 maldet(1196674): {sigup} latest signature set already installed Aug 03 2023 03:15:21 server2 maldet(1196785): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Aug 03 2023 03:15:22 server2 maldet(1196785): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Aug 03 2023 03:15:22 server2 maldet(1196785): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Aug 03 2023 03:15:22 server2 maldet(1196785): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Aug 03 2023 03:15:22 server2 maldet(1196785): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Aug 03 2023 03:15:39 server2 maldet(1196785): {scan} file list completed in 17s, found 837 files... Aug 03 2023 03:15:39 server2 maldet(1196785): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Aug 03 2023 03:15:39 server2 maldet(1196785): {scan} scan of (837 files) in progress... Aug 03 2023 03:16:14 server2 maldet(1196785): {scan} scan completed on : files 837, malware hits 0, cleaned hits 0, time 53s Aug 03 2023 03:16:14 server2 maldet(1196785): {scan} scan report saved, to view run: maldet --report 230803-0315.1196785 Aug 04 2023 03:10:43 server2 maldet(1450503): {update} checking for available updates... Aug 04 2023 03:10:43 server2 maldet(1450503): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Aug 04 2023 03:10:43 server2 maldet(1450503): {update} hashing install files and checking against server... Aug 04 2023 03:10:43 server2 maldet(1450503): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Aug 04 2023 03:10:43 server2 maldet(1450503): {update} latest version already installed. Aug 04 2023 03:10:43 server2 maldet(1450636): {sigup} performing signature update check... Aug 04 2023 03:10:43 server2 maldet(1450636): {sigup} local signature set is version 202308011141420 Aug 04 2023 03:10:43 server2 maldet(1450636): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Aug 04 2023 03:10:43 server2 maldet(1450636): {sigup} new signature set 202308041840306 available Aug 04 2023 03:10:43 server2 maldet(1450636): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Aug 04 2023 03:10:44 server2 maldet(1450636): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Aug 04 2023 03:10:44 server2 maldet(1450636): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Aug 04 2023 03:10:44 server2 maldet(1450636): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Aug 04 2023 03:10:44 server2 maldet(1450636): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Aug 04 2023 03:10:44 server2 maldet(1450636): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Aug 04 2023 03:10:44 server2 maldet(1450636): {sigup} verified md5sum of maldet-sigpack.tgz Aug 04 2023 03:10:44 server2 maldet(1450636): {sigup} unpacked and installed maldet-sigpack.tgz Aug 04 2023 03:10:44 server2 maldet(1450636): {sigup} verified md5sum of maldet-clean.tgz Aug 04 2023 03:10:44 server2 maldet(1450636): {sigup} unpacked and installed maldet-clean.tgz Aug 04 2023 03:10:44 server2 maldet(1450636): {sigup} signature set update completed Aug 04 2023 03:10:44 server2 maldet(1450636): {sigup} 17637 signatures (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Aug 04 2023 03:10:44 server2 maldet(1450864): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Aug 04 2023 03:10:44 server2 maldet(1450864): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Aug 04 2023 03:10:44 server2 maldet(1450864): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Aug 04 2023 03:10:44 server2 maldet(1450864): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Aug 04 2023 03:10:45 server2 maldet(1450864): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Aug 04 2023 03:11:08 server2 maldet(1450864): {scan} file list completed in 24s, found 1109 files... Aug 04 2023 03:11:08 server2 maldet(1450864): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Aug 04 2023 03:11:08 server2 maldet(1450864): {scan} scan of (1109 files) in progress... Aug 04 2023 03:12:07 server2 maldet(1450864): {scan} scan completed on : files 1109, malware hits 0, cleaned hits 0, time 83s Aug 04 2023 03:12:07 server2 maldet(1450864): {scan} scan report saved, to view run: maldet --report 230804-0310.1450864 Aug 05 2023 03:24:36 server2 maldet(1704567): {update} checking for available updates... Aug 05 2023 03:24:36 server2 maldet(1704567): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Aug 05 2023 03:24:36 server2 maldet(1704567): {update} hashing install files and checking against server... Aug 05 2023 03:24:36 server2 maldet(1704567): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Aug 05 2023 03:24:36 server2 maldet(1704567): {update} latest version already installed. Aug 05 2023 03:24:36 server2 maldet(1704700): {sigup} performing signature update check... Aug 05 2023 03:24:36 server2 maldet(1704700): {sigup} local signature set is version 202308041840306 Aug 05 2023 03:24:36 server2 maldet(1704700): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Aug 05 2023 03:24:36 server2 maldet(1704700): {sigup} latest signature set already installed Aug 05 2023 03:24:36 server2 maldet(1704811): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Aug 05 2023 03:24:37 server2 maldet(1704811): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Aug 05 2023 03:24:37 server2 maldet(1704811): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Aug 05 2023 03:24:37 server2 maldet(1704811): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Aug 05 2023 03:24:37 server2 maldet(1704811): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Aug 05 2023 03:24:56 server2 maldet(1704811): {scan} file list completed in 19s, found 930 files... Aug 05 2023 03:24:56 server2 maldet(1704811): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Aug 05 2023 03:24:56 server2 maldet(1704811): {scan} scan of (930 files) in progress... Aug 05 2023 03:25:37 server2 maldet(1704811): {scan} scan completed on : files 930, malware hits 0, cleaned hits 0, time 61s Aug 05 2023 03:25:37 server2 maldet(1704811): {scan} scan report saved, to view run: maldet --report 230805-0324.1704811 Aug 06 2023 03:31:32 server2 maldet(1955485): {update} checking for available updates... Aug 06 2023 03:31:32 server2 maldet(1955485): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Aug 06 2023 03:31:32 server2 maldet(1955485): {update} hashing install files and checking against server... Aug 06 2023 03:31:32 server2 maldet(1955485): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Aug 06 2023 03:31:32 server2 maldet(1955485): {update} latest version already installed. Aug 06 2023 03:31:32 server2 maldet(1955619): {sigup} performing signature update check... Aug 06 2023 03:31:32 server2 maldet(1955619): {sigup} local signature set is version 202308041840306 Aug 06 2023 03:31:32 server2 maldet(1955619): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Aug 06 2023 03:31:32 server2 maldet(1955619): {sigup} latest signature set already installed Aug 06 2023 03:31:33 server2 maldet(1955730): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Aug 06 2023 03:31:33 server2 maldet(1955730): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Aug 06 2023 03:31:33 server2 maldet(1955730): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Aug 06 2023 03:31:33 server2 maldet(1955730): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Aug 06 2023 03:31:33 server2 maldet(1955730): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Aug 06 2023 03:31:54 server2 maldet(1955730): {scan} file list completed in 21s, found 842 files... Aug 06 2023 03:31:54 server2 maldet(1955730): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Aug 06 2023 03:31:54 server2 maldet(1955730): {scan} scan of (842 files) in progress... Aug 06 2023 03:32:27 server2 maldet(1955730): {scan} scan completed on : files 842, malware hits 0, cleaned hits 0, time 54s Aug 06 2023 03:32:27 server2 maldet(1955730): {scan} scan report saved, to view run: maldet --report 230806-0331.1955730 Aug 07 2023 03:25:49 server2 maldet(2206889): {update} checking for available updates... Aug 07 2023 03:25:49 server2 maldet(2206889): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Aug 07 2023 03:25:49 server2 maldet(2206889): {update} hashing install files and checking against server... Aug 07 2023 03:25:49 server2 maldet(2206889): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Aug 07 2023 03:25:49 server2 maldet(2206889): {update} latest version already installed. Aug 07 2023 03:25:49 server2 maldet(2207025): {sigup} performing signature update check... Aug 07 2023 03:25:49 server2 maldet(2207025): {sigup} local signature set is version 202308041840306 Aug 07 2023 03:25:49 server2 maldet(2207025): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Aug 07 2023 03:25:49 server2 maldet(2207025): {sigup} new signature set 202308072563181 available Aug 07 2023 03:25:49 server2 maldet(2207025): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Aug 07 2023 03:25:49 server2 maldet(2207025): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Aug 07 2023 03:25:49 server2 maldet(2207025): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Aug 07 2023 03:25:49 server2 maldet(2207025): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Aug 07 2023 03:25:50 server2 maldet(2207025): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Aug 07 2023 03:25:50 server2 maldet(2207025): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Aug 07 2023 03:25:50 server2 maldet(2207025): {sigup} verified md5sum of maldet-sigpack.tgz Aug 07 2023 03:25:50 server2 maldet(2207025): {sigup} unpacked and installed maldet-sigpack.tgz Aug 07 2023 03:25:50 server2 maldet(2207025): {sigup} verified md5sum of maldet-clean.tgz Aug 07 2023 03:25:50 server2 maldet(2207025): {sigup} unpacked and installed maldet-clean.tgz Aug 07 2023 03:25:50 server2 maldet(2207025): {sigup} signature set update completed Aug 07 2023 03:25:50 server2 maldet(2207025): {sigup} 17637 signatures (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Aug 07 2023 03:25:50 server2 maldet(2207253): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Aug 07 2023 03:25:50 server2 maldet(2207253): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Aug 07 2023 03:25:50 server2 maldet(2207253): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Aug 07 2023 03:25:50 server2 maldet(2207253): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Aug 07 2023 03:25:50 server2 maldet(2207253): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Aug 07 2023 03:26:14 server2 maldet(2207253): {scan} file list completed in 23s, found 653 files... Aug 07 2023 03:26:14 server2 maldet(2207253): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Aug 07 2023 03:26:14 server2 maldet(2207253): {scan} scan of (653 files) in progress... Aug 07 2023 03:26:43 server2 maldet(2207253): {scan} scan completed on : files 653, malware hits 0, cleaned hits 0, time 53s Aug 07 2023 03:26:43 server2 maldet(2207253): {scan} scan report saved, to view run: maldet --report 230807-0325.2207253 Aug 08 2023 03:48:43 server2 maldet(2479293): {update} checking for available updates... Aug 08 2023 03:48:43 server2 maldet(2479293): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Aug 08 2023 03:48:43 server2 maldet(2479293): {update} hashing install files and checking against server... Aug 08 2023 03:48:43 server2 maldet(2479293): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Aug 08 2023 03:48:43 server2 maldet(2479293): {update} latest version already installed. Aug 08 2023 03:48:43 server2 maldet(2479426): {sigup} performing signature update check... Aug 08 2023 03:48:44 server2 maldet(2479426): {sigup} local signature set is version 202308072563181 Aug 08 2023 03:48:44 server2 maldet(2479426): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Aug 08 2023 03:48:44 server2 maldet(2479426): {sigup} latest signature set already installed Aug 08 2023 03:48:44 server2 maldet(2479537): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Aug 08 2023 03:48:44 server2 maldet(2479537): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Aug 08 2023 03:48:44 server2 maldet(2479537): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Aug 08 2023 03:48:44 server2 maldet(2479537): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Aug 08 2023 03:48:44 server2 maldet(2479537): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Aug 08 2023 03:49:04 server2 maldet(2479537): {scan} file list completed in 20s, found 891 files... Aug 08 2023 03:49:04 server2 maldet(2479537): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Aug 08 2023 03:49:04 server2 maldet(2479537): {scan} scan of (891 files) in progress... Aug 08 2023 03:49:41 server2 maldet(2479537): {scan} scan completed on : files 891, malware hits 0, cleaned hits 0, time 57s Aug 08 2023 03:49:41 server2 maldet(2479537): {scan} scan report saved, to view run: maldet --report 230808-0348.2479537 Aug 09 2023 03:34:59 server2 maldet(2785034): {update} checking for available updates... Aug 09 2023 03:34:59 server2 maldet(2785034): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Aug 09 2023 03:34:59 server2 maldet(2785034): {update} hashing install files and checking against server... Aug 09 2023 03:34:59 server2 maldet(2785034): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Aug 09 2023 03:34:59 server2 maldet(2785034): {update} latest version already installed. Aug 09 2023 03:34:59 server2 maldet(2785167): {sigup} performing signature update check... Aug 09 2023 03:34:59 server2 maldet(2785167): {sigup} local signature set is version 202308072563181 Aug 09 2023 03:34:59 server2 maldet(2785167): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Aug 09 2023 03:34:59 server2 maldet(2785167): {sigup} latest signature set already installed Aug 09 2023 03:34:59 server2 maldet(2785278): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Aug 09 2023 03:35:00 server2 maldet(2785278): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Aug 09 2023 03:35:00 server2 maldet(2785278): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Aug 09 2023 03:35:00 server2 maldet(2785278): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Aug 09 2023 03:35:00 server2 maldet(2785278): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Aug 09 2023 03:35:15 server2 maldet(2785278): {scan} file list completed in 15s, found 930 files... Aug 09 2023 03:35:15 server2 maldet(2785278): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Aug 09 2023 03:35:15 server2 maldet(2785278): {scan} scan of (930 files) in progress... Aug 09 2023 03:36:02 server2 maldet(2785278): {scan} scan completed on : files 930, malware hits 0, cleaned hits 0, time 63s Aug 09 2023 03:36:02 server2 maldet(2785278): {scan} scan report saved, to view run: maldet --report 230809-0334.2785278 Aug 10 2023 03:21:55 server2 maldet(3054858): {update} checking for available updates... Aug 10 2023 03:21:56 server2 maldet(3054858): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Aug 10 2023 03:21:56 server2 maldet(3054858): {update} hashing install files and checking against server... Aug 10 2023 03:21:56 server2 maldet(3054858): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Aug 10 2023 03:21:56 server2 maldet(3054858): {update} latest version already installed. Aug 10 2023 03:21:56 server2 maldet(3054993): {sigup} performing signature update check... Aug 10 2023 03:21:56 server2 maldet(3054993): {sigup} local signature set is version 202308072563181 Aug 10 2023 03:21:56 server2 maldet(3054993): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Aug 10 2023 03:21:56 server2 maldet(3054993): {sigup} new signature set 202308103259474 available Aug 10 2023 03:21:56 server2 maldet(3054993): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Aug 10 2023 03:21:56 server2 maldet(3054993): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Aug 10 2023 03:21:56 server2 maldet(3054993): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Aug 10 2023 03:21:56 server2 maldet(3054993): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Aug 10 2023 03:21:56 server2 maldet(3054993): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Aug 10 2023 03:21:56 server2 maldet(3054993): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Aug 10 2023 03:21:56 server2 maldet(3054993): {sigup} verified md5sum of maldet-sigpack.tgz Aug 10 2023 03:21:56 server2 maldet(3054993): {sigup} unpacked and installed maldet-sigpack.tgz Aug 10 2023 03:21:56 server2 maldet(3054993): {sigup} verified md5sum of maldet-clean.tgz Aug 10 2023 03:21:56 server2 maldet(3054993): {sigup} unpacked and installed maldet-clean.tgz Aug 10 2023 03:21:56 server2 maldet(3054993): {sigup} signature set update completed Aug 10 2023 03:21:56 server2 maldet(3054993): {sigup} 17637 signatures (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Aug 10 2023 03:21:57 server2 maldet(3055221): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Aug 10 2023 03:21:57 server2 maldet(3055221): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Aug 10 2023 03:21:57 server2 maldet(3055221): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Aug 10 2023 03:21:57 server2 maldet(3055221): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Aug 10 2023 03:21:57 server2 maldet(3055221): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Aug 10 2023 03:22:26 server2 maldet(3055221): {scan} file list completed in 28s, found 774 files... Aug 10 2023 03:22:26 server2 maldet(3055221): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Aug 10 2023 03:22:26 server2 maldet(3055221): {scan} scan of (774 files) in progress... Aug 10 2023 03:23:09 server2 maldet(3055221): {scan} scan completed on : files 774, malware hits 0, cleaned hits 0, time 72s Aug 10 2023 03:23:09 server2 maldet(3055221): {scan} scan report saved, to view run: maldet --report 230810-0321.3055221 Aug 11 2023 03:13:06 server2 maldet(3313387): {update} checking for available updates... Aug 11 2023 03:13:06 server2 maldet(3313387): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Aug 11 2023 03:13:06 server2 maldet(3313387): {update} hashing install files and checking against server... Aug 11 2023 03:13:06 server2 maldet(3313387): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Aug 11 2023 03:13:06 server2 maldet(3313387): {update} latest version already installed. Aug 11 2023 03:13:06 server2 maldet(3313520): {sigup} performing signature update check... Aug 11 2023 03:13:06 server2 maldet(3313520): {sigup} local signature set is version 202308103259474 Aug 11 2023 03:13:06 server2 maldet(3313520): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Aug 11 2023 03:13:06 server2 maldet(3313520): {sigup} latest signature set already installed Aug 11 2023 03:13:07 server2 maldet(3313631): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Aug 11 2023 03:13:07 server2 maldet(3313631): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Aug 11 2023 03:13:07 server2 maldet(3313631): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Aug 11 2023 03:13:07 server2 maldet(3313631): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Aug 11 2023 03:13:07 server2 maldet(3313631): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Aug 11 2023 03:13:31 server2 maldet(3313631): {scan} file list completed in 24s, found 1857 files... Aug 11 2023 03:13:31 server2 maldet(3313631): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Aug 11 2023 03:13:31 server2 maldet(3313631): {scan} scan of (1857 files) in progress... Aug 11 2023 03:15:00 server2 maldet(3313631): {scan} scan completed on : files 1857, malware hits 0, cleaned hits 0, time 113s Aug 11 2023 03:15:00 server2 maldet(3313631): {scan} scan report saved, to view run: maldet --report 230811-0313.3313631 Aug 12 2023 03:43:08 server2 maldet(3565681): {update} checking for available updates... Aug 12 2023 03:43:09 server2 maldet(3565681): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Aug 12 2023 03:43:09 server2 maldet(3565681): {update} hashing install files and checking against server... Aug 12 2023 03:43:09 server2 maldet(3565681): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Aug 12 2023 03:43:09 server2 maldet(3565681): {update} latest version already installed. Aug 12 2023 03:43:09 server2 maldet(3565814): {sigup} performing signature update check... Aug 12 2023 03:43:09 server2 maldet(3565814): {sigup} local signature set is version 202308103259474 Aug 12 2023 03:43:09 server2 maldet(3565814): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Aug 12 2023 03:43:09 server2 maldet(3565814): {sigup} latest signature set already installed Aug 12 2023 03:43:09 server2 maldet(3565925): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Aug 12 2023 03:43:09 server2 maldet(3565925): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Aug 12 2023 03:43:09 server2 maldet(3565925): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Aug 12 2023 03:43:09 server2 maldet(3565925): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Aug 12 2023 03:43:09 server2 maldet(3565925): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Aug 12 2023 03:43:26 server2 maldet(3565925): {scan} file list completed in 17s, found 1106 files... Aug 12 2023 03:43:26 server2 maldet(3565925): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Aug 12 2023 03:43:26 server2 maldet(3565925): {scan} scan of (1106 files) in progress... Aug 12 2023 03:44:09 server2 maldet(3565925): {scan} scan completed on : files 1106, malware hits 0, cleaned hits 0, time 60s Aug 12 2023 03:44:09 server2 maldet(3565925): {scan} scan report saved, to view run: maldet --report 230812-0343.3565925 Aug 13 2023 03:49:25 server2 maldet(3831547): {update} checking for available updates... Aug 13 2023 03:49:25 server2 maldet(3831547): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Aug 13 2023 03:49:25 server2 maldet(3831547): {update} hashing install files and checking against server... Aug 13 2023 03:49:25 server2 maldet(3831547): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Aug 13 2023 03:49:25 server2 maldet(3831547): {update} latest version already installed. Aug 13 2023 03:49:25 server2 maldet(3831680): {sigup} performing signature update check... Aug 13 2023 03:49:25 server2 maldet(3831680): {sigup} local signature set is version 202308103259474 Aug 13 2023 03:49:25 server2 maldet(3831680): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Aug 13 2023 03:49:25 server2 maldet(3831680): {sigup} latest signature set already installed Aug 13 2023 03:49:25 server2 maldet(3831791): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Aug 13 2023 03:49:26 server2 maldet(3831791): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Aug 13 2023 03:49:26 server2 maldet(3831791): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Aug 13 2023 03:49:26 server2 maldet(3831791): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Aug 13 2023 03:49:26 server2 maldet(3831791): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Aug 13 2023 03:49:42 server2 maldet(3831791): {scan} file list completed in 16s, found 941 files... Aug 13 2023 03:49:42 server2 maldet(3831791): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Aug 13 2023 03:49:42 server2 maldet(3831791): {scan} scan of (941 files) in progress... Aug 13 2023 03:50:27 server2 maldet(3831791): {scan} scan completed on : files 941, malware hits 0, cleaned hits 0, time 62s Aug 13 2023 03:50:27 server2 maldet(3831791): {scan} scan report saved, to view run: maldet --report 230813-0349.3831791 Aug 14 2023 03:55:39 server2 maldet(4077077): {update} checking for available updates... Aug 14 2023 03:55:39 server2 maldet(4077077): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Aug 14 2023 03:55:39 server2 maldet(4077077): {update} hashing install files and checking against server... Aug 14 2023 03:55:39 server2 maldet(4077077): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Aug 14 2023 03:55:39 server2 maldet(4077077): {update} latest version already installed. Aug 14 2023 03:55:39 server2 maldet(4077210): {sigup} performing signature update check... Aug 14 2023 03:55:39 server2 maldet(4077210): {sigup} local signature set is version 202308103259474 Aug 14 2023 03:55:39 server2 maldet(4077210): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Aug 14 2023 03:55:40 server2 maldet(4077210): {sigup} latest signature set already installed Aug 14 2023 03:55:40 server2 maldet(4077321): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Aug 14 2023 03:55:40 server2 maldet(4077321): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Aug 14 2023 03:55:40 server2 maldet(4077321): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Aug 14 2023 03:55:40 server2 maldet(4077321): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Aug 14 2023 03:55:40 server2 maldet(4077321): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Aug 14 2023 03:55:57 server2 maldet(4077321): {scan} file list completed in 17s, found 1180 files... Aug 14 2023 03:55:57 server2 maldet(4077321): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Aug 14 2023 03:55:57 server2 maldet(4077321): {scan} scan of (1180 files) in progress... Aug 14 2023 03:56:48 server2 maldet(4077321): {scan} scan completed on : files 1180, malware hits 0, cleaned hits 0, time 68s Aug 14 2023 03:56:48 server2 maldet(4077321): {scan} scan report saved, to view run: maldet --report 230814-0355.4077321 Aug 15 2023 03:47:44 server2 maldet(121782): {update} checking for available updates... Aug 15 2023 03:47:44 server2 maldet(121782): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Aug 15 2023 03:47:45 server2 maldet(121782): {update} hashing install files and checking against server... Aug 15 2023 03:47:45 server2 maldet(121782): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Aug 15 2023 03:47:45 server2 maldet(121782): {update} latest version already installed. Aug 15 2023 03:47:45 server2 maldet(121915): {sigup} performing signature update check... Aug 15 2023 03:47:45 server2 maldet(121915): {sigup} local signature set is version 202308103259474 Aug 15 2023 03:47:45 server2 maldet(121915): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Aug 15 2023 03:47:45 server2 maldet(121915): {sigup} latest signature set already installed Aug 15 2023 03:47:45 server2 maldet(122026): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Aug 15 2023 03:47:45 server2 maldet(122026): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Aug 15 2023 03:47:45 server2 maldet(122026): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Aug 15 2023 03:47:45 server2 maldet(122026): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Aug 15 2023 03:47:45 server2 maldet(122026): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Aug 15 2023 03:48:05 server2 maldet(122026): {scan} file list completed in 20s, found 2181 files... Aug 15 2023 03:48:05 server2 maldet(122026): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Aug 15 2023 03:48:05 server2 maldet(122026): {scan} scan of (2181 files) in progress... Aug 15 2023 03:49:09 server2 maldet(122026): {scan} scan completed on : files 2181, malware hits 0, cleaned hits 0, time 84s Aug 15 2023 03:49:09 server2 maldet(122026): {scan} scan report saved, to view run: maldet --report 230815-0347.122026 Aug 16 2023 03:45:58 server2 maldet(369988): {update} checking for available updates... Aug 16 2023 03:45:58 server2 maldet(369988): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Aug 16 2023 03:45:58 server2 maldet(369988): {update} hashing install files and checking against server... Aug 16 2023 03:45:59 server2 maldet(369988): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Aug 16 2023 03:45:59 server2 maldet(369988): {update} latest version already installed. Aug 16 2023 03:45:59 server2 maldet(370121): {sigup} performing signature update check... Aug 16 2023 03:45:59 server2 maldet(370121): {sigup} local signature set is version 202308103259474 Aug 16 2023 03:45:59 server2 maldet(370121): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Aug 16 2023 03:45:59 server2 maldet(370121): {sigup} new signature set 20230816511126 available Aug 16 2023 03:45:59 server2 maldet(370121): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Aug 16 2023 03:45:59 server2 maldet(370121): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Aug 16 2023 03:45:59 server2 maldet(370121): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Aug 16 2023 03:45:59 server2 maldet(370121): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Aug 16 2023 03:45:59 server2 maldet(370121): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Aug 16 2023 03:45:59 server2 maldet(370121): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Aug 16 2023 03:45:59 server2 maldet(370121): {sigup} verified md5sum of maldet-sigpack.tgz Aug 16 2023 03:45:59 server2 maldet(370121): {sigup} unpacked and installed maldet-sigpack.tgz Aug 16 2023 03:45:59 server2 maldet(370121): {sigup} verified md5sum of maldet-clean.tgz Aug 16 2023 03:45:59 server2 maldet(370121): {sigup} unpacked and installed maldet-clean.tgz Aug 16 2023 03:45:59 server2 maldet(370121): {sigup} signature set update completed Aug 16 2023 03:45:59 server2 maldet(370121): {sigup} 17637 signatures (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Aug 16 2023 03:45:59 server2 maldet(370349): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Aug 16 2023 03:46:00 server2 maldet(370349): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Aug 16 2023 03:46:00 server2 maldet(370349): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Aug 16 2023 03:46:00 server2 maldet(370349): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Aug 16 2023 03:46:00 server2 maldet(370349): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Aug 16 2023 03:46:22 server2 maldet(370349): {scan} file list completed in 22s, found 1870 files... Aug 16 2023 03:46:22 server2 maldet(370349): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Aug 16 2023 03:46:22 server2 maldet(370349): {scan} scan of (1870 files) in progress... Aug 16 2023 03:47:36 server2 maldet(370349): {scan} scan completed on : files 1870, malware hits 0, cleaned hits 0, time 97s Aug 16 2023 03:47:36 server2 maldet(370349): {scan} scan report saved, to view run: maldet --report 230816-0345.370349 Aug 17 2023 03:22:02 server2 maldet(629129): {update} checking for available updates... Aug 17 2023 03:22:03 server2 maldet(629129): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Aug 17 2023 03:22:03 server2 maldet(629129): {update} hashing install files and checking against server... Aug 17 2023 03:22:03 server2 maldet(629129): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Aug 17 2023 03:22:03 server2 maldet(629129): {update} latest version already installed. Aug 17 2023 03:22:03 server2 maldet(629268): {sigup} performing signature update check... Aug 17 2023 03:22:03 server2 maldet(629268): {sigup} local signature set is version 20230816511126 Aug 17 2023 03:22:03 server2 maldet(629268): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Aug 17 2023 03:22:03 server2 maldet(629268): {sigup} latest signature set already installed Aug 17 2023 03:22:03 server2 maldet(629379): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Aug 17 2023 03:22:04 server2 maldet(629379): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Aug 17 2023 03:22:04 server2 maldet(629379): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Aug 17 2023 03:22:04 server2 maldet(629379): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Aug 17 2023 03:22:04 server2 maldet(629379): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Aug 17 2023 03:22:39 server2 maldet(629379): {scan} file list completed in 35s, found 943 files... Aug 17 2023 03:22:39 server2 maldet(629379): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Aug 17 2023 03:22:39 server2 maldet(629379): {scan} scan of (943 files) in progress... Aug 17 2023 03:23:24 server2 maldet(629379): {scan} scan completed on : files 943, malware hits 0, cleaned hits 0, time 81s Aug 17 2023 03:23:24 server2 maldet(629379): {scan} scan report saved, to view run: maldet --report 230817-0322.629379 Aug 18 2023 03:50:53 server2 maldet(876738): {update} checking for available updates... Aug 18 2023 03:50:53 server2 maldet(876738): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Aug 18 2023 03:50:53 server2 maldet(876738): {update} hashing install files and checking against server... Aug 18 2023 03:50:53 server2 maldet(876738): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Aug 18 2023 03:50:53 server2 maldet(876738): {update} latest version already installed. Aug 18 2023 03:50:53 server2 maldet(876871): {sigup} performing signature update check... Aug 18 2023 03:50:53 server2 maldet(876871): {sigup} local signature set is version 20230816511126 Aug 18 2023 03:50:54 server2 maldet(876871): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Aug 18 2023 03:50:54 server2 maldet(876871): {sigup} latest signature set already installed Aug 18 2023 03:50:54 server2 maldet(876982): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Aug 18 2023 03:50:54 server2 maldet(876982): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Aug 18 2023 03:50:54 server2 maldet(876982): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Aug 18 2023 03:50:54 server2 maldet(876982): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Aug 18 2023 03:50:54 server2 maldet(876982): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Aug 18 2023 03:51:14 server2 maldet(876982): {scan} file list completed in 20s, found 1073 files... Aug 18 2023 03:51:14 server2 maldet(876982): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Aug 18 2023 03:51:14 server2 maldet(876982): {scan} scan of (1073 files) in progress... Aug 18 2023 03:52:02 server2 maldet(876982): {scan} scan completed on : files 1073, malware hits 0, cleaned hits 0, time 68s Aug 18 2023 03:52:02 server2 maldet(876982): {scan} scan report saved, to view run: maldet --report 230818-0350.876982 Aug 19 2023 03:26:20 server2 maldet(1120420): {update} checking for available updates... Aug 19 2023 03:26:20 server2 maldet(1120420): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Aug 19 2023 03:26:20 server2 maldet(1120420): {update} hashing install files and checking against server... Aug 19 2023 03:26:20 server2 maldet(1120420): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Aug 19 2023 03:26:20 server2 maldet(1120420): {update} latest version already installed. Aug 19 2023 03:26:21 server2 maldet(1120553): {sigup} performing signature update check... Aug 19 2023 03:26:21 server2 maldet(1120553): {sigup} local signature set is version 20230816511126 Aug 19 2023 03:26:21 server2 maldet(1120553): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Aug 19 2023 03:26:21 server2 maldet(1120553): {sigup} new signature set 202308191221559 available Aug 19 2023 03:26:21 server2 maldet(1120553): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Aug 19 2023 03:26:21 server2 maldet(1120553): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Aug 19 2023 03:26:21 server2 maldet(1120553): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Aug 19 2023 03:26:21 server2 maldet(1120553): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Aug 19 2023 03:26:21 server2 maldet(1120553): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Aug 19 2023 03:26:21 server2 maldet(1120553): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Aug 19 2023 03:26:21 server2 maldet(1120553): {sigup} verified md5sum of maldet-sigpack.tgz Aug 19 2023 03:26:21 server2 maldet(1120553): {sigup} unpacked and installed maldet-sigpack.tgz Aug 19 2023 03:26:21 server2 maldet(1120553): {sigup} verified md5sum of maldet-clean.tgz Aug 19 2023 03:26:21 server2 maldet(1120553): {sigup} unpacked and installed maldet-clean.tgz Aug 19 2023 03:26:21 server2 maldet(1120553): {sigup} signature set update completed Aug 19 2023 03:26:21 server2 maldet(1120553): {sigup} 17637 signatures (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Aug 19 2023 03:26:21 server2 maldet(1120781): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Aug 19 2023 03:26:22 server2 maldet(1120781): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Aug 19 2023 03:26:22 server2 maldet(1120781): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Aug 19 2023 03:26:22 server2 maldet(1120781): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Aug 19 2023 03:26:22 server2 maldet(1120781): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Aug 19 2023 03:26:41 server2 maldet(1120781): {scan} file list completed in 19s, found 1132 files... Aug 19 2023 03:26:41 server2 maldet(1120781): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Aug 19 2023 03:26:41 server2 maldet(1120781): {scan} scan of (1132 files) in progress... Aug 19 2023 03:27:30 server2 maldet(1120781): {scan} scan completed on : files 1132, malware hits 0, cleaned hits 0, time 69s Aug 19 2023 03:27:30 server2 maldet(1120781): {scan} scan report saved, to view run: maldet --report 230819-0326.1120781 Aug 20 2023 03:39:28 server2 maldet(1382590): {update} checking for available updates... Aug 20 2023 03:39:28 server2 maldet(1382590): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Aug 20 2023 03:39:28 server2 maldet(1382590): {update} hashing install files and checking against server... Aug 20 2023 03:39:28 server2 maldet(1382590): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Aug 20 2023 03:39:28 server2 maldet(1382590): {update} latest version already installed. Aug 20 2023 03:39:28 server2 maldet(1382723): {sigup} performing signature update check... Aug 20 2023 03:39:29 server2 maldet(1382723): {sigup} local signature set is version 202308191221559 Aug 20 2023 03:39:29 server2 maldet(1382723): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Aug 20 2023 03:39:29 server2 maldet(1382723): {sigup} latest signature set already installed Aug 20 2023 03:39:29 server2 maldet(1382835): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Aug 20 2023 03:39:29 server2 maldet(1382835): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Aug 20 2023 03:39:29 server2 maldet(1382835): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Aug 20 2023 03:39:29 server2 maldet(1382835): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Aug 20 2023 03:39:29 server2 maldet(1382835): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Aug 20 2023 03:39:43 server2 maldet(1382835): {scan} file list completed in 14s, found 1437 files... Aug 20 2023 03:39:43 server2 maldet(1382835): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Aug 20 2023 03:39:43 server2 maldet(1382835): {scan} scan of (1437 files) in progress... Aug 20 2023 03:40:44 server2 maldet(1382835): {scan} scan completed on : files 1437, malware hits 0, cleaned hits 0, time 74s Aug 20 2023 03:40:44 server2 maldet(1382835): {scan} scan report saved, to view run: maldet --report 230820-0339.1382835 Aug 21 2023 03:21:41 server2 maldet(1651974): {update} checking for available updates... Aug 21 2023 03:21:41 server2 maldet(1651974): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Aug 21 2023 03:21:42 server2 maldet(1651974): {update} hashing install files and checking against server... Aug 21 2023 03:21:42 server2 maldet(1651974): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Aug 21 2023 03:21:42 server2 maldet(1651974): {update} latest version already installed. Aug 21 2023 03:21:42 server2 maldet(1652107): {sigup} performing signature update check... Aug 21 2023 03:21:42 server2 maldet(1652107): {sigup} local signature set is version 202308191221559 Aug 21 2023 03:21:42 server2 maldet(1652107): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Aug 21 2023 03:21:42 server2 maldet(1652107): {sigup} latest signature set already installed Aug 21 2023 03:21:42 server2 maldet(1652218): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Aug 21 2023 03:21:42 server2 maldet(1652218): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Aug 21 2023 03:21:42 server2 maldet(1652218): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Aug 21 2023 03:21:42 server2 maldet(1652218): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Aug 21 2023 03:21:42 server2 maldet(1652218): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Aug 21 2023 03:22:28 server2 maldet(1652218): {scan} file list completed in 46s, found 976 files... Aug 21 2023 03:22:28 server2 maldet(1652218): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Aug 21 2023 03:22:28 server2 maldet(1652218): {scan} scan of (976 files) in progress... Aug 21 2023 03:23:27 server2 maldet(1652218): {scan} scan completed on : files 976, malware hits 0, cleaned hits 0, time 105s Aug 21 2023 03:23:27 server2 maldet(1652218): {scan} scan report saved, to view run: maldet --report 230821-0321.1652218 Aug 22 2023 03:55:50 server2 maldet(1941651): {update} checking for available updates... Aug 22 2023 03:55:50 server2 maldet(1941651): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Aug 22 2023 03:55:50 server2 maldet(1941651): {update} hashing install files and checking against server... Aug 22 2023 03:55:50 server2 maldet(1941651): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Aug 22 2023 03:55:50 server2 maldet(1941651): {update} latest version already installed. Aug 22 2023 03:55:50 server2 maldet(1941784): {sigup} performing signature update check... Aug 22 2023 03:55:50 server2 maldet(1941784): {sigup} local signature set is version 202308191221559 Aug 22 2023 03:55:50 server2 maldet(1941784): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Aug 22 2023 03:55:50 server2 maldet(1941784): {sigup} new signature set 202308221929619 available Aug 22 2023 03:55:50 server2 maldet(1941784): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Aug 22 2023 03:55:50 server2 maldet(1941784): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Aug 22 2023 03:55:50 server2 maldet(1941784): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Aug 22 2023 03:55:50 server2 maldet(1941784): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Aug 22 2023 03:55:50 server2 maldet(1941784): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Aug 22 2023 03:55:50 server2 maldet(1941784): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Aug 22 2023 03:55:50 server2 maldet(1941784): {sigup} verified md5sum of maldet-sigpack.tgz Aug 22 2023 03:55:51 server2 maldet(1941784): {sigup} unpacked and installed maldet-sigpack.tgz Aug 22 2023 03:55:51 server2 maldet(1941784): {sigup} verified md5sum of maldet-clean.tgz Aug 22 2023 03:55:51 server2 maldet(1941784): {sigup} unpacked and installed maldet-clean.tgz Aug 22 2023 03:55:51 server2 maldet(1941784): {sigup} signature set update completed Aug 22 2023 03:55:51 server2 maldet(1941784): {sigup} 17637 signatures (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Aug 22 2023 03:55:51 server2 maldet(1942015): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Aug 22 2023 03:55:51 server2 maldet(1942015): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Aug 22 2023 03:55:51 server2 maldet(1942015): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Aug 22 2023 03:55:51 server2 maldet(1942015): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Aug 22 2023 03:55:51 server2 maldet(1942015): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Aug 22 2023 03:56:12 server2 maldet(1942015): {scan} file list completed in 21s, found 820 files... Aug 22 2023 03:56:12 server2 maldet(1942015): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Aug 22 2023 03:56:12 server2 maldet(1942015): {scan} scan of (820 files) in progress... Aug 22 2023 03:56:52 server2 maldet(1942015): {scan} scan completed on : files 820, malware hits 0, cleaned hits 0, time 61s Aug 22 2023 03:56:52 server2 maldet(1942015): {scan} scan report saved, to view run: maldet --report 230822-0355.1942015 Aug 23 2023 03:15:35 server2 maldet(2224773): {update} checking for available updates... Aug 23 2023 03:15:36 server2 maldet(2224773): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Aug 23 2023 03:15:36 server2 maldet(2224773): {update} hashing install files and checking against server... Aug 23 2023 03:15:36 server2 maldet(2224773): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Aug 23 2023 03:15:36 server2 maldet(2224773): {update} latest version already installed. Aug 23 2023 03:15:36 server2 maldet(2224909): {sigup} performing signature update check... Aug 23 2023 03:15:36 server2 maldet(2224909): {sigup} local signature set is version 202308221929619 Aug 23 2023 03:15:36 server2 maldet(2224909): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Aug 23 2023 03:15:36 server2 maldet(2224909): {sigup} latest signature set already installed Aug 23 2023 03:15:36 server2 maldet(2225021): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Aug 23 2023 03:15:36 server2 maldet(2225021): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Aug 23 2023 03:15:36 server2 maldet(2225021): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Aug 23 2023 03:15:36 server2 maldet(2225021): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Aug 23 2023 03:15:36 server2 maldet(2225021): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Aug 23 2023 03:16:02 server2 maldet(2225021): {scan} file list completed in 26s, found 840 files... Aug 23 2023 03:16:02 server2 maldet(2225021): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Aug 23 2023 03:16:02 server2 maldet(2225021): {scan} scan of (840 files) in progress... Aug 23 2023 03:16:44 server2 maldet(2225021): {scan} scan completed on : files 840, malware hits 0, cleaned hits 0, time 68s Aug 23 2023 03:16:44 server2 maldet(2225021): {scan} scan report saved, to view run: maldet --report 230823-0315.2225021 Aug 24 2023 03:49:50 server2 maldet(2488731): {update} checking for available updates... Aug 24 2023 03:49:50 server2 maldet(2488731): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Aug 24 2023 03:49:50 server2 maldet(2488731): {update} hashing install files and checking against server... Aug 24 2023 03:49:51 server2 maldet(2488731): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Aug 24 2023 03:49:51 server2 maldet(2488731): {update} latest version already installed. Aug 24 2023 03:49:51 server2 maldet(2488864): {sigup} performing signature update check... Aug 24 2023 03:49:51 server2 maldet(2488864): {sigup} local signature set is version 202308221929619 Aug 24 2023 03:49:51 server2 maldet(2488864): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Aug 24 2023 03:49:51 server2 maldet(2488864): {sigup} latest signature set already installed Aug 24 2023 03:49:51 server2 maldet(2488975): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Aug 24 2023 03:49:51 server2 maldet(2488975): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Aug 24 2023 03:49:51 server2 maldet(2488975): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Aug 24 2023 03:49:51 server2 maldet(2488975): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Aug 24 2023 03:49:51 server2 maldet(2488975): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Aug 24 2023 03:50:17 server2 maldet(2488975): {scan} file list completed in 26s, found 832 files... Aug 24 2023 03:50:17 server2 maldet(2488975): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Aug 24 2023 03:50:17 server2 maldet(2488975): {scan} scan of (832 files) in progress... Aug 24 2023 03:50:54 server2 maldet(2488975): {scan} scan completed on : files 832, malware hits 0, cleaned hits 0, time 63s Aug 24 2023 03:50:54 server2 maldet(2488975): {scan} scan report saved, to view run: maldet --report 230824-0349.2488975 Aug 25 2023 03:42:49 server2 maldet(2743766): {update} checking for available updates... Aug 25 2023 03:42:49 server2 maldet(2743766): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Aug 25 2023 03:42:49 server2 maldet(2743766): {update} hashing install files and checking against server... Aug 25 2023 03:42:49 server2 maldet(2743766): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Aug 25 2023 03:42:49 server2 maldet(2743766): {update} latest version already installed. Aug 25 2023 03:42:49 server2 maldet(2743899): {sigup} performing signature update check... Aug 25 2023 03:42:49 server2 maldet(2743899): {sigup} local signature set is version 202308221929619 Aug 25 2023 03:42:49 server2 maldet(2743899): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Aug 25 2023 03:42:49 server2 maldet(2743899): {sigup} new signature set 202308252633785 available Aug 25 2023 03:42:49 server2 maldet(2743899): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Aug 25 2023 03:42:49 server2 maldet(2743899): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Aug 25 2023 03:42:49 server2 maldet(2743899): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Aug 25 2023 03:42:49 server2 maldet(2743899): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Aug 25 2023 03:42:49 server2 maldet(2743899): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Aug 25 2023 03:42:49 server2 maldet(2743899): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Aug 25 2023 03:42:49 server2 maldet(2743899): {sigup} verified md5sum of maldet-sigpack.tgz Aug 25 2023 03:42:50 server2 maldet(2743899): {sigup} unpacked and installed maldet-sigpack.tgz Aug 25 2023 03:42:50 server2 maldet(2743899): {sigup} verified md5sum of maldet-clean.tgz Aug 25 2023 03:42:50 server2 maldet(2743899): {sigup} unpacked and installed maldet-clean.tgz Aug 25 2023 03:42:50 server2 maldet(2743899): {sigup} signature set update completed Aug 25 2023 03:42:50 server2 maldet(2743899): {sigup} 17637 signatures (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Aug 25 2023 03:42:50 server2 maldet(2744127): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Aug 25 2023 03:42:50 server2 maldet(2744127): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Aug 25 2023 03:42:50 server2 maldet(2744127): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Aug 25 2023 03:42:50 server2 maldet(2744127): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Aug 25 2023 03:42:50 server2 maldet(2744127): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Aug 25 2023 03:43:13 server2 maldet(2744127): {scan} file list completed in 23s, found 815 files... Aug 25 2023 03:43:13 server2 maldet(2744127): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Aug 25 2023 03:43:13 server2 maldet(2744127): {scan} scan of (815 files) in progress... Aug 25 2023 03:43:49 server2 maldet(2744127): {scan} scan completed on : files 815, malware hits 0, cleaned hits 0, time 59s Aug 25 2023 03:43:49 server2 maldet(2744127): {scan} scan report saved, to view run: maldet --report 230825-0342.2744127 Aug 26 2023 03:16:21 server2 maldet(3047239): {update} checking for available updates... Aug 26 2023 03:16:22 server2 maldet(3047239): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Aug 26 2023 03:16:22 server2 maldet(3047239): {update} hashing install files and checking against server... Aug 26 2023 03:16:22 server2 maldet(3047239): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Aug 26 2023 03:16:22 server2 maldet(3047239): {update} latest version already installed. Aug 26 2023 03:16:22 server2 maldet(3047372): {sigup} performing signature update check... Aug 26 2023 03:16:22 server2 maldet(3047372): {sigup} local signature set is version 202308252633785 Aug 26 2023 03:16:22 server2 maldet(3047372): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Aug 26 2023 03:16:22 server2 maldet(3047372): {sigup} latest signature set already installed Aug 26 2023 03:16:22 server2 maldet(3047483): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Aug 26 2023 03:16:23 server2 maldet(3047483): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Aug 26 2023 03:16:23 server2 maldet(3047483): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Aug 26 2023 03:16:23 server2 maldet(3047483): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Aug 26 2023 03:16:23 server2 maldet(3047483): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Aug 26 2023 03:16:49 server2 maldet(3047483): {scan} file list completed in 26s, found 738 files... Aug 26 2023 03:16:49 server2 maldet(3047483): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Aug 26 2023 03:16:49 server2 maldet(3047483): {scan} scan of (738 files) in progress... Aug 26 2023 03:17:23 server2 maldet(3047483): {scan} scan completed on : files 738, malware hits 0, cleaned hits 0, time 61s Aug 26 2023 03:17:23 server2 maldet(3047483): {scan} scan report saved, to view run: maldet --report 230826-0316.3047483 Aug 27 2023 03:53:34 server2 maldet(3299629): {update} checking for available updates... Aug 27 2023 03:53:34 server2 maldet(3299629): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Aug 27 2023 03:53:34 server2 maldet(3299629): {update} hashing install files and checking against server... Aug 27 2023 03:53:34 server2 maldet(3299629): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Aug 27 2023 03:53:34 server2 maldet(3299629): {update} latest version already installed. Aug 27 2023 03:53:34 server2 maldet(3299762): {sigup} performing signature update check... Aug 27 2023 03:53:34 server2 maldet(3299762): {sigup} local signature set is version 202308252633785 Aug 27 2023 03:53:34 server2 maldet(3299762): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Aug 27 2023 03:53:34 server2 maldet(3299762): {sigup} latest signature set already installed Aug 27 2023 03:53:34 server2 maldet(3299873): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Aug 27 2023 03:53:34 server2 maldet(3299873): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Aug 27 2023 03:53:34 server2 maldet(3299873): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Aug 27 2023 03:53:34 server2 maldet(3299873): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Aug 27 2023 03:53:34 server2 maldet(3299873): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Aug 27 2023 03:53:52 server2 maldet(3299873): {scan} file list completed in 18s, found 786 files... Aug 27 2023 03:53:52 server2 maldet(3299873): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Aug 27 2023 03:53:52 server2 maldet(3299873): {scan} scan of (786 files) in progress... Aug 27 2023 03:54:35 server2 maldet(3299873): {scan} scan completed on : files 786, malware hits 0, cleaned hits 0, time 61s Aug 27 2023 03:54:35 server2 maldet(3299873): {scan} scan report saved, to view run: maldet --report 230827-0353.3299873 Aug 28 2023 03:54:02 server2 maldet(3548797): {update} checking for available updates... Aug 28 2023 03:54:03 server2 maldet(3548797): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Aug 28 2023 03:54:03 server2 maldet(3548797): {update} hashing install files and checking against server... Aug 28 2023 03:54:03 server2 maldet(3548797): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Aug 28 2023 03:54:03 server2 maldet(3548797): {update} latest version already installed. Aug 28 2023 03:54:03 server2 maldet(3548937): {sigup} performing signature update check... Aug 28 2023 03:54:03 server2 maldet(3548937): {sigup} local signature set is version 202308252633785 Aug 28 2023 03:54:03 server2 maldet(3548937): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Aug 28 2023 03:54:03 server2 maldet(3548937): {sigup} new signature set 202308283330996 available Aug 28 2023 03:54:03 server2 maldet(3548937): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Aug 28 2023 03:54:03 server2 maldet(3548937): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Aug 28 2023 03:54:03 server2 maldet(3548937): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Aug 28 2023 03:54:03 server2 maldet(3548937): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Aug 28 2023 03:54:03 server2 maldet(3548937): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Aug 28 2023 03:54:03 server2 maldet(3548937): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Aug 28 2023 03:54:03 server2 maldet(3548937): {sigup} verified md5sum of maldet-sigpack.tgz Aug 28 2023 03:54:03 server2 maldet(3548937): {sigup} unpacked and installed maldet-sigpack.tgz Aug 28 2023 03:54:04 server2 maldet(3548937): {sigup} verified md5sum of maldet-clean.tgz Aug 28 2023 03:54:04 server2 maldet(3548937): {sigup} unpacked and installed maldet-clean.tgz Aug 28 2023 03:54:04 server2 maldet(3548937): {sigup} signature set update completed Aug 28 2023 03:54:04 server2 maldet(3548937): {sigup} 17637 signatures (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Aug 28 2023 03:54:04 server2 maldet(3549167): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Aug 28 2023 03:54:04 server2 maldet(3549167): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Aug 28 2023 03:54:04 server2 maldet(3549167): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Aug 28 2023 03:54:04 server2 maldet(3549167): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Aug 28 2023 03:54:04 server2 maldet(3549167): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Aug 28 2023 03:54:28 server2 maldet(3549167): {scan} file list completed in 24s, found 970 files... Aug 28 2023 03:54:28 server2 maldet(3549167): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Aug 28 2023 03:54:28 server2 maldet(3549167): {scan} scan of (970 files) in progress... Aug 28 2023 03:55:11 server2 maldet(3549167): {scan} scan completed on : files 970, malware hits 0, cleaned hits 0, time 67s Aug 28 2023 03:55:11 server2 maldet(3549167): {scan} scan report saved, to view run: maldet --report 230828-0354.3549167 Aug 29 2023 03:19:31 server2 maldet(3814241): {update} checking for available updates... Aug 29 2023 03:19:31 server2 maldet(3814241): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Aug 29 2023 03:19:31 server2 maldet(3814241): {update} hashing install files and checking against server... Aug 29 2023 03:19:31 server2 maldet(3814241): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Aug 29 2023 03:19:31 server2 maldet(3814241): {update} latest version already installed. Aug 29 2023 03:19:31 server2 maldet(3814374): {sigup} performing signature update check... Aug 29 2023 03:19:31 server2 maldet(3814374): {sigup} local signature set is version 202308283330996 Aug 29 2023 03:19:31 server2 maldet(3814374): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Aug 29 2023 03:19:31 server2 maldet(3814374): {sigup} latest signature set already installed Aug 29 2023 03:19:31 server2 maldet(3814485): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Aug 29 2023 03:19:31 server2 maldet(3814485): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Aug 29 2023 03:19:31 server2 maldet(3814485): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Aug 29 2023 03:19:31 server2 maldet(3814485): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Aug 29 2023 03:19:31 server2 maldet(3814485): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Aug 29 2023 03:19:51 server2 maldet(3814485): {scan} file list completed in 20s, found 676 files... Aug 29 2023 03:19:51 server2 maldet(3814485): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Aug 29 2023 03:19:51 server2 maldet(3814485): {scan} scan of (676 files) in progress... Aug 29 2023 03:20:25 server2 maldet(3814485): {scan} scan completed on : files 676, malware hits 0, cleaned hits 0, time 54s Aug 29 2023 03:20:25 server2 maldet(3814485): {scan} scan report saved, to view run: maldet --report 230829-0319.3814485 Aug 30 2023 03:54:24 server2 maldet(4077157): {update} checking for available updates... Aug 30 2023 03:54:24 server2 maldet(4077157): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Aug 30 2023 03:54:24 server2 maldet(4077157): {update} hashing install files and checking against server... Aug 30 2023 03:54:25 server2 maldet(4077157): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Aug 30 2023 03:54:25 server2 maldet(4077157): {update} latest version already installed. Aug 30 2023 03:54:25 server2 maldet(4077290): {sigup} performing signature update check... Aug 30 2023 03:54:25 server2 maldet(4077290): {sigup} local signature set is version 202308283330996 Aug 30 2023 03:54:25 server2 maldet(4077290): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Aug 30 2023 03:54:25 server2 maldet(4077290): {sigup} latest signature set already installed Aug 30 2023 03:54:25 server2 maldet(4077401): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Aug 30 2023 03:54:25 server2 maldet(4077401): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Aug 30 2023 03:54:25 server2 maldet(4077401): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Aug 30 2023 03:54:25 server2 maldet(4077401): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Aug 30 2023 03:54:25 server2 maldet(4077401): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Aug 30 2023 03:54:41 server2 maldet(4077401): {scan} file list completed in 16s, found 2214 files... Aug 30 2023 03:54:41 server2 maldet(4077401): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Aug 30 2023 03:54:41 server2 maldet(4077401): {scan} scan of (2214 files) in progress... Aug 30 2023 03:55:45 server2 maldet(4077401): {scan} scan completed on : files 2214, malware hits 0, cleaned hits 0, time 80s Aug 30 2023 03:55:45 server2 maldet(4077401): {scan} scan report saved, to view run: maldet --report 230830-0354.4077401 Aug 31 2023 03:19:27 server2 maldet(111324): {update} checking for available updates... Aug 31 2023 03:19:27 server2 maldet(111324): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Aug 31 2023 03:19:27 server2 maldet(111324): {update} hashing install files and checking against server... Aug 31 2023 03:19:27 server2 maldet(111324): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Aug 31 2023 03:19:27 server2 maldet(111324): {update} latest version already installed. Aug 31 2023 03:19:27 server2 maldet(111457): {sigup} performing signature update check... Aug 31 2023 03:19:27 server2 maldet(111457): {sigup} local signature set is version 202308283330996 Aug 31 2023 03:19:27 server2 maldet(111457): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Aug 31 2023 03:19:27 server2 maldet(111457): {sigup} new signature set 20230831532934 available Aug 31 2023 03:19:27 server2 maldet(111457): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Aug 31 2023 03:19:28 server2 maldet(111457): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Aug 31 2023 03:19:28 server2 maldet(111457): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Aug 31 2023 03:19:28 server2 maldet(111457): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Aug 31 2023 03:19:28 server2 maldet(111457): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Aug 31 2023 03:19:28 server2 maldet(111457): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Aug 31 2023 03:19:28 server2 maldet(111457): {sigup} verified md5sum of maldet-sigpack.tgz Aug 31 2023 03:19:28 server2 maldet(111457): {sigup} unpacked and installed maldet-sigpack.tgz Aug 31 2023 03:19:28 server2 maldet(111457): {sigup} verified md5sum of maldet-clean.tgz Aug 31 2023 03:19:28 server2 maldet(111457): {sigup} unpacked and installed maldet-clean.tgz Aug 31 2023 03:19:28 server2 maldet(111457): {sigup} signature set update completed Aug 31 2023 03:19:28 server2 maldet(111457): {sigup} 17637 signatures (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Aug 31 2023 03:19:28 server2 maldet(111693): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Aug 31 2023 03:19:29 server2 maldet(111693): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Aug 31 2023 03:19:29 server2 maldet(111693): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Aug 31 2023 03:19:29 server2 maldet(111693): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Aug 31 2023 03:19:29 server2 maldet(111693): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Aug 31 2023 03:20:00 server2 maldet(111693): {scan} file list completed in 31s, found 949 files... Aug 31 2023 03:20:00 server2 maldet(111693): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Aug 31 2023 03:20:00 server2 maldet(111693): {scan} scan of (949 files) in progress... Aug 31 2023 03:20:53 server2 maldet(111693): {scan} scan completed on : files 949, malware hits 0, cleaned hits 0, time 85s Aug 31 2023 03:20:53 server2 maldet(111693): {scan} scan report saved, to view run: maldet --report 230831-0319.111693 Sep 01 2023 03:40:40 server2 maldet(351724): {update} checking for available updates... Sep 01 2023 03:40:40 server2 maldet(351724): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Sep 01 2023 03:40:40 server2 maldet(351724): {update} hashing install files and checking against server... Sep 01 2023 03:40:40 server2 maldet(351724): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Sep 01 2023 03:40:40 server2 maldet(351724): {update} latest version already installed. Sep 01 2023 03:40:40 server2 maldet(351859): {sigup} performing signature update check... Sep 01 2023 03:40:40 server2 maldet(351859): {sigup} local signature set is version 20230831532934 Sep 01 2023 03:40:40 server2 maldet(351859): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Sep 01 2023 03:40:41 server2 maldet(351859): {sigup} new signature set 202309011182320 available Sep 01 2023 03:40:41 server2 maldet(351859): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Sep 01 2023 03:40:41 server2 maldet(351859): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Sep 01 2023 03:40:41 server2 maldet(351859): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Sep 01 2023 03:40:41 server2 maldet(351859): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Sep 01 2023 03:40:41 server2 maldet(351859): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Sep 01 2023 03:40:41 server2 maldet(351859): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Sep 01 2023 03:40:41 server2 maldet(351859): {sigup} verified md5sum of maldet-sigpack.tgz Sep 01 2023 03:40:41 server2 maldet(351859): {sigup} unpacked and installed maldet-sigpack.tgz Sep 01 2023 03:40:41 server2 maldet(351859): {sigup} verified md5sum of maldet-clean.tgz Sep 01 2023 03:40:41 server2 maldet(351859): {sigup} unpacked and installed maldet-clean.tgz Sep 01 2023 03:40:41 server2 maldet(351859): {sigup} signature set update completed Sep 01 2023 03:40:41 server2 maldet(351859): {sigup} 17637 signatures (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Sep 01 2023 03:40:41 server2 maldet(352087): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Sep 01 2023 03:40:41 server2 maldet(352087): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Sep 01 2023 03:40:41 server2 maldet(352087): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Sep 01 2023 03:40:41 server2 maldet(352087): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Sep 01 2023 03:40:41 server2 maldet(352087): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Sep 01 2023 03:41:12 server2 maldet(352087): {scan} file list completed in 31s, found 4499 files... Sep 01 2023 03:41:12 server2 maldet(352087): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Sep 01 2023 03:41:12 server2 maldet(352087): {scan} scan of (4499 files) in progress... Sep 01 2023 03:45:17 server2 maldet(352087): {scan} scan completed on : files 4499, malware hits 0, cleaned hits 0, time 276s Sep 01 2023 03:45:17 server2 maldet(352087): {scan} scan report saved, to view run: maldet --report 230901-0340.352087 Sep 02 2023 03:27:27 server2 maldet(578108): {update} checking for available updates... Sep 02 2023 03:27:27 server2 maldet(578108): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Sep 02 2023 03:27:27 server2 maldet(578108): {update} hashing install files and checking against server... Sep 02 2023 03:27:27 server2 maldet(578108): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Sep 02 2023 03:27:28 server2 maldet(578108): {update} latest version already installed. Sep 02 2023 03:27:28 server2 maldet(578241): {sigup} performing signature update check... Sep 02 2023 03:27:28 server2 maldet(578241): {sigup} local signature set is version 202309011182320 Sep 02 2023 03:27:28 server2 maldet(578241): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Sep 02 2023 03:27:28 server2 maldet(578241): {sigup} latest signature set already installed Sep 02 2023 03:27:28 server2 maldet(578352): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Sep 02 2023 03:27:29 server2 maldet(578352): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Sep 02 2023 03:27:29 server2 maldet(578352): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Sep 02 2023 03:27:29 server2 maldet(578352): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Sep 02 2023 03:27:29 server2 maldet(578352): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Sep 02 2023 03:27:53 server2 maldet(578352): {scan} file list completed in 24s, found 888 files... Sep 02 2023 03:27:53 server2 maldet(578352): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Sep 02 2023 03:27:53 server2 maldet(578352): {scan} scan of (888 files) in progress... Sep 02 2023 03:28:39 server2 maldet(578352): {scan} scan completed on : files 888, malware hits 0, cleaned hits 0, time 71s Sep 02 2023 03:28:39 server2 maldet(578352): {scan} scan report saved, to view run: maldet --report 230902-0327.578352 Sep 03 2023 03:54:13 server2 maldet(811508): {update} checking for available updates... Sep 03 2023 03:54:13 server2 maldet(811508): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Sep 03 2023 03:54:13 server2 maldet(811508): {update} hashing install files and checking against server... Sep 03 2023 03:54:13 server2 maldet(811508): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Sep 03 2023 03:54:13 server2 maldet(811508): {update} latest version already installed. Sep 03 2023 03:54:13 server2 maldet(811642): {sigup} performing signature update check... Sep 03 2023 03:54:13 server2 maldet(811642): {sigup} local signature set is version 202309011182320 Sep 03 2023 03:54:13 server2 maldet(811642): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Sep 03 2023 03:54:13 server2 maldet(811642): {sigup} latest signature set already installed Sep 03 2023 03:54:13 server2 maldet(811753): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Sep 03 2023 03:54:14 server2 maldet(811753): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Sep 03 2023 03:54:14 server2 maldet(811753): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Sep 03 2023 03:54:14 server2 maldet(811753): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Sep 03 2023 03:54:14 server2 maldet(811753): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Sep 03 2023 03:54:31 server2 maldet(811753): {scan} file list completed in 17s, found 760 files... Sep 03 2023 03:54:31 server2 maldet(811753): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Sep 03 2023 03:54:31 server2 maldet(811753): {scan} scan of (760 files) in progress... Sep 03 2023 03:55:07 server2 maldet(811753): {scan} scan completed on : files 760, malware hits 0, cleaned hits 0, time 54s Sep 03 2023 03:55:07 server2 maldet(811753): {scan} scan report saved, to view run: maldet --report 230903-0354.811753 Sep 04 2023 03:08:26 server2 maldet(1068752): {update} checking for available updates... Sep 04 2023 03:08:26 server2 maldet(1068752): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Sep 04 2023 03:08:26 server2 maldet(1068752): {update} hashing install files and checking against server... Sep 04 2023 03:08:26 server2 maldet(1068752): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Sep 04 2023 03:08:26 server2 maldet(1068752): {update} latest version already installed. Sep 04 2023 03:08:26 server2 maldet(1068885): {sigup} performing signature update check... Sep 04 2023 03:08:26 server2 maldet(1068885): {sigup} local signature set is version 202309011182320 Sep 04 2023 03:08:26 server2 maldet(1068885): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Sep 04 2023 03:08:26 server2 maldet(1068885): {sigup} new signature set 202309041879620 available Sep 04 2023 03:08:26 server2 maldet(1068885): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Sep 04 2023 03:08:26 server2 maldet(1068885): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Sep 04 2023 03:08:27 server2 maldet(1068885): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Sep 04 2023 03:08:27 server2 maldet(1068885): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Sep 04 2023 03:08:27 server2 maldet(1068885): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Sep 04 2023 03:08:27 server2 maldet(1068885): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Sep 04 2023 03:08:27 server2 maldet(1068885): {sigup} verified md5sum of maldet-sigpack.tgz Sep 04 2023 03:08:27 server2 maldet(1068885): {sigup} unpacked and installed maldet-sigpack.tgz Sep 04 2023 03:08:27 server2 maldet(1068885): {sigup} verified md5sum of maldet-clean.tgz Sep 04 2023 03:08:27 server2 maldet(1068885): {sigup} unpacked and installed maldet-clean.tgz Sep 04 2023 03:08:27 server2 maldet(1068885): {sigup} signature set update completed Sep 04 2023 03:08:27 server2 maldet(1068885): {sigup} 17637 signatures (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Sep 04 2023 03:08:27 server2 maldet(1069116): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Sep 04 2023 03:08:27 server2 maldet(1069116): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Sep 04 2023 03:08:27 server2 maldet(1069116): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Sep 04 2023 03:08:27 server2 maldet(1069116): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Sep 04 2023 03:08:27 server2 maldet(1069116): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Sep 04 2023 03:09:05 server2 maldet(1069116): {scan} file list completed in 38s, found 1032 files... Sep 04 2023 03:09:05 server2 maldet(1069116): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Sep 04 2023 03:09:05 server2 maldet(1069116): {scan} scan of (1032 files) in progress... Sep 04 2023 03:10:07 server2 maldet(1069116): {scan} scan completed on : files 1032, malware hits 0, cleaned hits 0, time 100s Sep 04 2023 03:10:07 server2 maldet(1069116): {scan} scan report saved, to view run: maldet --report 230904-0308.1069116 Sep 04 2023 09:18:29 server2 maldet(1194): {mon} could not find inotifywait command, install yum package inotify-tools or download from https://github.com/rvoicilas/inotify-tools/wiki/ Sep 04 2023 09:28:59 server2 maldet(1227): {mon} could not find inotifywait command, install yum package inotify-tools or download from https://github.com/rvoicilas/inotify-tools/wiki/ Sep 04 2023 09:34:57 server2 maldet(1190): {mon} could not find inotifywait command, install yum package inotify-tools or download from https://github.com/rvoicilas/inotify-tools/wiki/ Sep 05 2023 03:30:47 server2 maldet(192210): {update} checking for available updates... Sep 05 2023 03:30:47 server2 maldet(192210): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Sep 05 2023 03:30:47 server2 maldet(192210): {update} hashing install files and checking against server... Sep 05 2023 03:30:47 server2 maldet(192210): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Sep 05 2023 03:30:47 server2 maldet(192210): {update} latest version already installed. Sep 05 2023 03:30:47 server2 maldet(192343): {sigup} performing signature update check... Sep 05 2023 03:30:48 server2 maldet(192343): {sigup} local signature set is version 202309041879620 Sep 05 2023 03:30:48 server2 maldet(192343): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Sep 05 2023 03:30:48 server2 maldet(192343): {sigup} latest signature set already installed Sep 05 2023 03:30:48 server2 maldet(192454): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Sep 05 2023 03:30:48 server2 maldet(192454): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Sep 05 2023 03:30:48 server2 maldet(192454): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Sep 05 2023 03:30:48 server2 maldet(192454): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Sep 05 2023 03:30:48 server2 maldet(192454): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Sep 05 2023 03:31:10 server2 maldet(192454): {scan} file list completed in 22s, found 1274 files... Sep 05 2023 03:31:10 server2 maldet(192454): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Sep 05 2023 03:31:10 server2 maldet(192454): {scan} scan of (1274 files) in progress... Sep 05 2023 03:32:18 server2 maldet(192454): {scan} scan completed on : files 1274, malware hits 0, cleaned hits 0, time 90s Sep 05 2023 03:32:18 server2 maldet(192454): {scan} scan report saved, to view run: maldet --report 230905-0330.192454 Sep 06 2023 03:37:44 server2 maldet(390842): {update} checking for available updates... Sep 06 2023 03:37:44 server2 maldet(390842): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Sep 06 2023 03:37:44 server2 maldet(390842): {update} hashing install files and checking against server... Sep 06 2023 03:37:44 server2 maldet(390842): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Sep 06 2023 03:37:44 server2 maldet(390842): {update} latest version already installed. Sep 06 2023 03:37:44 server2 maldet(390975): {sigup} performing signature update check... Sep 06 2023 03:37:44 server2 maldet(390975): {sigup} local signature set is version 202309041879620 Sep 06 2023 03:37:44 server2 maldet(390975): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Sep 06 2023 03:37:45 server2 maldet(390975): {sigup} latest signature set already installed Sep 06 2023 03:37:45 server2 maldet(391086): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Sep 06 2023 03:37:45 server2 maldet(391086): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Sep 06 2023 03:37:45 server2 maldet(391086): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Sep 06 2023 03:37:45 server2 maldet(391086): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Sep 06 2023 03:37:45 server2 maldet(391086): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Sep 06 2023 03:38:02 server2 maldet(391086): {scan} file list completed in 17s, found 1302 files... Sep 06 2023 03:38:02 server2 maldet(391086): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Sep 06 2023 03:38:02 server2 maldet(391086): {scan} scan of (1302 files) in progress... Sep 06 2023 03:39:07 server2 maldet(391086): {scan} scan completed on : files 1302, malware hits 0, cleaned hits 0, time 82s Sep 06 2023 03:39:07 server2 maldet(391086): {scan} scan report saved, to view run: maldet --report 230906-0337.391086 Sep 07 2023 03:25:26 server2 maldet(580130): {update} checking for available updates... Sep 07 2023 03:25:26 server2 maldet(580130): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Sep 07 2023 03:25:26 server2 maldet(580130): {update} hashing install files and checking against server... Sep 07 2023 03:25:26 server2 maldet(580130): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Sep 07 2023 03:25:26 server2 maldet(580130): {update} latest version already installed. Sep 07 2023 03:25:26 server2 maldet(580263): {sigup} performing signature update check... Sep 07 2023 03:25:26 server2 maldet(580263): {sigup} local signature set is version 202309041879620 Sep 07 2023 03:25:26 server2 maldet(580263): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Sep 07 2023 03:25:26 server2 maldet(580263): {sigup} new signature set 202309072840097 available Sep 07 2023 03:25:26 server2 maldet(580263): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Sep 07 2023 03:25:26 server2 maldet(580263): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Sep 07 2023 03:25:26 server2 maldet(580263): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Sep 07 2023 03:25:26 server2 maldet(580263): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Sep 07 2023 03:25:26 server2 maldet(580263): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Sep 07 2023 03:25:26 server2 maldet(580263): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Sep 07 2023 03:25:26 server2 maldet(580263): {sigup} verified md5sum of maldet-sigpack.tgz Sep 07 2023 03:25:26 server2 maldet(580263): {sigup} unpacked and installed maldet-sigpack.tgz Sep 07 2023 03:25:26 server2 maldet(580263): {sigup} verified md5sum of maldet-clean.tgz Sep 07 2023 03:25:26 server2 maldet(580263): {sigup} unpacked and installed maldet-clean.tgz Sep 07 2023 03:25:26 server2 maldet(580263): {sigup} signature set update completed Sep 07 2023 03:25:26 server2 maldet(580263): {sigup} 17637 signatures (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Sep 07 2023 03:25:27 server2 maldet(580491): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Sep 07 2023 03:25:27 server2 maldet(580491): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Sep 07 2023 03:25:27 server2 maldet(580491): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Sep 07 2023 03:25:27 server2 maldet(580491): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Sep 07 2023 03:25:27 server2 maldet(580491): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Sep 07 2023 03:25:57 server2 maldet(580491): {scan} file list completed in 30s, found 2159 files... Sep 07 2023 03:25:57 server2 maldet(580491): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Sep 07 2023 03:25:57 server2 maldet(580491): {scan} scan of (2159 files) in progress... Sep 07 2023 03:27:34 server2 maldet(580491): {scan} scan completed on : files 2159, malware hits 0, cleaned hits 0, time 127s Sep 07 2023 03:27:34 server2 maldet(580491): {scan} scan report saved, to view run: maldet --report 230907-0325.580491 Sep 08 2023 03:16:29 server2 maldet(776293): {update} checking for available updates... Sep 08 2023 03:16:29 server2 maldet(776293): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Sep 08 2023 03:16:29 server2 maldet(776293): {update} hashing install files and checking against server... Sep 08 2023 03:16:29 server2 maldet(776293): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Sep 08 2023 03:16:29 server2 maldet(776293): {update} latest version already installed. Sep 08 2023 03:16:29 server2 maldet(776427): {sigup} performing signature update check... Sep 08 2023 03:16:29 server2 maldet(776427): {sigup} local signature set is version 202309072840097 Sep 08 2023 03:16:29 server2 maldet(776427): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Sep 08 2023 03:16:30 server2 maldet(776427): {sigup} latest signature set already installed Sep 08 2023 03:16:30 server2 maldet(776538): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Sep 08 2023 03:16:30 server2 maldet(776538): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Sep 08 2023 03:16:30 server2 maldet(776538): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Sep 08 2023 03:16:30 server2 maldet(776538): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Sep 08 2023 03:16:30 server2 maldet(776538): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Sep 08 2023 03:16:53 server2 maldet(776538): {scan} file list completed in 23s, found 1514 files... Sep 08 2023 03:16:53 server2 maldet(776538): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Sep 08 2023 03:16:53 server2 maldet(776538): {scan} scan of (1514 files) in progress... Sep 08 2023 03:18:09 server2 maldet(776538): {scan} scan completed on : files 1514, malware hits 0, cleaned hits 0, time 99s Sep 08 2023 03:18:10 server2 maldet(776538): {scan} scan report saved, to view run: maldet --report 230908-0316.776538 Sep 09 2023 03:35:16 server2 maldet(988796): {update} checking for available updates... Sep 09 2023 03:35:17 server2 maldet(988796): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Sep 09 2023 03:35:17 server2 maldet(988796): {update} hashing install files and checking against server... Sep 09 2023 03:35:17 server2 maldet(988796): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Sep 09 2023 03:35:17 server2 maldet(988796): {update} latest version already installed. Sep 09 2023 03:35:17 server2 maldet(988929): {sigup} performing signature update check... Sep 09 2023 03:35:17 server2 maldet(988929): {sigup} local signature set is version 202309072840097 Sep 09 2023 03:35:17 server2 maldet(988929): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Sep 09 2023 03:35:17 server2 maldet(988929): {sigup} latest signature set already installed Sep 09 2023 03:35:17 server2 maldet(989040): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Sep 09 2023 03:35:17 server2 maldet(989040): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Sep 09 2023 03:35:17 server2 maldet(989040): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Sep 09 2023 03:35:17 server2 maldet(989040): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Sep 09 2023 03:35:17 server2 maldet(989040): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Sep 09 2023 03:35:35 server2 maldet(989040): {scan} file list completed in 18s, found 1222 files... Sep 09 2023 03:35:35 server2 maldet(989040): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Sep 09 2023 03:35:35 server2 maldet(989040): {scan} scan of (1222 files) in progress... Sep 09 2023 03:36:26 server2 maldet(989040): {scan} scan completed on : files 1222, malware hits 0, cleaned hits 0, time 69s Sep 09 2023 03:36:26 server2 maldet(989040): {scan} scan report saved, to view run: maldet --report 230909-0335.989040 Sep 10 2023 03:43:18 server2 maldet(1185090): {update} checking for available updates... Sep 10 2023 03:43:18 server2 maldet(1185090): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Sep 10 2023 03:43:18 server2 maldet(1185090): {update} hashing install files and checking against server... Sep 10 2023 03:43:18 server2 maldet(1185090): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Sep 10 2023 03:43:18 server2 maldet(1185090): {update} latest version already installed. Sep 10 2023 03:43:18 server2 maldet(1185223): {sigup} performing signature update check... Sep 10 2023 03:43:18 server2 maldet(1185223): {sigup} local signature set is version 202309072840097 Sep 10 2023 03:43:18 server2 maldet(1185223): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Sep 10 2023 03:43:18 server2 maldet(1185223): {sigup} new signature set 20230910481553 available Sep 10 2023 03:43:18 server2 maldet(1185223): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Sep 10 2023 03:43:19 server2 maldet(1185223): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Sep 10 2023 03:43:19 server2 maldet(1185223): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Sep 10 2023 03:43:19 server2 maldet(1185223): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Sep 10 2023 03:43:19 server2 maldet(1185223): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Sep 10 2023 03:43:19 server2 maldet(1185223): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Sep 10 2023 03:43:19 server2 maldet(1185223): {sigup} verified md5sum of maldet-sigpack.tgz Sep 10 2023 03:43:19 server2 maldet(1185223): {sigup} unpacked and installed maldet-sigpack.tgz Sep 10 2023 03:43:19 server2 maldet(1185223): {sigup} verified md5sum of maldet-clean.tgz Sep 10 2023 03:43:19 server2 maldet(1185223): {sigup} unpacked and installed maldet-clean.tgz Sep 10 2023 03:43:19 server2 maldet(1185223): {sigup} signature set update completed Sep 10 2023 03:43:19 server2 maldet(1185223): {sigup} 17637 signatures (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Sep 10 2023 03:43:19 server2 maldet(1185457): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Sep 10 2023 03:43:20 server2 maldet(1185457): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Sep 10 2023 03:43:20 server2 maldet(1185457): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Sep 10 2023 03:43:20 server2 maldet(1185457): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Sep 10 2023 03:43:20 server2 maldet(1185457): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Sep 10 2023 03:43:40 server2 maldet(1185457): {scan} file list completed in 20s, found 979 files... Sep 10 2023 03:43:40 server2 maldet(1185457): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Sep 10 2023 03:43:40 server2 maldet(1185457): {scan} scan of (979 files) in progress... Sep 10 2023 03:44:25 server2 maldet(1185457): {scan} scan completed on : files 979, malware hits 0, cleaned hits 0, time 66s Sep 10 2023 03:44:25 server2 maldet(1185457): {scan} scan report saved, to view run: maldet --report 230910-0343.1185457 Sep 11 2023 03:28:36 server2 maldet(1384658): {update} checking for available updates... Sep 11 2023 03:28:36 server2 maldet(1384658): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Sep 11 2023 03:28:36 server2 maldet(1384658): {update} hashing install files and checking against server... Sep 11 2023 03:28:36 server2 maldet(1384658): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Sep 11 2023 03:28:36 server2 maldet(1384658): {update} latest version already installed. Sep 11 2023 03:28:36 server2 maldet(1384791): {sigup} performing signature update check... Sep 11 2023 03:28:36 server2 maldet(1384791): {sigup} local signature set is version 20230910481553 Sep 11 2023 03:28:36 server2 maldet(1384791): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Sep 11 2023 03:28:36 server2 maldet(1384791): {sigup} latest signature set already installed Sep 11 2023 03:28:36 server2 maldet(1384902): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Sep 11 2023 03:28:36 server2 maldet(1384902): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Sep 11 2023 03:28:36 server2 maldet(1384902): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Sep 11 2023 03:28:36 server2 maldet(1384902): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Sep 11 2023 03:28:36 server2 maldet(1384902): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Sep 11 2023 03:29:00 server2 maldet(1384902): {scan} file list completed in 24s, found 2716 files... Sep 11 2023 03:29:00 server2 maldet(1384902): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Sep 11 2023 03:29:00 server2 maldet(1384902): {scan} scan of (2716 files) in progress... Sep 11 2023 03:30:34 server2 maldet(1384902): {scan} scan completed on : files 2716, malware hits 0, cleaned hits 0, time 118s Sep 11 2023 03:30:34 server2 maldet(1384902): {scan} scan report saved, to view run: maldet --report 230911-0328.1384902 Sep 12 2023 03:52:59 server2 maldet(2287670): {update} checking for available updates... Sep 12 2023 03:53:00 server2 maldet(2287670): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Sep 12 2023 03:53:00 server2 maldet(2287670): {update} hashing install files and checking against server... Sep 12 2023 03:53:00 server2 maldet(2287670): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Sep 12 2023 03:53:00 server2 maldet(2287670): {update} latest version already installed. Sep 12 2023 03:53:00 server2 maldet(2287803): {sigup} performing signature update check... Sep 12 2023 03:53:00 server2 maldet(2287803): {sigup} local signature set is version 20230910481553 Sep 12 2023 03:53:00 server2 maldet(2287803): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Sep 12 2023 03:53:00 server2 maldet(2287803): {sigup} latest signature set already installed Sep 12 2023 03:53:00 server2 maldet(2287914): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Sep 12 2023 03:53:00 server2 maldet(2287914): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Sep 12 2023 03:53:00 server2 maldet(2287914): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Sep 12 2023 03:53:00 server2 maldet(2287914): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Sep 12 2023 03:53:00 server2 maldet(2287914): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Sep 12 2023 03:53:20 server2 maldet(2287914): {scan} file list completed in 20s, found 3320 files... Sep 12 2023 03:53:20 server2 maldet(2287914): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Sep 12 2023 03:53:20 server2 maldet(2287914): {scan} scan of (3320 files) in progress... Sep 12 2023 03:54:45 server2 maldet(2287914): {scan} scan completed on : files 3320, malware hits 0, cleaned hits 0, time 105s Sep 12 2023 03:54:45 server2 maldet(2287914): {scan} scan report saved, to view run: maldet --report 230912-0353.2287914 Sep 13 2023 03:39:49 server2 maldet(2499617): {update} checking for available updates... Sep 13 2023 03:39:49 server2 maldet(2499617): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Sep 13 2023 03:39:49 server2 maldet(2499617): {update} hashing install files and checking against server... Sep 13 2023 03:39:49 server2 maldet(2499617): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Sep 13 2023 03:39:49 server2 maldet(2499617): {update} latest version already installed. Sep 13 2023 03:39:49 server2 maldet(2499751): {sigup} performing signature update check... Sep 13 2023 03:39:49 server2 maldet(2499751): {sigup} local signature set is version 20230910481553 Sep 13 2023 03:39:49 server2 maldet(2499751): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Sep 13 2023 03:39:49 server2 maldet(2499751): {sigup} new signature set 20230913486689 available Sep 13 2023 03:39:49 server2 maldet(2499751): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Sep 13 2023 03:39:49 server2 maldet(2499751): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Sep 13 2023 03:39:49 server2 maldet(2499751): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Sep 13 2023 03:39:49 server2 maldet(2499751): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Sep 13 2023 03:39:49 server2 maldet(2499751): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Sep 13 2023 03:39:49 server2 maldet(2499751): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Sep 13 2023 03:39:49 server2 maldet(2499751): {sigup} verified md5sum of maldet-sigpack.tgz Sep 13 2023 03:39:50 server2 maldet(2499751): {sigup} unpacked and installed maldet-sigpack.tgz Sep 13 2023 03:39:50 server2 maldet(2499751): {sigup} verified md5sum of maldet-clean.tgz Sep 13 2023 03:39:50 server2 maldet(2499751): {sigup} unpacked and installed maldet-clean.tgz Sep 13 2023 03:39:50 server2 maldet(2499751): {sigup} signature set update completed Sep 13 2023 03:39:50 server2 maldet(2499751): {sigup} 17637 signatures (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Sep 13 2023 03:39:50 server2 maldet(2499979): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Sep 13 2023 03:39:50 server2 maldet(2499979): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Sep 13 2023 03:39:50 server2 maldet(2499979): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Sep 13 2023 03:39:50 server2 maldet(2499979): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Sep 13 2023 03:39:50 server2 maldet(2499979): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Sep 13 2023 03:40:15 server2 maldet(2499979): {scan} file list completed in 25s, found 1299 files... Sep 13 2023 03:40:15 server2 maldet(2499979): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Sep 13 2023 03:40:15 server2 maldet(2499979): {scan} scan of (1299 files) in progress... Sep 13 2023 03:41:25 server2 maldet(2499979): {scan} scan completed on : files 1299, malware hits 0, cleaned hits 0, time 95s Sep 13 2023 03:41:25 server2 maldet(2499979): {scan} scan report saved, to view run: maldet --report 230913-0339.2499979 Sep 14 2023 03:21:44 server2 maldet(2695124): {update} checking for available updates... Sep 14 2023 03:21:44 server2 maldet(2695124): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Sep 14 2023 03:21:44 server2 maldet(2695124): {update} hashing install files and checking against server... Sep 14 2023 03:21:44 server2 maldet(2695124): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Sep 14 2023 03:21:44 server2 maldet(2695124): {update} latest version already installed. Sep 14 2023 03:21:44 server2 maldet(2695257): {sigup} performing signature update check... Sep 14 2023 03:21:44 server2 maldet(2695257): {sigup} local signature set is version 20230913486689 Sep 14 2023 03:21:44 server2 maldet(2695257): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Sep 14 2023 03:21:44 server2 maldet(2695257): {sigup} latest signature set already installed Sep 14 2023 03:21:44 server2 maldet(2695368): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Sep 14 2023 03:21:44 server2 maldet(2695368): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Sep 14 2023 03:21:44 server2 maldet(2695368): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Sep 14 2023 03:21:44 server2 maldet(2695368): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Sep 14 2023 03:21:44 server2 maldet(2695368): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Sep 14 2023 03:22:13 server2 maldet(2695368): {scan} file list completed in 28s, found 935 files... Sep 14 2023 03:22:13 server2 maldet(2695368): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Sep 14 2023 03:22:13 server2 maldet(2695368): {scan} scan of (935 files) in progress... Sep 14 2023 03:23:05 server2 maldet(2695368): {scan} scan completed on : files 935, malware hits 0, cleaned hits 0, time 81s Sep 14 2023 03:23:05 server2 maldet(2695368): {scan} scan report saved, to view run: maldet --report 230914-0321.2695368 Sep 15 2023 03:54:27 server2 maldet(2974770): {update} checking for available updates... Sep 15 2023 03:54:27 server2 maldet(2974770): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Sep 15 2023 03:54:27 server2 maldet(2974770): {update} hashing install files and checking against server... Sep 15 2023 03:54:27 server2 maldet(2974770): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Sep 15 2023 03:54:27 server2 maldet(2974770): {update} latest version already installed. Sep 15 2023 03:54:27 server2 maldet(2974905): {sigup} performing signature update check... Sep 15 2023 03:54:27 server2 maldet(2974905): {sigup} local signature set is version 20230913486689 Sep 15 2023 03:54:27 server2 maldet(2974905): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Sep 15 2023 03:54:27 server2 maldet(2974905): {sigup} latest signature set already installed Sep 15 2023 03:54:27 server2 maldet(2975017): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Sep 15 2023 03:54:27 server2 maldet(2975017): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Sep 15 2023 03:54:27 server2 maldet(2975017): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Sep 15 2023 03:54:27 server2 maldet(2975017): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Sep 15 2023 03:54:28 server2 maldet(2975017): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Sep 15 2023 03:54:49 server2 maldet(2975017): {scan} file list completed in 22s, found 1187 files... Sep 15 2023 03:54:49 server2 maldet(2975017): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Sep 15 2023 03:54:49 server2 maldet(2975017): {scan} scan of (1187 files) in progress... Sep 15 2023 03:55:46 server2 maldet(2975017): {scan} scan completed on : files 1187, malware hits 0, cleaned hits 0, time 79s Sep 15 2023 03:55:46 server2 maldet(2975017): {scan} scan report saved, to view run: maldet --report 230915-0354.2975017 Sep 16 2023 03:46:59 server2 maldet(3208581): {update} checking for available updates... Sep 16 2023 03:46:59 server2 maldet(3208581): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Sep 16 2023 03:46:59 server2 maldet(3208581): {update} hashing install files and checking against server... Sep 16 2023 03:46:59 server2 maldet(3208581): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Sep 16 2023 03:46:59 server2 maldet(3208581): {update} latest version already installed. Sep 16 2023 03:46:59 server2 maldet(3208714): {sigup} performing signature update check... Sep 16 2023 03:46:59 server2 maldet(3208714): {sigup} local signature set is version 20230913486689 Sep 16 2023 03:46:59 server2 maldet(3208714): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Sep 16 2023 03:46:59 server2 maldet(3208714): {sigup} new signature set 202309161217367 available Sep 16 2023 03:46:59 server2 maldet(3208714): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Sep 16 2023 03:47:00 server2 maldet(3208714): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Sep 16 2023 03:47:00 server2 maldet(3208714): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Sep 16 2023 03:47:00 server2 maldet(3208714): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Sep 16 2023 03:47:00 server2 maldet(3208714): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Sep 16 2023 03:47:00 server2 maldet(3208714): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Sep 16 2023 03:47:00 server2 maldet(3208714): {sigup} verified md5sum of maldet-sigpack.tgz Sep 16 2023 03:47:00 server2 maldet(3208714): {sigup} unpacked and installed maldet-sigpack.tgz Sep 16 2023 03:47:00 server2 maldet(3208714): {sigup} verified md5sum of maldet-clean.tgz Sep 16 2023 03:47:00 server2 maldet(3208714): {sigup} unpacked and installed maldet-clean.tgz Sep 16 2023 03:47:00 server2 maldet(3208714): {sigup} signature set update completed Sep 16 2023 03:47:00 server2 maldet(3208714): {sigup} 17637 signatures (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Sep 16 2023 03:47:00 server2 maldet(3208942): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Sep 16 2023 03:47:01 server2 maldet(3208942): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Sep 16 2023 03:47:01 server2 maldet(3208942): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Sep 16 2023 03:47:01 server2 maldet(3208942): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Sep 16 2023 03:47:01 server2 maldet(3208942): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Sep 16 2023 03:47:27 server2 maldet(3208942): {scan} file list completed in 26s, found 3434 files... Sep 16 2023 03:47:27 server2 maldet(3208942): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Sep 16 2023 03:47:27 server2 maldet(3208942): {scan} scan of (3434 files) in progress... Sep 16 2023 03:50:48 server2 maldet(3208942): {scan} scan completed on : files 3434, malware hits 0, cleaned hits 0, time 228s Sep 16 2023 03:50:48 server2 maldet(3208942): {scan} scan report saved, to view run: maldet --report 230916-0347.3208942 Sep 17 2023 03:31:37 server2 maldet(3423889): {update} checking for available updates... Sep 17 2023 03:31:37 server2 maldet(3423889): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Sep 17 2023 03:31:37 server2 maldet(3423889): {update} hashing install files and checking against server... Sep 17 2023 03:31:37 server2 maldet(3423889): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Sep 17 2023 03:31:37 server2 maldet(3423889): {update} latest version already installed. Sep 17 2023 03:31:37 server2 maldet(3424022): {sigup} performing signature update check... Sep 17 2023 03:31:37 server2 maldet(3424022): {sigup} local signature set is version 202309161217367 Sep 17 2023 03:31:37 server2 maldet(3424022): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Sep 17 2023 03:31:37 server2 maldet(3424022): {sigup} latest signature set already installed Sep 17 2023 03:31:37 server2 maldet(3424133): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Sep 17 2023 03:31:38 server2 maldet(3424133): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Sep 17 2023 03:31:38 server2 maldet(3424133): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Sep 17 2023 03:31:38 server2 maldet(3424133): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Sep 17 2023 03:31:38 server2 maldet(3424133): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Sep 17 2023 03:32:04 server2 maldet(3424133): {scan} file list completed in 25s, found 1216 files... Sep 17 2023 03:32:04 server2 maldet(3424133): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Sep 17 2023 03:32:04 server2 maldet(3424133): {scan} scan of (1216 files) in progress... Sep 17 2023 03:33:01 server2 maldet(3424133): {scan} scan completed on : files 1216, malware hits 0, cleaned hits 0, time 84s Sep 17 2023 03:33:01 server2 maldet(3424133): {scan} scan report saved, to view run: maldet --report 230917-0331.3424133 Sep 18 2023 03:18:13 server2 maldet(3695239): {update} checking for available updates... Sep 18 2023 03:18:13 server2 maldet(3695239): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Sep 18 2023 03:18:13 server2 maldet(3695239): {update} hashing install files and checking against server... Sep 18 2023 03:18:13 server2 maldet(3695239): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Sep 18 2023 03:18:14 server2 maldet(3695239): {update} latest version already installed. Sep 18 2023 03:18:14 server2 maldet(3695378): {sigup} performing signature update check... Sep 18 2023 03:18:14 server2 maldet(3695378): {sigup} local signature set is version 202309161217367 Sep 18 2023 03:18:14 server2 maldet(3695378): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Sep 18 2023 03:18:14 server2 maldet(3695378): {sigup} latest signature set already installed Sep 18 2023 03:18:14 server2 maldet(3695489): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Sep 18 2023 03:18:14 server2 maldet(3695489): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Sep 18 2023 03:18:14 server2 maldet(3695489): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Sep 18 2023 03:18:14 server2 maldet(3695489): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Sep 18 2023 03:18:14 server2 maldet(3695489): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Sep 18 2023 03:19:03 server2 maldet(3695489): {scan} file list completed in 49s, found 23164 files... Sep 18 2023 03:19:03 server2 maldet(3695489): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Sep 18 2023 03:19:03 server2 maldet(3695489): {scan} scan of (23164 files) in progress... Sep 18 2023 03:29:26 server2 maldet(3695489): {scan} clamscan returned an error, check /usr/local/maldetect/logs/clamscan_log for details! Sep 18 2023 03:29:26 server2 maldet(3695489): {scan} scan completed on : files 23164, malware hits 0, cleaned hits 0, time 672s Sep 18 2023 03:29:26 server2 maldet(3695489): {scan} scan report saved, to view run: maldet --report 230918-0318.3695489 Sep 19 2023 03:16:27 server2 maldet(3964572): {update} checking for available updates... Sep 19 2023 03:16:27 server2 maldet(3964572): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Sep 19 2023 03:16:27 server2 maldet(3964572): {update} hashing install files and checking against server... Sep 19 2023 03:16:27 server2 maldet(3964572): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Sep 19 2023 03:16:27 server2 maldet(3964572): {update} latest version already installed. Sep 19 2023 03:16:27 server2 maldet(3964705): {sigup} performing signature update check... Sep 19 2023 03:16:27 server2 maldet(3964705): {sigup} local signature set is version 202309161217367 Sep 19 2023 03:16:27 server2 maldet(3964705): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Sep 19 2023 03:16:27 server2 maldet(3964705): {sigup} new signature set 202309191914112 available Sep 19 2023 03:16:27 server2 maldet(3964705): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Sep 19 2023 03:16:27 server2 maldet(3964705): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Sep 19 2023 03:16:28 server2 maldet(3964705): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Sep 19 2023 03:16:28 server2 maldet(3964705): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Sep 19 2023 03:16:28 server2 maldet(3964705): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Sep 19 2023 03:16:28 server2 maldet(3964705): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Sep 19 2023 03:16:28 server2 maldet(3964705): {sigup} verified md5sum of maldet-sigpack.tgz Sep 19 2023 03:16:28 server2 maldet(3964705): {sigup} unpacked and installed maldet-sigpack.tgz Sep 19 2023 03:16:28 server2 maldet(3964705): {sigup} verified md5sum of maldet-clean.tgz Sep 19 2023 03:16:28 server2 maldet(3964705): {sigup} unpacked and installed maldet-clean.tgz Sep 19 2023 03:16:28 server2 maldet(3964705): {sigup} signature set update completed Sep 19 2023 03:16:28 server2 maldet(3964705): {sigup} 17637 signatures (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Sep 19 2023 03:16:28 server2 maldet(3964935): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Sep 19 2023 03:16:29 server2 maldet(3964935): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Sep 19 2023 03:16:29 server2 maldet(3964935): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Sep 19 2023 03:16:29 server2 maldet(3964935): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Sep 19 2023 03:16:29 server2 maldet(3964935): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Sep 19 2023 03:17:19 server2 maldet(3964935): {scan} file list completed in 50s, found 921 files... Sep 19 2023 03:17:19 server2 maldet(3964935): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Sep 19 2023 03:17:19 server2 maldet(3964935): {scan} scan of (921 files) in progress... Sep 19 2023 03:18:08 server2 maldet(3964935): {scan} scan completed on : files 921, malware hits 0, cleaned hits 0, time 100s Sep 19 2023 03:18:08 server2 maldet(3964935): {scan} scan report saved, to view run: maldet --report 230919-0316.3964935 Sep 20 2023 03:19:43 server2 maldet(51708): {update} checking for available updates... Sep 20 2023 03:19:43 server2 maldet(51708): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Sep 20 2023 03:19:44 server2 maldet(51708): {update} hashing install files and checking against server... Sep 20 2023 03:19:44 server2 maldet(51708): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Sep 20 2023 03:19:44 server2 maldet(51708): {update} latest version already installed. Sep 20 2023 03:19:44 server2 maldet(51843): {sigup} performing signature update check... Sep 20 2023 03:19:44 server2 maldet(51843): {sigup} local signature set is version 202309191914112 Sep 20 2023 03:19:45 server2 maldet(51843): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Sep 20 2023 03:19:45 server2 maldet(51843): {sigup} latest signature set already installed Sep 20 2023 03:19:46 server2 maldet(51956): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Sep 20 2023 03:19:46 server2 maldet(51956): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Sep 20 2023 03:19:46 server2 maldet(51956): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Sep 20 2023 03:19:46 server2 maldet(51956): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Sep 20 2023 03:19:46 server2 maldet(51956): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Sep 20 2023 03:21:10 server2 maldet(51956): {scan} file list completed in 84s, found 4648 files... Sep 20 2023 03:21:10 server2 maldet(51956): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Sep 20 2023 03:21:10 server2 maldet(51956): {scan} scan of (4648 files) in progress... Sep 20 2023 03:24:16 server2 maldet(51956): {scan} scan completed on : files 4648, malware hits 0, cleaned hits 0, time 270s Sep 20 2023 03:24:16 server2 maldet(51956): {scan} scan report saved, to view run: maldet --report 230920-0319.51956 Sep 21 2023 03:22:35 server2 maldet(264665): {update} checking for available updates... Sep 21 2023 03:22:35 server2 maldet(264665): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Sep 21 2023 03:22:35 server2 maldet(264665): {update} hashing install files and checking against server... Sep 21 2023 03:22:35 server2 maldet(264665): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Sep 21 2023 03:22:35 server2 maldet(264665): {update} latest version already installed. Sep 21 2023 03:22:35 server2 maldet(264798): {sigup} performing signature update check... Sep 21 2023 03:22:35 server2 maldet(264798): {sigup} local signature set is version 202309191914112 Sep 21 2023 03:22:35 server2 maldet(264798): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Sep 21 2023 03:22:35 server2 maldet(264798): {sigup} latest signature set already installed Sep 21 2023 03:22:35 server2 maldet(264909): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Sep 21 2023 03:22:35 server2 maldet(264909): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Sep 21 2023 03:22:35 server2 maldet(264909): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Sep 21 2023 03:22:35 server2 maldet(264909): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Sep 21 2023 03:22:35 server2 maldet(264909): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Sep 21 2023 03:23:22 server2 maldet(264909): {scan} file list completed in 46s, found 837 files... Sep 21 2023 03:23:22 server2 maldet(264909): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Sep 21 2023 03:23:22 server2 maldet(264909): {scan} scan of (837 files) in progress... Sep 21 2023 03:23:57 server2 maldet(264909): {scan} scan completed on : files 837, malware hits 0, cleaned hits 0, time 82s Sep 21 2023 03:23:57 server2 maldet(264909): {scan} scan report saved, to view run: maldet --report 230921-0322.264909 Sep 22 2023 03:27:31 server2 maldet(482837): {update} checking for available updates... Sep 22 2023 03:27:31 server2 maldet(482837): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Sep 22 2023 03:27:31 server2 maldet(482837): {update} hashing install files and checking against server... Sep 22 2023 03:27:31 server2 maldet(482837): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Sep 22 2023 03:27:31 server2 maldet(482837): {update} latest version already installed. Sep 22 2023 03:27:31 server2 maldet(482970): {sigup} performing signature update check... Sep 22 2023 03:27:31 server2 maldet(482970): {sigup} local signature set is version 202309191914112 Sep 22 2023 03:27:31 server2 maldet(482970): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Sep 22 2023 03:27:31 server2 maldet(482970): {sigup} new signature set 202309222612647 available Sep 22 2023 03:27:31 server2 maldet(482970): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Sep 22 2023 03:27:31 server2 maldet(482970): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Sep 22 2023 03:27:31 server2 maldet(482970): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Sep 22 2023 03:27:31 server2 maldet(482970): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Sep 22 2023 03:27:31 server2 maldet(482970): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Sep 22 2023 03:27:32 server2 maldet(482970): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Sep 22 2023 03:27:32 server2 maldet(482970): {sigup} verified md5sum of maldet-sigpack.tgz Sep 22 2023 03:27:32 server2 maldet(482970): {sigup} unpacked and installed maldet-sigpack.tgz Sep 22 2023 03:27:32 server2 maldet(482970): {sigup} verified md5sum of maldet-clean.tgz Sep 22 2023 03:27:32 server2 maldet(482970): {sigup} unpacked and installed maldet-clean.tgz Sep 22 2023 03:27:32 server2 maldet(482970): {sigup} signature set update completed Sep 22 2023 03:27:32 server2 maldet(482970): {sigup} 17637 signatures (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Sep 22 2023 03:27:32 server2 maldet(483198): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Sep 22 2023 03:27:32 server2 maldet(483198): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Sep 22 2023 03:27:32 server2 maldet(483198): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Sep 22 2023 03:27:32 server2 maldet(483198): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Sep 22 2023 03:27:32 server2 maldet(483198): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Sep 22 2023 03:27:59 server2 maldet(483198): {scan} file list completed in 27s, found 894 files... Sep 22 2023 03:27:59 server2 maldet(483198): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Sep 22 2023 03:27:59 server2 maldet(483198): {scan} scan of (894 files) in progress... Sep 22 2023 03:28:52 server2 maldet(483198): {scan} scan completed on : files 894, malware hits 0, cleaned hits 0, time 80s Sep 22 2023 03:28:52 server2 maldet(483198): {scan} scan report saved, to view run: maldet --report 230922-0327.483198 Sep 23 2023 03:17:08 server2 maldet(695816): {update} checking for available updates... Sep 23 2023 03:17:08 server2 maldet(695816): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Sep 23 2023 03:17:09 server2 maldet(695816): {update} hashing install files and checking against server... Sep 23 2023 03:17:09 server2 maldet(695816): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Sep 23 2023 03:17:09 server2 maldet(695816): {update} latest version already installed. Sep 23 2023 03:17:09 server2 maldet(695949): {sigup} performing signature update check... Sep 23 2023 03:17:09 server2 maldet(695949): {sigup} local signature set is version 202309222612647 Sep 23 2023 03:17:09 server2 maldet(695949): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Sep 23 2023 03:17:09 server2 maldet(695949): {sigup} latest signature set already installed Sep 23 2023 03:17:09 server2 maldet(696062): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Sep 23 2023 03:17:09 server2 maldet(696062): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Sep 23 2023 03:17:09 server2 maldet(696062): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Sep 23 2023 03:17:09 server2 maldet(696062): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Sep 23 2023 03:17:09 server2 maldet(696062): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Sep 23 2023 03:17:32 server2 maldet(696062): {scan} file list completed in 23s, found 889 files... Sep 23 2023 03:17:32 server2 maldet(696062): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Sep 23 2023 03:17:32 server2 maldet(696062): {scan} scan of (889 files) in progress... Sep 23 2023 03:18:10 server2 maldet(696062): {scan} scan completed on : files 889, malware hits 0, cleaned hits 0, time 61s Sep 23 2023 03:18:10 server2 maldet(696062): {scan} scan report saved, to view run: maldet --report 230923-0317.696062 Sep 24 2023 03:36:45 server2 maldet(994283): {update} checking for available updates... Sep 24 2023 03:36:45 server2 maldet(994283): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Sep 24 2023 03:36:45 server2 maldet(994283): {update} hashing install files and checking against server... Sep 24 2023 03:36:45 server2 maldet(994283): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Sep 24 2023 03:36:45 server2 maldet(994283): {update} latest version already installed. Sep 24 2023 03:36:46 server2 maldet(994416): {sigup} performing signature update check... Sep 24 2023 03:36:46 server2 maldet(994416): {sigup} local signature set is version 202309222612647 Sep 24 2023 03:36:46 server2 maldet(994416): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Sep 24 2023 03:36:46 server2 maldet(994416): {sigup} latest signature set already installed Sep 24 2023 03:36:46 server2 maldet(994528): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Sep 24 2023 03:36:47 server2 maldet(994528): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Sep 24 2023 03:36:47 server2 maldet(994528): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Sep 24 2023 03:36:47 server2 maldet(994528): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Sep 24 2023 03:36:47 server2 maldet(994528): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Sep 24 2023 03:37:01 server2 maldet(994528): {scan} file list completed in 13s, found 1080 files... Sep 24 2023 03:37:01 server2 maldet(994528): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Sep 24 2023 03:37:01 server2 maldet(994528): {scan} scan of (1080 files) in progress... Sep 24 2023 03:37:43 server2 maldet(994528): {scan} scan completed on : files 1080, malware hits 0, cleaned hits 0, time 57s Sep 24 2023 03:37:43 server2 maldet(994528): {scan} scan report saved, to view run: maldet --report 230924-0336.994528 Sep 25 2023 03:31:03 server2 maldet(1233591): {update} checking for available updates... Sep 25 2023 03:31:03 server2 maldet(1233591): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Sep 25 2023 03:31:03 server2 maldet(1233591): {update} hashing install files and checking against server... Sep 25 2023 03:31:03 server2 maldet(1233591): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Sep 25 2023 03:31:03 server2 maldet(1233591): {update} latest version already installed. Sep 25 2023 03:31:03 server2 maldet(1233726): {sigup} performing signature update check... Sep 25 2023 03:31:03 server2 maldet(1233726): {sigup} local signature set is version 202309222612647 Sep 25 2023 03:31:03 server2 maldet(1233726): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Sep 25 2023 03:31:03 server2 maldet(1233726): {sigup} new signature set 20230925538362 available Sep 25 2023 03:31:03 server2 maldet(1233726): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Sep 25 2023 03:31:04 server2 maldet(1233726): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Sep 25 2023 03:31:04 server2 maldet(1233726): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Sep 25 2023 03:31:04 server2 maldet(1233726): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Sep 25 2023 03:31:04 server2 maldet(1233726): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Sep 25 2023 03:31:04 server2 maldet(1233726): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Sep 25 2023 03:31:04 server2 maldet(1233726): {sigup} verified md5sum of maldet-sigpack.tgz Sep 25 2023 03:31:04 server2 maldet(1233726): {sigup} unpacked and installed maldet-sigpack.tgz Sep 25 2023 03:31:04 server2 maldet(1233726): {sigup} verified md5sum of maldet-clean.tgz Sep 25 2023 03:31:04 server2 maldet(1233726): {sigup} unpacked and installed maldet-clean.tgz Sep 25 2023 03:31:04 server2 maldet(1233726): {sigup} signature set update completed Sep 25 2023 03:31:04 server2 maldet(1233726): {sigup} 17637 signatures (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Sep 25 2023 03:31:04 server2 maldet(1233954): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Sep 25 2023 03:31:04 server2 maldet(1233954): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Sep 25 2023 03:31:04 server2 maldet(1233954): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Sep 25 2023 03:31:04 server2 maldet(1233954): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Sep 25 2023 03:31:04 server2 maldet(1233954): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Sep 25 2023 03:31:37 server2 maldet(1233954): {scan} file list completed in 33s, found 1298 files... Sep 25 2023 03:31:37 server2 maldet(1233954): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Sep 25 2023 03:31:37 server2 maldet(1233954): {scan} scan of (1298 files) in progress... Sep 25 2023 03:32:56 server2 maldet(1233954): {scan} scan completed on : files 1298, malware hits 0, cleaned hits 0, time 112s Sep 25 2023 03:32:56 server2 maldet(1233954): {scan} scan report saved, to view run: maldet --report 230925-0331.1233954 Sep 26 2023 03:45:15 server2 maldet(1451832): {update} checking for available updates... Sep 26 2023 03:45:15 server2 maldet(1451832): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Sep 26 2023 03:45:15 server2 maldet(1451832): {update} hashing install files and checking against server... Sep 26 2023 03:45:15 server2 maldet(1451832): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Sep 26 2023 03:45:15 server2 maldet(1451832): {update} latest version already installed. Sep 26 2023 03:45:15 server2 maldet(1451965): {sigup} performing signature update check... Sep 26 2023 03:45:15 server2 maldet(1451965): {sigup} local signature set is version 20230925538362 Sep 26 2023 03:45:15 server2 maldet(1451965): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Sep 26 2023 03:45:15 server2 maldet(1451965): {sigup} latest signature set already installed Sep 26 2023 03:45:15 server2 maldet(1452076): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Sep 26 2023 03:45:15 server2 maldet(1452076): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Sep 26 2023 03:45:16 server2 maldet(1452076): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Sep 26 2023 03:45:16 server2 maldet(1452076): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Sep 26 2023 03:45:16 server2 maldet(1452076): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Sep 26 2023 03:45:39 server2 maldet(1452076): {scan} file list completed in 23s, found 8711 files... Sep 26 2023 03:45:39 server2 maldet(1452076): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Sep 26 2023 03:45:39 server2 maldet(1452076): {scan} scan of (8711 files) in progress... Sep 26 2023 03:52:06 server2 maldet(1452076): {scan} scan completed on : files 8711, malware hits 0, cleaned hits 0, time 410s Sep 26 2023 03:52:06 server2 maldet(1452076): {scan} scan report saved, to view run: maldet --report 230926-0345.1452076 Sep 27 2023 03:29:55 server2 maldet(1679549): {update} checking for available updates... Sep 27 2023 03:29:55 server2 maldet(1679549): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Sep 27 2023 03:29:55 server2 maldet(1679549): {update} hashing install files and checking against server... Sep 27 2023 03:29:55 server2 maldet(1679549): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Sep 27 2023 03:29:55 server2 maldet(1679549): {update} latest version already installed. Sep 27 2023 03:29:55 server2 maldet(1679682): {sigup} performing signature update check... Sep 27 2023 03:29:55 server2 maldet(1679682): {sigup} local signature set is version 20230925538362 Sep 27 2023 03:29:55 server2 maldet(1679682): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Sep 27 2023 03:29:55 server2 maldet(1679682): {sigup} latest signature set already installed Sep 27 2023 03:29:55 server2 maldet(1679793): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Sep 27 2023 03:29:56 server2 maldet(1679793): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Sep 27 2023 03:29:56 server2 maldet(1679793): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Sep 27 2023 03:29:56 server2 maldet(1679793): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Sep 27 2023 03:29:56 server2 maldet(1679793): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Sep 27 2023 03:30:19 server2 maldet(1679793): {scan} file list completed in 23s, found 1977 files... Sep 27 2023 03:30:19 server2 maldet(1679793): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Sep 27 2023 03:30:19 server2 maldet(1679793): {scan} scan of (1977 files) in progress... Sep 27 2023 03:31:33 server2 maldet(1679793): {scan} scan completed on : files 1977, malware hits 0, cleaned hits 0, time 98s Sep 27 2023 03:31:33 server2 maldet(1679793): {scan} scan report saved, to view run: maldet --report 230927-0329.1679793 Sep 28 2023 03:42:42 server2 maldet(1940117): {update} checking for available updates... Sep 28 2023 03:42:43 server2 maldet(1940117): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Sep 28 2023 03:42:43 server2 maldet(1940117): {update} hashing install files and checking against server... Sep 28 2023 03:42:43 server2 maldet(1940117): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Sep 28 2023 03:42:43 server2 maldet(1940117): {update} latest version already installed. Sep 28 2023 03:42:43 server2 maldet(1940250): {sigup} performing signature update check... Sep 28 2023 03:42:43 server2 maldet(1940250): {sigup} local signature set is version 20230925538362 Sep 28 2023 03:42:43 server2 maldet(1940250): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Sep 28 2023 03:42:43 server2 maldet(1940250): {sigup} new signature set 202309281258944 available Sep 28 2023 03:42:43 server2 maldet(1940250): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Sep 28 2023 03:42:43 server2 maldet(1940250): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Sep 28 2023 03:42:43 server2 maldet(1940250): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Sep 28 2023 03:42:43 server2 maldet(1940250): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Sep 28 2023 03:42:43 server2 maldet(1940250): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Sep 28 2023 03:42:43 server2 maldet(1940250): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Sep 28 2023 03:42:43 server2 maldet(1940250): {sigup} verified md5sum of maldet-sigpack.tgz Sep 28 2023 03:42:43 server2 maldet(1940250): {sigup} unpacked and installed maldet-sigpack.tgz Sep 28 2023 03:42:43 server2 maldet(1940250): {sigup} verified md5sum of maldet-clean.tgz Sep 28 2023 03:42:43 server2 maldet(1940250): {sigup} unpacked and installed maldet-clean.tgz Sep 28 2023 03:42:43 server2 maldet(1940250): {sigup} signature set update completed Sep 28 2023 03:42:43 server2 maldet(1940250): {sigup} 17637 signatures (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Sep 28 2023 03:42:44 server2 maldet(1940479): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Sep 28 2023 03:42:44 server2 maldet(1940479): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Sep 28 2023 03:42:44 server2 maldet(1940479): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Sep 28 2023 03:42:44 server2 maldet(1940479): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Sep 28 2023 03:42:44 server2 maldet(1940479): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Sep 28 2023 03:43:13 server2 maldet(1940479): {scan} file list completed in 29s, found 2994 files... Sep 28 2023 03:43:13 server2 maldet(1940479): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Sep 28 2023 03:43:13 server2 maldet(1940479): {scan} scan of (2994 files) in progress... Sep 28 2023 03:45:15 server2 maldet(1940479): {scan} scan completed on : files 2994, malware hits 0, cleaned hits 0, time 151s Sep 28 2023 03:45:15 server2 maldet(1940479): {scan} scan report saved, to view run: maldet --report 230928-0342.1940479 Sep 29 2023 03:30:27 server2 maldet(2199306): {update} checking for available updates... Sep 29 2023 03:30:27 server2 maldet(2199306): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Sep 29 2023 03:30:27 server2 maldet(2199306): {update} hashing install files and checking against server... Sep 29 2023 03:30:27 server2 maldet(2199306): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Sep 29 2023 03:30:27 server2 maldet(2199306): {update} latest version already installed. Sep 29 2023 03:30:27 server2 maldet(2199439): {sigup} performing signature update check... Sep 29 2023 03:30:27 server2 maldet(2199439): {sigup} local signature set is version 202309281258944 Sep 29 2023 03:30:27 server2 maldet(2199439): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Sep 29 2023 03:30:27 server2 maldet(2199439): {sigup} latest signature set already installed Sep 29 2023 03:30:27 server2 maldet(2199550): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Sep 29 2023 03:30:28 server2 maldet(2199550): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Sep 29 2023 03:30:28 server2 maldet(2199550): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Sep 29 2023 03:30:28 server2 maldet(2199550): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Sep 29 2023 03:30:28 server2 maldet(2199550): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Sep 29 2023 03:30:54 server2 maldet(2199550): {scan} file list completed in 26s, found 862 files... Sep 29 2023 03:30:54 server2 maldet(2199550): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Sep 29 2023 03:30:54 server2 maldet(2199550): {scan} scan of (862 files) in progress... Sep 29 2023 03:31:32 server2 maldet(2199550): {scan} scan completed on : files 862, malware hits 0, cleaned hits 0, time 65s Sep 29 2023 03:31:32 server2 maldet(2199550): {scan} scan report saved, to view run: maldet --report 230929-0330.2199550 Sep 30 2023 03:49:07 server2 maldet(2454378): {update} checking for available updates... Sep 30 2023 03:49:07 server2 maldet(2454378): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Sep 30 2023 03:49:07 server2 maldet(2454378): {update} hashing install files and checking against server... Sep 30 2023 03:49:08 server2 maldet(2454378): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Sep 30 2023 03:49:08 server2 maldet(2454378): {update} latest version already installed. Sep 30 2023 03:49:08 server2 maldet(2454511): {sigup} performing signature update check... Sep 30 2023 03:49:08 server2 maldet(2454511): {sigup} local signature set is version 202309281258944 Sep 30 2023 03:49:08 server2 maldet(2454511): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Sep 30 2023 03:49:08 server2 maldet(2454511): {sigup} latest signature set already installed Sep 30 2023 03:49:08 server2 maldet(2454622): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Sep 30 2023 03:49:09 server2 maldet(2454622): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Sep 30 2023 03:49:09 server2 maldet(2454622): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Sep 30 2023 03:49:09 server2 maldet(2454622): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Sep 30 2023 03:49:09 server2 maldet(2454622): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Sep 30 2023 03:49:29 server2 maldet(2454622): {scan} file list completed in 20s, found 1518 files... Sep 30 2023 03:49:29 server2 maldet(2454622): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Sep 30 2023 03:49:29 server2 maldet(2454622): {scan} scan of (1518 files) in progress... Sep 30 2023 03:50:49 server2 maldet(2454622): {scan} scan completed on : files 1518, malware hits 0, cleaned hits 0, time 100s Sep 30 2023 03:50:49 server2 maldet(2454622): {scan} scan report saved, to view run: maldet --report 230930-0349.2454622 Oct 01 2023 03:42:38 server2 maldet(2678820): {update} checking for available updates... Oct 01 2023 03:42:39 server2 maldet(2678820): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Oct 01 2023 03:42:39 server2 maldet(2678820): {update} hashing install files and checking against server... Oct 01 2023 03:42:39 server2 maldet(2678820): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Oct 01 2023 03:42:39 server2 maldet(2678820): {update} latest version already installed. Oct 01 2023 03:42:39 server2 maldet(2678953): {sigup} performing signature update check... Oct 01 2023 03:42:39 server2 maldet(2678953): {sigup} local signature set is version 202309281258944 Oct 01 2023 03:42:39 server2 maldet(2678953): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Oct 01 2023 03:42:39 server2 maldet(2678953): {sigup} new signature set 20231001494365 available Oct 01 2023 03:42:39 server2 maldet(2678953): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Oct 01 2023 03:42:39 server2 maldet(2678953): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Oct 01 2023 03:42:39 server2 maldet(2678953): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Oct 01 2023 03:42:39 server2 maldet(2678953): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Oct 01 2023 03:42:39 server2 maldet(2678953): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Oct 01 2023 03:42:39 server2 maldet(2678953): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Oct 01 2023 03:42:39 server2 maldet(2678953): {sigup} verified md5sum of maldet-sigpack.tgz Oct 01 2023 03:42:39 server2 maldet(2678953): {sigup} unpacked and installed maldet-sigpack.tgz Oct 01 2023 03:42:39 server2 maldet(2678953): {sigup} verified md5sum of maldet-clean.tgz Oct 01 2023 03:42:39 server2 maldet(2678953): {sigup} unpacked and installed maldet-clean.tgz Oct 01 2023 03:42:39 server2 maldet(2678953): {sigup} signature set update completed Oct 01 2023 03:42:39 server2 maldet(2678953): {sigup} 17637 signatures (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Oct 01 2023 03:42:40 server2 maldet(2679181): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Oct 01 2023 03:42:41 server2 maldet(2679181): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Oct 01 2023 03:42:41 server2 maldet(2679181): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Oct 01 2023 03:42:41 server2 maldet(2679181): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Oct 01 2023 03:42:41 server2 maldet(2679181): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Oct 01 2023 03:43:04 server2 maldet(2679181): {scan} file list completed in 23s, found 568 files... Oct 01 2023 03:43:04 server2 maldet(2679181): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Oct 01 2023 03:43:04 server2 maldet(2679181): {scan} scan of (568 files) in progress... Oct 01 2023 03:43:38 server2 maldet(2679181): {scan} scan completed on : files 568, malware hits 0, cleaned hits 0, time 58s Oct 01 2023 03:43:38 server2 maldet(2679181): {scan} scan report saved, to view run: maldet --report 231001-0342.2679181 Oct 02 2023 03:28:22 server2 maldet(2900864): {update} checking for available updates... Oct 02 2023 03:28:22 server2 maldet(2900864): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Oct 02 2023 03:28:22 server2 maldet(2900864): {update} hashing install files and checking against server... Oct 02 2023 03:28:22 server2 maldet(2900864): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Oct 02 2023 03:28:22 server2 maldet(2900864): {update} latest version already installed. Oct 02 2023 03:28:23 server2 maldet(2900997): {sigup} performing signature update check... Oct 02 2023 03:28:23 server2 maldet(2900997): {sigup} local signature set is version 20231001494365 Oct 02 2023 03:28:23 server2 maldet(2900997): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Oct 02 2023 03:28:23 server2 maldet(2900997): {sigup} latest signature set already installed Oct 02 2023 03:28:23 server2 maldet(2901108): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Oct 02 2023 03:28:23 server2 maldet(2901108): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Oct 02 2023 03:28:23 server2 maldet(2901108): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Oct 02 2023 03:28:23 server2 maldet(2901108): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Oct 02 2023 03:28:23 server2 maldet(2901108): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Oct 02 2023 03:28:55 server2 maldet(2901108): {scan} file list completed in 32s, found 871 files... Oct 02 2023 03:28:55 server2 maldet(2901108): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Oct 02 2023 03:28:55 server2 maldet(2901108): {scan} scan of (871 files) in progress... Oct 02 2023 03:29:32 server2 maldet(2901108): {scan} scan completed on : files 871, malware hits 0, cleaned hits 0, time 69s Oct 02 2023 03:29:32 server2 maldet(2901108): {scan} scan report saved, to view run: maldet --report 231002-0328.2901108 Oct 03 2023 03:13:45 server2 maldet(3134014): {update} checking for available updates... Oct 03 2023 03:13:45 server2 maldet(3134014): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Oct 03 2023 03:13:45 server2 maldet(3134014): {update} hashing install files and checking against server... Oct 03 2023 03:13:45 server2 maldet(3134014): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Oct 03 2023 03:13:45 server2 maldet(3134014): {update} latest version already installed. Oct 03 2023 03:13:45 server2 maldet(3134147): {sigup} performing signature update check... Oct 03 2023 03:13:45 server2 maldet(3134147): {sigup} local signature set is version 20231001494365 Oct 03 2023 03:13:45 server2 maldet(3134147): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Oct 03 2023 03:13:45 server2 maldet(3134147): {sigup} latest signature set already installed Oct 03 2023 03:13:45 server2 maldet(3134258): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Oct 03 2023 03:13:46 server2 maldet(3134258): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Oct 03 2023 03:13:46 server2 maldet(3134258): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Oct 03 2023 03:13:46 server2 maldet(3134258): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Oct 03 2023 03:13:46 server2 maldet(3134258): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Oct 03 2023 03:14:09 server2 maldet(3134258): {scan} file list completed in 23s, found 939 files... Oct 03 2023 03:14:09 server2 maldet(3134258): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Oct 03 2023 03:14:09 server2 maldet(3134258): {scan} scan of (939 files) in progress... Oct 03 2023 03:14:46 server2 maldet(3134258): {scan} scan completed on : files 939, malware hits 0, cleaned hits 0, time 61s Oct 03 2023 03:14:46 server2 maldet(3134258): {scan} scan report saved, to view run: maldet --report 231003-0313.3134258 Oct 04 2023 03:34:28 server2 maldet(3379497): {update} checking for available updates... Oct 04 2023 03:34:28 server2 maldet(3379497): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Oct 04 2023 03:34:29 server2 maldet(3379497): {update} hashing install files and checking against server... Oct 04 2023 03:34:29 server2 maldet(3379497): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Oct 04 2023 03:34:29 server2 maldet(3379497): {update} latest version already installed. Oct 04 2023 03:34:29 server2 maldet(3379631): {sigup} performing signature update check... Oct 04 2023 03:34:29 server2 maldet(3379631): {sigup} local signature set is version 20231001494365 Oct 04 2023 03:34:29 server2 maldet(3379631): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Oct 04 2023 03:34:29 server2 maldet(3379631): {sigup} new signature set 202310041199244 available Oct 04 2023 03:34:29 server2 maldet(3379631): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Oct 04 2023 03:34:29 server2 maldet(3379631): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Oct 04 2023 03:34:29 server2 maldet(3379631): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Oct 04 2023 03:34:29 server2 maldet(3379631): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Oct 04 2023 03:34:29 server2 maldet(3379631): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Oct 04 2023 03:34:29 server2 maldet(3379631): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Oct 04 2023 03:34:29 server2 maldet(3379631): {sigup} verified md5sum of maldet-sigpack.tgz Oct 04 2023 03:34:29 server2 maldet(3379631): {sigup} unpacked and installed maldet-sigpack.tgz Oct 04 2023 03:34:29 server2 maldet(3379631): {sigup} verified md5sum of maldet-clean.tgz Oct 04 2023 03:34:29 server2 maldet(3379631): {sigup} unpacked and installed maldet-clean.tgz Oct 04 2023 03:34:29 server2 maldet(3379631): {sigup} signature set update completed Oct 04 2023 03:34:29 server2 maldet(3379631): {sigup} 17637 signatures (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Oct 04 2023 03:34:30 server2 maldet(3379859): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Oct 04 2023 03:34:30 server2 maldet(3379859): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Oct 04 2023 03:34:30 server2 maldet(3379859): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Oct 04 2023 03:34:30 server2 maldet(3379859): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Oct 04 2023 03:34:30 server2 maldet(3379859): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Oct 04 2023 03:34:49 server2 maldet(3379859): {scan} file list completed in 19s, found 868 files... Oct 04 2023 03:34:49 server2 maldet(3379859): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Oct 04 2023 03:34:49 server2 maldet(3379859): {scan} scan of (868 files) in progress... Oct 04 2023 03:35:40 server2 maldet(3379859): {scan} scan completed on : files 868, malware hits 0, cleaned hits 0, time 70s Oct 04 2023 03:35:40 server2 maldet(3379859): {scan} scan report saved, to view run: maldet --report 231004-0334.3379859 Oct 05 2023 03:31:17 server2 maldet(3619670): {update} checking for available updates... Oct 05 2023 03:31:17 server2 maldet(3619670): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Oct 05 2023 03:31:17 server2 maldet(3619670): {update} hashing install files and checking against server... Oct 05 2023 03:31:17 server2 maldet(3619670): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Oct 05 2023 03:31:17 server2 maldet(3619670): {update} latest version already installed. Oct 05 2023 03:31:17 server2 maldet(3619803): {sigup} performing signature update check... Oct 05 2023 03:31:17 server2 maldet(3619803): {sigup} local signature set is version 202310041199244 Oct 05 2023 03:31:17 server2 maldet(3619803): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Oct 05 2023 03:31:17 server2 maldet(3619803): {sigup} latest signature set already installed Oct 05 2023 03:31:17 server2 maldet(3619914): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Oct 05 2023 03:31:18 server2 maldet(3619914): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Oct 05 2023 03:31:18 server2 maldet(3619914): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Oct 05 2023 03:31:18 server2 maldet(3619914): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Oct 05 2023 03:31:18 server2 maldet(3619914): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Oct 05 2023 03:31:54 server2 maldet(3619914): {scan} file list completed in 36s, found 5737 files... Oct 05 2023 03:31:54 server2 maldet(3619914): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Oct 05 2023 03:31:54 server2 maldet(3619914): {scan} scan of (5737 files) in progress... Oct 05 2023 03:34:59 server2 maldet(3619914): {scan} scan completed on : files 5737, malware hits 0, cleaned hits 0, time 222s Oct 05 2023 03:34:59 server2 maldet(3619914): {scan} scan report saved, to view run: maldet --report 231005-0331.3619914 Oct 06 2023 03:26:51 server2 maldet(3859289): {update} checking for available updates... Oct 06 2023 03:26:51 server2 maldet(3859289): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Oct 06 2023 03:26:51 server2 maldet(3859289): {update} hashing install files and checking against server... Oct 06 2023 03:26:51 server2 maldet(3859289): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Oct 06 2023 03:26:51 server2 maldet(3859289): {update} latest version already installed. Oct 06 2023 03:26:51 server2 maldet(3859422): {sigup} performing signature update check... Oct 06 2023 03:26:51 server2 maldet(3859422): {sigup} local signature set is version 202310041199244 Oct 06 2023 03:26:51 server2 maldet(3859422): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Oct 06 2023 03:26:51 server2 maldet(3859422): {sigup} latest signature set already installed Oct 06 2023 03:26:52 server2 maldet(3859534): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Oct 06 2023 03:26:52 server2 maldet(3859534): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Oct 06 2023 03:26:52 server2 maldet(3859534): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Oct 06 2023 03:26:52 server2 maldet(3859534): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Oct 06 2023 03:26:52 server2 maldet(3859534): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Oct 06 2023 03:27:15 server2 maldet(3859534): {scan} file list completed in 23s, found 1086 files... Oct 06 2023 03:27:16 server2 maldet(3859534): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Oct 06 2023 03:27:16 server2 maldet(3859534): {scan} scan of (1086 files) in progress... Oct 06 2023 03:28:03 server2 maldet(3859534): {scan} scan completed on : files 1086, malware hits 0, cleaned hits 0, time 71s Oct 06 2023 03:28:03 server2 maldet(3859534): {scan} scan report saved, to view run: maldet --report 231006-0326.3859534 Oct 07 2023 03:26:36 server2 maldet(4083983): {update} checking for available updates... Oct 07 2023 03:26:36 server2 maldet(4083983): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Oct 07 2023 03:26:36 server2 maldet(4083983): {update} hashing install files and checking against server... Oct 07 2023 03:26:36 server2 maldet(4083983): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Oct 07 2023 03:26:36 server2 maldet(4083983): {update} latest version already installed. Oct 07 2023 03:26:36 server2 maldet(4084116): {sigup} performing signature update check... Oct 07 2023 03:26:36 server2 maldet(4084116): {sigup} local signature set is version 202310041199244 Oct 07 2023 03:26:36 server2 maldet(4084116): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Oct 07 2023 03:26:36 server2 maldet(4084116): {sigup} new signature set 202310071896932 available Oct 07 2023 03:26:36 server2 maldet(4084116): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Oct 07 2023 03:26:36 server2 maldet(4084116): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Oct 07 2023 03:26:36 server2 maldet(4084116): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Oct 07 2023 03:26:36 server2 maldet(4084116): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Oct 07 2023 03:26:36 server2 maldet(4084116): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Oct 07 2023 03:26:36 server2 maldet(4084116): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Oct 07 2023 03:26:37 server2 maldet(4084116): {sigup} verified md5sum of maldet-sigpack.tgz Oct 07 2023 03:26:37 server2 maldet(4084116): {sigup} unpacked and installed maldet-sigpack.tgz Oct 07 2023 03:26:37 server2 maldet(4084116): {sigup} verified md5sum of maldet-clean.tgz Oct 07 2023 03:26:37 server2 maldet(4084116): {sigup} unpacked and installed maldet-clean.tgz Oct 07 2023 03:26:37 server2 maldet(4084116): {sigup} signature set update completed Oct 07 2023 03:26:37 server2 maldet(4084116): {sigup} 17637 signatures (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Oct 07 2023 03:26:37 server2 maldet(4084344): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Oct 07 2023 03:26:37 server2 maldet(4084344): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Oct 07 2023 03:26:37 server2 maldet(4084344): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Oct 07 2023 03:26:38 server2 maldet(4084344): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Oct 07 2023 03:26:38 server2 maldet(4084344): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Oct 07 2023 03:27:14 server2 maldet(4084344): {scan} file list completed in 36s, found 827 files... Oct 07 2023 03:27:14 server2 maldet(4084344): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Oct 07 2023 03:27:14 server2 maldet(4084344): {scan} scan of (827 files) in progress... Oct 07 2023 03:28:00 server2 maldet(4084344): {scan} scan completed on : files 827, malware hits 0, cleaned hits 0, time 83s Oct 07 2023 03:28:00 server2 maldet(4084344): {scan} scan report saved, to view run: maldet --report 231007-0326.4084344 Oct 08 2023 03:25:34 server2 maldet(135414): {update} checking for available updates... Oct 08 2023 03:25:35 server2 maldet(135414): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Oct 08 2023 03:25:35 server2 maldet(135414): {update} hashing install files and checking against server... Oct 08 2023 03:25:35 server2 maldet(135414): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Oct 08 2023 03:25:35 server2 maldet(135414): {update} latest version already installed. Oct 08 2023 03:25:35 server2 maldet(135547): {sigup} performing signature update check... Oct 08 2023 03:25:35 server2 maldet(135547): {sigup} local signature set is version 202310071896932 Oct 08 2023 03:25:35 server2 maldet(135547): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Oct 08 2023 03:25:35 server2 maldet(135547): {sigup} latest signature set already installed Oct 08 2023 03:25:35 server2 maldet(135658): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Oct 08 2023 03:25:37 server2 maldet(135658): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Oct 08 2023 03:25:37 server2 maldet(135658): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Oct 08 2023 03:25:37 server2 maldet(135658): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Oct 08 2023 03:25:37 server2 maldet(135658): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Oct 08 2023 03:25:52 server2 maldet(135658): {scan} file list completed in 15s, found 829 files... Oct 08 2023 03:25:52 server2 maldet(135658): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Oct 08 2023 03:25:52 server2 maldet(135658): {scan} scan of (829 files) in progress... Oct 08 2023 03:26:37 server2 maldet(135658): {scan} scan completed on : files 829, malware hits 0, cleaned hits 0, time 62s Oct 08 2023 03:26:37 server2 maldet(135658): {scan} scan report saved, to view run: maldet --report 231008-0325.135658 Oct 09 2023 03:16:02 server2 maldet(373827): {update} checking for available updates... Oct 09 2023 03:16:02 server2 maldet(373827): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Oct 09 2023 03:16:02 server2 maldet(373827): {update} hashing install files and checking against server... Oct 09 2023 03:16:03 server2 maldet(373827): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Oct 09 2023 03:16:03 server2 maldet(373827): {update} latest version already installed. Oct 09 2023 03:16:03 server2 maldet(373966): {sigup} performing signature update check... Oct 09 2023 03:16:03 server2 maldet(373966): {sigup} local signature set is version 202310071896932 Oct 09 2023 03:16:03 server2 maldet(373966): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Oct 09 2023 03:16:03 server2 maldet(373966): {sigup} latest signature set already installed Oct 09 2023 03:16:03 server2 maldet(374077): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Oct 09 2023 03:16:04 server2 maldet(374077): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Oct 09 2023 03:16:04 server2 maldet(374077): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Oct 09 2023 03:16:04 server2 maldet(374077): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Oct 09 2023 03:16:04 server2 maldet(374077): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Oct 09 2023 03:16:30 server2 maldet(374077): {scan} file list completed in 26s, found 13961 files... Oct 09 2023 03:16:30 server2 maldet(374077): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Oct 09 2023 03:16:30 server2 maldet(374077): {scan} scan of (13961 files) in progress... Oct 09 2023 03:22:45 server2 maldet(374077): {scan} scan completed on : files 13961, malware hits 0, cleaned hits 0, time 402s Oct 09 2023 03:22:45 server2 maldet(374077): {scan} scan report saved, to view run: maldet --report 231009-0316.374077 Oct 10 2023 03:20:57 server2 maldet(607111): {update} checking for available updates... Oct 10 2023 03:20:58 server2 maldet(607111): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Oct 10 2023 03:20:58 server2 maldet(607111): {update} hashing install files and checking against server... Oct 10 2023 03:20:58 server2 maldet(607111): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Oct 10 2023 03:20:58 server2 maldet(607111): {update} latest version already installed. Oct 10 2023 03:20:58 server2 maldet(607244): {sigup} performing signature update check... Oct 10 2023 03:20:58 server2 maldet(607244): {sigup} local signature set is version 202310071896932 Oct 10 2023 03:20:58 server2 maldet(607244): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Oct 10 2023 03:20:58 server2 maldet(607244): {sigup} new signature set 202310102596891 available Oct 10 2023 03:20:58 server2 maldet(607244): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Oct 10 2023 03:20:58 server2 maldet(607244): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Oct 10 2023 03:20:58 server2 maldet(607244): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Oct 10 2023 03:20:58 server2 maldet(607244): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Oct 10 2023 03:20:58 server2 maldet(607244): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Oct 10 2023 03:20:59 server2 maldet(607244): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Oct 10 2023 03:20:59 server2 maldet(607244): {sigup} verified md5sum of maldet-sigpack.tgz Oct 10 2023 03:20:59 server2 maldet(607244): {sigup} unpacked and installed maldet-sigpack.tgz Oct 10 2023 03:20:59 server2 maldet(607244): {sigup} verified md5sum of maldet-clean.tgz Oct 10 2023 03:20:59 server2 maldet(607244): {sigup} unpacked and installed maldet-clean.tgz Oct 10 2023 03:20:59 server2 maldet(607244): {sigup} signature set update completed Oct 10 2023 03:20:59 server2 maldet(607244): {sigup} 17637 signatures (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Oct 10 2023 03:20:59 server2 maldet(607472): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Oct 10 2023 03:20:59 server2 maldet(607472): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Oct 10 2023 03:20:59 server2 maldet(607472): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Oct 10 2023 03:20:59 server2 maldet(607472): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Oct 10 2023 03:20:59 server2 maldet(607472): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Oct 10 2023 03:21:48 server2 maldet(607472): {scan} file list completed in 49s, found 16576 files... Oct 10 2023 03:21:48 server2 maldet(607472): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Oct 10 2023 03:21:48 server2 maldet(607472): {scan} scan of (16576 files) in progress... Oct 10 2023 03:29:25 server2 maldet(607472): {scan} scan completed on : files 16576, malware hits 0, cleaned hits 0, time 506s Oct 10 2023 03:29:25 server2 maldet(607472): {scan} scan report saved, to view run: maldet --report 231010-0320.607472 Oct 11 2023 03:22:49 server2 maldet(810985): {update} checking for available updates... Oct 11 2023 03:22:49 server2 maldet(810985): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Oct 11 2023 03:22:49 server2 maldet(810985): {update} hashing install files and checking against server... Oct 11 2023 03:22:49 server2 maldet(810985): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Oct 11 2023 03:22:49 server2 maldet(810985): {update} latest version already installed. Oct 11 2023 03:22:50 server2 maldet(811118): {sigup} performing signature update check... Oct 11 2023 03:22:50 server2 maldet(811118): {sigup} local signature set is version 202310102596891 Oct 11 2023 03:22:50 server2 maldet(811118): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Oct 11 2023 03:22:50 server2 maldet(811118): {sigup} latest signature set already installed Oct 11 2023 03:22:50 server2 maldet(811229): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Oct 11 2023 03:22:50 server2 maldet(811229): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Oct 11 2023 03:22:50 server2 maldet(811229): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Oct 11 2023 03:22:50 server2 maldet(811229): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Oct 11 2023 03:22:50 server2 maldet(811229): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Oct 11 2023 03:23:23 server2 maldet(811229): {scan} file list completed in 33s, found 13067 files... Oct 11 2023 03:23:23 server2 maldet(811229): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Oct 11 2023 03:23:23 server2 maldet(811229): {scan} scan of (13067 files) in progress... Oct 11 2023 03:29:01 server2 maldet(811229): {scan} scan completed on : files 13067, malware hits 0, cleaned hits 0, time 371s Oct 11 2023 03:29:01 server2 maldet(811229): {scan} scan report saved, to view run: maldet --report 231011-0322.811229 Oct 12 2023 03:14:23 server2 maldet(1019039): {update} checking for available updates... Oct 12 2023 03:14:23 server2 maldet(1019039): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Oct 12 2023 03:14:23 server2 maldet(1019039): {update} hashing install files and checking against server... Oct 12 2023 03:14:23 server2 maldet(1019039): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Oct 12 2023 03:14:23 server2 maldet(1019039): {update} latest version already installed. Oct 12 2023 03:14:23 server2 maldet(1019172): {sigup} performing signature update check... Oct 12 2023 03:14:23 server2 maldet(1019172): {sigup} local signature set is version 202310102596891 Oct 12 2023 03:14:23 server2 maldet(1019172): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Oct 12 2023 03:14:23 server2 maldet(1019172): {sigup} latest signature set already installed Oct 12 2023 03:14:23 server2 maldet(1019283): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Oct 12 2023 03:14:24 server2 maldet(1019283): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Oct 12 2023 03:14:24 server2 maldet(1019283): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Oct 12 2023 03:14:24 server2 maldet(1019283): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Oct 12 2023 03:14:24 server2 maldet(1019283): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Oct 12 2023 03:14:44 server2 maldet(1019283): {scan} file list completed in 20s, found 1078 files... Oct 12 2023 03:14:44 server2 maldet(1019283): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Oct 12 2023 03:14:44 server2 maldet(1019283): {scan} scan of (1078 files) in progress... Oct 12 2023 03:15:35 server2 maldet(1019283): {scan} scan completed on : files 1078, malware hits 0, cleaned hits 0, time 72s Oct 12 2023 03:15:35 server2 maldet(1019283): {scan} scan report saved, to view run: maldet --report 231012-0314.1019283 Oct 13 2023 03:58:58 server2 maldet(1237424): {update} checking for available updates... Oct 13 2023 03:58:58 server2 maldet(1237424): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Oct 13 2023 03:58:58 server2 maldet(1237424): {update} hashing install files and checking against server... Oct 13 2023 03:58:58 server2 maldet(1237424): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Oct 13 2023 03:58:58 server2 maldet(1237424): {update} latest version already installed. Oct 13 2023 03:58:59 server2 maldet(1237557): {sigup} performing signature update check... Oct 13 2023 03:58:59 server2 maldet(1237557): {sigup} local signature set is version 202310102596891 Oct 13 2023 03:58:59 server2 maldet(1237557): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Oct 13 2023 03:58:59 server2 maldet(1237557): {sigup} new signature set 202310133295510 available Oct 13 2023 03:58:59 server2 maldet(1237557): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Oct 13 2023 03:58:59 server2 maldet(1237557): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Oct 13 2023 03:58:59 server2 maldet(1237557): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Oct 13 2023 03:58:59 server2 maldet(1237557): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Oct 13 2023 03:58:59 server2 maldet(1237557): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Oct 13 2023 03:58:59 server2 maldet(1237557): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Oct 13 2023 03:58:59 server2 maldet(1237557): {sigup} verified md5sum of maldet-sigpack.tgz Oct 13 2023 03:58:59 server2 maldet(1237557): {sigup} unpacked and installed maldet-sigpack.tgz Oct 13 2023 03:58:59 server2 maldet(1237557): {sigup} verified md5sum of maldet-clean.tgz Oct 13 2023 03:58:59 server2 maldet(1237557): {sigup} unpacked and installed maldet-clean.tgz Oct 13 2023 03:58:59 server2 maldet(1237557): {sigup} signature set update completed Oct 13 2023 03:58:59 server2 maldet(1237557): {sigup} 17637 signatures (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Oct 13 2023 03:58:59 server2 maldet(1237786): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Oct 13 2023 03:58:59 server2 maldet(1237786): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Oct 13 2023 03:58:59 server2 maldet(1237786): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Oct 13 2023 03:58:59 server2 maldet(1237786): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Oct 13 2023 03:58:59 server2 maldet(1237786): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Oct 13 2023 03:59:24 server2 maldet(1237786): {scan} file list completed in 25s, found 2781 files... Oct 13 2023 03:59:24 server2 maldet(1237786): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Oct 13 2023 03:59:24 server2 maldet(1237786): {scan} scan of (2781 files) in progress... Oct 13 2023 04:01:49 server2 maldet(1237786): {scan} clamscan returned an error, check /usr/local/maldetect/logs/clamscan_log for details! Oct 13 2023 04:01:49 server2 maldet(1237786): {scan} scan completed on : files 2781, malware hits 0, cleaned hits 0, time 170s Oct 13 2023 04:01:49 server2 maldet(1237786): {scan} scan report saved, to view run: maldet --report 231013-0358.1237786 Oct 14 2023 03:48:29 server2 maldet(1436941): {update} checking for available updates... Oct 14 2023 03:48:29 server2 maldet(1436941): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Oct 14 2023 03:48:29 server2 maldet(1436941): {update} hashing install files and checking against server... Oct 14 2023 03:48:29 server2 maldet(1436941): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Oct 14 2023 03:48:29 server2 maldet(1436941): {update} latest version already installed. Oct 14 2023 03:48:29 server2 maldet(1437074): {sigup} performing signature update check... Oct 14 2023 03:48:29 server2 maldet(1437074): {sigup} local signature set is version 202310133295510 Oct 14 2023 03:48:29 server2 maldet(1437074): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Oct 14 2023 03:48:29 server2 maldet(1437074): {sigup} latest signature set already installed Oct 14 2023 03:48:30 server2 maldet(1437186): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Oct 14 2023 03:48:30 server2 maldet(1437186): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Oct 14 2023 03:48:30 server2 maldet(1437186): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Oct 14 2023 03:48:30 server2 maldet(1437186): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Oct 14 2023 03:48:30 server2 maldet(1437186): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Oct 14 2023 03:48:57 server2 maldet(1437186): {scan} file list completed in 27s, found 3449 files... Oct 14 2023 03:48:57 server2 maldet(1437186): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Oct 14 2023 03:48:57 server2 maldet(1437186): {scan} scan of (3449 files) in progress... Oct 14 2023 03:52:15 server2 maldet(1437186): {scan} scan completed on : files 3449, malware hits 0, cleaned hits 0, time 225s Oct 14 2023 03:52:16 server2 maldet(1437186): {scan} scan report saved, to view run: maldet --report 231014-0348.1437186 Oct 15 2023 03:41:38 server2 maldet(1626559): {update} checking for available updates... Oct 15 2023 03:41:38 server2 maldet(1626559): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Oct 15 2023 03:41:38 server2 maldet(1626559): {update} hashing install files and checking against server... Oct 15 2023 03:41:38 server2 maldet(1626559): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Oct 15 2023 03:41:38 server2 maldet(1626559): {update} latest version already installed. Oct 15 2023 03:41:38 server2 maldet(1626692): {sigup} performing signature update check... Oct 15 2023 03:41:38 server2 maldet(1626692): {sigup} local signature set is version 202310133295510 Oct 15 2023 03:41:38 server2 maldet(1626692): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Oct 15 2023 03:41:38 server2 maldet(1626692): {sigup} latest signature set already installed Oct 15 2023 03:41:39 server2 maldet(1626803): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Oct 15 2023 03:41:40 server2 maldet(1626803): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Oct 15 2023 03:41:40 server2 maldet(1626803): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Oct 15 2023 03:41:40 server2 maldet(1626803): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Oct 15 2023 03:41:40 server2 maldet(1626803): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Oct 15 2023 03:41:58 server2 maldet(1626803): {scan} file list completed in 18s, found 565 files... Oct 15 2023 03:41:58 server2 maldet(1626803): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Oct 15 2023 03:41:58 server2 maldet(1626803): {scan} scan of (565 files) in progress... Oct 15 2023 03:42:33 server2 maldet(1626803): {scan} scan completed on : files 565, malware hits 0, cleaned hits 0, time 54s Oct 15 2023 03:42:33 server2 maldet(1626803): {scan} scan report saved, to view run: maldet --report 231015-0341.1626803 Oct 16 2023 03:33:43 server2 maldet(1827833): {update} checking for available updates... Oct 16 2023 03:33:44 server2 maldet(1827833): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Oct 16 2023 03:33:44 server2 maldet(1827833): {update} hashing install files and checking against server... Oct 16 2023 03:33:44 server2 maldet(1827833): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Oct 16 2023 03:33:44 server2 maldet(1827833): {update} latest version already installed. Oct 16 2023 03:33:44 server2 maldet(1827966): {sigup} performing signature update check... Oct 16 2023 03:33:44 server2 maldet(1827966): {sigup} local signature set is version 202310133295510 Oct 16 2023 03:33:44 server2 maldet(1827966): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Oct 16 2023 03:33:44 server2 maldet(1827966): {sigup} new signature set 20231016539229 available Oct 16 2023 03:33:44 server2 maldet(1827966): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Oct 16 2023 03:33:44 server2 maldet(1827966): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Oct 16 2023 03:33:44 server2 maldet(1827966): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Oct 16 2023 03:33:44 server2 maldet(1827966): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Oct 16 2023 03:33:44 server2 maldet(1827966): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Oct 16 2023 03:33:44 server2 maldet(1827966): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Oct 16 2023 03:33:44 server2 maldet(1827966): {sigup} verified md5sum of maldet-sigpack.tgz Oct 16 2023 03:33:44 server2 maldet(1827966): {sigup} unpacked and installed maldet-sigpack.tgz Oct 16 2023 03:33:44 server2 maldet(1827966): {sigup} verified md5sum of maldet-clean.tgz Oct 16 2023 03:33:44 server2 maldet(1827966): {sigup} unpacked and installed maldet-clean.tgz Oct 16 2023 03:33:44 server2 maldet(1827966): {sigup} signature set update completed Oct 16 2023 03:33:44 server2 maldet(1827966): {sigup} 17637 signatures (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Oct 16 2023 03:33:45 server2 maldet(1828195): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Oct 16 2023 03:33:45 server2 maldet(1828195): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Oct 16 2023 03:33:45 server2 maldet(1828195): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Oct 16 2023 03:33:45 server2 maldet(1828195): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Oct 16 2023 03:33:45 server2 maldet(1828195): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Oct 16 2023 03:34:13 server2 maldet(1828195): {scan} file list completed in 28s, found 2261 files... Oct 16 2023 03:34:13 server2 maldet(1828195): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Oct 16 2023 03:34:13 server2 maldet(1828195): {scan} scan of (2261 files) in progress... Oct 16 2023 03:36:20 server2 maldet(1828195): {scan} scan completed on : files 2261, malware hits 0, cleaned hits 0, time 155s Oct 16 2023 03:36:20 server2 maldet(1828195): {scan} scan report saved, to view run: maldet --report 231016-0333.1828195 Oct 17 2023 03:20:59 server2 maldet(2038217): {update} checking for available updates... Oct 17 2023 03:20:59 server2 maldet(2038217): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Oct 17 2023 03:21:00 server2 maldet(2038217): {update} hashing install files and checking against server... Oct 17 2023 03:21:00 server2 maldet(2038217): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Oct 17 2023 03:21:00 server2 maldet(2038217): {update} latest version already installed. Oct 17 2023 03:21:00 server2 maldet(2038351): {sigup} performing signature update check... Oct 17 2023 03:21:00 server2 maldet(2038351): {sigup} local signature set is version 20231016539229 Oct 17 2023 03:21:00 server2 maldet(2038351): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Oct 17 2023 03:21:00 server2 maldet(2038351): {sigup} latest signature set already installed Oct 17 2023 03:21:00 server2 maldet(2038462): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Oct 17 2023 03:21:01 server2 maldet(2038462): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Oct 17 2023 03:21:01 server2 maldet(2038462): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Oct 17 2023 03:21:01 server2 maldet(2038462): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Oct 17 2023 03:21:01 server2 maldet(2038462): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Oct 17 2023 03:21:23 server2 maldet(2038462): {scan} file list completed in 22s, found 707 files... Oct 17 2023 03:21:23 server2 maldet(2038462): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Oct 17 2023 03:21:23 server2 maldet(2038462): {scan} scan of (707 files) in progress... Oct 17 2023 03:21:55 server2 maldet(2038462): {scan} scan completed on : files 707, malware hits 0, cleaned hits 0, time 55s Oct 17 2023 03:21:55 server2 maldet(2038462): {scan} scan report saved, to view run: maldet --report 231017-0321.2038462 Oct 18 2023 03:20:03 server2 maldet(2242685): {update} checking for available updates... Oct 18 2023 03:20:10 server2 maldet(2242685): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Oct 18 2023 03:20:10 server2 maldet(2242685): {update} hashing install files and checking against server... Oct 18 2023 03:20:10 server2 maldet(2242685): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Oct 18 2023 03:20:10 server2 maldet(2242685): {update} latest version already installed. Oct 18 2023 03:20:10 server2 maldet(2242846): {sigup} performing signature update check... Oct 18 2023 03:20:10 server2 maldet(2242846): {sigup} local signature set is version 20231016539229 Oct 18 2023 03:20:11 server2 maldet(2242846): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Oct 18 2023 03:20:11 server2 maldet(2242846): {sigup} latest signature set already installed Oct 18 2023 03:20:11 server2 maldet(2242957): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Oct 18 2023 03:20:11 server2 maldet(2242957): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Oct 18 2023 03:20:11 server2 maldet(2242957): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Oct 18 2023 03:20:11 server2 maldet(2242957): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Oct 18 2023 03:20:11 server2 maldet(2242957): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Oct 18 2023 03:20:31 server2 maldet(2242957): {scan} file list completed in 20s, found 829 files... Oct 18 2023 03:20:31 server2 maldet(2242957): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Oct 18 2023 03:20:31 server2 maldet(2242957): {scan} scan of (829 files) in progress... Oct 18 2023 03:21:12 server2 maldet(2242957): {scan} scan completed on : files 829, malware hits 0, cleaned hits 0, time 61s Oct 18 2023 03:21:12 server2 maldet(2242957): {scan} scan report saved, to view run: maldet --report 231018-0320.2242957 Oct 19 2023 03:51:30 server2 maldet(2451464): {update} checking for available updates... Oct 19 2023 03:51:30 server2 maldet(2451464): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Oct 19 2023 03:51:30 server2 maldet(2451464): {update} hashing install files and checking against server... Oct 19 2023 03:51:30 server2 maldet(2451464): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Oct 19 2023 03:51:30 server2 maldet(2451464): {update} latest version already installed. Oct 19 2023 03:51:31 server2 maldet(2451597): {sigup} performing signature update check... Oct 19 2023 03:51:31 server2 maldet(2451597): {sigup} local signature set is version 20231016539229 Oct 19 2023 03:51:31 server2 maldet(2451597): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Oct 19 2023 03:51:31 server2 maldet(2451597): {sigup} new signature set 20231019534245 available Oct 19 2023 03:51:31 server2 maldet(2451597): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Oct 19 2023 03:51:31 server2 maldet(2451597): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Oct 19 2023 03:51:31 server2 maldet(2451597): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Oct 19 2023 03:51:31 server2 maldet(2451597): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Oct 19 2023 03:51:31 server2 maldet(2451597): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Oct 19 2023 03:51:31 server2 maldet(2451597): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Oct 19 2023 03:51:31 server2 maldet(2451597): {sigup} verified md5sum of maldet-sigpack.tgz Oct 19 2023 03:51:31 server2 maldet(2451597): {sigup} unpacked and installed maldet-sigpack.tgz Oct 19 2023 03:51:31 server2 maldet(2451597): {sigup} verified md5sum of maldet-clean.tgz Oct 19 2023 03:51:31 server2 maldet(2451597): {sigup} unpacked and installed maldet-clean.tgz Oct 19 2023 03:51:31 server2 maldet(2451597): {sigup} signature set update completed Oct 19 2023 03:51:31 server2 maldet(2451597): {sigup} 17637 signatures (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Oct 19 2023 03:51:32 server2 maldet(2451828): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Oct 19 2023 03:51:32 server2 maldet(2451828): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Oct 19 2023 03:51:32 server2 maldet(2451828): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Oct 19 2023 03:51:32 server2 maldet(2451828): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Oct 19 2023 03:51:32 server2 maldet(2451828): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Oct 19 2023 03:52:01 server2 maldet(2451828): {scan} file list completed in 29s, found 663 files... Oct 19 2023 03:52:01 server2 maldet(2451828): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Oct 19 2023 03:52:01 server2 maldet(2451828): {scan} scan of (663 files) in progress... Oct 19 2023 03:52:43 server2 maldet(2451828): {scan} scan completed on : files 663, malware hits 0, cleaned hits 0, time 71s Oct 19 2023 03:52:43 server2 maldet(2451828): {scan} scan report saved, to view run: maldet --report 231019-0351.2451828 Oct 20 2023 03:27:28 server2 maldet(2657735): {update} checking for available updates... Oct 20 2023 03:27:28 server2 maldet(2657735): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Oct 20 2023 03:27:28 server2 maldet(2657735): {update} hashing install files and checking against server... Oct 20 2023 03:27:28 server2 maldet(2657735): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Oct 20 2023 03:27:28 server2 maldet(2657735): {update} latest version already installed. Oct 20 2023 03:27:28 server2 maldet(2657868): {sigup} performing signature update check... Oct 20 2023 03:27:28 server2 maldet(2657868): {sigup} local signature set is version 20231019534245 Oct 20 2023 03:27:28 server2 maldet(2657868): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Oct 20 2023 03:27:28 server2 maldet(2657868): {sigup} latest signature set already installed Oct 20 2023 03:27:29 server2 maldet(2657979): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Oct 20 2023 03:27:29 server2 maldet(2657979): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Oct 20 2023 03:27:29 server2 maldet(2657979): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Oct 20 2023 03:27:29 server2 maldet(2657979): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Oct 20 2023 03:27:29 server2 maldet(2657979): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Oct 20 2023 03:27:48 server2 maldet(2657979): {scan} file list completed in 19s, found 2295 files... Oct 20 2023 03:27:48 server2 maldet(2657979): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Oct 20 2023 03:27:48 server2 maldet(2657979): {scan} scan of (2295 files) in progress... Oct 20 2023 03:29:02 server2 maldet(2657979): {scan} scan completed on : files 2295, malware hits 0, cleaned hits 0, time 93s Oct 20 2023 03:29:02 server2 maldet(2657979): {scan} scan report saved, to view run: maldet --report 231020-0327.2657979 Oct 21 2023 03:50:21 server2 maldet(2867424): {update} checking for available updates... Oct 21 2023 03:50:21 server2 maldet(2867424): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Oct 21 2023 03:50:21 server2 maldet(2867424): {update} hashing install files and checking against server... Oct 21 2023 03:50:21 server2 maldet(2867424): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Oct 21 2023 03:50:21 server2 maldet(2867424): {update} latest version already installed. Oct 21 2023 03:50:21 server2 maldet(2867557): {sigup} performing signature update check... Oct 21 2023 03:50:21 server2 maldet(2867557): {sigup} local signature set is version 20231019534245 Oct 21 2023 03:50:21 server2 maldet(2867557): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Oct 21 2023 03:50:21 server2 maldet(2867557): {sigup} latest signature set already installed Oct 21 2023 03:50:21 server2 maldet(2867668): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Oct 21 2023 03:50:22 server2 maldet(2867668): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Oct 21 2023 03:50:22 server2 maldet(2867668): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Oct 21 2023 03:50:22 server2 maldet(2867668): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Oct 21 2023 03:50:22 server2 maldet(2867668): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Oct 21 2023 03:50:43 server2 maldet(2867668): {scan} file list completed in 21s, found 711 files... Oct 21 2023 03:50:43 server2 maldet(2867668): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Oct 21 2023 03:50:43 server2 maldet(2867668): {scan} scan of (711 files) in progress... Oct 21 2023 03:51:15 server2 maldet(2867668): {scan} scan completed on : files 711, malware hits 0, cleaned hits 0, time 54s Oct 21 2023 03:51:15 server2 maldet(2867668): {scan} scan report saved, to view run: maldet --report 231021-0350.2867668 Oct 22 2023 03:17:50 server2 maldet(3075872): {update} checking for available updates... Oct 22 2023 03:17:50 server2 maldet(3075872): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Oct 22 2023 03:17:50 server2 maldet(3075872): {update} hashing install files and checking against server... Oct 22 2023 03:17:50 server2 maldet(3075872): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Oct 22 2023 03:17:50 server2 maldet(3075872): {update} latest version already installed. Oct 22 2023 03:17:51 server2 maldet(3076005): {sigup} performing signature update check... Oct 22 2023 03:17:51 server2 maldet(3076005): {sigup} local signature set is version 20231019534245 Oct 22 2023 03:17:51 server2 maldet(3076005): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Oct 22 2023 03:17:51 server2 maldet(3076005): {sigup} new signature set 202310221229566 available Oct 22 2023 03:17:51 server2 maldet(3076005): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Oct 22 2023 03:17:51 server2 maldet(3076005): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Oct 22 2023 03:17:51 server2 maldet(3076005): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Oct 22 2023 03:17:51 server2 maldet(3076005): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Oct 22 2023 03:17:51 server2 maldet(3076005): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Oct 22 2023 03:17:51 server2 maldet(3076005): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Oct 22 2023 03:17:51 server2 maldet(3076005): {sigup} verified md5sum of maldet-sigpack.tgz Oct 22 2023 03:17:51 server2 maldet(3076005): {sigup} unpacked and installed maldet-sigpack.tgz Oct 22 2023 03:17:51 server2 maldet(3076005): {sigup} verified md5sum of maldet-clean.tgz Oct 22 2023 03:17:51 server2 maldet(3076005): {sigup} unpacked and installed maldet-clean.tgz Oct 22 2023 03:17:51 server2 maldet(3076005): {sigup} signature set update completed Oct 22 2023 03:17:51 server2 maldet(3076005): {sigup} 17637 signatures (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Oct 22 2023 03:17:51 server2 maldet(3076233): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Oct 22 2023 03:17:53 server2 maldet(3076233): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Oct 22 2023 03:17:53 server2 maldet(3076233): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Oct 22 2023 03:17:53 server2 maldet(3076233): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Oct 22 2023 03:17:53 server2 maldet(3076233): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Oct 22 2023 03:18:20 server2 maldet(3076233): {scan} file list completed in 27s, found 830 files... Oct 22 2023 03:18:20 server2 maldet(3076233): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Oct 22 2023 03:18:20 server2 maldet(3076233): {scan} scan of (830 files) in progress... Oct 22 2023 03:19:13 server2 maldet(3076233): {scan} scan completed on : files 830, malware hits 0, cleaned hits 0, time 82s Oct 22 2023 03:19:13 server2 maldet(3076233): {scan} scan report saved, to view run: maldet --report 231022-0317.3076233 Oct 23 2023 03:40:11 server2 maldet(3291799): {update} checking for available updates... Oct 23 2023 03:40:16 server2 maldet(3291799): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Oct 23 2023 03:40:16 server2 maldet(3291799): {update} hashing install files and checking against server... Oct 23 2023 03:40:16 server2 maldet(3291799): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Oct 23 2023 03:40:16 server2 maldet(3291799): {update} latest version already installed. Oct 23 2023 03:40:16 server2 maldet(3291950): {sigup} performing signature update check... Oct 23 2023 03:40:16 server2 maldet(3291950): {sigup} local signature set is version 202310221229566 Oct 23 2023 03:40:16 server2 maldet(3291950): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Oct 23 2023 03:40:16 server2 maldet(3291950): {sigup} latest signature set already installed Oct 23 2023 03:40:17 server2 maldet(3292061): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Oct 23 2023 03:40:17 server2 maldet(3292061): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Oct 23 2023 03:40:17 server2 maldet(3292061): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Oct 23 2023 03:40:17 server2 maldet(3292061): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Oct 23 2023 03:40:17 server2 maldet(3292061): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Oct 23 2023 03:40:49 server2 maldet(3292061): {scan} file list completed in 32s, found 1035 files... Oct 23 2023 03:40:49 server2 maldet(3292061): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Oct 23 2023 03:40:49 server2 maldet(3292061): {scan} scan of (1035 files) in progress... Oct 23 2023 03:41:37 server2 maldet(3292061): {scan} scan completed on : files 1035, malware hits 0, cleaned hits 0, time 80s Oct 23 2023 03:41:37 server2 maldet(3292061): {scan} scan report saved, to view run: maldet --report 231023-0340.3292061 Oct 24 2023 03:47:04 server2 maldet(3491851): {update} checking for available updates... Oct 24 2023 03:47:04 server2 maldet(3491851): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Oct 24 2023 03:47:04 server2 maldet(3491851): {update} hashing install files and checking against server... Oct 24 2023 03:47:04 server2 maldet(3491851): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Oct 24 2023 03:47:04 server2 maldet(3491851): {update} latest version already installed. Oct 24 2023 03:47:04 server2 maldet(3491984): {sigup} performing signature update check... Oct 24 2023 03:47:04 server2 maldet(3491984): {sigup} local signature set is version 202310221229566 Oct 24 2023 03:47:05 server2 maldet(3491984): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Oct 24 2023 03:47:05 server2 maldet(3491984): {sigup} latest signature set already installed Oct 24 2023 03:47:05 server2 maldet(3492095): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Oct 24 2023 03:47:05 server2 maldet(3492095): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Oct 24 2023 03:47:05 server2 maldet(3492095): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Oct 24 2023 03:47:05 server2 maldet(3492095): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Oct 24 2023 03:47:05 server2 maldet(3492095): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Oct 24 2023 03:47:28 server2 maldet(3492095): {scan} file list completed in 23s, found 944 files... Oct 24 2023 03:47:28 server2 maldet(3492095): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Oct 24 2023 03:47:28 server2 maldet(3492095): {scan} scan of (944 files) in progress... Oct 24 2023 03:48:21 server2 maldet(3492095): {scan} scan completed on : files 944, malware hits 0, cleaned hits 0, time 76s Oct 24 2023 03:48:21 server2 maldet(3492095): {scan} scan report saved, to view run: maldet --report 231024-0347.3492095 Oct 25 2023 03:16:26 server2 maldet(3698888): {update} checking for available updates... Oct 25 2023 03:16:26 server2 maldet(3698888): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Oct 25 2023 03:16:26 server2 maldet(3698888): {update} hashing install files and checking against server... Oct 25 2023 03:16:26 server2 maldet(3698888): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Oct 25 2023 03:16:26 server2 maldet(3698888): {update} latest version already installed. Oct 25 2023 03:16:26 server2 maldet(3699022): {sigup} performing signature update check... Oct 25 2023 03:16:26 server2 maldet(3699022): {sigup} local signature set is version 202310221229566 Oct 25 2023 03:16:26 server2 maldet(3699022): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Oct 25 2023 03:16:26 server2 maldet(3699022): {sigup} new signature set 20231025505223 available Oct 25 2023 03:16:26 server2 maldet(3699022): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Oct 25 2023 03:16:26 server2 maldet(3699022): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Oct 25 2023 03:16:26 server2 maldet(3699022): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Oct 25 2023 03:16:26 server2 maldet(3699022): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Oct 25 2023 03:16:26 server2 maldet(3699022): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Oct 25 2023 03:16:26 server2 maldet(3699022): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Oct 25 2023 03:16:26 server2 maldet(3699022): {sigup} verified md5sum of maldet-sigpack.tgz Oct 25 2023 03:16:27 server2 maldet(3699022): {sigup} unpacked and installed maldet-sigpack.tgz Oct 25 2023 03:16:27 server2 maldet(3699022): {sigup} verified md5sum of maldet-clean.tgz Oct 25 2023 03:16:27 server2 maldet(3699022): {sigup} unpacked and installed maldet-clean.tgz Oct 25 2023 03:16:27 server2 maldet(3699022): {sigup} signature set update completed Oct 25 2023 03:16:27 server2 maldet(3699022): {sigup} 17637 signatures (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Oct 25 2023 03:16:27 server2 maldet(3699251): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Oct 25 2023 03:16:27 server2 maldet(3699251): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Oct 25 2023 03:16:27 server2 maldet(3699251): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Oct 25 2023 03:16:27 server2 maldet(3699251): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Oct 25 2023 03:16:27 server2 maldet(3699251): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Oct 25 2023 03:16:58 server2 maldet(3699251): {scan} file list completed in 31s, found 2470 files... Oct 25 2023 03:16:58 server2 maldet(3699251): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Oct 25 2023 03:16:58 server2 maldet(3699251): {scan} scan of (2470 files) in progress... Oct 25 2023 03:19:56 server2 maldet(3699251): {scan} scan completed on : files 2470, malware hits 0, cleaned hits 0, time 209s Oct 25 2023 03:19:56 server2 maldet(3699251): {scan} scan report saved, to view run: maldet --report 231025-0316.3699251 Oct 26 2023 03:52:17 server2 maldet(3914661): {update} checking for available updates... Oct 26 2023 03:52:17 server2 maldet(3914661): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Oct 26 2023 03:52:17 server2 maldet(3914661): {update} hashing install files and checking against server... Oct 26 2023 03:52:17 server2 maldet(3914661): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Oct 26 2023 03:52:17 server2 maldet(3914661): {update} latest version already installed. Oct 26 2023 03:52:17 server2 maldet(3914794): {sigup} performing signature update check... Oct 26 2023 03:52:17 server2 maldet(3914794): {sigup} local signature set is version 20231025505223 Oct 26 2023 03:52:17 server2 maldet(3914794): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Oct 26 2023 03:52:17 server2 maldet(3914794): {sigup} latest signature set already installed Oct 26 2023 03:52:17 server2 maldet(3914905): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Oct 26 2023 03:52:18 server2 maldet(3914905): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Oct 26 2023 03:52:18 server2 maldet(3914905): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Oct 26 2023 03:52:18 server2 maldet(3914905): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Oct 26 2023 03:52:18 server2 maldet(3914905): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Oct 26 2023 03:52:40 server2 maldet(3914905): {scan} file list completed in 22s, found 2364 files... Oct 26 2023 03:52:40 server2 maldet(3914905): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Oct 26 2023 03:52:40 server2 maldet(3914905): {scan} scan of (2364 files) in progress... Oct 26 2023 03:54:56 server2 maldet(3914905): {scan} scan completed on : files 2364, malware hits 0, cleaned hits 0, time 159s Oct 26 2023 03:54:56 server2 maldet(3914905): {scan} scan report saved, to view run: maldet --report 231026-0352.3914905 Oct 27 2023 03:17:24 server2 maldet(4118850): {update} checking for available updates... Oct 27 2023 03:17:24 server2 maldet(4118850): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Oct 27 2023 03:17:24 server2 maldet(4118850): {update} hashing install files and checking against server... Oct 27 2023 03:17:24 server2 maldet(4118850): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Oct 27 2023 03:17:24 server2 maldet(4118850): {update} latest version already installed. Oct 27 2023 03:17:24 server2 maldet(4118983): {sigup} performing signature update check... Oct 27 2023 03:17:24 server2 maldet(4118983): {sigup} local signature set is version 20231025505223 Oct 27 2023 03:17:24 server2 maldet(4118983): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Oct 27 2023 03:17:24 server2 maldet(4118983): {sigup} latest signature set already installed Oct 27 2023 03:17:25 server2 maldet(4119094): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Oct 27 2023 03:17:25 server2 maldet(4119094): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Oct 27 2023 03:17:25 server2 maldet(4119094): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Oct 27 2023 03:17:25 server2 maldet(4119094): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Oct 27 2023 03:17:25 server2 maldet(4119094): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Oct 27 2023 03:17:52 server2 maldet(4119094): {scan} file list completed in 27s, found 799 files... Oct 27 2023 03:17:52 server2 maldet(4119094): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Oct 27 2023 03:17:52 server2 maldet(4119094): {scan} scan of (799 files) in progress... Oct 27 2023 03:18:33 server2 maldet(4119094): {scan} scan completed on : files 799, malware hits 0, cleaned hits 0, time 68s Oct 27 2023 03:18:33 server2 maldet(4119094): {scan} scan report saved, to view run: maldet --report 231027-0317.4119094 Oct 28 2023 03:38:57 server2 maldet(135850): {update} checking for available updates... Oct 28 2023 03:38:57 server2 maldet(135850): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Oct 28 2023 03:38:57 server2 maldet(135850): {update} hashing install files and checking against server... Oct 28 2023 03:38:57 server2 maldet(135850): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Oct 28 2023 03:38:57 server2 maldet(135850): {update} latest version already installed. Oct 28 2023 03:38:57 server2 maldet(135983): {sigup} performing signature update check... Oct 28 2023 03:38:57 server2 maldet(135983): {sigup} local signature set is version 20231025505223 Oct 28 2023 03:38:57 server2 maldet(135983): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Oct 28 2023 03:38:57 server2 maldet(135983): {sigup} new signature set 202310281199478 available Oct 28 2023 03:38:57 server2 maldet(135983): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Oct 28 2023 03:38:58 server2 maldet(135983): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Oct 28 2023 03:38:58 server2 maldet(135983): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Oct 28 2023 03:38:58 server2 maldet(135983): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Oct 28 2023 03:38:58 server2 maldet(135983): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Oct 28 2023 03:38:58 server2 maldet(135983): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Oct 28 2023 03:38:58 server2 maldet(135983): {sigup} verified md5sum of maldet-sigpack.tgz Oct 28 2023 03:38:58 server2 maldet(135983): {sigup} unpacked and installed maldet-sigpack.tgz Oct 28 2023 03:38:58 server2 maldet(135983): {sigup} verified md5sum of maldet-clean.tgz Oct 28 2023 03:38:58 server2 maldet(135983): {sigup} unpacked and installed maldet-clean.tgz Oct 28 2023 03:38:58 server2 maldet(135983): {sigup} signature set update completed Oct 28 2023 03:38:58 server2 maldet(135983): {sigup} 17637 signatures (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Oct 28 2023 03:38:58 server2 maldet(136211): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Oct 28 2023 03:38:58 server2 maldet(136211): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Oct 28 2023 03:38:58 server2 maldet(136211): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Oct 28 2023 03:38:59 server2 maldet(136211): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Oct 28 2023 03:38:59 server2 maldet(136211): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Oct 28 2023 03:39:26 server2 maldet(136211): {scan} file list completed in 26s, found 1246 files... Oct 28 2023 03:39:26 server2 maldet(136211): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Oct 28 2023 03:39:26 server2 maldet(136211): {scan} scan of (1246 files) in progress... Oct 28 2023 03:40:33 server2 maldet(136211): {scan} scan completed on : files 1246, malware hits 0, cleaned hits 0, time 95s Oct 28 2023 03:40:33 server2 maldet(136211): {scan} scan report saved, to view run: maldet --report 231028-0338.136211 Oct 29 2023 03:26:51 server2 maldet(343620): {update} checking for available updates... Oct 29 2023 03:26:51 server2 maldet(343620): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Oct 29 2023 03:26:51 server2 maldet(343620): {update} hashing install files and checking against server... Oct 29 2023 03:26:51 server2 maldet(343620): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Oct 29 2023 03:26:51 server2 maldet(343620): {update} latest version already installed. Oct 29 2023 03:26:51 server2 maldet(343755): {sigup} performing signature update check... Oct 29 2023 03:26:51 server2 maldet(343755): {sigup} local signature set is version 202310281199478 Oct 29 2023 03:26:51 server2 maldet(343755): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Oct 29 2023 03:26:51 server2 maldet(343755): {sigup} latest signature set already installed Oct 29 2023 03:26:51 server2 maldet(343866): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Oct 29 2023 03:26:53 server2 maldet(343866): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Oct 29 2023 03:26:53 server2 maldet(343866): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Oct 29 2023 03:26:53 server2 maldet(343866): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Oct 29 2023 03:26:53 server2 maldet(343866): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Oct 29 2023 03:27:16 server2 maldet(343866): {scan} file list completed in 23s, found 954 files... Oct 29 2023 03:27:16 server2 maldet(343866): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Oct 29 2023 03:27:16 server2 maldet(343866): {scan} scan of (954 files) in progress... Oct 29 2023 03:28:15 server2 maldet(343866): {scan} scan completed on : files 954, malware hits 0, cleaned hits 0, time 84s Oct 29 2023 03:28:15 server2 maldet(343866): {scan} scan report saved, to view run: maldet --report 231029-0326.343866 Oct 30 2023 03:11:36 server2 maldet(551501): {update} checking for available updates... Oct 30 2023 03:11:36 server2 maldet(551501): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Oct 30 2023 03:11:36 server2 maldet(551501): {update} hashing install files and checking against server... Oct 30 2023 03:11:37 server2 maldet(551501): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Oct 30 2023 03:11:37 server2 maldet(551501): {update} latest version already installed. Oct 30 2023 03:11:37 server2 maldet(551653): {sigup} performing signature update check... Oct 30 2023 03:11:37 server2 maldet(551653): {sigup} local signature set is version 202310281199478 Oct 30 2023 03:11:37 server2 maldet(551653): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Oct 30 2023 03:11:37 server2 maldet(551653): {sigup} latest signature set already installed Oct 30 2023 03:11:37 server2 maldet(551771): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Oct 30 2023 03:11:37 server2 maldet(551771): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Oct 30 2023 03:11:37 server2 maldet(551771): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Oct 30 2023 03:11:37 server2 maldet(551771): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Oct 30 2023 03:11:37 server2 maldet(551771): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Oct 30 2023 03:11:59 server2 maldet(551771): {scan} file list completed in 22s, found 1146 files... Oct 30 2023 03:11:59 server2 maldet(551771): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Oct 30 2023 03:11:59 server2 maldet(551771): {scan} scan of (1146 files) in progress... Oct 30 2023 03:13:04 server2 maldet(551771): {scan} scan completed on : files 1146, malware hits 0, cleaned hits 0, time 87s Oct 30 2023 03:13:04 server2 maldet(551771): {scan} scan report saved, to view run: maldet --report 231030-0311.551771 Oct 31 2023 03:14:48 server2 maldet(763977): {update} checking for available updates... Oct 31 2023 03:14:48 server2 maldet(763977): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Oct 31 2023 03:14:48 server2 maldet(763977): {update} hashing install files and checking against server... Oct 31 2023 03:14:48 server2 maldet(763977): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Oct 31 2023 03:14:48 server2 maldet(763977): {update} latest version already installed. Oct 31 2023 03:14:48 server2 maldet(764110): {sigup} performing signature update check... Oct 31 2023 03:14:48 server2 maldet(764110): {sigup} local signature set is version 202310281199478 Oct 31 2023 03:14:48 server2 maldet(764110): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Oct 31 2023 03:14:48 server2 maldet(764110): {sigup} new signature set 20231031515073 available Oct 31 2023 03:14:48 server2 maldet(764110): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Oct 31 2023 03:14:48 server2 maldet(764110): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Oct 31 2023 03:14:48 server2 maldet(764110): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Oct 31 2023 03:14:48 server2 maldet(764110): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Oct 31 2023 03:14:48 server2 maldet(764110): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Oct 31 2023 03:14:49 server2 maldet(764110): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Oct 31 2023 03:14:49 server2 maldet(764110): {sigup} verified md5sum of maldet-sigpack.tgz Oct 31 2023 03:14:49 server2 maldet(764110): {sigup} unpacked and installed maldet-sigpack.tgz Oct 31 2023 03:14:49 server2 maldet(764110): {sigup} verified md5sum of maldet-clean.tgz Oct 31 2023 03:14:49 server2 maldet(764110): {sigup} unpacked and installed maldet-clean.tgz Oct 31 2023 03:14:49 server2 maldet(764110): {sigup} signature set update completed Oct 31 2023 03:14:49 server2 maldet(764110): {sigup} 17637 signatures (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Oct 31 2023 03:14:49 server2 maldet(764338): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Oct 31 2023 03:14:50 server2 maldet(764338): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Oct 31 2023 03:14:50 server2 maldet(764338): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Oct 31 2023 03:14:50 server2 maldet(764338): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Oct 31 2023 03:14:50 server2 maldet(764338): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Oct 31 2023 03:15:31 server2 maldet(764338): {scan} file list completed in 41s, found 706 files... Oct 31 2023 03:15:31 server2 maldet(764338): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Oct 31 2023 03:15:31 server2 maldet(764338): {scan} scan of (706 files) in progress... Oct 31 2023 03:16:23 server2 maldet(764338): {scan} scan completed on : files 706, malware hits 0, cleaned hits 0, time 94s Oct 31 2023 03:16:23 server2 maldet(764338): {scan} scan report saved, to view run: maldet --report 231031-0314.764338 Nov 01 2023 03:10:56 server2 maldet(964198): {update} checking for available updates... Nov 01 2023 03:10:56 server2 maldet(964198): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Nov 01 2023 03:10:56 server2 maldet(964198): {update} hashing install files and checking against server... Nov 01 2023 03:10:56 server2 maldet(964198): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Nov 01 2023 03:10:56 server2 maldet(964198): {update} latest version already installed. Nov 01 2023 03:10:56 server2 maldet(964331): {sigup} performing signature update check... Nov 01 2023 03:10:56 server2 maldet(964331): {sigup} local signature set is version 20231031515073 Nov 01 2023 03:10:56 server2 maldet(964331): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Nov 01 2023 03:10:56 server2 maldet(964331): {sigup} new signature set 202311011164199 available Nov 01 2023 03:10:56 server2 maldet(964331): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Nov 01 2023 03:10:57 server2 maldet(964331): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Nov 01 2023 03:10:57 server2 maldet(964331): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Nov 01 2023 03:10:57 server2 maldet(964331): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Nov 01 2023 03:10:57 server2 maldet(964331): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Nov 01 2023 03:10:57 server2 maldet(964331): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Nov 01 2023 03:10:57 server2 maldet(964331): {sigup} verified md5sum of maldet-sigpack.tgz Nov 01 2023 03:10:57 server2 maldet(964331): {sigup} unpacked and installed maldet-sigpack.tgz Nov 01 2023 03:10:57 server2 maldet(964331): {sigup} verified md5sum of maldet-clean.tgz Nov 01 2023 03:10:57 server2 maldet(964331): {sigup} unpacked and installed maldet-clean.tgz Nov 01 2023 03:10:57 server2 maldet(964331): {sigup} signature set update completed Nov 01 2023 03:10:57 server2 maldet(964331): {sigup} 17637 signatures (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Nov 01 2023 03:10:57 server2 maldet(964559): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Nov 01 2023 03:10:58 server2 maldet(964559): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Nov 01 2023 03:10:58 server2 maldet(964559): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Nov 01 2023 03:10:58 server2 maldet(964559): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Nov 01 2023 03:10:58 server2 maldet(964559): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Nov 01 2023 03:11:32 server2 maldet(964559): {scan} file list completed in 34s, found 1245 files... Nov 01 2023 03:11:32 server2 maldet(964559): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Nov 01 2023 03:11:32 server2 maldet(964559): {scan} scan of (1245 files) in progress... Nov 01 2023 03:13:16 server2 maldet(964559): {scan} scan completed on : files 1245, malware hits 0, cleaned hits 0, time 139s Nov 01 2023 03:13:16 server2 maldet(964559): {scan} scan report saved, to view run: maldet --report 231101-0310.964559 Nov 02 2023 03:25:53 server2 maldet(1174744): {update} checking for available updates... Nov 02 2023 03:25:53 server2 maldet(1174744): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Nov 02 2023 03:25:53 server2 maldet(1174744): {update} hashing install files and checking against server... Nov 02 2023 03:25:53 server2 maldet(1174744): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Nov 02 2023 03:25:53 server2 maldet(1174744): {update} latest version already installed. Nov 02 2023 03:25:54 server2 maldet(1174878): {sigup} performing signature update check... Nov 02 2023 03:25:54 server2 maldet(1174878): {sigup} local signature set is version 202311011164199 Nov 02 2023 03:25:54 server2 maldet(1174878): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Nov 02 2023 03:25:54 server2 maldet(1174878): {sigup} latest signature set already installed Nov 02 2023 03:25:54 server2 maldet(1174989): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Nov 02 2023 03:25:54 server2 maldet(1174989): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Nov 02 2023 03:25:54 server2 maldet(1174989): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Nov 02 2023 03:25:54 server2 maldet(1174989): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Nov 02 2023 03:25:54 server2 maldet(1174989): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Nov 02 2023 03:26:24 server2 maldet(1174989): {scan} file list completed in 30s, found 1117 files... Nov 02 2023 03:26:24 server2 maldet(1174989): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Nov 02 2023 03:26:24 server2 maldet(1174989): {scan} scan of (1117 files) in progress... Nov 02 2023 03:27:29 server2 maldet(1174989): {scan} scan completed on : files 1117, malware hits 0, cleaned hits 0, time 95s Nov 02 2023 03:27:29 server2 maldet(1174989): {scan} scan report saved, to view run: maldet --report 231102-0325.1174989 Nov 03 2023 03:35:17 server2 maldet(1421861): {update} checking for available updates... Nov 03 2023 03:35:17 server2 maldet(1421861): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Nov 03 2023 03:35:17 server2 maldet(1421861): {update} hashing install files and checking against server... Nov 03 2023 03:35:17 server2 maldet(1421861): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Nov 03 2023 03:35:17 server2 maldet(1421861): {update} latest version already installed. Nov 03 2023 03:35:17 server2 maldet(1421995): {sigup} performing signature update check... Nov 03 2023 03:35:17 server2 maldet(1421995): {sigup} local signature set is version 202311011164199 Nov 03 2023 03:35:17 server2 maldet(1421995): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Nov 03 2023 03:35:17 server2 maldet(1421995): {sigup} latest signature set already installed Nov 03 2023 03:35:18 server2 maldet(1422106): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Nov 03 2023 03:35:18 server2 maldet(1422106): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Nov 03 2023 03:35:18 server2 maldet(1422106): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Nov 03 2023 03:35:18 server2 maldet(1422106): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Nov 03 2023 03:35:18 server2 maldet(1422106): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Nov 03 2023 03:35:43 server2 maldet(1422106): {scan} file list completed in 25s, found 1332 files... Nov 03 2023 03:35:43 server2 maldet(1422106): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Nov 03 2023 03:35:43 server2 maldet(1422106): {scan} scan of (1332 files) in progress... Nov 03 2023 03:36:56 server2 maldet(1422106): {scan} scan completed on : files 1332, malware hits 0, cleaned hits 0, time 98s Nov 03 2023 03:36:56 server2 maldet(1422106): {scan} scan report saved, to view run: maldet --report 231103-0335.1422106 Nov 04 2023 03:46:55 server2 maldet(1645085): {update} checking for available updates... Nov 04 2023 03:46:55 server2 maldet(1645085): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Nov 04 2023 03:46:56 server2 maldet(1645085): {update} hashing install files and checking against server... Nov 04 2023 03:46:56 server2 maldet(1645085): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Nov 04 2023 03:46:56 server2 maldet(1645085): {update} latest version already installed. Nov 04 2023 03:46:56 server2 maldet(1645218): {sigup} performing signature update check... Nov 04 2023 03:46:56 server2 maldet(1645218): {sigup} local signature set is version 202311011164199 Nov 04 2023 03:46:56 server2 maldet(1645218): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Nov 04 2023 03:46:56 server2 maldet(1645218): {sigup} new signature set 202311041860087 available Nov 04 2023 03:46:56 server2 maldet(1645218): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Nov 04 2023 03:46:56 server2 maldet(1645218): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Nov 04 2023 03:46:56 server2 maldet(1645218): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Nov 04 2023 03:46:56 server2 maldet(1645218): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Nov 04 2023 03:46:56 server2 maldet(1645218): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Nov 04 2023 03:46:56 server2 maldet(1645218): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Nov 04 2023 03:46:56 server2 maldet(1645218): {sigup} verified md5sum of maldet-sigpack.tgz Nov 04 2023 03:46:57 server2 maldet(1645218): {sigup} unpacked and installed maldet-sigpack.tgz Nov 04 2023 03:46:57 server2 maldet(1645218): {sigup} verified md5sum of maldet-clean.tgz Nov 04 2023 03:46:57 server2 maldet(1645218): {sigup} unpacked and installed maldet-clean.tgz Nov 04 2023 03:46:57 server2 maldet(1645218): {sigup} signature set update completed Nov 04 2023 03:46:57 server2 maldet(1645218): {sigup} 17637 signatures (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Nov 04 2023 03:46:57 server2 maldet(1645451): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Nov 04 2023 03:46:57 server2 maldet(1645451): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Nov 04 2023 03:46:57 server2 maldet(1645451): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Nov 04 2023 03:46:57 server2 maldet(1645451): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Nov 04 2023 03:46:57 server2 maldet(1645451): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Nov 04 2023 03:47:31 server2 maldet(1645451): {scan} file list completed in 34s, found 4327 files... Nov 04 2023 03:47:31 server2 maldet(1645451): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Nov 04 2023 03:47:31 server2 maldet(1645451): {scan} scan of (4327 files) in progress... Nov 04 2023 03:52:13 server2 maldet(1645451): {scan} scan completed on : files 4327, malware hits 0, cleaned hits 0, time 316s Nov 04 2023 03:52:13 server2 maldet(1645451): {scan} scan report saved, to view run: maldet --report 231104-0346.1645451 Nov 05 2023 03:31:47 server2 maldet(1871114): {update} checking for available updates... Nov 05 2023 03:31:47 server2 maldet(1871114): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Nov 05 2023 03:31:47 server2 maldet(1871114): {update} hashing install files and checking against server... Nov 05 2023 03:31:47 server2 maldet(1871114): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Nov 05 2023 03:31:47 server2 maldet(1871114): {update} latest version already installed. Nov 05 2023 03:31:47 server2 maldet(1871247): {sigup} performing signature update check... Nov 05 2023 03:31:47 server2 maldet(1871247): {sigup} local signature set is version 202311041860087 Nov 05 2023 03:31:47 server2 maldet(1871247): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Nov 05 2023 03:31:47 server2 maldet(1871247): {sigup} latest signature set already installed Nov 05 2023 03:31:47 server2 maldet(1871358): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Nov 05 2023 03:31:49 server2 maldet(1871358): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Nov 05 2023 03:31:49 server2 maldet(1871358): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Nov 05 2023 03:31:49 server2 maldet(1871358): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Nov 05 2023 03:31:49 server2 maldet(1871358): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Nov 05 2023 03:32:21 server2 maldet(1871358): {scan} file list completed in 32s, found 757 files... Nov 05 2023 03:32:21 server2 maldet(1871358): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Nov 05 2023 03:32:21 server2 maldet(1871358): {scan} scan of (757 files) in progress... Nov 05 2023 03:33:07 server2 maldet(1871358): {scan} clamscan returned an error, check /usr/local/maldetect/logs/clamscan_log for details! Nov 05 2023 03:33:07 server2 maldet(1871358): {scan} scan completed on : files 757, malware hits 0, cleaned hits 0, time 80s Nov 05 2023 03:33:07 server2 maldet(1871358): {scan} scan report saved, to view run: maldet --report 231105-0331.1871358 Nov 06 2023 03:27:58 server2 maldet(2079263): {update} checking for available updates... Nov 06 2023 03:27:58 server2 maldet(2079263): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Nov 06 2023 03:27:59 server2 maldet(2079263): {update} hashing install files and checking against server... Nov 06 2023 03:27:59 server2 maldet(2079263): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Nov 06 2023 03:27:59 server2 maldet(2079263): {update} latest version already installed. Nov 06 2023 03:27:59 server2 maldet(2079396): {sigup} performing signature update check... Nov 06 2023 03:27:59 server2 maldet(2079396): {sigup} local signature set is version 202311041860087 Nov 06 2023 03:27:59 server2 maldet(2079396): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Nov 06 2023 03:27:59 server2 maldet(2079396): {sigup} latest signature set already installed Nov 06 2023 03:27:59 server2 maldet(2079508): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Nov 06 2023 03:27:59 server2 maldet(2079508): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Nov 06 2023 03:27:59 server2 maldet(2079508): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Nov 06 2023 03:27:59 server2 maldet(2079508): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Nov 06 2023 03:27:59 server2 maldet(2079508): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Nov 06 2023 03:28:23 server2 maldet(2079508): {scan} file list completed in 24s, found 1691 files... Nov 06 2023 03:28:23 server2 maldet(2079508): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Nov 06 2023 03:28:23 server2 maldet(2079508): {scan} scan of (1691 files) in progress... Nov 06 2023 03:29:54 server2 maldet(2079508): {scan} scan completed on : files 1691, malware hits 0, cleaned hits 0, time 115s Nov 06 2023 03:29:54 server2 maldet(2079508): {scan} scan report saved, to view run: maldet --report 231106-0327.2079508 Nov 07 2023 03:45:26 server2 maldet(2294357): {update} checking for available updates... Nov 07 2023 03:45:26 server2 maldet(2294357): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Nov 07 2023 03:45:26 server2 maldet(2294357): {update} hashing install files and checking against server... Nov 07 2023 03:45:26 server2 maldet(2294357): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Nov 07 2023 03:45:26 server2 maldet(2294357): {update} latest version already installed. Nov 07 2023 03:45:27 server2 maldet(2294490): {sigup} performing signature update check... Nov 07 2023 03:45:27 server2 maldet(2294490): {sigup} local signature set is version 202311041860087 Nov 07 2023 03:45:27 server2 maldet(2294490): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Nov 07 2023 03:45:27 server2 maldet(2294490): {sigup} new signature set 202311072556343 available Nov 07 2023 03:45:27 server2 maldet(2294490): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Nov 07 2023 03:45:27 server2 maldet(2294490): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Nov 07 2023 03:45:27 server2 maldet(2294490): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Nov 07 2023 03:45:27 server2 maldet(2294490): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Nov 07 2023 03:45:27 server2 maldet(2294490): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Nov 07 2023 03:45:27 server2 maldet(2294490): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Nov 07 2023 03:45:27 server2 maldet(2294490): {sigup} verified md5sum of maldet-sigpack.tgz Nov 07 2023 03:45:27 server2 maldet(2294490): {sigup} unpacked and installed maldet-sigpack.tgz Nov 07 2023 03:45:28 server2 maldet(2294490): {sigup} verified md5sum of maldet-clean.tgz Nov 07 2023 03:45:28 server2 maldet(2294490): {sigup} unpacked and installed maldet-clean.tgz Nov 07 2023 03:45:28 server2 maldet(2294490): {sigup} signature set update completed Nov 07 2023 03:45:28 server2 maldet(2294490): {sigup} 17637 signatures (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Nov 07 2023 03:45:28 server2 maldet(2294720): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Nov 07 2023 03:45:28 server2 maldet(2294720): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Nov 07 2023 03:45:28 server2 maldet(2294720): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Nov 07 2023 03:45:28 server2 maldet(2294720): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Nov 07 2023 03:45:28 server2 maldet(2294720): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Nov 07 2023 03:46:13 server2 maldet(2294720): {scan} file list completed in 45s, found 2201 files... Nov 07 2023 03:46:13 server2 maldet(2294720): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Nov 07 2023 03:46:13 server2 maldet(2294720): {scan} scan of (2201 files) in progress... Nov 07 2023 03:48:49 server2 maldet(2294720): {scan} scan completed on : files 2201, malware hits 0, cleaned hits 0, time 201s Nov 07 2023 03:48:49 server2 maldet(2294720): {scan} scan report saved, to view run: maldet --report 231107-0345.2294720 Nov 08 2023 03:10:38 server2 maldet(2509085): {update} checking for available updates... Nov 08 2023 03:10:38 server2 maldet(2509085): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Nov 08 2023 03:10:38 server2 maldet(2509085): {update} hashing install files and checking against server... Nov 08 2023 03:10:38 server2 maldet(2509085): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Nov 08 2023 03:10:39 server2 maldet(2509085): {update} latest version already installed. Nov 08 2023 03:10:39 server2 maldet(2509218): {sigup} performing signature update check... Nov 08 2023 03:10:39 server2 maldet(2509218): {sigup} local signature set is version 202311072556343 Nov 08 2023 03:10:39 server2 maldet(2509218): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Nov 08 2023 03:10:39 server2 maldet(2509218): {sigup} latest signature set already installed Nov 08 2023 03:10:39 server2 maldet(2509329): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Nov 08 2023 03:10:39 server2 maldet(2509329): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Nov 08 2023 03:10:39 server2 maldet(2509329): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Nov 08 2023 03:10:39 server2 maldet(2509329): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Nov 08 2023 03:10:39 server2 maldet(2509329): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Nov 08 2023 03:10:58 server2 maldet(2509329): {scan} file list completed in 19s, found 4083 files... Nov 08 2023 03:10:58 server2 maldet(2509329): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Nov 08 2023 03:10:58 server2 maldet(2509329): {scan} scan of (4083 files) in progress... Nov 08 2023 03:13:46 server2 maldet(2509329): {scan} scan completed on : files 4083, malware hits 0, cleaned hits 0, time 186s Nov 08 2023 03:13:46 server2 maldet(2509329): {scan} scan report saved, to view run: maldet --report 231108-0310.2509329 Nov 09 2023 03:24:45 server2 maldet(2738473): {update} checking for available updates... Nov 09 2023 03:24:46 server2 maldet(2738473): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Nov 09 2023 03:24:46 server2 maldet(2738473): {update} hashing install files and checking against server... Nov 09 2023 03:24:46 server2 maldet(2738473): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Nov 09 2023 03:24:46 server2 maldet(2738473): {update} latest version already installed. Nov 09 2023 03:24:46 server2 maldet(2738608): {sigup} performing signature update check... Nov 09 2023 03:24:46 server2 maldet(2738608): {sigup} local signature set is version 202311072556343 Nov 09 2023 03:24:46 server2 maldet(2738608): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Nov 09 2023 03:24:46 server2 maldet(2738608): {sigup} latest signature set already installed Nov 09 2023 03:24:46 server2 maldet(2738719): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Nov 09 2023 03:24:46 server2 maldet(2738719): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Nov 09 2023 03:24:46 server2 maldet(2738719): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Nov 09 2023 03:24:46 server2 maldet(2738719): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Nov 09 2023 03:24:46 server2 maldet(2738719): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Nov 09 2023 03:25:15 server2 maldet(2738719): {scan} file list completed in 29s, found 2657 files... Nov 09 2023 03:25:15 server2 maldet(2738719): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Nov 09 2023 03:25:15 server2 maldet(2738719): {scan} scan of (2657 files) in progress... Nov 09 2023 03:27:36 server2 maldet(2738719): {scan} scan completed on : files 2657, malware hits 0, cleaned hits 0, time 170s Nov 09 2023 03:27:36 server2 maldet(2738719): {scan} scan report saved, to view run: maldet --report 231109-0324.2738719 Nov 10 2023 03:41:10 server2 maldet(2962284): {update} checking for available updates... Nov 10 2023 03:41:10 server2 maldet(2962284): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Nov 10 2023 03:41:10 server2 maldet(2962284): {update} hashing install files and checking against server... Nov 10 2023 03:41:10 server2 maldet(2962284): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Nov 10 2023 03:41:10 server2 maldet(2962284): {update} latest version already installed. Nov 10 2023 03:41:10 server2 maldet(2962418): {sigup} performing signature update check... Nov 10 2023 03:41:10 server2 maldet(2962418): {sigup} local signature set is version 202311072556343 Nov 10 2023 03:41:10 server2 maldet(2962418): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Nov 10 2023 03:41:10 server2 maldet(2962418): {sigup} new signature set 202311103251945 available Nov 10 2023 03:41:10 server2 maldet(2962418): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Nov 10 2023 03:41:10 server2 maldet(2962418): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Nov 10 2023 03:41:10 server2 maldet(2962418): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Nov 10 2023 03:41:10 server2 maldet(2962418): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Nov 10 2023 03:41:10 server2 maldet(2962418): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Nov 10 2023 03:41:10 server2 maldet(2962418): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Nov 10 2023 03:41:10 server2 maldet(2962418): {sigup} verified md5sum of maldet-sigpack.tgz Nov 10 2023 03:41:11 server2 maldet(2962418): {sigup} unpacked and installed maldet-sigpack.tgz Nov 10 2023 03:41:11 server2 maldet(2962418): {sigup} verified md5sum of maldet-clean.tgz Nov 10 2023 03:41:11 server2 maldet(2962418): {sigup} unpacked and installed maldet-clean.tgz Nov 10 2023 03:41:11 server2 maldet(2962418): {sigup} signature set update completed Nov 10 2023 03:41:11 server2 maldet(2962418): {sigup} 17637 signatures (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Nov 10 2023 03:41:11 server2 maldet(2962646): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Nov 10 2023 03:41:11 server2 maldet(2962646): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Nov 10 2023 03:41:11 server2 maldet(2962646): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Nov 10 2023 03:41:11 server2 maldet(2962646): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Nov 10 2023 03:41:11 server2 maldet(2962646): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Nov 10 2023 03:41:32 server2 maldet(2962646): {scan} file list completed in 21s, found 1498 files... Nov 10 2023 03:41:32 server2 maldet(2962646): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Nov 10 2023 03:41:32 server2 maldet(2962646): {scan} scan of (1498 files) in progress... Nov 10 2023 03:42:51 server2 maldet(2962646): {scan} scan completed on : files 1498, malware hits 0, cleaned hits 0, time 100s Nov 10 2023 03:42:51 server2 maldet(2962646): {scan} scan report saved, to view run: maldet --report 231110-0341.2962646 Nov 11 2023 03:30:01 server2 maldet(3179438): {update} checking for available updates... Nov 11 2023 03:30:01 server2 maldet(3179438): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Nov 11 2023 03:30:01 server2 maldet(3179438): {update} hashing install files and checking against server... Nov 11 2023 03:30:02 server2 maldet(3179438): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Nov 11 2023 03:30:02 server2 maldet(3179438): {update} latest version already installed. Nov 11 2023 03:30:02 server2 maldet(3179662): {sigup} performing signature update check... Nov 11 2023 03:30:02 server2 maldet(3179662): {sigup} local signature set is version 202311103251945 Nov 11 2023 03:30:02 server2 maldet(3179662): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Nov 11 2023 03:30:02 server2 maldet(3179662): {sigup} latest signature set already installed Nov 11 2023 03:30:03 server2 maldet(3179780): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Nov 11 2023 03:30:03 server2 maldet(3179780): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Nov 11 2023 03:30:03 server2 maldet(3179780): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Nov 11 2023 03:30:03 server2 maldet(3179780): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Nov 11 2023 03:30:03 server2 maldet(3179780): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Nov 11 2023 03:30:31 server2 maldet(3179780): {scan} file list completed in 28s, found 800 files... Nov 11 2023 03:30:31 server2 maldet(3179780): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Nov 11 2023 03:30:31 server2 maldet(3179780): {scan} scan of (800 files) in progress... Nov 11 2023 03:31:01 server2 maldet(3179780): {scan} scan completed on : files 800, malware hits 0, cleaned hits 0, time 58s Nov 11 2023 03:31:01 server2 maldet(3179780): {scan} scan report saved, to view run: maldet --report 231111-0330.3179780 Nov 12 2023 03:37:13 server2 maldet(3398267): {update} checking for available updates... Nov 12 2023 03:37:13 server2 maldet(3398267): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Nov 12 2023 03:37:13 server2 maldet(3398267): {update} hashing install files and checking against server... Nov 12 2023 03:37:13 server2 maldet(3398267): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Nov 12 2023 03:37:13 server2 maldet(3398267): {update} latest version already installed. Nov 12 2023 03:37:13 server2 maldet(3398400): {sigup} performing signature update check... Nov 12 2023 03:37:13 server2 maldet(3398400): {sigup} local signature set is version 202311103251945 Nov 12 2023 03:37:13 server2 maldet(3398400): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Nov 12 2023 03:37:13 server2 maldet(3398400): {sigup} latest signature set already installed Nov 12 2023 03:37:13 server2 maldet(3398511): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Nov 12 2023 03:37:14 server2 maldet(3398511): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Nov 12 2023 03:37:14 server2 maldet(3398511): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Nov 12 2023 03:37:14 server2 maldet(3398511): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Nov 12 2023 03:37:14 server2 maldet(3398511): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Nov 12 2023 03:37:35 server2 maldet(3398511): {scan} file list completed in 21s, found 666 files... Nov 12 2023 03:37:35 server2 maldet(3398511): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Nov 12 2023 03:37:35 server2 maldet(3398511): {scan} scan of (666 files) in progress... Nov 12 2023 03:38:11 server2 maldet(3398511): {scan} scan completed on : files 666, malware hits 0, cleaned hits 0, time 58s Nov 12 2023 03:38:11 server2 maldet(3398511): {scan} scan report saved, to view run: maldet --report 231112-0337.3398511 Nov 13 2023 03:33:47 server2 maldet(3610904): {update} checking for available updates... Nov 13 2023 03:33:47 server2 maldet(3610904): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Nov 13 2023 03:33:47 server2 maldet(3610904): {update} hashing install files and checking against server... Nov 13 2023 03:33:47 server2 maldet(3610904): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Nov 13 2023 03:33:47 server2 maldet(3610904): {update} latest version already installed. Nov 13 2023 03:33:47 server2 maldet(3611037): {sigup} performing signature update check... Nov 13 2023 03:33:47 server2 maldet(3611037): {sigup} local signature set is version 202311103251945 Nov 13 2023 03:33:47 server2 maldet(3611037): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Nov 13 2023 03:33:47 server2 maldet(3611037): {sigup} new signature set 202311133949018 available Nov 13 2023 03:33:47 server2 maldet(3611037): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Nov 13 2023 03:33:47 server2 maldet(3611037): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Nov 13 2023 03:33:47 server2 maldet(3611037): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Nov 13 2023 03:33:47 server2 maldet(3611037): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Nov 13 2023 03:33:47 server2 maldet(3611037): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Nov 13 2023 03:33:47 server2 maldet(3611037): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Nov 13 2023 03:33:47 server2 maldet(3611037): {sigup} verified md5sum of maldet-sigpack.tgz Nov 13 2023 03:33:48 server2 maldet(3611037): {sigup} unpacked and installed maldet-sigpack.tgz Nov 13 2023 03:33:48 server2 maldet(3611037): {sigup} verified md5sum of maldet-clean.tgz Nov 13 2023 03:33:48 server2 maldet(3611037): {sigup} unpacked and installed maldet-clean.tgz Nov 13 2023 03:33:48 server2 maldet(3611037): {sigup} signature set update completed Nov 13 2023 03:33:48 server2 maldet(3611037): {sigup} 17637 signatures (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Nov 13 2023 03:33:48 server2 maldet(3611266): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Nov 13 2023 03:33:48 server2 maldet(3611266): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Nov 13 2023 03:33:48 server2 maldet(3611266): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Nov 13 2023 03:33:48 server2 maldet(3611266): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Nov 13 2023 03:33:48 server2 maldet(3611266): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Nov 13 2023 03:34:12 server2 maldet(3611266): {scan} file list completed in 24s, found 824 files... Nov 13 2023 03:34:12 server2 maldet(3611266): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Nov 13 2023 03:34:12 server2 maldet(3611266): {scan} scan of (824 files) in progress... Nov 13 2023 03:34:59 server2 maldet(3611266): {scan} scan completed on : files 824, malware hits 0, cleaned hits 0, time 71s Nov 13 2023 03:34:59 server2 maldet(3611266): {scan} scan report saved, to view run: maldet --report 231113-0333.3611266 Nov 14 2023 03:35:39 server2 maldet(3824626): {update} checking for available updates... Nov 14 2023 03:35:39 server2 maldet(3824626): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Nov 14 2023 03:35:39 server2 maldet(3824626): {update} hashing install files and checking against server... Nov 14 2023 03:35:39 server2 maldet(3824626): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Nov 14 2023 03:35:39 server2 maldet(3824626): {update} latest version already installed. Nov 14 2023 03:35:39 server2 maldet(3824760): {sigup} performing signature update check... Nov 14 2023 03:35:39 server2 maldet(3824760): {sigup} local signature set is version 202311133949018 Nov 14 2023 03:35:39 server2 maldet(3824760): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Nov 14 2023 03:35:39 server2 maldet(3824760): {sigup} latest signature set already installed Nov 14 2023 03:35:40 server2 maldet(3824871): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Nov 14 2023 03:35:40 server2 maldet(3824871): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Nov 14 2023 03:35:40 server2 maldet(3824871): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Nov 14 2023 03:35:40 server2 maldet(3824871): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Nov 14 2023 03:35:40 server2 maldet(3824871): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Nov 14 2023 03:36:07 server2 maldet(3824871): {scan} file list completed in 26s, found 720 files... Nov 14 2023 03:36:07 server2 maldet(3824871): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Nov 14 2023 03:36:07 server2 maldet(3824871): {scan} scan of (720 files) in progress... Nov 14 2023 03:36:43 server2 maldet(3824871): {scan} scan completed on : files 720, malware hits 0, cleaned hits 0, time 63s Nov 14 2023 03:36:43 server2 maldet(3824871): {scan} scan report saved, to view run: maldet --report 231114-0335.3824871 Nov 15 2023 03:51:41 server2 maldet(4049016): {update} checking for available updates... Nov 15 2023 03:51:41 server2 maldet(4049016): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Nov 15 2023 03:51:41 server2 maldet(4049016): {update} hashing install files and checking against server... Nov 15 2023 03:51:42 server2 maldet(4049016): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Nov 15 2023 03:51:42 server2 maldet(4049016): {update} latest version already installed. Nov 15 2023 03:51:42 server2 maldet(4049149): {sigup} performing signature update check... Nov 15 2023 03:51:42 server2 maldet(4049149): {sigup} local signature set is version 202311133949018 Nov 15 2023 03:51:42 server2 maldet(4049149): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Nov 15 2023 03:51:42 server2 maldet(4049149): {sigup} latest signature set already installed Nov 15 2023 03:51:42 server2 maldet(4049260): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Nov 15 2023 03:51:42 server2 maldet(4049260): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Nov 15 2023 03:51:42 server2 maldet(4049260): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Nov 15 2023 03:51:42 server2 maldet(4049260): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Nov 15 2023 03:51:42 server2 maldet(4049260): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Nov 15 2023 03:52:07 server2 maldet(4049260): {scan} file list completed in 25s, found 864 files... Nov 15 2023 03:52:07 server2 maldet(4049260): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Nov 15 2023 03:52:07 server2 maldet(4049260): {scan} scan of (864 files) in progress... Nov 15 2023 03:52:59 server2 maldet(4049260): {scan} scan completed on : files 864, malware hits 0, cleaned hits 0, time 77s Nov 15 2023 03:52:59 server2 maldet(4049260): {scan} scan report saved, to view run: maldet --report 231115-0351.4049260 Nov 16 2023 03:31:04 server2 maldet(91567): {update} checking for available updates... Nov 16 2023 03:31:04 server2 maldet(91567): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Nov 16 2023 03:31:04 server2 maldet(91567): {update} hashing install files and checking against server... Nov 16 2023 03:31:04 server2 maldet(91567): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Nov 16 2023 03:31:04 server2 maldet(91567): {update} latest version already installed. Nov 16 2023 03:31:05 server2 maldet(91706): {sigup} performing signature update check... Nov 16 2023 03:31:05 server2 maldet(91706): {sigup} local signature set is version 202311133949018 Nov 16 2023 03:31:05 server2 maldet(91706): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Nov 16 2023 03:31:05 server2 maldet(91706): {sigup} new signature set 20231116449705 available Nov 16 2023 03:31:05 server2 maldet(91706): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Nov 16 2023 03:31:05 server2 maldet(91706): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Nov 16 2023 03:31:05 server2 maldet(91706): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Nov 16 2023 03:31:05 server2 maldet(91706): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Nov 16 2023 03:31:05 server2 maldet(91706): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Nov 16 2023 03:31:05 server2 maldet(91706): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Nov 16 2023 03:31:05 server2 maldet(91706): {sigup} verified md5sum of maldet-sigpack.tgz Nov 16 2023 03:31:05 server2 maldet(91706): {sigup} unpacked and installed maldet-sigpack.tgz Nov 16 2023 03:31:06 server2 maldet(91706): {sigup} verified md5sum of maldet-clean.tgz Nov 16 2023 03:31:06 server2 maldet(91706): {sigup} unpacked and installed maldet-clean.tgz Nov 16 2023 03:31:06 server2 maldet(91706): {sigup} signature set update completed Nov 16 2023 03:31:06 server2 maldet(91706): {sigup} 17637 signatures (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Nov 16 2023 03:31:06 server2 maldet(91940): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Nov 16 2023 03:31:07 server2 maldet(91940): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Nov 16 2023 03:31:07 server2 maldet(91940): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Nov 16 2023 03:31:07 server2 maldet(91940): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Nov 16 2023 03:31:07 server2 maldet(91940): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Nov 16 2023 03:31:38 server2 maldet(91940): {scan} file list completed in 31s, found 985 files... Nov 16 2023 03:31:38 server2 maldet(91940): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Nov 16 2023 03:31:38 server2 maldet(91940): {scan} scan of (985 files) in progress... Nov 16 2023 03:32:39 server2 maldet(91940): {scan} scan completed on : files 985, malware hits 0, cleaned hits 0, time 93s Nov 16 2023 03:32:39 server2 maldet(91940): {scan} scan report saved, to view run: maldet --report 231116-0331.91940 Nov 17 2023 03:12:53 server2 maldet(341256): {update} checking for available updates... Nov 17 2023 03:12:53 server2 maldet(341256): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Nov 17 2023 03:12:53 server2 maldet(341256): {update} hashing install files and checking against server... Nov 17 2023 03:12:54 server2 maldet(341256): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Nov 17 2023 03:12:54 server2 maldet(341256): {update} latest version already installed. Nov 17 2023 03:12:54 server2 maldet(341389): {sigup} performing signature update check... Nov 17 2023 03:12:54 server2 maldet(341389): {sigup} local signature set is version 20231116449705 Nov 17 2023 03:12:54 server2 maldet(341389): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Nov 17 2023 03:12:54 server2 maldet(341389): {sigup} latest signature set already installed Nov 17 2023 03:12:54 server2 maldet(341500): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Nov 17 2023 03:12:54 server2 maldet(341500): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Nov 17 2023 03:12:54 server2 maldet(341500): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Nov 17 2023 03:12:54 server2 maldet(341500): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Nov 17 2023 03:12:54 server2 maldet(341500): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Nov 17 2023 03:13:25 server2 maldet(341500): {scan} file list completed in 31s, found 1161 files... Nov 17 2023 03:13:25 server2 maldet(341500): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Nov 17 2023 03:13:25 server2 maldet(341500): {scan} scan of (1161 files) in progress... Nov 17 2023 03:14:22 server2 maldet(341500): {scan} scan completed on : files 1161, malware hits 0, cleaned hits 0, time 88s Nov 17 2023 03:14:22 server2 maldet(341500): {scan} scan report saved, to view run: maldet --report 231117-0312.341500 Nov 18 2023 03:42:29 server2 maldet(599854): {update} checking for available updates... Nov 18 2023 03:42:29 server2 maldet(599854): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Nov 18 2023 03:42:29 server2 maldet(599854): {update} hashing install files and checking against server... Nov 18 2023 03:42:29 server2 maldet(599854): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Nov 18 2023 03:42:29 server2 maldet(599854): {update} latest version already installed. Nov 18 2023 03:42:29 server2 maldet(599987): {sigup} performing signature update check... Nov 18 2023 03:42:29 server2 maldet(599987): {sigup} local signature set is version 20231116449705 Nov 18 2023 03:42:29 server2 maldet(599987): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Nov 18 2023 03:42:29 server2 maldet(599987): {sigup} latest signature set already installed Nov 18 2023 03:42:30 server2 maldet(600099): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Nov 18 2023 03:42:30 server2 maldet(600099): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Nov 18 2023 03:42:30 server2 maldet(600099): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Nov 18 2023 03:42:30 server2 maldet(600099): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Nov 18 2023 03:42:30 server2 maldet(600099): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Nov 18 2023 03:42:53 server2 maldet(600099): {scan} file list completed in 23s, found 944 files... Nov 18 2023 03:42:53 server2 maldet(600099): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Nov 18 2023 03:42:53 server2 maldet(600099): {scan} scan of (944 files) in progress... Nov 18 2023 03:43:44 server2 maldet(600099): {scan} scan completed on : files 944, malware hits 0, cleaned hits 0, time 74s Nov 18 2023 03:43:44 server2 maldet(600099): {scan} scan report saved, to view run: maldet --report 231118-0342.600099 Nov 19 2023 03:48:53 server2 maldet(842741): {update} checking for available updates... Nov 19 2023 03:48:53 server2 maldet(842741): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Nov 19 2023 03:48:53 server2 maldet(842741): {update} hashing install files and checking against server... Nov 19 2023 03:48:53 server2 maldet(842741): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Nov 19 2023 03:48:53 server2 maldet(842741): {update} latest version already installed. Nov 19 2023 03:48:53 server2 maldet(842874): {sigup} performing signature update check... Nov 19 2023 03:48:53 server2 maldet(842874): {sigup} local signature set is version 20231116449705 Nov 19 2023 03:48:53 server2 maldet(842874): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Nov 19 2023 03:48:53 server2 maldet(842874): {sigup} new signature set 20231119537442 available Nov 19 2023 03:48:53 server2 maldet(842874): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Nov 19 2023 03:48:53 server2 maldet(842874): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Nov 19 2023 03:48:53 server2 maldet(842874): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Nov 19 2023 03:48:53 server2 maldet(842874): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Nov 19 2023 03:48:53 server2 maldet(842874): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Nov 19 2023 03:48:53 server2 maldet(842874): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Nov 19 2023 03:48:53 server2 maldet(842874): {sigup} verified md5sum of maldet-sigpack.tgz Nov 19 2023 03:48:54 server2 maldet(842874): {sigup} unpacked and installed maldet-sigpack.tgz Nov 19 2023 03:48:54 server2 maldet(842874): {sigup} verified md5sum of maldet-clean.tgz Nov 19 2023 03:48:54 server2 maldet(842874): {sigup} unpacked and installed maldet-clean.tgz Nov 19 2023 03:48:54 server2 maldet(842874): {sigup} signature set update completed Nov 19 2023 03:48:54 server2 maldet(842874): {sigup} 17637 signatures (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Nov 19 2023 03:48:54 server2 maldet(843102): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Nov 19 2023 03:48:55 server2 maldet(843102): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Nov 19 2023 03:48:55 server2 maldet(843102): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Nov 19 2023 03:48:55 server2 maldet(843102): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Nov 19 2023 03:48:55 server2 maldet(843102): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Nov 19 2023 03:49:22 server2 maldet(843102): {scan} file list completed in 27s, found 783 files... Nov 19 2023 03:49:22 server2 maldet(843102): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Nov 19 2023 03:49:22 server2 maldet(843102): {scan} scan of (783 files) in progress... Nov 19 2023 03:50:11 server2 maldet(843102): {scan} scan completed on : files 783, malware hits 0, cleaned hits 0, time 77s Nov 19 2023 03:50:11 server2 maldet(843102): {scan} scan report saved, to view run: maldet --report 231119-0348.843102 Nov 20 2023 03:48:22 server2 maldet(1077824): {update} checking for available updates... Nov 20 2023 03:48:22 server2 maldet(1077824): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Nov 20 2023 03:48:22 server2 maldet(1077824): {update} hashing install files and checking against server... Nov 20 2023 03:48:22 server2 maldet(1077824): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Nov 20 2023 03:48:22 server2 maldet(1077824): {update} latest version already installed. Nov 20 2023 03:48:22 server2 maldet(1077957): {sigup} performing signature update check... Nov 20 2023 03:48:22 server2 maldet(1077957): {sigup} local signature set is version 20231119537442 Nov 20 2023 03:48:22 server2 maldet(1077957): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Nov 20 2023 03:48:22 server2 maldet(1077957): {sigup} latest signature set already installed Nov 20 2023 03:48:23 server2 maldet(1078068): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Nov 20 2023 03:48:23 server2 maldet(1078068): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Nov 20 2023 03:48:23 server2 maldet(1078068): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Nov 20 2023 03:48:23 server2 maldet(1078068): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Nov 20 2023 03:48:23 server2 maldet(1078068): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Nov 20 2023 03:48:53 server2 maldet(1078068): {scan} file list completed in 30s, found 1490 files... Nov 20 2023 03:48:53 server2 maldet(1078068): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Nov 20 2023 03:48:53 server2 maldet(1078068): {scan} scan of (1490 files) in progress... Nov 20 2023 03:49:55 server2 maldet(1078068): {scan} scan completed on : files 1490, malware hits 0, cleaned hits 0, time 92s Nov 20 2023 03:49:55 server2 maldet(1078068): {scan} scan report saved, to view run: maldet --report 231120-0348.1078068 Nov 21 2023 03:35:36 server2 maldet(1329416): {update} checking for available updates... Nov 21 2023 03:35:36 server2 maldet(1329416): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Nov 21 2023 03:35:36 server2 maldet(1329416): {update} hashing install files and checking against server... Nov 21 2023 03:35:36 server2 maldet(1329416): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Nov 21 2023 03:35:36 server2 maldet(1329416): {update} latest version already installed. Nov 21 2023 03:35:36 server2 maldet(1329549): {sigup} performing signature update check... Nov 21 2023 03:35:36 server2 maldet(1329549): {sigup} local signature set is version 20231119537442 Nov 21 2023 03:35:36 server2 maldet(1329549): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Nov 21 2023 03:35:36 server2 maldet(1329549): {sigup} latest signature set already installed Nov 21 2023 03:35:37 server2 maldet(1329660): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Nov 21 2023 03:35:37 server2 maldet(1329660): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Nov 21 2023 03:35:37 server2 maldet(1329660): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Nov 21 2023 03:35:37 server2 maldet(1329660): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Nov 21 2023 03:35:37 server2 maldet(1329660): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Nov 21 2023 03:36:02 server2 maldet(1329660): {scan} file list completed in 25s, found 1250 files... Nov 21 2023 03:36:02 server2 maldet(1329660): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Nov 21 2023 03:36:02 server2 maldet(1329660): {scan} scan of (1250 files) in progress... Nov 21 2023 03:36:56 server2 maldet(1329660): {scan} scan completed on : files 1250, malware hits 0, cleaned hits 0, time 79s Nov 21 2023 03:36:56 server2 maldet(1329660): {scan} scan report saved, to view run: maldet --report 231121-0335.1329660 Nov 22 2023 03:50:56 server2 maldet(1582780): {update} checking for available updates... Nov 22 2023 03:50:56 server2 maldet(1582780): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Nov 22 2023 03:50:57 server2 maldet(1582780): {update} hashing install files and checking against server... Nov 22 2023 03:50:57 server2 maldet(1582780): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Nov 22 2023 03:50:57 server2 maldet(1582780): {update} latest version already installed. Nov 22 2023 03:50:57 server2 maldet(1582913): {sigup} performing signature update check... Nov 22 2023 03:50:57 server2 maldet(1582913): {sigup} local signature set is version 20231119537442 Nov 22 2023 03:50:57 server2 maldet(1582913): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Nov 22 2023 03:50:57 server2 maldet(1582913): {sigup} new signature set 202311221270169 available Nov 22 2023 03:50:57 server2 maldet(1582913): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Nov 22 2023 03:50:57 server2 maldet(1582913): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Nov 22 2023 03:50:57 server2 maldet(1582913): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Nov 22 2023 03:50:57 server2 maldet(1582913): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Nov 22 2023 03:50:57 server2 maldet(1582913): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Nov 22 2023 03:50:57 server2 maldet(1582913): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Nov 22 2023 03:50:57 server2 maldet(1582913): {sigup} verified md5sum of maldet-sigpack.tgz Nov 22 2023 03:50:57 server2 maldet(1582913): {sigup} unpacked and installed maldet-sigpack.tgz Nov 22 2023 03:50:57 server2 maldet(1582913): {sigup} verified md5sum of maldet-clean.tgz Nov 22 2023 03:50:57 server2 maldet(1582913): {sigup} unpacked and installed maldet-clean.tgz Nov 22 2023 03:50:57 server2 maldet(1582913): {sigup} signature set update completed Nov 22 2023 03:50:58 server2 maldet(1582913): {sigup} 17637 signatures (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Nov 22 2023 03:50:58 server2 maldet(1583142): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Nov 22 2023 03:50:58 server2 maldet(1583142): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Nov 22 2023 03:50:58 server2 maldet(1583142): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Nov 22 2023 03:50:58 server2 maldet(1583142): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Nov 22 2023 03:50:58 server2 maldet(1583142): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Nov 22 2023 03:51:35 server2 maldet(1583142): {scan} file list completed in 37s, found 3048 files... Nov 22 2023 03:51:35 server2 maldet(1583142): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Nov 22 2023 03:51:35 server2 maldet(1583142): {scan} scan of (3048 files) in progress... Nov 22 2023 03:54:32 server2 maldet(1583142): {scan} scan completed on : files 3048, malware hits 0, cleaned hits 0, time 214s Nov 22 2023 03:54:32 server2 maldet(1583142): {scan} scan report saved, to view run: maldet --report 231122-0350.1583142 Nov 23 2023 03:44:50 server2 maldet(1863382): {update} checking for available updates... Nov 23 2023 03:44:50 server2 maldet(1863382): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Nov 23 2023 03:44:50 server2 maldet(1863382): {update} hashing install files and checking against server... Nov 23 2023 03:44:50 server2 maldet(1863382): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Nov 23 2023 03:44:50 server2 maldet(1863382): {update} latest version already installed. Nov 23 2023 03:44:51 server2 maldet(1863515): {sigup} performing signature update check... Nov 23 2023 03:44:51 server2 maldet(1863515): {sigup} local signature set is version 202311221270169 Nov 23 2023 03:44:51 server2 maldet(1863515): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Nov 23 2023 03:44:51 server2 maldet(1863515): {sigup} latest signature set already installed Nov 23 2023 03:44:51 server2 maldet(1863626): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Nov 23 2023 03:44:51 server2 maldet(1863626): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Nov 23 2023 03:44:51 server2 maldet(1863626): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Nov 23 2023 03:44:51 server2 maldet(1863626): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Nov 23 2023 03:44:51 server2 maldet(1863626): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Nov 23 2023 03:45:33 server2 maldet(1863626): {scan} file list completed in 42s, found 1038 files... Nov 23 2023 03:45:33 server2 maldet(1863626): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Nov 23 2023 03:45:33 server2 maldet(1863626): {scan} scan of (1038 files) in progress... Nov 23 2023 03:46:25 server2 maldet(1863626): {scan} scan completed on : files 1038, malware hits 0, cleaned hits 0, time 94s Nov 23 2023 03:46:25 server2 maldet(1863626): {scan} scan report saved, to view run: maldet --report 231123-0344.1863626 Nov 24 2023 03:47:24 server2 maldet(2085322): {update} checking for available updates... Nov 24 2023 03:47:24 server2 maldet(2085322): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Nov 24 2023 03:47:24 server2 maldet(2085322): {update} hashing install files and checking against server... Nov 24 2023 03:47:24 server2 maldet(2085322): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Nov 24 2023 03:47:24 server2 maldet(2085322): {update} latest version already installed. Nov 24 2023 03:47:24 server2 maldet(2085455): {sigup} performing signature update check... Nov 24 2023 03:47:25 server2 maldet(2085455): {sigup} local signature set is version 202311221270169 Nov 24 2023 03:47:25 server2 maldet(2085455): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Nov 24 2023 03:47:25 server2 maldet(2085455): {sigup} latest signature set already installed Nov 24 2023 03:47:25 server2 maldet(2085567): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Nov 24 2023 03:47:25 server2 maldet(2085567): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Nov 24 2023 03:47:25 server2 maldet(2085567): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Nov 24 2023 03:47:25 server2 maldet(2085567): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Nov 24 2023 03:47:25 server2 maldet(2085567): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Nov 24 2023 03:47:49 server2 maldet(2085567): {scan} file list completed in 24s, found 1002 files... Nov 24 2023 03:47:49 server2 maldet(2085567): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Nov 24 2023 03:47:49 server2 maldet(2085567): {scan} scan of (1002 files) in progress... Nov 24 2023 03:48:45 server2 maldet(2085567): {scan} scan completed on : files 1002, malware hits 0, cleaned hits 0, time 80s Nov 24 2023 03:48:45 server2 maldet(2085567): {scan} scan report saved, to view run: maldet --report 231124-0347.2085567 Nov 25 2023 03:54:24 server2 maldet(2294819): {update} checking for available updates... Nov 25 2023 03:54:24 server2 maldet(2294819): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Nov 25 2023 03:54:25 server2 maldet(2294819): {update} hashing install files and checking against server... Nov 25 2023 03:54:25 server2 maldet(2294819): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Nov 25 2023 03:54:25 server2 maldet(2294819): {update} latest version already installed. Nov 25 2023 03:54:25 server2 maldet(2294954): {sigup} performing signature update check... Nov 25 2023 03:54:25 server2 maldet(2294954): {sigup} local signature set is version 202311221270169 Nov 25 2023 03:54:25 server2 maldet(2294954): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Nov 25 2023 03:54:25 server2 maldet(2294954): {sigup} latest signature set already installed Nov 25 2023 03:54:25 server2 maldet(2295066): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Nov 25 2023 03:54:25 server2 maldet(2295066): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Nov 25 2023 03:54:25 server2 maldet(2295066): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Nov 25 2023 03:54:25 server2 maldet(2295066): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Nov 25 2023 03:54:25 server2 maldet(2295066): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Nov 25 2023 03:54:50 server2 maldet(2295066): {scan} file list completed in 25s, found 955 files... Nov 25 2023 03:54:50 server2 maldet(2295066): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Nov 25 2023 03:54:50 server2 maldet(2295066): {scan} scan of (955 files) in progress... Nov 25 2023 03:55:48 server2 maldet(2295066): {scan} scan completed on : files 955, malware hits 0, cleaned hits 0, time 83s Nov 25 2023 03:55:48 server2 maldet(2295066): {scan} scan report saved, to view run: maldet --report 231125-0354.2295066 Nov 26 2023 03:43:16 server2 maldet(2509309): {update} checking for available updates... Nov 26 2023 03:43:16 server2 maldet(2509309): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Nov 26 2023 03:43:16 server2 maldet(2509309): {update} hashing install files and checking against server... Nov 26 2023 03:43:16 server2 maldet(2509309): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Nov 26 2023 03:43:16 server2 maldet(2509309): {update} latest version already installed. Nov 26 2023 03:43:17 server2 maldet(2509442): {sigup} performing signature update check... Nov 26 2023 03:43:17 server2 maldet(2509442): {sigup} local signature set is version 202311221270169 Nov 26 2023 03:43:17 server2 maldet(2509442): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Nov 26 2023 03:43:17 server2 maldet(2509442): {sigup} new signature set 202311252050670 available Nov 26 2023 03:43:17 server2 maldet(2509442): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Nov 26 2023 03:43:17 server2 maldet(2509442): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Nov 26 2023 03:43:17 server2 maldet(2509442): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Nov 26 2023 03:43:17 server2 maldet(2509442): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Nov 26 2023 03:43:17 server2 maldet(2509442): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Nov 26 2023 03:43:17 server2 maldet(2509442): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Nov 26 2023 03:43:17 server2 maldet(2509442): {sigup} verified md5sum of maldet-sigpack.tgz Nov 26 2023 03:43:17 server2 maldet(2509442): {sigup} unpacked and installed maldet-sigpack.tgz Nov 26 2023 03:43:17 server2 maldet(2509442): {sigup} verified md5sum of maldet-clean.tgz Nov 26 2023 03:43:17 server2 maldet(2509442): {sigup} unpacked and installed maldet-clean.tgz Nov 26 2023 03:43:17 server2 maldet(2509442): {sigup} signature set update completed Nov 26 2023 03:43:17 server2 maldet(2509442): {sigup} 17637 signatures (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Nov 26 2023 03:43:17 server2 maldet(2509670): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Nov 26 2023 03:43:18 server2 maldet(2509670): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Nov 26 2023 03:43:18 server2 maldet(2509670): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Nov 26 2023 03:43:18 server2 maldet(2509670): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Nov 26 2023 03:43:18 server2 maldet(2509670): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Nov 26 2023 03:43:41 server2 maldet(2509670): {scan} file list completed in 23s, found 792 files... Nov 26 2023 03:43:41 server2 maldet(2509670): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Nov 26 2023 03:43:41 server2 maldet(2509670): {scan} scan of (792 files) in progress... Nov 26 2023 03:44:29 server2 maldet(2509670): {scan} scan completed on : files 792, malware hits 0, cleaned hits 0, time 71s Nov 26 2023 03:44:29 server2 maldet(2509670): {scan} scan report saved, to view run: maldet --report 231126-0343.2509670 Nov 27 2023 03:25:53 server2 maldet(2735391): {update} checking for available updates... Nov 27 2023 03:25:53 server2 maldet(2735391): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Nov 27 2023 03:25:53 server2 maldet(2735391): {update} hashing install files and checking against server... Nov 27 2023 03:25:53 server2 maldet(2735391): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Nov 27 2023 03:25:53 server2 maldet(2735391): {update} latest version already installed. Nov 27 2023 03:25:53 server2 maldet(2735524): {sigup} performing signature update check... Nov 27 2023 03:25:53 server2 maldet(2735524): {sigup} local signature set is version 202311252050670 Nov 27 2023 03:25:53 server2 maldet(2735524): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Nov 27 2023 03:25:53 server2 maldet(2735524): {sigup} latest signature set already installed Nov 27 2023 03:25:53 server2 maldet(2735635): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Nov 27 2023 03:25:54 server2 maldet(2735635): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Nov 27 2023 03:25:54 server2 maldet(2735635): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Nov 27 2023 03:25:54 server2 maldet(2735635): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Nov 27 2023 03:25:54 server2 maldet(2735635): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Nov 27 2023 03:26:32 server2 maldet(2735635): {scan} file list completed in 37s, found 776 files... Nov 27 2023 03:26:32 server2 maldet(2735635): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Nov 27 2023 03:26:32 server2 maldet(2735635): {scan} scan of (776 files) in progress... Nov 27 2023 03:27:14 server2 maldet(2735635): {scan} scan completed on : files 776, malware hits 0, cleaned hits 0, time 81s Nov 27 2023 03:27:14 server2 maldet(2735635): {scan} scan report saved, to view run: maldet --report 231127-0325.2735635 Nov 28 2023 03:35:06 server2 maldet(2956014): {update} checking for available updates... Nov 28 2023 03:35:06 server2 maldet(2956014): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Nov 28 2023 03:35:06 server2 maldet(2956014): {update} hashing install files and checking against server... Nov 28 2023 03:35:06 server2 maldet(2956014): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Nov 28 2023 03:35:06 server2 maldet(2956014): {update} latest version already installed. Nov 28 2023 03:35:06 server2 maldet(2956147): {sigup} performing signature update check... Nov 28 2023 03:35:06 server2 maldet(2956147): {sigup} local signature set is version 202311252050670 Nov 28 2023 03:35:06 server2 maldet(2956147): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Nov 28 2023 03:35:06 server2 maldet(2956147): {sigup} new signature set 202311282735895 available Nov 28 2023 03:35:06 server2 maldet(2956147): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Nov 28 2023 03:35:06 server2 maldet(2956147): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Nov 28 2023 03:35:06 server2 maldet(2956147): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Nov 28 2023 03:35:06 server2 maldet(2956147): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Nov 28 2023 03:35:07 server2 maldet(2956147): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Nov 28 2023 03:35:07 server2 maldet(2956147): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Nov 28 2023 03:35:07 server2 maldet(2956147): {sigup} verified md5sum of maldet-sigpack.tgz Nov 28 2023 03:35:07 server2 maldet(2956147): {sigup} unpacked and installed maldet-sigpack.tgz Nov 28 2023 03:35:07 server2 maldet(2956147): {sigup} verified md5sum of maldet-clean.tgz Nov 28 2023 03:35:07 server2 maldet(2956147): {sigup} unpacked and installed maldet-clean.tgz Nov 28 2023 03:35:07 server2 maldet(2956147): {sigup} signature set update completed Nov 28 2023 03:35:07 server2 maldet(2956147): {sigup} 17637 signatures (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Nov 28 2023 03:35:08 server2 maldet(2956375): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Nov 28 2023 03:35:08 server2 maldet(2956375): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Nov 28 2023 03:35:08 server2 maldet(2956375): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Nov 28 2023 03:35:08 server2 maldet(2956375): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Nov 28 2023 03:35:08 server2 maldet(2956375): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Nov 28 2023 03:35:45 server2 maldet(2956375): {scan} file list completed in 37s, found 1382 files... Nov 28 2023 03:35:45 server2 maldet(2956375): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Nov 28 2023 03:35:45 server2 maldet(2956375): {scan} scan of (1382 files) in progress... Nov 28 2023 03:37:08 server2 maldet(2956375): {scan} scan completed on : files 1382, malware hits 0, cleaned hits 0, time 120s Nov 28 2023 03:37:08 server2 maldet(2956375): {scan} scan report saved, to view run: maldet --report 231128-0335.2956375 Nov 29 2023 03:38:10 server2 maldet(3165123): {update} checking for available updates... Nov 29 2023 03:38:10 server2 maldet(3165123): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Nov 29 2023 03:38:10 server2 maldet(3165123): {update} hashing install files and checking against server... Nov 29 2023 03:38:10 server2 maldet(3165123): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Nov 29 2023 03:38:10 server2 maldet(3165123): {update} latest version already installed. Nov 29 2023 03:38:10 server2 maldet(3165259): {sigup} performing signature update check... Nov 29 2023 03:38:10 server2 maldet(3165259): {sigup} local signature set is version 202311282735895 Nov 29 2023 03:38:10 server2 maldet(3165259): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Nov 29 2023 03:38:10 server2 maldet(3165259): {sigup} latest signature set already installed Nov 29 2023 03:38:11 server2 maldet(3165371): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Nov 29 2023 03:38:11 server2 maldet(3165371): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Nov 29 2023 03:38:11 server2 maldet(3165371): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Nov 29 2023 03:38:11 server2 maldet(3165371): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Nov 29 2023 03:38:11 server2 maldet(3165371): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Nov 29 2023 03:38:47 server2 maldet(3165371): {scan} file list completed in 36s, found 735 files... Nov 29 2023 03:38:47 server2 maldet(3165371): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Nov 29 2023 03:38:47 server2 maldet(3165371): {scan} scan of (735 files) in progress... Nov 29 2023 03:39:34 server2 maldet(3165371): {scan} scan completed on : files 735, malware hits 0, cleaned hits 0, time 83s Nov 29 2023 03:39:34 server2 maldet(3165371): {scan} scan report saved, to view run: maldet --report 231129-0338.3165371 Nov 30 2023 03:52:32 server2 maldet(3364629): {update} checking for available updates... Nov 30 2023 03:52:33 server2 maldet(3364629): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Nov 30 2023 03:52:33 server2 maldet(3364629): {update} hashing install files and checking against server... Nov 30 2023 03:52:33 server2 maldet(3364629): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Nov 30 2023 03:52:33 server2 maldet(3364629): {update} latest version already installed. Nov 30 2023 03:52:33 server2 maldet(3364762): {sigup} performing signature update check... Nov 30 2023 03:52:33 server2 maldet(3364762): {sigup} local signature set is version 202311282735895 Nov 30 2023 03:52:33 server2 maldet(3364762): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Nov 30 2023 03:52:33 server2 maldet(3364762): {sigup} latest signature set already installed Nov 30 2023 03:52:33 server2 maldet(3364873): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Nov 30 2023 03:52:33 server2 maldet(3364873): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Nov 30 2023 03:52:33 server2 maldet(3364873): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Nov 30 2023 03:52:33 server2 maldet(3364873): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Nov 30 2023 03:52:33 server2 maldet(3364873): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Nov 30 2023 03:52:53 server2 maldet(3364873): {scan} file list completed in 20s, found 1141 files... Nov 30 2023 03:52:53 server2 maldet(3364873): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Nov 30 2023 03:52:53 server2 maldet(3364873): {scan} scan of (1141 files) in progress... Nov 30 2023 03:53:51 server2 maldet(3364873): {scan} scan completed on : files 1141, malware hits 0, cleaned hits 0, time 78s Nov 30 2023 03:53:51 server2 maldet(3364873): {scan} scan report saved, to view run: maldet --report 231130-0352.3364873 Dec 01 2023 03:50:30 server2 maldet(3559549): {update} checking for available updates... Dec 01 2023 03:50:30 server2 maldet(3559549): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Dec 01 2023 03:50:30 server2 maldet(3559549): {update} hashing install files and checking against server... Dec 01 2023 03:50:30 server2 maldet(3559549): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Dec 01 2023 03:50:30 server2 maldet(3559549): {update} latest version already installed. Dec 01 2023 03:50:30 server2 maldet(3559682): {sigup} performing signature update check... Dec 01 2023 03:50:30 server2 maldet(3559682): {sigup} local signature set is version 202311282735895 Dec 01 2023 03:50:30 server2 maldet(3559682): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Dec 01 2023 03:50:30 server2 maldet(3559682): {sigup} latest signature set already installed Dec 01 2023 03:50:30 server2 maldet(3559793): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Dec 01 2023 03:50:31 server2 maldet(3559793): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Dec 01 2023 03:50:31 server2 maldet(3559793): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Dec 01 2023 03:50:31 server2 maldet(3559793): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Dec 01 2023 03:50:31 server2 maldet(3559793): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Dec 01 2023 03:50:53 server2 maldet(3559793): {scan} file list completed in 22s, found 714 files... Dec 01 2023 03:50:53 server2 maldet(3559793): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Dec 01 2023 03:50:53 server2 maldet(3559793): {scan} scan of (714 files) in progress... Dec 01 2023 03:51:30 server2 maldet(3559793): {scan} scan completed on : files 714, malware hits 0, cleaned hits 0, time 60s Dec 01 2023 03:51:30 server2 maldet(3559793): {scan} scan report saved, to view run: maldet --report 231201-0350.3559793 Dec 02 2023 03:18:05 server2 maldet(3760564): {update} checking for available updates... Dec 02 2023 03:18:06 server2 maldet(3760564): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Dec 02 2023 03:18:06 server2 maldet(3760564): {update} hashing install files and checking against server... Dec 02 2023 03:18:06 server2 maldet(3760564): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Dec 02 2023 03:18:06 server2 maldet(3760564): {update} latest version already installed. Dec 02 2023 03:18:06 server2 maldet(3760699): {sigup} performing signature update check... Dec 02 2023 03:18:06 server2 maldet(3760699): {sigup} local signature set is version 202311282735895 Dec 02 2023 03:18:06 server2 maldet(3760699): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Dec 02 2023 03:18:06 server2 maldet(3760699): {sigup} new signature set 20231201581085 available Dec 02 2023 03:18:06 server2 maldet(3760699): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Dec 02 2023 03:18:06 server2 maldet(3760699): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Dec 02 2023 03:18:06 server2 maldet(3760699): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Dec 02 2023 03:18:06 server2 maldet(3760699): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Dec 02 2023 03:18:06 server2 maldet(3760699): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Dec 02 2023 03:18:07 server2 maldet(3760699): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Dec 02 2023 03:18:07 server2 maldet(3760699): {sigup} verified md5sum of maldet-sigpack.tgz Dec 02 2023 03:18:07 server2 maldet(3760699): {sigup} unpacked and installed maldet-sigpack.tgz Dec 02 2023 03:18:07 server2 maldet(3760699): {sigup} verified md5sum of maldet-clean.tgz Dec 02 2023 03:18:07 server2 maldet(3760699): {sigup} unpacked and installed maldet-clean.tgz Dec 02 2023 03:18:07 server2 maldet(3760699): {sigup} signature set update completed Dec 02 2023 03:18:07 server2 maldet(3760699): {sigup} 17637 signatures (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Dec 02 2023 03:18:07 server2 maldet(3760928): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Dec 02 2023 03:18:07 server2 maldet(3760928): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Dec 02 2023 03:18:07 server2 maldet(3760928): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Dec 02 2023 03:18:07 server2 maldet(3760928): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Dec 02 2023 03:18:07 server2 maldet(3760928): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Dec 02 2023 03:18:33 server2 maldet(3760928): {scan} file list completed in 26s, found 1222 files... Dec 02 2023 03:18:33 server2 maldet(3760928): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Dec 02 2023 03:18:34 server2 maldet(3760928): {scan} scan of (1222 files) in progress... Dec 02 2023 03:19:34 server2 maldet(3760928): {scan} scan completed on : files 1222, malware hits 0, cleaned hits 0, time 87s Dec 02 2023 03:19:34 server2 maldet(3760928): {scan} scan report saved, to view run: maldet --report 231202-0318.3760928 Dec 03 2023 03:25:37 server2 maldet(3970583): {update} checking for available updates... Dec 03 2023 03:25:37 server2 maldet(3970583): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Dec 03 2023 03:25:37 server2 maldet(3970583): {update} hashing install files and checking against server... Dec 03 2023 03:25:38 server2 maldet(3970583): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Dec 03 2023 03:25:38 server2 maldet(3970583): {update} latest version already installed. Dec 03 2023 03:25:38 server2 maldet(3970716): {sigup} performing signature update check... Dec 03 2023 03:25:38 server2 maldet(3970716): {sigup} local signature set is version 20231201581085 Dec 03 2023 03:25:38 server2 maldet(3970716): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Dec 03 2023 03:25:38 server2 maldet(3970716): {sigup} latest signature set already installed Dec 03 2023 03:25:38 server2 maldet(3970828): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Dec 03 2023 03:25:38 server2 maldet(3970828): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Dec 03 2023 03:25:38 server2 maldet(3970828): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Dec 03 2023 03:25:38 server2 maldet(3970828): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Dec 03 2023 03:25:38 server2 maldet(3970828): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Dec 03 2023 03:26:14 server2 maldet(3970828): {scan} file list completed in 36s, found 1201 files... Dec 03 2023 03:26:14 server2 maldet(3970828): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Dec 03 2023 03:26:14 server2 maldet(3970828): {scan} scan of (1201 files) in progress... Dec 03 2023 03:27:26 server2 maldet(3970828): {scan} scan completed on : files 1201, malware hits 0, cleaned hits 0, time 108s Dec 03 2023 03:27:26 server2 maldet(3970828): {scan} scan report saved, to view run: maldet --report 231203-0325.3970828 Dec 04 2023 03:47:20 server2 maldet(4177822): {update} checking for available updates... Dec 04 2023 03:47:21 server2 maldet(4177822): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Dec 04 2023 03:47:21 server2 maldet(4177822): {update} hashing install files and checking against server... Dec 04 2023 03:47:21 server2 maldet(4177822): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Dec 04 2023 03:47:21 server2 maldet(4177822): {update} latest version already installed. Dec 04 2023 03:47:21 server2 maldet(4177955): {sigup} performing signature update check... Dec 04 2023 03:47:21 server2 maldet(4177955): {sigup} local signature set is version 20231201581085 Dec 04 2023 03:47:21 server2 maldet(4177955): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Dec 04 2023 03:47:21 server2 maldet(4177955): {sigup} new signature set 20231204555561 available Dec 04 2023 03:47:21 server2 maldet(4177955): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Dec 04 2023 03:47:21 server2 maldet(4177955): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Dec 04 2023 03:47:21 server2 maldet(4177955): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Dec 04 2023 03:47:21 server2 maldet(4177955): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Dec 04 2023 03:47:21 server2 maldet(4177955): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Dec 04 2023 03:47:21 server2 maldet(4177955): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Dec 04 2023 03:47:21 server2 maldet(4177955): {sigup} verified md5sum of maldet-sigpack.tgz Dec 04 2023 03:47:21 server2 maldet(4177955): {sigup} unpacked and installed maldet-sigpack.tgz Dec 04 2023 03:47:22 server2 maldet(4177955): {sigup} verified md5sum of maldet-clean.tgz Dec 04 2023 03:47:22 server2 maldet(4177955): {sigup} unpacked and installed maldet-clean.tgz Dec 04 2023 03:47:22 server2 maldet(4177955): {sigup} signature set update completed Dec 04 2023 03:47:22 server2 maldet(4177955): {sigup} 17637 signatures (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Dec 04 2023 03:47:22 server2 maldet(4178183): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Dec 04 2023 03:47:22 server2 maldet(4178183): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Dec 04 2023 03:47:22 server2 maldet(4178183): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Dec 04 2023 03:47:22 server2 maldet(4178183): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Dec 04 2023 03:47:22 server2 maldet(4178183): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Dec 04 2023 03:47:47 server2 maldet(4178183): {scan} file list completed in 25s, found 990 files... Dec 04 2023 03:47:47 server2 maldet(4178183): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Dec 04 2023 03:47:47 server2 maldet(4178183): {scan} scan of (990 files) in progress... Dec 04 2023 03:48:41 server2 maldet(4178183): {scan} scan completed on : files 990, malware hits 0, cleaned hits 0, time 79s Dec 04 2023 03:48:41 server2 maldet(4178183): {scan} scan report saved, to view run: maldet --report 231204-0347.4178183 Dec 05 2023 03:27:13 server2 maldet(196655): {update} checking for available updates... Dec 05 2023 03:27:13 server2 maldet(196655): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Dec 05 2023 03:27:13 server2 maldet(196655): {update} hashing install files and checking against server... Dec 05 2023 03:27:13 server2 maldet(196655): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Dec 05 2023 03:27:13 server2 maldet(196655): {update} latest version already installed. Dec 05 2023 03:27:13 server2 maldet(196794): {sigup} performing signature update check... Dec 05 2023 03:27:13 server2 maldet(196794): {sigup} local signature set is version 20231204555561 Dec 05 2023 03:27:13 server2 maldet(196794): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Dec 05 2023 03:27:13 server2 maldet(196794): {sigup} latest signature set already installed Dec 05 2023 03:27:13 server2 maldet(196905): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Dec 05 2023 03:27:14 server2 maldet(196905): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Dec 05 2023 03:27:14 server2 maldet(196905): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Dec 05 2023 03:27:14 server2 maldet(196905): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Dec 05 2023 03:27:14 server2 maldet(196905): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Dec 05 2023 03:27:43 server2 maldet(196905): {scan} file list completed in 29s, found 2422 files... Dec 05 2023 03:27:43 server2 maldet(196905): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Dec 05 2023 03:27:43 server2 maldet(196905): {scan} scan of (2422 files) in progress... Dec 05 2023 03:29:25 server2 maldet(196905): {scan} scan completed on : files 2422, malware hits 0, cleaned hits 0, time 132s Dec 05 2023 03:29:25 server2 maldet(196905): {scan} scan report saved, to view run: maldet --report 231205-0327.196905 Dec 06 2023 03:38:58 server2 maldet(388770): {update} checking for available updates... Dec 06 2023 03:38:58 server2 maldet(388770): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Dec 06 2023 03:38:58 server2 maldet(388770): {update} hashing install files and checking against server... Dec 06 2023 03:38:59 server2 maldet(388770): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Dec 06 2023 03:38:59 server2 maldet(388770): {update} latest version already installed. Dec 06 2023 03:38:59 server2 maldet(388903): {sigup} performing signature update check... Dec 06 2023 03:38:59 server2 maldet(388903): {sigup} local signature set is version 20231204555561 Dec 06 2023 03:38:59 server2 maldet(388903): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Dec 06 2023 03:38:59 server2 maldet(388903): {sigup} latest signature set already installed Dec 06 2023 03:38:59 server2 maldet(389014): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Dec 06 2023 03:38:59 server2 maldet(389014): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Dec 06 2023 03:38:59 server2 maldet(389014): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Dec 06 2023 03:38:59 server2 maldet(389014): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Dec 06 2023 03:38:59 server2 maldet(389014): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Dec 06 2023 03:39:36 server2 maldet(389014): {scan} file list completed in 37s, found 645 files... Dec 06 2023 03:39:36 server2 maldet(389014): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Dec 06 2023 03:39:36 server2 maldet(389014): {scan} scan of (645 files) in progress... Dec 06 2023 03:40:40 server2 maldet(389014): {scan} scan completed on : files 645, malware hits 0, cleaned hits 0, time 100s Dec 06 2023 03:40:40 server2 maldet(389014): {scan} scan report saved, to view run: maldet --report 231206-0338.389014 Dec 07 2023 03:23:49 server2 maldet(586811): {update} checking for available updates... Dec 07 2023 03:23:49 server2 maldet(586811): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Dec 07 2023 03:23:49 server2 maldet(586811): {update} hashing install files and checking against server... Dec 07 2023 03:23:49 server2 maldet(586811): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Dec 07 2023 03:23:49 server2 maldet(586811): {update} latest version already installed. Dec 07 2023 03:23:49 server2 maldet(586944): {sigup} performing signature update check... Dec 07 2023 03:23:49 server2 maldet(586944): {sigup} local signature set is version 20231204555561 Dec 07 2023 03:23:50 server2 maldet(586944): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Dec 07 2023 03:23:50 server2 maldet(586944): {sigup} new signature set 202312071288212 available Dec 07 2023 03:23:50 server2 maldet(586944): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Dec 07 2023 03:23:50 server2 maldet(586944): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Dec 07 2023 03:23:50 server2 maldet(586944): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Dec 07 2023 03:23:50 server2 maldet(586944): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Dec 07 2023 03:23:50 server2 maldet(586944): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Dec 07 2023 03:23:50 server2 maldet(586944): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Dec 07 2023 03:23:50 server2 maldet(586944): {sigup} verified md5sum of maldet-sigpack.tgz Dec 07 2023 03:23:50 server2 maldet(586944): {sigup} unpacked and installed maldet-sigpack.tgz Dec 07 2023 03:23:50 server2 maldet(586944): {sigup} verified md5sum of maldet-clean.tgz Dec 07 2023 03:23:50 server2 maldet(586944): {sigup} unpacked and installed maldet-clean.tgz Dec 07 2023 03:23:50 server2 maldet(586944): {sigup} signature set update completed Dec 07 2023 03:23:50 server2 maldet(586944): {sigup} 17637 signatures (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Dec 07 2023 03:23:50 server2 maldet(587173): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Dec 07 2023 03:23:51 server2 maldet(587173): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Dec 07 2023 03:23:51 server2 maldet(587173): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Dec 07 2023 03:23:51 server2 maldet(587173): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Dec 07 2023 03:23:51 server2 maldet(587173): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Dec 07 2023 03:24:23 server2 maldet(587173): {scan} file list completed in 32s, found 17293 files... Dec 07 2023 03:24:23 server2 maldet(587173): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Dec 07 2023 03:24:23 server2 maldet(587173): {scan} scan of (17293 files) in progress... Dec 07 2023 03:31:05 server2 maldet(587173): {scan} scan completed on : files 17293, malware hits 0, cleaned hits 0, time 435s Dec 07 2023 03:31:05 server2 maldet(587173): {scan} scan report saved, to view run: maldet --report 231207-0323.587173 Dec 08 2023 03:12:05 server2 maldet(786898): {update} checking for available updates... Dec 08 2023 03:12:05 server2 maldet(786898): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Dec 08 2023 03:12:05 server2 maldet(786898): {update} hashing install files and checking against server... Dec 08 2023 03:12:06 server2 maldet(786898): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Dec 08 2023 03:12:06 server2 maldet(786898): {update} latest version already installed. Dec 08 2023 03:12:06 server2 maldet(787031): {sigup} performing signature update check... Dec 08 2023 03:12:06 server2 maldet(787031): {sigup} local signature set is version 202312071288212 Dec 08 2023 03:12:06 server2 maldet(787031): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Dec 08 2023 03:12:06 server2 maldet(787031): {sigup} latest signature set already installed Dec 08 2023 03:12:06 server2 maldet(787142): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Dec 08 2023 03:12:06 server2 maldet(787142): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Dec 08 2023 03:12:06 server2 maldet(787142): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Dec 08 2023 03:12:06 server2 maldet(787142): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Dec 08 2023 03:12:06 server2 maldet(787142): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Dec 08 2023 03:12:32 server2 maldet(787142): {scan} file list completed in 26s, found 1790 files... Dec 08 2023 03:12:32 server2 maldet(787142): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Dec 08 2023 03:12:32 server2 maldet(787142): {scan} scan of (1790 files) in progress... Dec 08 2023 03:14:17 server2 maldet(787142): {scan} scan completed on : files 1790, malware hits 0, cleaned hits 0, time 131s Dec 08 2023 03:14:17 server2 maldet(787142): {scan} scan report saved, to view run: maldet --report 231208-0312.787142 Dec 09 2023 03:29:54 server2 maldet(989263): {update} checking for available updates... Dec 09 2023 03:29:54 server2 maldet(989263): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Dec 09 2023 03:29:54 server2 maldet(989263): {update} hashing install files and checking against server... Dec 09 2023 03:29:54 server2 maldet(989263): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Dec 09 2023 03:29:54 server2 maldet(989263): {update} latest version already installed. Dec 09 2023 03:29:54 server2 maldet(989397): {sigup} performing signature update check... Dec 09 2023 03:29:54 server2 maldet(989397): {sigup} local signature set is version 202312071288212 Dec 09 2023 03:29:54 server2 maldet(989397): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Dec 09 2023 03:29:54 server2 maldet(989397): {sigup} latest signature set already installed Dec 09 2023 03:29:54 server2 maldet(989508): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Dec 09 2023 03:29:54 server2 maldet(989508): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Dec 09 2023 03:29:54 server2 maldet(989508): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Dec 09 2023 03:29:54 server2 maldet(989508): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Dec 09 2023 03:29:54 server2 maldet(989508): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Dec 09 2023 03:30:25 server2 maldet(989508): {scan} file list completed in 31s, found 1322 files... Dec 09 2023 03:30:25 server2 maldet(989508): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Dec 09 2023 03:30:25 server2 maldet(989508): {scan} scan of (1322 files) in progress... Dec 09 2023 03:31:40 server2 maldet(989508): {scan} scan completed on : files 1322, malware hits 0, cleaned hits 0, time 105s Dec 09 2023 03:31:40 server2 maldet(989508): {scan} scan report saved, to view run: maldet --report 231209-0329.989508 Dec 10 2023 03:44:44 server2 maldet(1178779): {update} checking for available updates... Dec 10 2023 03:44:44 server2 maldet(1178779): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Dec 10 2023 03:44:44 server2 maldet(1178779): {update} hashing install files and checking against server... Dec 10 2023 03:44:44 server2 maldet(1178779): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Dec 10 2023 03:44:44 server2 maldet(1178779): {update} latest version already installed. Dec 10 2023 03:44:44 server2 maldet(1178912): {sigup} performing signature update check... Dec 10 2023 03:44:44 server2 maldet(1178912): {sigup} local signature set is version 202312071288212 Dec 10 2023 03:44:44 server2 maldet(1178912): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Dec 10 2023 03:44:44 server2 maldet(1178912): {sigup} new signature set 202312102111746 available Dec 10 2023 03:44:44 server2 maldet(1178912): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Dec 10 2023 03:44:44 server2 maldet(1178912): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Dec 10 2023 03:44:44 server2 maldet(1178912): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Dec 10 2023 03:44:44 server2 maldet(1178912): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Dec 10 2023 03:44:44 server2 maldet(1178912): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Dec 10 2023 03:44:44 server2 maldet(1178912): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Dec 10 2023 03:44:44 server2 maldet(1178912): {sigup} verified md5sum of maldet-sigpack.tgz Dec 10 2023 03:44:45 server2 maldet(1178912): {sigup} unpacked and installed maldet-sigpack.tgz Dec 10 2023 03:44:45 server2 maldet(1178912): {sigup} verified md5sum of maldet-clean.tgz Dec 10 2023 03:44:45 server2 maldet(1178912): {sigup} unpacked and installed maldet-clean.tgz Dec 10 2023 03:44:45 server2 maldet(1178912): {sigup} signature set update completed Dec 10 2023 03:44:45 server2 maldet(1178912): {sigup} 17637 signatures (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Dec 10 2023 03:44:45 server2 maldet(1179141): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Dec 10 2023 03:44:45 server2 maldet(1179141): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Dec 10 2023 03:44:45 server2 maldet(1179141): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Dec 10 2023 03:44:45 server2 maldet(1179141): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Dec 10 2023 03:44:45 server2 maldet(1179141): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Dec 10 2023 03:45:07 server2 maldet(1179141): {scan} file list completed in 22s, found 976 files... Dec 10 2023 03:45:07 server2 maldet(1179141): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Dec 10 2023 03:45:07 server2 maldet(1179141): {scan} scan of (976 files) in progress... Dec 10 2023 03:46:03 server2 maldet(1179141): {scan} scan completed on : files 976, malware hits 0, cleaned hits 0, time 78s Dec 10 2023 03:46:03 server2 maldet(1179141): {scan} scan report saved, to view run: maldet --report 231210-0344.1179141 Dec 11 2023 03:16:20 server2 maldet(1355703): {update} checking for available updates... Dec 11 2023 03:16:20 server2 maldet(1355703): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Dec 11 2023 03:16:20 server2 maldet(1355703): {update} hashing install files and checking against server... Dec 11 2023 03:16:20 server2 maldet(1355703): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Dec 11 2023 03:16:20 server2 maldet(1355703): {update} latest version already installed. Dec 11 2023 03:16:20 server2 maldet(1355847): {sigup} performing signature update check... Dec 11 2023 03:16:20 server2 maldet(1355847): {sigup} local signature set is version 202312102111746 Dec 11 2023 03:16:20 server2 maldet(1355847): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Dec 11 2023 03:16:20 server2 maldet(1355847): {sigup} latest signature set already installed Dec 11 2023 03:16:20 server2 maldet(1355974): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Dec 11 2023 03:16:20 server2 maldet(1355974): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Dec 11 2023 03:16:20 server2 maldet(1355974): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Dec 11 2023 03:16:20 server2 maldet(1355974): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Dec 11 2023 03:16:20 server2 maldet(1355974): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Dec 11 2023 03:16:43 server2 maldet(1355974): {scan} file list completed in 23s, found 1655 files... Dec 11 2023 03:16:43 server2 maldet(1355974): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Dec 11 2023 03:16:43 server2 maldet(1355974): {scan} scan of (1655 files) in progress... Dec 11 2023 03:17:59 server2 maldet(1355974): {scan} scan completed on : files 1655, malware hits 0, cleaned hits 0, time 99s Dec 11 2023 03:17:59 server2 maldet(1355974): {scan} scan report saved, to view run: maldet --report 231211-0316.1355974 Dec 12 2023 03:37:55 server2 maldet(1552103): {update} checking for available updates... Dec 12 2023 03:37:56 server2 maldet(1552103): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Dec 12 2023 03:37:56 server2 maldet(1552103): {update} hashing install files and checking against server... Dec 12 2023 03:37:56 server2 maldet(1552103): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Dec 12 2023 03:37:56 server2 maldet(1552103): {update} latest version already installed. Dec 12 2023 03:37:56 server2 maldet(1552238): {sigup} performing signature update check... Dec 12 2023 03:37:56 server2 maldet(1552238): {sigup} local signature set is version 202312102111746 Dec 12 2023 03:37:56 server2 maldet(1552238): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Dec 12 2023 03:37:56 server2 maldet(1552238): {sigup} latest signature set already installed Dec 12 2023 03:37:56 server2 maldet(1552350): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Dec 12 2023 03:37:56 server2 maldet(1552350): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Dec 12 2023 03:37:56 server2 maldet(1552350): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Dec 12 2023 03:37:56 server2 maldet(1552350): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Dec 12 2023 03:37:56 server2 maldet(1552350): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Dec 12 2023 03:38:22 server2 maldet(1552350): {scan} file list completed in 26s, found 1232 files... Dec 12 2023 03:38:22 server2 maldet(1552350): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Dec 12 2023 03:38:22 server2 maldet(1552350): {scan} scan of (1232 files) in progress... Dec 12 2023 03:39:28 server2 maldet(1552350): {scan} scan completed on : files 1232, malware hits 0, cleaned hits 0, time 92s Dec 12 2023 03:39:28 server2 maldet(1552350): {scan} scan report saved, to view run: maldet --report 231212-0337.1552350 Dec 13 2023 03:47:14 server2 maldet(1744339): {update} checking for available updates... Dec 13 2023 03:47:14 server2 maldet(1744339): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Dec 13 2023 03:47:14 server2 maldet(1744339): {update} hashing install files and checking against server... Dec 13 2023 03:47:14 server2 maldet(1744339): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Dec 13 2023 03:47:14 server2 maldet(1744339): {update} latest version already installed. Dec 13 2023 03:47:14 server2 maldet(1744475): {sigup} performing signature update check... Dec 13 2023 03:47:14 server2 maldet(1744475): {sigup} local signature set is version 202312102111746 Dec 13 2023 03:47:14 server2 maldet(1744475): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Dec 13 2023 03:47:14 server2 maldet(1744475): {sigup} latest signature set already installed Dec 13 2023 03:47:15 server2 maldet(1744588): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Dec 13 2023 03:47:15 server2 maldet(1744588): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Dec 13 2023 03:47:15 server2 maldet(1744588): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Dec 13 2023 03:47:15 server2 maldet(1744588): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Dec 13 2023 03:47:15 server2 maldet(1744588): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Dec 13 2023 03:47:43 server2 maldet(1744588): {scan} file list completed in 28s, found 735 files... Dec 13 2023 03:47:43 server2 maldet(1744588): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Dec 13 2023 03:47:43 server2 maldet(1744588): {scan} scan of (735 files) in progress... Dec 13 2023 03:48:36 server2 maldet(1744588): {scan} scan completed on : files 735, malware hits 0, cleaned hits 0, time 81s Dec 13 2023 03:48:36 server2 maldet(1744588): {scan} scan report saved, to view run: maldet --report 231213-0347.1744588 Dec 14 2023 03:54:52 server2 maldet(1925196): {update} checking for available updates... Dec 14 2023 03:54:53 server2 maldet(1925196): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Dec 14 2023 03:54:53 server2 maldet(1925196): {update} hashing install files and checking against server... Dec 14 2023 03:54:53 server2 maldet(1925196): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Dec 14 2023 03:54:53 server2 maldet(1925196): {update} latest version already installed. Dec 14 2023 03:54:53 server2 maldet(1925329): {sigup} performing signature update check... Dec 14 2023 03:54:53 server2 maldet(1925329): {sigup} local signature set is version 202312102111746 Dec 14 2023 03:54:53 server2 maldet(1925329): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Dec 14 2023 03:54:53 server2 maldet(1925329): {sigup} new signature set 202312132952236 available Dec 14 2023 03:54:53 server2 maldet(1925329): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Dec 14 2023 03:54:53 server2 maldet(1925329): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Dec 14 2023 03:54:53 server2 maldet(1925329): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Dec 14 2023 03:54:53 server2 maldet(1925329): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Dec 14 2023 03:54:53 server2 maldet(1925329): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Dec 14 2023 03:54:53 server2 maldet(1925329): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Dec 14 2023 03:54:53 server2 maldet(1925329): {sigup} verified md5sum of maldet-sigpack.tgz Dec 14 2023 03:54:53 server2 maldet(1925329): {sigup} unpacked and installed maldet-sigpack.tgz Dec 14 2023 03:54:53 server2 maldet(1925329): {sigup} verified md5sum of maldet-clean.tgz Dec 14 2023 03:54:54 server2 maldet(1925329): {sigup} unpacked and installed maldet-clean.tgz Dec 14 2023 03:54:54 server2 maldet(1925329): {sigup} signature set update completed Dec 14 2023 03:54:54 server2 maldet(1925329): {sigup} 17637 signatures (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Dec 14 2023 03:54:54 server2 maldet(1925557): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Dec 14 2023 03:54:54 server2 maldet(1925557): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Dec 14 2023 03:54:54 server2 maldet(1925557): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Dec 14 2023 03:54:54 server2 maldet(1925557): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Dec 14 2023 03:54:54 server2 maldet(1925557): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Dec 14 2023 03:55:22 server2 maldet(1925557): {scan} file list completed in 28s, found 845 files... Dec 14 2023 03:55:22 server2 maldet(1925557): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Dec 14 2023 03:55:22 server2 maldet(1925557): {scan} scan of (845 files) in progress... Dec 14 2023 03:56:16 server2 maldet(1925557): {scan} scan completed on : files 845, malware hits 0, cleaned hits 0, time 82s Dec 14 2023 03:56:16 server2 maldet(1925557): {scan} scan report saved, to view run: maldet --report 231214-0354.1925557 Dec 15 2023 03:34:13 server2 maldet(2109486): {update} checking for available updates... Dec 15 2023 03:34:14 server2 maldet(2109486): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Dec 15 2023 03:34:14 server2 maldet(2109486): {update} hashing install files and checking against server... Dec 15 2023 03:34:14 server2 maldet(2109486): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Dec 15 2023 03:34:14 server2 maldet(2109486): {update} latest version already installed. Dec 15 2023 03:34:14 server2 maldet(2109619): {sigup} performing signature update check... Dec 15 2023 03:34:14 server2 maldet(2109619): {sigup} local signature set is version 202312132952236 Dec 15 2023 03:34:14 server2 maldet(2109619): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Dec 15 2023 03:34:14 server2 maldet(2109619): {sigup} latest signature set already installed Dec 15 2023 03:34:14 server2 maldet(2109730): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Dec 15 2023 03:34:15 server2 maldet(2109730): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Dec 15 2023 03:34:15 server2 maldet(2109730): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Dec 15 2023 03:34:15 server2 maldet(2109730): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Dec 15 2023 03:34:15 server2 maldet(2109730): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Dec 15 2023 03:34:45 server2 maldet(2109730): {scan} file list completed in 30s, found 628 files... Dec 15 2023 03:34:45 server2 maldet(2109730): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Dec 15 2023 03:34:45 server2 maldet(2109730): {scan} scan of (628 files) in progress... Dec 15 2023 03:35:21 server2 maldet(2109730): {scan} scan completed on : files 628, malware hits 0, cleaned hits 0, time 67s Dec 15 2023 03:35:21 server2 maldet(2109730): {scan} scan report saved, to view run: maldet --report 231215-0334.2109730 Dec 16 2023 03:43:36 server2 maldet(2346433): {update} checking for available updates... Dec 16 2023 03:43:36 server2 maldet(2346433): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Dec 16 2023 03:43:36 server2 maldet(2346433): {update} hashing install files and checking against server... Dec 16 2023 03:43:36 server2 maldet(2346433): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Dec 16 2023 03:43:36 server2 maldet(2346433): {update} latest version already installed. Dec 16 2023 03:43:37 server2 maldet(2346567): {sigup} performing signature update check... Dec 16 2023 03:43:37 server2 maldet(2346567): {sigup} local signature set is version 202312132952236 Dec 16 2023 03:43:37 server2 maldet(2346567): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Dec 16 2023 03:43:37 server2 maldet(2346567): {sigup} latest signature set already installed Dec 16 2023 03:43:37 server2 maldet(2346678): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Dec 16 2023 03:43:37 server2 maldet(2346678): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Dec 16 2023 03:43:37 server2 maldet(2346678): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Dec 16 2023 03:43:37 server2 maldet(2346678): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Dec 16 2023 03:43:37 server2 maldet(2346678): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Dec 16 2023 03:44:00 server2 maldet(2346678): {scan} file list completed in 23s, found 831 files... Dec 16 2023 03:44:00 server2 maldet(2346678): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Dec 16 2023 03:44:00 server2 maldet(2346678): {scan} scan of (831 files) in progress... Dec 16 2023 03:44:40 server2 maldet(2346678): {scan} scan completed on : files 831, malware hits 0, cleaned hits 0, time 63s Dec 16 2023 03:44:40 server2 maldet(2346678): {scan} scan report saved, to view run: maldet --report 231216-0343.2346678 Dec 17 2023 03:25:12 server2 maldet(2557870): {update} checking for available updates... Dec 17 2023 03:25:12 server2 maldet(2557870): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Dec 17 2023 03:25:12 server2 maldet(2557870): {update} hashing install files and checking against server... Dec 17 2023 03:25:12 server2 maldet(2557870): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Dec 17 2023 03:25:12 server2 maldet(2557870): {update} latest version already installed. Dec 17 2023 03:25:12 server2 maldet(2558003): {sigup} performing signature update check... Dec 17 2023 03:25:12 server2 maldet(2558003): {sigup} local signature set is version 202312132952236 Dec 17 2023 03:25:13 server2 maldet(2558003): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Dec 17 2023 03:25:13 server2 maldet(2558003): {sigup} new signature set 202312163771611 available Dec 17 2023 03:25:13 server2 maldet(2558003): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Dec 17 2023 03:25:13 server2 maldet(2558003): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Dec 17 2023 03:25:13 server2 maldet(2558003): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Dec 17 2023 03:25:13 server2 maldet(2558003): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Dec 17 2023 03:25:13 server2 maldet(2558003): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Dec 17 2023 03:25:13 server2 maldet(2558003): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Dec 17 2023 03:25:13 server2 maldet(2558003): {sigup} verified md5sum of maldet-sigpack.tgz Dec 17 2023 03:25:13 server2 maldet(2558003): {sigup} unpacked and installed maldet-sigpack.tgz Dec 17 2023 03:25:13 server2 maldet(2558003): {sigup} verified md5sum of maldet-clean.tgz Dec 17 2023 03:25:13 server2 maldet(2558003): {sigup} unpacked and installed maldet-clean.tgz Dec 17 2023 03:25:13 server2 maldet(2558003): {sigup} signature set update completed Dec 17 2023 03:25:13 server2 maldet(2558003): {sigup} 17637 signatures (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Dec 17 2023 03:25:13 server2 maldet(2558236): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Dec 17 2023 03:25:14 server2 maldet(2558236): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Dec 17 2023 03:25:14 server2 maldet(2558236): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Dec 17 2023 03:25:14 server2 maldet(2558236): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Dec 17 2023 03:25:14 server2 maldet(2558236): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Dec 17 2023 03:25:47 server2 maldet(2558236): {scan} file list completed in 33s, found 917 files... Dec 17 2023 03:25:47 server2 maldet(2558236): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Dec 17 2023 03:25:47 server2 maldet(2558236): {scan} scan of (917 files) in progress... Dec 17 2023 03:27:33 server2 maldet(2558236): {scan} scan completed on : files 917, malware hits 0, cleaned hits 0, time 140s Dec 17 2023 03:27:33 server2 maldet(2558236): {scan} scan report saved, to view run: maldet --report 231217-0325.2558236 Dec 18 2023 03:33:11 server2 maldet(2742581): {update} checking for available updates... Dec 18 2023 03:33:11 server2 maldet(2742581): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Dec 18 2023 03:33:11 server2 maldet(2742581): {update} hashing install files and checking against server... Dec 18 2023 03:33:11 server2 maldet(2742581): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Dec 18 2023 03:33:11 server2 maldet(2742581): {update} latest version already installed. Dec 18 2023 03:33:11 server2 maldet(2742714): {sigup} performing signature update check... Dec 18 2023 03:33:11 server2 maldet(2742714): {sigup} local signature set is version 202312163771611 Dec 18 2023 03:33:12 server2 maldet(2742714): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Dec 18 2023 03:33:12 server2 maldet(2742714): {sigup} latest signature set already installed Dec 18 2023 03:33:12 server2 maldet(2742825): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Dec 18 2023 03:33:12 server2 maldet(2742825): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Dec 18 2023 03:33:12 server2 maldet(2742825): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Dec 18 2023 03:33:12 server2 maldet(2742825): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Dec 18 2023 03:33:12 server2 maldet(2742825): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Dec 18 2023 03:33:32 server2 maldet(2742825): {scan} file list completed in 20s, found 1074 files... Dec 18 2023 03:33:32 server2 maldet(2742825): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Dec 18 2023 03:33:32 server2 maldet(2742825): {scan} scan of (1074 files) in progress... Dec 18 2023 03:34:38 server2 maldet(2742825): {scan} scan completed on : files 1074, malware hits 0, cleaned hits 0, time 86s Dec 18 2023 03:34:38 server2 maldet(2742825): {scan} scan report saved, to view run: maldet --report 231218-0333.2742825 Dec 19 2023 03:45:03 server2 maldet(2938389): {update} checking for available updates... Dec 19 2023 03:45:03 server2 maldet(2938389): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Dec 19 2023 03:45:03 server2 maldet(2938389): {update} hashing install files and checking against server... Dec 19 2023 03:45:03 server2 maldet(2938389): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Dec 19 2023 03:45:03 server2 maldet(2938389): {update} latest version already installed. Dec 19 2023 03:45:03 server2 maldet(2938535): {sigup} performing signature update check... Dec 19 2023 03:45:03 server2 maldet(2938535): {sigup} local signature set is version 202312163771611 Dec 19 2023 03:45:03 server2 maldet(2938535): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Dec 19 2023 03:45:03 server2 maldet(2938535): {sigup} latest signature set already installed Dec 19 2023 03:45:03 server2 maldet(2938653): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Dec 19 2023 03:45:04 server2 maldet(2938653): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Dec 19 2023 03:45:04 server2 maldet(2938653): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Dec 19 2023 03:45:04 server2 maldet(2938653): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Dec 19 2023 03:45:04 server2 maldet(2938653): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Dec 19 2023 03:45:32 server2 maldet(2938653): {scan} file list completed in 28s, found 2325 files... Dec 19 2023 03:45:32 server2 maldet(2938653): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Dec 19 2023 03:45:32 server2 maldet(2938653): {scan} scan of (2325 files) in progress... Dec 19 2023 03:46:54 server2 maldet(2938653): {scan} scan completed on : files 2325, malware hits 0, cleaned hits 0, time 111s Dec 19 2023 03:46:54 server2 maldet(2938653): {scan} scan report saved, to view run: maldet --report 231219-0345.2938653 Dec 20 2023 03:22:58 server2 maldet(3182799): {update} checking for available updates... Dec 20 2023 03:22:58 server2 maldet(3182799): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Dec 20 2023 03:22:58 server2 maldet(3182799): {update} hashing install files and checking against server... Dec 20 2023 03:22:58 server2 maldet(3182799): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Dec 20 2023 03:22:58 server2 maldet(3182799): {update} latest version already installed. Dec 20 2023 03:22:58 server2 maldet(3182932): {sigup} performing signature update check... Dec 20 2023 03:22:58 server2 maldet(3182932): {sigup} local signature set is version 202312163771611 Dec 20 2023 03:22:58 server2 maldet(3182932): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Dec 20 2023 03:22:58 server2 maldet(3182932): {sigup} new signature set 20231219386545 available Dec 20 2023 03:22:58 server2 maldet(3182932): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Dec 20 2023 03:22:59 server2 maldet(3182932): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Dec 20 2023 03:22:59 server2 maldet(3182932): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Dec 20 2023 03:22:59 server2 maldet(3182932): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Dec 20 2023 03:22:59 server2 maldet(3182932): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Dec 20 2023 03:22:59 server2 maldet(3182932): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Dec 20 2023 03:22:59 server2 maldet(3182932): {sigup} verified md5sum of maldet-sigpack.tgz Dec 20 2023 03:22:59 server2 maldet(3182932): {sigup} unpacked and installed maldet-sigpack.tgz Dec 20 2023 03:22:59 server2 maldet(3182932): {sigup} verified md5sum of maldet-clean.tgz Dec 20 2023 03:22:59 server2 maldet(3182932): {sigup} unpacked and installed maldet-clean.tgz Dec 20 2023 03:22:59 server2 maldet(3182932): {sigup} signature set update completed Dec 20 2023 03:22:59 server2 maldet(3182932): {sigup} 17637 signatures (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Dec 20 2023 03:22:59 server2 maldet(3183160): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Dec 20 2023 03:23:00 server2 maldet(3183160): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Dec 20 2023 03:23:00 server2 maldet(3183160): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Dec 20 2023 03:23:00 server2 maldet(3183160): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Dec 20 2023 03:23:00 server2 maldet(3183160): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Dec 20 2023 03:23:26 server2 maldet(3183160): {scan} file list completed in 26s, found 1074 files... Dec 20 2023 03:23:26 server2 maldet(3183160): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Dec 20 2023 03:23:26 server2 maldet(3183160): {scan} scan of (1074 files) in progress... Dec 20 2023 03:24:38 server2 maldet(3183160): {scan} scan completed on : files 1074, malware hits 0, cleaned hits 0, time 99s Dec 20 2023 03:24:38 server2 maldet(3183160): {scan} scan report saved, to view run: maldet --report 231220-0322.3183160 Dec 21 2023 03:11:38 server2 maldet(3379336): {update} checking for available updates... Dec 21 2023 03:11:38 server2 maldet(3379336): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Dec 21 2023 03:11:38 server2 maldet(3379336): {update} hashing install files and checking against server... Dec 21 2023 03:11:38 server2 maldet(3379336): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Dec 21 2023 03:11:38 server2 maldet(3379336): {update} latest version already installed. Dec 21 2023 03:11:38 server2 maldet(3379469): {sigup} performing signature update check... Dec 21 2023 03:11:38 server2 maldet(3379469): {sigup} local signature set is version 20231219386545 Dec 21 2023 03:11:38 server2 maldet(3379469): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Dec 21 2023 03:11:38 server2 maldet(3379469): {sigup} latest signature set already installed Dec 21 2023 03:11:38 server2 maldet(3379580): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Dec 21 2023 03:11:39 server2 maldet(3379580): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Dec 21 2023 03:11:39 server2 maldet(3379580): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Dec 21 2023 03:11:39 server2 maldet(3379580): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Dec 21 2023 03:11:39 server2 maldet(3379580): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Dec 21 2023 03:12:08 server2 maldet(3379580): {scan} file list completed in 29s, found 863 files... Dec 21 2023 03:12:08 server2 maldet(3379580): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Dec 21 2023 03:12:08 server2 maldet(3379580): {scan} scan of (863 files) in progress... Dec 21 2023 03:12:54 server2 maldet(3379580): {scan} scan completed on : files 863, malware hits 0, cleaned hits 0, time 76s Dec 21 2023 03:12:54 server2 maldet(3379580): {scan} scan report saved, to view run: maldet --report 231221-0311.3379580 Dec 22 2023 03:34:55 server2 maldet(3578907): {update} checking for available updates... Dec 22 2023 03:34:55 server2 maldet(3578907): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Dec 22 2023 03:34:55 server2 maldet(3578907): {update} hashing install files and checking against server... Dec 22 2023 03:34:55 server2 maldet(3578907): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Dec 22 2023 03:34:55 server2 maldet(3578907): {update} latest version already installed. Dec 22 2023 03:34:55 server2 maldet(3579040): {sigup} performing signature update check... Dec 22 2023 03:34:55 server2 maldet(3579040): {sigup} local signature set is version 20231219386545 Dec 22 2023 03:34:55 server2 maldet(3579040): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Dec 22 2023 03:34:55 server2 maldet(3579040): {sigup} new signature set 202312221073407 available Dec 22 2023 03:34:55 server2 maldet(3579040): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Dec 22 2023 03:34:55 server2 maldet(3579040): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Dec 22 2023 03:34:55 server2 maldet(3579040): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Dec 22 2023 03:34:55 server2 maldet(3579040): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Dec 22 2023 03:34:55 server2 maldet(3579040): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Dec 22 2023 03:34:56 server2 maldet(3579040): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Dec 22 2023 03:34:56 server2 maldet(3579040): {sigup} verified md5sum of maldet-sigpack.tgz Dec 22 2023 03:34:56 server2 maldet(3579040): {sigup} unpacked and installed maldet-sigpack.tgz Dec 22 2023 03:34:56 server2 maldet(3579040): {sigup} verified md5sum of maldet-clean.tgz Dec 22 2023 03:34:56 server2 maldet(3579040): {sigup} unpacked and installed maldet-clean.tgz Dec 22 2023 03:34:56 server2 maldet(3579040): {sigup} signature set update completed Dec 22 2023 03:34:56 server2 maldet(3579040): {sigup} 17637 signatures (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Dec 22 2023 03:34:56 server2 maldet(3579268): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Dec 22 2023 03:34:56 server2 maldet(3579268): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Dec 22 2023 03:34:56 server2 maldet(3579268): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Dec 22 2023 03:34:56 server2 maldet(3579268): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Dec 22 2023 03:34:56 server2 maldet(3579268): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Dec 22 2023 03:35:39 server2 maldet(3579268): {scan} file list completed in 43s, found 808 files... Dec 22 2023 03:35:39 server2 maldet(3579268): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Dec 22 2023 03:35:39 server2 maldet(3579268): {scan} scan of (808 files) in progress... Dec 22 2023 03:36:48 server2 maldet(3579268): {scan} scan completed on : files 808, malware hits 0, cleaned hits 0, time 112s Dec 22 2023 03:36:48 server2 maldet(3579268): {scan} scan report saved, to view run: maldet --report 231222-0334.3579268 Dec 23 2023 03:17:28 server2 maldet(3778258): {update} checking for available updates... Dec 23 2023 03:17:28 server2 maldet(3778258): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Dec 23 2023 03:17:28 server2 maldet(3778258): {update} hashing install files and checking against server... Dec 23 2023 03:17:28 server2 maldet(3778258): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Dec 23 2023 03:17:28 server2 maldet(3778258): {update} latest version already installed. Dec 23 2023 03:17:28 server2 maldet(3778391): {sigup} performing signature update check... Dec 23 2023 03:17:28 server2 maldet(3778391): {sigup} local signature set is version 202312221073407 Dec 23 2023 03:17:28 server2 maldet(3778391): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Dec 23 2023 03:17:29 server2 maldet(3778391): {sigup} latest signature set already installed Dec 23 2023 03:17:29 server2 maldet(3778502): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Dec 23 2023 03:17:29 server2 maldet(3778502): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Dec 23 2023 03:17:29 server2 maldet(3778502): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Dec 23 2023 03:17:29 server2 maldet(3778502): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Dec 23 2023 03:17:29 server2 maldet(3778502): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Dec 23 2023 03:17:55 server2 maldet(3778502): {scan} file list completed in 26s, found 15189 files... Dec 23 2023 03:17:55 server2 maldet(3778502): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Dec 23 2023 03:17:55 server2 maldet(3778502): {scan} scan of (15189 files) in progress... Dec 23 2023 03:23:36 server2 maldet(3778502): {scan} scan completed on : files 15189, malware hits 0, cleaned hits 0, time 367s Dec 23 2023 03:23:36 server2 maldet(3778502): {scan} scan report saved, to view run: maldet --report 231223-0317.3778502 Dec 24 2023 04:03:19 server2 maldet(3994388): {update} checking for available updates... Dec 24 2023 04:03:24 server2 maldet(3994388): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Dec 24 2023 04:03:24 server2 maldet(3994388): {update} hashing install files and checking against server... Dec 24 2023 04:03:24 server2 maldet(3994388): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Dec 24 2023 04:03:24 server2 maldet(3994388): {update} latest version already installed. Dec 24 2023 04:03:24 server2 maldet(3994522): {sigup} performing signature update check... Dec 24 2023 04:03:24 server2 maldet(3994522): {sigup} local signature set is version 202312221073407 Dec 24 2023 04:03:24 server2 maldet(3994522): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Dec 24 2023 04:03:24 server2 maldet(3994522): {sigup} latest signature set already installed Dec 24 2023 04:03:24 server2 maldet(3994633): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Dec 24 2023 04:03:25 server2 maldet(3994633): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Dec 24 2023 04:03:25 server2 maldet(3994633): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Dec 24 2023 04:03:26 server2 maldet(3994633): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Dec 24 2023 04:03:26 server2 maldet(3994633): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Dec 24 2023 04:03:45 server2 maldet(3994633): {scan} file list completed in 19s, found 1035 files... Dec 24 2023 04:03:45 server2 maldet(3994633): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Dec 24 2023 04:03:45 server2 maldet(3994633): {scan} scan of (1035 files) in progress... Dec 24 2023 04:04:51 server2 maldet(3994633): {scan} scan completed on : files 1035, malware hits 0, cleaned hits 0, time 87s Dec 24 2023 04:04:51 server2 maldet(3994633): {scan} scan report saved, to view run: maldet --report 231224-0403.3994633 Dec 25 2023 03:23:05 server2 maldet(4192187): {update} checking for available updates... Dec 25 2023 03:23:05 server2 maldet(4192187): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Dec 25 2023 03:23:05 server2 maldet(4192187): {update} hashing install files and checking against server... Dec 25 2023 03:23:06 server2 maldet(4192187): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Dec 25 2023 03:23:06 server2 maldet(4192187): {update} latest version already installed. Dec 25 2023 03:23:06 server2 maldet(4192320): {sigup} performing signature update check... Dec 25 2023 03:23:06 server2 maldet(4192320): {sigup} local signature set is version 202312221073407 Dec 25 2023 03:23:06 server2 maldet(4192320): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Dec 25 2023 03:23:06 server2 maldet(4192320): {sigup} latest signature set already installed Dec 25 2023 03:23:06 server2 maldet(4192431): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Dec 25 2023 03:23:06 server2 maldet(4192431): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Dec 25 2023 03:23:06 server2 maldet(4192431): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Dec 25 2023 03:23:06 server2 maldet(4192431): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Dec 25 2023 03:23:06 server2 maldet(4192431): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Dec 25 2023 03:23:30 server2 maldet(4192431): {scan} file list completed in 24s, found 864 files... Dec 25 2023 03:23:30 server2 maldet(4192431): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Dec 25 2023 03:23:30 server2 maldet(4192431): {scan} scan of (864 files) in progress... Dec 25 2023 03:24:13 server2 maldet(4192431): {scan} scan completed on : files 864, malware hits 0, cleaned hits 0, time 67s Dec 25 2023 03:24:13 server2 maldet(4192431): {scan} scan report saved, to view run: maldet --report 231225-0323.4192431 Dec 26 2023 03:27:48 server2 maldet(200412): {update} checking for available updates... Dec 26 2023 03:27:48 server2 maldet(200412): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Dec 26 2023 03:27:48 server2 maldet(200412): {update} hashing install files and checking against server... Dec 26 2023 03:27:48 server2 maldet(200412): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Dec 26 2023 03:27:48 server2 maldet(200412): {update} latest version already installed. Dec 26 2023 03:27:49 server2 maldet(200545): {sigup} performing signature update check... Dec 26 2023 03:27:49 server2 maldet(200545): {sigup} local signature set is version 202312221073407 Dec 26 2023 03:27:49 server2 maldet(200545): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Dec 26 2023 03:27:49 server2 maldet(200545): {sigup} new signature set 202312251847353 available Dec 26 2023 03:27:49 server2 maldet(200545): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Dec 26 2023 03:27:49 server2 maldet(200545): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Dec 26 2023 03:27:49 server2 maldet(200545): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Dec 26 2023 03:27:49 server2 maldet(200545): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Dec 26 2023 03:27:49 server2 maldet(200545): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Dec 26 2023 03:27:49 server2 maldet(200545): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Dec 26 2023 03:27:49 server2 maldet(200545): {sigup} verified md5sum of maldet-sigpack.tgz Dec 26 2023 03:27:50 server2 maldet(200545): {sigup} unpacked and installed maldet-sigpack.tgz Dec 26 2023 03:27:50 server2 maldet(200545): {sigup} verified md5sum of maldet-clean.tgz Dec 26 2023 03:27:50 server2 maldet(200545): {sigup} unpacked and installed maldet-clean.tgz Dec 26 2023 03:27:50 server2 maldet(200545): {sigup} signature set update completed Dec 26 2023 03:27:50 server2 maldet(200545): {sigup} 17637 signatures (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Dec 26 2023 03:27:50 server2 maldet(200773): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Dec 26 2023 03:27:51 server2 maldet(200773): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Dec 26 2023 03:27:51 server2 maldet(200773): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Dec 26 2023 03:27:51 server2 maldet(200773): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Dec 26 2023 03:27:51 server2 maldet(200773): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Dec 26 2023 03:28:28 server2 maldet(200773): {scan} file list completed in 37s, found 3620 files... Dec 26 2023 03:28:28 server2 maldet(200773): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Dec 26 2023 03:28:28 server2 maldet(200773): {scan} scan of (3620 files) in progress... Dec 26 2023 03:32:35 server2 maldet(200773): {scan} scan completed on : files 3620, malware hits 0, cleaned hits 0, time 285s Dec 26 2023 03:32:35 server2 maldet(200773): {scan} scan report saved, to view run: maldet --report 231226-0327.200773 Dec 27 2023 03:49:47 server2 maldet(398178): {update} checking for available updates... Dec 27 2023 03:49:47 server2 maldet(398178): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Dec 27 2023 03:49:47 server2 maldet(398178): {update} hashing install files and checking against server... Dec 27 2023 03:49:47 server2 maldet(398178): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Dec 27 2023 03:49:47 server2 maldet(398178): {update} latest version already installed. Dec 27 2023 03:49:48 server2 maldet(398312): {sigup} performing signature update check... Dec 27 2023 03:49:48 server2 maldet(398312): {sigup} local signature set is version 202312251847353 Dec 27 2023 03:49:48 server2 maldet(398312): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Dec 27 2023 03:49:48 server2 maldet(398312): {sigup} latest signature set already installed Dec 27 2023 03:49:48 server2 maldet(398426): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Dec 27 2023 03:49:49 server2 maldet(398426): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Dec 27 2023 03:49:49 server2 maldet(398426): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Dec 27 2023 03:49:49 server2 maldet(398426): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Dec 27 2023 03:49:49 server2 maldet(398426): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Dec 27 2023 03:50:25 server2 maldet(398426): {scan} file list completed in 36s, found 1177 files... Dec 27 2023 03:50:25 server2 maldet(398426): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Dec 27 2023 03:50:25 server2 maldet(398426): {scan} scan of (1177 files) in progress... Dec 27 2023 03:51:53 server2 maldet(398426): {scan} scan completed on : files 1177, malware hits 0, cleaned hits 0, time 125s Dec 27 2023 03:51:53 server2 maldet(398426): {scan} scan report saved, to view run: maldet --report 231227-0349.398426 Dec 28 2023 03:51:29 server2 maldet(628094): {update} checking for available updates... Dec 28 2023 03:51:29 server2 maldet(628094): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Dec 28 2023 03:51:29 server2 maldet(628094): {update} hashing install files and checking against server... Dec 28 2023 03:51:29 server2 maldet(628094): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Dec 28 2023 03:51:29 server2 maldet(628094): {update} latest version already installed. Dec 28 2023 03:51:29 server2 maldet(628228): {sigup} performing signature update check... Dec 28 2023 03:51:29 server2 maldet(628228): {sigup} local signature set is version 202312251847353 Dec 28 2023 03:51:30 server2 maldet(628228): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Dec 28 2023 03:51:30 server2 maldet(628228): {sigup} latest signature set already installed Dec 28 2023 03:51:30 server2 maldet(628339): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Dec 28 2023 03:51:30 server2 maldet(628339): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Dec 28 2023 03:51:30 server2 maldet(628339): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Dec 28 2023 03:51:30 server2 maldet(628339): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Dec 28 2023 03:51:30 server2 maldet(628339): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Dec 28 2023 03:51:54 server2 maldet(628339): {scan} file list completed in 24s, found 916 files... Dec 28 2023 03:51:54 server2 maldet(628339): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Dec 28 2023 03:51:54 server2 maldet(628339): {scan} scan of (916 files) in progress... Dec 28 2023 03:52:48 server2 maldet(628339): {scan} scan completed on : files 916, malware hits 0, cleaned hits 0, time 78s Dec 28 2023 03:52:48 server2 maldet(628339): {scan} scan report saved, to view run: maldet --report 231228-0351.628339 Dec 29 2023 03:54:31 server2 maldet(826689): {update} checking for available updates... Dec 29 2023 03:54:31 server2 maldet(826689): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Dec 29 2023 03:54:31 server2 maldet(826689): {update} hashing install files and checking against server... Dec 29 2023 03:54:32 server2 maldet(826689): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Dec 29 2023 03:54:32 server2 maldet(826689): {update} latest version already installed. Dec 29 2023 03:54:32 server2 maldet(826822): {sigup} performing signature update check... Dec 29 2023 03:54:32 server2 maldet(826822): {sigup} local signature set is version 202312251847353 Dec 29 2023 03:54:32 server2 maldet(826822): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Dec 29 2023 03:54:32 server2 maldet(826822): {sigup} new signature set 20231228581253 available Dec 29 2023 03:54:32 server2 maldet(826822): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Dec 29 2023 03:54:32 server2 maldet(826822): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Dec 29 2023 03:54:32 server2 maldet(826822): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Dec 29 2023 03:54:32 server2 maldet(826822): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Dec 29 2023 03:54:32 server2 maldet(826822): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Dec 29 2023 03:54:32 server2 maldet(826822): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Dec 29 2023 03:54:32 server2 maldet(826822): {sigup} verified md5sum of maldet-sigpack.tgz Dec 29 2023 03:54:32 server2 maldet(826822): {sigup} unpacked and installed maldet-sigpack.tgz Dec 29 2023 03:54:32 server2 maldet(826822): {sigup} verified md5sum of maldet-clean.tgz Dec 29 2023 03:54:32 server2 maldet(826822): {sigup} unpacked and installed maldet-clean.tgz Dec 29 2023 03:54:32 server2 maldet(826822): {sigup} signature set update completed Dec 29 2023 03:54:32 server2 maldet(826822): {sigup} 17637 signatures (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Dec 29 2023 03:54:33 server2 maldet(827050): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Dec 29 2023 03:54:33 server2 maldet(827050): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Dec 29 2023 03:54:33 server2 maldet(827050): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Dec 29 2023 03:54:33 server2 maldet(827050): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Dec 29 2023 03:54:33 server2 maldet(827050): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Dec 29 2023 03:55:01 server2 maldet(827050): {scan} file list completed in 28s, found 1010 files... Dec 29 2023 03:55:01 server2 maldet(827050): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Dec 29 2023 03:55:01 server2 maldet(827050): {scan} scan of (1010 files) in progress... Dec 29 2023 03:56:04 server2 maldet(827050): {scan} scan completed on : files 1010, malware hits 0, cleaned hits 0, time 90s Dec 29 2023 03:56:04 server2 maldet(827050): {scan} scan report saved, to view run: maldet --report 231229-0354.827050 Dec 30 2023 03:53:04 server2 maldet(1023226): {update} checking for available updates... Dec 30 2023 03:53:04 server2 maldet(1023226): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Dec 30 2023 03:53:04 server2 maldet(1023226): {update} hashing install files and checking against server... Dec 30 2023 03:53:04 server2 maldet(1023226): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Dec 30 2023 03:53:04 server2 maldet(1023226): {update} latest version already installed. Dec 30 2023 03:53:04 server2 maldet(1023364): {sigup} performing signature update check... Dec 30 2023 03:53:04 server2 maldet(1023364): {sigup} local signature set is version 20231228581253 Dec 30 2023 03:53:04 server2 maldet(1023364): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Dec 30 2023 03:53:04 server2 maldet(1023364): {sigup} latest signature set already installed Dec 30 2023 03:53:04 server2 maldet(1023475): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Dec 30 2023 03:53:05 server2 maldet(1023475): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Dec 30 2023 03:53:05 server2 maldet(1023475): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Dec 30 2023 03:53:05 server2 maldet(1023475): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Dec 30 2023 03:53:05 server2 maldet(1023475): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Dec 30 2023 03:53:31 server2 maldet(1023475): {scan} file list completed in 26s, found 2720 files... Dec 30 2023 03:53:31 server2 maldet(1023475): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Dec 30 2023 03:53:31 server2 maldet(1023475): {scan} scan of (2720 files) in progress... Dec 30 2023 03:56:31 server2 maldet(1023475): {scan} scan completed on : files 2720, malware hits 0, cleaned hits 0, time 207s Dec 30 2023 03:56:31 server2 maldet(1023475): {scan} scan report saved, to view run: maldet --report 231230-0353.1023475 Dec 30 2023 14:27:14 server2 maldet(1246): {mon} could not find inotifywait command, install yum package inotify-tools or download from https://github.com/rvoicilas/inotify-tools/wiki/ Dec 31 2023 03:36:43 server2 maldet(167016): {update} checking for available updates... Dec 31 2023 03:36:43 server2 maldet(167016): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Dec 31 2023 03:36:44 server2 maldet(167016): {update} hashing install files and checking against server... Dec 31 2023 03:36:44 server2 maldet(167016): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Dec 31 2023 03:36:44 server2 maldet(167016): {update} latest version already installed. Dec 31 2023 03:36:44 server2 maldet(167150): {sigup} performing signature update check... Dec 31 2023 03:36:44 server2 maldet(167150): {sigup} local signature set is version 20231228581253 Dec 31 2023 03:36:44 server2 maldet(167150): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Dec 31 2023 03:36:44 server2 maldet(167150): {sigup} new signature set 202312311265487 available Dec 31 2023 03:36:44 server2 maldet(167150): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Dec 31 2023 03:36:44 server2 maldet(167150): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Dec 31 2023 03:36:44 server2 maldet(167150): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Dec 31 2023 03:36:44 server2 maldet(167150): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Dec 31 2023 03:36:44 server2 maldet(167150): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Dec 31 2023 03:36:44 server2 maldet(167150): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Dec 31 2023 03:36:44 server2 maldet(167150): {sigup} verified md5sum of maldet-sigpack.tgz Dec 31 2023 03:36:44 server2 maldet(167150): {sigup} unpacked and installed maldet-sigpack.tgz Dec 31 2023 03:36:44 server2 maldet(167150): {sigup} verified md5sum of maldet-clean.tgz Dec 31 2023 03:36:44 server2 maldet(167150): {sigup} unpacked and installed maldet-clean.tgz Dec 31 2023 03:36:44 server2 maldet(167150): {sigup} signature set update completed Dec 31 2023 03:36:44 server2 maldet(167150): {sigup} 17637 signatures (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Dec 31 2023 03:36:44 server2 maldet(167378): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Dec 31 2023 03:36:46 server2 maldet(167378): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Dec 31 2023 03:36:46 server2 maldet(167378): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Dec 31 2023 03:36:46 server2 maldet(167378): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Dec 31 2023 03:36:46 server2 maldet(167378): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Dec 31 2023 03:37:08 server2 maldet(167378): {scan} file list completed in 22s, found 1516 files... Dec 31 2023 03:37:08 server2 maldet(167378): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Dec 31 2023 03:37:08 server2 maldet(167378): {scan} scan of (1516 files) in progress... Dec 31 2023 03:38:39 server2 maldet(167378): {scan} scan completed on : files 1516, malware hits 0, cleaned hits 0, time 115s Dec 31 2023 03:38:39 server2 maldet(167378): {scan} scan report saved, to view run: maldet --report 231231-0336.167378 Jan 01 2024 03:51:40 server2 maldet(378044): {update} checking for available updates... Jan 01 2024 03:51:40 server2 maldet(378044): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Jan 01 2024 03:51:40 server2 maldet(378044): {update} hashing install files and checking against server... Jan 01 2024 03:51:40 server2 maldet(378044): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Jan 01 2024 03:51:40 server2 maldet(378044): {update} latest version already installed. Jan 01 2024 03:51:41 server2 maldet(378177): {sigup} performing signature update check... Jan 01 2024 03:51:41 server2 maldet(378177): {sigup} local signature set is version 202312311265487 Jan 01 2024 03:51:41 server2 maldet(378177): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Jan 01 2024 03:51:41 server2 maldet(378177): {sigup} latest signature set already installed Jan 01 2024 03:51:41 server2 maldet(378288): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Jan 01 2024 03:51:41 server2 maldet(378288): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Jan 01 2024 03:51:41 server2 maldet(378288): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Jan 01 2024 03:51:41 server2 maldet(378288): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Jan 01 2024 03:51:41 server2 maldet(378288): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Jan 01 2024 03:52:04 server2 maldet(378288): {scan} file list completed in 23s, found 3243 files... Jan 01 2024 03:52:04 server2 maldet(378288): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Jan 01 2024 03:52:04 server2 maldet(378288): {scan} scan of (3243 files) in progress... Jan 01 2024 03:54:50 server2 maldet(378288): {scan} scan completed on : files 3243, malware hits 0, cleaned hits 0, time 189s Jan 01 2024 03:54:50 server2 maldet(378288): {scan} scan report saved, to view run: maldet --report 240101-0351.378288 Jan 02 2024 03:45:27 server2 maldet(590733): {update} checking for available updates... Jan 02 2024 03:45:27 server2 maldet(590733): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Jan 02 2024 03:45:27 server2 maldet(590733): {update} hashing install files and checking against server... Jan 02 2024 03:45:27 server2 maldet(590733): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Jan 02 2024 03:45:27 server2 maldet(590733): {update} latest version already installed. Jan 02 2024 03:45:27 server2 maldet(590866): {sigup} performing signature update check... Jan 02 2024 03:45:27 server2 maldet(590866): {sigup} local signature set is version 202312311265487 Jan 02 2024 03:45:28 server2 maldet(590866): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Jan 02 2024 03:45:28 server2 maldet(590866): {sigup} new signature set 202401011982402 available Jan 02 2024 03:45:28 server2 maldet(590866): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Jan 02 2024 03:45:28 server2 maldet(590866): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Jan 02 2024 03:45:28 server2 maldet(590866): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Jan 02 2024 03:45:28 server2 maldet(590866): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Jan 02 2024 03:45:28 server2 maldet(590866): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Jan 02 2024 03:45:28 server2 maldet(590866): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Jan 02 2024 03:45:28 server2 maldet(590866): {sigup} verified md5sum of maldet-sigpack.tgz Jan 02 2024 03:45:28 server2 maldet(590866): {sigup} unpacked and installed maldet-sigpack.tgz Jan 02 2024 03:45:28 server2 maldet(590866): {sigup} verified md5sum of maldet-clean.tgz Jan 02 2024 03:45:28 server2 maldet(590866): {sigup} unpacked and installed maldet-clean.tgz Jan 02 2024 03:45:28 server2 maldet(590866): {sigup} signature set update completed Jan 02 2024 03:45:28 server2 maldet(590866): {sigup} 17637 signatures (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Jan 02 2024 03:45:28 server2 maldet(591094): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Jan 02 2024 03:45:29 server2 maldet(591094): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Jan 02 2024 03:45:29 server2 maldet(591094): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Jan 02 2024 03:45:29 server2 maldet(591094): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Jan 02 2024 03:45:29 server2 maldet(591094): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Jan 02 2024 03:45:54 server2 maldet(591094): {scan} file list completed in 25s, found 9506 files... Jan 02 2024 03:45:54 server2 maldet(591094): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Jan 02 2024 03:45:54 server2 maldet(591094): {scan} scan of (9506 files) in progress... Jan 02 2024 03:50:41 server2 maldet(591094): {scan} scan completed on : files 9506, malware hits 0, cleaned hits 0, time 313s Jan 02 2024 03:50:41 server2 maldet(591094): {scan} scan report saved, to view run: maldet --report 240102-0345.591094 Jan 03 2024 03:46:40 server2 maldet(798150): {update} checking for available updates... Jan 03 2024 03:46:40 server2 maldet(798150): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Jan 03 2024 03:46:40 server2 maldet(798150): {update} hashing install files and checking against server... Jan 03 2024 03:46:40 server2 maldet(798150): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Jan 03 2024 03:46:40 server2 maldet(798150): {update} latest version already installed. Jan 03 2024 03:46:40 server2 maldet(798283): {sigup} performing signature update check... Jan 03 2024 03:46:40 server2 maldet(798283): {sigup} local signature set is version 202401011982402 Jan 03 2024 03:46:40 server2 maldet(798283): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Jan 03 2024 03:46:40 server2 maldet(798283): {sigup} latest signature set already installed Jan 03 2024 03:46:40 server2 maldet(798394): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Jan 03 2024 03:46:40 server2 maldet(798394): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Jan 03 2024 03:46:40 server2 maldet(798394): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Jan 03 2024 03:46:40 server2 maldet(798394): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Jan 03 2024 03:46:40 server2 maldet(798394): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Jan 03 2024 03:46:58 server2 maldet(798394): {scan} file list completed in 18s, found 2778 files... Jan 03 2024 03:46:58 server2 maldet(798394): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Jan 03 2024 03:46:58 server2 maldet(798394): {scan} scan of (2778 files) in progress... Jan 03 2024 03:49:24 server2 maldet(798394): {scan} scan completed on : files 2778, malware hits 0, cleaned hits 0, time 163s Jan 03 2024 03:49:24 server2 maldet(798394): {scan} scan report saved, to view run: maldet --report 240103-0346.798394 Jan 04 2024 03:54:10 server2 maldet(1014035): {update} checking for available updates... Jan 04 2024 03:54:11 server2 maldet(1014035): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Jan 04 2024 03:54:11 server2 maldet(1014035): {update} hashing install files and checking against server... Jan 04 2024 03:54:11 server2 maldet(1014035): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Jan 04 2024 03:54:11 server2 maldet(1014035): {update} latest version already installed. Jan 04 2024 03:54:11 server2 maldet(1014169): {sigup} performing signature update check... Jan 04 2024 03:54:11 server2 maldet(1014169): {sigup} local signature set is version 202401011982402 Jan 04 2024 03:54:11 server2 maldet(1014169): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Jan 04 2024 03:54:11 server2 maldet(1014169): {sigup} latest signature set already installed Jan 04 2024 03:54:11 server2 maldet(1014280): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Jan 04 2024 03:54:11 server2 maldet(1014280): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Jan 04 2024 03:54:11 server2 maldet(1014280): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Jan 04 2024 03:54:11 server2 maldet(1014280): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Jan 04 2024 03:54:11 server2 maldet(1014280): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Jan 04 2024 03:54:41 server2 maldet(1014280): {scan} file list completed in 30s, found 1137 files... Jan 04 2024 03:54:41 server2 maldet(1014280): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Jan 04 2024 03:54:41 server2 maldet(1014280): {scan} scan of (1137 files) in progress... Jan 04 2024 03:55:40 server2 maldet(1014280): {scan} scan completed on : files 1137, malware hits 0, cleaned hits 0, time 89s Jan 04 2024 03:55:40 server2 maldet(1014280): {scan} scan report saved, to view run: maldet --report 240104-0354.1014280 Jan 05 2024 03:11:20 server2 maldet(1291797): {update} checking for available updates... Jan 05 2024 03:11:21 server2 maldet(1291797): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Jan 05 2024 03:11:21 server2 maldet(1291797): {update} hashing install files and checking against server... Jan 05 2024 03:11:21 server2 maldet(1291797): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Jan 05 2024 03:11:21 server2 maldet(1291797): {update} latest version already installed. Jan 05 2024 03:11:21 server2 maldet(1291930): {sigup} performing signature update check... Jan 05 2024 03:11:21 server2 maldet(1291930): {sigup} local signature set is version 202401011982402 Jan 05 2024 03:11:21 server2 maldet(1291930): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Jan 05 2024 03:11:21 server2 maldet(1291930): {sigup} new signature set 20240104550923 available Jan 05 2024 03:11:21 server2 maldet(1291930): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Jan 05 2024 03:11:21 server2 maldet(1291930): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Jan 05 2024 03:11:21 server2 maldet(1291930): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Jan 05 2024 03:11:21 server2 maldet(1291930): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Jan 05 2024 03:11:21 server2 maldet(1291930): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Jan 05 2024 03:11:21 server2 maldet(1291930): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Jan 05 2024 03:11:21 server2 maldet(1291930): {sigup} verified md5sum of maldet-sigpack.tgz Jan 05 2024 03:11:21 server2 maldet(1291930): {sigup} unpacked and installed maldet-sigpack.tgz Jan 05 2024 03:11:22 server2 maldet(1291930): {sigup} verified md5sum of maldet-clean.tgz Jan 05 2024 03:11:22 server2 maldet(1291930): {sigup} unpacked and installed maldet-clean.tgz Jan 05 2024 03:11:22 server2 maldet(1291930): {sigup} signature set update completed Jan 05 2024 03:11:22 server2 maldet(1291930): {sigup} 17637 signatures (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Jan 05 2024 03:11:22 server2 maldet(1292158): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Jan 05 2024 03:11:22 server2 maldet(1292158): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Jan 05 2024 03:11:22 server2 maldet(1292158): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Jan 05 2024 03:11:22 server2 maldet(1292158): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Jan 05 2024 03:11:22 server2 maldet(1292158): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Jan 05 2024 03:11:57 server2 maldet(1292158): {scan} file list completed in 35s, found 1059 files... Jan 05 2024 03:11:57 server2 maldet(1292158): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Jan 05 2024 03:11:57 server2 maldet(1292158): {scan} scan of (1059 files) in progress... Jan 05 2024 03:13:04 server2 maldet(1292158): {scan} scan completed on : files 1059, malware hits 0, cleaned hits 0, time 102s Jan 05 2024 03:13:04 server2 maldet(1292158): {scan} scan report saved, to view run: maldet --report 240105-0311.1292158 Jan 06 2024 03:51:24 server2 maldet(1532928): {update} checking for available updates... Jan 06 2024 03:51:24 server2 maldet(1532928): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Jan 06 2024 03:51:24 server2 maldet(1532928): {update} hashing install files and checking against server... Jan 06 2024 03:51:24 server2 maldet(1532928): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Jan 06 2024 03:51:24 server2 maldet(1532928): {update} latest version already installed. Jan 06 2024 03:51:24 server2 maldet(1533061): {sigup} performing signature update check... Jan 06 2024 03:51:24 server2 maldet(1533061): {sigup} local signature set is version 20240104550923 Jan 06 2024 03:51:24 server2 maldet(1533061): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Jan 06 2024 03:51:24 server2 maldet(1533061): {sigup} latest signature set already installed Jan 06 2024 03:51:25 server2 maldet(1533172): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Jan 06 2024 03:51:25 server2 maldet(1533172): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Jan 06 2024 03:51:25 server2 maldet(1533172): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Jan 06 2024 03:51:25 server2 maldet(1533172): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Jan 06 2024 03:51:25 server2 maldet(1533172): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Jan 06 2024 03:51:54 server2 maldet(1533172): {scan} file list completed in 29s, found 1313 files... Jan 06 2024 03:51:54 server2 maldet(1533172): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Jan 06 2024 03:51:54 server2 maldet(1533172): {scan} scan of (1313 files) in progress... Jan 06 2024 03:53:04 server2 maldet(1533172): {scan} scan completed on : files 1313, malware hits 0, cleaned hits 0, time 99s Jan 06 2024 03:53:04 server2 maldet(1533172): {scan} scan report saved, to view run: maldet --report 240106-0351.1533172 Jan 07 2024 03:08:47 server2 maldet(1765541): {update} checking for available updates... Jan 07 2024 03:08:48 server2 maldet(1765541): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Jan 07 2024 03:08:48 server2 maldet(1765541): {update} hashing install files and checking against server... Jan 07 2024 03:08:48 server2 maldet(1765541): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Jan 07 2024 03:08:48 server2 maldet(1765541): {update} latest version already installed. Jan 07 2024 03:08:48 server2 maldet(1765674): {sigup} performing signature update check... Jan 07 2024 03:08:48 server2 maldet(1765674): {sigup} local signature set is version 20240104550923 Jan 07 2024 03:08:48 server2 maldet(1765674): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Jan 07 2024 03:08:48 server2 maldet(1765674): {sigup} latest signature set already installed Jan 07 2024 03:08:48 server2 maldet(1765785): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Jan 07 2024 03:08:50 server2 maldet(1765785): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Jan 07 2024 03:08:50 server2 maldet(1765785): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Jan 07 2024 03:08:50 server2 maldet(1765785): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Jan 07 2024 03:08:50 server2 maldet(1765785): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Jan 07 2024 03:09:11 server2 maldet(1765785): {scan} file list completed in 21s, found 1799 files... Jan 07 2024 03:09:11 server2 maldet(1765785): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Jan 07 2024 03:09:11 server2 maldet(1765785): {scan} scan of (1799 files) in progress... Jan 07 2024 03:11:07 server2 maldet(1765785): {scan} scan completed on : files 1799, malware hits 0, cleaned hits 0, time 139s Jan 07 2024 03:11:07 server2 maldet(1765785): {scan} scan report saved, to view run: maldet --report 240107-0308.1765785 Jan 08 2024 03:27:00 server2 maldet(1988717): {update} checking for available updates... Jan 08 2024 03:27:01 server2 maldet(1988717): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Jan 08 2024 03:27:01 server2 maldet(1988717): {update} hashing install files and checking against server... Jan 08 2024 03:27:01 server2 maldet(1988717): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Jan 08 2024 03:27:01 server2 maldet(1988717): {update} latest version already installed. Jan 08 2024 03:27:01 server2 maldet(1988852): {sigup} performing signature update check... Jan 08 2024 03:27:01 server2 maldet(1988852): {sigup} local signature set is version 20240104550923 Jan 08 2024 03:27:01 server2 maldet(1988852): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Jan 08 2024 03:27:01 server2 maldet(1988852): {sigup} new signature set 202401071304692 available Jan 08 2024 03:27:01 server2 maldet(1988852): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Jan 08 2024 03:27:01 server2 maldet(1988852): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Jan 08 2024 03:27:01 server2 maldet(1988852): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Jan 08 2024 03:27:01 server2 maldet(1988852): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Jan 08 2024 03:27:01 server2 maldet(1988852): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Jan 08 2024 03:27:01 server2 maldet(1988852): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Jan 08 2024 03:27:01 server2 maldet(1988852): {sigup} verified md5sum of maldet-sigpack.tgz Jan 08 2024 03:27:02 server2 maldet(1988852): {sigup} unpacked and installed maldet-sigpack.tgz Jan 08 2024 03:27:02 server2 maldet(1988852): {sigup} verified md5sum of maldet-clean.tgz Jan 08 2024 03:27:02 server2 maldet(1988852): {sigup} unpacked and installed maldet-clean.tgz Jan 08 2024 03:27:02 server2 maldet(1988852): {sigup} signature set update completed Jan 08 2024 03:27:02 server2 maldet(1988852): {sigup} 17637 signatures (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Jan 08 2024 03:27:02 server2 maldet(1989135): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Jan 08 2024 03:27:02 server2 maldet(1989135): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Jan 08 2024 03:27:02 server2 maldet(1989135): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Jan 08 2024 03:27:02 server2 maldet(1989135): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Jan 08 2024 03:27:02 server2 maldet(1989135): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Jan 08 2024 03:27:32 server2 maldet(1989135): {scan} file list completed in 30s, found 1369 files... Jan 08 2024 03:27:32 server2 maldet(1989135): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Jan 08 2024 03:27:32 server2 maldet(1989135): {scan} scan of (1369 files) in progress... Jan 08 2024 03:28:57 server2 maldet(1989135): {scan} scan completed on : files 1369, malware hits 0, cleaned hits 0, time 115s Jan 08 2024 03:28:57 server2 maldet(1989135): {scan} scan report saved, to view run: maldet --report 240108-0327.1989135 Jan 09 2024 03:44:29 server2 maldet(2233656): {update} checking for available updates... Jan 09 2024 03:44:29 server2 maldet(2233656): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Jan 09 2024 03:44:30 server2 maldet(2233656): {update} hashing install files and checking against server... Jan 09 2024 03:44:30 server2 maldet(2233656): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Jan 09 2024 03:44:30 server2 maldet(2233656): {update} latest version already installed. Jan 09 2024 03:44:30 server2 maldet(2233789): {sigup} performing signature update check... Jan 09 2024 03:44:30 server2 maldet(2233789): {sigup} local signature set is version 202401071304692 Jan 09 2024 03:44:30 server2 maldet(2233789): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Jan 09 2024 03:44:30 server2 maldet(2233789): {sigup} latest signature set already installed Jan 09 2024 03:44:30 server2 maldet(2233900): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Jan 09 2024 03:44:30 server2 maldet(2233900): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Jan 09 2024 03:44:30 server2 maldet(2233900): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Jan 09 2024 03:44:30 server2 maldet(2233900): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Jan 09 2024 03:44:30 server2 maldet(2233900): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Jan 09 2024 03:44:57 server2 maldet(2233900): {scan} file list completed in 27s, found 1438 files... Jan 09 2024 03:44:57 server2 maldet(2233900): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Jan 09 2024 03:44:57 server2 maldet(2233900): {scan} scan of (1438 files) in progress... Jan 09 2024 03:45:50 server2 maldet(2233900): {scan} scan completed on : files 1438, malware hits 0, cleaned hits 0, time 80s Jan 09 2024 03:45:50 server2 maldet(2233900): {scan} scan report saved, to view run: maldet --report 240109-0344.2233900 Jan 10 2024 03:28:09 server2 maldet(2455138): {update} checking for available updates... Jan 10 2024 03:28:09 server2 maldet(2455138): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Jan 10 2024 03:28:09 server2 maldet(2455138): {update} hashing install files and checking against server... Jan 10 2024 03:28:10 server2 maldet(2455138): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Jan 10 2024 03:28:10 server2 maldet(2455138): {update} latest version already installed. Jan 10 2024 03:28:10 server2 maldet(2455271): {sigup} performing signature update check... Jan 10 2024 03:28:10 server2 maldet(2455271): {sigup} local signature set is version 202401071304692 Jan 10 2024 03:28:10 server2 maldet(2455271): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Jan 10 2024 03:28:10 server2 maldet(2455271): {sigup} new signature set 20240110509839 available Jan 10 2024 03:28:10 server2 maldet(2455271): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Jan 10 2024 03:28:10 server2 maldet(2455271): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Jan 10 2024 03:28:10 server2 maldet(2455271): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Jan 10 2024 03:28:10 server2 maldet(2455271): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Jan 10 2024 03:28:10 server2 maldet(2455271): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Jan 10 2024 03:28:10 server2 maldet(2455271): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Jan 10 2024 03:28:10 server2 maldet(2455271): {sigup} verified md5sum of maldet-sigpack.tgz Jan 10 2024 03:28:10 server2 maldet(2455271): {sigup} unpacked and installed maldet-sigpack.tgz Jan 10 2024 03:28:10 server2 maldet(2455271): {sigup} verified md5sum of maldet-clean.tgz Jan 10 2024 03:28:10 server2 maldet(2455271): {sigup} unpacked and installed maldet-clean.tgz Jan 10 2024 03:28:10 server2 maldet(2455271): {sigup} signature set update completed Jan 10 2024 03:28:10 server2 maldet(2455271): {sigup} 17637 signatures (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Jan 10 2024 03:28:10 server2 maldet(2455499): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Jan 10 2024 03:28:11 server2 maldet(2455499): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Jan 10 2024 03:28:11 server2 maldet(2455499): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Jan 10 2024 03:28:11 server2 maldet(2455499): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Jan 10 2024 03:28:11 server2 maldet(2455499): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Jan 10 2024 03:28:36 server2 maldet(2455499): {scan} file list completed in 25s, found 1429 files... Jan 10 2024 03:28:36 server2 maldet(2455499): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Jan 10 2024 03:28:36 server2 maldet(2455499): {scan} scan of (1429 files) in progress... Jan 10 2024 03:29:41 server2 maldet(2455499): {scan} scan completed on : files 1429, malware hits 0, cleaned hits 0, time 91s Jan 10 2024 03:29:41 server2 maldet(2455499): {scan} scan report saved, to view run: maldet --report 240110-0328.2455499 Jan 11 2024 03:53:13 server2 maldet(2681603): {update} checking for available updates... Jan 11 2024 03:53:13 server2 maldet(2681603): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Jan 11 2024 03:53:13 server2 maldet(2681603): {update} hashing install files and checking against server... Jan 11 2024 03:53:13 server2 maldet(2681603): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Jan 11 2024 03:53:13 server2 maldet(2681603): {update} latest version already installed. Jan 11 2024 03:53:14 server2 maldet(2681743): {sigup} performing signature update check... Jan 11 2024 03:53:14 server2 maldet(2681743): {sigup} local signature set is version 20240110509839 Jan 11 2024 03:53:14 server2 maldet(2681743): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Jan 11 2024 03:53:14 server2 maldet(2681743): {sigup} latest signature set already installed Jan 11 2024 03:53:14 server2 maldet(2681854): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Jan 11 2024 03:53:14 server2 maldet(2681854): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Jan 11 2024 03:53:14 server2 maldet(2681854): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Jan 11 2024 03:53:14 server2 maldet(2681854): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Jan 11 2024 03:53:14 server2 maldet(2681854): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Jan 11 2024 03:53:36 server2 maldet(2681854): {scan} file list completed in 22s, found 1254 files... Jan 11 2024 03:53:36 server2 maldet(2681854): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Jan 11 2024 03:53:36 server2 maldet(2681854): {scan} scan of (1254 files) in progress... Jan 11 2024 03:54:35 server2 maldet(2681854): {scan} scan completed on : files 1254, malware hits 0, cleaned hits 0, time 81s Jan 11 2024 03:54:35 server2 maldet(2681854): {scan} scan report saved, to view run: maldet --report 240111-0353.2681854 Jan 12 2024 03:29:50 server2 maldet(2899606): {update} checking for available updates... Jan 12 2024 03:29:50 server2 maldet(2899606): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Jan 12 2024 03:29:50 server2 maldet(2899606): {update} hashing install files and checking against server... Jan 12 2024 03:29:50 server2 maldet(2899606): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Jan 12 2024 03:29:50 server2 maldet(2899606): {update} latest version already installed. Jan 12 2024 03:29:50 server2 maldet(2899739): {sigup} performing signature update check... Jan 12 2024 03:29:50 server2 maldet(2899739): {sigup} local signature set is version 20240110509839 Jan 12 2024 03:29:51 server2 maldet(2899739): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Jan 12 2024 03:29:51 server2 maldet(2899739): {sigup} latest signature set already installed Jan 12 2024 03:29:51 server2 maldet(2899853): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Jan 12 2024 03:29:51 server2 maldet(2899853): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Jan 12 2024 03:29:51 server2 maldet(2899853): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Jan 12 2024 03:29:51 server2 maldet(2899853): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Jan 12 2024 03:29:51 server2 maldet(2899853): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Jan 12 2024 03:30:30 server2 maldet(2899853): {scan} file list completed in 39s, found 1461 files... Jan 12 2024 03:30:30 server2 maldet(2899853): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Jan 12 2024 03:30:30 server2 maldet(2899853): {scan} scan of (1461 files) in progress... Jan 12 2024 03:31:51 server2 maldet(2899853): {scan} scan completed on : files 1461, malware hits 0, cleaned hits 0, time 120s Jan 12 2024 03:31:51 server2 maldet(2899853): {scan} scan report saved, to view run: maldet --report 240112-0329.2899853 Jan 13 2024 03:42:17 server2 maldet(3115489): {update} checking for available updates... Jan 13 2024 03:42:17 server2 maldet(3115489): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Jan 13 2024 03:42:17 server2 maldet(3115489): {update} hashing install files and checking against server... Jan 13 2024 03:42:17 server2 maldet(3115489): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Jan 13 2024 03:42:17 server2 maldet(3115489): {update} latest version already installed. Jan 13 2024 03:42:17 server2 maldet(3115622): {sigup} performing signature update check... Jan 13 2024 03:42:17 server2 maldet(3115622): {sigup} local signature set is version 20240110509839 Jan 13 2024 03:42:17 server2 maldet(3115622): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Jan 13 2024 03:42:17 server2 maldet(3115622): {sigup} latest signature set already installed Jan 13 2024 03:42:17 server2 maldet(3115733): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Jan 13 2024 03:42:18 server2 maldet(3115733): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Jan 13 2024 03:42:18 server2 maldet(3115733): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Jan 13 2024 03:42:18 server2 maldet(3115733): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Jan 13 2024 03:42:18 server2 maldet(3115733): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Jan 13 2024 03:42:40 server2 maldet(3115733): {scan} file list completed in 22s, found 4961 files... Jan 13 2024 03:42:40 server2 maldet(3115733): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Jan 13 2024 03:42:40 server2 maldet(3115733): {scan} scan of (4961 files) in progress... Jan 13 2024 03:44:57 server2 maldet(3115733): {scan} scan completed on : files 4961, malware hits 0, cleaned hits 0, time 160s Jan 13 2024 03:44:57 server2 maldet(3115733): {scan} scan report saved, to view run: maldet --report 240113-0342.3115733 Jan 14 2024 03:27:11 server2 maldet(3390401): {update} checking for available updates... Jan 14 2024 03:27:11 server2 maldet(3390401): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Jan 14 2024 03:27:11 server2 maldet(3390401): {update} hashing install files and checking against server... Jan 14 2024 03:27:11 server2 maldet(3390401): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Jan 14 2024 03:27:11 server2 maldet(3390401): {update} latest version already installed. Jan 14 2024 03:27:11 server2 maldet(3390534): {sigup} performing signature update check... Jan 14 2024 03:27:11 server2 maldet(3390534): {sigup} local signature set is version 20240110509839 Jan 14 2024 03:27:11 server2 maldet(3390534): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Jan 14 2024 03:27:11 server2 maldet(3390534): {sigup} new signature set 202401131274233 available Jan 14 2024 03:27:11 server2 maldet(3390534): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Jan 14 2024 03:27:11 server2 maldet(3390534): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Jan 14 2024 03:27:12 server2 maldet(3390534): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Jan 14 2024 03:27:12 server2 maldet(3390534): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Jan 14 2024 03:27:12 server2 maldet(3390534): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Jan 14 2024 03:27:12 server2 maldet(3390534): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Jan 14 2024 03:27:12 server2 maldet(3390534): {sigup} verified md5sum of maldet-sigpack.tgz Jan 14 2024 03:27:12 server2 maldet(3390534): {sigup} unpacked and installed maldet-sigpack.tgz Jan 14 2024 03:27:12 server2 maldet(3390534): {sigup} verified md5sum of maldet-clean.tgz Jan 14 2024 03:27:12 server2 maldet(3390534): {sigup} unpacked and installed maldet-clean.tgz Jan 14 2024 03:27:12 server2 maldet(3390534): {sigup} signature set update completed Jan 14 2024 03:27:12 server2 maldet(3390534): {sigup} 17637 signatures (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Jan 14 2024 03:27:12 server2 maldet(3390768): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Jan 14 2024 03:27:14 server2 maldet(3390768): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Jan 14 2024 03:27:14 server2 maldet(3390768): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Jan 14 2024 03:27:14 server2 maldet(3390768): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Jan 14 2024 03:27:14 server2 maldet(3390768): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Jan 14 2024 03:27:58 server2 maldet(3390768): {scan} file list completed in 44s, found 901 files... Jan 14 2024 03:27:58 server2 maldet(3390768): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Jan 14 2024 03:27:58 server2 maldet(3390768): {scan} scan of (901 files) in progress... Jan 14 2024 03:28:59 server2 maldet(3390768): {scan} scan completed on : files 901, malware hits 0, cleaned hits 0, time 107s Jan 14 2024 03:28:59 server2 maldet(3390768): {scan} scan report saved, to view run: maldet --report 240114-0327.3390768 Jan 15 2024 03:25:08 server2 maldet(3619682): {update} checking for available updates... Jan 15 2024 03:25:08 server2 maldet(3619682): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Jan 15 2024 03:25:08 server2 maldet(3619682): {update} hashing install files and checking against server... Jan 15 2024 03:25:08 server2 maldet(3619682): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Jan 15 2024 03:25:08 server2 maldet(3619682): {update} latest version already installed. Jan 15 2024 03:25:08 server2 maldet(3619816): {sigup} performing signature update check... Jan 15 2024 03:25:08 server2 maldet(3619816): {sigup} local signature set is version 202401131274233 Jan 15 2024 03:25:08 server2 maldet(3619816): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Jan 15 2024 03:25:08 server2 maldet(3619816): {sigup} latest signature set already installed Jan 15 2024 03:25:08 server2 maldet(3619927): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Jan 15 2024 03:25:09 server2 maldet(3619927): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Jan 15 2024 03:25:09 server2 maldet(3619927): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Jan 15 2024 03:25:09 server2 maldet(3619927): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Jan 15 2024 03:25:09 server2 maldet(3619927): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Jan 15 2024 03:25:30 server2 maldet(3619927): {scan} file list completed in 21s, found 360 files... Jan 15 2024 03:25:30 server2 maldet(3619927): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Jan 15 2024 03:25:30 server2 maldet(3619927): {scan} scan of (360 files) in progress... Jan 15 2024 03:25:43 server2 maldet(3619927): {scan} scan completed on : files 360, malware hits 0, cleaned hits 0, time 35s Jan 15 2024 03:25:43 server2 maldet(3619927): {scan} scan report saved, to view run: maldet --report 240115-0325.3619927 Jan 16 2024 03:15:18 server2 maldet(3831364): {update} checking for available updates... Jan 16 2024 03:15:18 server2 maldet(3831364): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Jan 16 2024 03:15:18 server2 maldet(3831364): {update} hashing install files and checking against server... Jan 16 2024 03:15:18 server2 maldet(3831364): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Jan 16 2024 03:15:18 server2 maldet(3831364): {update} latest version already installed. Jan 16 2024 03:15:18 server2 maldet(3831504): {sigup} performing signature update check... Jan 16 2024 03:15:18 server2 maldet(3831504): {sigup} local signature set is version 202401131274233 Jan 16 2024 03:15:18 server2 maldet(3831504): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Jan 16 2024 03:15:18 server2 maldet(3831504): {sigup} latest signature set already installed Jan 16 2024 03:15:18 server2 maldet(3831615): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Jan 16 2024 03:15:19 server2 maldet(3831615): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Jan 16 2024 03:15:19 server2 maldet(3831615): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Jan 16 2024 03:15:19 server2 maldet(3831615): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Jan 16 2024 03:15:19 server2 maldet(3831615): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Jan 16 2024 03:15:40 server2 maldet(3831615): {scan} file list completed in 21s, found 897 files... Jan 16 2024 03:15:40 server2 maldet(3831615): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Jan 16 2024 03:15:40 server2 maldet(3831615): {scan} scan of (897 files) in progress... Jan 16 2024 03:15:56 server2 maldet(3831615): {scan} scan completed on : files 897, malware hits 0, cleaned hits 0, time 38s Jan 16 2024 03:15:56 server2 maldet(3831615): {scan} scan report saved, to view run: maldet --report 240116-0315.3831615 Jan 17 2024 03:51:41 server2 maldet(4054877): {update} checking for available updates... Jan 17 2024 03:51:41 server2 maldet(4054877): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Jan 17 2024 03:51:41 server2 maldet(4054877): {update} hashing install files and checking against server... Jan 17 2024 03:51:41 server2 maldet(4054877): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Jan 17 2024 03:51:41 server2 maldet(4054877): {update} latest version already installed. Jan 17 2024 03:51:41 server2 maldet(4055010): {sigup} performing signature update check... Jan 17 2024 03:51:41 server2 maldet(4055010): {sigup} local signature set is version 202401131274233 Jan 17 2024 03:51:41 server2 maldet(4055010): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Jan 17 2024 03:51:41 server2 maldet(4055010): {sigup} new signature set 202401162031221 available Jan 17 2024 03:51:41 server2 maldet(4055010): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Jan 17 2024 03:51:41 server2 maldet(4055010): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Jan 17 2024 03:51:41 server2 maldet(4055010): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Jan 17 2024 03:51:41 server2 maldet(4055010): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Jan 17 2024 03:51:42 server2 maldet(4055010): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Jan 17 2024 03:51:42 server2 maldet(4055010): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Jan 17 2024 03:51:42 server2 maldet(4055010): {sigup} verified md5sum of maldet-sigpack.tgz Jan 17 2024 03:51:42 server2 maldet(4055010): {sigup} unpacked and installed maldet-sigpack.tgz Jan 17 2024 03:51:42 server2 maldet(4055010): {sigup} verified md5sum of maldet-clean.tgz Jan 17 2024 03:51:42 server2 maldet(4055010): {sigup} unpacked and installed maldet-clean.tgz Jan 17 2024 03:51:42 server2 maldet(4055010): {sigup} signature set update completed Jan 17 2024 03:51:42 server2 maldet(4055010): {sigup} 17637 signatures (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Jan 17 2024 03:51:42 server2 maldet(4055240): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Jan 17 2024 03:51:43 server2 maldet(4055240): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Jan 17 2024 03:51:43 server2 maldet(4055240): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Jan 17 2024 03:51:43 server2 maldet(4055240): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Jan 17 2024 03:51:43 server2 maldet(4055240): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Jan 17 2024 03:52:04 server2 maldet(4055240): {scan} file list completed in 21s, found 2160 files... Jan 17 2024 03:52:04 server2 maldet(4055240): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Jan 17 2024 03:52:04 server2 maldet(4055240): {scan} scan of (2160 files) in progress... Jan 17 2024 03:52:55 server2 maldet(4055240): {scan} scan completed on : files 2160, malware hits 0, cleaned hits 0, time 73s Jan 17 2024 03:52:55 server2 maldet(4055240): {scan} scan report saved, to view run: maldet --report 240117-0351.4055240 Jan 18 2024 03:19:37 server2 maldet(65672): {update} checking for available updates... Jan 18 2024 03:19:37 server2 maldet(65672): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Jan 18 2024 03:19:37 server2 maldet(65672): {update} hashing install files and checking against server... Jan 18 2024 03:19:37 server2 maldet(65672): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Jan 18 2024 03:19:37 server2 maldet(65672): {update} latest version already installed. Jan 18 2024 03:19:37 server2 maldet(65805): {sigup} performing signature update check... Jan 18 2024 03:19:37 server2 maldet(65805): {sigup} local signature set is version 202401162031221 Jan 18 2024 03:19:37 server2 maldet(65805): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Jan 18 2024 03:19:37 server2 maldet(65805): {sigup} latest signature set already installed Jan 18 2024 03:19:37 server2 maldet(65917): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Jan 18 2024 03:19:38 server2 maldet(65917): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Jan 18 2024 03:19:38 server2 maldet(65917): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Jan 18 2024 03:19:38 server2 maldet(65917): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Jan 18 2024 03:19:38 server2 maldet(65917): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Jan 18 2024 03:19:59 server2 maldet(65917): {scan} file list completed in 21s, found 710 files... Jan 18 2024 03:19:59 server2 maldet(65917): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Jan 18 2024 03:19:59 server2 maldet(65917): {scan} scan of (710 files) in progress... Jan 18 2024 03:20:13 server2 maldet(65917): {scan} scan completed on : files 710, malware hits 0, cleaned hits 0, time 36s Jan 18 2024 03:20:13 server2 maldet(65917): {scan} scan report saved, to view run: maldet --report 240118-0319.65917 Jan 19 2024 03:22:43 server2 maldet(288945): {update} checking for available updates... Jan 19 2024 03:22:43 server2 maldet(288945): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Jan 19 2024 03:22:43 server2 maldet(288945): {update} hashing install files and checking against server... Jan 19 2024 03:22:43 server2 maldet(288945): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Jan 19 2024 03:22:43 server2 maldet(288945): {update} latest version already installed. Jan 19 2024 03:22:44 server2 maldet(289078): {sigup} performing signature update check... Jan 19 2024 03:22:44 server2 maldet(289078): {sigup} local signature set is version 202401162031221 Jan 19 2024 03:22:44 server2 maldet(289078): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Jan 19 2024 03:22:44 server2 maldet(289078): {sigup} latest signature set already installed Jan 19 2024 03:22:44 server2 maldet(289189): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Jan 19 2024 03:22:44 server2 maldet(289189): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Jan 19 2024 03:22:44 server2 maldet(289189): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Jan 19 2024 03:22:44 server2 maldet(289189): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Jan 19 2024 03:22:44 server2 maldet(289189): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Jan 19 2024 03:23:05 server2 maldet(289189): {scan} file list completed in 21s, found 450 files... Jan 19 2024 03:23:05 server2 maldet(289189): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Jan 19 2024 03:23:05 server2 maldet(289189): {scan} scan of (450 files) in progress... Jan 19 2024 03:23:16 server2 maldet(289189): {scan} scan completed on : files 450, malware hits 0, cleaned hits 0, time 32s Jan 19 2024 03:23:16 server2 maldet(289189): {scan} scan report saved, to view run: maldet --report 240119-0322.289189 Jan 20 2024 03:34:31 server2 maldet(489888): {update} checking for available updates... Jan 20 2024 03:34:31 server2 maldet(489888): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Jan 20 2024 03:34:31 server2 maldet(489888): {update} hashing install files and checking against server... Jan 20 2024 03:34:31 server2 maldet(489888): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Jan 20 2024 03:34:31 server2 maldet(489888): {update} latest version already installed. Jan 20 2024 03:34:31 server2 maldet(490025): {sigup} performing signature update check... Jan 20 2024 03:34:31 server2 maldet(490025): {sigup} local signature set is version 202401162031221 Jan 20 2024 03:34:31 server2 maldet(490025): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Jan 20 2024 03:34:31 server2 maldet(490025): {sigup} new signature set 202401192782461 available Jan 20 2024 03:34:31 server2 maldet(490025): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Jan 20 2024 03:34:31 server2 maldet(490025): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Jan 20 2024 03:34:31 server2 maldet(490025): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Jan 20 2024 03:34:31 server2 maldet(490025): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Jan 20 2024 03:34:31 server2 maldet(490025): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Jan 20 2024 03:34:31 server2 maldet(490025): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Jan 20 2024 03:34:31 server2 maldet(490025): {sigup} verified md5sum of maldet-sigpack.tgz Jan 20 2024 03:34:32 server2 maldet(490025): {sigup} unpacked and installed maldet-sigpack.tgz Jan 20 2024 03:34:32 server2 maldet(490025): {sigup} verified md5sum of maldet-clean.tgz Jan 20 2024 03:34:32 server2 maldet(490025): {sigup} unpacked and installed maldet-clean.tgz Jan 20 2024 03:34:32 server2 maldet(490025): {sigup} signature set update completed Jan 20 2024 03:34:32 server2 maldet(490025): {sigup} 17637 signatures (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Jan 20 2024 03:34:32 server2 maldet(490253): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Jan 20 2024 03:34:32 server2 maldet(490253): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Jan 20 2024 03:34:32 server2 maldet(490253): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Jan 20 2024 03:34:32 server2 maldet(490253): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Jan 20 2024 03:34:32 server2 maldet(490253): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Jan 20 2024 03:34:56 server2 maldet(490253): {scan} file list completed in 24s, found 229 files... Jan 20 2024 03:34:56 server2 maldet(490253): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Jan 20 2024 03:34:56 server2 maldet(490253): {scan} scan of (229 files) in progress... Jan 20 2024 03:35:05 server2 maldet(490253): {scan} scan completed on : files 229, malware hits 0, cleaned hits 0, time 33s Jan 20 2024 03:35:05 server2 maldet(490253): {scan} scan report saved, to view run: maldet --report 240120-0334.490253 Jan 21 2024 03:10:16 server2 maldet(704244): {update} checking for available updates... Jan 21 2024 03:10:16 server2 maldet(704244): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Jan 21 2024 03:10:16 server2 maldet(704244): {update} hashing install files and checking against server... Jan 21 2024 03:10:16 server2 maldet(704244): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Jan 21 2024 03:10:16 server2 maldet(704244): {update} latest version already installed. Jan 21 2024 03:10:16 server2 maldet(704383): {sigup} performing signature update check... Jan 21 2024 03:10:16 server2 maldet(704383): {sigup} local signature set is version 202401192782461 Jan 21 2024 03:10:16 server2 maldet(704383): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Jan 21 2024 03:10:16 server2 maldet(704383): {sigup} latest signature set already installed Jan 21 2024 03:10:17 server2 maldet(704494): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Jan 21 2024 03:10:18 server2 maldet(704494): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Jan 21 2024 03:10:18 server2 maldet(704494): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Jan 21 2024 03:10:18 server2 maldet(704494): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Jan 21 2024 03:10:18 server2 maldet(704494): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Jan 21 2024 03:10:40 server2 maldet(704494): {scan} file list completed in 22s, found 389 files... Jan 21 2024 03:10:40 server2 maldet(704494): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Jan 21 2024 03:10:40 server2 maldet(704494): {scan} scan of (389 files) in progress... Jan 21 2024 03:10:59 server2 maldet(704494): {scan} scan completed on : files 389, malware hits 0, cleaned hits 0, time 42s Jan 21 2024 03:10:59 server2 maldet(704494): {scan} scan report saved, to view run: maldet --report 240121-0310.704494 Jan 22 2024 03:54:10 server2 maldet(909705): {update} checking for available updates... Jan 22 2024 03:54:10 server2 maldet(909705): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Jan 22 2024 03:54:10 server2 maldet(909705): {update} hashing install files and checking against server... Jan 22 2024 03:54:10 server2 maldet(909705): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Jan 22 2024 03:54:10 server2 maldet(909705): {update} latest version already installed. Jan 22 2024 03:54:10 server2 maldet(909838): {sigup} performing signature update check... Jan 22 2024 03:54:10 server2 maldet(909838): {sigup} local signature set is version 202401192782461 Jan 22 2024 03:54:10 server2 maldet(909838): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Jan 22 2024 03:54:11 server2 maldet(909838): {sigup} latest signature set already installed Jan 22 2024 03:54:11 server2 maldet(909949): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Jan 22 2024 03:54:11 server2 maldet(909949): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Jan 22 2024 03:54:11 server2 maldet(909949): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Jan 22 2024 03:54:11 server2 maldet(909949): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Jan 22 2024 03:54:11 server2 maldet(909949): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Jan 22 2024 03:54:29 server2 maldet(909949): {scan} file list completed in 18s, found 744 files... Jan 22 2024 03:54:29 server2 maldet(909949): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Jan 22 2024 03:54:29 server2 maldet(909949): {scan} scan of (744 files) in progress... Jan 22 2024 03:54:44 server2 maldet(909949): {scan} scan completed on : files 744, malware hits 0, cleaned hits 0, time 33s Jan 22 2024 03:54:44 server2 maldet(909949): {scan} scan report saved, to view run: maldet --report 240122-0354.909949 Jan 23 2024 03:50:25 server2 maldet(1126309): {update} checking for available updates... Jan 23 2024 03:50:25 server2 maldet(1126309): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Jan 23 2024 03:50:25 server2 maldet(1126309): {update} hashing install files and checking against server... Jan 23 2024 03:50:25 server2 maldet(1126309): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Jan 23 2024 03:50:25 server2 maldet(1126309): {update} latest version already installed. Jan 23 2024 03:50:25 server2 maldet(1126442): {sigup} performing signature update check... Jan 23 2024 03:50:25 server2 maldet(1126442): {sigup} local signature set is version 202401192782461 Jan 23 2024 03:50:25 server2 maldet(1126442): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Jan 23 2024 03:50:25 server2 maldet(1126442): {sigup} new signature set 202401223538842 available Jan 23 2024 03:50:25 server2 maldet(1126442): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Jan 23 2024 03:50:25 server2 maldet(1126442): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Jan 23 2024 03:50:26 server2 maldet(1126442): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Jan 23 2024 03:50:26 server2 maldet(1126442): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Jan 23 2024 03:50:26 server2 maldet(1126442): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Jan 23 2024 03:50:26 server2 maldet(1126442): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Jan 23 2024 03:50:26 server2 maldet(1126442): {sigup} verified md5sum of maldet-sigpack.tgz Jan 23 2024 03:50:26 server2 maldet(1126442): {sigup} unpacked and installed maldet-sigpack.tgz Jan 23 2024 03:50:26 server2 maldet(1126442): {sigup} verified md5sum of maldet-clean.tgz Jan 23 2024 03:50:26 server2 maldet(1126442): {sigup} unpacked and installed maldet-clean.tgz Jan 23 2024 03:50:26 server2 maldet(1126442): {sigup} signature set update completed Jan 23 2024 03:50:26 server2 maldet(1126442): {sigup} 17637 signatures (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Jan 23 2024 03:50:26 server2 maldet(1126670): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Jan 23 2024 03:50:26 server2 maldet(1126670): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Jan 23 2024 03:50:26 server2 maldet(1126670): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Jan 23 2024 03:50:26 server2 maldet(1126670): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Jan 23 2024 03:50:26 server2 maldet(1126670): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Jan 23 2024 03:50:49 server2 maldet(1126670): {scan} file list completed in 23s, found 389 files... Jan 23 2024 03:50:49 server2 maldet(1126670): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Jan 23 2024 03:50:49 server2 maldet(1126670): {scan} scan of (389 files) in progress... Jan 23 2024 03:50:59 server2 maldet(1126670): {scan} scan completed on : files 389, malware hits 0, cleaned hits 0, time 33s Jan 23 2024 03:50:59 server2 maldet(1126670): {scan} scan report saved, to view run: maldet --report 240123-0350.1126670 Jan 24 2024 03:24:17 server2 maldet(1328413): {update} checking for available updates... Jan 24 2024 03:24:17 server2 maldet(1328413): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Jan 24 2024 03:24:17 server2 maldet(1328413): {update} hashing install files and checking against server... Jan 24 2024 03:24:17 server2 maldet(1328413): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Jan 24 2024 03:24:17 server2 maldet(1328413): {update} latest version already installed. Jan 24 2024 03:24:17 server2 maldet(1328546): {sigup} performing signature update check... Jan 24 2024 03:24:17 server2 maldet(1328546): {sigup} local signature set is version 202401223538842 Jan 24 2024 03:24:18 server2 maldet(1328546): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Jan 24 2024 03:24:18 server2 maldet(1328546): {sigup} latest signature set already installed Jan 24 2024 03:24:18 server2 maldet(1328657): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Jan 24 2024 03:24:19 server2 maldet(1328657): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Jan 24 2024 03:24:19 server2 maldet(1328657): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Jan 24 2024 03:24:19 server2 maldet(1328657): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Jan 24 2024 03:24:19 server2 maldet(1328657): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Jan 24 2024 03:24:39 server2 maldet(1328657): {scan} file list completed in 20s, found 317 files... Jan 24 2024 03:24:39 server2 maldet(1328657): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Jan 24 2024 03:24:39 server2 maldet(1328657): {scan} scan of (317 files) in progress... Jan 24 2024 03:24:50 server2 maldet(1328657): {scan} scan completed on : files 317, malware hits 0, cleaned hits 0, time 32s Jan 24 2024 03:24:50 server2 maldet(1328657): {scan} scan report saved, to view run: maldet --report 240124-0324.1328657 Jan 25 2024 03:42:27 server2 maldet(1562092): {update} checking for available updates... Jan 25 2024 03:42:27 server2 maldet(1562092): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Jan 25 2024 03:42:27 server2 maldet(1562092): {update} hashing install files and checking against server... Jan 25 2024 03:42:27 server2 maldet(1562092): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Jan 25 2024 03:42:27 server2 maldet(1562092): {update} latest version already installed. Jan 25 2024 03:42:27 server2 maldet(1562225): {sigup} performing signature update check... Jan 25 2024 03:42:27 server2 maldet(1562225): {sigup} local signature set is version 202401223538842 Jan 25 2024 03:42:27 server2 maldet(1562225): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Jan 25 2024 03:42:27 server2 maldet(1562225): {sigup} latest signature set already installed Jan 25 2024 03:42:28 server2 maldet(1562336): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Jan 25 2024 03:42:28 server2 maldet(1562336): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Jan 25 2024 03:42:28 server2 maldet(1562336): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Jan 25 2024 03:42:28 server2 maldet(1562336): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Jan 25 2024 03:42:28 server2 maldet(1562336): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Jan 25 2024 03:42:50 server2 maldet(1562336): {scan} file list completed in 22s, found 409 files... Jan 25 2024 03:42:50 server2 maldet(1562336): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Jan 25 2024 03:42:50 server2 maldet(1562336): {scan} scan of (409 files) in progress... Jan 25 2024 03:43:07 server2 maldet(1562336): {scan} scan completed on : files 409, malware hits 0, cleaned hits 0, time 39s Jan 25 2024 03:43:07 server2 maldet(1562336): {scan} scan report saved, to view run: maldet --report 240125-0342.1562336 Jan 26 2024 03:17:10 server2 maldet(1764369): {update} checking for available updates... Jan 26 2024 03:17:10 server2 maldet(1764369): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Jan 26 2024 03:17:10 server2 maldet(1764369): {update} hashing install files and checking against server... Jan 26 2024 03:17:10 server2 maldet(1764369): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Jan 26 2024 03:17:10 server2 maldet(1764369): {update} latest version already installed. Jan 26 2024 03:17:10 server2 maldet(1764502): {sigup} performing signature update check... Jan 26 2024 03:17:10 server2 maldet(1764502): {sigup} local signature set is version 202401223538842 Jan 26 2024 03:17:10 server2 maldet(1764502): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Jan 26 2024 03:17:10 server2 maldet(1764502): {sigup} new signature set 2024012599117 available Jan 26 2024 03:17:10 server2 maldet(1764502): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Jan 26 2024 03:17:11 server2 maldet(1764502): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Jan 26 2024 03:17:11 server2 maldet(1764502): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Jan 26 2024 03:17:11 server2 maldet(1764502): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Jan 26 2024 03:17:11 server2 maldet(1764502): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Jan 26 2024 03:17:11 server2 maldet(1764502): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Jan 26 2024 03:17:11 server2 maldet(1764502): {sigup} verified md5sum of maldet-sigpack.tgz Jan 26 2024 03:17:11 server2 maldet(1764502): {sigup} unpacked and installed maldet-sigpack.tgz Jan 26 2024 03:17:11 server2 maldet(1764502): {sigup} verified md5sum of maldet-clean.tgz Jan 26 2024 03:17:11 server2 maldet(1764502): {sigup} unpacked and installed maldet-clean.tgz Jan 26 2024 03:17:11 server2 maldet(1764502): {sigup} signature set update completed Jan 26 2024 03:17:11 server2 maldet(1764502): {sigup} 17637 signatures (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Jan 26 2024 03:17:11 server2 maldet(1764730): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Jan 26 2024 03:17:12 server2 maldet(1764730): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Jan 26 2024 03:17:12 server2 maldet(1764730): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Jan 26 2024 03:17:12 server2 maldet(1764730): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Jan 26 2024 03:17:12 server2 maldet(1764730): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Jan 26 2024 03:17:37 server2 maldet(1764730): {scan} file list completed in 25s, found 447 files... Jan 26 2024 03:17:37 server2 maldet(1764730): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Jan 26 2024 03:17:37 server2 maldet(1764730): {scan} scan of (447 files) in progress... Jan 26 2024 03:17:49 server2 maldet(1764730): {scan} scan completed on : files 447, malware hits 0, cleaned hits 0, time 38s Jan 26 2024 03:17:49 server2 maldet(1764730): {scan} scan report saved, to view run: maldet --report 240126-0317.1764730 Jan 27 2024 03:30:15 server2 maldet(1976237): {update} checking for available updates... Jan 27 2024 03:30:15 server2 maldet(1976237): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Jan 27 2024 03:30:15 server2 maldet(1976237): {update} hashing install files and checking against server... Jan 27 2024 03:30:15 server2 maldet(1976237): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Jan 27 2024 03:30:15 server2 maldet(1976237): {update} latest version already installed. Jan 27 2024 03:30:15 server2 maldet(1976371): {sigup} performing signature update check... Jan 27 2024 03:30:15 server2 maldet(1976371): {sigup} local signature set is version 2024012599117 Jan 27 2024 03:30:16 server2 maldet(1976371): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Jan 27 2024 03:30:16 server2 maldet(1976371): {sigup} latest signature set already installed Jan 27 2024 03:30:16 server2 maldet(1976490): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Jan 27 2024 03:30:17 server2 maldet(1976490): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Jan 27 2024 03:30:17 server2 maldet(1976490): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Jan 27 2024 03:30:17 server2 maldet(1976490): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Jan 27 2024 03:30:17 server2 maldet(1976490): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Jan 27 2024 03:30:46 server2 maldet(1976490): {scan} file list completed in 29s, found 292 files... Jan 27 2024 03:30:46 server2 maldet(1976490): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Jan 27 2024 03:30:46 server2 maldet(1976490): {scan} scan of (292 files) in progress... Jan 27 2024 03:30:57 server2 maldet(1976490): {scan} scan completed on : files 292, malware hits 0, cleaned hits 0, time 41s Jan 27 2024 03:30:57 server2 maldet(1976490): {scan} scan report saved, to view run: maldet --report 240127-0330.1976490 Jan 28 2024 03:12:19 server2 maldet(2195305): {update} checking for available updates... Jan 28 2024 03:12:19 server2 maldet(2195305): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Jan 28 2024 03:12:19 server2 maldet(2195305): {update} hashing install files and checking against server... Jan 28 2024 03:12:20 server2 maldet(2195305): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Jan 28 2024 03:12:20 server2 maldet(2195305): {update} latest version already installed. Jan 28 2024 03:12:20 server2 maldet(2195439): {sigup} performing signature update check... Jan 28 2024 03:12:20 server2 maldet(2195439): {sigup} local signature set is version 2024012599117 Jan 28 2024 03:12:20 server2 maldet(2195439): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Jan 28 2024 03:12:20 server2 maldet(2195439): {sigup} latest signature set already installed Jan 28 2024 03:12:20 server2 maldet(2195550): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Jan 28 2024 03:12:21 server2 maldet(2195550): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Jan 28 2024 03:12:21 server2 maldet(2195550): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Jan 28 2024 03:12:21 server2 maldet(2195550): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Jan 28 2024 03:12:21 server2 maldet(2195550): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Jan 28 2024 03:12:46 server2 maldet(2195550): {scan} file list completed in 25s, found 773 files... Jan 28 2024 03:12:46 server2 maldet(2195550): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Jan 28 2024 03:12:46 server2 maldet(2195550): {scan} scan of (773 files) in progress... Jan 28 2024 03:13:07 server2 maldet(2195550): {scan} scan completed on : files 773, malware hits 0, cleaned hits 0, time 47s Jan 28 2024 03:13:07 server2 maldet(2195550): {scan} scan report saved, to view run: maldet --report 240128-0312.2195550 Jan 29 2024 03:29:57 server2 maldet(2407604): {update} checking for available updates... Jan 29 2024 03:29:57 server2 maldet(2407604): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Jan 29 2024 03:29:57 server2 maldet(2407604): {update} hashing install files and checking against server... Jan 29 2024 03:29:57 server2 maldet(2407604): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Jan 29 2024 03:29:57 server2 maldet(2407604): {update} latest version already installed. Jan 29 2024 03:29:58 server2 maldet(2407737): {sigup} performing signature update check... Jan 29 2024 03:29:58 server2 maldet(2407737): {sigup} local signature set is version 2024012599117 Jan 29 2024 03:29:58 server2 maldet(2407737): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Jan 29 2024 03:29:58 server2 maldet(2407737): {sigup} latest signature set already installed Jan 29 2024 03:29:58 server2 maldet(2407848): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Jan 29 2024 03:29:58 server2 maldet(2407848): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Jan 29 2024 03:29:58 server2 maldet(2407848): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Jan 29 2024 03:29:58 server2 maldet(2407848): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Jan 29 2024 03:29:58 server2 maldet(2407848): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Jan 29 2024 03:30:27 server2 maldet(2407848): {scan} file list completed in 29s, found 290 files... Jan 29 2024 03:30:27 server2 maldet(2407848): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Jan 29 2024 03:30:27 server2 maldet(2407848): {scan} scan of (290 files) in progress... Jan 29 2024 03:30:34 server2 maldet(2407848): {scan} scan completed on : files 290, malware hits 0, cleaned hits 0, time 36s Jan 29 2024 03:30:34 server2 maldet(2407848): {scan} scan report saved, to view run: maldet --report 240129-0329.2407848 Jan 29 2024 17:40:40 server2 maldet(1196): {mon} could not find inotifywait command, install yum package inotify-tools or download from https://github.com/rvoicilas/inotify-tools/wiki/ Jan 30 2024 03:53:12 server2 maldet(132926): {update} checking for available updates... Jan 30 2024 03:53:12 server2 maldet(132926): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Jan 30 2024 03:53:12 server2 maldet(132926): {update} hashing install files and checking against server... Jan 30 2024 03:53:12 server2 maldet(132926): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Jan 30 2024 03:53:12 server2 maldet(132926): {update} latest version already installed. Jan 30 2024 03:53:12 server2 maldet(133064): {sigup} performing signature update check... Jan 30 2024 03:53:12 server2 maldet(133064): {sigup} local signature set is version 2024012599117 Jan 30 2024 03:53:13 server2 maldet(133064): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Jan 30 2024 03:53:13 server2 maldet(133064): {sigup} latest signature set already installed Jan 30 2024 03:53:13 server2 maldet(133175): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Jan 30 2024 03:53:13 server2 maldet(133175): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Jan 30 2024 03:53:13 server2 maldet(133175): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Jan 30 2024 03:53:13 server2 maldet(133175): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Jan 30 2024 03:53:13 server2 maldet(133175): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Jan 30 2024 03:53:37 server2 maldet(133175): {scan} file list completed in 24s, found 3111 files... Jan 30 2024 03:53:37 server2 maldet(133175): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Jan 30 2024 03:53:37 server2 maldet(133175): {scan} scan of (3111 files) in progress... Jan 30 2024 03:54:40 server2 maldet(133175): {scan} scan completed on : files 3111, malware hits 0, cleaned hits 0, time 87s Jan 30 2024 03:54:40 server2 maldet(133175): {scan} scan report saved, to view run: maldet --report 240130-0353.133175 Jan 31 2024 03:38:45 server2 maldet(332743): {update} checking for available updates... Jan 31 2024 03:38:45 server2 maldet(332743): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Jan 31 2024 03:38:45 server2 maldet(332743): {update} hashing install files and checking against server... Jan 31 2024 03:38:45 server2 maldet(332743): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Jan 31 2024 03:38:45 server2 maldet(332743): {update} latest version already installed. Jan 31 2024 03:38:45 server2 maldet(332876): {sigup} performing signature update check... Jan 31 2024 03:38:45 server2 maldet(332876): {sigup} local signature set is version 2024012599117 Jan 31 2024 03:38:45 server2 maldet(332876): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Jan 31 2024 03:38:45 server2 maldet(332876): {sigup} latest signature set already installed Jan 31 2024 03:38:46 server2 maldet(332987): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Jan 31 2024 03:38:47 server2 maldet(332987): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Jan 31 2024 03:38:47 server2 maldet(332987): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Jan 31 2024 03:38:47 server2 maldet(332987): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Jan 31 2024 03:38:47 server2 maldet(332987): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Jan 31 2024 03:38:59 server2 maldet(332987): {scan} file list completed in 12s, found 726 files... Jan 31 2024 03:38:59 server2 maldet(332987): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Jan 31 2024 03:38:59 server2 maldet(332987): {scan} scan of (726 files) in progress... Jan 31 2024 03:39:32 server2 maldet(332987): {scan} scan completed on : files 726, malware hits 0, cleaned hits 0, time 46s Jan 31 2024 03:39:32 server2 maldet(332987): {scan} scan report saved, to view run: maldet --report 240131-0338.332987 Feb 01 2024 03:09:43 server2 maldet(530648): {update} checking for available updates... Feb 01 2024 03:09:43 server2 maldet(530648): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Feb 01 2024 03:09:43 server2 maldet(530648): {update} hashing install files and checking against server... Feb 01 2024 03:09:43 server2 maldet(530648): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Feb 01 2024 03:09:43 server2 maldet(530648): {update} latest version already installed. Feb 01 2024 03:09:43 server2 maldet(530781): {sigup} performing signature update check... Feb 01 2024 03:09:43 server2 maldet(530781): {sigup} local signature set is version 2024012599117 Feb 01 2024 03:09:43 server2 maldet(530781): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Feb 01 2024 03:09:43 server2 maldet(530781): {sigup} new signature set 20240131576818 available Feb 01 2024 03:09:43 server2 maldet(530781): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Feb 01 2024 03:09:44 server2 maldet(530781): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Feb 01 2024 03:09:44 server2 maldet(530781): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Feb 01 2024 03:09:44 server2 maldet(530781): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Feb 01 2024 03:09:44 server2 maldet(530781): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Feb 01 2024 03:09:44 server2 maldet(530781): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Feb 01 2024 03:09:44 server2 maldet(530781): {sigup} verified md5sum of maldet-sigpack.tgz Feb 01 2024 03:09:44 server2 maldet(530781): {sigup} unpacked and installed maldet-sigpack.tgz Feb 01 2024 03:09:44 server2 maldet(530781): {sigup} verified md5sum of maldet-clean.tgz Feb 01 2024 03:09:44 server2 maldet(530781): {sigup} unpacked and installed maldet-clean.tgz Feb 01 2024 03:09:44 server2 maldet(530781): {sigup} signature set update completed Feb 01 2024 03:09:44 server2 maldet(530781): {sigup} 17637 signatures (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Feb 01 2024 03:09:44 server2 maldet(531010): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Feb 01 2024 03:09:45 server2 maldet(531010): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Feb 01 2024 03:09:45 server2 maldet(531010): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Feb 01 2024 03:09:45 server2 maldet(531010): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Feb 01 2024 03:09:45 server2 maldet(531010): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Feb 01 2024 03:10:15 server2 maldet(531010): {scan} file list completed in 30s, found 389 files... Feb 01 2024 03:10:15 server2 maldet(531010): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Feb 01 2024 03:10:15 server2 maldet(531010): {scan} scan of (389 files) in progress... Feb 01 2024 03:10:29 server2 maldet(531010): {scan} scan completed on : files 389, malware hits 0, cleaned hits 0, time 45s Feb 01 2024 03:10:29 server2 maldet(531010): {scan} scan report saved, to view run: maldet --report 240201-0309.531010 Feb 02 2024 03:11:30 server2 maldet(735767): {update} checking for available updates... Feb 02 2024 03:11:30 server2 maldet(735767): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Feb 02 2024 03:11:30 server2 maldet(735767): {update} hashing install files and checking against server... Feb 02 2024 03:11:30 server2 maldet(735767): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Feb 02 2024 03:11:30 server2 maldet(735767): {update} latest version already installed. Feb 02 2024 03:11:30 server2 maldet(735900): {sigup} performing signature update check... Feb 02 2024 03:11:30 server2 maldet(735900): {sigup} local signature set is version 20240131576818 Feb 02 2024 03:11:30 server2 maldet(735900): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Feb 02 2024 03:11:30 server2 maldet(735900): {sigup} new signature set 202402011286135 available Feb 02 2024 03:11:30 server2 maldet(735900): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Feb 02 2024 03:11:31 server2 maldet(735900): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Feb 02 2024 03:11:31 server2 maldet(735900): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Feb 02 2024 03:11:31 server2 maldet(735900): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Feb 02 2024 03:11:31 server2 maldet(735900): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Feb 02 2024 03:11:31 server2 maldet(735900): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Feb 02 2024 03:11:31 server2 maldet(735900): {sigup} verified md5sum of maldet-sigpack.tgz Feb 02 2024 03:11:31 server2 maldet(735900): {sigup} unpacked and installed maldet-sigpack.tgz Feb 02 2024 03:11:31 server2 maldet(735900): {sigup} verified md5sum of maldet-clean.tgz Feb 02 2024 03:11:31 server2 maldet(735900): {sigup} unpacked and installed maldet-clean.tgz Feb 02 2024 03:11:31 server2 maldet(735900): {sigup} signature set update completed Feb 02 2024 03:11:31 server2 maldet(735900): {sigup} 17637 signatures (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Feb 02 2024 03:11:31 server2 maldet(736128): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Feb 02 2024 03:11:32 server2 maldet(736128): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Feb 02 2024 03:11:32 server2 maldet(736128): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Feb 02 2024 03:11:32 server2 maldet(736128): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Feb 02 2024 03:11:32 server2 maldet(736128): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Feb 02 2024 03:11:57 server2 maldet(736128): {scan} file list completed in 24s, found 333 files... Feb 02 2024 03:11:57 server2 maldet(736128): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Feb 02 2024 03:11:57 server2 maldet(736128): {scan} scan of (333 files) in progress... Feb 02 2024 03:12:11 server2 maldet(736128): {scan} scan completed on : files 333, malware hits 0, cleaned hits 0, time 40s Feb 02 2024 03:12:11 server2 maldet(736128): {scan} scan report saved, to view run: maldet --report 240202-0311.736128 Feb 03 2024 03:18:48 server2 maldet(935530): {update} checking for available updates... Feb 03 2024 03:18:48 server2 maldet(935530): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Feb 03 2024 03:18:48 server2 maldet(935530): {update} hashing install files and checking against server... Feb 03 2024 03:18:49 server2 maldet(935530): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Feb 03 2024 03:18:49 server2 maldet(935530): {update} latest version already installed. Feb 03 2024 03:18:49 server2 maldet(935663): {sigup} performing signature update check... Feb 03 2024 03:18:49 server2 maldet(935663): {sigup} local signature set is version 202402011286135 Feb 03 2024 03:18:49 server2 maldet(935663): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Feb 03 2024 03:18:49 server2 maldet(935663): {sigup} latest signature set already installed Feb 03 2024 03:18:49 server2 maldet(935774): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Feb 03 2024 03:18:49 server2 maldet(935774): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Feb 03 2024 03:18:49 server2 maldet(935774): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Feb 03 2024 03:18:49 server2 maldet(935774): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Feb 03 2024 03:18:49 server2 maldet(935774): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Feb 03 2024 03:19:10 server2 maldet(935774): {scan} file list completed in 21s, found 291 files... Feb 03 2024 03:19:10 server2 maldet(935774): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Feb 03 2024 03:19:10 server2 maldet(935774): {scan} scan of (291 files) in progress... Feb 03 2024 03:19:18 server2 maldet(935774): {scan} scan completed on : files 291, malware hits 0, cleaned hits 0, time 29s Feb 03 2024 03:19:18 server2 maldet(935774): {scan} scan report saved, to view run: maldet --report 240203-0318.935774 Feb 04 2024 03:48:27 server2 maldet(1144836): {update} checking for available updates... Feb 04 2024 03:48:27 server2 maldet(1144836): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Feb 04 2024 03:48:27 server2 maldet(1144836): {update} hashing install files and checking against server... Feb 04 2024 03:48:27 server2 maldet(1144836): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Feb 04 2024 03:48:27 server2 maldet(1144836): {update} latest version already installed. Feb 04 2024 03:48:27 server2 maldet(1144970): {sigup} performing signature update check... Feb 04 2024 03:48:27 server2 maldet(1144970): {sigup} local signature set is version 202402011286135 Feb 04 2024 03:48:27 server2 maldet(1144970): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Feb 04 2024 03:48:27 server2 maldet(1144970): {sigup} latest signature set already installed Feb 04 2024 03:48:28 server2 maldet(1145082): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Feb 04 2024 03:48:30 server2 maldet(1145082): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Feb 04 2024 03:48:30 server2 maldet(1145082): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Feb 04 2024 03:48:30 server2 maldet(1145082): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Feb 04 2024 03:48:30 server2 maldet(1145082): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Feb 04 2024 03:48:52 server2 maldet(1145082): {scan} file list completed in 22s, found 378 files... Feb 04 2024 03:48:52 server2 maldet(1145082): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Feb 04 2024 03:48:52 server2 maldet(1145082): {scan} scan of (378 files) in progress... Feb 04 2024 03:49:09 server2 maldet(1145082): {scan} scan completed on : files 378, malware hits 0, cleaned hits 0, time 41s Feb 04 2024 03:49:09 server2 maldet(1145082): {scan} scan report saved, to view run: maldet --report 240204-0348.1145082 Feb 05 2024 03:21:57 server2 maldet(1337190): {update} checking for available updates... Feb 05 2024 03:21:57 server2 maldet(1337190): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Feb 05 2024 03:21:57 server2 maldet(1337190): {update} hashing install files and checking against server... Feb 05 2024 03:21:57 server2 maldet(1337190): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Feb 05 2024 03:21:57 server2 maldet(1337190): {update} latest version already installed. Feb 05 2024 03:21:57 server2 maldet(1337323): {sigup} performing signature update check... Feb 05 2024 03:21:57 server2 maldet(1337323): {sigup} local signature set is version 202402011286135 Feb 05 2024 03:21:58 server2 maldet(1337323): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Feb 05 2024 03:21:58 server2 maldet(1337323): {sigup} new signature set 202402042043699 available Feb 05 2024 03:21:58 server2 maldet(1337323): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Feb 05 2024 03:21:58 server2 maldet(1337323): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Feb 05 2024 03:21:58 server2 maldet(1337323): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Feb 05 2024 03:21:58 server2 maldet(1337323): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Feb 05 2024 03:21:58 server2 maldet(1337323): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Feb 05 2024 03:21:58 server2 maldet(1337323): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Feb 05 2024 03:21:58 server2 maldet(1337323): {sigup} verified md5sum of maldet-sigpack.tgz Feb 05 2024 03:21:58 server2 maldet(1337323): {sigup} unpacked and installed maldet-sigpack.tgz Feb 05 2024 03:21:58 server2 maldet(1337323): {sigup} verified md5sum of maldet-clean.tgz Feb 05 2024 03:21:58 server2 maldet(1337323): {sigup} unpacked and installed maldet-clean.tgz Feb 05 2024 03:21:58 server2 maldet(1337323): {sigup} signature set update completed Feb 05 2024 03:21:58 server2 maldet(1337323): {sigup} 17637 signatures (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Feb 05 2024 03:21:58 server2 maldet(1337554): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Feb 05 2024 03:21:59 server2 maldet(1337554): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Feb 05 2024 03:21:59 server2 maldet(1337554): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Feb 05 2024 03:21:59 server2 maldet(1337554): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Feb 05 2024 03:21:59 server2 maldet(1337554): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Feb 05 2024 03:22:21 server2 maldet(1337554): {scan} file list completed in 22s, found 400 files... Feb 05 2024 03:22:21 server2 maldet(1337554): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Feb 05 2024 03:22:21 server2 maldet(1337554): {scan} scan of (400 files) in progress... Feb 05 2024 03:22:33 server2 maldet(1337554): {scan} scan completed on : files 400, malware hits 0, cleaned hits 0, time 35s Feb 05 2024 03:22:33 server2 maldet(1337554): {scan} scan report saved, to view run: maldet --report 240205-0321.1337554 Feb 06 2024 03:47:15 server2 maldet(1548030): {update} checking for available updates... Feb 06 2024 03:47:15 server2 maldet(1548030): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Feb 06 2024 03:47:15 server2 maldet(1548030): {update} hashing install files and checking against server... Feb 06 2024 03:47:16 server2 maldet(1548030): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Feb 06 2024 03:47:16 server2 maldet(1548030): {update} latest version already installed. Feb 06 2024 03:47:16 server2 maldet(1548163): {sigup} performing signature update check... Feb 06 2024 03:47:16 server2 maldet(1548163): {sigup} local signature set is version 202402042043699 Feb 06 2024 03:47:16 server2 maldet(1548163): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Feb 06 2024 03:47:16 server2 maldet(1548163): {sigup} latest signature set already installed Feb 06 2024 03:47:16 server2 maldet(1548274): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Feb 06 2024 03:47:16 server2 maldet(1548274): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Feb 06 2024 03:47:16 server2 maldet(1548274): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Feb 06 2024 03:47:16 server2 maldet(1548274): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Feb 06 2024 03:47:16 server2 maldet(1548274): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Feb 06 2024 03:47:37 server2 maldet(1548274): {scan} file list completed in 21s, found 567 files... Feb 06 2024 03:47:37 server2 maldet(1548274): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Feb 06 2024 03:47:37 server2 maldet(1548274): {scan} scan of (567 files) in progress... Feb 06 2024 03:47:53 server2 maldet(1548274): {scan} scan completed on : files 567, malware hits 0, cleaned hits 0, time 37s Feb 06 2024 03:47:53 server2 maldet(1548274): {scan} scan report saved, to view run: maldet --report 240206-0347.1548274 Feb 07 2024 03:21:44 server2 maldet(1752401): {update} checking for available updates... Feb 07 2024 03:21:44 server2 maldet(1752401): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Feb 07 2024 03:21:44 server2 maldet(1752401): {update} hashing install files and checking against server... Feb 07 2024 03:21:44 server2 maldet(1752401): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Feb 07 2024 03:21:44 server2 maldet(1752401): {update} latest version already installed. Feb 07 2024 03:21:44 server2 maldet(1752536): {sigup} performing signature update check... Feb 07 2024 03:21:44 server2 maldet(1752536): {sigup} local signature set is version 202402042043699 Feb 07 2024 03:21:44 server2 maldet(1752536): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Feb 07 2024 03:21:44 server2 maldet(1752536): {sigup} latest signature set already installed Feb 07 2024 03:21:44 server2 maldet(1752647): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Feb 07 2024 03:21:47 server2 maldet(1752647): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Feb 07 2024 03:21:47 server2 maldet(1752647): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Feb 07 2024 03:21:47 server2 maldet(1752647): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Feb 07 2024 03:21:47 server2 maldet(1752647): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Feb 07 2024 03:22:29 server2 maldet(1752647): {scan} file list completed in 42s, found 386 files... Feb 07 2024 03:22:30 server2 maldet(1752647): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Feb 07 2024 03:22:30 server2 maldet(1752647): {scan} scan of (386 files) in progress... Feb 07 2024 03:22:47 server2 maldet(1752647): {scan} scan completed on : files 386, malware hits 0, cleaned hits 0, time 63s Feb 07 2024 03:22:47 server2 maldet(1752647): {scan} scan report saved, to view run: maldet --report 240207-0321.1752647 Feb 08 2024 03:37:47 server2 maldet(2053298): {update} checking for available updates... Feb 08 2024 03:37:47 server2 maldet(2053298): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Feb 08 2024 03:37:48 server2 maldet(2053298): {update} hashing install files and checking against server... Feb 08 2024 03:37:48 server2 maldet(2053298): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Feb 08 2024 03:37:48 server2 maldet(2053298): {update} latest version already installed. Feb 08 2024 03:37:48 server2 maldet(2053431): {sigup} performing signature update check... Feb 08 2024 03:37:48 server2 maldet(2053431): {sigup} local signature set is version 202402042043699 Feb 08 2024 03:37:48 server2 maldet(2053431): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Feb 08 2024 03:37:48 server2 maldet(2053431): {sigup} new signature set 20240207571074 available Feb 08 2024 03:37:48 server2 maldet(2053431): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Feb 08 2024 03:37:48 server2 maldet(2053431): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Feb 08 2024 03:37:48 server2 maldet(2053431): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Feb 08 2024 03:37:48 server2 maldet(2053431): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Feb 08 2024 03:37:48 server2 maldet(2053431): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Feb 08 2024 03:37:48 server2 maldet(2053431): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Feb 08 2024 03:37:49 server2 maldet(2053431): {sigup} verified md5sum of maldet-sigpack.tgz Feb 08 2024 03:37:49 server2 maldet(2053431): {sigup} unpacked and installed maldet-sigpack.tgz Feb 08 2024 03:37:49 server2 maldet(2053431): {sigup} verified md5sum of maldet-clean.tgz Feb 08 2024 03:37:49 server2 maldet(2053431): {sigup} unpacked and installed maldet-clean.tgz Feb 08 2024 03:37:49 server2 maldet(2053431): {sigup} signature set update completed Feb 08 2024 03:37:49 server2 maldet(2053431): {sigup} 17637 signatures (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Feb 08 2024 03:37:49 server2 maldet(2053659): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Feb 08 2024 03:37:50 server2 maldet(2053659): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Feb 08 2024 03:37:50 server2 maldet(2053659): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Feb 08 2024 03:37:50 server2 maldet(2053659): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Feb 08 2024 03:37:50 server2 maldet(2053659): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Feb 08 2024 03:38:19 server2 maldet(2053659): {scan} file list completed in 29s, found 340 files... Feb 08 2024 03:38:19 server2 maldet(2053659): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Feb 08 2024 03:38:19 server2 maldet(2053659): {scan} scan of (340 files) in progress... Feb 08 2024 03:38:41 server2 maldet(2053659): {scan} scan completed on : files 340, malware hits 0, cleaned hits 0, time 52s Feb 08 2024 03:38:41 server2 maldet(2053659): {scan} scan report saved, to view run: maldet --report 240208-0337.2053659 Feb 09 2024 03:45:08 server2 maldet(2330966): {update} checking for available updates... Feb 09 2024 03:45:09 server2 maldet(2330966): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Feb 09 2024 03:45:09 server2 maldet(2330966): {update} hashing install files and checking against server... Feb 09 2024 03:45:09 server2 maldet(2330966): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Feb 09 2024 03:45:09 server2 maldet(2330966): {update} latest version already installed. Feb 09 2024 03:45:09 server2 maldet(2331099): {sigup} performing signature update check... Feb 09 2024 03:45:09 server2 maldet(2331099): {sigup} local signature set is version 20240207571074 Feb 09 2024 03:45:09 server2 maldet(2331099): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Feb 09 2024 03:45:09 server2 maldet(2331099): {sigup} latest signature set already installed Feb 09 2024 03:45:09 server2 maldet(2331210): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Feb 09 2024 03:45:10 server2 maldet(2331210): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Feb 09 2024 03:45:10 server2 maldet(2331210): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Feb 09 2024 03:45:10 server2 maldet(2331210): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Feb 09 2024 03:45:10 server2 maldet(2331210): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Feb 09 2024 03:45:31 server2 maldet(2331210): {scan} file list completed in 21s, found 642 files... Feb 09 2024 03:45:31 server2 maldet(2331210): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Feb 09 2024 03:45:31 server2 maldet(2331210): {scan} scan of (642 files) in progress... Feb 09 2024 03:45:45 server2 maldet(2331210): {scan} scan completed on : files 642, malware hits 0, cleaned hits 0, time 36s Feb 09 2024 03:45:45 server2 maldet(2331210): {scan} scan report saved, to view run: maldet --report 240209-0345.2331210 Feb 10 2024 03:23:01 server2 maldet(2537132): {update} checking for available updates... Feb 10 2024 03:23:01 server2 maldet(2537132): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Feb 10 2024 03:23:01 server2 maldet(2537132): {update} hashing install files and checking against server... Feb 10 2024 03:23:01 server2 maldet(2537132): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Feb 10 2024 03:23:01 server2 maldet(2537132): {update} latest version already installed. Feb 10 2024 03:23:01 server2 maldet(2537265): {sigup} performing signature update check... Feb 10 2024 03:23:01 server2 maldet(2537265): {sigup} local signature set is version 20240207571074 Feb 10 2024 03:23:01 server2 maldet(2537265): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Feb 10 2024 03:23:01 server2 maldet(2537265): {sigup} latest signature set already installed Feb 10 2024 03:23:02 server2 maldet(2537376): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Feb 10 2024 03:23:02 server2 maldet(2537376): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Feb 10 2024 03:23:02 server2 maldet(2537376): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Feb 10 2024 03:23:02 server2 maldet(2537376): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Feb 10 2024 03:23:02 server2 maldet(2537376): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Feb 10 2024 03:23:22 server2 maldet(2537376): {scan} file list completed in 20s, found 424 files... Feb 10 2024 03:23:23 server2 maldet(2537376): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Feb 10 2024 03:23:23 server2 maldet(2537376): {scan} scan of (424 files) in progress... Feb 10 2024 03:23:33 server2 maldet(2537376): {scan} scan completed on : files 424, malware hits 0, cleaned hits 0, time 31s Feb 10 2024 03:23:33 server2 maldet(2537376): {scan} scan report saved, to view run: maldet --report 240210-0323.2537376 Feb 11 2024 03:40:33 server2 maldet(2741633): {update} checking for available updates... Feb 11 2024 03:40:33 server2 maldet(2741633): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Feb 11 2024 03:40:33 server2 maldet(2741633): {update} hashing install files and checking against server... Feb 11 2024 03:40:33 server2 maldet(2741633): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Feb 11 2024 03:40:33 server2 maldet(2741633): {update} latest version already installed. Feb 11 2024 03:40:34 server2 maldet(2741766): {sigup} performing signature update check... Feb 11 2024 03:40:34 server2 maldet(2741766): {sigup} local signature set is version 20240207571074 Feb 11 2024 03:40:34 server2 maldet(2741766): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Feb 11 2024 03:40:34 server2 maldet(2741766): {sigup} new signature set 202402101326004 available Feb 11 2024 03:40:34 server2 maldet(2741766): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Feb 11 2024 03:40:34 server2 maldet(2741766): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Feb 11 2024 03:40:34 server2 maldet(2741766): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Feb 11 2024 03:40:34 server2 maldet(2741766): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Feb 11 2024 03:40:34 server2 maldet(2741766): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Feb 11 2024 03:40:34 server2 maldet(2741766): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Feb 11 2024 03:40:34 server2 maldet(2741766): {sigup} verified md5sum of maldet-sigpack.tgz Feb 11 2024 03:40:34 server2 maldet(2741766): {sigup} unpacked and installed maldet-sigpack.tgz Feb 11 2024 03:40:34 server2 maldet(2741766): {sigup} verified md5sum of maldet-clean.tgz Feb 11 2024 03:40:34 server2 maldet(2741766): {sigup} unpacked and installed maldet-clean.tgz Feb 11 2024 03:40:34 server2 maldet(2741766): {sigup} signature set update completed Feb 11 2024 03:40:34 server2 maldet(2741766): {sigup} 17637 signatures (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Feb 11 2024 03:40:34 server2 maldet(2741994): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Feb 11 2024 03:40:36 server2 maldet(2741994): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Feb 11 2024 03:40:36 server2 maldet(2741994): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Feb 11 2024 03:40:36 server2 maldet(2741994): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Feb 11 2024 03:40:36 server2 maldet(2741994): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Feb 11 2024 03:40:58 server2 maldet(2741994): {scan} file list completed in 22s, found 262 files... Feb 11 2024 03:40:58 server2 maldet(2741994): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Feb 11 2024 03:40:58 server2 maldet(2741994): {scan} scan of (262 files) in progress... Feb 11 2024 03:41:12 server2 maldet(2741994): {scan} scan completed on : files 262, malware hits 0, cleaned hits 0, time 38s Feb 11 2024 03:41:12 server2 maldet(2741994): {scan} scan report saved, to view run: maldet --report 240211-0340.2741994 Feb 12 2024 03:35:34 server2 maldet(2949054): {update} checking for available updates... Feb 12 2024 03:35:34 server2 maldet(2949054): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Feb 12 2024 03:35:34 server2 maldet(2949054): {update} hashing install files and checking against server... Feb 12 2024 03:35:34 server2 maldet(2949054): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Feb 12 2024 03:35:34 server2 maldet(2949054): {update} latest version already installed. Feb 12 2024 03:35:34 server2 maldet(2949187): {sigup} performing signature update check... Feb 12 2024 03:35:34 server2 maldet(2949187): {sigup} local signature set is version 202402101326004 Feb 12 2024 03:35:34 server2 maldet(2949187): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Feb 12 2024 03:35:34 server2 maldet(2949187): {sigup} latest signature set already installed Feb 12 2024 03:35:34 server2 maldet(2949298): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Feb 12 2024 03:35:35 server2 maldet(2949298): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Feb 12 2024 03:35:35 server2 maldet(2949298): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Feb 12 2024 03:35:35 server2 maldet(2949298): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Feb 12 2024 03:35:35 server2 maldet(2949298): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Feb 12 2024 03:35:54 server2 maldet(2949298): {scan} file list completed in 19s, found 318 files... Feb 12 2024 03:35:54 server2 maldet(2949298): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Feb 12 2024 03:35:54 server2 maldet(2949298): {scan} scan of (318 files) in progress... Feb 12 2024 03:36:05 server2 maldet(2949298): {scan} scan completed on : files 318, malware hits 0, cleaned hits 0, time 31s Feb 12 2024 03:36:05 server2 maldet(2949298): {scan} scan report saved, to view run: maldet --report 240212-0335.2949298 Feb 13 2024 03:20:06 server2 maldet(3149909): {update} checking for available updates... Feb 13 2024 03:20:13 server2 maldet(3149909): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Feb 13 2024 03:20:13 server2 maldet(3149909): {update} hashing install files and checking against server... Feb 13 2024 03:20:13 server2 maldet(3149909): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Feb 13 2024 03:20:13 server2 maldet(3149909): {update} latest version already installed. Feb 13 2024 03:20:14 server2 maldet(3150058): {sigup} performing signature update check... Feb 13 2024 03:20:14 server2 maldet(3150058): {sigup} local signature set is version 202402101326004 Feb 13 2024 03:20:14 server2 maldet(3150058): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Feb 13 2024 03:20:14 server2 maldet(3150058): {sigup} latest signature set already installed Feb 13 2024 03:20:14 server2 maldet(3150169): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Feb 13 2024 03:20:14 server2 maldet(3150169): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Feb 13 2024 03:20:14 server2 maldet(3150169): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Feb 13 2024 03:20:14 server2 maldet(3150169): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Feb 13 2024 03:20:14 server2 maldet(3150169): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Feb 13 2024 03:20:34 server2 maldet(3150169): {scan} file list completed in 20s, found 1588 files... Feb 13 2024 03:20:34 server2 maldet(3150169): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Feb 13 2024 03:20:34 server2 maldet(3150169): {scan} scan of (1588 files) in progress... Feb 13 2024 03:21:05 server2 maldet(3150169): {scan} scan completed on : files 1588, malware hits 0, cleaned hits 0, time 51s Feb 13 2024 03:21:05 server2 maldet(3150169): {scan} scan report saved, to view run: maldet --report 240213-0320.3150169 Feb 14 2024 03:45:21 server2 maldet(3369138): {update} checking for available updates... Feb 14 2024 03:45:21 server2 maldet(3369138): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Feb 14 2024 03:45:21 server2 maldet(3369138): {update} hashing install files and checking against server... Feb 14 2024 03:45:21 server2 maldet(3369138): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Feb 14 2024 03:45:21 server2 maldet(3369138): {update} latest version already installed. Feb 14 2024 03:45:21 server2 maldet(3369276): {sigup} performing signature update check... Feb 14 2024 03:45:21 server2 maldet(3369276): {sigup} local signature set is version 202402101326004 Feb 14 2024 03:45:22 server2 maldet(3369276): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Feb 14 2024 03:45:22 server2 maldet(3369276): {sigup} new signature set 202402132079322 available Feb 14 2024 03:45:22 server2 maldet(3369276): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Feb 14 2024 03:45:22 server2 maldet(3369276): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Feb 14 2024 03:45:22 server2 maldet(3369276): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Feb 14 2024 03:45:22 server2 maldet(3369276): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Feb 14 2024 03:45:22 server2 maldet(3369276): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Feb 14 2024 03:45:22 server2 maldet(3369276): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Feb 14 2024 03:45:22 server2 maldet(3369276): {sigup} verified md5sum of maldet-sigpack.tgz Feb 14 2024 03:45:22 server2 maldet(3369276): {sigup} unpacked and installed maldet-sigpack.tgz Feb 14 2024 03:45:22 server2 maldet(3369276): {sigup} verified md5sum of maldet-clean.tgz Feb 14 2024 03:45:22 server2 maldet(3369276): {sigup} unpacked and installed maldet-clean.tgz Feb 14 2024 03:45:22 server2 maldet(3369276): {sigup} signature set update completed Feb 14 2024 03:45:22 server2 maldet(3369276): {sigup} 17637 signatures (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Feb 14 2024 03:45:22 server2 maldet(3369505): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Feb 14 2024 03:45:24 server2 maldet(3369505): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Feb 14 2024 03:45:24 server2 maldet(3369505): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Feb 14 2024 03:45:24 server2 maldet(3369505): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Feb 14 2024 03:45:24 server2 maldet(3369505): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Feb 14 2024 03:45:45 server2 maldet(3369505): {scan} file list completed in 21s, found 309 files... Feb 14 2024 03:45:45 server2 maldet(3369505): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Feb 14 2024 03:45:45 server2 maldet(3369505): {scan} scan of (309 files) in progress... Feb 14 2024 03:45:58 server2 maldet(3369505): {scan} scan completed on : files 309, malware hits 0, cleaned hits 0, time 36s Feb 14 2024 03:45:58 server2 maldet(3369505): {scan} scan report saved, to view run: maldet --report 240214-0345.3369505 Feb 15 2024 03:29:32 server2 maldet(3575807): {update} checking for available updates... Feb 15 2024 03:29:32 server2 maldet(3575807): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Feb 15 2024 03:29:32 server2 maldet(3575807): {update} hashing install files and checking against server... Feb 15 2024 03:29:33 server2 maldet(3575807): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Feb 15 2024 03:29:33 server2 maldet(3575807): {update} latest version already installed. Feb 15 2024 03:29:33 server2 maldet(3575940): {sigup} performing signature update check... Feb 15 2024 03:29:33 server2 maldet(3575940): {sigup} local signature set is version 202402132079322 Feb 15 2024 03:29:33 server2 maldet(3575940): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Feb 15 2024 03:29:33 server2 maldet(3575940): {sigup} latest signature set already installed Feb 15 2024 03:29:33 server2 maldet(3576051): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Feb 15 2024 03:29:33 server2 maldet(3576051): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Feb 15 2024 03:29:33 server2 maldet(3576051): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Feb 15 2024 03:29:33 server2 maldet(3576051): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Feb 15 2024 03:29:33 server2 maldet(3576051): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Feb 15 2024 03:29:57 server2 maldet(3576051): {scan} file list completed in 24s, found 315 files... Feb 15 2024 03:29:57 server2 maldet(3576051): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Feb 15 2024 03:29:57 server2 maldet(3576051): {scan} scan of (315 files) in progress... Feb 15 2024 03:30:10 server2 maldet(3576051): {scan} scan completed on : files 315, malware hits 0, cleaned hits 0, time 37s Feb 15 2024 03:30:10 server2 maldet(3576051): {scan} scan report saved, to view run: maldet --report 240215-0329.3576051 Feb 16 2024 03:35:04 server2 maldet(3802996): {update} checking for available updates... Feb 16 2024 03:35:04 server2 maldet(3802996): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Feb 16 2024 03:35:04 server2 maldet(3802996): {update} hashing install files and checking against server... Feb 16 2024 03:35:04 server2 maldet(3802996): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Feb 16 2024 03:35:04 server2 maldet(3802996): {update} latest version already installed. Feb 16 2024 03:35:04 server2 maldet(3803130): {sigup} performing signature update check... Feb 16 2024 03:35:04 server2 maldet(3803130): {sigup} local signature set is version 202402132079322 Feb 16 2024 03:35:04 server2 maldet(3803130): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Feb 16 2024 03:35:04 server2 maldet(3803130): {sigup} latest signature set already installed Feb 16 2024 03:35:04 server2 maldet(3803242): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Feb 16 2024 03:35:06 server2 maldet(3803242): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Feb 16 2024 03:35:06 server2 maldet(3803242): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Feb 16 2024 03:35:06 server2 maldet(3803242): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Feb 16 2024 03:35:06 server2 maldet(3803242): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Feb 16 2024 03:35:27 server2 maldet(3803242): {scan} file list completed in 21s, found 509 files... Feb 16 2024 03:35:27 server2 maldet(3803242): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Feb 16 2024 03:35:27 server2 maldet(3803242): {scan} scan of (509 files) in progress... Feb 16 2024 03:35:41 server2 maldet(3803242): {scan} scan completed on : files 509, malware hits 0, cleaned hits 0, time 37s Feb 16 2024 03:35:41 server2 maldet(3803242): {scan} scan report saved, to view run: maldet --report 240216-0335.3803242 Feb 17 2024 03:54:37 server2 maldet(4031041): {update} checking for available updates... Feb 17 2024 03:54:37 server2 maldet(4031041): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Feb 17 2024 03:54:37 server2 maldet(4031041): {update} hashing install files and checking against server... Feb 17 2024 03:54:37 server2 maldet(4031041): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Feb 17 2024 03:54:37 server2 maldet(4031041): {update} latest version already installed. Feb 17 2024 03:54:37 server2 maldet(4031176): {sigup} performing signature update check... Feb 17 2024 03:54:37 server2 maldet(4031176): {sigup} local signature set is version 202402132079322 Feb 17 2024 03:54:37 server2 maldet(4031176): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Feb 17 2024 03:54:37 server2 maldet(4031176): {sigup} latest signature set already installed Feb 17 2024 03:54:37 server2 maldet(4031287): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Feb 17 2024 03:54:38 server2 maldet(4031287): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Feb 17 2024 03:54:38 server2 maldet(4031287): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Feb 17 2024 03:54:38 server2 maldet(4031287): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Feb 17 2024 03:54:38 server2 maldet(4031287): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Feb 17 2024 03:55:01 server2 maldet(4031287): {scan} file list completed in 23s, found 328 files... Feb 17 2024 03:55:01 server2 maldet(4031287): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Feb 17 2024 03:55:01 server2 maldet(4031287): {scan} scan of (328 files) in progress... Feb 17 2024 03:55:12 server2 maldet(4031287): {scan} scan completed on : files 328, malware hits 0, cleaned hits 0, time 35s Feb 17 2024 03:55:12 server2 maldet(4031287): {scan} scan report saved, to view run: maldet --report 240217-0354.4031287 Feb 18 2024 03:43:36 server2 maldet(66101): {update} checking for available updates... Feb 18 2024 03:43:36 server2 maldet(66101): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Feb 18 2024 03:43:36 server2 maldet(66101): {update} hashing install files and checking against server... Feb 18 2024 03:43:36 server2 maldet(66101): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Feb 18 2024 03:43:36 server2 maldet(66101): {update} latest version already installed. Feb 18 2024 03:43:36 server2 maldet(66236): {sigup} performing signature update check... Feb 18 2024 03:43:36 server2 maldet(66236): {sigup} local signature set is version 202402132079322 Feb 18 2024 03:43:37 server2 maldet(66236): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Feb 18 2024 03:43:37 server2 maldet(66236): {sigup} latest signature set already installed Feb 18 2024 03:43:37 server2 maldet(66347): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Feb 18 2024 03:43:39 server2 maldet(66347): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Feb 18 2024 03:43:39 server2 maldet(66347): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Feb 18 2024 03:43:39 server2 maldet(66347): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Feb 18 2024 03:43:39 server2 maldet(66347): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Feb 18 2024 03:44:07 server2 maldet(66347): {scan} file list completed in 28s, found 507 files... Feb 18 2024 03:44:07 server2 maldet(66347): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Feb 18 2024 03:44:07 server2 maldet(66347): {scan} scan of (507 files) in progress... Feb 18 2024 03:44:24 server2 maldet(66347): {scan} scan completed on : files 507, malware hits 0, cleaned hits 0, time 47s Feb 18 2024 03:44:24 server2 maldet(66347): {scan} scan report saved, to view run: maldet --report 240218-0343.66347 Feb 19 2024 03:52:10 server2 maldet(304586): {update} checking for available updates... Feb 19 2024 03:52:10 server2 maldet(304586): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Feb 19 2024 03:52:10 server2 maldet(304586): {update} hashing install files and checking against server... Feb 19 2024 03:52:10 server2 maldet(304586): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Feb 19 2024 03:52:10 server2 maldet(304586): {update} latest version already installed. Feb 19 2024 03:52:10 server2 maldet(304719): {sigup} performing signature update check... Feb 19 2024 03:52:10 server2 maldet(304719): {sigup} local signature set is version 202402132079322 Feb 19 2024 03:52:10 server2 maldet(304719): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Feb 19 2024 03:52:10 server2 maldet(304719): {sigup} new signature set 20240219554696 available Feb 19 2024 03:52:10 server2 maldet(304719): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Feb 19 2024 03:52:11 server2 maldet(304719): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Feb 19 2024 03:52:11 server2 maldet(304719): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Feb 19 2024 03:52:11 server2 maldet(304719): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Feb 19 2024 03:52:11 server2 maldet(304719): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Feb 19 2024 03:52:11 server2 maldet(304719): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Feb 19 2024 03:52:11 server2 maldet(304719): {sigup} verified md5sum of maldet-sigpack.tgz Feb 19 2024 03:52:11 server2 maldet(304719): {sigup} unpacked and installed maldet-sigpack.tgz Feb 19 2024 03:52:11 server2 maldet(304719): {sigup} verified md5sum of maldet-clean.tgz Feb 19 2024 03:52:11 server2 maldet(304719): {sigup} unpacked and installed maldet-clean.tgz Feb 19 2024 03:52:11 server2 maldet(304719): {sigup} signature set update completed Feb 19 2024 03:52:11 server2 maldet(304719): {sigup} 17637 signatures (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Feb 19 2024 03:52:11 server2 maldet(304952): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Feb 19 2024 03:52:12 server2 maldet(304952): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Feb 19 2024 03:52:12 server2 maldet(304952): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Feb 19 2024 03:52:12 server2 maldet(304952): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Feb 19 2024 03:52:12 server2 maldet(304952): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Feb 19 2024 03:52:33 server2 maldet(304952): {scan} file list completed in 21s, found 415 files... Feb 19 2024 03:52:33 server2 maldet(304952): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Feb 19 2024 03:52:33 server2 maldet(304952): {scan} scan of (415 files) in progress... Feb 19 2024 03:52:49 server2 maldet(304952): {scan} scan completed on : files 415, malware hits 0, cleaned hits 0, time 38s Feb 19 2024 03:52:49 server2 maldet(304952): {scan} scan report saved, to view run: maldet --report 240219-0352.304952 Feb 20 2024 03:47:06 server2 maldet(540705): {update} checking for available updates... Feb 20 2024 03:47:06 server2 maldet(540705): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Feb 20 2024 03:47:06 server2 maldet(540705): {update} hashing install files and checking against server... Feb 20 2024 03:47:06 server2 maldet(540705): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Feb 20 2024 03:47:06 server2 maldet(540705): {update} latest version already installed. Feb 20 2024 03:47:06 server2 maldet(540839): {sigup} performing signature update check... Feb 20 2024 03:47:06 server2 maldet(540839): {sigup} local signature set is version 20240219554696 Feb 20 2024 03:47:06 server2 maldet(540839): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Feb 20 2024 03:47:06 server2 maldet(540839): {sigup} latest signature set already installed Feb 20 2024 03:47:07 server2 maldet(540950): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Feb 20 2024 03:47:07 server2 maldet(540950): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Feb 20 2024 03:47:07 server2 maldet(540950): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Feb 20 2024 03:47:07 server2 maldet(540950): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Feb 20 2024 03:47:07 server2 maldet(540950): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Feb 20 2024 03:47:28 server2 maldet(540950): {scan} file list completed in 21s, found 415 files... Feb 20 2024 03:47:28 server2 maldet(540950): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Feb 20 2024 03:47:28 server2 maldet(540950): {scan} scan of (415 files) in progress... Feb 20 2024 03:47:39 server2 maldet(540950): {scan} scan completed on : files 415, malware hits 0, cleaned hits 0, time 32s Feb 20 2024 03:47:39 server2 maldet(540950): {scan} scan report saved, to view run: maldet --report 240220-0347.540950 Feb 21 2024 03:22:24 server2 maldet(739938): {update} checking for available updates... Feb 21 2024 03:22:24 server2 maldet(739938): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Feb 21 2024 03:22:24 server2 maldet(739938): {update} hashing install files and checking against server... Feb 21 2024 03:22:24 server2 maldet(739938): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Feb 21 2024 03:22:24 server2 maldet(739938): {update} latest version already installed. Feb 21 2024 03:22:25 server2 maldet(740073): {sigup} performing signature update check... Feb 21 2024 03:22:25 server2 maldet(740073): {sigup} local signature set is version 20240219554696 Feb 21 2024 03:22:25 server2 maldet(740073): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Feb 21 2024 03:22:25 server2 maldet(740073): {sigup} latest signature set already installed Feb 21 2024 03:22:25 server2 maldet(740184): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Feb 21 2024 03:22:27 server2 maldet(740184): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Feb 21 2024 03:22:27 server2 maldet(740184): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Feb 21 2024 03:22:27 server2 maldet(740184): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Feb 21 2024 03:22:27 server2 maldet(740184): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Feb 21 2024 03:22:59 server2 maldet(740184): {scan} file list completed in 32s, found 496 files... Feb 21 2024 03:22:59 server2 maldet(740184): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Feb 21 2024 03:22:59 server2 maldet(740184): {scan} scan of (496 files) in progress... Feb 21 2024 03:23:16 server2 maldet(740184): {scan} scan completed on : files 496, malware hits 0, cleaned hits 0, time 51s Feb 21 2024 03:23:16 server2 maldet(740184): {scan} scan report saved, to view run: maldet --report 240221-0322.740184 Feb 22 2024 03:23:53 server2 maldet(973350): {update} checking for available updates... Feb 22 2024 03:23:53 server2 maldet(973350): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Feb 22 2024 03:23:53 server2 maldet(973350): {update} hashing install files and checking against server... Feb 22 2024 03:23:53 server2 maldet(973350): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Feb 22 2024 03:23:53 server2 maldet(973350): {update} latest version already installed. Feb 22 2024 03:23:53 server2 maldet(973484): {sigup} performing signature update check... Feb 22 2024 03:23:53 server2 maldet(973484): {sigup} local signature set is version 20240219554696 Feb 22 2024 03:23:53 server2 maldet(973484): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Feb 22 2024 03:23:53 server2 maldet(973484): {sigup} latest signature set already installed Feb 22 2024 03:23:53 server2 maldet(973595): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Feb 22 2024 03:23:54 server2 maldet(973595): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Feb 22 2024 03:23:54 server2 maldet(973595): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Feb 22 2024 03:23:54 server2 maldet(973595): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Feb 22 2024 03:23:54 server2 maldet(973595): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Feb 22 2024 03:24:14 server2 maldet(973595): {scan} file list completed in 20s, found 385 files... Feb 22 2024 03:24:14 server2 maldet(973595): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Feb 22 2024 03:24:14 server2 maldet(973595): {scan} scan of (385 files) in progress... Feb 22 2024 03:24:25 server2 maldet(973595): {scan} scan completed on : files 385, malware hits 0, cleaned hits 0, time 32s Feb 22 2024 03:24:25 server2 maldet(973595): {scan} scan report saved, to view run: maldet --report 240222-0323.973595 Feb 23 2024 03:34:37 server2 maldet(1206401): {update} checking for available updates... Feb 23 2024 03:34:37 server2 maldet(1206401): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Feb 23 2024 03:34:37 server2 maldet(1206401): {update} hashing install files and checking against server... Feb 23 2024 03:34:37 server2 maldet(1206401): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Feb 23 2024 03:34:37 server2 maldet(1206401): {update} latest version already installed. Feb 23 2024 03:34:37 server2 maldet(1206534): {sigup} performing signature update check... Feb 23 2024 03:34:37 server2 maldet(1206534): {sigup} local signature set is version 20240219554696 Feb 23 2024 03:34:37 server2 maldet(1206534): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Feb 23 2024 03:34:37 server2 maldet(1206534): {sigup} new signature set 202402221338720 available Feb 23 2024 03:34:37 server2 maldet(1206534): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Feb 23 2024 03:34:37 server2 maldet(1206534): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Feb 23 2024 03:34:37 server2 maldet(1206534): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Feb 23 2024 03:34:37 server2 maldet(1206534): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Feb 23 2024 03:34:37 server2 maldet(1206534): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Feb 23 2024 03:34:37 server2 maldet(1206534): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Feb 23 2024 03:34:37 server2 maldet(1206534): {sigup} verified md5sum of maldet-sigpack.tgz Feb 23 2024 03:34:38 server2 maldet(1206534): {sigup} unpacked and installed maldet-sigpack.tgz Feb 23 2024 03:34:38 server2 maldet(1206534): {sigup} verified md5sum of maldet-clean.tgz Feb 23 2024 03:34:38 server2 maldet(1206534): {sigup} unpacked and installed maldet-clean.tgz Feb 23 2024 03:34:38 server2 maldet(1206534): {sigup} signature set update completed Feb 23 2024 03:34:38 server2 maldet(1206534): {sigup} 17637 signatures (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Feb 23 2024 03:34:38 server2 maldet(1206762): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Feb 23 2024 03:34:39 server2 maldet(1206762): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Feb 23 2024 03:34:39 server2 maldet(1206762): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Feb 23 2024 03:34:39 server2 maldet(1206762): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Feb 23 2024 03:34:39 server2 maldet(1206762): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Feb 23 2024 03:35:10 server2 maldet(1206762): {scan} file list completed in 31s, found 321 files... Feb 23 2024 03:35:10 server2 maldet(1206762): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Feb 23 2024 03:35:10 server2 maldet(1206762): {scan} scan of (321 files) in progress... Feb 23 2024 03:35:21 server2 maldet(1206762): {scan} scan completed on : files 321, malware hits 0, cleaned hits 0, time 43s Feb 23 2024 03:35:21 server2 maldet(1206762): {scan} scan report saved, to view run: maldet --report 240223-0334.1206762 Feb 24 2024 03:35:23 server2 maldet(1509704): {update} checking for available updates... Feb 24 2024 03:35:23 server2 maldet(1509704): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Feb 24 2024 03:35:23 server2 maldet(1509704): {update} hashing install files and checking against server... Feb 24 2024 03:35:23 server2 maldet(1509704): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Feb 24 2024 03:35:23 server2 maldet(1509704): {update} latest version already installed. Feb 24 2024 03:35:23 server2 maldet(1509837): {sigup} performing signature update check... Feb 24 2024 03:35:23 server2 maldet(1509837): {sigup} local signature set is version 202402221338720 Feb 24 2024 03:35:23 server2 maldet(1509837): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Feb 24 2024 03:35:23 server2 maldet(1509837): {sigup} latest signature set already installed Feb 24 2024 03:35:23 server2 maldet(1509948): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Feb 24 2024 03:35:24 server2 maldet(1509948): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Feb 24 2024 03:35:24 server2 maldet(1509948): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Feb 24 2024 03:35:24 server2 maldet(1509948): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Feb 24 2024 03:35:24 server2 maldet(1509948): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Feb 24 2024 03:35:42 server2 maldet(1509948): {scan} file list completed in 18s, found 374 files... Feb 24 2024 03:35:42 server2 maldet(1509948): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Feb 24 2024 03:35:42 server2 maldet(1509948): {scan} scan of (374 files) in progress... Feb 24 2024 03:35:54 server2 maldet(1509948): {scan} scan completed on : files 374, malware hits 0, cleaned hits 0, time 31s Feb 24 2024 03:35:54 server2 maldet(1509948): {scan} scan report saved, to view run: maldet --report 240224-0335.1509948 Feb 25 2024 03:14:17 server2 maldet(1722611): {update} checking for available updates... Feb 25 2024 03:14:17 server2 maldet(1722611): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Feb 25 2024 03:14:17 server2 maldet(1722611): {update} hashing install files and checking against server... Feb 25 2024 03:14:17 server2 maldet(1722611): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Feb 25 2024 03:14:17 server2 maldet(1722611): {update} latest version already installed. Feb 25 2024 03:14:17 server2 maldet(1722744): {sigup} performing signature update check... Feb 25 2024 03:14:17 server2 maldet(1722744): {sigup} local signature set is version 202402221338720 Feb 25 2024 03:14:18 server2 maldet(1722744): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Feb 25 2024 03:14:18 server2 maldet(1722744): {sigup} latest signature set already installed Feb 25 2024 03:14:18 server2 maldet(1722855): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Feb 25 2024 03:14:19 server2 maldet(1722855): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Feb 25 2024 03:14:19 server2 maldet(1722855): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Feb 25 2024 03:14:19 server2 maldet(1722855): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Feb 25 2024 03:14:20 server2 maldet(1722855): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Feb 25 2024 03:14:51 server2 maldet(1722855): {scan} file list completed in 32s, found 353 files... Feb 25 2024 03:14:51 server2 maldet(1722855): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Feb 25 2024 03:14:51 server2 maldet(1722855): {scan} scan of (353 files) in progress... Feb 25 2024 03:15:09 server2 maldet(1722855): {scan} scan completed on : files 353, malware hits 0, cleaned hits 0, time 51s Feb 25 2024 03:15:09 server2 maldet(1722855): {scan} scan report saved, to view run: maldet --report 240225-0314.1722855 Feb 26 2024 03:16:16 server2 maldet(1950387): {update} checking for available updates... Feb 26 2024 03:16:16 server2 maldet(1950387): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Feb 26 2024 03:16:16 server2 maldet(1950387): {update} hashing install files and checking against server... Feb 26 2024 03:16:17 server2 maldet(1950387): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Feb 26 2024 03:16:17 server2 maldet(1950387): {update} latest version already installed. Feb 26 2024 03:16:17 server2 maldet(1950520): {sigup} performing signature update check... Feb 26 2024 03:16:17 server2 maldet(1950520): {sigup} local signature set is version 202402221338720 Feb 26 2024 03:16:17 server2 maldet(1950520): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Feb 26 2024 03:16:17 server2 maldet(1950520): {sigup} new signature set 202402252092648 available Feb 26 2024 03:16:17 server2 maldet(1950520): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Feb 26 2024 03:16:17 server2 maldet(1950520): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Feb 26 2024 03:16:17 server2 maldet(1950520): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Feb 26 2024 03:16:17 server2 maldet(1950520): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Feb 26 2024 03:16:17 server2 maldet(1950520): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Feb 26 2024 03:16:17 server2 maldet(1950520): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Feb 26 2024 03:16:17 server2 maldet(1950520): {sigup} verified md5sum of maldet-sigpack.tgz Feb 26 2024 03:16:18 server2 maldet(1950520): {sigup} unpacked and installed maldet-sigpack.tgz Feb 26 2024 03:16:18 server2 maldet(1950520): {sigup} verified md5sum of maldet-clean.tgz Feb 26 2024 03:16:18 server2 maldet(1950520): {sigup} unpacked and installed maldet-clean.tgz Feb 26 2024 03:16:18 server2 maldet(1950520): {sigup} signature set update completed Feb 26 2024 03:16:18 server2 maldet(1950520): {sigup} 17637 signatures (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Feb 26 2024 03:16:18 server2 maldet(1950748): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Feb 26 2024 03:16:18 server2 maldet(1950748): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Feb 26 2024 03:16:18 server2 maldet(1950748): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Feb 26 2024 03:16:18 server2 maldet(1950748): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Feb 26 2024 03:16:18 server2 maldet(1950748): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Feb 26 2024 03:16:42 server2 maldet(1950748): {scan} file list completed in 24s, found 383 files... Feb 26 2024 03:16:42 server2 maldet(1950748): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Feb 26 2024 03:16:42 server2 maldet(1950748): {scan} scan of (383 files) in progress... Feb 26 2024 03:16:54 server2 maldet(1950748): {scan} scan completed on : files 383, malware hits 0, cleaned hits 0, time 36s Feb 26 2024 03:16:54 server2 maldet(1950748): {scan} scan report saved, to view run: maldet --report 240226-0316.1950748 Feb 27 2024 03:33:58 server2 maldet(2191465): {update} checking for available updates... Feb 27 2024 03:33:58 server2 maldet(2191465): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Feb 27 2024 03:33:58 server2 maldet(2191465): {update} hashing install files and checking against server... Feb 27 2024 03:33:58 server2 maldet(2191465): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Feb 27 2024 03:33:58 server2 maldet(2191465): {update} latest version already installed. Feb 27 2024 03:33:58 server2 maldet(2191598): {sigup} performing signature update check... Feb 27 2024 03:33:58 server2 maldet(2191598): {sigup} local signature set is version 202402252092648 Feb 27 2024 03:33:58 server2 maldet(2191598): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Feb 27 2024 03:33:58 server2 maldet(2191598): {sigup} latest signature set already installed Feb 27 2024 03:33:58 server2 maldet(2191709): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Feb 27 2024 03:33:59 server2 maldet(2191709): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Feb 27 2024 03:33:59 server2 maldet(2191709): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Feb 27 2024 03:33:59 server2 maldet(2191709): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Feb 27 2024 03:33:59 server2 maldet(2191709): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Feb 27 2024 03:34:21 server2 maldet(2191709): {scan} file list completed in 22s, found 426 files... Feb 27 2024 03:34:21 server2 maldet(2191709): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Feb 27 2024 03:34:21 server2 maldet(2191709): {scan} scan of (426 files) in progress... Feb 27 2024 03:34:33 server2 maldet(2191709): {scan} scan completed on : files 426, malware hits 0, cleaned hits 0, time 35s Feb 27 2024 03:34:33 server2 maldet(2191709): {scan} scan report saved, to view run: maldet --report 240227-0333.2191709 Feb 28 2024 03:35:02 server2 maldet(2433050): {update} checking for available updates... Feb 28 2024 03:35:02 server2 maldet(2433050): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Feb 28 2024 03:35:02 server2 maldet(2433050): {update} hashing install files and checking against server... Feb 28 2024 03:35:03 server2 maldet(2433050): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Feb 28 2024 03:35:03 server2 maldet(2433050): {update} latest version already installed. Feb 28 2024 03:35:03 server2 maldet(2433331): {sigup} performing signature update check... Feb 28 2024 03:35:03 server2 maldet(2433331): {sigup} local signature set is version 202402252092648 Feb 28 2024 03:35:03 server2 maldet(2433331): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Feb 28 2024 03:35:03 server2 maldet(2433331): {sigup} latest signature set already installed Feb 28 2024 03:35:03 server2 maldet(2433454): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Feb 28 2024 03:35:07 server2 maldet(2433454): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Feb 28 2024 03:35:07 server2 maldet(2433454): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Feb 28 2024 03:35:07 server2 maldet(2433454): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Feb 28 2024 03:35:07 server2 maldet(2433454): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Feb 28 2024 03:35:23 server2 maldet(2433454): {scan} file list completed in 16s, found 472 files... Feb 28 2024 03:35:23 server2 maldet(2433454): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Feb 28 2024 03:35:23 server2 maldet(2433454): {scan} scan of (472 files) in progress... Feb 28 2024 03:35:40 server2 maldet(2433454): {scan} scan completed on : files 472, malware hits 0, cleaned hits 0, time 37s Feb 28 2024 03:35:40 server2 maldet(2433454): {scan} scan report saved, to view run: maldet --report 240228-0335.2433454 Feb 29 2024 03:52:01 server2 maldet(2656897): {update} checking for available updates... Feb 29 2024 03:52:02 server2 maldet(2656897): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Feb 29 2024 03:52:02 server2 maldet(2656897): {update} hashing install files and checking against server... Feb 29 2024 03:52:02 server2 maldet(2656897): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Feb 29 2024 03:52:02 server2 maldet(2656897): {update} latest version already installed. Feb 29 2024 03:52:02 server2 maldet(2657051): {sigup} performing signature update check... Feb 29 2024 03:52:02 server2 maldet(2657051): {sigup} local signature set is version 202402252092648 Feb 29 2024 03:52:02 server2 maldet(2657051): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Feb 29 2024 03:52:02 server2 maldet(2657051): {sigup} new signature set 202402282845466 available Feb 29 2024 03:52:02 server2 maldet(2657051): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Feb 29 2024 03:52:03 server2 maldet(2657051): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Feb 29 2024 03:52:03 server2 maldet(2657051): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Feb 29 2024 03:52:03 server2 maldet(2657051): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Feb 29 2024 03:52:03 server2 maldet(2657051): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Feb 29 2024 03:52:03 server2 maldet(2657051): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Feb 29 2024 03:52:03 server2 maldet(2657051): {sigup} verified md5sum of maldet-sigpack.tgz Feb 29 2024 03:52:03 server2 maldet(2657051): {sigup} unpacked and installed maldet-sigpack.tgz Feb 29 2024 03:52:03 server2 maldet(2657051): {sigup} verified md5sum of maldet-clean.tgz Feb 29 2024 03:52:03 server2 maldet(2657051): {sigup} unpacked and installed maldet-clean.tgz Feb 29 2024 03:52:03 server2 maldet(2657051): {sigup} signature set update completed Feb 29 2024 03:52:03 server2 maldet(2657051): {sigup} 17637 signatures (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Feb 29 2024 03:52:04 server2 maldet(2657292): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Feb 29 2024 03:52:04 server2 maldet(2657292): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Feb 29 2024 03:52:04 server2 maldet(2657292): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Feb 29 2024 03:52:04 server2 maldet(2657292): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Feb 29 2024 03:52:05 server2 maldet(2657292): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Feb 29 2024 03:52:28 server2 maldet(2657292): {scan} file list completed in 23s, found 444 files... Feb 29 2024 03:52:28 server2 maldet(2657292): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Feb 29 2024 03:52:28 server2 maldet(2657292): {scan} scan of (444 files) in progress... Feb 29 2024 03:52:42 server2 maldet(2657292): {scan} scan completed on : files 444, malware hits 0, cleaned hits 0, time 38s Feb 29 2024 03:52:42 server2 maldet(2657292): {scan} scan report saved, to view run: maldet --report 240229-0352.2657292 Mar 01 2024 03:16:25 server2 maldet(2941255): {update} checking for available updates... Mar 01 2024 03:16:25 server2 maldet(2941255): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Mar 01 2024 03:16:25 server2 maldet(2941255): {update} hashing install files and checking against server... Mar 01 2024 03:16:25 server2 maldet(2941255): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Mar 01 2024 03:16:25 server2 maldet(2941255): {update} latest version already installed. Mar 01 2024 03:16:26 server2 maldet(2941388): {sigup} performing signature update check... Mar 01 2024 03:16:26 server2 maldet(2941388): {sigup} local signature set is version 202402282845466 Mar 01 2024 03:16:26 server2 maldet(2941388): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Mar 01 2024 03:16:26 server2 maldet(2941388): {sigup} latest signature set already installed Mar 01 2024 03:16:26 server2 maldet(2941499): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Mar 01 2024 03:16:27 server2 maldet(2941499): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Mar 01 2024 03:16:27 server2 maldet(2941499): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Mar 01 2024 03:16:27 server2 maldet(2941499): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Mar 01 2024 03:16:27 server2 maldet(2941499): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Mar 01 2024 03:16:50 server2 maldet(2941499): {scan} file list completed in 23s, found 393 files... Mar 01 2024 03:16:50 server2 maldet(2941499): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Mar 01 2024 03:16:50 server2 maldet(2941499): {scan} scan of (393 files) in progress... Mar 01 2024 03:17:06 server2 maldet(2941499): {scan} scan completed on : files 393, malware hits 0, cleaned hits 0, time 39s Mar 01 2024 03:17:06 server2 maldet(2941499): {scan} scan report saved, to view run: maldet --report 240301-0316.2941499 Mar 02 2024 03:31:53 server2 maldet(3191120): {update} checking for available updates... Mar 02 2024 03:31:53 server2 maldet(3191120): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Mar 02 2024 03:31:53 server2 maldet(3191120): {update} hashing install files and checking against server... Mar 02 2024 03:31:53 server2 maldet(3191120): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Mar 02 2024 03:31:53 server2 maldet(3191120): {update} latest version already installed. Mar 02 2024 03:31:53 server2 maldet(3191253): {sigup} performing signature update check... Mar 02 2024 03:31:53 server2 maldet(3191253): {sigup} local signature set is version 202402282845466 Mar 02 2024 03:31:53 server2 maldet(3191253): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Mar 02 2024 03:31:53 server2 maldet(3191253): {sigup} new signature set 202403013577493 available Mar 02 2024 03:31:53 server2 maldet(3191253): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Mar 02 2024 03:31:53 server2 maldet(3191253): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Mar 02 2024 03:31:53 server2 maldet(3191253): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Mar 02 2024 03:31:53 server2 maldet(3191253): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Mar 02 2024 03:31:54 server2 maldet(3191253): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Mar 02 2024 03:31:54 server2 maldet(3191253): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Mar 02 2024 03:31:54 server2 maldet(3191253): {sigup} verified md5sum of maldet-sigpack.tgz Mar 02 2024 03:31:54 server2 maldet(3191253): {sigup} unpacked and installed maldet-sigpack.tgz Mar 02 2024 03:31:54 server2 maldet(3191253): {sigup} verified md5sum of maldet-clean.tgz Mar 02 2024 03:31:54 server2 maldet(3191253): {sigup} unpacked and installed maldet-clean.tgz Mar 02 2024 03:31:54 server2 maldet(3191253): {sigup} signature set update completed Mar 02 2024 03:31:54 server2 maldet(3191253): {sigup} 17637 signatures (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Mar 02 2024 03:31:54 server2 maldet(3191481): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Mar 02 2024 03:31:54 server2 maldet(3191481): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Mar 02 2024 03:31:54 server2 maldet(3191481): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Mar 02 2024 03:31:54 server2 maldet(3191481): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Mar 02 2024 03:31:55 server2 maldet(3191481): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Mar 02 2024 03:32:26 server2 maldet(3191481): {scan} file list completed in 32s, found 532 files... Mar 02 2024 03:32:26 server2 maldet(3191481): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Mar 02 2024 03:32:26 server2 maldet(3191481): {scan} scan of (532 files) in progress... Mar 02 2024 03:32:40 server2 maldet(3191481): {scan} clamscan returned an error, check /usr/local/maldetect/logs/clamscan_log for details! Mar 02 2024 03:32:40 server2 maldet(3191481): {scan} scan completed on : files 532, malware hits 0, cleaned hits 0, time 46s Mar 02 2024 03:32:40 server2 maldet(3191481): {scan} scan report saved, to view run: maldet --report 240302-0331.3191481 Mar 03 2024 03:44:05 server2 maldet(3428905): {update} checking for available updates... Mar 03 2024 03:44:05 server2 maldet(3428905): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Mar 03 2024 03:44:05 server2 maldet(3428905): {update} hashing install files and checking against server... Mar 03 2024 03:44:05 server2 maldet(3428905): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Mar 03 2024 03:44:05 server2 maldet(3428905): {update} latest version already installed. Mar 03 2024 03:44:05 server2 maldet(3429038): {sigup} performing signature update check... Mar 03 2024 03:44:05 server2 maldet(3429038): {sigup} local signature set is version 202403013577493 Mar 03 2024 03:44:06 server2 maldet(3429038): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Mar 03 2024 03:44:06 server2 maldet(3429038): {sigup} latest signature set already installed Mar 03 2024 03:44:06 server2 maldet(3429149): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Mar 03 2024 03:44:08 server2 maldet(3429149): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Mar 03 2024 03:44:08 server2 maldet(3429149): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Mar 03 2024 03:44:08 server2 maldet(3429149): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Mar 03 2024 03:44:08 server2 maldet(3429149): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Mar 03 2024 03:44:33 server2 maldet(3429149): {scan} file list completed in 25s, found 540 files... Mar 03 2024 03:44:33 server2 maldet(3429149): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Mar 03 2024 03:44:33 server2 maldet(3429149): {scan} scan of (540 files) in progress... Mar 03 2024 03:44:51 server2 maldet(3429149): {scan} scan completed on : files 540, malware hits 0, cleaned hits 0, time 45s Mar 03 2024 03:44:51 server2 maldet(3429149): {scan} scan report saved, to view run: maldet --report 240303-0344.3429149 Mar 04 2024 03:40:55 server2 maldet(3683625): {update} checking for available updates... Mar 04 2024 03:40:55 server2 maldet(3683625): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Mar 04 2024 03:40:55 server2 maldet(3683625): {update} hashing install files and checking against server... Mar 04 2024 03:40:56 server2 maldet(3683625): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Mar 04 2024 03:40:56 server2 maldet(3683625): {update} latest version already installed. Mar 04 2024 03:40:56 server2 maldet(3683758): {sigup} performing signature update check... Mar 04 2024 03:40:56 server2 maldet(3683758): {sigup} local signature set is version 202403013577493 Mar 04 2024 03:40:56 server2 maldet(3683758): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Mar 04 2024 03:40:56 server2 maldet(3683758): {sigup} latest signature set already installed Mar 04 2024 03:40:56 server2 maldet(3683869): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Mar 04 2024 03:40:56 server2 maldet(3683869): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Mar 04 2024 03:40:56 server2 maldet(3683869): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Mar 04 2024 03:40:56 server2 maldet(3683869): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Mar 04 2024 03:40:56 server2 maldet(3683869): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Mar 04 2024 03:41:21 server2 maldet(3683869): {scan} file list completed in 25s, found 882 files... Mar 04 2024 03:41:21 server2 maldet(3683869): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Mar 04 2024 03:41:21 server2 maldet(3683869): {scan} scan of (882 files) in progress... Mar 04 2024 03:41:37 server2 maldet(3683869): {scan} scan completed on : files 882, malware hits 0, cleaned hits 0, time 41s Mar 04 2024 03:41:37 server2 maldet(3683869): {scan} scan report saved, to view run: maldet --report 240304-0340.3683869 Mar 05 2024 03:42:14 server2 maldet(3929069): {update} checking for available updates... Mar 05 2024 03:42:14 server2 maldet(3929069): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Mar 05 2024 03:42:14 server2 maldet(3929069): {update} hashing install files and checking against server... Mar 05 2024 03:42:14 server2 maldet(3929069): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Mar 05 2024 03:42:14 server2 maldet(3929069): {update} latest version already installed. Mar 05 2024 03:42:14 server2 maldet(3929202): {sigup} performing signature update check... Mar 05 2024 03:42:14 server2 maldet(3929202): {sigup} local signature set is version 202403013577493 Mar 05 2024 03:42:14 server2 maldet(3929202): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Mar 05 2024 03:42:14 server2 maldet(3929202): {sigup} new signature set 20240304137882 available Mar 05 2024 03:42:14 server2 maldet(3929202): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Mar 05 2024 03:42:14 server2 maldet(3929202): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Mar 05 2024 03:42:14 server2 maldet(3929202): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Mar 05 2024 03:42:14 server2 maldet(3929202): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Mar 05 2024 03:42:15 server2 maldet(3929202): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Mar 05 2024 03:42:15 server2 maldet(3929202): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Mar 05 2024 03:42:15 server2 maldet(3929202): {sigup} verified md5sum of maldet-sigpack.tgz Mar 05 2024 03:42:15 server2 maldet(3929202): {sigup} unpacked and installed maldet-sigpack.tgz Mar 05 2024 03:42:15 server2 maldet(3929202): {sigup} verified md5sum of maldet-clean.tgz Mar 05 2024 03:42:15 server2 maldet(3929202): {sigup} unpacked and installed maldet-clean.tgz Mar 05 2024 03:42:15 server2 maldet(3929202): {sigup} signature set update completed Mar 05 2024 03:42:15 server2 maldet(3929202): {sigup} 17637 signatures (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Mar 05 2024 03:42:15 server2 maldet(3929435): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Mar 05 2024 03:42:15 server2 maldet(3929435): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Mar 05 2024 03:42:15 server2 maldet(3929435): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Mar 05 2024 03:42:15 server2 maldet(3929435): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Mar 05 2024 03:42:15 server2 maldet(3929435): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Mar 05 2024 03:42:45 server2 maldet(3929435): {scan} file list completed in 30s, found 497 files... Mar 05 2024 03:42:45 server2 maldet(3929435): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Mar 05 2024 03:42:45 server2 maldet(3929435): {scan} scan of (497 files) in progress... Mar 05 2024 03:42:58 server2 maldet(3929435): {scan} scan completed on : files 497, malware hits 0, cleaned hits 0, time 43s Mar 05 2024 03:42:58 server2 maldet(3929435): {scan} scan report saved, to view run: maldet --report 240305-0342.3929435 Mar 06 2024 03:33:04 server2 maldet(4179972): {update} checking for available updates... Mar 06 2024 03:33:04 server2 maldet(4179972): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Mar 06 2024 03:33:04 server2 maldet(4179972): {update} hashing install files and checking against server... Mar 06 2024 03:33:04 server2 maldet(4179972): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Mar 06 2024 03:33:04 server2 maldet(4179972): {update} latest version already installed. Mar 06 2024 03:33:04 server2 maldet(4180105): {sigup} performing signature update check... Mar 06 2024 03:33:04 server2 maldet(4180105): {sigup} local signature set is version 20240304137882 Mar 06 2024 03:33:04 server2 maldet(4180105): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Mar 06 2024 03:33:04 server2 maldet(4180105): {sigup} latest signature set already installed Mar 06 2024 03:33:04 server2 maldet(4180217): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Mar 06 2024 03:33:06 server2 maldet(4180217): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Mar 06 2024 03:33:06 server2 maldet(4180217): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Mar 06 2024 03:33:06 server2 maldet(4180217): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Mar 06 2024 03:33:06 server2 maldet(4180217): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Mar 06 2024 03:33:28 server2 maldet(4180217): {scan} file list completed in 22s, found 414 files... Mar 06 2024 03:33:28 server2 maldet(4180217): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Mar 06 2024 03:33:28 server2 maldet(4180217): {scan} scan of (414 files) in progress... Mar 06 2024 03:33:44 server2 maldet(4180217): {scan} scan completed on : files 414, malware hits 0, cleaned hits 0, time 40s Mar 06 2024 03:33:44 server2 maldet(4180217): {scan} scan report saved, to view run: maldet --report 240306-0333.4180217 Mar 07 2024 03:55:58 server2 maldet(272225): {update} checking for available updates... Mar 07 2024 03:55:58 server2 maldet(272225): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Mar 07 2024 03:55:58 server2 maldet(272225): {update} hashing install files and checking against server... Mar 07 2024 03:55:58 server2 maldet(272225): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Mar 07 2024 03:55:58 server2 maldet(272225): {update} latest version already installed. Mar 07 2024 03:55:58 server2 maldet(272358): {sigup} performing signature update check... Mar 07 2024 03:55:58 server2 maldet(272358): {sigup} local signature set is version 20240304137882 Mar 07 2024 03:55:58 server2 maldet(272358): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Mar 07 2024 03:55:58 server2 maldet(272358): {sigup} latest signature set already installed Mar 07 2024 03:55:58 server2 maldet(272471): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Mar 07 2024 03:55:59 server2 maldet(272471): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Mar 07 2024 03:55:59 server2 maldet(272471): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Mar 07 2024 03:55:59 server2 maldet(272471): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Mar 07 2024 03:55:59 server2 maldet(272471): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Mar 07 2024 03:56:25 server2 maldet(272471): {scan} file list completed in 26s, found 423 files... Mar 07 2024 03:56:25 server2 maldet(272471): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Mar 07 2024 03:56:25 server2 maldet(272471): {scan} scan of (423 files) in progress... Mar 07 2024 03:56:37 server2 maldet(272471): {scan} scan completed on : files 423, malware hits 0, cleaned hits 0, time 39s Mar 07 2024 03:56:37 server2 maldet(272471): {scan} scan report saved, to view run: maldet --report 240307-0355.272471 Mar 08 2024 03:39:47 server2 maldet(565171): {update} checking for available updates... Mar 08 2024 03:39:48 server2 maldet(565171): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Mar 08 2024 03:39:48 server2 maldet(565171): {update} hashing install files and checking against server... Mar 08 2024 03:39:48 server2 maldet(565171): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Mar 08 2024 03:39:48 server2 maldet(565171): {update} latest version already installed. Mar 08 2024 03:39:48 server2 maldet(565304): {sigup} performing signature update check... Mar 08 2024 03:39:48 server2 maldet(565304): {sigup} local signature set is version 20240304137882 Mar 08 2024 03:39:48 server2 maldet(565304): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Mar 08 2024 03:39:48 server2 maldet(565304): {sigup} new signature set 20240307890851 available Mar 08 2024 03:39:48 server2 maldet(565304): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Mar 08 2024 03:39:48 server2 maldet(565304): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Mar 08 2024 03:39:48 server2 maldet(565304): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Mar 08 2024 03:39:48 server2 maldet(565304): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Mar 08 2024 03:39:48 server2 maldet(565304): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Mar 08 2024 03:39:48 server2 maldet(565304): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Mar 08 2024 03:39:48 server2 maldet(565304): {sigup} verified md5sum of maldet-sigpack.tgz Mar 08 2024 03:39:48 server2 maldet(565304): {sigup} unpacked and installed maldet-sigpack.tgz Mar 08 2024 03:39:48 server2 maldet(565304): {sigup} verified md5sum of maldet-clean.tgz Mar 08 2024 03:39:48 server2 maldet(565304): {sigup} unpacked and installed maldet-clean.tgz Mar 08 2024 03:39:49 server2 maldet(565304): {sigup} signature set update completed Mar 08 2024 03:39:49 server2 maldet(565304): {sigup} 17637 signatures (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Mar 08 2024 03:39:49 server2 maldet(565532): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Mar 08 2024 03:39:49 server2 maldet(565532): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Mar 08 2024 03:39:49 server2 maldet(565532): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Mar 08 2024 03:39:49 server2 maldet(565532): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Mar 08 2024 03:39:49 server2 maldet(565532): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Mar 08 2024 03:40:21 server2 maldet(565532): {scan} file list completed in 32s, found 303 files... Mar 08 2024 03:40:21 server2 maldet(565532): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Mar 08 2024 03:40:21 server2 maldet(565532): {scan} scan of (303 files) in progress... Mar 08 2024 03:40:30 server2 maldet(565532): {scan} scan completed on : files 303, malware hits 0, cleaned hits 0, time 41s Mar 08 2024 03:40:30 server2 maldet(565532): {scan} scan report saved, to view run: maldet --report 240308-0339.565532 Mar 09 2024 03:42:06 server2 maldet(805004): {update} checking for available updates... Mar 09 2024 03:42:06 server2 maldet(805004): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Mar 09 2024 03:42:06 server2 maldet(805004): {update} hashing install files and checking against server... Mar 09 2024 03:42:06 server2 maldet(805004): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Mar 09 2024 03:42:06 server2 maldet(805004): {update} latest version already installed. Mar 09 2024 03:42:06 server2 maldet(805137): {sigup} performing signature update check... Mar 09 2024 03:42:06 server2 maldet(805137): {sigup} local signature set is version 20240307890851 Mar 09 2024 03:42:06 server2 maldet(805137): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Mar 09 2024 03:42:06 server2 maldet(805137): {sigup} latest signature set already installed Mar 09 2024 03:42:06 server2 maldet(805248): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Mar 09 2024 03:42:06 server2 maldet(805248): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Mar 09 2024 03:42:06 server2 maldet(805248): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Mar 09 2024 03:42:06 server2 maldet(805248): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Mar 09 2024 03:42:06 server2 maldet(805248): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Mar 09 2024 03:42:25 server2 maldet(805248): {scan} file list completed in 19s, found 331 files... Mar 09 2024 03:42:25 server2 maldet(805248): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Mar 09 2024 03:42:25 server2 maldet(805248): {scan} scan of (331 files) in progress... Mar 09 2024 03:42:34 server2 maldet(805248): {scan} scan completed on : files 331, malware hits 0, cleaned hits 0, time 28s Mar 09 2024 03:42:34 server2 maldet(805248): {scan} scan report saved, to view run: maldet --report 240309-0342.805248 Mar 10 2024 03:09:16 server2 maldet(1031114): {update} checking for available updates... Mar 10 2024 03:09:16 server2 maldet(1031114): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Mar 10 2024 03:09:16 server2 maldet(1031114): {update} hashing install files and checking against server... Mar 10 2024 03:09:16 server2 maldet(1031114): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Mar 10 2024 03:09:16 server2 maldet(1031114): {update} latest version already installed. Mar 10 2024 03:09:16 server2 maldet(1031247): {sigup} performing signature update check... Mar 10 2024 03:09:16 server2 maldet(1031247): {sigup} local signature set is version 20240307890851 Mar 10 2024 03:09:17 server2 maldet(1031247): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Mar 10 2024 03:09:17 server2 maldet(1031247): {sigup} latest signature set already installed Mar 10 2024 03:09:17 server2 maldet(1031359): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Mar 10 2024 03:09:17 server2 maldet(1031359): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Mar 10 2024 03:09:17 server2 maldet(1031359): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Mar 10 2024 03:09:17 server2 maldet(1031359): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Mar 10 2024 03:09:17 server2 maldet(1031359): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Mar 10 2024 03:09:37 server2 maldet(1031359): {scan} file list completed in 20s, found 315 files... Mar 10 2024 03:09:37 server2 maldet(1031359): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Mar 10 2024 03:09:37 server2 maldet(1031359): {scan} scan of (315 files) in progress... Mar 10 2024 03:09:46 server2 maldet(1031359): {scan} scan completed on : files 315, malware hits 0, cleaned hits 0, time 28s Mar 10 2024 03:09:46 server2 maldet(1031359): {scan} scan report saved, to view run: maldet --report 240310-0309.1031359 Mar 11 2024 03:44:29 server2 maldet(1285105): {update} checking for available updates... Mar 11 2024 03:44:29 server2 maldet(1285105): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Mar 11 2024 03:44:29 server2 maldet(1285105): {update} hashing install files and checking against server... Mar 11 2024 03:44:29 server2 maldet(1285105): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Mar 11 2024 03:44:29 server2 maldet(1285105): {update} latest version already installed. Mar 11 2024 03:44:29 server2 maldet(1285238): {sigup} performing signature update check... Mar 11 2024 03:44:29 server2 maldet(1285238): {sigup} local signature set is version 20240307890851 Mar 11 2024 03:44:29 server2 maldet(1285238): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Mar 11 2024 03:44:29 server2 maldet(1285238): {sigup} latest signature set already installed Mar 11 2024 03:44:29 server2 maldet(1285349): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Mar 11 2024 03:44:30 server2 maldet(1285349): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Mar 11 2024 03:44:30 server2 maldet(1285349): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Mar 11 2024 03:44:30 server2 maldet(1285349): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Mar 11 2024 03:44:30 server2 maldet(1285349): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Mar 11 2024 03:44:51 server2 maldet(1285349): {scan} file list completed in 20s, found 493 files... Mar 11 2024 03:44:51 server2 maldet(1285349): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Mar 11 2024 03:44:51 server2 maldet(1285349): {scan} scan of (493 files) in progress... Mar 11 2024 03:45:09 server2 maldet(1285349): {scan} scan completed on : files 493, malware hits 0, cleaned hits 0, time 40s Mar 11 2024 03:45:09 server2 maldet(1285349): {scan} scan report saved, to view run: maldet --report 240311-0344.1285349 Mar 12 2024 03:30:06 server2 maldet(1521523): {update} checking for available updates... Mar 12 2024 03:30:06 server2 maldet(1521523): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Mar 12 2024 03:30:06 server2 maldet(1521523): {update} hashing install files and checking against server... Mar 12 2024 03:30:07 server2 maldet(1521523): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Mar 12 2024 03:30:07 server2 maldet(1521523): {update} latest version already installed. Mar 12 2024 03:30:07 server2 maldet(1521657): {sigup} performing signature update check... Mar 12 2024 03:30:07 server2 maldet(1521657): {sigup} local signature set is version 20240307890851 Mar 12 2024 03:30:07 server2 maldet(1521657): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Mar 12 2024 03:30:07 server2 maldet(1521657): {sigup} new signature set 202403101574133 available Mar 12 2024 03:30:07 server2 maldet(1521657): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Mar 12 2024 03:30:07 server2 maldet(1521657): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Mar 12 2024 03:30:07 server2 maldet(1521657): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Mar 12 2024 03:30:07 server2 maldet(1521657): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Mar 12 2024 03:30:07 server2 maldet(1521657): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Mar 12 2024 03:30:07 server2 maldet(1521657): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Mar 12 2024 03:30:08 server2 maldet(1521657): {sigup} verified md5sum of maldet-sigpack.tgz Mar 12 2024 03:30:08 server2 maldet(1521657): {sigup} unpacked and installed maldet-sigpack.tgz Mar 12 2024 03:30:08 server2 maldet(1521657): {sigup} verified md5sum of maldet-clean.tgz Mar 12 2024 03:30:08 server2 maldet(1521657): {sigup} unpacked and installed maldet-clean.tgz Mar 12 2024 03:30:08 server2 maldet(1521657): {sigup} signature set update completed Mar 12 2024 03:30:08 server2 maldet(1521657): {sigup} 17637 signatures (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Mar 12 2024 03:30:08 server2 maldet(1521887): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Mar 12 2024 03:30:09 server2 maldet(1521887): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Mar 12 2024 03:30:09 server2 maldet(1521887): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Mar 12 2024 03:30:09 server2 maldet(1521887): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Mar 12 2024 03:30:09 server2 maldet(1521887): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Mar 12 2024 03:30:34 server2 maldet(1521887): {scan} file list completed in 25s, found 441 files... Mar 12 2024 03:30:34 server2 maldet(1521887): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Mar 12 2024 03:30:34 server2 maldet(1521887): {scan} scan of (441 files) in progress... Mar 12 2024 03:30:52 server2 maldet(1521887): {scan} scan completed on : files 441, malware hits 0, cleaned hits 0, time 44s Mar 12 2024 03:30:52 server2 maldet(1521887): {scan} scan report saved, to view run: maldet --report 240312-0330.1521887 Mar 13 2024 04:00:43 server2 maldet(1750769): {update} checking for available updates... Mar 13 2024 04:00:43 server2 maldet(1750769): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Mar 13 2024 04:00:43 server2 maldet(1750769): {update} hashing install files and checking against server... Mar 13 2024 04:00:44 server2 maldet(1750769): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Mar 13 2024 04:00:44 server2 maldet(1750769): {update} latest version already installed. Mar 13 2024 04:00:44 server2 maldet(1750903): {sigup} performing signature update check... Mar 13 2024 04:00:44 server2 maldet(1750903): {sigup} local signature set is version 202403101574133 Mar 13 2024 04:00:44 server2 maldet(1750903): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Mar 13 2024 04:00:44 server2 maldet(1750903): {sigup} latest signature set already installed Mar 13 2024 04:00:44 server2 maldet(1751014): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Mar 13 2024 04:00:46 server2 maldet(1751014): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Mar 13 2024 04:00:46 server2 maldet(1751014): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Mar 13 2024 04:00:46 server2 maldet(1751014): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Mar 13 2024 04:00:46 server2 maldet(1751014): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Mar 13 2024 04:01:09 server2 maldet(1751014): {scan} file list completed in 23s, found 429 files... Mar 13 2024 04:01:09 server2 maldet(1751014): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Mar 13 2024 04:01:09 server2 maldet(1751014): {scan} scan of (429 files) in progress... Mar 13 2024 04:01:31 server2 maldet(1751014): {scan} scan completed on : files 429, malware hits 0, cleaned hits 0, time 47s Mar 13 2024 04:01:31 server2 maldet(1751014): {scan} scan report saved, to view run: maldet --report 240313-0400.1751014 Mar 14 2024 03:52:30 server2 maldet(1982027): {update} checking for available updates... Mar 14 2024 03:52:30 server2 maldet(1982027): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Mar 14 2024 03:52:30 server2 maldet(1982027): {update} hashing install files and checking against server... Mar 14 2024 03:52:31 server2 maldet(1982027): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Mar 14 2024 03:52:31 server2 maldet(1982027): {update} latest version already installed. Mar 14 2024 03:52:31 server2 maldet(1982160): {sigup} performing signature update check... Mar 14 2024 03:52:31 server2 maldet(1982160): {sigup} local signature set is version 202403101574133 Mar 14 2024 03:52:31 server2 maldet(1982160): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Mar 14 2024 03:52:31 server2 maldet(1982160): {sigup} new signature set 20240313584523 available Mar 14 2024 03:52:31 server2 maldet(1982160): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Mar 14 2024 03:52:31 server2 maldet(1982160): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Mar 14 2024 03:52:31 server2 maldet(1982160): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Mar 14 2024 03:52:31 server2 maldet(1982160): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Mar 14 2024 03:52:31 server2 maldet(1982160): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Mar 14 2024 03:52:31 server2 maldet(1982160): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Mar 14 2024 03:52:31 server2 maldet(1982160): {sigup} verified md5sum of maldet-sigpack.tgz Mar 14 2024 03:52:31 server2 maldet(1982160): {sigup} unpacked and installed maldet-sigpack.tgz Mar 14 2024 03:52:31 server2 maldet(1982160): {sigup} verified md5sum of maldet-clean.tgz Mar 14 2024 03:52:31 server2 maldet(1982160): {sigup} unpacked and installed maldet-clean.tgz Mar 14 2024 03:52:31 server2 maldet(1982160): {sigup} signature set update completed Mar 14 2024 03:52:31 server2 maldet(1982160): {sigup} 17637 signatures (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Mar 14 2024 03:52:31 server2 maldet(1982390): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Mar 14 2024 03:52:32 server2 maldet(1982390): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Mar 14 2024 03:52:32 server2 maldet(1982390): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Mar 14 2024 03:52:32 server2 maldet(1982390): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Mar 14 2024 03:52:32 server2 maldet(1982390): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Mar 14 2024 03:52:56 server2 maldet(1982390): {scan} file list completed in 24s, found 396 files... Mar 14 2024 03:52:56 server2 maldet(1982390): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Mar 14 2024 03:52:56 server2 maldet(1982390): {scan} scan of (396 files) in progress... Mar 14 2024 03:53:07 server2 maldet(1982390): {scan} scan completed on : files 396, malware hits 0, cleaned hits 0, time 36s Mar 14 2024 03:53:07 server2 maldet(1982390): {scan} scan report saved, to view run: maldet --report 240314-0352.1982390 Mar 15 2024 03:53:29 server2 maldet(2216671): {update} checking for available updates... Mar 15 2024 03:53:29 server2 maldet(2216671): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Mar 15 2024 03:53:29 server2 maldet(2216671): {update} hashing install files and checking against server... Mar 15 2024 03:53:29 server2 maldet(2216671): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Mar 15 2024 03:53:29 server2 maldet(2216671): {update} latest version already installed. Mar 15 2024 03:53:29 server2 maldet(2216804): {sigup} performing signature update check... Mar 15 2024 03:53:29 server2 maldet(2216804): {sigup} local signature set is version 20240313584523 Mar 15 2024 03:53:30 server2 maldet(2216804): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Mar 15 2024 03:53:30 server2 maldet(2216804): {sigup} latest signature set already installed Mar 15 2024 03:53:30 server2 maldet(2216915): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Mar 15 2024 03:53:30 server2 maldet(2216915): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Mar 15 2024 03:53:30 server2 maldet(2216915): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Mar 15 2024 03:53:30 server2 maldet(2216915): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Mar 15 2024 03:53:30 server2 maldet(2216915): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Mar 15 2024 03:53:49 server2 maldet(2216915): {scan} file list completed in 19s, found 430 files... Mar 15 2024 03:53:49 server2 maldet(2216915): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Mar 15 2024 03:53:49 server2 maldet(2216915): {scan} scan of (430 files) in progress... Mar 15 2024 03:54:02 server2 maldet(2216915): {scan} scan completed on : files 430, malware hits 0, cleaned hits 0, time 32s Mar 15 2024 03:54:03 server2 maldet(2216915): {scan} scan report saved, to view run: maldet --report 240315-0353.2216915 Mar 16 2024 03:41:23 server2 maldet(2466417): {update} checking for available updates... Mar 16 2024 03:41:23 server2 maldet(2466417): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Mar 16 2024 03:41:23 server2 maldet(2466417): {update} hashing install files and checking against server... Mar 16 2024 03:41:23 server2 maldet(2466417): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Mar 16 2024 03:41:23 server2 maldet(2466417): {update} latest version already installed. Mar 16 2024 03:41:23 server2 maldet(2466550): {sigup} performing signature update check... Mar 16 2024 03:41:23 server2 maldet(2466550): {sigup} local signature set is version 20240313584523 Mar 16 2024 03:41:23 server2 maldet(2466550): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Mar 16 2024 03:41:23 server2 maldet(2466550): {sigup} latest signature set already installed Mar 16 2024 03:41:23 server2 maldet(2466661): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Mar 16 2024 03:41:24 server2 maldet(2466661): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Mar 16 2024 03:41:24 server2 maldet(2466661): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Mar 16 2024 03:41:24 server2 maldet(2466661): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Mar 16 2024 03:41:24 server2 maldet(2466661): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Mar 16 2024 03:41:44 server2 maldet(2466661): {scan} file list completed in 20s, found 384 files... Mar 16 2024 03:41:44 server2 maldet(2466661): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Mar 16 2024 03:41:44 server2 maldet(2466661): {scan} scan of (384 files) in progress... Mar 16 2024 03:41:52 server2 maldet(2466661): {scan} scan completed on : files 384, malware hits 0, cleaned hits 0, time 29s Mar 16 2024 03:41:52 server2 maldet(2466661): {scan} scan report saved, to view run: maldet --report 240316-0341.2466661 Mar 17 2024 03:41:22 server2 maldet(2699868): {update} checking for available updates... Mar 17 2024 03:41:22 server2 maldet(2699868): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Mar 17 2024 03:41:22 server2 maldet(2699868): {update} hashing install files and checking against server... Mar 17 2024 03:41:23 server2 maldet(2699868): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Mar 17 2024 03:41:23 server2 maldet(2699868): {update} latest version already installed. Mar 17 2024 03:41:23 server2 maldet(2700003): {sigup} performing signature update check... Mar 17 2024 03:41:23 server2 maldet(2700003): {sigup} local signature set is version 20240313584523 Mar 17 2024 03:41:23 server2 maldet(2700003): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Mar 17 2024 03:41:23 server2 maldet(2700003): {sigup} new signature set 202403161371743 available Mar 17 2024 03:41:23 server2 maldet(2700003): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Mar 17 2024 03:41:23 server2 maldet(2700003): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Mar 17 2024 03:41:23 server2 maldet(2700003): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Mar 17 2024 03:41:23 server2 maldet(2700003): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Mar 17 2024 03:41:23 server2 maldet(2700003): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Mar 17 2024 03:41:23 server2 maldet(2700003): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Mar 17 2024 03:41:23 server2 maldet(2700003): {sigup} verified md5sum of maldet-sigpack.tgz Mar 17 2024 03:41:23 server2 maldet(2700003): {sigup} unpacked and installed maldet-sigpack.tgz Mar 17 2024 03:41:23 server2 maldet(2700003): {sigup} verified md5sum of maldet-clean.tgz Mar 17 2024 03:41:23 server2 maldet(2700003): {sigup} unpacked and installed maldet-clean.tgz Mar 17 2024 03:41:23 server2 maldet(2700003): {sigup} signature set update completed Mar 17 2024 03:41:23 server2 maldet(2700003): {sigup} 17637 signatures (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Mar 17 2024 03:41:24 server2 maldet(2700231): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Mar 17 2024 03:41:25 server2 maldet(2700231): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Mar 17 2024 03:41:25 server2 maldet(2700231): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Mar 17 2024 03:41:25 server2 maldet(2700231): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Mar 17 2024 03:41:25 server2 maldet(2700231): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Mar 17 2024 03:41:46 server2 maldet(2700231): {scan} file list completed in 21s, found 465 files... Mar 17 2024 03:41:46 server2 maldet(2700231): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Mar 17 2024 03:41:46 server2 maldet(2700231): {scan} scan of (465 files) in progress... Mar 17 2024 03:42:02 server2 maldet(2700231): {scan} scan completed on : files 465, malware hits 0, cleaned hits 0, time 38s Mar 17 2024 03:42:02 server2 maldet(2700231): {scan} scan report saved, to view run: maldet --report 240317-0341.2700231 Mar 18 2024 03:09:41 server2 maldet(2932469): {update} checking for available updates... Mar 18 2024 03:09:41 server2 maldet(2932469): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Mar 18 2024 03:09:41 server2 maldet(2932469): {update} hashing install files and checking against server... Mar 18 2024 03:09:42 server2 maldet(2932469): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Mar 18 2024 03:09:42 server2 maldet(2932469): {update} latest version already installed. Mar 18 2024 03:09:42 server2 maldet(2932602): {sigup} performing signature update check... Mar 18 2024 03:09:42 server2 maldet(2932602): {sigup} local signature set is version 202403161371743 Mar 18 2024 03:09:42 server2 maldet(2932602): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Mar 18 2024 03:09:42 server2 maldet(2932602): {sigup} latest signature set already installed Mar 18 2024 03:09:42 server2 maldet(2932713): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Mar 18 2024 03:09:42 server2 maldet(2932713): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Mar 18 2024 03:09:42 server2 maldet(2932713): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Mar 18 2024 03:09:42 server2 maldet(2932713): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Mar 18 2024 03:09:42 server2 maldet(2932713): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Mar 18 2024 03:10:07 server2 maldet(2932713): {scan} file list completed in 25s, found 639 files... Mar 18 2024 03:10:07 server2 maldet(2932713): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Mar 18 2024 03:10:07 server2 maldet(2932713): {scan} scan of (639 files) in progress... Mar 18 2024 03:10:24 server2 maldet(2932713): {scan} scan completed on : files 639, malware hits 0, cleaned hits 0, time 42s Mar 18 2024 03:10:24 server2 maldet(2932713): {scan} scan report saved, to view run: maldet --report 240318-0309.2932713 Mar 19 2024 03:46:19 server2 maldet(3181390): {update} checking for available updates... Mar 19 2024 03:46:19 server2 maldet(3181390): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Mar 19 2024 03:46:19 server2 maldet(3181390): {update} hashing install files and checking against server... Mar 19 2024 03:46:19 server2 maldet(3181390): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Mar 19 2024 03:46:19 server2 maldet(3181390): {update} latest version already installed. Mar 19 2024 03:46:20 server2 maldet(3181523): {sigup} performing signature update check... Mar 19 2024 03:46:20 server2 maldet(3181523): {sigup} local signature set is version 202403161371743 Mar 19 2024 03:46:20 server2 maldet(3181523): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Mar 19 2024 03:46:20 server2 maldet(3181523): {sigup} latest signature set already installed Mar 19 2024 03:46:20 server2 maldet(3181634): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Mar 19 2024 03:46:21 server2 maldet(3181634): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Mar 19 2024 03:46:21 server2 maldet(3181634): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Mar 19 2024 03:46:21 server2 maldet(3181634): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Mar 19 2024 03:46:21 server2 maldet(3181634): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Mar 19 2024 03:46:40 server2 maldet(3181634): {scan} file list completed in 19s, found 317 files... Mar 19 2024 03:46:40 server2 maldet(3181634): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Mar 19 2024 03:46:40 server2 maldet(3181634): {scan} scan of (317 files) in progress... Mar 19 2024 03:46:48 server2 maldet(3181634): {scan} scan completed on : files 317, malware hits 0, cleaned hits 0, time 28s Mar 19 2024 03:46:48 server2 maldet(3181634): {scan} scan report saved, to view run: maldet --report 240319-0346.3181634 Mar 20 2024 04:03:07 server2 maldet(3427422): {update} checking for available updates... Mar 20 2024 04:03:07 server2 maldet(3427422): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Mar 20 2024 04:03:07 server2 maldet(3427422): {update} hashing install files and checking against server... Mar 20 2024 04:03:07 server2 maldet(3427422): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Mar 20 2024 04:03:07 server2 maldet(3427422): {update} latest version already installed. Mar 20 2024 04:03:07 server2 maldet(3427557): {sigup} performing signature update check... Mar 20 2024 04:03:07 server2 maldet(3427557): {sigup} local signature set is version 202403161371743 Mar 20 2024 04:03:07 server2 maldet(3427557): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Mar 20 2024 04:03:07 server2 maldet(3427557): {sigup} new signature set 202403192124750 available Mar 20 2024 04:03:07 server2 maldet(3427557): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Mar 20 2024 04:03:07 server2 maldet(3427557): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Mar 20 2024 04:03:07 server2 maldet(3427557): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Mar 20 2024 04:03:07 server2 maldet(3427557): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Mar 20 2024 04:03:07 server2 maldet(3427557): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Mar 20 2024 04:03:07 server2 maldet(3427557): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Mar 20 2024 04:03:07 server2 maldet(3427557): {sigup} verified md5sum of maldet-sigpack.tgz Mar 20 2024 04:03:08 server2 maldet(3427557): {sigup} unpacked and installed maldet-sigpack.tgz Mar 20 2024 04:03:08 server2 maldet(3427557): {sigup} verified md5sum of maldet-clean.tgz Mar 20 2024 04:03:08 server2 maldet(3427557): {sigup} unpacked and installed maldet-clean.tgz Mar 20 2024 04:03:08 server2 maldet(3427557): {sigup} signature set update completed Mar 20 2024 04:03:08 server2 maldet(3427557): {sigup} 17637 signatures (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Mar 20 2024 04:03:08 server2 maldet(3427785): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Mar 20 2024 04:03:10 server2 maldet(3427785): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Mar 20 2024 04:03:10 server2 maldet(3427785): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Mar 20 2024 04:03:10 server2 maldet(3427785): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Mar 20 2024 04:03:10 server2 maldet(3427785): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Mar 20 2024 04:03:43 server2 maldet(3427785): {scan} file list completed in 33s, found 858 files... Mar 20 2024 04:03:43 server2 maldet(3427785): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Mar 20 2024 04:03:43 server2 maldet(3427785): {scan} scan of (858 files) in progress... Mar 20 2024 04:04:34 server2 maldet(3427785): {scan} scan completed on : files 858, malware hits 0, cleaned hits 0, time 86s Mar 20 2024 04:04:34 server2 maldet(3427785): {scan} scan report saved, to view run: maldet --report 240320-0403.3427785 Mar 21 2024 03:30:38 server2 maldet(3673548): {update} checking for available updates... Mar 21 2024 03:30:38 server2 maldet(3673548): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Mar 21 2024 03:30:38 server2 maldet(3673548): {update} hashing install files and checking against server... Mar 21 2024 03:30:38 server2 maldet(3673548): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Mar 21 2024 03:30:38 server2 maldet(3673548): {update} latest version already installed. Mar 21 2024 03:30:38 server2 maldet(3673681): {sigup} performing signature update check... Mar 21 2024 03:30:38 server2 maldet(3673681): {sigup} local signature set is version 202403192124750 Mar 21 2024 03:30:38 server2 maldet(3673681): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Mar 21 2024 03:30:38 server2 maldet(3673681): {sigup} latest signature set already installed Mar 21 2024 03:30:39 server2 maldet(3673792): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Mar 21 2024 03:30:39 server2 maldet(3673792): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Mar 21 2024 03:30:39 server2 maldet(3673792): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Mar 21 2024 03:30:39 server2 maldet(3673792): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Mar 21 2024 03:30:39 server2 maldet(3673792): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Mar 21 2024 03:30:58 server2 maldet(3673792): {scan} file list completed in 19s, found 283 files... Mar 21 2024 03:30:58 server2 maldet(3673792): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Mar 21 2024 03:30:58 server2 maldet(3673792): {scan} scan of (283 files) in progress... Mar 21 2024 03:31:05 server2 maldet(3673792): {scan} scan completed on : files 283, malware hits 0, cleaned hits 0, time 26s Mar 21 2024 03:31:05 server2 maldet(3673792): {scan} scan report saved, to view run: maldet --report 240321-0330.3673792 Mar 22 2024 03:38:38 server2 maldet(3984304): {update} checking for available updates... Mar 22 2024 03:38:38 server2 maldet(3984304): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Mar 22 2024 03:38:38 server2 maldet(3984304): {update} hashing install files and checking against server... Mar 22 2024 03:38:38 server2 maldet(3984304): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Mar 22 2024 03:38:38 server2 maldet(3984304): {update} latest version already installed. Mar 22 2024 03:38:38 server2 maldet(3984438): {sigup} performing signature update check... Mar 22 2024 03:38:38 server2 maldet(3984438): {sigup} local signature set is version 202403192124750 Mar 22 2024 03:38:39 server2 maldet(3984438): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Mar 22 2024 03:38:39 server2 maldet(3984438): {sigup} latest signature set already installed Mar 22 2024 03:38:39 server2 maldet(3984549): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Mar 22 2024 03:38:40 server2 maldet(3984549): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Mar 22 2024 03:38:40 server2 maldet(3984549): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Mar 22 2024 03:38:40 server2 maldet(3984549): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Mar 22 2024 03:38:40 server2 maldet(3984549): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Mar 22 2024 03:39:00 server2 maldet(3984549): {scan} file list completed in 20s, found 385 files... Mar 22 2024 03:39:00 server2 maldet(3984549): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Mar 22 2024 03:39:00 server2 maldet(3984549): {scan} scan of (385 files) in progress... Mar 22 2024 03:39:10 server2 maldet(3984549): {scan} scan completed on : files 385, malware hits 0, cleaned hits 0, time 31s Mar 22 2024 03:39:10 server2 maldet(3984549): {scan} scan report saved, to view run: maldet --report 240322-0338.3984549 Mar 23 2024 03:49:52 server2 maldet(47885): {update} checking for available updates... Mar 23 2024 03:49:52 server2 maldet(47885): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Mar 23 2024 03:49:52 server2 maldet(47885): {update} hashing install files and checking against server... Mar 23 2024 03:49:52 server2 maldet(47885): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Mar 23 2024 03:49:52 server2 maldet(47885): {update} latest version already installed. Mar 23 2024 03:49:52 server2 maldet(48019): {sigup} performing signature update check... Mar 23 2024 03:49:52 server2 maldet(48019): {sigup} local signature set is version 202403192124750 Mar 23 2024 03:49:52 server2 maldet(48019): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Mar 23 2024 03:49:52 server2 maldet(48019): {sigup} new signature set 20240322575435 available Mar 23 2024 03:49:52 server2 maldet(48019): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Mar 23 2024 03:49:52 server2 maldet(48019): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Mar 23 2024 03:49:52 server2 maldet(48019): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Mar 23 2024 03:49:52 server2 maldet(48019): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Mar 23 2024 03:49:52 server2 maldet(48019): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Mar 23 2024 03:49:53 server2 maldet(48019): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Mar 23 2024 03:49:53 server2 maldet(48019): {sigup} verified md5sum of maldet-sigpack.tgz Mar 23 2024 03:49:53 server2 maldet(48019): {sigup} unpacked and installed maldet-sigpack.tgz Mar 23 2024 03:49:53 server2 maldet(48019): {sigup} verified md5sum of maldet-clean.tgz Mar 23 2024 03:49:53 server2 maldet(48019): {sigup} unpacked and installed maldet-clean.tgz Mar 23 2024 03:49:53 server2 maldet(48019): {sigup} signature set update completed Mar 23 2024 03:49:53 server2 maldet(48019): {sigup} 17637 signatures (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Mar 23 2024 03:49:53 server2 maldet(48247): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Mar 23 2024 03:49:53 server2 maldet(48247): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Mar 23 2024 03:49:53 server2 maldet(48247): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Mar 23 2024 03:49:53 server2 maldet(48247): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Mar 23 2024 03:49:53 server2 maldet(48247): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Mar 23 2024 03:50:20 server2 maldet(48247): {scan} file list completed in 27s, found 406 files... Mar 23 2024 03:50:20 server2 maldet(48247): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Mar 23 2024 03:50:20 server2 maldet(48247): {scan} scan of (406 files) in progress... Mar 23 2024 03:50:31 server2 maldet(48247): {scan} scan completed on : files 406, malware hits 0, cleaned hits 0, time 38s Mar 23 2024 03:50:31 server2 maldet(48247): {scan} scan report saved, to view run: maldet --report 240323-0349.48247 Mar 24 2024 03:50:52 server2 maldet(297126): {update} checking for available updates... Mar 24 2024 03:50:52 server2 maldet(297126): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Mar 24 2024 03:50:52 server2 maldet(297126): {update} hashing install files and checking against server... Mar 24 2024 03:50:52 server2 maldet(297126): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Mar 24 2024 03:50:52 server2 maldet(297126): {update} latest version already installed. Mar 24 2024 03:50:52 server2 maldet(297259): {sigup} performing signature update check... Mar 24 2024 03:50:52 server2 maldet(297259): {sigup} local signature set is version 20240322575435 Mar 24 2024 03:50:52 server2 maldet(297259): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Mar 24 2024 03:50:52 server2 maldet(297259): {sigup} latest signature set already installed Mar 24 2024 03:50:52 server2 maldet(297371): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Mar 24 2024 03:50:54 server2 maldet(297371): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Mar 24 2024 03:50:54 server2 maldet(297371): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Mar 24 2024 03:50:54 server2 maldet(297371): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Mar 24 2024 03:50:54 server2 maldet(297371): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Mar 24 2024 03:51:18 server2 maldet(297371): {scan} file list completed in 24s, found 293 files... Mar 24 2024 03:51:18 server2 maldet(297371): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Mar 24 2024 03:51:18 server2 maldet(297371): {scan} scan of (293 files) in progress... Mar 24 2024 03:51:31 server2 maldet(297371): {scan} scan completed on : files 293, malware hits 0, cleaned hits 0, time 39s Mar 24 2024 03:51:31 server2 maldet(297371): {scan} scan report saved, to view run: maldet --report 240324-0350.297371 Mar 25 2024 03:27:31 server2 maldet(543490): {update} checking for available updates... Mar 25 2024 03:27:31 server2 maldet(543490): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Mar 25 2024 03:27:31 server2 maldet(543490): {update} hashing install files and checking against server... Mar 25 2024 03:27:31 server2 maldet(543490): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Mar 25 2024 03:27:31 server2 maldet(543490): {update} latest version already installed. Mar 25 2024 03:27:32 server2 maldet(543623): {sigup} performing signature update check... Mar 25 2024 03:27:32 server2 maldet(543623): {sigup} local signature set is version 20240322575435 Mar 25 2024 03:27:32 server2 maldet(543623): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Mar 25 2024 03:27:32 server2 maldet(543623): {sigup} latest signature set already installed Mar 25 2024 03:27:32 server2 maldet(543734): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Mar 25 2024 03:27:32 server2 maldet(543734): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Mar 25 2024 03:27:32 server2 maldet(543734): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Mar 25 2024 03:27:32 server2 maldet(543734): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Mar 25 2024 03:27:32 server2 maldet(543734): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Mar 25 2024 03:27:51 server2 maldet(543734): {scan} file list completed in 19s, found 359 files... Mar 25 2024 03:27:51 server2 maldet(543734): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Mar 25 2024 03:27:51 server2 maldet(543734): {scan} scan of (359 files) in progress... Mar 25 2024 03:28:00 server2 maldet(543734): {scan} scan completed on : files 359, malware hits 0, cleaned hits 0, time 28s Mar 25 2024 03:28:00 server2 maldet(543734): {scan} scan report saved, to view run: maldet --report 240325-0327.543734 Mar 26 2024 03:15:26 server2 maldet(786797): {update} checking for available updates... Mar 26 2024 03:15:26 server2 maldet(786797): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Mar 26 2024 03:15:26 server2 maldet(786797): {update} hashing install files and checking against server... Mar 26 2024 03:15:26 server2 maldet(786797): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Mar 26 2024 03:15:26 server2 maldet(786797): {update} latest version already installed. Mar 26 2024 03:15:26 server2 maldet(786930): {sigup} performing signature update check... Mar 26 2024 03:15:26 server2 maldet(786930): {sigup} local signature set is version 20240322575435 Mar 26 2024 03:15:27 server2 maldet(786930): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Mar 26 2024 03:15:27 server2 maldet(786930): {sigup} new signature set 202403251330193 available Mar 26 2024 03:15:27 server2 maldet(786930): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Mar 26 2024 03:15:27 server2 maldet(786930): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Mar 26 2024 03:15:27 server2 maldet(786930): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Mar 26 2024 03:15:27 server2 maldet(786930): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Mar 26 2024 03:15:27 server2 maldet(786930): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Mar 26 2024 03:15:27 server2 maldet(786930): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Mar 26 2024 03:15:27 server2 maldet(786930): {sigup} verified md5sum of maldet-sigpack.tgz Mar 26 2024 03:15:27 server2 maldet(786930): {sigup} unpacked and installed maldet-sigpack.tgz Mar 26 2024 03:15:27 server2 maldet(786930): {sigup} verified md5sum of maldet-clean.tgz Mar 26 2024 03:15:27 server2 maldet(786930): {sigup} unpacked and installed maldet-clean.tgz Mar 26 2024 03:15:27 server2 maldet(786930): {sigup} signature set update completed Mar 26 2024 03:15:27 server2 maldet(786930): {sigup} 17637 signatures (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Mar 26 2024 03:15:27 server2 maldet(787159): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Mar 26 2024 03:15:28 server2 maldet(787159): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Mar 26 2024 03:15:28 server2 maldet(787159): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Mar 26 2024 03:15:28 server2 maldet(787159): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Mar 26 2024 03:15:28 server2 maldet(787159): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Mar 26 2024 03:15:50 server2 maldet(787159): {scan} file list completed in 22s, found 459 files... Mar 26 2024 03:15:50 server2 maldet(787159): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Mar 26 2024 03:15:50 server2 maldet(787159): {scan} scan of (459 files) in progress... Mar 26 2024 03:16:02 server2 maldet(787159): {scan} scan completed on : files 459, malware hits 0, cleaned hits 0, time 35s Mar 26 2024 03:16:02 server2 maldet(787159): {scan} scan report saved, to view run: maldet --report 240326-0315.787159 Mar 27 2024 03:43:55 server2 maldet(1053276): {update} checking for available updates... Mar 27 2024 03:43:56 server2 maldet(1053276): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Mar 27 2024 03:43:56 server2 maldet(1053276): {update} hashing install files and checking against server... Mar 27 2024 03:43:56 server2 maldet(1053276): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Mar 27 2024 03:43:56 server2 maldet(1053276): {update} latest version already installed. Mar 27 2024 03:43:56 server2 maldet(1053409): {sigup} performing signature update check... Mar 27 2024 03:43:56 server2 maldet(1053409): {sigup} local signature set is version 202403251330193 Mar 27 2024 03:43:56 server2 maldet(1053409): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Mar 27 2024 03:43:56 server2 maldet(1053409): {sigup} latest signature set already installed Mar 27 2024 03:43:56 server2 maldet(1053520): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Mar 27 2024 03:43:58 server2 maldet(1053520): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Mar 27 2024 03:43:58 server2 maldet(1053520): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Mar 27 2024 03:43:58 server2 maldet(1053520): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Mar 27 2024 03:43:58 server2 maldet(1053520): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Mar 27 2024 03:44:20 server2 maldet(1053520): {scan} file list completed in 22s, found 561 files... Mar 27 2024 03:44:20 server2 maldet(1053520): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Mar 27 2024 03:44:20 server2 maldet(1053520): {scan} scan of (561 files) in progress... Mar 27 2024 03:44:32 server2 maldet(1053520): {scan} scan completed on : files 561, malware hits 0, cleaned hits 0, time 36s Mar 27 2024 03:44:32 server2 maldet(1053520): {scan} scan report saved, to view run: maldet --report 240327-0343.1053520 Mar 28 2024 03:35:07 server2 maldet(1306973): {update} checking for available updates... Mar 28 2024 03:35:07 server2 maldet(1306973): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Mar 28 2024 03:35:07 server2 maldet(1306973): {update} hashing install files and checking against server... Mar 28 2024 03:35:07 server2 maldet(1306973): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Mar 28 2024 03:35:07 server2 maldet(1306973): {update} latest version already installed. Mar 28 2024 03:35:07 server2 maldet(1307106): {sigup} performing signature update check... Mar 28 2024 03:35:07 server2 maldet(1307106): {sigup} local signature set is version 202403251330193 Mar 28 2024 03:35:07 server2 maldet(1307106): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Mar 28 2024 03:35:07 server2 maldet(1307106): {sigup} latest signature set already installed Mar 28 2024 03:35:08 server2 maldet(1307218): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Mar 28 2024 03:35:08 server2 maldet(1307218): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Mar 28 2024 03:35:08 server2 maldet(1307218): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Mar 28 2024 03:35:08 server2 maldet(1307218): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Mar 28 2024 03:35:08 server2 maldet(1307218): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Mar 28 2024 03:35:24 server2 maldet(1307218): {scan} file list completed in 16s, found 348 files... Mar 28 2024 03:35:24 server2 maldet(1307218): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Mar 28 2024 03:35:24 server2 maldet(1307218): {scan} scan of (348 files) in progress... Mar 28 2024 03:35:32 server2 maldet(1307218): {scan} scan completed on : files 348, malware hits 0, cleaned hits 0, time 24s Mar 28 2024 03:35:32 server2 maldet(1307218): {scan} scan report saved, to view run: maldet --report 240328-0335.1307218 Mar 29 2024 03:30:20 server2 maldet(1552620): {update} checking for available updates... Mar 29 2024 03:30:20 server2 maldet(1552620): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Mar 29 2024 03:30:20 server2 maldet(1552620): {update} hashing install files and checking against server... Mar 29 2024 03:30:20 server2 maldet(1552620): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Mar 29 2024 03:30:20 server2 maldet(1552620): {update} latest version already installed. Mar 29 2024 03:30:20 server2 maldet(1552755): {sigup} performing signature update check... Mar 29 2024 03:30:20 server2 maldet(1552755): {sigup} local signature set is version 202403251330193 Mar 29 2024 03:30:20 server2 maldet(1552755): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Mar 29 2024 03:30:21 server2 maldet(1552755): {sigup} new signature set 202403282084305 available Mar 29 2024 03:30:21 server2 maldet(1552755): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Mar 29 2024 03:30:21 server2 maldet(1552755): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Mar 29 2024 03:30:21 server2 maldet(1552755): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Mar 29 2024 03:30:21 server2 maldet(1552755): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Mar 29 2024 03:30:21 server2 maldet(1552755): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Mar 29 2024 03:30:21 server2 maldet(1552755): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Mar 29 2024 03:30:21 server2 maldet(1552755): {sigup} verified md5sum of maldet-sigpack.tgz Mar 29 2024 03:30:21 server2 maldet(1552755): {sigup} unpacked and installed maldet-sigpack.tgz Mar 29 2024 03:30:21 server2 maldet(1552755): {sigup} verified md5sum of maldet-clean.tgz Mar 29 2024 03:30:21 server2 maldet(1552755): {sigup} unpacked and installed maldet-clean.tgz Mar 29 2024 03:30:21 server2 maldet(1552755): {sigup} signature set update completed Mar 29 2024 03:30:21 server2 maldet(1552755): {sigup} 17637 signatures (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Mar 29 2024 03:30:21 server2 maldet(1552983): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Mar 29 2024 03:30:22 server2 maldet(1552983): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Mar 29 2024 03:30:22 server2 maldet(1552983): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Mar 29 2024 03:30:22 server2 maldet(1552983): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Mar 29 2024 03:30:22 server2 maldet(1552983): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Mar 29 2024 03:30:46 server2 maldet(1552983): {scan} file list completed in 23s, found 386 files... Mar 29 2024 03:30:46 server2 maldet(1552983): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Mar 29 2024 03:30:46 server2 maldet(1552983): {scan} scan of (386 files) in progress... Mar 29 2024 03:30:56 server2 maldet(1552983): {scan} scan completed on : files 386, malware hits 0, cleaned hits 0, time 35s Mar 29 2024 03:30:56 server2 maldet(1552983): {scan} scan report saved, to view run: maldet --report 240329-0330.1552983 Mar 30 2024 03:20:13 server2 maldet(1803515): {update} checking for available updates... Mar 30 2024 03:20:15 server2 maldet(1803515): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Mar 30 2024 03:20:15 server2 maldet(1803515): {update} hashing install files and checking against server... Mar 30 2024 03:20:15 server2 maldet(1803515): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Mar 30 2024 03:20:15 server2 maldet(1803515): {update} latest version already installed. Mar 30 2024 03:20:15 server2 maldet(1803653): {sigup} performing signature update check... Mar 30 2024 03:20:15 server2 maldet(1803653): {sigup} local signature set is version 202403282084305 Mar 30 2024 03:20:15 server2 maldet(1803653): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Mar 30 2024 03:20:15 server2 maldet(1803653): {sigup} latest signature set already installed Mar 30 2024 03:20:15 server2 maldet(1803764): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Mar 30 2024 03:20:15 server2 maldet(1803764): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Mar 30 2024 03:20:15 server2 maldet(1803764): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Mar 30 2024 03:20:15 server2 maldet(1803764): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Mar 30 2024 03:20:15 server2 maldet(1803764): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Mar 30 2024 03:20:33 server2 maldet(1803764): {scan} file list completed in 18s, found 378 files... Mar 30 2024 03:20:33 server2 maldet(1803764): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Mar 30 2024 03:20:33 server2 maldet(1803764): {scan} scan of (378 files) in progress... Mar 30 2024 03:20:42 server2 maldet(1803764): {scan} scan completed on : files 378, malware hits 0, cleaned hits 0, time 27s Mar 30 2024 03:20:42 server2 maldet(1803764): {scan} scan report saved, to view run: maldet --report 240330-0320.1803764 Mar 31 2024 03:44:15 server2 maldet(2049975): {update} checking for available updates... Mar 31 2024 03:44:15 server2 maldet(2049975): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Mar 31 2024 03:44:15 server2 maldet(2049975): {update} hashing install files and checking against server... Mar 31 2024 03:44:15 server2 maldet(2049975): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Mar 31 2024 03:44:15 server2 maldet(2049975): {update} latest version already installed. Mar 31 2024 03:44:15 server2 maldet(2050115): {sigup} performing signature update check... Mar 31 2024 03:44:15 server2 maldet(2050115): {sigup} local signature set is version 202403282084305 Mar 31 2024 03:44:15 server2 maldet(2050115): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Mar 31 2024 03:44:15 server2 maldet(2050115): {sigup} latest signature set already installed Mar 31 2024 03:44:15 server2 maldet(2050235): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Mar 31 2024 03:44:17 server2 maldet(2050235): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Mar 31 2024 03:44:17 server2 maldet(2050235): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Mar 31 2024 03:44:17 server2 maldet(2050235): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Mar 31 2024 03:44:17 server2 maldet(2050235): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Mar 31 2024 03:44:36 server2 maldet(2050235): {scan} file list completed in 19s, found 793 files... Mar 31 2024 03:44:36 server2 maldet(2050235): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Mar 31 2024 03:44:36 server2 maldet(2050235): {scan} scan of (793 files) in progress... Mar 31 2024 03:44:56 server2 maldet(2050235): {scan} scan completed on : files 793, malware hits 0, cleaned hits 0, time 41s Mar 31 2024 03:44:56 server2 maldet(2050235): {scan} scan report saved, to view run: maldet --report 240331-0344.2050235 Apr 01 2024 03:28:11 server2 maldet(2298511): {update} checking for available updates... Apr 01 2024 03:28:11 server2 maldet(2298511): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Apr 01 2024 03:28:11 server2 maldet(2298511): {update} hashing install files and checking against server... Apr 01 2024 03:28:11 server2 maldet(2298511): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Apr 01 2024 03:28:11 server2 maldet(2298511): {update} latest version already installed. Apr 01 2024 03:28:11 server2 maldet(2298649): {sigup} performing signature update check... Apr 01 2024 03:28:11 server2 maldet(2298649): {sigup} local signature set is version 202403282084305 Apr 01 2024 03:28:12 server2 maldet(2298649): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Apr 01 2024 03:28:12 server2 maldet(2298649): {sigup} new signature set 202403312839441 available Apr 01 2024 03:28:12 server2 maldet(2298649): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Apr 01 2024 03:28:12 server2 maldet(2298649): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Apr 01 2024 03:28:12 server2 maldet(2298649): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Apr 01 2024 03:28:12 server2 maldet(2298649): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Apr 01 2024 03:28:12 server2 maldet(2298649): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Apr 01 2024 03:28:12 server2 maldet(2298649): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Apr 01 2024 03:28:12 server2 maldet(2298649): {sigup} verified md5sum of maldet-sigpack.tgz Apr 01 2024 03:28:12 server2 maldet(2298649): {sigup} unpacked and installed maldet-sigpack.tgz Apr 01 2024 03:28:12 server2 maldet(2298649): {sigup} verified md5sum of maldet-clean.tgz Apr 01 2024 03:28:12 server2 maldet(2298649): {sigup} unpacked and installed maldet-clean.tgz Apr 01 2024 03:28:12 server2 maldet(2298649): {sigup} signature set update completed Apr 01 2024 03:28:12 server2 maldet(2298649): {sigup} 17637 signatures (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Apr 01 2024 03:28:12 server2 maldet(2298879): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Apr 01 2024 03:28:12 server2 maldet(2298879): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Apr 01 2024 03:28:12 server2 maldet(2298879): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Apr 01 2024 03:28:12 server2 maldet(2298879): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Apr 01 2024 03:28:13 server2 maldet(2298879): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Apr 01 2024 03:28:32 server2 maldet(2298879): {scan} file list completed in 20s, found 332 files... Apr 01 2024 03:28:32 server2 maldet(2298879): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Apr 01 2024 03:28:32 server2 maldet(2298879): {scan} scan of (332 files) in progress... Apr 01 2024 03:28:39 server2 maldet(2298879): {scan} scan completed on : files 332, malware hits 0, cleaned hits 0, time 27s Apr 01 2024 03:28:39 server2 maldet(2298879): {scan} scan report saved, to view run: maldet --report 240401-0328.2298879 Apr 02 2024 03:46:45 server2 maldet(2550253): {update} checking for available updates... Apr 02 2024 03:46:45 server2 maldet(2550253): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Apr 02 2024 03:46:45 server2 maldet(2550253): {update} hashing install files and checking against server... Apr 02 2024 03:46:45 server2 maldet(2550253): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Apr 02 2024 03:46:45 server2 maldet(2550253): {update} latest version already installed. Apr 02 2024 03:46:45 server2 maldet(2550386): {sigup} performing signature update check... Apr 02 2024 03:46:45 server2 maldet(2550386): {sigup} local signature set is version 202403312839441 Apr 02 2024 03:46:45 server2 maldet(2550386): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Apr 02 2024 03:46:45 server2 maldet(2550386): {sigup} new signature set 202404013548654 available Apr 02 2024 03:46:45 server2 maldet(2550386): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Apr 02 2024 03:46:45 server2 maldet(2550386): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Apr 02 2024 03:46:45 server2 maldet(2550386): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Apr 02 2024 03:46:45 server2 maldet(2550386): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Apr 02 2024 03:46:46 server2 maldet(2550386): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Apr 02 2024 03:46:46 server2 maldet(2550386): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Apr 02 2024 03:46:46 server2 maldet(2550386): {sigup} verified md5sum of maldet-sigpack.tgz Apr 02 2024 03:46:46 server2 maldet(2550386): {sigup} unpacked and installed maldet-sigpack.tgz Apr 02 2024 03:46:46 server2 maldet(2550386): {sigup} verified md5sum of maldet-clean.tgz Apr 02 2024 03:46:46 server2 maldet(2550386): {sigup} unpacked and installed maldet-clean.tgz Apr 02 2024 03:46:46 server2 maldet(2550386): {sigup} signature set update completed Apr 02 2024 03:46:46 server2 maldet(2550386): {sigup} 17637 signatures (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Apr 02 2024 03:46:46 server2 maldet(2550615): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Apr 02 2024 03:46:46 server2 maldet(2550615): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Apr 02 2024 03:46:46 server2 maldet(2550615): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Apr 02 2024 03:46:46 server2 maldet(2550615): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Apr 02 2024 03:46:46 server2 maldet(2550615): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Apr 02 2024 03:47:06 server2 maldet(2550615): {scan} file list completed in 20s, found 528 files... Apr 02 2024 03:47:06 server2 maldet(2550615): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Apr 02 2024 03:47:06 server2 maldet(2550615): {scan} scan of (528 files) in progress... Apr 02 2024 03:47:19 server2 maldet(2550615): {scan} scan completed on : files 528, malware hits 0, cleaned hits 0, time 33s Apr 02 2024 03:47:19 server2 maldet(2550615): {scan} scan report saved, to view run: maldet --report 240402-0346.2550615 Apr 03 2024 03:44:33 server2 maldet(2795381): {update} checking for available updates... Apr 03 2024 03:44:33 server2 maldet(2795381): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Apr 03 2024 03:44:33 server2 maldet(2795381): {update} hashing install files and checking against server... Apr 03 2024 03:44:33 server2 maldet(2795381): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Apr 03 2024 03:44:33 server2 maldet(2795381): {update} latest version already installed. Apr 03 2024 03:44:34 server2 maldet(2795515): {sigup} performing signature update check... Apr 03 2024 03:44:34 server2 maldet(2795515): {sigup} local signature set is version 202404013548654 Apr 03 2024 03:44:34 server2 maldet(2795515): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Apr 03 2024 03:44:34 server2 maldet(2795515): {sigup} latest signature set already installed Apr 03 2024 03:44:34 server2 maldet(2795627): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Apr 03 2024 03:44:35 server2 maldet(2795627): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Apr 03 2024 03:44:35 server2 maldet(2795627): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Apr 03 2024 03:44:35 server2 maldet(2795627): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Apr 03 2024 03:44:35 server2 maldet(2795627): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Apr 03 2024 03:44:53 server2 maldet(2795627): {scan} file list completed in 18s, found 403 files... Apr 03 2024 03:44:53 server2 maldet(2795627): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Apr 03 2024 03:44:53 server2 maldet(2795627): {scan} scan of (403 files) in progress... Apr 03 2024 03:45:04 server2 maldet(2795627): {scan} scan completed on : files 403, malware hits 0, cleaned hits 0, time 30s Apr 03 2024 03:45:04 server2 maldet(2795627): {scan} scan report saved, to view run: maldet --report 240403-0344.2795627 Apr 04 2024 03:58:11 server2 maldet(3043699): {update} checking for available updates... Apr 04 2024 03:58:11 server2 maldet(3043699): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Apr 04 2024 03:58:11 server2 maldet(3043699): {update} hashing install files and checking against server... Apr 04 2024 03:58:11 server2 maldet(3043699): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Apr 04 2024 03:58:11 server2 maldet(3043699): {update} latest version already installed. Apr 04 2024 03:58:11 server2 maldet(3043837): {sigup} performing signature update check... Apr 04 2024 03:58:11 server2 maldet(3043837): {sigup} local signature set is version 202404013548654 Apr 04 2024 03:58:11 server2 maldet(3043837): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Apr 04 2024 03:58:11 server2 maldet(3043837): {sigup} latest signature set already installed Apr 04 2024 03:58:12 server2 maldet(3043948): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Apr 04 2024 03:58:12 server2 maldet(3043948): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Apr 04 2024 03:58:12 server2 maldet(3043948): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Apr 04 2024 03:58:12 server2 maldet(3043948): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Apr 04 2024 03:58:12 server2 maldet(3043948): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Apr 04 2024 03:58:33 server2 maldet(3043948): {scan} file list completed in 21s, found 1098 files... Apr 04 2024 03:58:33 server2 maldet(3043948): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Apr 04 2024 03:58:33 server2 maldet(3043948): {scan} scan of (1098 files) in progress... Apr 04 2024 03:58:51 server2 maldet(3043948): {scan} scan completed on : files 1098, malware hits 0, cleaned hits 0, time 39s Apr 04 2024 03:58:51 server2 maldet(3043948): {scan} scan report saved, to view run: maldet --report 240404-0358.3043948 Apr 05 2024 03:21:57 server2 maldet(3345815): {update} checking for available updates... Apr 05 2024 03:21:57 server2 maldet(3345815): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Apr 05 2024 03:21:57 server2 maldet(3345815): {update} hashing install files and checking against server... Apr 05 2024 03:21:57 server2 maldet(3345815): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Apr 05 2024 03:21:57 server2 maldet(3345815): {update} latest version already installed. Apr 05 2024 03:21:57 server2 maldet(3345948): {sigup} performing signature update check... Apr 05 2024 03:21:57 server2 maldet(3345948): {sigup} local signature set is version 202404013548654 Apr 05 2024 03:21:57 server2 maldet(3345948): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Apr 05 2024 03:21:57 server2 maldet(3345948): {sigup} new signature set 20240404555147 available Apr 05 2024 03:21:57 server2 maldet(3345948): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Apr 05 2024 03:21:57 server2 maldet(3345948): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Apr 05 2024 03:21:57 server2 maldet(3345948): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Apr 05 2024 03:21:57 server2 maldet(3345948): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Apr 05 2024 03:21:58 server2 maldet(3345948): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Apr 05 2024 03:21:58 server2 maldet(3345948): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Apr 05 2024 03:21:58 server2 maldet(3345948): {sigup} verified md5sum of maldet-sigpack.tgz Apr 05 2024 03:21:58 server2 maldet(3345948): {sigup} unpacked and installed maldet-sigpack.tgz Apr 05 2024 03:21:58 server2 maldet(3345948): {sigup} verified md5sum of maldet-clean.tgz Apr 05 2024 03:21:58 server2 maldet(3345948): {sigup} unpacked and installed maldet-clean.tgz Apr 05 2024 03:21:58 server2 maldet(3345948): {sigup} signature set update completed Apr 05 2024 03:21:58 server2 maldet(3345948): {sigup} 17637 signatures (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Apr 05 2024 03:21:58 server2 maldet(3346177): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Apr 05 2024 03:21:59 server2 maldet(3346177): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Apr 05 2024 03:21:59 server2 maldet(3346177): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Apr 05 2024 03:21:59 server2 maldet(3346177): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Apr 05 2024 03:21:59 server2 maldet(3346177): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Apr 05 2024 03:22:20 server2 maldet(3346177): {scan} file list completed in 21s, found 473 files... Apr 05 2024 03:22:20 server2 maldet(3346177): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Apr 05 2024 03:22:20 server2 maldet(3346177): {scan} scan of (473 files) in progress... Apr 05 2024 03:22:34 server2 maldet(3346177): {scan} scan completed on : files 473, malware hits 0, cleaned hits 0, time 36s Apr 05 2024 03:22:34 server2 maldet(3346177): {scan} scan report saved, to view run: maldet --report 240405-0321.3346177 Apr 06 2024 03:49:43 server2 maldet(3583010): {update} checking for available updates... Apr 06 2024 03:49:43 server2 maldet(3583010): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Apr 06 2024 03:49:43 server2 maldet(3583010): {update} hashing install files and checking against server... Apr 06 2024 03:49:43 server2 maldet(3583010): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Apr 06 2024 03:49:43 server2 maldet(3583010): {update} latest version already installed. Apr 06 2024 03:49:43 server2 maldet(3583143): {sigup} performing signature update check... Apr 06 2024 03:49:43 server2 maldet(3583143): {sigup} local signature set is version 20240404555147 Apr 06 2024 03:49:43 server2 maldet(3583143): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Apr 06 2024 03:49:43 server2 maldet(3583143): {sigup} latest signature set already installed Apr 06 2024 03:49:43 server2 maldet(3583254): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Apr 06 2024 03:49:44 server2 maldet(3583254): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Apr 06 2024 03:49:44 server2 maldet(3583254): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Apr 06 2024 03:49:44 server2 maldet(3583254): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Apr 06 2024 03:49:44 server2 maldet(3583254): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Apr 06 2024 03:50:00 server2 maldet(3583254): {scan} file list completed in 16s, found 350 files... Apr 06 2024 03:50:00 server2 maldet(3583254): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Apr 06 2024 03:50:00 server2 maldet(3583254): {scan} scan of (350 files) in progress... Apr 06 2024 03:50:09 server2 maldet(3583254): {scan} scan completed on : files 350, malware hits 0, cleaned hits 0, time 26s Apr 06 2024 03:50:09 server2 maldet(3583254): {scan} scan report saved, to view run: maldet --report 240406-0349.3583254 Apr 07 2024 03:17:31 server2 maldet(3817363): {update} checking for available updates... Apr 07 2024 03:17:31 server2 maldet(3817363): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Apr 07 2024 03:17:31 server2 maldet(3817363): {update} hashing install files and checking against server... Apr 07 2024 03:17:31 server2 maldet(3817363): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Apr 07 2024 03:17:31 server2 maldet(3817363): {update} latest version already installed. Apr 07 2024 03:17:31 server2 maldet(3817496): {sigup} performing signature update check... Apr 07 2024 03:17:31 server2 maldet(3817496): {sigup} local signature set is version 20240404555147 Apr 07 2024 03:17:31 server2 maldet(3817496): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Apr 07 2024 03:17:31 server2 maldet(3817496): {sigup} latest signature set already installed Apr 07 2024 03:17:32 server2 maldet(3817607): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Apr 07 2024 03:17:32 server2 maldet(3817607): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Apr 07 2024 03:17:32 server2 maldet(3817607): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Apr 07 2024 03:17:32 server2 maldet(3817607): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Apr 07 2024 03:17:32 server2 maldet(3817607): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Apr 07 2024 03:17:50 server2 maldet(3817607): {scan} file list completed in 18s, found 317 files... Apr 07 2024 03:17:50 server2 maldet(3817607): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Apr 07 2024 03:17:50 server2 maldet(3817607): {scan} scan of (317 files) in progress... Apr 07 2024 03:18:00 server2 maldet(3817607): {scan} scan completed on : files 317, malware hits 0, cleaned hits 0, time 28s Apr 07 2024 03:18:00 server2 maldet(3817607): {scan} scan report saved, to view run: maldet --report 240407-0317.3817607 Apr 08 2024 03:27:41 server2 maldet(4061409): {update} checking for available updates... Apr 08 2024 03:27:41 server2 maldet(4061409): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Apr 08 2024 03:27:41 server2 maldet(4061409): {update} hashing install files and checking against server... Apr 08 2024 03:27:42 server2 maldet(4061409): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Apr 08 2024 03:27:42 server2 maldet(4061409): {update} latest version already installed. Apr 08 2024 03:27:42 server2 maldet(4061542): {sigup} performing signature update check... Apr 08 2024 03:27:42 server2 maldet(4061542): {sigup} local signature set is version 20240404555147 Apr 08 2024 03:27:42 server2 maldet(4061542): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Apr 08 2024 03:27:42 server2 maldet(4061542): {sigup} new signature set 202404071311303 available Apr 08 2024 03:27:42 server2 maldet(4061542): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Apr 08 2024 03:27:42 server2 maldet(4061542): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Apr 08 2024 03:27:42 server2 maldet(4061542): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Apr 08 2024 03:27:42 server2 maldet(4061542): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Apr 08 2024 03:27:42 server2 maldet(4061542): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Apr 08 2024 03:27:42 server2 maldet(4061542): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Apr 08 2024 03:27:42 server2 maldet(4061542): {sigup} verified md5sum of maldet-sigpack.tgz Apr 08 2024 03:27:42 server2 maldet(4061542): {sigup} unpacked and installed maldet-sigpack.tgz Apr 08 2024 03:27:42 server2 maldet(4061542): {sigup} verified md5sum of maldet-clean.tgz Apr 08 2024 03:27:42 server2 maldet(4061542): {sigup} unpacked and installed maldet-clean.tgz Apr 08 2024 03:27:42 server2 maldet(4061542): {sigup} signature set update completed Apr 08 2024 03:27:42 server2 maldet(4061542): {sigup} 17637 signatures (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Apr 08 2024 03:27:42 server2 maldet(4061770): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Apr 08 2024 03:27:43 server2 maldet(4061770): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Apr 08 2024 03:27:43 server2 maldet(4061770): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Apr 08 2024 03:27:43 server2 maldet(4061770): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Apr 08 2024 03:27:43 server2 maldet(4061770): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Apr 08 2024 03:28:00 server2 maldet(4061770): {scan} file list completed in 17s, found 638 files... Apr 08 2024 03:28:00 server2 maldet(4061770): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Apr 08 2024 03:28:00 server2 maldet(4061770): {scan} scan of (638 files) in progress... Apr 08 2024 03:28:21 server2 maldet(4061770): {scan} scan completed on : files 638, malware hits 0, cleaned hits 0, time 39s Apr 08 2024 03:28:21 server2 maldet(4061770): {scan} scan report saved, to view run: maldet --report 240408-0327.4061770 Apr 09 2024 03:12:20 server2 maldet(101395): {update} checking for available updates... Apr 09 2024 03:12:20 server2 maldet(101395): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Apr 09 2024 03:12:20 server2 maldet(101395): {update} hashing install files and checking against server... Apr 09 2024 03:12:20 server2 maldet(101395): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Apr 09 2024 03:12:20 server2 maldet(101395): {update} latest version already installed. Apr 09 2024 03:12:20 server2 maldet(101529): {sigup} performing signature update check... Apr 09 2024 03:12:20 server2 maldet(101529): {sigup} local signature set is version 202404071311303 Apr 09 2024 03:12:20 server2 maldet(101529): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Apr 09 2024 03:12:20 server2 maldet(101529): {sigup} latest signature set already installed Apr 09 2024 03:12:20 server2 maldet(101641): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Apr 09 2024 03:12:21 server2 maldet(101641): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Apr 09 2024 03:12:21 server2 maldet(101641): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Apr 09 2024 03:12:21 server2 maldet(101641): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Apr 09 2024 03:12:21 server2 maldet(101641): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Apr 09 2024 03:12:39 server2 maldet(101641): {scan} file list completed in 18s, found 432 files... Apr 09 2024 03:12:39 server2 maldet(101641): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Apr 09 2024 03:12:39 server2 maldet(101641): {scan} scan of (432 files) in progress... Apr 09 2024 03:12:49 server2 maldet(101641): {scan} scan completed on : files 432, malware hits 0, cleaned hits 0, time 29s Apr 09 2024 03:12:49 server2 maldet(101641): {scan} scan report saved, to view run: maldet --report 240409-0312.101641 Apr 10 2024 03:32:07 server2 maldet(349192): {update} checking for available updates... Apr 10 2024 03:32:07 server2 maldet(349192): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Apr 10 2024 03:32:07 server2 maldet(349192): {update} hashing install files and checking against server... Apr 10 2024 03:32:08 server2 maldet(349192): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Apr 10 2024 03:32:08 server2 maldet(349192): {update} latest version already installed. Apr 10 2024 03:32:08 server2 maldet(349325): {sigup} performing signature update check... Apr 10 2024 03:32:08 server2 maldet(349325): {sigup} local signature set is version 202404071311303 Apr 10 2024 03:32:08 server2 maldet(349325): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Apr 10 2024 03:32:08 server2 maldet(349325): {sigup} latest signature set already installed Apr 10 2024 03:32:08 server2 maldet(349436): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Apr 10 2024 03:32:09 server2 maldet(349436): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Apr 10 2024 03:32:09 server2 maldet(349436): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Apr 10 2024 03:32:09 server2 maldet(349436): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Apr 10 2024 03:32:09 server2 maldet(349436): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Apr 10 2024 03:32:27 server2 maldet(349436): {scan} file list completed in 18s, found 335 files... Apr 10 2024 03:32:27 server2 maldet(349436): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Apr 10 2024 03:32:27 server2 maldet(349436): {scan} scan of (335 files) in progress... Apr 10 2024 03:32:38 server2 maldet(349436): {scan} clamscan returned an error, check /usr/local/maldetect/logs/clamscan_log for details! Apr 10 2024 03:32:38 server2 maldet(349436): {scan} scan completed on : files 335, malware hits 0, cleaned hits 0, time 30s Apr 10 2024 03:32:38 server2 maldet(349436): {scan} scan report saved, to view run: maldet --report 240410-0332.349436 Apr 11 2024 03:42:46 server2 maldet(586449): {update} checking for available updates... Apr 11 2024 03:42:47 server2 maldet(586449): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Apr 11 2024 03:42:47 server2 maldet(586449): {update} hashing install files and checking against server... Apr 11 2024 03:42:47 server2 maldet(586449): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Apr 11 2024 03:42:47 server2 maldet(586449): {update} latest version already installed. Apr 11 2024 03:42:47 server2 maldet(586583): {sigup} performing signature update check... Apr 11 2024 03:42:47 server2 maldet(586583): {sigup} local signature set is version 202404071311303 Apr 11 2024 03:42:47 server2 maldet(586583): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Apr 11 2024 03:42:47 server2 maldet(586583): {sigup} new signature set 202404102805070 available Apr 11 2024 03:42:47 server2 maldet(586583): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Apr 11 2024 03:42:47 server2 maldet(586583): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Apr 11 2024 03:42:47 server2 maldet(586583): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Apr 11 2024 03:42:47 server2 maldet(586583): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Apr 11 2024 03:42:47 server2 maldet(586583): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Apr 11 2024 03:42:47 server2 maldet(586583): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Apr 11 2024 03:42:47 server2 maldet(586583): {sigup} verified md5sum of maldet-sigpack.tgz Apr 11 2024 03:42:47 server2 maldet(586583): {sigup} unpacked and installed maldet-sigpack.tgz Apr 11 2024 03:42:47 server2 maldet(586583): {sigup} verified md5sum of maldet-clean.tgz Apr 11 2024 03:42:47 server2 maldet(586583): {sigup} unpacked and installed maldet-clean.tgz Apr 11 2024 03:42:47 server2 maldet(586583): {sigup} signature set update completed Apr 11 2024 03:42:48 server2 maldet(586583): {sigup} 17638 signatures (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Apr 11 2024 03:42:48 server2 maldet(586812): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Apr 11 2024 03:42:48 server2 maldet(586812): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Apr 11 2024 03:42:48 server2 maldet(586812): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Apr 11 2024 03:42:48 server2 maldet(586812): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Apr 11 2024 03:42:49 server2 maldet(586812): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Apr 11 2024 03:43:17 server2 maldet(586812): {scan} file list completed in 29s, found 1495 files... Apr 11 2024 03:43:17 server2 maldet(586812): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Apr 11 2024 03:43:17 server2 maldet(586812): {scan} scan of (1495 files) in progress... Apr 11 2024 03:43:41 server2 maldet(586812): {hit} malware hit {HEX}php.malware.magento.599 found for /home/shadybiz/public_html/storage/framework/sessions/8PHlXHuvQtcrrBHx5CH0bwXxHHf0q5XiTPEATmF0 Apr 11 2024 03:43:41 server2 maldet(586812): {hit} malware hit {YARA}r57shell_php_php found for /home/shadybiz/public_html/storage/framework/sessions/6ja2vzCNZkxHGZjCBdHwzbjUaQqpv5tsBxFXqSYo Apr 11 2024 03:43:41 server2 maldet(586812): {scan} scan completed on : files 1495, malware hits 2, cleaned hits 0, time 53s Apr 11 2024 03:43:41 server2 maldet(586812): {scan} scan report saved, to view run: maldet --report 240411-0342.586812 Apr 11 2024 03:43:41 server2 maldet(586812): {scan} quarantine is disabled! set quarantine_hits=1 in conf.maldet or to quarantine results run: maldet -q 240411-0342.586812 Apr 12 2024 03:14:45 server2 maldet(835467): {update} checking for available updates... Apr 12 2024 03:14:45 server2 maldet(835467): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Apr 12 2024 03:14:45 server2 maldet(835467): {update} hashing install files and checking against server... Apr 12 2024 03:14:45 server2 maldet(835467): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Apr 12 2024 03:14:45 server2 maldet(835467): {update} latest version already installed. Apr 12 2024 03:14:45 server2 maldet(835600): {sigup} performing signature update check... Apr 12 2024 03:14:45 server2 maldet(835600): {sigup} local signature set is version 202404102805070 Apr 12 2024 03:14:45 server2 maldet(835600): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Apr 12 2024 03:14:45 server2 maldet(835600): {sigup} latest signature set already installed Apr 12 2024 03:14:45 server2 maldet(835711): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Apr 12 2024 03:14:46 server2 maldet(835711): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Apr 12 2024 03:14:47 server2 maldet(835711): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Apr 12 2024 03:14:47 server2 maldet(835711): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Apr 12 2024 03:14:47 server2 maldet(835711): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Apr 12 2024 03:15:15 server2 maldet(835711): {scan} file list completed in 28s, found 702 files... Apr 12 2024 03:15:15 server2 maldet(835711): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Apr 12 2024 03:15:15 server2 maldet(835711): {scan} scan of (702 files) in progress... Apr 12 2024 03:15:38 server2 maldet(835711): {scan} scan completed on : files 702, malware hits 0, cleaned hits 0, time 53s Apr 12 2024 03:15:38 server2 maldet(835711): {scan} scan report saved, to view run: maldet --report 240412-0314.835711 Apr 13 2024 03:16:07 server2 maldet(1081040): {update} checking for available updates... Apr 13 2024 03:16:08 server2 maldet(1081040): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Apr 13 2024 03:16:08 server2 maldet(1081040): {update} hashing install files and checking against server... Apr 13 2024 03:16:08 server2 maldet(1081040): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Apr 13 2024 03:16:08 server2 maldet(1081040): {update} latest version already installed. Apr 13 2024 03:16:08 server2 maldet(1081173): {sigup} performing signature update check... Apr 13 2024 03:16:08 server2 maldet(1081173): {sigup} local signature set is version 202404102805070 Apr 13 2024 03:16:08 server2 maldet(1081173): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Apr 13 2024 03:16:08 server2 maldet(1081173): {sigup} new signature set 202404133479675 available Apr 13 2024 03:16:08 server2 maldet(1081173): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Apr 13 2024 03:16:08 server2 maldet(1081173): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Apr 13 2024 03:16:08 server2 maldet(1081173): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Apr 13 2024 03:16:08 server2 maldet(1081173): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Apr 13 2024 03:16:08 server2 maldet(1081173): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Apr 13 2024 03:16:08 server2 maldet(1081173): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Apr 13 2024 03:16:08 server2 maldet(1081173): {sigup} verified md5sum of maldet-sigpack.tgz Apr 13 2024 03:16:09 server2 maldet(1081173): {sigup} unpacked and installed maldet-sigpack.tgz Apr 13 2024 03:16:09 server2 maldet(1081173): {sigup} verified md5sum of maldet-clean.tgz Apr 13 2024 03:16:09 server2 maldet(1081173): {sigup} unpacked and installed maldet-clean.tgz Apr 13 2024 03:16:09 server2 maldet(1081173): {sigup} signature set update completed Apr 13 2024 03:16:09 server2 maldet(1081173): {sigup} 17638 signatures (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Apr 13 2024 03:16:09 server2 maldet(1081401): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Apr 13 2024 03:16:10 server2 maldet(1081401): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Apr 13 2024 03:16:10 server2 maldet(1081401): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Apr 13 2024 03:16:10 server2 maldet(1081401): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Apr 13 2024 03:16:10 server2 maldet(1081401): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Apr 13 2024 03:16:51 server2 maldet(1081401): {scan} file list completed in 41s, found 391 files... Apr 13 2024 03:16:52 server2 maldet(1081401): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Apr 13 2024 03:16:52 server2 maldet(1081401): {scan} scan of (391 files) in progress... Apr 13 2024 03:17:09 server2 maldet(1081401): {scan} scan completed on : files 391, malware hits 0, cleaned hits 0, time 60s Apr 13 2024 03:17:09 server2 maldet(1081401): {scan} scan report saved, to view run: maldet --report 240413-0316.1081401 Apr 14 2024 03:34:01 server2 maldet(1351573): {update} checking for available updates... Apr 14 2024 03:34:01 server2 maldet(1351573): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Apr 14 2024 03:34:01 server2 maldet(1351573): {update} hashing install files and checking against server... Apr 14 2024 03:34:01 server2 maldet(1351573): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Apr 14 2024 03:34:01 server2 maldet(1351573): {update} latest version already installed. Apr 14 2024 03:34:01 server2 maldet(1351708): {sigup} performing signature update check... Apr 14 2024 03:34:01 server2 maldet(1351708): {sigup} local signature set is version 202404133479675 Apr 14 2024 03:34:01 server2 maldet(1351708): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Apr 14 2024 03:34:01 server2 maldet(1351708): {sigup} latest signature set already installed Apr 14 2024 03:34:01 server2 maldet(1351828): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Apr 14 2024 03:34:03 server2 maldet(1351828): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Apr 14 2024 03:34:03 server2 maldet(1351828): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Apr 14 2024 03:34:03 server2 maldet(1351828): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Apr 14 2024 03:34:03 server2 maldet(1351828): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Apr 14 2024 03:34:15 server2 maldet(1351828): {scan} file list completed in 12s, found 331 files... Apr 14 2024 03:34:15 server2 maldet(1351828): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Apr 14 2024 03:34:15 server2 maldet(1351828): {scan} scan of (331 files) in progress... Apr 14 2024 03:34:25 server2 maldet(1351828): {scan} scan completed on : files 331, malware hits 0, cleaned hits 0, time 24s Apr 14 2024 03:34:25 server2 maldet(1351828): {scan} scan report saved, to view run: maldet --report 240414-0334.1351828 Apr 15 2024 03:26:42 server2 maldet(1593424): {update} checking for available updates... Apr 15 2024 03:26:42 server2 maldet(1593424): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Apr 15 2024 03:26:42 server2 maldet(1593424): {update} hashing install files and checking against server... Apr 15 2024 03:26:42 server2 maldet(1593424): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Apr 15 2024 03:26:42 server2 maldet(1593424): {update} latest version already installed. Apr 15 2024 03:26:42 server2 maldet(1593558): {sigup} performing signature update check... Apr 15 2024 03:26:42 server2 maldet(1593558): {sigup} local signature set is version 202404133479675 Apr 15 2024 03:26:42 server2 maldet(1593558): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Apr 15 2024 03:26:42 server2 maldet(1593558): {sigup} latest signature set already installed Apr 15 2024 03:26:42 server2 maldet(1593669): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Apr 15 2024 03:26:43 server2 maldet(1593669): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Apr 15 2024 03:26:43 server2 maldet(1593669): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Apr 15 2024 03:26:43 server2 maldet(1593669): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Apr 15 2024 03:26:43 server2 maldet(1593669): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Apr 15 2024 03:27:07 server2 maldet(1593669): {scan} file list completed in 24s, found 489 files... Apr 15 2024 03:27:07 server2 maldet(1593669): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Apr 15 2024 03:27:07 server2 maldet(1593669): {scan} scan of (489 files) in progress... Apr 15 2024 03:29:09 server2 maldet(1593669): {scan} scan completed on : files 489, malware hits 0, cleaned hits 0, time 147s Apr 15 2024 03:29:09 server2 maldet(1593669): {scan} scan report saved, to view run: maldet --report 240415-0326.1593669 Apr 16 2024 03:33:00 server2 maldet(1859259): {update} checking for available updates... Apr 16 2024 03:33:00 server2 maldet(1859259): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Apr 16 2024 03:33:00 server2 maldet(1859259): {update} hashing install files and checking against server... Apr 16 2024 03:33:00 server2 maldet(1859259): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Apr 16 2024 03:33:00 server2 maldet(1859259): {update} latest version already installed. Apr 16 2024 03:33:01 server2 maldet(1859392): {sigup} performing signature update check... Apr 16 2024 03:33:01 server2 maldet(1859392): {sigup} local signature set is version 202404133479675 Apr 16 2024 03:33:01 server2 maldet(1859392): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Apr 16 2024 03:33:01 server2 maldet(1859392): {sigup} new signature set 202404164184748 available Apr 16 2024 03:33:01 server2 maldet(1859392): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Apr 16 2024 03:33:01 server2 maldet(1859392): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Apr 16 2024 03:33:02 server2 maldet(1859392): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Apr 16 2024 03:33:02 server2 maldet(1859392): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Apr 16 2024 03:33:02 server2 maldet(1859392): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Apr 16 2024 03:33:02 server2 maldet(1859392): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Apr 16 2024 03:33:02 server2 maldet(1859392): {sigup} verified md5sum of maldet-sigpack.tgz Apr 16 2024 03:33:02 server2 maldet(1859392): {sigup} unpacked and installed maldet-sigpack.tgz Apr 16 2024 03:33:02 server2 maldet(1859392): {sigup} verified md5sum of maldet-clean.tgz Apr 16 2024 03:33:02 server2 maldet(1859392): {sigup} unpacked and installed maldet-clean.tgz Apr 16 2024 03:33:02 server2 maldet(1859392): {sigup} signature set update completed Apr 16 2024 03:33:03 server2 maldet(1859392): {sigup} 17638 signatures (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Apr 16 2024 03:33:03 server2 maldet(1859676): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Apr 16 2024 03:33:04 server2 maldet(1859676): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Apr 16 2024 03:33:04 server2 maldet(1859676): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Apr 16 2024 03:33:04 server2 maldet(1859676): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Apr 16 2024 03:33:04 server2 maldet(1859676): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Apr 16 2024 03:33:37 server2 maldet(1859676): {scan} file list completed in 32s, found 446 files... Apr 16 2024 03:33:37 server2 maldet(1859676): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Apr 16 2024 03:33:37 server2 maldet(1859676): {scan} scan of (446 files) in progress... Apr 16 2024 03:33:51 server2 maldet(1859676): {scan} scan completed on : files 446, malware hits 0, cleaned hits 0, time 48s Apr 16 2024 03:33:51 server2 maldet(1859676): {scan} scan report saved, to view run: maldet --report 240416-0333.1859676 Apr 17 2024 03:38:44 server2 maldet(2096616): {update} checking for available updates... Apr 17 2024 03:38:44 server2 maldet(2096616): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Apr 17 2024 03:38:44 server2 maldet(2096616): {update} hashing install files and checking against server... Apr 17 2024 03:38:44 server2 maldet(2096616): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Apr 17 2024 03:38:44 server2 maldet(2096616): {update} latest version already installed. Apr 17 2024 03:38:44 server2 maldet(2096749): {sigup} performing signature update check... Apr 17 2024 03:38:44 server2 maldet(2096749): {sigup} local signature set is version 202404164184748 Apr 17 2024 03:38:44 server2 maldet(2096749): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Apr 17 2024 03:38:44 server2 maldet(2096749): {sigup} latest signature set already installed Apr 17 2024 03:38:45 server2 maldet(2096860): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Apr 17 2024 03:38:47 server2 maldet(2096860): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Apr 17 2024 03:38:47 server2 maldet(2096860): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Apr 17 2024 03:38:47 server2 maldet(2096860): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Apr 17 2024 03:38:47 server2 maldet(2096860): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Apr 17 2024 03:39:18 server2 maldet(2096860): {scan} file list completed in 31s, found 313 files... Apr 17 2024 03:39:18 server2 maldet(2096860): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Apr 17 2024 03:39:18 server2 maldet(2096860): {scan} scan of (313 files) in progress... Apr 17 2024 03:39:32 server2 maldet(2096860): {scan} scan completed on : files 313, malware hits 0, cleaned hits 0, time 47s Apr 17 2024 03:39:32 server2 maldet(2096860): {scan} scan report saved, to view run: maldet --report 240417-0338.2096860 Apr 18 2024 03:49:05 server2 maldet(2348180): {update} checking for available updates... Apr 18 2024 03:49:05 server2 maldet(2348180): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Apr 18 2024 03:49:05 server2 maldet(2348180): {update} hashing install files and checking against server... Apr 18 2024 03:49:05 server2 maldet(2348180): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Apr 18 2024 03:49:05 server2 maldet(2348180): {update} latest version already installed. Apr 18 2024 03:49:05 server2 maldet(2348313): {sigup} performing signature update check... Apr 18 2024 03:49:05 server2 maldet(2348313): {sigup} local signature set is version 202404164184748 Apr 18 2024 03:49:05 server2 maldet(2348313): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Apr 18 2024 03:49:05 server2 maldet(2348313): {sigup} latest signature set already installed Apr 18 2024 03:49:06 server2 maldet(2348425): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Apr 18 2024 03:49:07 server2 maldet(2348425): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Apr 18 2024 03:49:07 server2 maldet(2348425): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Apr 18 2024 03:49:07 server2 maldet(2348425): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Apr 18 2024 03:49:07 server2 maldet(2348425): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Apr 18 2024 03:49:28 server2 maldet(2348425): {scan} file list completed in 21s, found 313 files... Apr 18 2024 03:49:28 server2 maldet(2348425): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Apr 18 2024 03:49:28 server2 maldet(2348425): {scan} scan of (313 files) in progress... Apr 18 2024 03:49:36 server2 maldet(2348425): {scan} scan completed on : files 313, malware hits 0, cleaned hits 0, time 30s Apr 18 2024 03:49:36 server2 maldet(2348425): {scan} scan report saved, to view run: maldet --report 240418-0349.2348425 Apr 19 2024 03:33:08 server2 maldet(2583290): {update} checking for available updates... Apr 19 2024 03:33:08 server2 maldet(2583290): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Apr 19 2024 03:33:08 server2 maldet(2583290): {update} hashing install files and checking against server... Apr 19 2024 03:33:08 server2 maldet(2583290): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Apr 19 2024 03:33:08 server2 maldet(2583290): {update} latest version already installed. Apr 19 2024 03:33:08 server2 maldet(2583423): {sigup} performing signature update check... Apr 19 2024 03:33:08 server2 maldet(2583423): {sigup} local signature set is version 202404164184748 Apr 19 2024 03:33:08 server2 maldet(2583423): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Apr 19 2024 03:33:08 server2 maldet(2583423): {sigup} latest signature set already installed Apr 19 2024 03:33:08 server2 maldet(2583534): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Apr 19 2024 03:33:09 server2 maldet(2583534): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Apr 19 2024 03:33:09 server2 maldet(2583534): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Apr 19 2024 03:33:09 server2 maldet(2583534): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Apr 19 2024 03:33:09 server2 maldet(2583534): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Apr 19 2024 03:33:31 server2 maldet(2583534): {scan} file list completed in 22s, found 398 files... Apr 19 2024 03:33:31 server2 maldet(2583534): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Apr 19 2024 03:33:31 server2 maldet(2583534): {scan} scan of (398 files) in progress... Apr 19 2024 03:33:42 server2 maldet(2583534): {scan} scan completed on : files 398, malware hits 0, cleaned hits 0, time 34s Apr 19 2024 03:33:42 server2 maldet(2583534): {scan} scan report saved, to view run: maldet --report 240419-0333.2583534 Apr 20 2024 03:41:05 server2 maldet(2840820): {update} checking for available updates... Apr 20 2024 03:41:05 server2 maldet(2840820): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Apr 20 2024 03:41:05 server2 maldet(2840820): {update} hashing install files and checking against server... Apr 20 2024 03:41:05 server2 maldet(2840820): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Apr 20 2024 03:41:05 server2 maldet(2840820): {update} latest version already installed. Apr 20 2024 03:41:05 server2 maldet(2840953): {sigup} performing signature update check... Apr 20 2024 03:41:05 server2 maldet(2840953): {sigup} local signature set is version 202404164184748 Apr 20 2024 03:41:05 server2 maldet(2840953): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Apr 20 2024 03:41:05 server2 maldet(2840953): {sigup} new signature set 20240419705759 available Apr 20 2024 03:41:05 server2 maldet(2840953): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Apr 20 2024 03:41:05 server2 maldet(2840953): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Apr 20 2024 03:41:05 server2 maldet(2840953): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Apr 20 2024 03:41:05 server2 maldet(2840953): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Apr 20 2024 03:41:05 server2 maldet(2840953): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Apr 20 2024 03:41:05 server2 maldet(2840953): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Apr 20 2024 03:41:05 server2 maldet(2840953): {sigup} verified md5sum of maldet-sigpack.tgz Apr 20 2024 03:41:06 server2 maldet(2840953): {sigup} unpacked and installed maldet-sigpack.tgz Apr 20 2024 03:41:06 server2 maldet(2840953): {sigup} verified md5sum of maldet-clean.tgz Apr 20 2024 03:41:06 server2 maldet(2840953): {sigup} unpacked and installed maldet-clean.tgz Apr 20 2024 03:41:06 server2 maldet(2840953): {sigup} signature set update completed Apr 20 2024 03:41:06 server2 maldet(2840953): {sigup} 17638 signatures (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Apr 20 2024 03:41:06 server2 maldet(2841181): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Apr 20 2024 03:41:07 server2 maldet(2841181): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Apr 20 2024 03:41:07 server2 maldet(2841181): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Apr 20 2024 03:41:07 server2 maldet(2841181): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Apr 20 2024 03:41:07 server2 maldet(2841181): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Apr 20 2024 03:41:32 server2 maldet(2841181): {scan} file list completed in 25s, found 354 files... Apr 20 2024 03:41:32 server2 maldet(2841181): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Apr 20 2024 03:41:32 server2 maldet(2841181): {scan} scan of (354 files) in progress... Apr 20 2024 03:41:44 server2 maldet(2841181): {scan} scan completed on : files 354, malware hits 0, cleaned hits 0, time 38s Apr 20 2024 03:41:44 server2 maldet(2841181): {scan} scan report saved, to view run: maldet --report 240420-0341.2841181 Apr 21 2024 03:43:43 server2 maldet(3128269): {update} checking for available updates... Apr 21 2024 03:43:43 server2 maldet(3128269): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Apr 21 2024 03:43:43 server2 maldet(3128269): {update} hashing install files and checking against server... Apr 21 2024 03:43:43 server2 maldet(3128269): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Apr 21 2024 03:43:43 server2 maldet(3128269): {update} latest version already installed. Apr 21 2024 03:43:43 server2 maldet(3128402): {sigup} performing signature update check... Apr 21 2024 03:43:43 server2 maldet(3128402): {sigup} local signature set is version 20240419705759 Apr 21 2024 03:43:43 server2 maldet(3128402): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Apr 21 2024 03:43:43 server2 maldet(3128402): {sigup} latest signature set already installed Apr 21 2024 03:43:43 server2 maldet(3128514): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Apr 21 2024 03:43:45 server2 maldet(3128514): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Apr 21 2024 03:43:45 server2 maldet(3128514): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Apr 21 2024 03:43:45 server2 maldet(3128514): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Apr 21 2024 03:43:45 server2 maldet(3128514): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Apr 21 2024 03:44:00 server2 maldet(3128514): {scan} file list completed in 15s, found 513 files... Apr 21 2024 03:44:00 server2 maldet(3128514): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Apr 21 2024 03:44:00 server2 maldet(3128514): {scan} scan of (513 files) in progress... Apr 21 2024 03:44:18 server2 maldet(3128514): {scan} scan completed on : files 513, malware hits 0, cleaned hits 0, time 35s Apr 21 2024 03:44:18 server2 maldet(3128514): {scan} scan report saved, to view run: maldet --report 240421-0343.3128514 Apr 22 2024 03:55:47 server2 maldet(3362700): {update} checking for available updates... Apr 22 2024 03:55:47 server2 maldet(3362700): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Apr 22 2024 03:55:47 server2 maldet(3362700): {update} hashing install files and checking against server... Apr 22 2024 03:55:47 server2 maldet(3362700): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Apr 22 2024 03:55:47 server2 maldet(3362700): {update} latest version already installed. Apr 22 2024 03:55:47 server2 maldet(3362833): {sigup} performing signature update check... Apr 22 2024 03:55:47 server2 maldet(3362833): {sigup} local signature set is version 20240419705759 Apr 22 2024 03:55:47 server2 maldet(3362833): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Apr 22 2024 03:55:47 server2 maldet(3362833): {sigup} latest signature set already installed Apr 22 2024 03:55:48 server2 maldet(3362944): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Apr 22 2024 03:55:49 server2 maldet(3362944): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Apr 22 2024 03:55:49 server2 maldet(3362944): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Apr 22 2024 03:55:49 server2 maldet(3362944): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Apr 22 2024 03:55:49 server2 maldet(3362944): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Apr 22 2024 03:56:17 server2 maldet(3362944): {scan} file list completed in 28s, found 566 files... Apr 22 2024 03:56:17 server2 maldet(3362944): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Apr 22 2024 03:56:17 server2 maldet(3362944): {scan} scan of (566 files) in progress... Apr 22 2024 03:56:31 server2 maldet(3362944): {scan} scan completed on : files 566, malware hits 0, cleaned hits 0, time 42s Apr 22 2024 03:56:31 server2 maldet(3362944): {scan} scan report saved, to view run: maldet --report 240422-0355.3362944 Apr 23 2024 03:26:59 server2 maldet(3584514): {update} checking for available updates... Apr 23 2024 03:26:59 server2 maldet(3584514): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Apr 23 2024 03:26:59 server2 maldet(3584514): {update} hashing install files and checking against server... Apr 23 2024 03:26:59 server2 maldet(3584514): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Apr 23 2024 03:26:59 server2 maldet(3584514): {update} latest version already installed. Apr 23 2024 03:26:59 server2 maldet(3584647): {sigup} performing signature update check... Apr 23 2024 03:26:59 server2 maldet(3584647): {sigup} local signature set is version 20240419705759 Apr 23 2024 03:27:00 server2 maldet(3584647): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Apr 23 2024 03:27:00 server2 maldet(3584647): {sigup} new signature set 202404221487421 available Apr 23 2024 03:27:00 server2 maldet(3584647): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Apr 23 2024 03:27:00 server2 maldet(3584647): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Apr 23 2024 03:27:00 server2 maldet(3584647): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Apr 23 2024 03:27:00 server2 maldet(3584647): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Apr 23 2024 03:27:00 server2 maldet(3584647): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Apr 23 2024 03:27:00 server2 maldet(3584647): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Apr 23 2024 03:27:00 server2 maldet(3584647): {sigup} verified md5sum of maldet-sigpack.tgz Apr 23 2024 03:27:00 server2 maldet(3584647): {sigup} unpacked and installed maldet-sigpack.tgz Apr 23 2024 03:27:00 server2 maldet(3584647): {sigup} verified md5sum of maldet-clean.tgz Apr 23 2024 03:27:00 server2 maldet(3584647): {sigup} unpacked and installed maldet-clean.tgz Apr 23 2024 03:27:00 server2 maldet(3584647): {sigup} signature set update completed Apr 23 2024 03:27:00 server2 maldet(3584647): {sigup} 17638 signatures (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Apr 23 2024 03:27:00 server2 maldet(3584875): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Apr 23 2024 03:27:02 server2 maldet(3584875): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Apr 23 2024 03:27:02 server2 maldet(3584875): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Apr 23 2024 03:27:02 server2 maldet(3584875): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Apr 23 2024 03:27:02 server2 maldet(3584875): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Apr 23 2024 03:27:29 server2 maldet(3584875): {scan} file list completed in 27s, found 389 files... Apr 23 2024 03:27:29 server2 maldet(3584875): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Apr 23 2024 03:27:29 server2 maldet(3584875): {scan} scan of (389 files) in progress... Apr 23 2024 03:27:40 server2 maldet(3584875): {scan} scan completed on : files 389, malware hits 0, cleaned hits 0, time 40s Apr 23 2024 03:27:40 server2 maldet(3584875): {scan} scan report saved, to view run: maldet --report 240423-0327.3584875 Apr 24 2024 03:50:37 server2 maldet(3826411): {update} checking for available updates... Apr 24 2024 03:50:38 server2 maldet(3826411): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Apr 24 2024 03:50:38 server2 maldet(3826411): {update} hashing install files and checking against server... Apr 24 2024 03:50:38 server2 maldet(3826411): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Apr 24 2024 03:50:38 server2 maldet(3826411): {update} latest version already installed. Apr 24 2024 03:50:38 server2 maldet(3826544): {sigup} performing signature update check... Apr 24 2024 03:50:38 server2 maldet(3826544): {sigup} local signature set is version 202404221487421 Apr 24 2024 03:50:38 server2 maldet(3826544): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Apr 24 2024 03:50:38 server2 maldet(3826544): {sigup} latest signature set already installed Apr 24 2024 03:50:38 server2 maldet(3826655): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Apr 24 2024 03:50:41 server2 maldet(3826655): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Apr 24 2024 03:50:41 server2 maldet(3826655): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Apr 24 2024 03:50:41 server2 maldet(3826655): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Apr 24 2024 03:50:41 server2 maldet(3826655): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Apr 24 2024 03:51:05 server2 maldet(3826655): {scan} file list completed in 24s, found 645 files... Apr 24 2024 03:51:05 server2 maldet(3826655): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Apr 24 2024 03:51:05 server2 maldet(3826655): {scan} scan of (645 files) in progress... Apr 24 2024 03:51:27 server2 maldet(3826655): {scan} scan completed on : files 645, malware hits 0, cleaned hits 0, time 49s Apr 24 2024 03:51:27 server2 maldet(3826655): {scan} scan report saved, to view run: maldet --report 240424-0350.3826655 Apr 25 2024 03:50:38 server2 maldet(4181488): {update} checking for available updates... Apr 25 2024 03:50:38 server2 maldet(4181488): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Apr 25 2024 03:50:38 server2 maldet(4181488): {update} hashing install files and checking against server... Apr 25 2024 03:50:38 server2 maldet(4181488): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Apr 25 2024 03:50:38 server2 maldet(4181488): {update} latest version already installed. Apr 25 2024 03:50:38 server2 maldet(4181621): {sigup} performing signature update check... Apr 25 2024 03:50:38 server2 maldet(4181621): {sigup} local signature set is version 202404221487421 Apr 25 2024 03:50:38 server2 maldet(4181621): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Apr 25 2024 03:50:38 server2 maldet(4181621): {sigup} latest signature set already installed Apr 25 2024 03:50:39 server2 maldet(4181733): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Apr 25 2024 03:50:40 server2 maldet(4181733): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Apr 25 2024 03:50:40 server2 maldet(4181733): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Apr 25 2024 03:50:40 server2 maldet(4181733): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Apr 25 2024 03:50:40 server2 maldet(4181733): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Apr 25 2024 03:51:04 server2 maldet(4181733): {scan} file list completed in 24s, found 375 files... Apr 25 2024 03:51:04 server2 maldet(4181733): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Apr 25 2024 03:51:04 server2 maldet(4181733): {scan} scan of (375 files) in progress... Apr 25 2024 03:51:14 server2 maldet(4181733): {scan} scan completed on : files 375, malware hits 0, cleaned hits 0, time 35s Apr 25 2024 03:51:14 server2 maldet(4181733): {scan} scan report saved, to view run: maldet --report 240425-0350.4181733 Apr 26 2024 03:52:38 server2 maldet(263906): {update} checking for available updates... Apr 26 2024 03:52:38 server2 maldet(263906): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Apr 26 2024 03:52:38 server2 maldet(263906): {update} hashing install files and checking against server... Apr 26 2024 03:52:38 server2 maldet(263906): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Apr 26 2024 03:52:38 server2 maldet(263906): {update} latest version already installed. Apr 26 2024 03:52:38 server2 maldet(264039): {sigup} performing signature update check... Apr 26 2024 03:52:38 server2 maldet(264039): {sigup} local signature set is version 202404221487421 Apr 26 2024 03:52:38 server2 maldet(264039): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Apr 26 2024 03:52:38 server2 maldet(264039): {sigup} new signature set 202404252278094 available Apr 26 2024 03:52:38 server2 maldet(264039): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Apr 26 2024 03:52:38 server2 maldet(264039): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Apr 26 2024 03:52:38 server2 maldet(264039): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Apr 26 2024 03:52:38 server2 maldet(264039): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Apr 26 2024 03:52:38 server2 maldet(264039): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Apr 26 2024 03:52:38 server2 maldet(264039): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Apr 26 2024 03:52:38 server2 maldet(264039): {sigup} verified md5sum of maldet-sigpack.tgz Apr 26 2024 03:52:38 server2 maldet(264039): {sigup} unpacked and installed maldet-sigpack.tgz Apr 26 2024 03:52:38 server2 maldet(264039): {sigup} verified md5sum of maldet-clean.tgz Apr 26 2024 03:52:38 server2 maldet(264039): {sigup} unpacked and installed maldet-clean.tgz Apr 26 2024 03:52:39 server2 maldet(264039): {sigup} signature set update completed Apr 26 2024 03:52:39 server2 maldet(264039): {sigup} 17638 signatures (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Apr 26 2024 03:52:39 server2 maldet(264267): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Apr 26 2024 03:52:40 server2 maldet(264267): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Apr 26 2024 03:52:40 server2 maldet(264267): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Apr 26 2024 03:52:40 server2 maldet(264267): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Apr 26 2024 03:52:40 server2 maldet(264267): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Apr 26 2024 03:53:06 server2 maldet(264267): {scan} file list completed in 26s, found 490 files... Apr 26 2024 03:53:06 server2 maldet(264267): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Apr 26 2024 03:53:06 server2 maldet(264267): {scan} scan of (490 files) in progress... Apr 26 2024 03:53:31 server2 maldet(264267): {scan} scan completed on : files 490, malware hits 0, cleaned hits 0, time 52s Apr 26 2024 03:53:31 server2 maldet(264267): {scan} scan report saved, to view run: maldet --report 240426-0352.264267 Apr 27 2024 03:12:35 server2 maldet(491829): {update} checking for available updates... Apr 27 2024 03:12:35 server2 maldet(491829): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Apr 27 2024 03:12:35 server2 maldet(491829): {update} hashing install files and checking against server... Apr 27 2024 03:12:35 server2 maldet(491829): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Apr 27 2024 03:12:35 server2 maldet(491829): {update} latest version already installed. Apr 27 2024 03:12:35 server2 maldet(491962): {sigup} performing signature update check... Apr 27 2024 03:12:35 server2 maldet(491962): {sigup} local signature set is version 202404252278094 Apr 27 2024 03:12:35 server2 maldet(491962): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Apr 27 2024 03:12:35 server2 maldet(491962): {sigup} latest signature set already installed Apr 27 2024 03:12:35 server2 maldet(492073): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Apr 27 2024 03:12:36 server2 maldet(492073): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Apr 27 2024 03:12:36 server2 maldet(492073): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Apr 27 2024 03:12:36 server2 maldet(492073): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Apr 27 2024 03:12:36 server2 maldet(492073): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Apr 27 2024 03:13:00 server2 maldet(492073): {scan} file list completed in 24s, found 383 files... Apr 27 2024 03:13:00 server2 maldet(492073): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Apr 27 2024 03:13:00 server2 maldet(492073): {scan} scan of (383 files) in progress... Apr 27 2024 03:13:12 server2 maldet(492073): {scan} scan completed on : files 383, malware hits 0, cleaned hits 0, time 37s Apr 27 2024 03:13:12 server2 maldet(492073): {scan} scan report saved, to view run: maldet --report 240427-0312.492073 Apr 28 2024 03:13:39 server2 maldet(718852): {update} checking for available updates... Apr 28 2024 03:13:39 server2 maldet(718852): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Apr 28 2024 03:13:39 server2 maldet(718852): {update} hashing install files and checking against server... Apr 28 2024 03:13:39 server2 maldet(718852): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Apr 28 2024 03:13:39 server2 maldet(718852): {update} latest version already installed. Apr 28 2024 03:13:39 server2 maldet(718986): {sigup} performing signature update check... Apr 28 2024 03:13:39 server2 maldet(718986): {sigup} local signature set is version 202404252278094 Apr 28 2024 03:13:39 server2 maldet(718986): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Apr 28 2024 03:13:39 server2 maldet(718986): {sigup} latest signature set already installed Apr 28 2024 03:13:39 server2 maldet(719097): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Apr 28 2024 03:13:41 server2 maldet(719097): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Apr 28 2024 03:13:41 server2 maldet(719097): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Apr 28 2024 03:13:41 server2 maldet(719097): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Apr 28 2024 03:13:41 server2 maldet(719097): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Apr 28 2024 03:14:00 server2 maldet(719097): {scan} file list completed in 19s, found 537 files... Apr 28 2024 03:14:00 server2 maldet(719097): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Apr 28 2024 03:14:00 server2 maldet(719097): {scan} scan of (537 files) in progress... Apr 28 2024 03:14:14 server2 maldet(719097): {scan} scan completed on : files 537, malware hits 0, cleaned hits 0, time 35s Apr 28 2024 03:14:14 server2 maldet(719097): {scan} scan report saved, to view run: maldet --report 240428-0313.719097 Apr 29 2024 03:52:27 server2 maldet(954978): {update} checking for available updates... Apr 29 2024 03:52:27 server2 maldet(954978): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Apr 29 2024 03:52:27 server2 maldet(954978): {update} hashing install files and checking against server... Apr 29 2024 03:52:27 server2 maldet(954978): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Apr 29 2024 03:52:27 server2 maldet(954978): {update} latest version already installed. Apr 29 2024 03:52:27 server2 maldet(955111): {sigup} performing signature update check... Apr 29 2024 03:52:27 server2 maldet(955111): {sigup} local signature set is version 202404252278094 Apr 29 2024 03:52:27 server2 maldet(955111): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Apr 29 2024 03:52:27 server2 maldet(955111): {sigup} new signature set 202404283053210 available Apr 29 2024 03:52:27 server2 maldet(955111): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Apr 29 2024 03:52:27 server2 maldet(955111): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Apr 29 2024 03:52:27 server2 maldet(955111): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Apr 29 2024 03:52:27 server2 maldet(955111): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Apr 29 2024 03:52:27 server2 maldet(955111): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Apr 29 2024 03:52:27 server2 maldet(955111): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Apr 29 2024 03:52:28 server2 maldet(955111): {sigup} verified md5sum of maldet-sigpack.tgz Apr 29 2024 03:52:28 server2 maldet(955111): {sigup} unpacked and installed maldet-sigpack.tgz Apr 29 2024 03:52:28 server2 maldet(955111): {sigup} verified md5sum of maldet-clean.tgz Apr 29 2024 03:52:28 server2 maldet(955111): {sigup} unpacked and installed maldet-clean.tgz Apr 29 2024 03:52:28 server2 maldet(955111): {sigup} signature set update completed Apr 29 2024 03:52:28 server2 maldet(955111): {sigup} 17638 signatures (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Apr 29 2024 03:52:28 server2 maldet(955339): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Apr 29 2024 03:52:29 server2 maldet(955339): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Apr 29 2024 03:52:29 server2 maldet(955339): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Apr 29 2024 03:52:29 server2 maldet(955339): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Apr 29 2024 03:52:29 server2 maldet(955339): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Apr 29 2024 03:52:50 server2 maldet(955339): {scan} file list completed in 21s, found 340 files... Apr 29 2024 03:52:50 server2 maldet(955339): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Apr 29 2024 03:52:50 server2 maldet(955339): {scan} scan of (340 files) in progress... Apr 29 2024 03:53:00 server2 maldet(955339): {scan} scan completed on : files 340, malware hits 0, cleaned hits 0, time 32s Apr 29 2024 03:53:00 server2 maldet(955339): {scan} scan report saved, to view run: maldet --report 240429-0352.955339 Apr 30 2024 03:29:03 server2 maldet(1192647): {update} checking for available updates... Apr 30 2024 03:29:03 server2 maldet(1192647): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Apr 30 2024 03:29:03 server2 maldet(1192647): {update} hashing install files and checking against server... Apr 30 2024 03:29:03 server2 maldet(1192647): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Apr 30 2024 03:29:03 server2 maldet(1192647): {update} latest version already installed. Apr 30 2024 03:29:03 server2 maldet(1192786): {sigup} performing signature update check... Apr 30 2024 03:29:03 server2 maldet(1192786): {sigup} local signature set is version 202404283053210 Apr 30 2024 03:29:03 server2 maldet(1192786): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Apr 30 2024 03:29:04 server2 maldet(1192786): {sigup} latest signature set already installed Apr 30 2024 03:29:04 server2 maldet(1192904): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Apr 30 2024 03:29:05 server2 maldet(1192904): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Apr 30 2024 03:29:05 server2 maldet(1192904): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Apr 30 2024 03:29:05 server2 maldet(1192904): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Apr 30 2024 03:29:05 server2 maldet(1192904): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Apr 30 2024 03:29:32 server2 maldet(1192904): {scan} file list completed in 27s, found 559 files... Apr 30 2024 03:29:32 server2 maldet(1192904): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Apr 30 2024 03:29:32 server2 maldet(1192904): {scan} scan of (559 files) in progress... Apr 30 2024 03:29:45 server2 maldet(1192904): {scan} scan completed on : files 559, malware hits 0, cleaned hits 0, time 41s Apr 30 2024 03:29:45 server2 maldet(1192904): {scan} scan report saved, to view run: maldet --report 240430-0329.1192904 May 01 2024 03:50:09 server2 maldet(1481745): {update} checking for available updates... May 01 2024 03:50:09 server2 maldet(1481745): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver May 01 2024 03:50:09 server2 maldet(1481745): {update} hashing install files and checking against server... May 01 2024 03:50:09 server2 maldet(1481745): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash May 01 2024 03:50:09 server2 maldet(1481745): {update} latest version already installed. May 01 2024 03:50:10 server2 maldet(1481878): {sigup} performing signature update check... May 01 2024 03:50:10 server2 maldet(1481878): {sigup} local signature set is version 202404283053210 May 01 2024 03:50:10 server2 maldet(1481878): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver May 01 2024 03:50:10 server2 maldet(1481878): {sigup} latest signature set already installed May 01 2024 03:50:10 server2 maldet(1481989): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress May 01 2024 03:50:11 server2 maldet(1481989): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) May 01 2024 03:50:11 server2 maldet(1481989): {scan} building file list for of new/modified files from last 1 days, this might take awhile... May 01 2024 03:50:11 server2 maldet(1481989): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 May 01 2024 03:50:11 server2 maldet(1481989): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 May 01 2024 03:50:29 server2 maldet(1481989): {scan} file list completed in 18s, found 311 files... May 01 2024 03:50:29 server2 maldet(1481989): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... May 01 2024 03:50:29 server2 maldet(1481989): {scan} scan of (311 files) in progress... May 01 2024 03:50:39 server2 maldet(1481989): {scan} scan completed on : files 311, malware hits 0, cleaned hits 0, time 29s May 01 2024 03:50:39 server2 maldet(1481989): {scan} scan report saved, to view run: maldet --report 240501-0350.1481989 May 02 2024 03:49:11 server2 maldet(1730136): {update} checking for available updates... May 02 2024 03:49:11 server2 maldet(1730136): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver May 02 2024 03:49:11 server2 maldet(1730136): {update} hashing install files and checking against server... May 02 2024 03:49:11 server2 maldet(1730136): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash May 02 2024 03:49:11 server2 maldet(1730136): {update} latest version already installed. May 02 2024 03:49:11 server2 maldet(1730269): {sigup} performing signature update check... May 02 2024 03:49:11 server2 maldet(1730269): {sigup} local signature set is version 202404283053210 May 02 2024 03:49:11 server2 maldet(1730269): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver May 02 2024 03:49:11 server2 maldet(1730269): {sigup} new signature set 202405013823175 available May 02 2024 03:49:11 server2 maldet(1730269): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz May 02 2024 03:49:11 server2 maldet(1730269): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz May 02 2024 03:49:11 server2 maldet(1730269): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 May 02 2024 03:49:11 server2 maldet(1730269): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz May 02 2024 03:49:11 server2 maldet(1730269): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz May 02 2024 03:49:11 server2 maldet(1730269): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 May 02 2024 03:49:11 server2 maldet(1730269): {sigup} verified md5sum of maldet-sigpack.tgz May 02 2024 03:49:12 server2 maldet(1730269): {sigup} unpacked and installed maldet-sigpack.tgz May 02 2024 03:49:12 server2 maldet(1730269): {sigup} verified md5sum of maldet-clean.tgz May 02 2024 03:49:12 server2 maldet(1730269): {sigup} unpacked and installed maldet-clean.tgz May 02 2024 03:49:12 server2 maldet(1730269): {sigup} signature set update completed May 02 2024 03:49:12 server2 maldet(1730269): {sigup} 17638 signatures (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) May 02 2024 03:49:12 server2 maldet(1730503): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress May 02 2024 03:49:13 server2 maldet(1730503): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) May 02 2024 03:49:13 server2 maldet(1730503): {scan} building file list for of new/modified files from last 1 days, this might take awhile... May 02 2024 03:49:13 server2 maldet(1730503): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 May 02 2024 03:49:13 server2 maldet(1730503): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 May 02 2024 03:49:32 server2 maldet(1730503): {scan} file list completed in 19s, found 391 files... May 02 2024 03:49:32 server2 maldet(1730503): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... May 02 2024 03:49:32 server2 maldet(1730503): {scan} scan of (391 files) in progress... May 02 2024 03:49:43 server2 maldet(1730503): {scan} scan completed on : files 391, malware hits 0, cleaned hits 0, time 31s May 02 2024 03:49:43 server2 maldet(1730503): {scan} scan report saved, to view run: maldet --report 240502-0349.1730503 May 03 2024 03:44:26 server2 maldet(1959749): {update} checking for available updates... May 03 2024 03:44:26 server2 maldet(1959749): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver May 03 2024 03:44:26 server2 maldet(1959749): {update} hashing install files and checking against server... May 03 2024 03:44:26 server2 maldet(1959749): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash May 03 2024 03:44:26 server2 maldet(1959749): {update} latest version already installed. May 03 2024 03:44:26 server2 maldet(1959882): {sigup} performing signature update check... May 03 2024 03:44:26 server2 maldet(1959882): {sigup} local signature set is version 202405013823175 May 03 2024 03:44:26 server2 maldet(1959882): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver May 03 2024 03:44:26 server2 maldet(1959882): {sigup} latest signature set already installed May 03 2024 03:44:26 server2 maldet(1959993): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress May 03 2024 03:44:27 server2 maldet(1959993): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) May 03 2024 03:44:27 server2 maldet(1959993): {scan} building file list for of new/modified files from last 1 days, this might take awhile... May 03 2024 03:44:27 server2 maldet(1959993): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 May 03 2024 03:44:27 server2 maldet(1959993): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 May 03 2024 03:44:45 server2 maldet(1959993): {scan} file list completed in 18s, found 434 files... May 03 2024 03:44:45 server2 maldet(1959993): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... May 03 2024 03:44:45 server2 maldet(1959993): {scan} scan of (434 files) in progress... May 03 2024 03:45:00 server2 maldet(1959993): {scan} scan completed on : files 434, malware hits 0, cleaned hits 0, time 34s May 03 2024 03:45:00 server2 maldet(1959993): {scan} scan report saved, to view run: maldet --report 240503-0344.1959993 May 04 2024 03:25:19 server2 maldet(2203733): {update} checking for available updates... May 04 2024 03:25:19 server2 maldet(2203733): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver May 04 2024 03:25:19 server2 maldet(2203733): {update} hashing install files and checking against server... May 04 2024 03:25:19 server2 maldet(2203733): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash May 04 2024 03:25:19 server2 maldet(2203733): {update} latest version already installed. May 04 2024 03:25:19 server2 maldet(2203868): {sigup} performing signature update check... May 04 2024 03:25:19 server2 maldet(2203868): {sigup} local signature set is version 202405013823175 May 04 2024 03:25:20 server2 maldet(2203868): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver May 04 2024 03:25:20 server2 maldet(2203868): {sigup} latest signature set already installed May 04 2024 03:25:20 server2 maldet(2203979): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress May 04 2024 03:25:21 server2 maldet(2203979): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) May 04 2024 03:25:21 server2 maldet(2203979): {scan} building file list for of new/modified files from last 1 days, this might take awhile... May 04 2024 03:25:21 server2 maldet(2203979): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 May 04 2024 03:25:21 server2 maldet(2203979): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 May 04 2024 03:25:42 server2 maldet(2203979): {scan} file list completed in 21s, found 519 files... May 04 2024 03:25:42 server2 maldet(2203979): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... May 04 2024 03:25:42 server2 maldet(2203979): {scan} scan of (519 files) in progress... May 04 2024 03:25:57 server2 maldet(2203979): {scan} scan completed on : files 519, malware hits 0, cleaned hits 0, time 37s May 04 2024 03:25:57 server2 maldet(2203979): {scan} scan report saved, to view run: maldet --report 240504-0325.2203979 May 05 2024 03:53:36 server2 maldet(2443112): {update} checking for available updates... May 05 2024 03:53:36 server2 maldet(2443112): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver May 05 2024 03:53:36 server2 maldet(2443112): {update} hashing install files and checking against server... May 05 2024 03:53:36 server2 maldet(2443112): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash May 05 2024 03:53:36 server2 maldet(2443112): {update} latest version already installed. May 05 2024 03:53:36 server2 maldet(2443245): {sigup} performing signature update check... May 05 2024 03:53:36 server2 maldet(2443245): {sigup} local signature set is version 202405013823175 May 05 2024 03:53:36 server2 maldet(2443245): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver May 05 2024 03:53:36 server2 maldet(2443245): {sigup} new signature set 20240504393073 available May 05 2024 03:53:36 server2 maldet(2443245): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz May 05 2024 03:53:37 server2 maldet(2443245): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz May 05 2024 03:53:37 server2 maldet(2443245): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 May 05 2024 03:53:37 server2 maldet(2443245): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz May 05 2024 03:53:37 server2 maldet(2443245): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz May 05 2024 03:53:37 server2 maldet(2443245): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 May 05 2024 03:53:37 server2 maldet(2443245): {sigup} verified md5sum of maldet-sigpack.tgz May 05 2024 03:53:37 server2 maldet(2443245): {sigup} unpacked and installed maldet-sigpack.tgz May 05 2024 03:53:37 server2 maldet(2443245): {sigup} verified md5sum of maldet-clean.tgz May 05 2024 03:53:37 server2 maldet(2443245): {sigup} unpacked and installed maldet-clean.tgz May 05 2024 03:53:37 server2 maldet(2443245): {sigup} signature set update completed May 05 2024 03:53:37 server2 maldet(2443245): {sigup} 17638 signatures (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) May 05 2024 03:53:37 server2 maldet(2443473): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress May 05 2024 03:53:38 server2 maldet(2443473): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) May 05 2024 03:53:38 server2 maldet(2443473): {scan} building file list for of new/modified files from last 1 days, this might take awhile... May 05 2024 03:53:38 server2 maldet(2443473): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 May 05 2024 03:53:38 server2 maldet(2443473): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 May 05 2024 03:53:57 server2 maldet(2443473): {scan} file list completed in 19s, found 351 files... May 05 2024 03:53:57 server2 maldet(2443473): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... May 05 2024 03:53:57 server2 maldet(2443473): {scan} scan of (351 files) in progress... May 05 2024 03:54:09 server2 maldet(2443473): {scan} scan completed on : files 351, malware hits 0, cleaned hits 0, time 32s May 05 2024 03:54:09 server2 maldet(2443473): {scan} scan report saved, to view run: maldet --report 240505-0353.2443473 May 06 2024 03:25:52 server2 maldet(2669183): {update} checking for available updates... May 06 2024 03:25:52 server2 maldet(2669183): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver May 06 2024 03:25:52 server2 maldet(2669183): {update} hashing install files and checking against server... May 06 2024 03:25:52 server2 maldet(2669183): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash May 06 2024 03:25:52 server2 maldet(2669183): {update} latest version already installed. May 06 2024 03:25:52 server2 maldet(2669316): {sigup} performing signature update check... May 06 2024 03:25:52 server2 maldet(2669316): {sigup} local signature set is version 20240504393073 May 06 2024 03:25:52 server2 maldet(2669316): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver May 06 2024 03:25:52 server2 maldet(2669316): {sigup} latest signature set already installed May 06 2024 03:25:52 server2 maldet(2669427): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress May 06 2024 03:25:53 server2 maldet(2669427): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) May 06 2024 03:25:53 server2 maldet(2669427): {scan} building file list for of new/modified files from last 1 days, this might take awhile... May 06 2024 03:25:53 server2 maldet(2669427): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 May 06 2024 03:25:53 server2 maldet(2669427): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 May 06 2024 03:26:16 server2 maldet(2669427): {scan} file list completed in 23s, found 315 files... May 06 2024 03:26:16 server2 maldet(2669427): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... May 06 2024 03:26:16 server2 maldet(2669427): {scan} scan of (315 files) in progress... May 06 2024 03:26:25 server2 maldet(2669427): {scan} scan completed on : files 315, malware hits 0, cleaned hits 0, time 33s May 06 2024 03:26:25 server2 maldet(2669427): {scan} scan report saved, to view run: maldet --report 240506-0325.2669427 May 07 2024 03:10:52 server2 maldet(2881350): {update} checking for available updates... May 07 2024 03:10:52 server2 maldet(2881350): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver May 07 2024 03:10:52 server2 maldet(2881350): {update} hashing install files and checking against server... May 07 2024 03:10:52 server2 maldet(2881350): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash May 07 2024 03:10:53 server2 maldet(2881350): {update} latest version already installed. May 07 2024 03:10:53 server2 maldet(2881483): {sigup} performing signature update check... May 07 2024 03:10:53 server2 maldet(2881483): {sigup} local signature set is version 20240504393073 May 07 2024 03:10:53 server2 maldet(2881483): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver May 07 2024 03:10:53 server2 maldet(2881483): {sigup} latest signature set already installed May 07 2024 03:10:53 server2 maldet(2881594): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress May 07 2024 03:10:54 server2 maldet(2881594): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) May 07 2024 03:10:54 server2 maldet(2881594): {scan} building file list for of new/modified files from last 1 days, this might take awhile... May 07 2024 03:10:54 server2 maldet(2881594): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 May 07 2024 03:10:54 server2 maldet(2881594): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 May 07 2024 03:11:25 server2 maldet(2881594): {scan} file list completed in 31s, found 410 files... May 07 2024 03:11:25 server2 maldet(2881594): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... May 07 2024 03:11:25 server2 maldet(2881594): {scan} scan of (410 files) in progress... May 07 2024 03:11:38 server2 maldet(2881594): {scan} scan completed on : files 410, malware hits 0, cleaned hits 0, time 45s May 07 2024 03:11:38 server2 maldet(2881594): {scan} scan report saved, to view run: maldet --report 240507-0310.2881594 May 08 2024 03:42:47 server2 maldet(3118687): {update} checking for available updates... May 08 2024 03:42:47 server2 maldet(3118687): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver May 08 2024 03:42:47 server2 maldet(3118687): {update} hashing install files and checking against server... May 08 2024 03:42:47 server2 maldet(3118687): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash May 08 2024 03:42:47 server2 maldet(3118687): {update} latest version already installed. May 08 2024 03:42:47 server2 maldet(3118820): {sigup} performing signature update check... May 08 2024 03:42:47 server2 maldet(3118820): {sigup} local signature set is version 20240504393073 May 08 2024 03:42:47 server2 maldet(3118820): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver May 08 2024 03:42:47 server2 maldet(3118820): {sigup} new signature set 202405071155649 available May 08 2024 03:42:47 server2 maldet(3118820): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz May 08 2024 03:42:47 server2 maldet(3118820): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz May 08 2024 03:42:48 server2 maldet(3118820): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 May 08 2024 03:42:48 server2 maldet(3118820): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz May 08 2024 03:42:48 server2 maldet(3118820): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz May 08 2024 03:42:48 server2 maldet(3118820): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 May 08 2024 03:42:48 server2 maldet(3118820): {sigup} verified md5sum of maldet-sigpack.tgz May 08 2024 03:42:48 server2 maldet(3118820): {sigup} unpacked and installed maldet-sigpack.tgz May 08 2024 03:42:48 server2 maldet(3118820): {sigup} verified md5sum of maldet-clean.tgz May 08 2024 03:42:48 server2 maldet(3118820): {sigup} unpacked and installed maldet-clean.tgz May 08 2024 03:42:48 server2 maldet(3118820): {sigup} signature set update completed May 08 2024 03:42:48 server2 maldet(3118820): {sigup} 17638 signatures (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) May 08 2024 03:42:48 server2 maldet(3119048): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress May 08 2024 03:42:49 server2 maldet(3119048): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) May 08 2024 03:42:49 server2 maldet(3119048): {scan} building file list for of new/modified files from last 1 days, this might take awhile... May 08 2024 03:42:49 server2 maldet(3119048): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 May 08 2024 03:42:49 server2 maldet(3119048): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 May 08 2024 03:43:16 server2 maldet(3119048): {scan} file list completed in 27s, found 301 files... May 08 2024 03:43:16 server2 maldet(3119048): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... May 08 2024 03:43:16 server2 maldet(3119048): {scan} scan of (301 files) in progress... May 08 2024 03:43:27 server2 maldet(3119048): {scan} scan completed on : files 301, malware hits 0, cleaned hits 0, time 39s May 08 2024 03:43:27 server2 maldet(3119048): {scan} scan report saved, to view run: maldet --report 240508-0342.3119048 May 09 2024 03:47:14 server2 maldet(3346969): {update} checking for available updates... May 09 2024 03:47:14 server2 maldet(3346969): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver May 09 2024 03:47:14 server2 maldet(3346969): {update} hashing install files and checking against server... May 09 2024 03:47:15 server2 maldet(3346969): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash May 09 2024 03:47:15 server2 maldet(3346969): {update} latest version already installed. May 09 2024 03:47:15 server2 maldet(3347102): {sigup} performing signature update check... May 09 2024 03:47:15 server2 maldet(3347102): {sigup} local signature set is version 202405071155649 May 09 2024 03:47:15 server2 maldet(3347102): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver May 09 2024 03:47:15 server2 maldet(3347102): {sigup} latest signature set already installed May 09 2024 03:47:15 server2 maldet(3347213): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress May 09 2024 03:47:16 server2 maldet(3347213): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) May 09 2024 03:47:16 server2 maldet(3347213): {scan} building file list for of new/modified files from last 1 days, this might take awhile... May 09 2024 03:47:16 server2 maldet(3347213): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 May 09 2024 03:47:16 server2 maldet(3347213): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 May 09 2024 03:47:36 server2 maldet(3347213): {scan} file list completed in 20s, found 373 files... May 09 2024 03:47:36 server2 maldet(3347213): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... May 09 2024 03:47:36 server2 maldet(3347213): {scan} scan of (373 files) in progress... May 09 2024 03:47:46 server2 maldet(3347213): {scan} scan completed on : files 373, malware hits 0, cleaned hits 0, time 31s May 09 2024 03:47:46 server2 maldet(3347213): {scan} scan report saved, to view run: maldet --report 240509-0347.3347213 May 10 2024 03:17:52 server2 maldet(4088716): {update} checking for available updates... May 10 2024 03:17:52 server2 maldet(4088716): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver May 10 2024 03:17:52 server2 maldet(4088716): {update} hashing install files and checking against server... May 10 2024 03:17:52 server2 maldet(4088716): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash May 10 2024 03:17:52 server2 maldet(4088716): {update} latest version already installed. May 10 2024 03:17:52 server2 maldet(4088849): {sigup} performing signature update check... May 10 2024 03:17:52 server2 maldet(4088849): {sigup} local signature set is version 202405071155649 May 10 2024 03:17:52 server2 maldet(4088849): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver May 10 2024 03:17:52 server2 maldet(4088849): {sigup} latest signature set already installed May 10 2024 03:17:53 server2 maldet(4088960): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress May 10 2024 03:17:54 server2 maldet(4088960): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) May 10 2024 03:17:54 server2 maldet(4088960): {scan} building file list for of new/modified files from last 1 days, this might take awhile... May 10 2024 03:17:54 server2 maldet(4088960): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 May 10 2024 03:17:54 server2 maldet(4088960): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 May 10 2024 03:18:17 server2 maldet(4088960): {scan} file list completed in 23s, found 379 files... May 10 2024 03:18:17 server2 maldet(4088960): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... May 10 2024 03:18:17 server2 maldet(4088960): {scan} scan of (379 files) in progress... May 10 2024 03:18:28 server2 maldet(4088960): {scan} scan completed on : files 379, malware hits 0, cleaned hits 0, time 35s May 10 2024 03:18:28 server2 maldet(4088960): {scan} scan report saved, to view run: maldet --report 240510-0317.4088960 May 11 2024 03:38:00 server2 maldet(121544): {update} checking for available updates... May 11 2024 03:38:00 server2 maldet(121544): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver May 11 2024 03:38:00 server2 maldet(121544): {update} hashing install files and checking against server... May 11 2024 03:38:00 server2 maldet(121544): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash May 11 2024 03:38:00 server2 maldet(121544): {update} latest version already installed. May 11 2024 03:38:01 server2 maldet(121677): {sigup} performing signature update check... May 11 2024 03:38:01 server2 maldet(121677): {sigup} local signature set is version 202405071155649 May 11 2024 03:38:01 server2 maldet(121677): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver May 11 2024 03:38:01 server2 maldet(121677): {sigup} new signature set 202405101922723 available May 11 2024 03:38:01 server2 maldet(121677): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz May 11 2024 03:38:01 server2 maldet(121677): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz May 11 2024 03:38:01 server2 maldet(121677): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 May 11 2024 03:38:01 server2 maldet(121677): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz May 11 2024 03:38:01 server2 maldet(121677): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz May 11 2024 03:38:01 server2 maldet(121677): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 May 11 2024 03:38:01 server2 maldet(121677): {sigup} verified md5sum of maldet-sigpack.tgz May 11 2024 03:38:01 server2 maldet(121677): {sigup} unpacked and installed maldet-sigpack.tgz May 11 2024 03:38:01 server2 maldet(121677): {sigup} verified md5sum of maldet-clean.tgz May 11 2024 03:38:01 server2 maldet(121677): {sigup} unpacked and installed maldet-clean.tgz May 11 2024 03:38:02 server2 maldet(121677): {sigup} signature set update completed May 11 2024 03:38:02 server2 maldet(121677): {sigup} 17638 signatures (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) May 11 2024 03:38:02 server2 maldet(121921): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress May 11 2024 03:38:03 server2 maldet(121921): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) May 11 2024 03:38:03 server2 maldet(121921): {scan} building file list for of new/modified files from last 1 days, this might take awhile... May 11 2024 03:38:03 server2 maldet(121921): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 May 11 2024 03:38:03 server2 maldet(121921): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 May 11 2024 03:38:27 server2 maldet(121921): {scan} file list completed in 24s, found 436 files... May 11 2024 03:38:27 server2 maldet(121921): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... May 11 2024 03:38:27 server2 maldet(121921): {scan} scan of (436 files) in progress... May 11 2024 03:38:41 server2 maldet(121921): {scan} scan completed on : files 436, malware hits 0, cleaned hits 0, time 39s May 11 2024 03:38:41 server2 maldet(121921): {scan} scan report saved, to view run: maldet --report 240511-0338.121921 May 12 2024 03:36:35 server2 maldet(348864): {update} checking for available updates... May 12 2024 03:36:35 server2 maldet(348864): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver May 12 2024 03:36:35 server2 maldet(348864): {update} hashing install files and checking against server... May 12 2024 03:36:35 server2 maldet(348864): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash May 12 2024 03:36:35 server2 maldet(348864): {update} latest version already installed. May 12 2024 03:36:35 server2 maldet(348997): {sigup} performing signature update check... May 12 2024 03:36:35 server2 maldet(348997): {sigup} local signature set is version 202405101922723 May 12 2024 03:36:36 server2 maldet(348997): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver May 12 2024 03:36:36 server2 maldet(348997): {sigup} latest signature set already installed May 12 2024 03:36:36 server2 maldet(349108): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress May 12 2024 03:36:37 server2 maldet(349108): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) May 12 2024 03:36:37 server2 maldet(349108): {scan} building file list for of new/modified files from last 1 days, this might take awhile... May 12 2024 03:36:37 server2 maldet(349108): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 May 12 2024 03:36:37 server2 maldet(349108): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 May 12 2024 03:36:51 server2 maldet(349108): {scan} file list completed in 14s, found 491 files... May 12 2024 03:36:51 server2 maldet(349108): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... May 12 2024 03:36:51 server2 maldet(349108): {scan} scan of (491 files) in progress... May 12 2024 03:37:11 server2 maldet(349108): {scan} scan completed on : files 491, malware hits 0, cleaned hits 0, time 35s May 12 2024 03:37:11 server2 maldet(349108): {scan} scan report saved, to view run: maldet --report 240512-0336.349108 May 13 2024 03:26:38 server2 maldet(590778): {update} checking for available updates... May 13 2024 03:26:38 server2 maldet(590778): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver May 13 2024 03:26:38 server2 maldet(590778): {update} hashing install files and checking against server... May 13 2024 03:26:38 server2 maldet(590778): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash May 13 2024 03:26:38 server2 maldet(590778): {update} latest version already installed. May 13 2024 03:26:39 server2 maldet(590911): {sigup} performing signature update check... May 13 2024 03:26:39 server2 maldet(590911): {sigup} local signature set is version 202405101922723 May 13 2024 03:26:39 server2 maldet(590911): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver May 13 2024 03:26:39 server2 maldet(590911): {sigup} latest signature set already installed May 13 2024 03:26:39 server2 maldet(591022): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress May 13 2024 03:26:40 server2 maldet(591022): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) May 13 2024 03:26:40 server2 maldet(591022): {scan} building file list for of new/modified files from last 1 days, this might take awhile... May 13 2024 03:26:40 server2 maldet(591022): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 May 13 2024 03:26:40 server2 maldet(591022): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 May 13 2024 03:27:05 server2 maldet(591022): {scan} file list completed in 25s, found 375 files... May 13 2024 03:27:05 server2 maldet(591022): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... May 13 2024 03:27:05 server2 maldet(591022): {scan} scan of (375 files) in progress... May 13 2024 03:27:17 server2 maldet(591022): {scan} scan completed on : files 375, malware hits 0, cleaned hits 0, time 38s May 13 2024 03:27:17 server2 maldet(591022): {scan} scan report saved, to view run: maldet --report 240513-0326.591022 May 14 2024 03:41:54 server2 maldet(833545): {update} checking for available updates... May 14 2024 03:41:54 server2 maldet(833545): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver May 14 2024 03:41:54 server2 maldet(833545): {update} hashing install files and checking against server... May 14 2024 03:41:54 server2 maldet(833545): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash May 14 2024 03:41:54 server2 maldet(833545): {update} latest version already installed. May 14 2024 03:41:54 server2 maldet(833678): {sigup} performing signature update check... May 14 2024 03:41:54 server2 maldet(833678): {sigup} local signature set is version 202405101922723 May 14 2024 03:41:54 server2 maldet(833678): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver May 14 2024 03:41:55 server2 maldet(833678): {sigup} new signature set 202405132693953 available May 14 2024 03:41:55 server2 maldet(833678): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz May 14 2024 03:41:55 server2 maldet(833678): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz May 14 2024 03:41:55 server2 maldet(833678): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 May 14 2024 03:41:55 server2 maldet(833678): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz May 14 2024 03:41:55 server2 maldet(833678): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz May 14 2024 03:41:55 server2 maldet(833678): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 May 14 2024 03:41:55 server2 maldet(833678): {sigup} verified md5sum of maldet-sigpack.tgz May 14 2024 03:41:55 server2 maldet(833678): {sigup} unpacked and installed maldet-sigpack.tgz May 14 2024 03:41:55 server2 maldet(833678): {sigup} verified md5sum of maldet-clean.tgz May 14 2024 03:41:55 server2 maldet(833678): {sigup} unpacked and installed maldet-clean.tgz May 14 2024 03:41:55 server2 maldet(833678): {sigup} signature set update completed May 14 2024 03:41:55 server2 maldet(833678): {sigup} 17638 signatures (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) May 14 2024 03:41:55 server2 maldet(833906): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress May 14 2024 03:41:56 server2 maldet(833906): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) May 14 2024 03:41:56 server2 maldet(833906): {scan} building file list for of new/modified files from last 1 days, this might take awhile... May 14 2024 03:41:56 server2 maldet(833906): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 May 14 2024 03:41:56 server2 maldet(833906): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 May 14 2024 03:42:56 server2 maldet(833906): {scan} file list completed in 60s, found 305 files... May 14 2024 03:42:56 server2 maldet(833906): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... May 14 2024 03:42:56 server2 maldet(833906): {scan} scan of (305 files) in progress... May 14 2024 03:43:09 server2 maldet(833906): {scan} scan completed on : files 305, malware hits 0, cleaned hits 0, time 73s May 14 2024 03:43:09 server2 maldet(833906): {scan} scan report saved, to view run: maldet --report 240514-0341.833906 May 15 2024 03:33:46 server2 maldet(1067172): {update} checking for available updates... May 15 2024 03:33:46 server2 maldet(1067172): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver May 15 2024 03:33:46 server2 maldet(1067172): {update} hashing install files and checking against server... May 15 2024 03:33:47 server2 maldet(1067172): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash May 15 2024 03:33:47 server2 maldet(1067172): {update} latest version already installed. May 15 2024 03:33:47 server2 maldet(1067305): {sigup} performing signature update check... May 15 2024 03:33:47 server2 maldet(1067305): {sigup} local signature set is version 202405132693953 May 15 2024 03:33:47 server2 maldet(1067305): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver May 15 2024 03:33:47 server2 maldet(1067305): {sigup} latest signature set already installed May 15 2024 03:33:47 server2 maldet(1067417): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress May 15 2024 03:33:48 server2 maldet(1067417): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) May 15 2024 03:33:48 server2 maldet(1067417): {scan} building file list for of new/modified files from last 1 days, this might take awhile... May 15 2024 03:33:48 server2 maldet(1067417): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 May 15 2024 03:33:48 server2 maldet(1067417): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 May 15 2024 03:34:09 server2 maldet(1067417): {scan} file list completed in 21s, found 463 files... May 15 2024 03:34:09 server2 maldet(1067417): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... May 15 2024 03:34:10 server2 maldet(1067417): {scan} scan of (463 files) in progress... May 15 2024 03:34:24 server2 maldet(1067417): {scan} scan completed on : files 463, malware hits 0, cleaned hits 0, time 37s May 15 2024 03:34:24 server2 maldet(1067417): {scan} scan report saved, to view run: maldet --report 240515-0333.1067417 May 16 2024 03:49:46 server2 maldet(1300794): {update} checking for available updates... May 16 2024 03:49:46 server2 maldet(1300794): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver May 16 2024 03:49:46 server2 maldet(1300794): {update} hashing install files and checking against server... May 16 2024 03:49:46 server2 maldet(1300794): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash May 16 2024 03:49:46 server2 maldet(1300794): {update} latest version already installed. May 16 2024 03:49:46 server2 maldet(1300927): {sigup} performing signature update check... May 16 2024 03:49:46 server2 maldet(1300927): {sigup} local signature set is version 202405132693953 May 16 2024 03:49:46 server2 maldet(1300927): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver May 16 2024 03:49:46 server2 maldet(1300927): {sigup} latest signature set already installed May 16 2024 03:49:46 server2 maldet(1301038): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress May 16 2024 03:49:47 server2 maldet(1301038): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) May 16 2024 03:49:47 server2 maldet(1301038): {scan} building file list for of new/modified files from last 1 days, this might take awhile... May 16 2024 03:49:47 server2 maldet(1301038): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 May 16 2024 03:49:47 server2 maldet(1301038): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 May 16 2024 03:50:11 server2 maldet(1301038): {scan} file list completed in 24s, found 503 files... May 16 2024 03:50:11 server2 maldet(1301038): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... May 16 2024 03:50:11 server2 maldet(1301038): {scan} scan of (503 files) in progress... May 16 2024 03:50:23 server2 maldet(1301038): {scan} scan completed on : files 503, malware hits 0, cleaned hits 0, time 37s May 16 2024 03:50:23 server2 maldet(1301038): {scan} scan report saved, to view run: maldet --report 240516-0349.1301038 May 17 2024 03:34:24 server2 maldet(1574375): {update} checking for available updates... May 17 2024 03:34:24 server2 maldet(1574375): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver May 17 2024 03:34:24 server2 maldet(1574375): {update} hashing install files and checking against server... May 17 2024 03:34:24 server2 maldet(1574375): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash May 17 2024 03:34:24 server2 maldet(1574375): {update} latest version already installed. May 17 2024 03:34:24 server2 maldet(1574508): {sigup} performing signature update check... May 17 2024 03:34:24 server2 maldet(1574508): {sigup} local signature set is version 202405132693953 May 17 2024 03:34:24 server2 maldet(1574508): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver May 17 2024 03:34:25 server2 maldet(1574508): {sigup} new signature set 202405163472817 available May 17 2024 03:34:25 server2 maldet(1574508): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz May 17 2024 03:34:25 server2 maldet(1574508): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz May 17 2024 03:34:25 server2 maldet(1574508): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 May 17 2024 03:34:25 server2 maldet(1574508): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz May 17 2024 03:34:25 server2 maldet(1574508): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz May 17 2024 03:34:25 server2 maldet(1574508): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 May 17 2024 03:34:25 server2 maldet(1574508): {sigup} verified md5sum of maldet-sigpack.tgz May 17 2024 03:34:25 server2 maldet(1574508): {sigup} unpacked and installed maldet-sigpack.tgz May 17 2024 03:34:25 server2 maldet(1574508): {sigup} verified md5sum of maldet-clean.tgz May 17 2024 03:34:25 server2 maldet(1574508): {sigup} unpacked and installed maldet-clean.tgz May 17 2024 03:34:25 server2 maldet(1574508): {sigup} signature set update completed May 17 2024 03:34:25 server2 maldet(1574508): {sigup} 17638 signatures (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) May 17 2024 03:34:25 server2 maldet(1574736): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress May 17 2024 03:34:26 server2 maldet(1574736): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) May 17 2024 03:34:26 server2 maldet(1574736): {scan} building file list for of new/modified files from last 1 days, this might take awhile... May 17 2024 03:34:26 server2 maldet(1574736): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 May 17 2024 03:34:26 server2 maldet(1574736): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 May 17 2024 03:34:50 server2 maldet(1574736): {scan} file list completed in 24s, found 571 files... May 17 2024 03:34:50 server2 maldet(1574736): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... May 17 2024 03:34:50 server2 maldet(1574736): {scan} scan of (571 files) in progress... May 17 2024 03:35:11 server2 maldet(1574736): {scan} scan completed on : files 571, malware hits 0, cleaned hits 0, time 46s May 17 2024 03:35:11 server2 maldet(1574736): {scan} scan report saved, to view run: maldet --report 240517-0334.1574736 May 18 2024 03:13:45 server2 maldet(1843160): {update} checking for available updates... May 18 2024 03:13:45 server2 maldet(1843160): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver May 18 2024 03:13:45 server2 maldet(1843160): {update} hashing install files and checking against server... May 18 2024 03:13:45 server2 maldet(1843160): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash May 18 2024 03:13:45 server2 maldet(1843160): {update} latest version already installed. May 18 2024 03:13:45 server2 maldet(1843295): {sigup} performing signature update check... May 18 2024 03:13:45 server2 maldet(1843295): {sigup} local signature set is version 202405163472817 May 18 2024 03:13:45 server2 maldet(1843295): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver May 18 2024 03:13:45 server2 maldet(1843295): {sigup} latest signature set already installed May 18 2024 03:13:45 server2 maldet(1843406): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress May 18 2024 03:13:46 server2 maldet(1843406): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) May 18 2024 03:13:46 server2 maldet(1843406): {scan} building file list for of new/modified files from last 1 days, this might take awhile... May 18 2024 03:13:46 server2 maldet(1843406): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 May 18 2024 03:13:46 server2 maldet(1843406): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 May 18 2024 03:14:09 server2 maldet(1843406): {scan} file list completed in 23s, found 490 files... May 18 2024 03:14:10 server2 maldet(1843406): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... May 18 2024 03:14:10 server2 maldet(1843406): {scan} scan of (490 files) in progress... May 18 2024 03:14:24 server2 maldet(1843406): {scan} scan completed on : files 490, malware hits 0, cleaned hits 0, time 39s May 18 2024 03:14:24 server2 maldet(1843406): {scan} scan report saved, to view run: maldet --report 240518-0313.1843406 May 19 2024 03:42:29 server2 maldet(2119164): {update} checking for available updates... May 19 2024 03:42:29 server2 maldet(2119164): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver May 19 2024 03:42:29 server2 maldet(2119164): {update} hashing install files and checking against server... May 19 2024 03:42:29 server2 maldet(2119164): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash May 19 2024 03:42:29 server2 maldet(2119164): {update} latest version already installed. May 19 2024 03:42:29 server2 maldet(2119298): {sigup} performing signature update check... May 19 2024 03:42:29 server2 maldet(2119298): {sigup} local signature set is version 202405163472817 May 19 2024 03:42:29 server2 maldet(2119298): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver May 19 2024 03:42:29 server2 maldet(2119298): {sigup} latest signature set already installed May 19 2024 03:42:29 server2 maldet(2119409): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress May 19 2024 03:42:31 server2 maldet(2119409): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) May 19 2024 03:42:31 server2 maldet(2119409): {scan} building file list for of new/modified files from last 1 days, this might take awhile... May 19 2024 03:42:31 server2 maldet(2119409): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 May 19 2024 03:42:31 server2 maldet(2119409): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 May 19 2024 03:42:43 server2 maldet(2119409): {scan} file list completed in 12s, found 460 files... May 19 2024 03:42:43 server2 maldet(2119409): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... May 19 2024 03:42:43 server2 maldet(2119409): {scan} scan of (460 files) in progress... May 19 2024 03:43:00 server2 maldet(2119409): {scan} scan completed on : files 460, malware hits 0, cleaned hits 0, time 31s May 19 2024 03:43:00 server2 maldet(2119409): {scan} scan report saved, to view run: maldet --report 240519-0342.2119409 May 20 2024 03:27:02 server2 maldet(2354975): {update} checking for available updates... May 20 2024 03:27:02 server2 maldet(2354975): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver May 20 2024 03:27:02 server2 maldet(2354975): {update} hashing install files and checking against server... May 20 2024 03:27:02 server2 maldet(2354975): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash May 20 2024 03:27:02 server2 maldet(2354975): {update} latest version already installed. May 20 2024 03:27:02 server2 maldet(2355111): {sigup} performing signature update check... May 20 2024 03:27:02 server2 maldet(2355111): {sigup} local signature set is version 202405163472817 May 20 2024 03:27:02 server2 maldet(2355111): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver May 20 2024 03:27:02 server2 maldet(2355111): {sigup} new signature set 2024051967501 available May 20 2024 03:27:02 server2 maldet(2355111): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz May 20 2024 03:27:03 server2 maldet(2355111): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz May 20 2024 03:27:03 server2 maldet(2355111): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 May 20 2024 03:27:03 server2 maldet(2355111): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz May 20 2024 03:27:03 server2 maldet(2355111): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz May 20 2024 03:27:03 server2 maldet(2355111): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 May 20 2024 03:27:03 server2 maldet(2355111): {sigup} verified md5sum of maldet-sigpack.tgz May 20 2024 03:27:03 server2 maldet(2355111): {sigup} unpacked and installed maldet-sigpack.tgz May 20 2024 03:27:03 server2 maldet(2355111): {sigup} verified md5sum of maldet-clean.tgz May 20 2024 03:27:03 server2 maldet(2355111): {sigup} unpacked and installed maldet-clean.tgz May 20 2024 03:27:03 server2 maldet(2355111): {sigup} signature set update completed May 20 2024 03:27:03 server2 maldet(2355111): {sigup} 17638 signatures (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) May 20 2024 03:27:03 server2 maldet(2355345): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress May 20 2024 03:27:04 server2 maldet(2355345): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) May 20 2024 03:27:04 server2 maldet(2355345): {scan} building file list for of new/modified files from last 1 days, this might take awhile... May 20 2024 03:27:04 server2 maldet(2355345): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 May 20 2024 03:27:04 server2 maldet(2355345): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 May 20 2024 03:27:32 server2 maldet(2355345): {scan} file list completed in 28s, found 603 files... May 20 2024 03:27:32 server2 maldet(2355345): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... May 20 2024 03:27:32 server2 maldet(2355345): {scan} scan of (603 files) in progress... May 20 2024 03:27:59 server2 maldet(2355345): {scan} scan completed on : files 603, malware hits 0, cleaned hits 0, time 56s May 20 2024 03:27:59 server2 maldet(2355345): {scan} scan report saved, to view run: maldet --report 240520-0327.2355345 May 21 2024 03:37:19 server2 maldet(2592935): {update} checking for available updates... May 21 2024 03:37:19 server2 maldet(2592935): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver May 21 2024 03:37:19 server2 maldet(2592935): {update} hashing install files and checking against server... May 21 2024 03:37:19 server2 maldet(2592935): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash May 21 2024 03:37:19 server2 maldet(2592935): {update} latest version already installed. May 21 2024 03:37:19 server2 maldet(2593068): {sigup} performing signature update check... May 21 2024 03:37:19 server2 maldet(2593068): {sigup} local signature set is version 2024051967501 May 21 2024 03:37:19 server2 maldet(2593068): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver May 21 2024 03:37:19 server2 maldet(2593068): {sigup} latest signature set already installed May 21 2024 03:37:19 server2 maldet(2593179): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress May 21 2024 03:37:20 server2 maldet(2593179): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) May 21 2024 03:37:20 server2 maldet(2593179): {scan} building file list for of new/modified files from last 1 days, this might take awhile... May 21 2024 03:37:20 server2 maldet(2593179): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 May 21 2024 03:37:20 server2 maldet(2593179): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 May 21 2024 03:37:37 server2 maldet(2593179): {scan} file list completed in 17s, found 607 files... May 21 2024 03:37:37 server2 maldet(2593179): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... May 21 2024 03:37:37 server2 maldet(2593179): {scan} scan of (607 files) in progress... May 21 2024 03:37:52 server2 maldet(2593179): {scan} scan completed on : files 607, malware hits 0, cleaned hits 0, time 33s May 21 2024 03:37:52 server2 maldet(2593179): {scan} scan report saved, to view run: maldet --report 240521-0337.2593179 May 22 2024 03:24:10 server2 maldet(2801241): {update} checking for available updates... May 22 2024 03:24:10 server2 maldet(2801241): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver May 22 2024 03:24:10 server2 maldet(2801241): {update} hashing install files and checking against server... May 22 2024 03:24:10 server2 maldet(2801241): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash May 22 2024 03:24:10 server2 maldet(2801241): {update} latest version already installed. May 22 2024 03:24:10 server2 maldet(2801374): {sigup} performing signature update check... May 22 2024 03:24:10 server2 maldet(2801374): {sigup} local signature set is version 2024051967501 May 22 2024 03:24:10 server2 maldet(2801374): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver May 22 2024 03:24:10 server2 maldet(2801374): {sigup} latest signature set already installed May 22 2024 03:24:11 server2 maldet(2801485): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress May 22 2024 03:24:12 server2 maldet(2801485): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) May 22 2024 03:24:12 server2 maldet(2801485): {scan} building file list for of new/modified files from last 1 days, this might take awhile... May 22 2024 03:24:12 server2 maldet(2801485): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 May 22 2024 03:24:12 server2 maldet(2801485): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 May 22 2024 03:24:33 server2 maldet(2801485): {scan} file list completed in 21s, found 615 files... May 22 2024 03:24:33 server2 maldet(2801485): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... May 22 2024 03:24:33 server2 maldet(2801485): {scan} scan of (615 files) in progress... May 22 2024 03:24:51 server2 maldet(2801485): {scan} scan completed on : files 615, malware hits 0, cleaned hits 0, time 40s May 22 2024 03:24:51 server2 maldet(2801485): {scan} scan report saved, to view run: maldet --report 240522-0324.2801485 May 23 2024 03:22:05 server2 maldet(2999694): {update} checking for available updates... May 23 2024 03:22:05 server2 maldet(2999694): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver May 23 2024 03:22:05 server2 maldet(2999694): {update} hashing install files and checking against server... May 23 2024 03:22:05 server2 maldet(2999694): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash May 23 2024 03:22:05 server2 maldet(2999694): {update} latest version already installed. May 23 2024 03:22:05 server2 maldet(2999828): {sigup} performing signature update check... May 23 2024 03:22:05 server2 maldet(2999828): {sigup} local signature set is version 2024051967501 May 23 2024 03:22:05 server2 maldet(2999828): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver May 23 2024 03:22:05 server2 maldet(2999828): {sigup} new signature set 20240522846239 available May 23 2024 03:22:05 server2 maldet(2999828): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz May 23 2024 03:22:05 server2 maldet(2999828): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz May 23 2024 03:22:06 server2 maldet(2999828): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 May 23 2024 03:22:06 server2 maldet(2999828): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz May 23 2024 03:22:06 server2 maldet(2999828): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz May 23 2024 03:22:06 server2 maldet(2999828): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 May 23 2024 03:22:06 server2 maldet(2999828): {sigup} verified md5sum of maldet-sigpack.tgz May 23 2024 03:22:06 server2 maldet(2999828): {sigup} unpacked and installed maldet-sigpack.tgz May 23 2024 03:22:06 server2 maldet(2999828): {sigup} verified md5sum of maldet-clean.tgz May 23 2024 03:22:06 server2 maldet(2999828): {sigup} unpacked and installed maldet-clean.tgz May 23 2024 03:22:06 server2 maldet(2999828): {sigup} signature set update completed May 23 2024 03:22:06 server2 maldet(2999828): {sigup} 17638 signatures (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) May 23 2024 03:22:06 server2 maldet(3000056): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress May 23 2024 03:22:07 server2 maldet(3000056): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) May 23 2024 03:22:07 server2 maldet(3000056): {scan} building file list for of new/modified files from last 1 days, this might take awhile... May 23 2024 03:22:07 server2 maldet(3000056): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 May 23 2024 03:22:07 server2 maldet(3000056): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 May 23 2024 03:22:40 server2 maldet(3000056): {scan} file list completed in 33s, found 1704 files... May 23 2024 03:22:40 server2 maldet(3000056): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... May 23 2024 03:22:40 server2 maldet(3000056): {scan} scan of (1704 files) in progress... May 23 2024 03:23:15 server2 maldet(3000056): {hit} malware hit {HEX}php.malware.magento.599 found for /home/shadybiz/public_html/storage/framework/sessions/Y2rOEWw5tj0ykuCDo2aMrsZdLiz9g2hTMAH6WVqs May 23 2024 03:23:15 server2 maldet(3000056): {hit} malware hit {YARA}r57shell_php_php found for /home/shadybiz/public_html/storage/framework/sessions/uUuyW7FjMzUJgHnSPm6bKPaq2OieUR0jzxmN3D06 May 23 2024 03:23:15 server2 maldet(3000056): {scan} scan completed on : files 1704, malware hits 2, cleaned hits 0, time 69s May 23 2024 03:23:15 server2 maldet(3000056): {scan} scan report saved, to view run: maldet --report 240523-0322.3000056 May 23 2024 03:23:15 server2 maldet(3000056): {scan} quarantine is disabled! set quarantine_hits=1 in conf.maldet or to quarantine results run: maldet -q 240523-0322.3000056 May 24 2024 04:04:13 server2 maldet(3202518): {update} checking for available updates... May 24 2024 04:04:13 server2 maldet(3202518): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver May 24 2024 04:04:13 server2 maldet(3202518): {update} hashing install files and checking against server... May 24 2024 04:04:13 server2 maldet(3202518): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash May 24 2024 04:04:13 server2 maldet(3202518): {update} latest version already installed. May 24 2024 04:04:13 server2 maldet(3202657): {sigup} performing signature update check... May 24 2024 04:04:13 server2 maldet(3202657): {sigup} local signature set is version 20240522846239 May 24 2024 04:04:13 server2 maldet(3202657): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver May 24 2024 04:04:13 server2 maldet(3202657): {sigup} latest signature set already installed May 24 2024 04:04:13 server2 maldet(3202768): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress May 24 2024 04:04:15 server2 maldet(3202768): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) May 24 2024 04:04:15 server2 maldet(3202768): {scan} building file list for of new/modified files from last 1 days, this might take awhile... May 24 2024 04:04:15 server2 maldet(3202768): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 May 24 2024 04:04:15 server2 maldet(3202768): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 May 24 2024 04:04:53 server2 maldet(3202768): {scan} file list completed in 38s, found 329 files... May 24 2024 04:04:53 server2 maldet(3202768): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... May 24 2024 04:04:53 server2 maldet(3202768): {scan} scan of (329 files) in progress... May 24 2024 04:05:06 server2 maldet(3202768): {scan} scan completed on : files 329, malware hits 0, cleaned hits 0, time 53s May 24 2024 04:05:06 server2 maldet(3202768): {scan} scan report saved, to view run: maldet --report 240524-0404.3202768 May 25 2024 03:38:07 server2 maldet(3395115): {update} checking for available updates... May 25 2024 03:38:07 server2 maldet(3395115): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver May 25 2024 03:38:07 server2 maldet(3395115): {update} hashing install files and checking against server... May 25 2024 03:38:07 server2 maldet(3395115): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash May 25 2024 03:38:07 server2 maldet(3395115): {update} latest version already installed. May 25 2024 03:38:07 server2 maldet(3395248): {sigup} performing signature update check... May 25 2024 03:38:07 server2 maldet(3395248): {sigup} local signature set is version 20240522846239 May 25 2024 03:38:07 server2 maldet(3395248): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver May 25 2024 03:38:07 server2 maldet(3395248): {sigup} latest signature set already installed May 25 2024 03:38:07 server2 maldet(3395359): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress May 25 2024 03:38:08 server2 maldet(3395359): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) May 25 2024 03:38:08 server2 maldet(3395359): {scan} building file list for of new/modified files from last 1 days, this might take awhile... May 25 2024 03:38:08 server2 maldet(3395359): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 May 25 2024 03:38:08 server2 maldet(3395359): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 May 25 2024 03:38:29 server2 maldet(3395359): {scan} file list completed in 21s, found 448 files... May 25 2024 03:38:29 server2 maldet(3395359): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... May 25 2024 03:38:29 server2 maldet(3395359): {scan} scan of (448 files) in progress... May 25 2024 03:38:40 server2 maldet(3395359): {scan} scan completed on : files 448, malware hits 0, cleaned hits 0, time 33s May 25 2024 03:38:40 server2 maldet(3395359): {scan} scan report saved, to view run: maldet --report 240525-0338.3395359 May 26 2024 03:32:14 server2 maldet(3593057): {update} checking for available updates... May 26 2024 03:32:14 server2 maldet(3593057): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver May 26 2024 03:32:14 server2 maldet(3593057): {update} hashing install files and checking against server... May 26 2024 03:32:14 server2 maldet(3593057): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash May 26 2024 03:32:14 server2 maldet(3593057): {update} latest version already installed. May 26 2024 03:32:14 server2 maldet(3593190): {sigup} performing signature update check... May 26 2024 03:32:14 server2 maldet(3593190): {sigup} local signature set is version 20240522846239 May 26 2024 03:32:14 server2 maldet(3593190): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver May 26 2024 03:32:14 server2 maldet(3593190): {sigup} new signature set 202405251633332 available May 26 2024 03:32:14 server2 maldet(3593190): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz May 26 2024 03:32:15 server2 maldet(3593190): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz May 26 2024 03:32:15 server2 maldet(3593190): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 May 26 2024 03:32:15 server2 maldet(3593190): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz May 26 2024 03:32:15 server2 maldet(3593190): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz May 26 2024 03:32:15 server2 maldet(3593190): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 May 26 2024 03:32:15 server2 maldet(3593190): {sigup} verified md5sum of maldet-sigpack.tgz May 26 2024 03:32:15 server2 maldet(3593190): {sigup} unpacked and installed maldet-sigpack.tgz May 26 2024 03:32:15 server2 maldet(3593190): {sigup} verified md5sum of maldet-clean.tgz May 26 2024 03:32:15 server2 maldet(3593190): {sigup} unpacked and installed maldet-clean.tgz May 26 2024 03:32:15 server2 maldet(3593190): {sigup} signature set update completed May 26 2024 03:32:15 server2 maldet(3593190): {sigup} 17638 signatures (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) May 26 2024 03:32:15 server2 maldet(3593423): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress May 26 2024 03:32:17 server2 maldet(3593423): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) May 26 2024 03:32:17 server2 maldet(3593423): {scan} building file list for of new/modified files from last 1 days, this might take awhile... May 26 2024 03:32:17 server2 maldet(3593423): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 May 26 2024 03:32:17 server2 maldet(3593423): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 May 26 2024 03:32:34 server2 maldet(3593423): {scan} file list completed in 17s, found 507 files... May 26 2024 03:32:35 server2 maldet(3593423): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... May 26 2024 03:32:35 server2 maldet(3593423): {scan} scan of (507 files) in progress... May 26 2024 03:32:50 server2 maldet(3593423): {scan} scan completed on : files 507, malware hits 0, cleaned hits 0, time 35s May 26 2024 03:32:50 server2 maldet(3593423): {scan} scan report saved, to view run: maldet --report 240526-0332.3593423 May 27 2024 03:25:44 server2 maldet(3814918): {update} checking for available updates... May 27 2024 03:25:44 server2 maldet(3814918): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver May 27 2024 03:25:44 server2 maldet(3814918): {update} hashing install files and checking against server... May 27 2024 03:25:44 server2 maldet(3814918): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash May 27 2024 03:25:44 server2 maldet(3814918): {update} latest version already installed. May 27 2024 03:25:44 server2 maldet(3815051): {sigup} performing signature update check... May 27 2024 03:25:44 server2 maldet(3815051): {sigup} local signature set is version 202405251633332 May 27 2024 03:25:44 server2 maldet(3815051): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver May 27 2024 03:25:44 server2 maldet(3815051): {sigup} latest signature set already installed May 27 2024 03:25:45 server2 maldet(3815162): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress May 27 2024 03:25:46 server2 maldet(3815162): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) May 27 2024 03:25:46 server2 maldet(3815162): {scan} building file list for of new/modified files from last 1 days, this might take awhile... May 27 2024 03:25:46 server2 maldet(3815162): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 May 27 2024 03:25:46 server2 maldet(3815162): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 May 27 2024 03:26:10 server2 maldet(3815162): {scan} file list completed in 24s, found 304 files... May 27 2024 03:26:10 server2 maldet(3815162): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... May 27 2024 03:26:10 server2 maldet(3815162): {scan} scan of (304 files) in progress... May 27 2024 03:26:19 server2 maldet(3815162): {scan} scan completed on : files 304, malware hits 0, cleaned hits 0, time 34s May 27 2024 03:26:19 server2 maldet(3815162): {scan} scan report saved, to view run: maldet --report 240527-0325.3815162 May 28 2024 03:32:32 server2 maldet(4021872): {update} checking for available updates... May 28 2024 03:32:32 server2 maldet(4021872): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver May 28 2024 03:32:32 server2 maldet(4021872): {update} hashing install files and checking against server... May 28 2024 03:32:32 server2 maldet(4021872): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash May 28 2024 03:32:32 server2 maldet(4021872): {update} latest version already installed. May 28 2024 03:32:32 server2 maldet(4022005): {sigup} performing signature update check... May 28 2024 03:32:32 server2 maldet(4022005): {sigup} local signature set is version 202405251633332 May 28 2024 03:32:32 server2 maldet(4022005): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver May 28 2024 03:32:32 server2 maldet(4022005): {sigup} latest signature set already installed May 28 2024 03:32:33 server2 maldet(4022117): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress May 28 2024 03:32:34 server2 maldet(4022117): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) May 28 2024 03:32:34 server2 maldet(4022117): {scan} building file list for of new/modified files from last 1 days, this might take awhile... May 28 2024 03:32:34 server2 maldet(4022117): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 May 28 2024 03:32:34 server2 maldet(4022117): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 May 28 2024 03:32:56 server2 maldet(4022117): {scan} file list completed in 22s, found 310 files... May 28 2024 03:32:56 server2 maldet(4022117): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... May 28 2024 03:32:56 server2 maldet(4022117): {scan} scan of (310 files) in progress... May 28 2024 03:33:06 server2 maldet(4022117): {scan} scan completed on : files 310, malware hits 0, cleaned hits 0, time 33s May 28 2024 03:33:06 server2 maldet(4022117): {scan} scan report saved, to view run: maldet --report 240528-0332.4022117 May 29 2024 03:16:58 server2 maldet(23607): {update} checking for available updates... May 29 2024 03:16:59 server2 maldet(23607): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver May 29 2024 03:16:59 server2 maldet(23607): {update} hashing install files and checking against server... May 29 2024 03:16:59 server2 maldet(23607): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash May 29 2024 03:16:59 server2 maldet(23607): {update} latest version already installed. May 29 2024 03:16:59 server2 maldet(23742): {sigup} performing signature update check... May 29 2024 03:16:59 server2 maldet(23742): {sigup} local signature set is version 202405251633332 May 29 2024 03:16:59 server2 maldet(23742): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver May 29 2024 03:16:59 server2 maldet(23742): {sigup} new signature set 202405282336561 available May 29 2024 03:16:59 server2 maldet(23742): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz May 29 2024 03:16:59 server2 maldet(23742): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz May 29 2024 03:16:59 server2 maldet(23742): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 May 29 2024 03:16:59 server2 maldet(23742): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz May 29 2024 03:16:59 server2 maldet(23742): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz May 29 2024 03:16:59 server2 maldet(23742): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 May 29 2024 03:16:59 server2 maldet(23742): {sigup} verified md5sum of maldet-sigpack.tgz May 29 2024 03:16:59 server2 maldet(23742): {sigup} unpacked and installed maldet-sigpack.tgz May 29 2024 03:16:59 server2 maldet(23742): {sigup} verified md5sum of maldet-clean.tgz May 29 2024 03:16:59 server2 maldet(23742): {sigup} unpacked and installed maldet-clean.tgz May 29 2024 03:16:59 server2 maldet(23742): {sigup} signature set update completed May 29 2024 03:16:59 server2 maldet(23742): {sigup} 17638 signatures (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) May 29 2024 03:17:00 server2 maldet(23972): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress May 29 2024 03:17:02 server2 maldet(23972): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) May 29 2024 03:17:02 server2 maldet(23972): {scan} building file list for of new/modified files from last 1 days, this might take awhile... May 29 2024 03:17:02 server2 maldet(23972): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 May 29 2024 03:17:02 server2 maldet(23972): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 May 29 2024 03:17:20 server2 maldet(23972): {scan} file list completed in 18s, found 464 files... May 29 2024 03:17:20 server2 maldet(23972): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... May 29 2024 03:17:20 server2 maldet(23972): {scan} scan of (464 files) in progress... May 29 2024 03:17:35 server2 maldet(23972): {scan} scan completed on : files 464, malware hits 0, cleaned hits 0, time 35s May 29 2024 03:17:35 server2 maldet(23972): {scan} scan report saved, to view run: maldet --report 240529-0316.23972 May 30 2024 03:19:54 server2 maldet(718054): {update} checking for available updates... May 30 2024 03:19:54 server2 maldet(718054): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver May 30 2024 03:19:54 server2 maldet(718054): {update} hashing install files and checking against server... May 30 2024 03:19:54 server2 maldet(718054): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash May 30 2024 03:19:54 server2 maldet(718054): {update} latest version already installed. May 30 2024 03:19:54 server2 maldet(718187): {sigup} performing signature update check... May 30 2024 03:19:54 server2 maldet(718187): {sigup} local signature set is version 202405282336561 May 30 2024 03:19:55 server2 maldet(718187): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver May 30 2024 03:19:55 server2 maldet(718187): {sigup} latest signature set already installed May 30 2024 03:19:55 server2 maldet(718298): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress May 30 2024 03:19:56 server2 maldet(718298): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) May 30 2024 03:19:56 server2 maldet(718298): {scan} building file list for of new/modified files from last 1 days, this might take awhile... May 30 2024 03:19:56 server2 maldet(718298): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 May 30 2024 03:19:56 server2 maldet(718298): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 May 30 2024 03:20:22 server2 maldet(718298): {scan} file list completed in 26s, found 591 files... May 30 2024 03:20:22 server2 maldet(718298): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... May 30 2024 03:20:22 server2 maldet(718298): {scan} scan of (591 files) in progress... May 30 2024 03:20:36 server2 maldet(718298): {scan} scan completed on : files 591, malware hits 0, cleaned hits 0, time 41s May 30 2024 03:20:36 server2 maldet(718298): {scan} scan report saved, to view run: maldet --report 240530-0319.718298 May 31 2024 04:01:15 server2 maldet(918294): {update} checking for available updates... May 31 2024 04:01:15 server2 maldet(918294): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver May 31 2024 04:01:15 server2 maldet(918294): {update} hashing install files and checking against server... May 31 2024 04:01:15 server2 maldet(918294): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash May 31 2024 04:01:15 server2 maldet(918294): {update} latest version already installed. May 31 2024 04:01:15 server2 maldet(918427): {sigup} performing signature update check... May 31 2024 04:01:15 server2 maldet(918427): {sigup} local signature set is version 202405282336561 May 31 2024 04:01:15 server2 maldet(918427): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver May 31 2024 04:01:15 server2 maldet(918427): {sigup} latest signature set already installed May 31 2024 04:01:16 server2 maldet(918538): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress May 31 2024 04:01:17 server2 maldet(918538): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) May 31 2024 04:01:17 server2 maldet(918538): {scan} building file list for of new/modified files from last 1 days, this might take awhile... May 31 2024 04:01:17 server2 maldet(918538): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 May 31 2024 04:01:17 server2 maldet(918538): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 May 31 2024 04:01:42 server2 maldet(918538): {scan} file list completed in 25s, found 527 files... May 31 2024 04:01:42 server2 maldet(918538): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... May 31 2024 04:01:42 server2 maldet(918538): {scan} scan of (527 files) in progress... May 31 2024 04:01:55 server2 maldet(918538): {scan} scan completed on : files 527, malware hits 0, cleaned hits 0, time 39s May 31 2024 04:01:55 server2 maldet(918538): {scan} scan report saved, to view run: maldet --report 240531-0401.918538 Jun 01 2024 03:41:43 server2 maldet(1124318): {update} checking for available updates... Jun 01 2024 03:41:43 server2 maldet(1124318): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Jun 01 2024 03:41:43 server2 maldet(1124318): {update} hashing install files and checking against server... Jun 01 2024 03:41:43 server2 maldet(1124318): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Jun 01 2024 03:41:43 server2 maldet(1124318): {update} latest version already installed. Jun 01 2024 03:41:44 server2 maldet(1124451): {sigup} performing signature update check... Jun 01 2024 03:41:44 server2 maldet(1124451): {sigup} local signature set is version 202405282336561 Jun 01 2024 03:41:44 server2 maldet(1124451): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Jun 01 2024 03:41:44 server2 maldet(1124451): {sigup} new signature set 202405313138721 available Jun 01 2024 03:41:44 server2 maldet(1124451): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Jun 01 2024 03:41:44 server2 maldet(1124451): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Jun 01 2024 03:41:44 server2 maldet(1124451): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Jun 01 2024 03:41:44 server2 maldet(1124451): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Jun 01 2024 03:41:44 server2 maldet(1124451): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Jun 01 2024 03:41:44 server2 maldet(1124451): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Jun 01 2024 03:41:44 server2 maldet(1124451): {sigup} verified md5sum of maldet-sigpack.tgz Jun 01 2024 03:41:44 server2 maldet(1124451): {sigup} unpacked and installed maldet-sigpack.tgz Jun 01 2024 03:41:44 server2 maldet(1124451): {sigup} verified md5sum of maldet-clean.tgz Jun 01 2024 03:41:44 server2 maldet(1124451): {sigup} unpacked and installed maldet-clean.tgz Jun 01 2024 03:41:44 server2 maldet(1124451): {sigup} signature set update completed Jun 01 2024 03:41:44 server2 maldet(1124451): {sigup} 17638 signatures (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Jun 01 2024 03:41:44 server2 maldet(1124679): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Jun 01 2024 03:41:45 server2 maldet(1124679): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Jun 01 2024 03:41:45 server2 maldet(1124679): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Jun 01 2024 03:41:46 server2 maldet(1124679): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Jun 01 2024 03:41:46 server2 maldet(1124679): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Jun 01 2024 03:42:13 server2 maldet(1124679): {scan} file list completed in 27s, found 325 files... Jun 01 2024 03:42:13 server2 maldet(1124679): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Jun 01 2024 03:42:13 server2 maldet(1124679): {scan} scan of (325 files) in progress... Jun 01 2024 03:42:22 server2 maldet(1124679): {scan} scan completed on : files 325, malware hits 0, cleaned hits 0, time 38s Jun 01 2024 03:42:22 server2 maldet(1124679): {scan} scan report saved, to view run: maldet --report 240601-0341.1124679 Jun 02 2024 03:19:34 server2 maldet(2029711): {update} checking for available updates... Jun 02 2024 03:19:34 server2 maldet(2029711): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Jun 02 2024 03:19:34 server2 maldet(2029711): {update} hashing install files and checking against server... Jun 02 2024 03:19:34 server2 maldet(2029711): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Jun 02 2024 03:19:34 server2 maldet(2029711): {update} latest version already installed. Jun 02 2024 03:19:34 server2 maldet(2029844): {sigup} performing signature update check... Jun 02 2024 03:19:34 server2 maldet(2029844): {sigup} local signature set is version 202405313138721 Jun 02 2024 03:19:35 server2 maldet(2029844): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Jun 02 2024 03:19:35 server2 maldet(2029844): {sigup} new signature set 202406011167250 available Jun 02 2024 03:19:35 server2 maldet(2029844): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Jun 02 2024 03:19:35 server2 maldet(2029844): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Jun 02 2024 03:19:35 server2 maldet(2029844): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Jun 02 2024 03:19:35 server2 maldet(2029844): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Jun 02 2024 03:19:35 server2 maldet(2029844): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Jun 02 2024 03:19:35 server2 maldet(2029844): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Jun 02 2024 03:19:35 server2 maldet(2029844): {sigup} verified md5sum of maldet-sigpack.tgz Jun 02 2024 03:19:35 server2 maldet(2029844): {sigup} unpacked and installed maldet-sigpack.tgz Jun 02 2024 03:19:35 server2 maldet(2029844): {sigup} verified md5sum of maldet-clean.tgz Jun 02 2024 03:19:35 server2 maldet(2029844): {sigup} unpacked and installed maldet-clean.tgz Jun 02 2024 03:19:35 server2 maldet(2029844): {sigup} signature set update completed Jun 02 2024 03:19:35 server2 maldet(2029844): {sigup} 17638 signatures (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Jun 02 2024 03:19:35 server2 maldet(2030120): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Jun 02 2024 03:19:38 server2 maldet(2030120): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Jun 02 2024 03:19:38 server2 maldet(2030120): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Jun 02 2024 03:19:38 server2 maldet(2030120): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Jun 02 2024 03:19:38 server2 maldet(2030120): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Jun 02 2024 03:19:59 server2 maldet(2030120): {scan} file list completed in 21s, found 458 files... Jun 02 2024 03:19:59 server2 maldet(2030120): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Jun 02 2024 03:19:59 server2 maldet(2030120): {scan} scan of (458 files) in progress... Jun 02 2024 03:20:18 server2 maldet(2030120): {scan} scan completed on : files 458, malware hits 0, cleaned hits 0, time 42s Jun 02 2024 03:20:18 server2 maldet(2030120): {scan} scan report saved, to view run: maldet --report 240602-0319.2030120 Jun 03 2024 03:31:45 server2 maldet(1022768): {update} checking for available updates... Jun 03 2024 03:31:45 server2 maldet(1022768): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Jun 03 2024 03:31:45 server2 maldet(1022768): {update} hashing install files and checking against server... Jun 03 2024 03:31:45 server2 maldet(1022768): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Jun 03 2024 03:31:45 server2 maldet(1022768): {update} latest version already installed. Jun 03 2024 03:31:45 server2 maldet(1022902): {sigup} performing signature update check... Jun 03 2024 03:31:45 server2 maldet(1022902): {sigup} local signature set is version 202406011167250 Jun 03 2024 03:31:45 server2 maldet(1022902): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Jun 03 2024 03:31:45 server2 maldet(1022902): {sigup} latest signature set already installed Jun 03 2024 03:31:46 server2 maldet(1023013): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Jun 03 2024 03:31:47 server2 maldet(1023013): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Jun 03 2024 03:31:47 server2 maldet(1023013): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Jun 03 2024 03:31:47 server2 maldet(1023013): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Jun 03 2024 03:31:47 server2 maldet(1023013): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Jun 03 2024 03:32:15 server2 maldet(1023013): {scan} file list completed in 28s, found 621 files... Jun 03 2024 03:32:16 server2 maldet(1023013): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Jun 03 2024 03:32:16 server2 maldet(1023013): {scan} scan of (621 files) in progress... Jun 03 2024 03:32:34 server2 maldet(1023013): {scan} scan completed on : files 621, malware hits 0, cleaned hits 0, time 48s Jun 03 2024 03:32:34 server2 maldet(1023013): {scan} scan report saved, to view run: maldet --report 240603-0331.1023013 Jun 04 2024 03:37:59 server2 maldet(1919351): {update} checking for available updates... Jun 04 2024 03:37:59 server2 maldet(1919351): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Jun 04 2024 03:37:59 server2 maldet(1919351): {update} hashing install files and checking against server... Jun 04 2024 03:37:59 server2 maldet(1919351): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Jun 04 2024 03:37:59 server2 maldet(1919351): {update} latest version already installed. Jun 04 2024 03:37:59 server2 maldet(1919484): {sigup} performing signature update check... Jun 04 2024 03:37:59 server2 maldet(1919484): {sigup} local signature set is version 202406011167250 Jun 04 2024 03:37:59 server2 maldet(1919484): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Jun 04 2024 03:37:59 server2 maldet(1919484): {sigup} latest signature set already installed Jun 04 2024 03:37:59 server2 maldet(1919595): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Jun 04 2024 03:38:01 server2 maldet(1919595): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Jun 04 2024 03:38:01 server2 maldet(1919595): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Jun 04 2024 03:38:01 server2 maldet(1919595): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Jun 04 2024 03:38:01 server2 maldet(1919595): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Jun 04 2024 03:38:24 server2 maldet(1919595): {scan} file list completed in 23s, found 405 files... Jun 04 2024 03:38:24 server2 maldet(1919595): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Jun 04 2024 03:38:24 server2 maldet(1919595): {scan} scan of (405 files) in progress... Jun 04 2024 03:38:36 server2 maldet(1919595): {scan} scan completed on : files 405, malware hits 0, cleaned hits 0, time 37s Jun 04 2024 03:38:36 server2 maldet(1919595): {scan} scan report saved, to view run: maldet --report 240604-0337.1919595 Jun 05 2024 03:20:20 server2 maldet(3424237): {update} checking for available updates... Jun 05 2024 03:20:20 server2 maldet(3424237): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Jun 05 2024 03:20:20 server2 maldet(3424237): {update} hashing install files and checking against server... Jun 05 2024 03:20:20 server2 maldet(3424237): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Jun 05 2024 03:20:20 server2 maldet(3424237): {update} latest version already installed. Jun 05 2024 03:20:20 server2 maldet(3424370): {sigup} performing signature update check... Jun 05 2024 03:20:20 server2 maldet(3424370): {sigup} local signature set is version 202406011167250 Jun 05 2024 03:20:20 server2 maldet(3424370): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Jun 05 2024 03:20:20 server2 maldet(3424370): {sigup} new signature set 202406043123752 available Jun 05 2024 03:20:20 server2 maldet(3424370): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Jun 05 2024 03:20:21 server2 maldet(3424370): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Jun 05 2024 03:20:21 server2 maldet(3424370): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Jun 05 2024 03:20:21 server2 maldet(3424370): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Jun 05 2024 03:20:21 server2 maldet(3424370): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Jun 05 2024 03:20:21 server2 maldet(3424370): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Jun 05 2024 03:20:21 server2 maldet(3424370): {sigup} verified md5sum of maldet-sigpack.tgz Jun 05 2024 03:20:21 server2 maldet(3424370): {sigup} unpacked and installed maldet-sigpack.tgz Jun 05 2024 03:20:21 server2 maldet(3424370): {sigup} verified md5sum of maldet-clean.tgz Jun 05 2024 03:20:21 server2 maldet(3424370): {sigup} unpacked and installed maldet-clean.tgz Jun 05 2024 03:20:21 server2 maldet(3424370): {sigup} signature set update completed Jun 05 2024 03:20:21 server2 maldet(3424370): {sigup} 17638 signatures (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Jun 05 2024 03:20:21 server2 maldet(3424598): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Jun 05 2024 03:20:24 server2 maldet(3424598): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Jun 05 2024 03:20:24 server2 maldet(3424598): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Jun 05 2024 03:20:24 server2 maldet(3424598): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Jun 05 2024 03:20:24 server2 maldet(3424598): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Jun 05 2024 03:20:43 server2 maldet(3424598): {scan} file list completed in 19s, found 428 files... Jun 05 2024 03:20:43 server2 maldet(3424598): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Jun 05 2024 03:20:43 server2 maldet(3424598): {scan} scan of (428 files) in progress... Jun 05 2024 03:21:05 server2 maldet(3424598): {scan} scan completed on : files 428, malware hits 0, cleaned hits 0, time 44s Jun 05 2024 03:21:05 server2 maldet(3424598): {scan} scan report saved, to view run: maldet --report 240605-0320.3424598 Jun 06 2024 03:50:14 server2 maldet(1029603): {update} checking for available updates... Jun 06 2024 03:50:14 server2 maldet(1029603): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Jun 06 2024 03:50:14 server2 maldet(1029603): {update} hashing install files and checking against server... Jun 06 2024 03:50:14 server2 maldet(1029603): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Jun 06 2024 03:50:14 server2 maldet(1029603): {update} latest version already installed. Jun 06 2024 03:50:14 server2 maldet(1029741): {sigup} performing signature update check... Jun 06 2024 03:50:14 server2 maldet(1029741): {sigup} local signature set is version 202406043123752 Jun 06 2024 03:50:14 server2 maldet(1029741): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Jun 06 2024 03:50:14 server2 maldet(1029741): {sigup} latest signature set already installed Jun 06 2024 03:50:14 server2 maldet(1029854): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Jun 06 2024 03:50:15 server2 maldet(1029854): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Jun 06 2024 03:50:15 server2 maldet(1029854): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Jun 06 2024 03:50:15 server2 maldet(1029854): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Jun 06 2024 03:50:15 server2 maldet(1029854): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Jun 06 2024 03:50:41 server2 maldet(1029854): {scan} file list completed in 26s, found 404 files... Jun 06 2024 03:50:41 server2 maldet(1029854): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Jun 06 2024 03:50:41 server2 maldet(1029854): {scan} scan of (404 files) in progress... Jun 06 2024 03:50:52 server2 maldet(1029854): {scan} scan completed on : files 404, malware hits 0, cleaned hits 0, time 38s Jun 06 2024 03:50:52 server2 maldet(1029854): {scan} scan report saved, to view run: maldet --report 240606-0350.1029854 Jun 07 2024 03:31:48 server2 maldet(1281961): {update} checking for available updates... Jun 07 2024 03:31:48 server2 maldet(1281961): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Jun 07 2024 03:31:48 server2 maldet(1281961): {update} hashing install files and checking against server... Jun 07 2024 03:31:48 server2 maldet(1281961): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Jun 07 2024 03:31:48 server2 maldet(1281961): {update} latest version already installed. Jun 07 2024 03:31:48 server2 maldet(1282094): {sigup} performing signature update check... Jun 07 2024 03:31:48 server2 maldet(1282094): {sigup} local signature set is version 202406043123752 Jun 07 2024 03:31:48 server2 maldet(1282094): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Jun 07 2024 03:31:48 server2 maldet(1282094): {sigup} latest signature set already installed Jun 07 2024 03:31:49 server2 maldet(1282205): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Jun 07 2024 03:31:50 server2 maldet(1282205): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Jun 07 2024 03:31:50 server2 maldet(1282205): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Jun 07 2024 03:31:50 server2 maldet(1282205): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Jun 07 2024 03:31:50 server2 maldet(1282205): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Jun 07 2024 03:32:13 server2 maldet(1282205): {scan} file list completed in 23s, found 449 files... Jun 07 2024 03:32:13 server2 maldet(1282205): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Jun 07 2024 03:32:13 server2 maldet(1282205): {scan} scan of (449 files) in progress... Jun 07 2024 03:32:26 server2 maldet(1282205): {scan} scan completed on : files 449, malware hits 0, cleaned hits 0, time 37s Jun 07 2024 03:32:26 server2 maldet(1282205): {scan} scan report saved, to view run: maldet --report 240607-0331.1282205 Jun 08 2024 03:52:00 server2 maldet(1516175): {update} checking for available updates... Jun 08 2024 03:52:00 server2 maldet(1516175): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Jun 08 2024 03:52:00 server2 maldet(1516175): {update} hashing install files and checking against server... Jun 08 2024 03:52:00 server2 maldet(1516175): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Jun 08 2024 03:52:00 server2 maldet(1516175): {update} latest version already installed. Jun 08 2024 03:52:00 server2 maldet(1516308): {sigup} performing signature update check... Jun 08 2024 03:52:00 server2 maldet(1516308): {sigup} local signature set is version 202406043123752 Jun 08 2024 03:52:00 server2 maldet(1516308): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Jun 08 2024 03:52:00 server2 maldet(1516308): {sigup} new signature set 202406072708004 available Jun 08 2024 03:52:00 server2 maldet(1516308): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Jun 08 2024 03:52:00 server2 maldet(1516308): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Jun 08 2024 03:52:00 server2 maldet(1516308): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Jun 08 2024 03:52:00 server2 maldet(1516308): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Jun 08 2024 03:52:00 server2 maldet(1516308): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Jun 08 2024 03:52:00 server2 maldet(1516308): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Jun 08 2024 03:52:00 server2 maldet(1516308): {sigup} verified md5sum of maldet-sigpack.tgz Jun 08 2024 03:52:01 server2 maldet(1516308): {sigup} unpacked and installed maldet-sigpack.tgz Jun 08 2024 03:52:01 server2 maldet(1516308): {sigup} verified md5sum of maldet-clean.tgz Jun 08 2024 03:52:01 server2 maldet(1516308): {sigup} unpacked and installed maldet-clean.tgz Jun 08 2024 03:52:01 server2 maldet(1516308): {sigup} signature set update completed Jun 08 2024 03:52:01 server2 maldet(1516308): {sigup} 17638 signatures (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Jun 08 2024 03:52:01 server2 maldet(1516538): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Jun 08 2024 03:52:02 server2 maldet(1516538): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Jun 08 2024 03:52:02 server2 maldet(1516538): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Jun 08 2024 03:52:02 server2 maldet(1516538): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Jun 08 2024 03:52:02 server2 maldet(1516538): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Jun 08 2024 03:52:28 server2 maldet(1516538): {scan} file list completed in 26s, found 545 files... Jun 08 2024 03:52:28 server2 maldet(1516538): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Jun 08 2024 03:52:28 server2 maldet(1516538): {scan} scan of (545 files) in progress... Jun 08 2024 03:52:52 server2 maldet(1516538): {scan} scan completed on : files 545, malware hits 0, cleaned hits 0, time 51s Jun 08 2024 03:52:52 server2 maldet(1516538): {scan} scan report saved, to view run: maldet --report 240608-0352.1516538 Jun 09 2024 03:30:02 server2 maldet(1750307): {update} checking for available updates... Jun 09 2024 03:30:03 server2 maldet(1750307): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Jun 09 2024 03:30:03 server2 maldet(1750307): {update} hashing install files and checking against server... Jun 09 2024 03:30:03 server2 maldet(1750307): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Jun 09 2024 03:30:03 server2 maldet(1750307): {update} latest version already installed. Jun 09 2024 03:30:03 server2 maldet(1750446): {sigup} performing signature update check... Jun 09 2024 03:30:03 server2 maldet(1750446): {sigup} local signature set is version 202406072708004 Jun 09 2024 03:30:04 server2 maldet(1750446): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Jun 09 2024 03:30:04 server2 maldet(1750446): {sigup} latest signature set already installed Jun 09 2024 03:30:04 server2 maldet(1750559): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Jun 09 2024 03:30:07 server2 maldet(1750559): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Jun 09 2024 03:30:07 server2 maldet(1750559): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Jun 09 2024 03:30:07 server2 maldet(1750559): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Jun 09 2024 03:30:07 server2 maldet(1750559): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Jun 09 2024 03:30:24 server2 maldet(1750559): {scan} file list completed in 17s, found 609 files... Jun 09 2024 03:30:24 server2 maldet(1750559): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Jun 09 2024 03:30:24 server2 maldet(1750559): {scan} scan of (609 files) in progress... Jun 09 2024 03:30:54 server2 maldet(1750559): {scan} scan completed on : files 609, malware hits 0, cleaned hits 0, time 50s Jun 09 2024 03:30:54 server2 maldet(1750559): {scan} scan report saved, to view run: maldet --report 240609-0330.1750559 Jun 10 2024 03:41:20 server2 maldet(2034189): {update} checking for available updates... Jun 10 2024 03:41:20 server2 maldet(2034189): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Jun 10 2024 03:41:20 server2 maldet(2034189): {update} hashing install files and checking against server... Jun 10 2024 03:41:20 server2 maldet(2034189): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Jun 10 2024 03:41:20 server2 maldet(2034189): {update} latest version already installed. Jun 10 2024 03:41:21 server2 maldet(2034322): {sigup} performing signature update check... Jun 10 2024 03:41:21 server2 maldet(2034322): {sigup} local signature set is version 202406072708004 Jun 10 2024 03:41:21 server2 maldet(2034322): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Jun 10 2024 03:41:21 server2 maldet(2034322): {sigup} latest signature set already installed Jun 10 2024 03:41:21 server2 maldet(2034434): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Jun 10 2024 03:41:22 server2 maldet(2034434): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Jun 10 2024 03:41:22 server2 maldet(2034434): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Jun 10 2024 03:41:22 server2 maldet(2034434): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Jun 10 2024 03:41:22 server2 maldet(2034434): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Jun 10 2024 03:41:43 server2 maldet(2034434): {scan} file list completed in 21s, found 288 files... Jun 10 2024 03:41:43 server2 maldet(2034434): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Jun 10 2024 03:41:43 server2 maldet(2034434): {scan} scan of (288 files) in progress... Jun 10 2024 03:41:52 server2 maldet(2034434): {scan} scan completed on : files 288, malware hits 0, cleaned hits 0, time 31s Jun 10 2024 03:41:52 server2 maldet(2034434): {scan} scan report saved, to view run: maldet --report 240610-0341.2034434 Jun 11 2024 03:15:50 server2 maldet(2292348): {update} checking for available updates... Jun 11 2024 03:15:50 server2 maldet(2292348): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Jun 11 2024 03:15:50 server2 maldet(2292348): {update} hashing install files and checking against server... Jun 11 2024 03:15:50 server2 maldet(2292348): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Jun 11 2024 03:15:50 server2 maldet(2292348): {update} latest version already installed. Jun 11 2024 03:15:50 server2 maldet(2292481): {sigup} performing signature update check... Jun 11 2024 03:15:50 server2 maldet(2292481): {sigup} local signature set is version 202406072708004 Jun 11 2024 03:15:50 server2 maldet(2292481): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Jun 11 2024 03:15:50 server2 maldet(2292481): {sigup} new signature set 202406101638544 available Jun 11 2024 03:15:50 server2 maldet(2292481): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Jun 11 2024 03:15:50 server2 maldet(2292481): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Jun 11 2024 03:15:50 server2 maldet(2292481): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Jun 11 2024 03:15:50 server2 maldet(2292481): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Jun 11 2024 03:15:50 server2 maldet(2292481): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Jun 11 2024 03:15:50 server2 maldet(2292481): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Jun 11 2024 03:15:50 server2 maldet(2292481): {sigup} verified md5sum of maldet-sigpack.tgz Jun 11 2024 03:15:50 server2 maldet(2292481): {sigup} unpacked and installed maldet-sigpack.tgz Jun 11 2024 03:15:50 server2 maldet(2292481): {sigup} verified md5sum of maldet-clean.tgz Jun 11 2024 03:15:50 server2 maldet(2292481): {sigup} unpacked and installed maldet-clean.tgz Jun 11 2024 03:15:51 server2 maldet(2292481): {sigup} signature set update completed Jun 11 2024 03:15:51 server2 maldet(2292481): {sigup} 17638 signatures (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Jun 11 2024 03:15:51 server2 maldet(2292709): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Jun 11 2024 03:15:51 server2 maldet(2292709): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Jun 11 2024 03:15:51 server2 maldet(2292709): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Jun 11 2024 03:15:52 server2 maldet(2292709): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Jun 11 2024 03:15:52 server2 maldet(2292709): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Jun 11 2024 03:16:17 server2 maldet(2292709): {scan} file list completed in 25s, found 406 files... Jun 11 2024 03:16:17 server2 maldet(2292709): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Jun 11 2024 03:16:17 server2 maldet(2292709): {scan} scan of (406 files) in progress... Jun 11 2024 03:16:29 server2 maldet(2292709): {scan} scan completed on : files 406, malware hits 0, cleaned hits 0, time 38s Jun 11 2024 03:16:29 server2 maldet(2292709): {scan} scan report saved, to view run: maldet --report 240611-0315.2292709 Jun 12 2024 03:55:45 server2 maldet(2551873): {update} checking for available updates... Jun 12 2024 03:55:45 server2 maldet(2551873): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Jun 12 2024 03:55:45 server2 maldet(2551873): {update} hashing install files and checking against server... Jun 12 2024 03:55:45 server2 maldet(2551873): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Jun 12 2024 03:55:45 server2 maldet(2551873): {update} latest version already installed. Jun 12 2024 03:55:45 server2 maldet(2552006): {sigup} performing signature update check... Jun 12 2024 03:55:45 server2 maldet(2552006): {sigup} local signature set is version 202406101638544 Jun 12 2024 03:55:45 server2 maldet(2552006): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Jun 12 2024 03:55:45 server2 maldet(2552006): {sigup} latest signature set already installed Jun 12 2024 03:55:45 server2 maldet(2552118): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Jun 12 2024 03:55:47 server2 maldet(2552118): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Jun 12 2024 03:55:47 server2 maldet(2552118): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Jun 12 2024 03:55:47 server2 maldet(2552118): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Jun 12 2024 03:55:47 server2 maldet(2552118): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Jun 12 2024 03:56:10 server2 maldet(2552118): {scan} file list completed in 23s, found 669 files... Jun 12 2024 03:56:10 server2 maldet(2552118): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Jun 12 2024 03:56:10 server2 maldet(2552118): {scan} scan of (669 files) in progress... Jun 12 2024 03:56:42 server2 maldet(2552118): {scan} scan completed on : files 669, malware hits 0, cleaned hits 0, time 57s Jun 12 2024 03:56:42 server2 maldet(2552118): {scan} scan report saved, to view run: maldet --report 240612-0355.2552118 Jun 13 2024 03:30:12 server2 maldet(2805263): {update} checking for available updates... Jun 13 2024 03:30:12 server2 maldet(2805263): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Jun 13 2024 03:30:13 server2 maldet(2805263): {update} hashing install files and checking against server... Jun 13 2024 03:30:13 server2 maldet(2805263): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Jun 13 2024 03:30:13 server2 maldet(2805263): {update} latest version already installed. Jun 13 2024 03:30:13 server2 maldet(2805396): {sigup} performing signature update check... Jun 13 2024 03:30:13 server2 maldet(2805396): {sigup} local signature set is version 202406101638544 Jun 13 2024 03:30:13 server2 maldet(2805396): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Jun 13 2024 03:30:13 server2 maldet(2805396): {sigup} latest signature set already installed Jun 13 2024 03:30:13 server2 maldet(2805507): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Jun 13 2024 03:30:14 server2 maldet(2805507): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Jun 13 2024 03:30:14 server2 maldet(2805507): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Jun 13 2024 03:30:14 server2 maldet(2805507): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Jun 13 2024 03:30:14 server2 maldet(2805507): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Jun 13 2024 03:30:37 server2 maldet(2805507): {scan} file list completed in 23s, found 358 files... Jun 13 2024 03:30:37 server2 maldet(2805507): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Jun 13 2024 03:30:37 server2 maldet(2805507): {scan} scan of (358 files) in progress... Jun 13 2024 03:30:50 server2 maldet(2805507): {scan} scan completed on : files 358, malware hits 0, cleaned hits 0, time 37s Jun 13 2024 03:30:50 server2 maldet(2805507): {scan} scan report saved, to view run: maldet --report 240613-0330.2805507 Jun 14 2024 03:25:16 server2 maldet(3831465): {update} checking for available updates... Jun 14 2024 03:25:16 server2 maldet(3831465): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Jun 14 2024 03:25:16 server2 maldet(3831465): {update} hashing install files and checking against server... Jun 14 2024 03:25:16 server2 maldet(3831465): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Jun 14 2024 03:25:16 server2 maldet(3831465): {update} latest version already installed. Jun 14 2024 03:25:16 server2 maldet(3831598): {sigup} performing signature update check... Jun 14 2024 03:25:16 server2 maldet(3831598): {sigup} local signature set is version 202406101638544 Jun 14 2024 03:25:16 server2 maldet(3831598): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Jun 14 2024 03:25:16 server2 maldet(3831598): {sigup} new signature set 20240613708945 available Jun 14 2024 03:25:16 server2 maldet(3831598): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Jun 14 2024 03:25:17 server2 maldet(3831598): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Jun 14 2024 03:25:17 server2 maldet(3831598): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Jun 14 2024 03:25:17 server2 maldet(3831598): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Jun 14 2024 03:25:17 server2 maldet(3831598): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Jun 14 2024 03:25:17 server2 maldet(3831598): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Jun 14 2024 03:25:17 server2 maldet(3831598): {sigup} verified md5sum of maldet-sigpack.tgz Jun 14 2024 03:25:17 server2 maldet(3831598): {sigup} unpacked and installed maldet-sigpack.tgz Jun 14 2024 03:25:17 server2 maldet(3831598): {sigup} verified md5sum of maldet-clean.tgz Jun 14 2024 03:25:17 server2 maldet(3831598): {sigup} unpacked and installed maldet-clean.tgz Jun 14 2024 03:25:17 server2 maldet(3831598): {sigup} signature set update completed Jun 14 2024 03:25:17 server2 maldet(3831598): {sigup} 17638 signatures (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Jun 14 2024 03:25:17 server2 maldet(3831826): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Jun 14 2024 03:25:18 server2 maldet(3831826): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Jun 14 2024 03:25:18 server2 maldet(3831826): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Jun 14 2024 03:25:18 server2 maldet(3831826): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Jun 14 2024 03:25:18 server2 maldet(3831826): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Jun 14 2024 03:25:44 server2 maldet(3831826): {scan} file list completed in 26s, found 329 files... Jun 14 2024 03:25:44 server2 maldet(3831826): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Jun 14 2024 03:25:44 server2 maldet(3831826): {scan} scan of (329 files) in progress... Jun 14 2024 03:25:55 server2 maldet(3831826): {scan} scan completed on : files 329, malware hits 0, cleaned hits 0, time 38s Jun 14 2024 03:25:55 server2 maldet(3831826): {scan} scan report saved, to view run: maldet --report 240614-0325.3831826 Jun 15 2024 03:52:48 server2 maldet(4110064): {update} checking for available updates... Jun 15 2024 03:52:48 server2 maldet(4110064): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Jun 15 2024 03:52:48 server2 maldet(4110064): {update} hashing install files and checking against server... Jun 15 2024 03:52:48 server2 maldet(4110064): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Jun 15 2024 03:52:48 server2 maldet(4110064): {update} latest version already installed. Jun 15 2024 03:52:48 server2 maldet(4110197): {sigup} performing signature update check... Jun 15 2024 03:52:48 server2 maldet(4110197): {sigup} local signature set is version 20240613708945 Jun 15 2024 03:52:48 server2 maldet(4110197): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Jun 15 2024 03:52:48 server2 maldet(4110197): {sigup} latest signature set already installed Jun 15 2024 03:52:48 server2 maldet(4110308): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Jun 15 2024 03:52:49 server2 maldet(4110308): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Jun 15 2024 03:52:49 server2 maldet(4110308): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Jun 15 2024 03:52:49 server2 maldet(4110308): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Jun 15 2024 03:52:49 server2 maldet(4110308): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Jun 15 2024 03:53:11 server2 maldet(4110308): {scan} file list completed in 22s, found 400 files... Jun 15 2024 03:53:11 server2 maldet(4110308): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Jun 15 2024 03:53:11 server2 maldet(4110308): {scan} scan of (400 files) in progress... Jun 15 2024 03:53:22 server2 maldet(4110308): {scan} scan completed on : files 400, malware hits 0, cleaned hits 0, time 34s Jun 15 2024 03:53:22 server2 maldet(4110308): {scan} scan report saved, to view run: maldet --report 240615-0352.4110308 Jun 16 2024 03:21:46 server2 maldet(143968): {update} checking for available updates... Jun 16 2024 03:21:47 server2 maldet(143968): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Jun 16 2024 03:21:47 server2 maldet(143968): {update} hashing install files and checking against server... Jun 16 2024 03:21:47 server2 maldet(143968): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Jun 16 2024 03:21:47 server2 maldet(143968): {update} latest version already installed. Jun 16 2024 03:21:47 server2 maldet(144101): {sigup} performing signature update check... Jun 16 2024 03:21:47 server2 maldet(144101): {sigup} local signature set is version 20240613708945 Jun 16 2024 03:21:47 server2 maldet(144101): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Jun 16 2024 03:21:47 server2 maldet(144101): {sigup} latest signature set already installed Jun 16 2024 03:21:47 server2 maldet(144213): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Jun 16 2024 03:21:49 server2 maldet(144213): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Jun 16 2024 03:21:49 server2 maldet(144213): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Jun 16 2024 03:21:49 server2 maldet(144213): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Jun 16 2024 03:21:49 server2 maldet(144213): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Jun 16 2024 03:22:09 server2 maldet(144213): {scan} file list completed in 20s, found 570 files... Jun 16 2024 03:22:09 server2 maldet(144213): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Jun 16 2024 03:22:09 server2 maldet(144213): {scan} scan of (570 files) in progress... Jun 16 2024 03:22:40 server2 maldet(144213): {scan} scan completed on : files 570, malware hits 0, cleaned hits 0, time 53s Jun 16 2024 03:22:40 server2 maldet(144213): {scan} scan report saved, to view run: maldet --report 240616-0321.144213 Jun 17 2024 03:32:11 server2 maldet(367548): {update} checking for available updates... Jun 17 2024 03:32:11 server2 maldet(367548): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Jun 17 2024 03:32:11 server2 maldet(367548): {update} hashing install files and checking against server... Jun 17 2024 03:32:11 server2 maldet(367548): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Jun 17 2024 03:32:11 server2 maldet(367548): {update} latest version already installed. Jun 17 2024 03:32:12 server2 maldet(367681): {sigup} performing signature update check... Jun 17 2024 03:32:12 server2 maldet(367681): {sigup} local signature set is version 20240613708945 Jun 17 2024 03:32:12 server2 maldet(367681): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Jun 17 2024 03:32:12 server2 maldet(367681): {sigup} new signature set 20240616598245 available Jun 17 2024 03:32:12 server2 maldet(367681): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Jun 17 2024 03:32:12 server2 maldet(367681): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Jun 17 2024 03:32:12 server2 maldet(367681): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Jun 17 2024 03:32:12 server2 maldet(367681): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Jun 17 2024 03:32:12 server2 maldet(367681): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Jun 17 2024 03:32:12 server2 maldet(367681): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Jun 17 2024 03:32:12 server2 maldet(367681): {sigup} verified md5sum of maldet-sigpack.tgz Jun 17 2024 03:32:12 server2 maldet(367681): {sigup} unpacked and installed maldet-sigpack.tgz Jun 17 2024 03:32:12 server2 maldet(367681): {sigup} verified md5sum of maldet-clean.tgz Jun 17 2024 03:32:12 server2 maldet(367681): {sigup} unpacked and installed maldet-clean.tgz Jun 17 2024 03:32:12 server2 maldet(367681): {sigup} signature set update completed Jun 17 2024 03:32:12 server2 maldet(367681): {sigup} 17638 signatures (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Jun 17 2024 03:32:12 server2 maldet(367913): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Jun 17 2024 03:32:13 server2 maldet(367913): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Jun 17 2024 03:32:13 server2 maldet(367913): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Jun 17 2024 03:32:13 server2 maldet(367913): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Jun 17 2024 03:32:14 server2 maldet(367913): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Jun 17 2024 03:32:46 server2 maldet(367913): {scan} file list completed in 33s, found 313 files... Jun 17 2024 03:32:46 server2 maldet(367913): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Jun 17 2024 03:32:46 server2 maldet(367913): {scan} scan of (313 files) in progress... Jun 17 2024 03:32:55 server2 maldet(367913): {scan} scan completed on : files 313, malware hits 0, cleaned hits 0, time 43s Jun 17 2024 03:32:55 server2 maldet(367913): {scan} scan report saved, to view run: maldet --report 240617-0332.367913 Jun 18 2024 03:46:36 server2 maldet(623360): {update} checking for available updates... Jun 18 2024 03:46:36 server2 maldet(623360): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Jun 18 2024 03:46:36 server2 maldet(623360): {update} hashing install files and checking against server... Jun 18 2024 03:46:36 server2 maldet(623360): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Jun 18 2024 03:46:36 server2 maldet(623360): {update} latest version already installed. Jun 18 2024 03:46:36 server2 maldet(623493): {sigup} performing signature update check... Jun 18 2024 03:46:36 server2 maldet(623493): {sigup} local signature set is version 20240616598245 Jun 18 2024 03:46:37 server2 maldet(623493): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Jun 18 2024 03:46:37 server2 maldet(623493): {sigup} latest signature set already installed Jun 18 2024 03:46:37 server2 maldet(623604): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Jun 18 2024 03:46:38 server2 maldet(623604): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Jun 18 2024 03:46:38 server2 maldet(623604): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Jun 18 2024 03:46:38 server2 maldet(623604): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Jun 18 2024 03:46:38 server2 maldet(623604): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/cartforge/public_html/" "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Jun 18 2024 03:47:08 server2 maldet(623604): {scan} file list completed in 30s, found 103967 files... Jun 18 2024 03:47:08 server2 maldet(623604): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Jun 18 2024 03:47:08 server2 maldet(623604): {scan} scan of (103967 files) in progress... Jun 18 2024 04:14:02 server2 maldet(623604): {scan} clamscan returned an error, check /usr/local/maldetect/logs/clamscan_log for details! Jun 18 2024 04:14:02 server2 maldet(623604): {scan} scan completed on : files 103967, malware hits 0, cleaned hits 0, time 1645s Jun 18 2024 04:14:02 server2 maldet(623604): {scan} scan report saved, to view run: maldet --report 240618-0346.623604 Jun 19 2024 03:44:45 server2 maldet(860236): {update} checking for available updates... Jun 19 2024 03:44:45 server2 maldet(860236): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Jun 19 2024 03:44:45 server2 maldet(860236): {update} hashing install files and checking against server... Jun 19 2024 03:44:45 server2 maldet(860236): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Jun 19 2024 03:44:45 server2 maldet(860236): {update} latest version already installed. Jun 19 2024 03:44:45 server2 maldet(860369): {sigup} performing signature update check... Jun 19 2024 03:44:45 server2 maldet(860369): {sigup} local signature set is version 20240616598245 Jun 19 2024 03:44:45 server2 maldet(860369): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Jun 19 2024 03:44:45 server2 maldet(860369): {sigup} latest signature set already installed Jun 19 2024 03:44:46 server2 maldet(860480): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Jun 19 2024 03:44:47 server2 maldet(860480): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Jun 19 2024 03:44:47 server2 maldet(860480): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Jun 19 2024 03:44:47 server2 maldet(860480): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Jun 19 2024 03:44:47 server2 maldet(860480): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/cartforge/public_html/" "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Jun 19 2024 03:45:21 server2 maldet(860480): {scan} file list completed in 34s, found 698 files... Jun 19 2024 03:45:21 server2 maldet(860480): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Jun 19 2024 03:45:21 server2 maldet(860480): {scan} scan of (698 files) in progress... Jun 19 2024 03:45:42 server2 maldet(860480): {scan} scan completed on : files 698, malware hits 0, cleaned hits 0, time 56s Jun 19 2024 03:45:42 server2 maldet(860480): {scan} scan report saved, to view run: maldet --report 240619-0344.860480 Jun 20 2024 03:30:35 server2 maldet(1095479): {update} checking for available updates... Jun 20 2024 03:30:35 server2 maldet(1095479): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Jun 20 2024 03:30:35 server2 maldet(1095479): {update} hashing install files and checking against server... Jun 20 2024 03:30:35 server2 maldet(1095479): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Jun 20 2024 03:30:35 server2 maldet(1095479): {update} latest version already installed. Jun 20 2024 03:30:35 server2 maldet(1095615): {sigup} performing signature update check... Jun 20 2024 03:30:35 server2 maldet(1095615): {sigup} local signature set is version 20240616598245 Jun 20 2024 03:30:35 server2 maldet(1095615): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Jun 20 2024 03:30:35 server2 maldet(1095615): {sigup} new signature set 202406191945628 available Jun 20 2024 03:30:35 server2 maldet(1095615): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Jun 20 2024 03:30:35 server2 maldet(1095615): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Jun 20 2024 03:30:35 server2 maldet(1095615): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Jun 20 2024 03:30:35 server2 maldet(1095615): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Jun 20 2024 03:30:35 server2 maldet(1095615): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Jun 20 2024 03:30:35 server2 maldet(1095615): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Jun 20 2024 03:30:35 server2 maldet(1095615): {sigup} verified md5sum of maldet-sigpack.tgz Jun 20 2024 03:30:36 server2 maldet(1095615): {sigup} unpacked and installed maldet-sigpack.tgz Jun 20 2024 03:30:36 server2 maldet(1095615): {sigup} verified md5sum of maldet-clean.tgz Jun 20 2024 03:30:36 server2 maldet(1095615): {sigup} unpacked and installed maldet-clean.tgz Jun 20 2024 03:30:36 server2 maldet(1095615): {sigup} signature set update completed Jun 20 2024 03:30:36 server2 maldet(1095615): {sigup} 17638 signatures (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Jun 20 2024 03:30:36 server2 maldet(1095845): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Jun 20 2024 03:30:37 server2 maldet(1095845): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Jun 20 2024 03:30:37 server2 maldet(1095845): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Jun 20 2024 03:30:37 server2 maldet(1095845): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Jun 20 2024 03:30:37 server2 maldet(1095845): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/cartforge/public_html/" "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Jun 20 2024 03:31:21 server2 maldet(1095845): {scan} file list completed in 44s, found 1044 files... Jun 20 2024 03:31:21 server2 maldet(1095845): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Jun 20 2024 03:31:21 server2 maldet(1095845): {scan} scan of (1044 files) in progress... Jun 20 2024 03:32:09 server2 maldet(1095845): {scan} scan completed on : files 1044, malware hits 0, cleaned hits 0, time 93s Jun 20 2024 03:32:09 server2 maldet(1095845): {scan} scan report saved, to view run: maldet --report 240620-0330.1095845 Jun 21 2024 03:55:19 server2 maldet(1334648): {update} checking for available updates... Jun 21 2024 03:55:19 server2 maldet(1334648): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Jun 21 2024 03:55:19 server2 maldet(1334648): {update} hashing install files and checking against server... Jun 21 2024 03:55:19 server2 maldet(1334648): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Jun 21 2024 03:55:19 server2 maldet(1334648): {update} latest version already installed. Jun 21 2024 03:55:19 server2 maldet(1334781): {sigup} performing signature update check... Jun 21 2024 03:55:19 server2 maldet(1334781): {sigup} local signature set is version 202406191945628 Jun 21 2024 03:55:19 server2 maldet(1334781): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Jun 21 2024 03:55:19 server2 maldet(1334781): {sigup} latest signature set already installed Jun 21 2024 03:55:20 server2 maldet(1334892): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Jun 21 2024 03:55:21 server2 maldet(1334892): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Jun 21 2024 03:55:21 server2 maldet(1334892): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Jun 21 2024 03:55:21 server2 maldet(1334892): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Jun 21 2024 03:55:21 server2 maldet(1334892): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/cartforge/public_html/" "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Jun 21 2024 03:55:58 server2 maldet(1334892): {scan} file list completed in 37s, found 624 files... Jun 21 2024 03:55:58 server2 maldet(1334892): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Jun 21 2024 03:55:58 server2 maldet(1334892): {scan} scan of (624 files) in progress... Jun 21 2024 03:56:14 server2 maldet(1334892): {scan} scan completed on : files 624, malware hits 0, cleaned hits 0, time 54s Jun 21 2024 03:56:14 server2 maldet(1334892): {scan} scan report saved, to view run: maldet --report 240621-0355.1334892 Jun 22 2024 03:15:21 server2 maldet(1615462): {update} checking for available updates... Jun 22 2024 03:15:21 server2 maldet(1615462): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Jun 22 2024 03:15:21 server2 maldet(1615462): {update} hashing install files and checking against server... Jun 22 2024 03:15:21 server2 maldet(1615462): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Jun 22 2024 03:15:21 server2 maldet(1615462): {update} latest version already installed. Jun 22 2024 03:15:21 server2 maldet(1615595): {sigup} performing signature update check... Jun 22 2024 03:15:21 server2 maldet(1615595): {sigup} local signature set is version 202406191945628 Jun 22 2024 03:15:21 server2 maldet(1615595): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Jun 22 2024 03:15:21 server2 maldet(1615595): {sigup} latest signature set already installed Jun 22 2024 03:15:22 server2 maldet(1615706): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Jun 22 2024 03:15:23 server2 maldet(1615706): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Jun 22 2024 03:15:23 server2 maldet(1615706): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Jun 22 2024 03:15:23 server2 maldet(1615706): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Jun 22 2024 03:15:23 server2 maldet(1615706): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/cartforge/public_html/" "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Jun 22 2024 03:16:23 server2 maldet(1615706): {scan} file list completed in 60s, found 483 files... Jun 22 2024 03:16:23 server2 maldet(1615706): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Jun 22 2024 03:16:23 server2 maldet(1615706): {scan} scan of (483 files) in progress... Jun 22 2024 03:16:39 server2 maldet(1615706): {scan} scan completed on : files 483, malware hits 0, cleaned hits 0, time 77s Jun 22 2024 03:16:39 server2 maldet(1615706): {scan} scan report saved, to view run: maldet --report 240622-0315.1615706 Jun 23 2024 03:56:20 server2 maldet(1952337): {update} checking for available updates... Jun 23 2024 03:56:20 server2 maldet(1952337): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Jun 23 2024 03:56:20 server2 maldet(1952337): {update} hashing install files and checking against server... Jun 23 2024 03:56:20 server2 maldet(1952337): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Jun 23 2024 03:56:20 server2 maldet(1952337): {update} latest version already installed. Jun 23 2024 03:56:20 server2 maldet(1952470): {sigup} performing signature update check... Jun 23 2024 03:56:20 server2 maldet(1952470): {sigup} local signature set is version 202406191945628 Jun 23 2024 03:56:20 server2 maldet(1952470): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Jun 23 2024 03:56:20 server2 maldet(1952470): {sigup} new signature set 202406223155762 available Jun 23 2024 03:56:20 server2 maldet(1952470): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Jun 23 2024 03:56:21 server2 maldet(1952470): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Jun 23 2024 03:56:21 server2 maldet(1952470): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Jun 23 2024 03:56:21 server2 maldet(1952470): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Jun 23 2024 03:56:21 server2 maldet(1952470): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Jun 23 2024 03:56:21 server2 maldet(1952470): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Jun 23 2024 03:56:21 server2 maldet(1952470): {sigup} verified md5sum of maldet-sigpack.tgz Jun 23 2024 03:56:21 server2 maldet(1952470): {sigup} unpacked and installed maldet-sigpack.tgz Jun 23 2024 03:56:21 server2 maldet(1952470): {sigup} verified md5sum of maldet-clean.tgz Jun 23 2024 03:56:21 server2 maldet(1952470): {sigup} unpacked and installed maldet-clean.tgz Jun 23 2024 03:56:21 server2 maldet(1952470): {sigup} signature set update completed Jun 23 2024 03:56:21 server2 maldet(1952470): {sigup} 17638 signatures (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Jun 23 2024 03:56:22 server2 maldet(1952698): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Jun 23 2024 03:56:24 server2 maldet(1952698): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Jun 23 2024 03:56:24 server2 maldet(1952698): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Jun 23 2024 03:56:24 server2 maldet(1952698): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Jun 23 2024 03:56:24 server2 maldet(1952698): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/cartforge/public_html/" "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Jun 23 2024 03:57:25 server2 maldet(1952698): {scan} file list completed in 61s, found 465 files... Jun 23 2024 03:57:25 server2 maldet(1952698): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Jun 23 2024 03:57:25 server2 maldet(1952698): {scan} scan of (465 files) in progress... Jun 23 2024 03:57:44 server2 maldet(1952698): {scan} scan completed on : files 465, malware hits 0, cleaned hits 0, time 82s Jun 23 2024 03:57:44 server2 maldet(1952698): {scan} scan report saved, to view run: maldet --report 240623-0356.1952698 Jun 24 2024 03:13:49 server2 maldet(2173347): {update} checking for available updates... Jun 24 2024 03:13:49 server2 maldet(2173347): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Jun 24 2024 03:13:49 server2 maldet(2173347): {update} hashing install files and checking against server... Jun 24 2024 03:13:49 server2 maldet(2173347): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Jun 24 2024 03:13:49 server2 maldet(2173347): {update} latest version already installed. Jun 24 2024 03:13:49 server2 maldet(2173480): {sigup} performing signature update check... Jun 24 2024 03:13:49 server2 maldet(2173480): {sigup} local signature set is version 202406223155762 Jun 24 2024 03:13:49 server2 maldet(2173480): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Jun 24 2024 03:13:49 server2 maldet(2173480): {sigup} latest signature set already installed Jun 24 2024 03:13:50 server2 maldet(2173591): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Jun 24 2024 03:13:51 server2 maldet(2173591): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Jun 24 2024 03:13:51 server2 maldet(2173591): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Jun 24 2024 03:13:51 server2 maldet(2173591): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Jun 24 2024 03:13:51 server2 maldet(2173591): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/cartforge/public_html/" "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Jun 24 2024 03:14:28 server2 maldet(2173591): {scan} file list completed in 37s, found 528 files... Jun 24 2024 03:14:28 server2 maldet(2173591): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Jun 24 2024 03:14:28 server2 maldet(2173591): {scan} scan of (528 files) in progress... Jun 24 2024 03:14:42 server2 maldet(2173591): {scan} scan completed on : files 528, malware hits 0, cleaned hits 0, time 52s Jun 24 2024 03:14:42 server2 maldet(2173591): {scan} scan report saved, to view run: maldet --report 240624-0313.2173591 Jun 25 2024 03:22:50 server2 maldet(2406812): {update} checking for available updates... Jun 25 2024 03:22:50 server2 maldet(2406812): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Jun 25 2024 03:22:50 server2 maldet(2406812): {update} hashing install files and checking against server... Jun 25 2024 03:22:50 server2 maldet(2406812): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Jun 25 2024 03:22:50 server2 maldet(2406812): {update} latest version already installed. Jun 25 2024 03:22:50 server2 maldet(2406945): {sigup} performing signature update check... Jun 25 2024 03:22:50 server2 maldet(2406945): {sigup} local signature set is version 202406223155762 Jun 25 2024 03:22:50 server2 maldet(2406945): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Jun 25 2024 03:22:50 server2 maldet(2406945): {sigup} latest signature set already installed Jun 25 2024 03:22:51 server2 maldet(2407056): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Jun 25 2024 03:22:52 server2 maldet(2407056): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Jun 25 2024 03:22:52 server2 maldet(2407056): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Jun 25 2024 03:22:52 server2 maldet(2407056): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Jun 25 2024 03:22:52 server2 maldet(2407056): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/cartforge/public_html/" "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Jun 25 2024 03:23:37 server2 maldet(2407056): {scan} file list completed in 45s, found 755 files... Jun 25 2024 03:23:37 server2 maldet(2407056): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Jun 25 2024 03:23:37 server2 maldet(2407056): {scan} scan of (755 files) in progress... Jun 25 2024 03:24:03 server2 maldet(2407056): {scan} scan completed on : files 755, malware hits 0, cleaned hits 0, time 72s Jun 25 2024 03:24:03 server2 maldet(2407056): {scan} scan report saved, to view run: maldet --report 240625-0322.2407056 Jun 26 2024 03:25:12 server2 maldet(2712313): {update} checking for available updates... Jun 26 2024 03:25:12 server2 maldet(2712313): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Jun 26 2024 03:25:12 server2 maldet(2712313): {update} hashing install files and checking against server... Jun 26 2024 03:25:12 server2 maldet(2712313): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Jun 26 2024 03:25:12 server2 maldet(2712313): {update} latest version already installed. Jun 26 2024 03:25:12 server2 maldet(2712446): {sigup} performing signature update check... Jun 26 2024 03:25:12 server2 maldet(2712446): {sigup} local signature set is version 202406223155762 Jun 26 2024 03:25:13 server2 maldet(2712446): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Jun 26 2024 03:25:13 server2 maldet(2712446): {sigup} new signature set 202406254122786 available Jun 26 2024 03:25:13 server2 maldet(2712446): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Jun 26 2024 03:25:13 server2 maldet(2712446): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Jun 26 2024 03:25:13 server2 maldet(2712446): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Jun 26 2024 03:25:13 server2 maldet(2712446): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Jun 26 2024 03:25:13 server2 maldet(2712446): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Jun 26 2024 03:25:13 server2 maldet(2712446): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Jun 26 2024 03:25:13 server2 maldet(2712446): {sigup} verified md5sum of maldet-sigpack.tgz Jun 26 2024 03:25:13 server2 maldet(2712446): {sigup} unpacked and installed maldet-sigpack.tgz Jun 26 2024 03:25:13 server2 maldet(2712446): {sigup} verified md5sum of maldet-clean.tgz Jun 26 2024 03:25:13 server2 maldet(2712446): {sigup} unpacked and installed maldet-clean.tgz Jun 26 2024 03:25:13 server2 maldet(2712446): {sigup} signature set update completed Jun 26 2024 03:25:13 server2 maldet(2712446): {sigup} 17638 signatures (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Jun 26 2024 03:25:13 server2 maldet(2712674): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Jun 26 2024 03:25:17 server2 maldet(2712674): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Jun 26 2024 03:25:17 server2 maldet(2712674): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Jun 26 2024 03:25:17 server2 maldet(2712674): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Jun 26 2024 03:25:17 server2 maldet(2712674): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/cartforge/public_html/" "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Jun 26 2024 03:25:52 server2 maldet(2712674): {scan} file list completed in 35s, found 5728 files... Jun 26 2024 03:25:52 server2 maldet(2712674): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Jun 26 2024 03:25:52 server2 maldet(2712674): {scan} scan of (5728 files) in progress... Jun 26 2024 03:28:17 server2 maldet(2712674): {scan} scan completed on : files 5728, malware hits 0, cleaned hits 0, time 184s Jun 26 2024 03:28:17 server2 maldet(2712674): {scan} scan report saved, to view run: maldet --report 240626-0325.2712674 Jun 27 2024 03:35:25 server2 maldet(1435272): {update} checking for available updates... Jun 27 2024 03:35:25 server2 maldet(1435272): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Jun 27 2024 03:35:25 server2 maldet(1435272): {update} hashing install files and checking against server... Jun 27 2024 03:35:25 server2 maldet(1435272): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Jun 27 2024 03:35:25 server2 maldet(1435272): {update} latest version already installed. Jun 27 2024 03:35:25 server2 maldet(1435405): {sigup} performing signature update check... Jun 27 2024 03:35:25 server2 maldet(1435405): {sigup} local signature set is version 202406254122786 Jun 27 2024 03:35:25 server2 maldet(1435405): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Jun 27 2024 03:35:25 server2 maldet(1435405): {sigup} latest signature set already installed Jun 27 2024 03:35:26 server2 maldet(1435516): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Jun 27 2024 03:35:27 server2 maldet(1435516): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Jun 27 2024 03:35:27 server2 maldet(1435516): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Jun 27 2024 03:35:27 server2 maldet(1435516): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Jun 27 2024 03:35:27 server2 maldet(1435516): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/cartforge/public_html/" "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Jun 27 2024 03:35:57 server2 maldet(1435516): {scan} file list completed in 30s, found 1593 files... Jun 27 2024 03:35:57 server2 maldet(1435516): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Jun 27 2024 03:35:57 server2 maldet(1435516): {scan} scan of (1593 files) in progress... Jun 27 2024 03:36:37 server2 maldet(1435516): {scan} scan completed on : files 1593, malware hits 0, cleaned hits 0, time 71s Jun 27 2024 03:36:37 server2 maldet(1435516): {scan} scan report saved, to view run: maldet --report 240627-0335.1435516 Jun 28 2024 03:30:52 server2 maldet(2621463): {update} checking for available updates... Jun 28 2024 03:30:52 server2 maldet(2621463): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Jun 28 2024 03:30:52 server2 maldet(2621463): {update} hashing install files and checking against server... Jun 28 2024 03:30:52 server2 maldet(2621463): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Jun 28 2024 03:30:52 server2 maldet(2621463): {update} latest version already installed. Jun 28 2024 03:30:52 server2 maldet(2621597): {sigup} performing signature update check... Jun 28 2024 03:30:52 server2 maldet(2621597): {sigup} local signature set is version 202406254122786 Jun 28 2024 03:30:52 server2 maldet(2621597): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Jun 28 2024 03:30:52 server2 maldet(2621597): {sigup} latest signature set already installed Jun 28 2024 03:30:52 server2 maldet(2621708): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Jun 28 2024 03:30:53 server2 maldet(2621708): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Jun 28 2024 03:30:53 server2 maldet(2621708): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Jun 28 2024 03:30:53 server2 maldet(2621708): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Jun 28 2024 03:30:53 server2 maldet(2621708): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/cartforge/public_html/" "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Jun 28 2024 03:31:28 server2 maldet(2621708): {scan} file list completed in 35s, found 1099 files... Jun 28 2024 03:31:28 server2 maldet(2621708): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Jun 28 2024 03:31:28 server2 maldet(2621708): {scan} scan of (1099 files) in progress... Jun 28 2024 03:31:51 server2 maldet(2621708): {scan} scan completed on : files 1099, malware hits 0, cleaned hits 0, time 59s Jun 28 2024 03:31:51 server2 maldet(2621708): {scan} scan report saved, to view run: maldet --report 240628-0330.2621708 Jun 29 2024 03:53:39 server2 maldet(2913290): {update} checking for available updates... Jun 29 2024 03:53:39 server2 maldet(2913290): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Jun 29 2024 03:53:39 server2 maldet(2913290): {update} hashing install files and checking against server... Jun 29 2024 03:53:39 server2 maldet(2913290): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Jun 29 2024 03:53:39 server2 maldet(2913290): {update} latest version already installed. Jun 29 2024 03:53:39 server2 maldet(2913423): {sigup} performing signature update check... Jun 29 2024 03:53:39 server2 maldet(2913423): {sigup} local signature set is version 202406254122786 Jun 29 2024 03:53:39 server2 maldet(2913423): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Jun 29 2024 03:53:39 server2 maldet(2913423): {sigup} new signature set 20240628719054 available Jun 29 2024 03:53:39 server2 maldet(2913423): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Jun 29 2024 03:53:39 server2 maldet(2913423): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Jun 29 2024 03:53:39 server2 maldet(2913423): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Jun 29 2024 03:53:40 server2 maldet(2913423): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Jun 29 2024 03:53:40 server2 maldet(2913423): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Jun 29 2024 03:53:40 server2 maldet(2913423): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Jun 29 2024 03:53:40 server2 maldet(2913423): {sigup} verified md5sum of maldet-sigpack.tgz Jun 29 2024 03:53:40 server2 maldet(2913423): {sigup} unpacked and installed maldet-sigpack.tgz Jun 29 2024 03:53:40 server2 maldet(2913423): {sigup} verified md5sum of maldet-clean.tgz Jun 29 2024 03:53:40 server2 maldet(2913423): {sigup} unpacked and installed maldet-clean.tgz Jun 29 2024 03:53:40 server2 maldet(2913423): {sigup} signature set update completed Jun 29 2024 03:53:40 server2 maldet(2913423): {sigup} 17638 signatures (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Jun 29 2024 03:53:40 server2 maldet(2913653): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Jun 29 2024 03:53:41 server2 maldet(2913653): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Jun 29 2024 03:53:41 server2 maldet(2913653): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Jun 29 2024 03:53:41 server2 maldet(2913653): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Jun 29 2024 03:53:41 server2 maldet(2913653): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/cartforge/public_html/" "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Jun 29 2024 03:54:12 server2 maldet(2913653): {scan} file list completed in 31s, found 789 files... Jun 29 2024 03:54:12 server2 maldet(2913653): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Jun 29 2024 03:54:12 server2 maldet(2913653): {scan} scan of (789 files) in progress... Jun 29 2024 03:54:49 server2 maldet(2913653): {scan} scan completed on : files 789, malware hits 0, cleaned hits 0, time 69s Jun 29 2024 03:54:49 server2 maldet(2913653): {scan} scan report saved, to view run: maldet --report 240629-0353.2913653 Jun 30 2024 03:38:17 server2 maldet(3357798): {update} checking for available updates... Jun 30 2024 03:38:17 server2 maldet(3357798): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Jun 30 2024 03:38:17 server2 maldet(3357798): {update} hashing install files and checking against server... Jun 30 2024 03:38:18 server2 maldet(3357798): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Jun 30 2024 03:38:18 server2 maldet(3357798): {update} latest version already installed. Jun 30 2024 03:38:18 server2 maldet(3357932): {sigup} performing signature update check... Jun 30 2024 03:38:18 server2 maldet(3357932): {sigup} local signature set is version 20240628719054 Jun 30 2024 03:38:18 server2 maldet(3357932): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Jun 30 2024 03:38:18 server2 maldet(3357932): {sigup} latest signature set already installed Jun 30 2024 03:38:18 server2 maldet(3358043): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Jun 30 2024 03:38:20 server2 maldet(3358043): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Jun 30 2024 03:38:20 server2 maldet(3358043): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Jun 30 2024 03:38:20 server2 maldet(3358043): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Jun 30 2024 03:38:20 server2 maldet(3358043): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/cartforge/public_html/" "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Jun 30 2024 03:38:45 server2 maldet(3358043): {scan} file list completed in 25s, found 523 files... Jun 30 2024 03:38:45 server2 maldet(3358043): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Jun 30 2024 03:38:45 server2 maldet(3358043): {scan} scan of (523 files) in progress... Jun 30 2024 03:39:04 server2 maldet(3358043): {scan} scan completed on : files 523, malware hits 0, cleaned hits 0, time 45s Jun 30 2024 03:39:04 server2 maldet(3358043): {scan} scan report saved, to view run: maldet --report 240630-0338.3358043 Jul 01 2024 03:27:39 server2 maldet(1823859): {update} checking for available updates... Jul 01 2024 03:27:39 server2 maldet(1823859): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Jul 01 2024 03:27:39 server2 maldet(1823859): {update} hashing install files and checking against server... Jul 01 2024 03:27:40 server2 maldet(1823859): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Jul 01 2024 03:27:40 server2 maldet(1823859): {update} latest version already installed. Jul 01 2024 03:27:40 server2 maldet(1824222): {sigup} performing signature update check... Jul 01 2024 03:27:40 server2 maldet(1824222): {sigup} local signature set is version 20240628719054 Jul 01 2024 03:27:40 server2 maldet(1824222): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Jul 01 2024 03:27:40 server2 maldet(1824222): {sigup} latest signature set already installed Jul 01 2024 03:27:40 server2 maldet(1824482): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Jul 01 2024 03:27:41 server2 maldet(1824482): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Jul 01 2024 03:27:41 server2 maldet(1824482): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Jul 01 2024 03:27:41 server2 maldet(1824482): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Jul 01 2024 03:27:41 server2 maldet(1824482): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/cartforge/public_html/" "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Jul 01 2024 03:28:15 server2 maldet(1824482): {scan} file list completed in 34s, found 491 files... Jul 01 2024 03:28:15 server2 maldet(1824482): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Jul 01 2024 03:28:15 server2 maldet(1824482): {scan} scan of (491 files) in progress... Jul 01 2024 03:28:27 server2 maldet(1824482): {scan} scan completed on : files 491, malware hits 0, cleaned hits 0, time 47s Jul 01 2024 03:28:27 server2 maldet(1824482): {scan} scan report saved, to view run: maldet --report 240701-0327.1824482 Jul 02 2024 03:42:20 server2 maldet(3478912): {update} checking for available updates... Jul 02 2024 03:42:20 server2 maldet(3478912): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Jul 02 2024 03:42:20 server2 maldet(3478912): {update} hashing install files and checking against server... Jul 02 2024 03:42:20 server2 maldet(3478912): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Jul 02 2024 03:42:20 server2 maldet(3478912): {update} latest version already installed. Jul 02 2024 03:42:20 server2 maldet(3479045): {sigup} performing signature update check... Jul 02 2024 03:42:20 server2 maldet(3479045): {sigup} local signature set is version 20240628719054 Jul 02 2024 03:42:20 server2 maldet(3479045): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Jul 02 2024 03:42:20 server2 maldet(3479045): {sigup} new signature set 202407011471467 available Jul 02 2024 03:42:20 server2 maldet(3479045): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Jul 02 2024 03:42:20 server2 maldet(3479045): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Jul 02 2024 03:42:20 server2 maldet(3479045): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Jul 02 2024 03:42:20 server2 maldet(3479045): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Jul 02 2024 03:42:20 server2 maldet(3479045): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Jul 02 2024 03:42:20 server2 maldet(3479045): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Jul 02 2024 03:42:20 server2 maldet(3479045): {sigup} verified md5sum of maldet-sigpack.tgz Jul 02 2024 03:42:20 server2 maldet(3479045): {sigup} unpacked and installed maldet-sigpack.tgz Jul 02 2024 03:42:20 server2 maldet(3479045): {sigup} verified md5sum of maldet-clean.tgz Jul 02 2024 03:42:21 server2 maldet(3479045): {sigup} unpacked and installed maldet-clean.tgz Jul 02 2024 03:42:21 server2 maldet(3479045): {sigup} signature set update completed Jul 02 2024 03:42:21 server2 maldet(3479045): {sigup} 17638 signatures (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Jul 02 2024 03:42:21 server2 maldet(3479273): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Jul 02 2024 03:42:21 server2 maldet(3479273): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Jul 02 2024 03:42:21 server2 maldet(3479273): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Jul 02 2024 03:42:21 server2 maldet(3479273): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Jul 02 2024 03:42:21 server2 maldet(3479273): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/cartforge/public_html/" "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Jul 02 2024 03:42:56 server2 maldet(3479273): {scan} file list completed in 35s, found 751 files... Jul 02 2024 03:42:56 server2 maldet(3479273): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Jul 02 2024 03:42:56 server2 maldet(3479273): {scan} scan of (751 files) in progress... Jul 02 2024 03:44:08 server2 maldet(3479273): {scan} scan completed on : files 751, malware hits 0, cleaned hits 0, time 107s Jul 02 2024 03:44:08 server2 maldet(3479273): {scan} scan report saved, to view run: maldet --report 240702-0342.3479273 Jul 03 2024 03:10:10 server2 maldet(3733303): {update} checking for available updates... Jul 03 2024 03:10:10 server2 maldet(3733303): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Jul 03 2024 03:10:10 server2 maldet(3733303): {update} hashing install files and checking against server... Jul 03 2024 03:10:11 server2 maldet(3733303): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Jul 03 2024 03:10:11 server2 maldet(3733303): {update} latest version already installed. Jul 03 2024 03:10:11 server2 maldet(3733487): {sigup} performing signature update check... Jul 03 2024 03:10:11 server2 maldet(3733487): {sigup} local signature set is version 202407011471467 Jul 03 2024 03:10:11 server2 maldet(3733487): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Jul 03 2024 03:10:11 server2 maldet(3733487): {sigup} latest signature set already installed Jul 03 2024 03:10:11 server2 maldet(3733608): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Jul 03 2024 03:10:23 server2 maldet(3733608): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Jul 03 2024 03:10:23 server2 maldet(3733608): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Jul 03 2024 03:10:23 server2 maldet(3733608): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Jul 03 2024 03:10:23 server2 maldet(3733608): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/cartforge/public_html/" "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Jul 03 2024 03:11:21 server2 maldet(3733608): {scan} file list completed in 58s, found 508 files... Jul 03 2024 03:11:21 server2 maldet(3733608): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Jul 03 2024 03:11:21 server2 maldet(3733608): {scan} scan of (508 files) in progress... Jul 03 2024 03:11:41 server2 maldet(3733608): {scan} scan completed on : files 508, malware hits 0, cleaned hits 0, time 90s Jul 03 2024 03:11:41 server2 maldet(3733608): {scan} scan report saved, to view run: maldet --report 240703-0310.3733608 Jul 04 2024 03:26:54 server2 maldet(4005782): {update} checking for available updates... Jul 04 2024 03:26:55 server2 maldet(4005782): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Jul 04 2024 03:26:55 server2 maldet(4005782): {update} hashing install files and checking against server... Jul 04 2024 03:26:55 server2 maldet(4005782): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Jul 04 2024 03:26:55 server2 maldet(4005782): {update} latest version already installed. Jul 04 2024 03:26:55 server2 maldet(4005915): {sigup} performing signature update check... Jul 04 2024 03:26:55 server2 maldet(4005915): {sigup} local signature set is version 202407011471467 Jul 04 2024 03:26:55 server2 maldet(4005915): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Jul 04 2024 03:26:55 server2 maldet(4005915): {sigup} latest signature set already installed Jul 04 2024 03:26:55 server2 maldet(4006026): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Jul 04 2024 03:26:56 server2 maldet(4006026): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Jul 04 2024 03:26:56 server2 maldet(4006026): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Jul 04 2024 03:26:56 server2 maldet(4006026): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Jul 04 2024 03:26:56 server2 maldet(4006026): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/cartforge/public_html/" "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Jul 04 2024 03:27:32 server2 maldet(4006026): {scan} file list completed in 36s, found 14831 files... Jul 04 2024 03:27:32 server2 maldet(4006026): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Jul 04 2024 03:27:32 server2 maldet(4006026): {scan} scan of (14831 files) in progress... Jul 04 2024 03:30:18 server2 maldet(4006026): {scan} scan completed on : files 14831, malware hits 0, cleaned hits 0, time 203s Jul 04 2024 03:30:18 server2 maldet(4006026): {scan} scan report saved, to view run: maldet --report 240704-0326.4006026 Jul 05 2024 03:51:44 server2 maldet(95428): {update} checking for available updates... Jul 05 2024 03:51:44 server2 maldet(95428): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Jul 05 2024 03:51:44 server2 maldet(95428): {update} hashing install files and checking against server... Jul 05 2024 03:51:44 server2 maldet(95428): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Jul 05 2024 03:51:44 server2 maldet(95428): {update} latest version already installed. Jul 05 2024 03:51:44 server2 maldet(95561): {sigup} performing signature update check... Jul 05 2024 03:51:44 server2 maldet(95561): {sigup} local signature set is version 202407011471467 Jul 05 2024 03:51:45 server2 maldet(95561): {sigup} could not download https://cdn.rfxn.com/downloads/maldet.sigs.ver, please try again later. Jul 05 2024 03:51:45 server2 maldet(95561): {sigup} could not download signature data from server, please try again later. Jul 05 2024 03:51:45 server2 maldet(95664): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Jul 05 2024 03:51:46 server2 maldet(95664): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Jul 05 2024 03:51:46 server2 maldet(95664): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Jul 05 2024 03:51:46 server2 maldet(95664): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Jul 05 2024 03:51:46 server2 maldet(95664): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/cartforge/public_html/" "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Jul 05 2024 03:52:20 server2 maldet(95664): {scan} file list completed in 34s, found 813 files... Jul 05 2024 03:52:20 server2 maldet(95664): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Jul 05 2024 03:52:20 server2 maldet(95664): {scan} scan of (813 files) in progress... Jul 05 2024 03:52:48 server2 maldet(95664): {scan} scan completed on : files 813, malware hits 0, cleaned hits 0, time 63s Jul 05 2024 03:52:48 server2 maldet(95664): {scan} scan report saved, to view run: maldet --report 240705-0351.95664 Jul 06 2024 03:58:18 server2 maldet(365373): {update} checking for available updates... Jul 06 2024 03:58:18 server2 maldet(365373): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Jul 06 2024 03:58:18 server2 maldet(365373): {update} hashing install files and checking against server... Jul 06 2024 03:58:18 server2 maldet(365373): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Jul 06 2024 03:58:18 server2 maldet(365373): {update} latest version already installed. Jul 06 2024 03:58:18 server2 maldet(365509): {sigup} performing signature update check... Jul 06 2024 03:58:18 server2 maldet(365509): {sigup} local signature set is version 202407011471467 Jul 06 2024 03:58:18 server2 maldet(365509): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Jul 06 2024 03:58:19 server2 maldet(365509): {sigup} new signature set 202407042224247 available Jul 06 2024 03:58:19 server2 maldet(365509): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Jul 06 2024 03:58:19 server2 maldet(365509): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Jul 06 2024 03:58:19 server2 maldet(365509): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Jul 06 2024 03:58:19 server2 maldet(365509): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Jul 06 2024 03:58:19 server2 maldet(365509): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Jul 06 2024 03:58:19 server2 maldet(365509): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Jul 06 2024 03:58:19 server2 maldet(365509): {sigup} verified md5sum of maldet-sigpack.tgz Jul 06 2024 03:58:19 server2 maldet(365509): {sigup} unpacked and installed maldet-sigpack.tgz Jul 06 2024 03:58:19 server2 maldet(365509): {sigup} verified md5sum of maldet-clean.tgz Jul 06 2024 03:58:19 server2 maldet(365509): {sigup} unpacked and installed maldet-clean.tgz Jul 06 2024 03:58:19 server2 maldet(365509): {sigup} signature set update completed Jul 06 2024 03:58:20 server2 maldet(365509): {sigup} 17638 signatures (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Jul 06 2024 03:58:20 server2 maldet(365737): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Jul 06 2024 03:58:21 server2 maldet(365737): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Jul 06 2024 03:58:21 server2 maldet(365737): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Jul 06 2024 03:58:21 server2 maldet(365737): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Jul 06 2024 03:58:21 server2 maldet(365737): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/cartforge/public_html/" "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Jul 06 2024 03:58:53 server2 maldet(365737): {scan} file list completed in 32s, found 1059 files... Jul 06 2024 03:58:53 server2 maldet(365737): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Jul 06 2024 03:58:53 server2 maldet(365737): {scan} scan of (1059 files) in progress... Jul 06 2024 03:59:55 server2 maldet(365737): {scan} scan completed on : files 1059, malware hits 0, cleaned hits 0, time 95s Jul 06 2024 03:59:55 server2 maldet(365737): {scan} scan report saved, to view run: maldet --report 240706-0358.365737 Jul 07 2024 03:32:10 server2 maldet(653886): {update} checking for available updates... Jul 07 2024 03:32:10 server2 maldet(653886): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Jul 07 2024 03:32:11 server2 maldet(653886): {update} hashing install files and checking against server... Jul 07 2024 03:32:11 server2 maldet(653886): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Jul 07 2024 03:32:11 server2 maldet(653886): {update} latest version already installed. Jul 07 2024 03:32:11 server2 maldet(654019): {sigup} performing signature update check... Jul 07 2024 03:32:11 server2 maldet(654019): {sigup} local signature set is version 202407042224247 Jul 07 2024 03:32:11 server2 maldet(654019): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Jul 07 2024 03:32:11 server2 maldet(654019): {sigup} latest signature set already installed Jul 07 2024 03:32:11 server2 maldet(654131): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Jul 07 2024 03:32:13 server2 maldet(654131): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Jul 07 2024 03:32:13 server2 maldet(654131): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Jul 07 2024 03:32:13 server2 maldet(654131): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Jul 07 2024 03:32:13 server2 maldet(654131): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/cartforge/public_html/" "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Jul 07 2024 03:32:52 server2 maldet(654131): {scan} file list completed in 39s, found 1150 files... Jul 07 2024 03:32:52 server2 maldet(654131): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Jul 07 2024 03:32:52 server2 maldet(654131): {scan} scan of (1150 files) in progress... Jul 07 2024 03:33:28 server2 maldet(654131): {scan} scan completed on : files 1150, malware hits 0, cleaned hits 0, time 77s Jul 07 2024 03:33:28 server2 maldet(654131): {scan} scan report saved, to view run: maldet --report 240707-0332.654131 Jul 08 2024 03:49:30 server2 maldet(930441): {update} checking for available updates... Jul 08 2024 03:49:30 server2 maldet(930441): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Jul 08 2024 03:49:30 server2 maldet(930441): {update} hashing install files and checking against server... Jul 08 2024 03:49:30 server2 maldet(930441): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Jul 08 2024 03:49:30 server2 maldet(930441): {update} latest version already installed. Jul 08 2024 03:49:30 server2 maldet(930574): {sigup} performing signature update check... Jul 08 2024 03:49:30 server2 maldet(930574): {sigup} local signature set is version 202407042224247 Jul 08 2024 03:49:30 server2 maldet(930574): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Jul 08 2024 03:49:30 server2 maldet(930574): {sigup} new signature set 202407072976550 available Jul 08 2024 03:49:30 server2 maldet(930574): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Jul 08 2024 03:49:30 server2 maldet(930574): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Jul 08 2024 03:49:30 server2 maldet(930574): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Jul 08 2024 03:49:30 server2 maldet(930574): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Jul 08 2024 03:49:30 server2 maldet(930574): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Jul 08 2024 03:49:30 server2 maldet(930574): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Jul 08 2024 03:49:30 server2 maldet(930574): {sigup} verified md5sum of maldet-sigpack.tgz Jul 08 2024 03:49:31 server2 maldet(930574): {sigup} unpacked and installed maldet-sigpack.tgz Jul 08 2024 03:49:31 server2 maldet(930574): {sigup} verified md5sum of maldet-clean.tgz Jul 08 2024 03:49:31 server2 maldet(930574): {sigup} unpacked and installed maldet-clean.tgz Jul 08 2024 03:49:31 server2 maldet(930574): {sigup} signature set update completed Jul 08 2024 03:49:31 server2 maldet(930574): {sigup} 17638 signatures (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Jul 08 2024 03:49:31 server2 maldet(930803): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Jul 08 2024 03:49:32 server2 maldet(930803): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Jul 08 2024 03:49:32 server2 maldet(930803): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Jul 08 2024 03:49:32 server2 maldet(930803): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Jul 08 2024 03:49:32 server2 maldet(930803): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/cartforge/public_html/" "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Jul 08 2024 03:50:18 server2 maldet(930803): {scan} file list completed in 46s, found 479 files... Jul 08 2024 03:50:18 server2 maldet(930803): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Jul 08 2024 03:50:18 server2 maldet(930803): {scan} scan of (479 files) in progress... Jul 08 2024 03:50:44 server2 maldet(930803): {scan} scan completed on : files 479, malware hits 0, cleaned hits 0, time 73s Jul 08 2024 03:50:44 server2 maldet(930803): {scan} scan report saved, to view run: maldet --report 240708-0349.930803 Jul 09 2024 03:14:04 server2 maldet(1192819): {update} checking for available updates... Jul 09 2024 03:14:05 server2 maldet(1192819): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Jul 09 2024 03:14:05 server2 maldet(1192819): {update} hashing install files and checking against server... Jul 09 2024 03:14:05 server2 maldet(1192819): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Jul 09 2024 03:14:05 server2 maldet(1192819): {update} latest version already installed. Jul 09 2024 03:14:05 server2 maldet(1192952): {sigup} performing signature update check... Jul 09 2024 03:14:05 server2 maldet(1192952): {sigup} local signature set is version 202407072976550 Jul 09 2024 03:14:05 server2 maldet(1192952): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Jul 09 2024 03:14:05 server2 maldet(1192952): {sigup} latest signature set already installed Jul 09 2024 03:14:05 server2 maldet(1193065): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Jul 09 2024 03:14:06 server2 maldet(1193065): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Jul 09 2024 03:14:06 server2 maldet(1193065): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Jul 09 2024 03:14:06 server2 maldet(1193065): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Jul 09 2024 03:14:06 server2 maldet(1193065): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/cartforge/public_html/" "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Jul 09 2024 03:14:50 server2 maldet(1193065): {scan} file list completed in 44s, found 20561 files... Jul 09 2024 03:14:50 server2 maldet(1193065): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Jul 09 2024 03:14:50 server2 maldet(1193065): {scan} scan of (20561 files) in progress... Jul 09 2024 03:19:10 server2 maldet(1193065): {scan} scan completed on : files 20561, malware hits 0, cleaned hits 0, time 304s Jul 09 2024 03:19:10 server2 maldet(1193065): {scan} scan report saved, to view run: maldet --report 240709-0314.1193065 Jul 10 2024 03:17:27 server2 maldet(1445716): {update} checking for available updates... Jul 10 2024 03:17:27 server2 maldet(1445716): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Jul 10 2024 03:17:27 server2 maldet(1445716): {update} hashing install files and checking against server... Jul 10 2024 03:17:27 server2 maldet(1445716): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Jul 10 2024 03:17:27 server2 maldet(1445716): {update} latest version already installed. Jul 10 2024 03:17:27 server2 maldet(1445849): {sigup} performing signature update check... Jul 10 2024 03:17:27 server2 maldet(1445849): {sigup} local signature set is version 202407072976550 Jul 10 2024 03:17:27 server2 maldet(1445849): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Jul 10 2024 03:17:27 server2 maldet(1445849): {sigup} latest signature set already installed Jul 10 2024 03:17:28 server2 maldet(1445960): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Jul 10 2024 03:17:31 server2 maldet(1445960): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Jul 10 2024 03:17:31 server2 maldet(1445960): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Jul 10 2024 03:17:31 server2 maldet(1445960): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Jul 10 2024 03:17:31 server2 maldet(1445960): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/cartforge/public_html/" "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Jul 10 2024 03:18:24 server2 maldet(1445960): {scan} file list completed in 52s, found 2149 files... Jul 10 2024 03:18:24 server2 maldet(1445960): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Jul 10 2024 03:18:24 server2 maldet(1445960): {scan} scan of (2149 files) in progress... Jul 10 2024 03:19:37 server2 maldet(1445960): {scan} scan completed on : files 2149, malware hits 0, cleaned hits 0, time 129s Jul 10 2024 03:19:37 server2 maldet(1445960): {scan} scan report saved, to view run: maldet --report 240710-0317.1445960 Jul 11 2024 03:12:14 server2 maldet(1698110): {update} checking for available updates... Jul 11 2024 03:12:15 server2 maldet(1698110): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Jul 11 2024 03:12:15 server2 maldet(1698110): {update} hashing install files and checking against server... Jul 11 2024 03:12:15 server2 maldet(1698110): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Jul 11 2024 03:12:15 server2 maldet(1698110): {update} latest version already installed. Jul 11 2024 03:12:15 server2 maldet(1698243): {sigup} performing signature update check... Jul 11 2024 03:12:15 server2 maldet(1698243): {sigup} local signature set is version 202407072976550 Jul 11 2024 03:12:15 server2 maldet(1698243): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Jul 11 2024 03:12:15 server2 maldet(1698243): {sigup} new signature set 202407103729275 available Jul 11 2024 03:12:15 server2 maldet(1698243): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Jul 11 2024 03:12:15 server2 maldet(1698243): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Jul 11 2024 03:12:15 server2 maldet(1698243): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Jul 11 2024 03:12:15 server2 maldet(1698243): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Jul 11 2024 03:12:15 server2 maldet(1698243): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Jul 11 2024 03:12:15 server2 maldet(1698243): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Jul 11 2024 03:12:15 server2 maldet(1698243): {sigup} verified md5sum of maldet-sigpack.tgz Jul 11 2024 03:12:15 server2 maldet(1698243): {sigup} unpacked and installed maldet-sigpack.tgz Jul 11 2024 03:12:15 server2 maldet(1698243): {sigup} verified md5sum of maldet-clean.tgz Jul 11 2024 03:12:15 server2 maldet(1698243): {sigup} unpacked and installed maldet-clean.tgz Jul 11 2024 03:12:15 server2 maldet(1698243): {sigup} signature set update completed Jul 11 2024 03:12:15 server2 maldet(1698243): {sigup} 17638 signatures (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Jul 11 2024 03:12:16 server2 maldet(1698473): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Jul 11 2024 03:12:17 server2 maldet(1698473): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Jul 11 2024 03:12:17 server2 maldet(1698473): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Jul 11 2024 03:12:17 server2 maldet(1698473): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Jul 11 2024 03:12:17 server2 maldet(1698473): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/cartforge/public_html/" "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Jul 11 2024 03:13:12 server2 maldet(1698473): {scan} file list completed in 55s, found 3143 files... Jul 11 2024 03:13:12 server2 maldet(1698473): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Jul 11 2024 03:13:12 server2 maldet(1698473): {scan} scan of (3143 files) in progress... Jul 11 2024 03:16:05 server2 maldet(1698473): {scan} scan completed on : files 3143, malware hits 0, cleaned hits 0, time 229s Jul 11 2024 03:16:05 server2 maldet(1698473): {scan} scan report saved, to view run: maldet --report 240711-0312.1698473 Jul 12 2024 03:40:05 server2 maldet(2054809): {update} checking for available updates... Jul 12 2024 03:40:13 server2 maldet(2054809): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Jul 12 2024 03:40:13 server2 maldet(2054809): {update} hashing install files and checking against server... Jul 12 2024 03:40:13 server2 maldet(2054809): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Jul 12 2024 03:40:13 server2 maldet(2054809): {update} latest version already installed. Jul 12 2024 03:40:14 server2 maldet(2054965): {sigup} performing signature update check... Jul 12 2024 03:40:14 server2 maldet(2054965): {sigup} local signature set is version 202407103729275 Jul 12 2024 03:40:14 server2 maldet(2054965): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Jul 12 2024 03:40:14 server2 maldet(2054965): {sigup} latest signature set already installed Jul 12 2024 03:40:14 server2 maldet(2055076): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Jul 12 2024 03:40:15 server2 maldet(2055076): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Jul 12 2024 03:40:15 server2 maldet(2055076): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Jul 12 2024 03:40:15 server2 maldet(2055076): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Jul 12 2024 03:40:15 server2 maldet(2055076): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/cartforge/public_html/" "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Jul 12 2024 03:40:56 server2 maldet(2055076): {scan} file list completed in 41s, found 916 files... Jul 12 2024 03:40:56 server2 maldet(2055076): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Jul 12 2024 03:40:56 server2 maldet(2055076): {scan} scan of (916 files) in progress... Jul 12 2024 03:41:26 server2 maldet(2055076): {scan} scan completed on : files 916, malware hits 0, cleaned hits 0, time 72s Jul 12 2024 03:41:26 server2 maldet(2055076): {scan} scan report saved, to view run: maldet --report 240712-0340.2055076 Jul 13 2024 03:46:59 server2 maldet(2322444): {update} checking for available updates... Jul 13 2024 03:46:59 server2 maldet(2322444): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Jul 13 2024 03:46:59 server2 maldet(2322444): {update} hashing install files and checking against server... Jul 13 2024 03:46:59 server2 maldet(2322444): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Jul 13 2024 03:46:59 server2 maldet(2322444): {update} latest version already installed. Jul 13 2024 03:47:00 server2 maldet(2322577): {sigup} performing signature update check... Jul 13 2024 03:47:00 server2 maldet(2322577): {sigup} local signature set is version 202407103729275 Jul 13 2024 03:47:00 server2 maldet(2322577): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Jul 13 2024 03:47:00 server2 maldet(2322577): {sigup} latest signature set already installed Jul 13 2024 03:47:00 server2 maldet(2322688): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Jul 13 2024 03:47:02 server2 maldet(2322688): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Jul 13 2024 03:47:02 server2 maldet(2322688): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Jul 13 2024 03:47:02 server2 maldet(2322688): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Jul 13 2024 03:47:02 server2 maldet(2322688): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/cartforge/public_html/" "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Jul 13 2024 03:47:37 server2 maldet(2322688): {scan} file list completed in 35s, found 430 files... Jul 13 2024 03:47:37 server2 maldet(2322688): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Jul 13 2024 03:47:37 server2 maldet(2322688): {scan} scan of (430 files) in progress... Jul 13 2024 03:47:48 server2 maldet(2322688): {scan} scan completed on : files 430, malware hits 0, cleaned hits 0, time 48s Jul 13 2024 03:47:48 server2 maldet(2322688): {scan} scan report saved, to view run: maldet --report 240713-0347.2322688 Jul 14 2024 03:49:00 server2 maldet(2593716): {update} checking for available updates... Jul 14 2024 03:49:01 server2 maldet(2593716): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Jul 14 2024 03:49:01 server2 maldet(2593716): {update} hashing install files and checking against server... Jul 14 2024 03:49:01 server2 maldet(2593716): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Jul 14 2024 03:49:01 server2 maldet(2593716): {update} latest version already installed. Jul 14 2024 03:49:01 server2 maldet(2593849): {sigup} performing signature update check... Jul 14 2024 03:49:01 server2 maldet(2593849): {sigup} local signature set is version 202407103729275 Jul 14 2024 03:49:01 server2 maldet(2593849): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Jul 14 2024 03:49:01 server2 maldet(2593849): {sigup} latest signature set already installed Jul 14 2024 03:49:01 server2 maldet(2593960): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Jul 14 2024 03:49:04 server2 maldet(2593960): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Jul 14 2024 03:49:04 server2 maldet(2593960): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Jul 14 2024 03:49:04 server2 maldet(2593960): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Jul 14 2024 03:49:04 server2 maldet(2593960): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/cartforge/public_html/" "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Jul 14 2024 03:49:34 server2 maldet(2593960): {scan} file list completed in 30s, found 823 files... Jul 14 2024 03:49:34 server2 maldet(2593960): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Jul 14 2024 03:49:34 server2 maldet(2593960): {scan} scan of (823 files) in progress... Jul 14 2024 03:49:52 server2 maldet(2593960): {scan} scan completed on : files 823, malware hits 0, cleaned hits 0, time 51s Jul 14 2024 03:49:52 server2 maldet(2593960): {scan} scan report saved, to view run: maldet --report 240714-0349.2593960 Jul 15 2024 03:12:33 server2 maldet(167281): {update} checking for available updates... Jul 15 2024 03:12:33 server2 maldet(167281): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Jul 15 2024 03:12:33 server2 maldet(167281): {update} hashing install files and checking against server... Jul 15 2024 03:12:33 server2 maldet(167281): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Jul 15 2024 03:12:33 server2 maldet(167281): {update} latest version already installed. Jul 15 2024 03:12:34 server2 maldet(167414): {sigup} performing signature update check... Jul 15 2024 03:12:34 server2 maldet(167414): {sigup} local signature set is version 202407103729275 Jul 15 2024 03:12:34 server2 maldet(167414): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Jul 15 2024 03:12:34 server2 maldet(167414): {sigup} latest signature set already installed Jul 15 2024 03:12:34 server2 maldet(167525): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Jul 15 2024 03:12:35 server2 maldet(167525): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Jul 15 2024 03:12:35 server2 maldet(167525): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Jul 15 2024 03:12:35 server2 maldet(167525): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Jul 15 2024 03:12:35 server2 maldet(167525): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/cartforge/public_html/" "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Jul 15 2024 03:13:12 server2 maldet(167525): {scan} file list completed in 37s, found 830 files... Jul 15 2024 03:13:12 server2 maldet(167525): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Jul 15 2024 03:13:12 server2 maldet(167525): {scan} scan of (830 files) in progress... Jul 15 2024 03:13:27 server2 maldet(167525): {scan} scan completed on : files 830, malware hits 0, cleaned hits 0, time 53s Jul 15 2024 03:13:27 server2 maldet(167525): {scan} scan report saved, to view run: maldet --report 240715-0312.167525 Jul 16 2024 03:51:35 server2 maldet(446382): {update} checking for available updates... Jul 16 2024 03:51:35 server2 maldet(446382): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Jul 16 2024 03:51:35 server2 maldet(446382): {update} hashing install files and checking against server... Jul 16 2024 03:51:35 server2 maldet(446382): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Jul 16 2024 03:51:35 server2 maldet(446382): {update} latest version already installed. Jul 16 2024 03:51:36 server2 maldet(446515): {sigup} performing signature update check... Jul 16 2024 03:51:36 server2 maldet(446515): {sigup} local signature set is version 202407103729275 Jul 16 2024 03:51:36 server2 maldet(446515): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Jul 16 2024 03:51:36 server2 maldet(446515): {sigup} new signature set 20240716630849 available Jul 16 2024 03:51:36 server2 maldet(446515): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Jul 16 2024 03:51:36 server2 maldet(446515): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Jul 16 2024 03:51:36 server2 maldet(446515): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Jul 16 2024 03:51:36 server2 maldet(446515): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Jul 16 2024 03:51:36 server2 maldet(446515): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Jul 16 2024 03:51:36 server2 maldet(446515): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Jul 16 2024 03:51:36 server2 maldet(446515): {sigup} verified md5sum of maldet-sigpack.tgz Jul 16 2024 03:51:36 server2 maldet(446515): {sigup} unpacked and installed maldet-sigpack.tgz Jul 16 2024 03:51:36 server2 maldet(446515): {sigup} verified md5sum of maldet-clean.tgz Jul 16 2024 03:51:36 server2 maldet(446515): {sigup} unpacked and installed maldet-clean.tgz Jul 16 2024 03:51:36 server2 maldet(446515): {sigup} signature set update completed Jul 16 2024 03:51:36 server2 maldet(446515): {sigup} 17638 signatures (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Jul 16 2024 03:51:36 server2 maldet(446745): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Jul 16 2024 03:51:37 server2 maldet(446745): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Jul 16 2024 03:51:37 server2 maldet(446745): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Jul 16 2024 03:51:37 server2 maldet(446745): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Jul 16 2024 03:51:37 server2 maldet(446745): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/cartforge/public_html/" "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Jul 16 2024 03:52:14 server2 maldet(446745): {scan} file list completed in 37s, found 1396 files... Jul 16 2024 03:52:14 server2 maldet(446745): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Jul 16 2024 03:52:14 server2 maldet(446745): {scan} scan of (1396 files) in progress... Jul 16 2024 03:53:01 server2 maldet(446745): {scan} scan completed on : files 1396, malware hits 0, cleaned hits 0, time 85s Jul 16 2024 03:53:01 server2 maldet(446745): {scan} scan report saved, to view run: maldet --report 240716-0351.446745 Jul 17 2024 03:41:37 server2 maldet(707974): {update} checking for available updates... Jul 17 2024 03:41:37 server2 maldet(707974): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Jul 17 2024 03:41:37 server2 maldet(707974): {update} hashing install files and checking against server... Jul 17 2024 03:41:37 server2 maldet(707974): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Jul 17 2024 03:41:37 server2 maldet(707974): {update} latest version already installed. Jul 17 2024 03:41:37 server2 maldet(708108): {sigup} performing signature update check... Jul 17 2024 03:41:37 server2 maldet(708108): {sigup} local signature set is version 20240716630849 Jul 17 2024 03:41:37 server2 maldet(708108): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Jul 17 2024 03:41:37 server2 maldet(708108): {sigup} latest signature set already installed Jul 17 2024 03:41:37 server2 maldet(708219): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Jul 17 2024 03:41:39 server2 maldet(708219): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Jul 17 2024 03:41:39 server2 maldet(708219): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Jul 17 2024 03:41:39 server2 maldet(708219): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Jul 17 2024 03:41:39 server2 maldet(708219): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/cartforge/public_html/" "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Jul 17 2024 03:42:16 server2 maldet(708219): {scan} file list completed in 37s, found 1020 files... Jul 17 2024 03:42:16 server2 maldet(708219): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Jul 17 2024 03:42:16 server2 maldet(708219): {scan} scan of (1020 files) in progress... Jul 17 2024 03:42:40 server2 maldet(708219): {scan} scan completed on : files 1020, malware hits 0, cleaned hits 0, time 63s Jul 17 2024 03:42:40 server2 maldet(708219): {scan} scan report saved, to view run: maldet --report 240717-0341.708219 Jul 18 2024 03:50:41 server2 maldet(999064): {update} checking for available updates... Jul 18 2024 03:50:41 server2 maldet(999064): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Jul 18 2024 03:50:41 server2 maldet(999064): {update} hashing install files and checking against server... Jul 18 2024 03:50:41 server2 maldet(999064): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Jul 18 2024 03:50:41 server2 maldet(999064): {update} latest version already installed. Jul 18 2024 03:50:41 server2 maldet(999198): {sigup} performing signature update check... Jul 18 2024 03:50:41 server2 maldet(999198): {sigup} local signature set is version 20240716630849 Jul 18 2024 03:50:42 server2 maldet(999198): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Jul 18 2024 03:50:42 server2 maldet(999198): {sigup} latest signature set already installed Jul 18 2024 03:50:42 server2 maldet(999311): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Jul 18 2024 03:50:43 server2 maldet(999311): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Jul 18 2024 03:50:43 server2 maldet(999311): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Jul 18 2024 03:50:43 server2 maldet(999311): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Jul 18 2024 03:50:43 server2 maldet(999311): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/cartforge/public_html/" "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/loco/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Jul 18 2024 03:51:16 server2 maldet(999311): {scan} file list completed in 33s, found 776 files... Jul 18 2024 03:51:16 server2 maldet(999311): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Jul 18 2024 03:51:16 server2 maldet(999311): {scan} scan of (776 files) in progress... Jul 18 2024 03:51:29 server2 maldet(999311): {scan} scan completed on : files 776, malware hits 0, cleaned hits 0, time 46s Jul 18 2024 03:51:29 server2 maldet(999311): {scan} scan report saved, to view run: maldet --report 240718-0350.999311 Jul 19 2024 03:33:57 server2 maldet(1309524): {update} checking for available updates... Jul 19 2024 03:33:57 server2 maldet(1309524): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Jul 19 2024 03:33:57 server2 maldet(1309524): {update} hashing install files and checking against server... Jul 19 2024 03:33:57 server2 maldet(1309524): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Jul 19 2024 03:33:57 server2 maldet(1309524): {update} latest version already installed. Jul 19 2024 03:33:57 server2 maldet(1309659): {sigup} performing signature update check... Jul 19 2024 03:33:57 server2 maldet(1309659): {sigup} local signature set is version 20240716630849 Jul 19 2024 03:33:57 server2 maldet(1309659): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Jul 19 2024 03:33:57 server2 maldet(1309659): {sigup} new signature set 20240719566530 available Jul 19 2024 03:33:57 server2 maldet(1309659): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Jul 19 2024 03:33:57 server2 maldet(1309659): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Jul 19 2024 03:33:57 server2 maldet(1309659): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Jul 19 2024 03:33:57 server2 maldet(1309659): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Jul 19 2024 03:33:57 server2 maldet(1309659): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Jul 19 2024 03:33:58 server2 maldet(1309659): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Jul 19 2024 03:33:58 server2 maldet(1309659): {sigup} verified md5sum of maldet-sigpack.tgz Jul 19 2024 03:33:58 server2 maldet(1309659): {sigup} unpacked and installed maldet-sigpack.tgz Jul 19 2024 03:33:58 server2 maldet(1309659): {sigup} verified md5sum of maldet-clean.tgz Jul 19 2024 03:33:58 server2 maldet(1309659): {sigup} unpacked and installed maldet-clean.tgz Jul 19 2024 03:33:58 server2 maldet(1309659): {sigup} signature set update completed Jul 19 2024 03:33:58 server2 maldet(1309659): {sigup} 17638 signatures (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Jul 19 2024 03:33:58 server2 maldet(1309888): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Jul 19 2024 03:33:59 server2 maldet(1309888): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Jul 19 2024 03:33:59 server2 maldet(1309888): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Jul 19 2024 03:33:59 server2 maldet(1309888): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Jul 19 2024 03:33:59 server2 maldet(1309888): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/cartforge/public_html/" "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/loco/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Jul 19 2024 03:34:55 server2 maldet(1309888): {scan} file list completed in 56s, found 992 files... Jul 19 2024 03:34:55 server2 maldet(1309888): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Jul 19 2024 03:34:55 server2 maldet(1309888): {scan} scan of (992 files) in progress... Jul 19 2024 03:35:33 server2 maldet(1309888): {scan} scan completed on : files 992, malware hits 0, cleaned hits 0, time 95s Jul 19 2024 03:35:33 server2 maldet(1309888): {scan} scan report saved, to view run: maldet --report 240719-0333.1309888 Jul 20 2024 03:16:09 server2 maldet(1627278): {update} checking for available updates... Jul 20 2024 03:16:09 server2 maldet(1627278): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Jul 20 2024 03:16:09 server2 maldet(1627278): {update} hashing install files and checking against server... Jul 20 2024 03:16:09 server2 maldet(1627278): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Jul 20 2024 03:16:09 server2 maldet(1627278): {update} latest version already installed. Jul 20 2024 03:16:09 server2 maldet(1627411): {sigup} performing signature update check... Jul 20 2024 03:16:09 server2 maldet(1627411): {sigup} local signature set is version 20240719566530 Jul 20 2024 03:16:09 server2 maldet(1627411): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Jul 20 2024 03:16:09 server2 maldet(1627411): {sigup} latest signature set already installed Jul 20 2024 03:16:10 server2 maldet(1627522): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Jul 20 2024 03:16:11 server2 maldet(1627522): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Jul 20 2024 03:16:11 server2 maldet(1627522): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Jul 20 2024 03:16:11 server2 maldet(1627522): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Jul 20 2024 03:16:11 server2 maldet(1627522): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/cartforge/public_html/" "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/loco/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Jul 20 2024 03:16:49 server2 maldet(1627522): {scan} file list completed in 38s, found 750 files... Jul 20 2024 03:16:49 server2 maldet(1627522): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Jul 20 2024 03:16:49 server2 maldet(1627522): {scan} scan of (750 files) in progress... Jul 20 2024 03:17:03 server2 maldet(1627522): {scan} scan completed on : files 750, malware hits 0, cleaned hits 0, time 53s Jul 20 2024 03:17:03 server2 maldet(1627522): {scan} scan report saved, to view run: maldet --report 240720-0316.1627522 Jul 21 2024 03:48:41 server2 maldet(2034229): {update} checking for available updates... Jul 21 2024 03:48:42 server2 maldet(2034229): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Jul 21 2024 03:48:42 server2 maldet(2034229): {update} hashing install files and checking against server... Jul 21 2024 03:48:42 server2 maldet(2034229): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Jul 21 2024 03:48:42 server2 maldet(2034229): {update} latest version already installed. Jul 21 2024 03:48:42 server2 maldet(2034362): {sigup} performing signature update check... Jul 21 2024 03:48:42 server2 maldet(2034362): {sigup} local signature set is version 20240719566530 Jul 21 2024 03:48:42 server2 maldet(2034362): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Jul 21 2024 03:48:42 server2 maldet(2034362): {sigup} latest signature set already installed Jul 21 2024 03:48:42 server2 maldet(2034473): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Jul 21 2024 03:48:44 server2 maldet(2034473): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Jul 21 2024 03:48:44 server2 maldet(2034473): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Jul 21 2024 03:48:44 server2 maldet(2034473): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Jul 21 2024 03:48:44 server2 maldet(2034473): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/cartforge/public_html/" "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/loco/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Jul 21 2024 03:49:13 server2 maldet(2034473): {scan} file list completed in 29s, found 1003 files... Jul 21 2024 03:49:13 server2 maldet(2034473): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Jul 21 2024 03:49:13 server2 maldet(2034473): {scan} scan of (1003 files) in progress... Jul 21 2024 03:49:32 server2 maldet(2034473): {scan} scan completed on : files 1003, malware hits 0, cleaned hits 0, time 50s Jul 21 2024 03:49:32 server2 maldet(2034473): {scan} scan report saved, to view run: maldet --report 240721-0348.2034473 Jul 22 2024 03:46:40 server2 maldet(2337397): {update} checking for available updates... Jul 22 2024 03:46:40 server2 maldet(2337397): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Jul 22 2024 03:46:40 server2 maldet(2337397): {update} hashing install files and checking against server... Jul 22 2024 03:46:41 server2 maldet(2337397): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Jul 22 2024 03:46:41 server2 maldet(2337397): {update} latest version already installed. Jul 22 2024 03:46:41 server2 maldet(2337530): {sigup} performing signature update check... Jul 22 2024 03:46:41 server2 maldet(2337530): {sigup} local signature set is version 20240719566530 Jul 22 2024 03:46:41 server2 maldet(2337530): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Jul 22 2024 03:46:41 server2 maldet(2337530): {sigup} new signature set 202407221321576 available Jul 22 2024 03:46:41 server2 maldet(2337530): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Jul 22 2024 03:46:41 server2 maldet(2337530): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Jul 22 2024 03:46:41 server2 maldet(2337530): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Jul 22 2024 03:46:41 server2 maldet(2337530): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Jul 22 2024 03:46:41 server2 maldet(2337530): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Jul 22 2024 03:46:41 server2 maldet(2337530): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Jul 22 2024 03:46:41 server2 maldet(2337530): {sigup} verified md5sum of maldet-sigpack.tgz Jul 22 2024 03:46:41 server2 maldet(2337530): {sigup} unpacked and installed maldet-sigpack.tgz Jul 22 2024 03:46:41 server2 maldet(2337530): {sigup} verified md5sum of maldet-clean.tgz Jul 22 2024 03:46:41 server2 maldet(2337530): {sigup} unpacked and installed maldet-clean.tgz Jul 22 2024 03:46:42 server2 maldet(2337530): {sigup} signature set update completed Jul 22 2024 03:46:42 server2 maldet(2337530): {sigup} 17638 signatures (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Jul 22 2024 03:46:42 server2 maldet(2337759): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Jul 22 2024 03:46:43 server2 maldet(2337759): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Jul 22 2024 03:46:43 server2 maldet(2337759): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Jul 22 2024 03:46:43 server2 maldet(2337759): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Jul 22 2024 03:46:43 server2 maldet(2337759): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/cartforge/public_html/" "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/loco/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Jul 22 2024 03:47:20 server2 maldet(2337759): {scan} file list completed in 37s, found 761 files... Jul 22 2024 03:47:20 server2 maldet(2337759): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Jul 22 2024 03:47:20 server2 maldet(2337759): {scan} scan of (761 files) in progress... Jul 22 2024 03:47:58 server2 maldet(2337759): {scan} scan completed on : files 761, malware hits 0, cleaned hits 0, time 76s Jul 22 2024 03:47:58 server2 maldet(2337759): {scan} scan report saved, to view run: maldet --report 240722-0346.2337759 Jul 23 2024 03:20:58 server2 maldet(2634127): {update} checking for available updates... Jul 23 2024 03:20:58 server2 maldet(2634127): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Jul 23 2024 03:20:58 server2 maldet(2634127): {update} hashing install files and checking against server... Jul 23 2024 03:20:58 server2 maldet(2634127): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Jul 23 2024 03:20:58 server2 maldet(2634127): {update} latest version already installed. Jul 23 2024 03:20:58 server2 maldet(2634260): {sigup} performing signature update check... Jul 23 2024 03:20:58 server2 maldet(2634260): {sigup} local signature set is version 202407221321576 Jul 23 2024 03:20:58 server2 maldet(2634260): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Jul 23 2024 03:20:58 server2 maldet(2634260): {sigup} latest signature set already installed Jul 23 2024 03:20:59 server2 maldet(2634371): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Jul 23 2024 03:21:00 server2 maldet(2634371): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Jul 23 2024 03:21:00 server2 maldet(2634371): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Jul 23 2024 03:21:00 server2 maldet(2634371): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Jul 23 2024 03:21:00 server2 maldet(2634371): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/cartforge/public_html/" "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/loco/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Jul 23 2024 03:21:37 server2 maldet(2634371): {scan} file list completed in 37s, found 1371 files... Jul 23 2024 03:21:37 server2 maldet(2634371): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Jul 23 2024 03:21:37 server2 maldet(2634371): {scan} scan of (1371 files) in progress... Jul 23 2024 03:22:01 server2 maldet(2634371): {scan} scan completed on : files 1371, malware hits 0, cleaned hits 0, time 62s Jul 23 2024 03:22:01 server2 maldet(2634371): {scan} scan report saved, to view run: maldet --report 240723-0320.2634371 Jul 24 2024 03:42:38 server2 maldet(2926646): {update} checking for available updates... Jul 24 2024 03:42:38 server2 maldet(2926646): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Jul 24 2024 03:42:38 server2 maldet(2926646): {update} hashing install files and checking against server... Jul 24 2024 03:42:38 server2 maldet(2926646): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Jul 24 2024 03:42:38 server2 maldet(2926646): {update} latest version already installed. Jul 24 2024 03:42:38 server2 maldet(2926779): {sigup} performing signature update check... Jul 24 2024 03:42:38 server2 maldet(2926779): {sigup} local signature set is version 202407221321576 Jul 24 2024 03:42:38 server2 maldet(2926779): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Jul 24 2024 03:42:38 server2 maldet(2926779): {sigup} latest signature set already installed Jul 24 2024 03:42:38 server2 maldet(2926890): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Jul 24 2024 03:42:40 server2 maldet(2926890): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Jul 24 2024 03:42:40 server2 maldet(2926890): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Jul 24 2024 03:42:40 server2 maldet(2926890): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Jul 24 2024 03:42:40 server2 maldet(2926890): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/cartforge/public_html/" "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/loco/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Jul 24 2024 03:43:06 server2 maldet(2926890): {scan} file list completed in 26s, found 1099 files... Jul 24 2024 03:43:06 server2 maldet(2926890): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Jul 24 2024 03:43:06 server2 maldet(2926890): {scan} scan of (1099 files) in progress... Jul 24 2024 03:43:36 server2 maldet(2926890): {scan} scan completed on : files 1099, malware hits 0, cleaned hits 0, time 58s Jul 24 2024 03:43:36 server2 maldet(2926890): {scan} scan report saved, to view run: maldet --report 240724-0342.2926890 Jul 25 2024 03:12:22 server2 maldet(3238871): {update} checking for available updates... Jul 25 2024 03:12:22 server2 maldet(3238871): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Jul 25 2024 03:12:22 server2 maldet(3238871): {update} hashing install files and checking against server... Jul 25 2024 03:12:22 server2 maldet(3238871): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Jul 25 2024 03:12:22 server2 maldet(3238871): {update} latest version already installed. Jul 25 2024 03:12:22 server2 maldet(3239006): {sigup} performing signature update check... Jul 25 2024 03:12:22 server2 maldet(3239006): {sigup} local signature set is version 202407221321576 Jul 25 2024 03:12:22 server2 maldet(3239006): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Jul 25 2024 03:12:22 server2 maldet(3239006): {sigup} new signature set 202407252077283 available Jul 25 2024 03:12:22 server2 maldet(3239006): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Jul 25 2024 03:12:23 server2 maldet(3239006): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Jul 25 2024 03:12:23 server2 maldet(3239006): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Jul 25 2024 03:12:23 server2 maldet(3239006): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Jul 25 2024 03:12:23 server2 maldet(3239006): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Jul 25 2024 03:12:23 server2 maldet(3239006): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Jul 25 2024 03:12:23 server2 maldet(3239006): {sigup} verified md5sum of maldet-sigpack.tgz Jul 25 2024 03:12:23 server2 maldet(3239006): {sigup} unpacked and installed maldet-sigpack.tgz Jul 25 2024 03:12:23 server2 maldet(3239006): {sigup} verified md5sum of maldet-clean.tgz Jul 25 2024 03:12:23 server2 maldet(3239006): {sigup} unpacked and installed maldet-clean.tgz Jul 25 2024 03:12:23 server2 maldet(3239006): {sigup} signature set update completed Jul 25 2024 03:12:23 server2 maldet(3239006): {sigup} 17638 signatures (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Jul 25 2024 03:12:23 server2 maldet(3239234): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Jul 25 2024 03:12:24 server2 maldet(3239234): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Jul 25 2024 03:12:24 server2 maldet(3239234): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Jul 25 2024 03:12:24 server2 maldet(3239234): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Jul 25 2024 03:12:24 server2 maldet(3239234): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/cartforge/public_html/" "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/loco/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Jul 25 2024 03:13:18 server2 maldet(3239234): {scan} file list completed in 54s, found 1347 files... Jul 25 2024 03:13:18 server2 maldet(3239234): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Jul 25 2024 03:13:18 server2 maldet(3239234): {scan} scan of (1347 files) in progress... Jul 25 2024 03:14:11 server2 maldet(3239234): {scan} scan completed on : files 1347, malware hits 0, cleaned hits 0, time 108s Jul 25 2024 03:14:11 server2 maldet(3239234): {scan} scan report saved, to view run: maldet --report 240725-0312.3239234 Jul 26 2024 03:22:10 server2 maldet(373319): {update} checking for available updates... Jul 26 2024 03:22:10 server2 maldet(373319): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Jul 26 2024 03:22:10 server2 maldet(373319): {update} hashing install files and checking against server... Jul 26 2024 03:22:10 server2 maldet(373319): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Jul 26 2024 03:22:10 server2 maldet(373319): {update} latest version already installed. Jul 26 2024 03:22:10 server2 maldet(373452): {sigup} performing signature update check... Jul 26 2024 03:22:10 server2 maldet(373452): {sigup} local signature set is version 202407252077283 Jul 26 2024 03:22:10 server2 maldet(373452): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Jul 26 2024 03:22:10 server2 maldet(373452): {sigup} latest signature set already installed Jul 26 2024 03:22:10 server2 maldet(373563): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Jul 26 2024 03:22:11 server2 maldet(373563): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Jul 26 2024 03:22:11 server2 maldet(373563): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Jul 26 2024 03:22:11 server2 maldet(373563): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Jul 26 2024 03:22:11 server2 maldet(373563): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/cartforge/public_html/" "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/loco/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Jul 26 2024 03:22:44 server2 maldet(373563): {scan} file list completed in 33s, found 1372 files... Jul 26 2024 03:22:44 server2 maldet(373563): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Jul 26 2024 03:22:44 server2 maldet(373563): {scan} scan of (1372 files) in progress... Jul 26 2024 03:23:16 server2 maldet(373563): {scan} scan completed on : files 1372, malware hits 0, cleaned hits 0, time 66s Jul 26 2024 03:23:16 server2 maldet(373563): {scan} scan report saved, to view run: maldet --report 240726-0322.373563 Jul 27 2024 03:17:35 server2 maldet(1236895): {update} checking for available updates... Jul 27 2024 03:17:36 server2 maldet(1236895): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Jul 27 2024 03:17:36 server2 maldet(1236895): {update} hashing install files and checking against server... Jul 27 2024 03:17:36 server2 maldet(1236895): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Jul 27 2024 03:17:36 server2 maldet(1236895): {update} latest version already installed. Jul 27 2024 03:17:36 server2 maldet(1237028): {sigup} performing signature update check... Jul 27 2024 03:17:36 server2 maldet(1237028): {sigup} local signature set is version 202407252077283 Jul 27 2024 03:17:36 server2 maldet(1237028): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Jul 27 2024 03:17:36 server2 maldet(1237028): {sigup} latest signature set already installed Jul 27 2024 03:17:36 server2 maldet(1237139): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Jul 27 2024 03:17:38 server2 maldet(1237139): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Jul 27 2024 03:17:38 server2 maldet(1237139): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Jul 27 2024 03:17:38 server2 maldet(1237139): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Jul 27 2024 03:17:38 server2 maldet(1237139): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/cartforge/public_html/" "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/loco/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Jul 27 2024 03:18:23 server2 maldet(1237139): {scan} file list completed in 45s, found 968 files... Jul 27 2024 03:18:23 server2 maldet(1237139): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Jul 27 2024 03:18:23 server2 maldet(1237139): {scan} scan of (968 files) in progress... Jul 27 2024 03:18:47 server2 maldet(1237139): {scan} scan completed on : files 968, malware hits 0, cleaned hits 0, time 71s Jul 27 2024 03:18:47 server2 maldet(1237139): {scan} scan report saved, to view run: maldet --report 240727-0317.1237139 Jul 28 2024 03:14:30 server2 maldet(1545278): {update} checking for available updates... Jul 28 2024 03:14:30 server2 maldet(1545278): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Jul 28 2024 03:14:30 server2 maldet(1545278): {update} hashing install files and checking against server... Jul 28 2024 03:14:30 server2 maldet(1545278): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Jul 28 2024 03:14:30 server2 maldet(1545278): {update} latest version already installed. Jul 28 2024 03:14:30 server2 maldet(1545412): {sigup} performing signature update check... Jul 28 2024 03:14:30 server2 maldet(1545412): {sigup} local signature set is version 202407252077283 Jul 28 2024 03:14:30 server2 maldet(1545412): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Jul 28 2024 03:14:30 server2 maldet(1545412): {sigup} new signature set 20240728593846 available Jul 28 2024 03:14:30 server2 maldet(1545412): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Jul 28 2024 03:14:30 server2 maldet(1545412): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Jul 28 2024 03:14:31 server2 maldet(1545412): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Jul 28 2024 03:14:31 server2 maldet(1545412): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Jul 28 2024 03:14:31 server2 maldet(1545412): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Jul 28 2024 03:14:31 server2 maldet(1545412): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Jul 28 2024 03:14:31 server2 maldet(1545412): {sigup} verified md5sum of maldet-sigpack.tgz Jul 28 2024 03:14:31 server2 maldet(1545412): {sigup} unpacked and installed maldet-sigpack.tgz Jul 28 2024 03:14:31 server2 maldet(1545412): {sigup} verified md5sum of maldet-clean.tgz Jul 28 2024 03:14:31 server2 maldet(1545412): {sigup} unpacked and installed maldet-clean.tgz Jul 28 2024 03:14:31 server2 maldet(1545412): {sigup} signature set update completed Jul 28 2024 03:14:31 server2 maldet(1545412): {sigup} 17638 signatures (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Jul 28 2024 03:14:31 server2 maldet(1545639): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Jul 28 2024 03:14:33 server2 maldet(1545639): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Jul 28 2024 03:14:33 server2 maldet(1545639): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Jul 28 2024 03:14:33 server2 maldet(1545639): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Jul 28 2024 03:14:33 server2 maldet(1545639): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/cartforge/public_html/" "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/loco/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Jul 28 2024 03:15:18 server2 maldet(1545639): {scan} file list completed in 44s, found 21649 files... Jul 28 2024 03:15:18 server2 maldet(1545639): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Jul 28 2024 03:15:18 server2 maldet(1545639): {scan} scan of (21649 files) in progress... Jul 28 2024 03:21:12 server2 maldet(1545639): {scan} scan completed on : files 21649, malware hits 0, cleaned hits 0, time 401s Jul 28 2024 03:21:12 server2 maldet(1545639): {scan} scan report saved, to view run: maldet --report 240728-0314.1545639 Jul 29 2024 03:31:02 server2 maldet(1826914): {update} checking for available updates... Jul 29 2024 03:31:02 server2 maldet(1826914): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Jul 29 2024 03:31:02 server2 maldet(1826914): {update} hashing install files and checking against server... Jul 29 2024 03:31:03 server2 maldet(1826914): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Jul 29 2024 03:31:04 server2 maldet(1826914): {update} latest version already installed. Jul 29 2024 03:31:05 server2 maldet(1827079): {sigup} performing signature update check... Jul 29 2024 03:31:05 server2 maldet(1827079): {sigup} local signature set is version 20240728593846 Jul 29 2024 03:31:05 server2 maldet(1827079): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Jul 29 2024 03:31:05 server2 maldet(1827079): {sigup} latest signature set already installed Jul 29 2024 03:31:05 server2 maldet(1827196): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Jul 29 2024 03:31:07 server2 maldet(1827196): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Jul 29 2024 03:31:07 server2 maldet(1827196): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Jul 29 2024 03:31:07 server2 maldet(1827196): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Jul 29 2024 03:31:07 server2 maldet(1827196): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/cartforge/public_html/" "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/loco/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Jul 29 2024 03:31:40 server2 maldet(1827196): {scan} file list completed in 33s, found 6752 files... Jul 29 2024 03:31:40 server2 maldet(1827196): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Jul 29 2024 03:31:40 server2 maldet(1827196): {scan} scan of (6752 files) in progress... Jul 29 2024 03:33:54 server2 maldet(1827196): {scan} clamscan returned an error, check /usr/local/maldetect/logs/clamscan_log for details! Jul 29 2024 03:33:54 server2 maldet(1827196): {scan} scan completed on : files 6752, malware hits 0, cleaned hits 0, time 169s Jul 29 2024 03:33:54 server2 maldet(1827196): {scan} scan report saved, to view run: maldet --report 240729-0331.1827196 Jul 30 2024 04:03:23 server2 maldet(2136516): {update} checking for available updates... Jul 30 2024 04:03:23 server2 maldet(2136516): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Jul 30 2024 04:03:23 server2 maldet(2136516): {update} hashing install files and checking against server... Jul 30 2024 04:03:23 server2 maldet(2136516): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Jul 30 2024 04:03:23 server2 maldet(2136516): {update} latest version already installed. Jul 30 2024 04:03:23 server2 maldet(2136649): {sigup} performing signature update check... Jul 30 2024 04:03:23 server2 maldet(2136649): {sigup} local signature set is version 20240728593846 Jul 30 2024 04:03:23 server2 maldet(2136649): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Jul 30 2024 04:03:24 server2 maldet(2136649): {sigup} latest signature set already installed Jul 30 2024 04:03:24 server2 maldet(2136761): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Jul 30 2024 04:03:25 server2 maldet(2136761): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Jul 30 2024 04:03:25 server2 maldet(2136761): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Jul 30 2024 04:03:25 server2 maldet(2136761): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Jul 30 2024 04:03:25 server2 maldet(2136761): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/cartforge/public_html/" "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/loco/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Jul 30 2024 04:04:11 server2 maldet(2136761): {scan} file list completed in 46s, found 253581 files... Jul 30 2024 04:04:11 server2 maldet(2136761): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Jul 30 2024 04:04:11 server2 maldet(2136761): {scan} scan of (253581 files) in progress... Jul 30 2024 04:17:23 server2 maldet(2136761): {scan} clamscan returned an error, check /usr/local/maldetect/logs/clamscan_log for details! Jul 30 2024 04:17:23 server2 maldet(2136761): {scan} scan completed on : files 253581, malware hits 0, cleaned hits 0, time 839s Jul 30 2024 04:17:23 server2 maldet(2136761): {scan} scan report saved, to view run: maldet --report 240730-0403.2136761 Jul 31 2024 03:49:15 server2 maldet(2886446): {update} checking for available updates... Jul 31 2024 03:49:15 server2 maldet(2886446): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Jul 31 2024 03:49:15 server2 maldet(2886446): {update} hashing install files and checking against server... Jul 31 2024 03:49:15 server2 maldet(2886446): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Jul 31 2024 03:49:15 server2 maldet(2886446): {update} latest version already installed. Jul 31 2024 03:49:15 server2 maldet(2886579): {sigup} performing signature update check... Jul 31 2024 03:49:15 server2 maldet(2886579): {sigup} local signature set is version 20240728593846 Jul 31 2024 03:49:15 server2 maldet(2886579): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Jul 31 2024 03:49:15 server2 maldet(2886579): {sigup} latest signature set already installed Jul 31 2024 03:49:15 server2 maldet(2886690): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Jul 31 2024 03:49:18 server2 maldet(2886690): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Jul 31 2024 03:49:18 server2 maldet(2886690): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Jul 31 2024 03:49:18 server2 maldet(2886690): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Jul 31 2024 03:49:18 server2 maldet(2886690): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/cartforge/public_html/" "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/loco/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Jul 31 2024 03:50:00 server2 maldet(2886690): {scan} file list completed in 42s, found 277750 files... Jul 31 2024 03:50:00 server2 maldet(2886690): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Jul 31 2024 03:50:00 server2 maldet(2886690): {scan} scan of (277750 files) in progress... Jul 31 2024 04:11:22 server2 maldet(2886690): {scan} clamscan returned an error, check /usr/local/maldetect/logs/clamscan_log for details! Jul 31 2024 04:11:22 server2 maldet(2886690): {scan} scan completed on : files 277750, malware hits 0, cleaned hits 0, time 1327s Jul 31 2024 04:11:22 server2 maldet(2886690): {scan} scan report saved, to view run: maldet --report 240731-0349.2886690 Aug 01 2024 03:49:00 server2 maldet(3920437): {update} checking for available updates... Aug 01 2024 03:49:01 server2 maldet(3920437): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Aug 01 2024 03:49:01 server2 maldet(3920437): {update} hashing install files and checking against server... Aug 01 2024 03:49:01 server2 maldet(3920437): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Aug 01 2024 03:49:01 server2 maldet(3920437): {update} latest version already installed. Aug 01 2024 03:49:01 server2 maldet(3920570): {sigup} performing signature update check... Aug 01 2024 03:49:01 server2 maldet(3920570): {sigup} local signature set is version 20240728593846 Aug 01 2024 03:49:02 server2 maldet(3920570): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Aug 01 2024 03:49:02 server2 maldet(3920570): {sigup} latest signature set already installed Aug 01 2024 03:49:02 server2 maldet(3920728): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Aug 01 2024 03:49:07 server2 maldet(3920728): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Aug 01 2024 03:49:07 server2 maldet(3920728): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Aug 01 2024 03:49:07 server2 maldet(3920728): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Aug 01 2024 03:49:07 server2 maldet(3920728): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/cartforge/public_html/" "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/loco/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Aug 01 2024 03:49:49 server2 maldet(3920728): {scan} file list completed in 42s, found 2790 files... Aug 01 2024 03:49:49 server2 maldet(3920728): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Aug 01 2024 03:49:49 server2 maldet(3920728): {scan} scan of (2790 files) in progress... Aug 01 2024 03:50:24 server2 maldet(3920728): {scan} scan completed on : files 2790, malware hits 0, cleaned hits 0, time 82s Aug 01 2024 03:50:24 server2 maldet(3920728): {scan} scan report saved, to view run: maldet --report 240801-0349.3920728 Aug 02 2024 03:39:13 server2 maldet(23180): {update} checking for available updates... Aug 02 2024 03:39:14 server2 maldet(23180): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Aug 02 2024 03:39:14 server2 maldet(23180): {update} hashing install files and checking against server... Aug 02 2024 03:39:14 server2 maldet(23180): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Aug 02 2024 03:39:14 server2 maldet(23180): {update} latest version already installed. Aug 02 2024 03:39:14 server2 maldet(23313): {sigup} performing signature update check... Aug 02 2024 03:39:14 server2 maldet(23313): {sigup} local signature set is version 20240728593846 Aug 02 2024 03:39:14 server2 maldet(23313): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Aug 02 2024 03:39:14 server2 maldet(23313): {sigup} latest signature set already installed Aug 02 2024 03:39:14 server2 maldet(23424): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Aug 02 2024 03:39:16 server2 maldet(23424): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Aug 02 2024 03:39:16 server2 maldet(23424): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Aug 02 2024 03:39:16 server2 maldet(23424): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Aug 02 2024 03:39:16 server2 maldet(23424): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/cartforge/public_html/" "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/loco/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Aug 02 2024 03:40:11 server2 maldet(23424): {scan} file list completed in 55s, found 7577 files... Aug 02 2024 03:40:11 server2 maldet(23424): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Aug 02 2024 03:40:11 server2 maldet(23424): {scan} scan of (7577 files) in progress... Aug 02 2024 03:42:23 server2 maldet(23424): {scan} scan completed on : files 7577, malware hits 0, cleaned hits 0, time 189s Aug 02 2024 03:42:23 server2 maldet(23424): {scan} scan report saved, to view run: maldet --report 240802-0339.23424 Aug 03 2024 03:44:44 server2 maldet(311317): {update} checking for available updates... Aug 03 2024 03:44:44 server2 maldet(311317): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Aug 03 2024 03:44:44 server2 maldet(311317): {update} hashing install files and checking against server... Aug 03 2024 03:44:44 server2 maldet(311317): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Aug 03 2024 03:44:44 server2 maldet(311317): {update} latest version already installed. Aug 03 2024 03:44:45 server2 maldet(311450): {sigup} performing signature update check... Aug 03 2024 03:44:45 server2 maldet(311450): {sigup} local signature set is version 20240728593846 Aug 03 2024 03:44:45 server2 maldet(311450): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Aug 03 2024 03:44:45 server2 maldet(311450): {sigup} new signature set 202407311290191 available Aug 03 2024 03:44:45 server2 maldet(311450): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Aug 03 2024 03:44:45 server2 maldet(311450): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Aug 03 2024 03:44:45 server2 maldet(311450): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Aug 03 2024 03:44:45 server2 maldet(311450): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Aug 03 2024 03:44:45 server2 maldet(311450): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Aug 03 2024 03:44:45 server2 maldet(311450): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Aug 03 2024 03:44:45 server2 maldet(311450): {sigup} verified md5sum of maldet-sigpack.tgz Aug 03 2024 03:44:45 server2 maldet(311450): {sigup} unpacked and installed maldet-sigpack.tgz Aug 03 2024 03:44:45 server2 maldet(311450): {sigup} verified md5sum of maldet-clean.tgz Aug 03 2024 03:44:45 server2 maldet(311450): {sigup} unpacked and installed maldet-clean.tgz Aug 03 2024 03:44:45 server2 maldet(311450): {sigup} signature set update completed Aug 03 2024 03:44:45 server2 maldet(311450): {sigup} 17638 signatures (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Aug 03 2024 03:44:45 server2 maldet(311678): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Aug 03 2024 03:44:47 server2 maldet(311678): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Aug 03 2024 03:44:47 server2 maldet(311678): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Aug 03 2024 03:44:47 server2 maldet(311678): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Aug 03 2024 03:44:47 server2 maldet(311678): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/cartforge/public_html/" "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/loco/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Aug 03 2024 03:46:24 server2 maldet(311678): {scan} file list completed in 97s, found 1040 files... Aug 03 2024 03:46:25 server2 maldet(311678): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Aug 03 2024 03:46:25 server2 maldet(311678): {scan} scan of (1040 files) in progress... Aug 03 2024 03:47:12 server2 maldet(311678): {scan} scan completed on : files 1040, malware hits 0, cleaned hits 0, time 147s Aug 03 2024 03:47:12 server2 maldet(311678): {scan} scan report saved, to view run: maldet --report 240803-0344.311678 Aug 04 2024 03:23:53 server2 maldet(590317): {update} checking for available updates... Aug 04 2024 03:23:53 server2 maldet(590317): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Aug 04 2024 03:23:53 server2 maldet(590317): {update} hashing install files and checking against server... Aug 04 2024 03:23:53 server2 maldet(590317): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Aug 04 2024 03:23:53 server2 maldet(590317): {update} latest version already installed. Aug 04 2024 03:23:53 server2 maldet(590450): {sigup} performing signature update check... Aug 04 2024 03:23:53 server2 maldet(590450): {sigup} local signature set is version 202407311290191 Aug 04 2024 03:23:53 server2 maldet(590450): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Aug 04 2024 03:23:53 server2 maldet(590450): {sigup} new signature set 20240804573718 available Aug 04 2024 03:23:54 server2 maldet(590450): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Aug 04 2024 03:23:54 server2 maldet(590450): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Aug 04 2024 03:23:54 server2 maldet(590450): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Aug 04 2024 03:23:54 server2 maldet(590450): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Aug 04 2024 03:23:54 server2 maldet(590450): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Aug 04 2024 03:23:54 server2 maldet(590450): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Aug 04 2024 03:23:54 server2 maldet(590450): {sigup} verified md5sum of maldet-sigpack.tgz Aug 04 2024 03:23:54 server2 maldet(590450): {sigup} unpacked and installed maldet-sigpack.tgz Aug 04 2024 03:23:54 server2 maldet(590450): {sigup} verified md5sum of maldet-clean.tgz Aug 04 2024 03:23:54 server2 maldet(590450): {sigup} unpacked and installed maldet-clean.tgz Aug 04 2024 03:23:54 server2 maldet(590450): {sigup} signature set update completed Aug 04 2024 03:23:54 server2 maldet(590450): {sigup} 17638 signatures (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Aug 04 2024 03:23:54 server2 maldet(590680): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Aug 04 2024 03:23:56 server2 maldet(590680): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Aug 04 2024 03:23:56 server2 maldet(590680): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Aug 04 2024 03:23:56 server2 maldet(590680): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Aug 04 2024 03:23:56 server2 maldet(590680): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/cartforge/public_html/" "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/loco/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Aug 04 2024 03:24:27 server2 maldet(590680): {scan} file list completed in 31s, found 2696 files... Aug 04 2024 03:24:27 server2 maldet(590680): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Aug 04 2024 03:24:27 server2 maldet(590680): {scan} scan of (2696 files) in progress... Aug 04 2024 03:25:20 server2 maldet(590680): {scan} scan completed on : files 2696, malware hits 0, cleaned hits 0, time 86s Aug 04 2024 03:25:20 server2 maldet(590680): {scan} scan report saved, to view run: maldet --report 240804-0323.590680 Aug 05 2024 03:40:02 server2 maldet(886093): {update} checking for available updates... Aug 05 2024 03:40:17 server2 maldet(886093): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Aug 05 2024 03:40:17 server2 maldet(886093): {update} hashing install files and checking against server... Aug 05 2024 03:40:17 server2 maldet(886093): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Aug 05 2024 03:40:17 server2 maldet(886093): {update} latest version already installed. Aug 05 2024 03:40:17 server2 maldet(886398): {sigup} performing signature update check... Aug 05 2024 03:40:17 server2 maldet(886398): {sigup} local signature set is version 20240804573718 Aug 05 2024 03:40:17 server2 maldet(886398): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Aug 05 2024 03:40:17 server2 maldet(886398): {sigup} latest signature set already installed Aug 05 2024 03:40:17 server2 maldet(886510): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Aug 05 2024 03:40:18 server2 maldet(886510): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Aug 05 2024 03:40:18 server2 maldet(886510): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Aug 05 2024 03:40:18 server2 maldet(886510): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Aug 05 2024 03:40:18 server2 maldet(886510): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/cartforge/public_html/" "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/loco/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Aug 05 2024 03:41:14 server2 maldet(886510): {scan} file list completed in 56s, found 2574 files... Aug 05 2024 03:41:14 server2 maldet(886510): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Aug 05 2024 03:41:14 server2 maldet(886510): {scan} scan of (2574 files) in progress... Aug 05 2024 03:41:40 server2 maldet(886510): {scan} clamscan returned an error, check /usr/local/maldetect/logs/clamscan_log for details! Aug 05 2024 03:41:41 server2 maldet(886510): {scan} scan completed on : files 2574, malware hits 0, cleaned hits 0, time 83s Aug 05 2024 03:41:41 server2 maldet(886510): {scan} scan report saved, to view run: maldet --report 240805-0340.886510 Aug 06 2024 03:22:50 server2 maldet(1163781): {update} checking for available updates... Aug 06 2024 03:22:51 server2 maldet(1163781): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Aug 06 2024 03:22:51 server2 maldet(1163781): {update} hashing install files and checking against server... Aug 06 2024 03:22:51 server2 maldet(1163781): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Aug 06 2024 03:22:51 server2 maldet(1163781): {update} latest version already installed. Aug 06 2024 03:22:51 server2 maldet(1163914): {sigup} performing signature update check... Aug 06 2024 03:22:51 server2 maldet(1163914): {sigup} local signature set is version 20240804573718 Aug 06 2024 03:22:51 server2 maldet(1163914): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Aug 06 2024 03:22:51 server2 maldet(1163914): {sigup} latest signature set already installed Aug 06 2024 03:22:51 server2 maldet(1164025): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Aug 06 2024 03:22:52 server2 maldet(1164025): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Aug 06 2024 03:22:52 server2 maldet(1164025): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Aug 06 2024 03:22:52 server2 maldet(1164025): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Aug 06 2024 03:22:53 server2 maldet(1164025): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/cartforge/public_html/" "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/loco/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Aug 06 2024 03:24:02 server2 maldet(1164025): {scan} file list completed in 69s, found 877 files... Aug 06 2024 03:24:02 server2 maldet(1164025): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Aug 06 2024 03:24:02 server2 maldet(1164025): {scan} scan of (877 files) in progress... Aug 06 2024 03:24:31 server2 maldet(1164025): {scan} scan completed on : files 877, malware hits 0, cleaned hits 0, time 100s Aug 06 2024 03:24:31 server2 maldet(1164025): {scan} scan report saved, to view run: maldet --report 240806-0322.1164025 Aug 07 2024 03:38:45 server2 maldet(1450659): {update} checking for available updates... Aug 07 2024 03:38:45 server2 maldet(1450659): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Aug 07 2024 03:38:45 server2 maldet(1450659): {update} hashing install files and checking against server... Aug 07 2024 03:38:45 server2 maldet(1450659): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Aug 07 2024 03:38:45 server2 maldet(1450659): {update} latest version already installed. Aug 07 2024 03:38:45 server2 maldet(1450793): {sigup} performing signature update check... Aug 07 2024 03:38:45 server2 maldet(1450793): {sigup} local signature set is version 20240804573718 Aug 07 2024 03:38:45 server2 maldet(1450793): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Aug 07 2024 03:38:45 server2 maldet(1450793): {sigup} new signature set 202408071328483 available Aug 07 2024 03:38:45 server2 maldet(1450793): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Aug 07 2024 03:38:45 server2 maldet(1450793): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Aug 07 2024 03:38:45 server2 maldet(1450793): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Aug 07 2024 03:38:45 server2 maldet(1450793): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Aug 07 2024 03:38:45 server2 maldet(1450793): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Aug 07 2024 03:38:45 server2 maldet(1450793): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Aug 07 2024 03:38:45 server2 maldet(1450793): {sigup} verified md5sum of maldet-sigpack.tgz Aug 07 2024 03:38:46 server2 maldet(1450793): {sigup} unpacked and installed maldet-sigpack.tgz Aug 07 2024 03:38:46 server2 maldet(1450793): {sigup} verified md5sum of maldet-clean.tgz Aug 07 2024 03:38:46 server2 maldet(1450793): {sigup} unpacked and installed maldet-clean.tgz Aug 07 2024 03:38:46 server2 maldet(1450793): {sigup} signature set update completed Aug 07 2024 03:38:46 server2 maldet(1450793): {sigup} 17638 signatures (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Aug 07 2024 03:38:46 server2 maldet(1451021): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Aug 07 2024 03:38:49 server2 maldet(1451021): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Aug 07 2024 03:38:49 server2 maldet(1451021): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Aug 07 2024 03:38:49 server2 maldet(1451021): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Aug 07 2024 03:38:49 server2 maldet(1451021): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/cartforge/public_html/" "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/loco/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Aug 07 2024 03:39:50 server2 maldet(1451021): {scan} file list completed in 61s, found 23568 files... Aug 07 2024 03:39:50 server2 maldet(1451021): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Aug 07 2024 03:39:50 server2 maldet(1451021): {scan} scan of (23568 files) in progress... Aug 07 2024 03:45:36 server2 maldet(1451021): {scan} clamscan returned an error, check /usr/local/maldetect/logs/clamscan_log for details! Aug 07 2024 03:45:36 server2 maldet(1451021): {scan} scan completed on : files 23568, malware hits 0, cleaned hits 0, time 410s Aug 07 2024 03:45:36 server2 maldet(1451021): {scan} scan report saved, to view run: maldet --report 240807-0338.1451021 Aug 08 2024 03:24:55 server2 maldet(1752231): {update} checking for available updates... Aug 08 2024 03:24:55 server2 maldet(1752231): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Aug 08 2024 03:24:55 server2 maldet(1752231): {update} hashing install files and checking against server... Aug 08 2024 03:24:55 server2 maldet(1752231): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Aug 08 2024 03:24:55 server2 maldet(1752231): {update} latest version already installed. Aug 08 2024 03:24:55 server2 maldet(1752364): {sigup} performing signature update check... Aug 08 2024 03:24:55 server2 maldet(1752364): {sigup} local signature set is version 202408071328483 Aug 08 2024 03:24:55 server2 maldet(1752364): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Aug 08 2024 03:24:55 server2 maldet(1752364): {sigup} latest signature set already installed Aug 08 2024 03:24:55 server2 maldet(1752475): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Aug 08 2024 03:24:57 server2 maldet(1752475): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Aug 08 2024 03:24:57 server2 maldet(1752475): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Aug 08 2024 03:24:57 server2 maldet(1752475): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Aug 08 2024 03:24:57 server2 maldet(1752475): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/cartforge/public_html/" "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/loco/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Aug 08 2024 03:25:49 server2 maldet(1752475): {scan} file list completed in 52s, found 2321 files... Aug 08 2024 03:25:49 server2 maldet(1752475): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Aug 08 2024 03:25:49 server2 maldet(1752475): {scan} scan of (2321 files) in progress... Aug 08 2024 03:26:20 server2 maldet(1752475): {scan} scan completed on : files 2321, malware hits 0, cleaned hits 0, time 85s Aug 08 2024 03:26:20 server2 maldet(1752475): {scan} scan report saved, to view run: maldet --report 240808-0324.1752475 Aug 09 2024 03:38:13 server2 maldet(2042889): {update} checking for available updates... Aug 09 2024 03:38:13 server2 maldet(2042889): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Aug 09 2024 03:38:13 server2 maldet(2042889): {update} hashing install files and checking against server... Aug 09 2024 03:38:13 server2 maldet(2042889): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Aug 09 2024 03:38:13 server2 maldet(2042889): {update} latest version already installed. Aug 09 2024 03:38:13 server2 maldet(2043022): {sigup} performing signature update check... Aug 09 2024 03:38:13 server2 maldet(2043022): {sigup} local signature set is version 202408071328483 Aug 09 2024 03:38:13 server2 maldet(2043022): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Aug 09 2024 03:38:13 server2 maldet(2043022): {sigup} latest signature set already installed Aug 09 2024 03:38:14 server2 maldet(2043133): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Aug 09 2024 03:38:15 server2 maldet(2043133): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Aug 09 2024 03:38:15 server2 maldet(2043133): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Aug 09 2024 03:38:15 server2 maldet(2043133): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Aug 09 2024 03:38:15 server2 maldet(2043133): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/cartforge/public_html/" "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/loco/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Aug 09 2024 03:39:10 server2 maldet(2043133): {scan} file list completed in 55s, found 2311 files... Aug 09 2024 03:39:10 server2 maldet(2043133): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Aug 09 2024 03:39:10 server2 maldet(2043133): {scan} scan of (2311 files) in progress... Aug 09 2024 03:39:55 server2 maldet(2043133): {scan} scan completed on : files 2311, malware hits 0, cleaned hits 0, time 101s Aug 09 2024 03:39:55 server2 maldet(2043133): {scan} scan report saved, to view run: maldet --report 240809-0338.2043133 Aug 10 2024 03:16:32 server2 maldet(2450644): {update} checking for available updates... Aug 10 2024 03:16:32 server2 maldet(2450644): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Aug 10 2024 03:16:32 server2 maldet(2450644): {update} hashing install files and checking against server... Aug 10 2024 03:16:32 server2 maldet(2450644): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Aug 10 2024 03:16:32 server2 maldet(2450644): {update} latest version already installed. Aug 10 2024 03:16:33 server2 maldet(2450778): {sigup} performing signature update check... Aug 10 2024 03:16:33 server2 maldet(2450778): {sigup} local signature set is version 202408071328483 Aug 10 2024 03:16:33 server2 maldet(2450778): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Aug 10 2024 03:16:33 server2 maldet(2450778): {sigup} new signature set 202408102084908 available Aug 10 2024 03:16:33 server2 maldet(2450778): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Aug 10 2024 03:16:33 server2 maldet(2450778): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Aug 10 2024 03:16:33 server2 maldet(2450778): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Aug 10 2024 03:16:33 server2 maldet(2450778): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Aug 10 2024 03:16:33 server2 maldet(2450778): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Aug 10 2024 03:16:33 server2 maldet(2450778): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Aug 10 2024 03:16:33 server2 maldet(2450778): {sigup} verified md5sum of maldet-sigpack.tgz Aug 10 2024 03:16:33 server2 maldet(2450778): {sigup} unpacked and installed maldet-sigpack.tgz Aug 10 2024 03:16:33 server2 maldet(2450778): {sigup} verified md5sum of maldet-clean.tgz Aug 10 2024 03:16:33 server2 maldet(2450778): {sigup} unpacked and installed maldet-clean.tgz Aug 10 2024 03:16:33 server2 maldet(2450778): {sigup} signature set update completed Aug 10 2024 03:16:33 server2 maldet(2450778): {sigup} 17638 signatures (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Aug 10 2024 03:16:33 server2 maldet(2451006): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Aug 10 2024 03:16:35 server2 maldet(2451006): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Aug 10 2024 03:16:35 server2 maldet(2451006): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Aug 10 2024 03:16:35 server2 maldet(2451006): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Aug 10 2024 03:16:35 server2 maldet(2451006): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/cartforge/public_html/" "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/loco/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Aug 10 2024 03:17:39 server2 maldet(2451006): {scan} file list completed in 64s, found 17550 files... Aug 10 2024 03:17:39 server2 maldet(2451006): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Aug 10 2024 03:17:39 server2 maldet(2451006): {scan} scan of (17550 files) in progress... Aug 10 2024 03:21:05 server2 maldet(2451006): {scan} scan completed on : files 17550, malware hits 0, cleaned hits 0, time 272s Aug 10 2024 03:21:05 server2 maldet(2451006): {scan} scan report saved, to view run: maldet --report 240810-0316.2451006 Aug 11 2024 03:07:58 server2 maldet(2781224): {update} checking for available updates... Aug 11 2024 03:07:58 server2 maldet(2781224): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Aug 11 2024 03:07:58 server2 maldet(2781224): {update} hashing install files and checking against server... Aug 11 2024 03:07:58 server2 maldet(2781224): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Aug 11 2024 03:07:58 server2 maldet(2781224): {update} latest version already installed. Aug 11 2024 03:07:59 server2 maldet(2781359): {sigup} performing signature update check... Aug 11 2024 03:07:59 server2 maldet(2781359): {sigup} local signature set is version 202408102084908 Aug 11 2024 03:07:59 server2 maldet(2781359): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Aug 11 2024 03:07:59 server2 maldet(2781359): {sigup} latest signature set already installed Aug 11 2024 03:07:59 server2 maldet(2781470): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Aug 11 2024 03:08:01 server2 maldet(2781470): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Aug 11 2024 03:08:01 server2 maldet(2781470): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Aug 11 2024 03:08:01 server2 maldet(2781470): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Aug 11 2024 03:08:01 server2 maldet(2781470): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/cartforge/public_html/" "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/loco/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Aug 11 2024 03:08:56 server2 maldet(2781470): {scan} file list completed in 55s, found 2285 files... Aug 11 2024 03:08:56 server2 maldet(2781470): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Aug 11 2024 03:08:56 server2 maldet(2781470): {scan} scan of (2285 files) in progress... Aug 11 2024 03:09:35 server2 maldet(2781470): {scan} scan completed on : files 2285, malware hits 0, cleaned hits 0, time 96s Aug 11 2024 03:09:35 server2 maldet(2781470): {scan} scan report saved, to view run: maldet --report 240811-0307.2781470 Aug 12 2024 03:43:50 server2 maldet(3250643): {update} checking for available updates... Aug 12 2024 03:43:50 server2 maldet(3250643): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Aug 12 2024 03:43:50 server2 maldet(3250643): {update} hashing install files and checking against server... Aug 12 2024 03:43:50 server2 maldet(3250643): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Aug 12 2024 03:43:50 server2 maldet(3250643): {update} latest version already installed. Aug 12 2024 03:43:50 server2 maldet(3250776): {sigup} performing signature update check... Aug 12 2024 03:43:50 server2 maldet(3250776): {sigup} local signature set is version 202408102084908 Aug 12 2024 03:43:51 server2 maldet(3250776): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Aug 12 2024 03:43:51 server2 maldet(3250776): {sigup} latest signature set already installed Aug 12 2024 03:43:51 server2 maldet(3250887): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Aug 12 2024 03:43:52 server2 maldet(3250887): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Aug 12 2024 03:43:52 server2 maldet(3250887): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Aug 12 2024 03:43:52 server2 maldet(3250887): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Aug 12 2024 03:43:52 server2 maldet(3250887): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/cartforge/public_html/" "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/loco/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Aug 12 2024 03:44:37 server2 maldet(3250887): {scan} file list completed in 45s, found 2955 files... Aug 12 2024 03:44:37 server2 maldet(3250887): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Aug 12 2024 03:44:37 server2 maldet(3250887): {scan} scan of (2955 files) in progress... Aug 12 2024 03:45:21 server2 maldet(3250887): {scan} clamscan returned an error, check /usr/local/maldetect/logs/clamscan_log for details! Aug 12 2024 03:45:22 server2 maldet(3250887): {scan} scan completed on : files 2955, malware hits 0, cleaned hits 0, time 91s Aug 12 2024 03:45:22 server2 maldet(3250887): {scan} scan report saved, to view run: maldet --report 240812-0343.3250887 Aug 13 2024 03:51:41 server2 maldet(3577583): {update} checking for available updates... Aug 13 2024 03:51:41 server2 maldet(3577583): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Aug 13 2024 03:51:41 server2 maldet(3577583): {update} hashing install files and checking against server... Aug 13 2024 03:51:41 server2 maldet(3577583): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Aug 13 2024 03:51:41 server2 maldet(3577583): {update} latest version already installed. Aug 13 2024 03:51:42 server2 maldet(3577716): {sigup} performing signature update check... Aug 13 2024 03:51:42 server2 maldet(3577716): {sigup} local signature set is version 202408102084908 Aug 13 2024 03:51:42 server2 maldet(3577716): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Aug 13 2024 03:51:42 server2 maldet(3577716): {sigup} latest signature set already installed Aug 13 2024 03:51:42 server2 maldet(3577827): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Aug 13 2024 03:51:43 server2 maldet(3577827): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Aug 13 2024 03:51:43 server2 maldet(3577827): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Aug 13 2024 03:51:43 server2 maldet(3577827): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Aug 13 2024 03:51:43 server2 maldet(3577827): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/cartforge/public_html/" "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/loco/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Aug 13 2024 03:52:31 server2 maldet(3577827): {scan} file list completed in 48s, found 2902 files... Aug 13 2024 03:52:31 server2 maldet(3577827): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Aug 13 2024 03:52:31 server2 maldet(3577827): {scan} scan of (2902 files) in progress... Aug 13 2024 03:53:08 server2 maldet(3577827): {scan} scan completed on : files 2902, malware hits 0, cleaned hits 0, time 86s Aug 13 2024 03:53:08 server2 maldet(3577827): {scan} scan report saved, to view run: maldet --report 240813-0351.3577827 Aug 14 2024 03:53:29 server2 maldet(3880769): {update} checking for available updates... Aug 14 2024 03:53:29 server2 maldet(3880769): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Aug 14 2024 03:53:29 server2 maldet(3880769): {update} hashing install files and checking against server... Aug 14 2024 03:53:29 server2 maldet(3880769): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Aug 14 2024 03:53:29 server2 maldet(3880769): {update} latest version already installed. Aug 14 2024 03:53:29 server2 maldet(3880902): {sigup} performing signature update check... Aug 14 2024 03:53:29 server2 maldet(3880902): {sigup} local signature set is version 202408102084908 Aug 14 2024 03:53:29 server2 maldet(3880902): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Aug 14 2024 03:53:29 server2 maldet(3880902): {sigup} latest signature set already installed Aug 14 2024 03:53:29 server2 maldet(3881013): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Aug 14 2024 03:53:36 server2 maldet(3881013): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Aug 14 2024 03:53:36 server2 maldet(3881013): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Aug 14 2024 03:53:36 server2 maldet(3881013): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Aug 14 2024 03:53:36 server2 maldet(3881013): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/cartforge/public_html/" "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/loco/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Aug 14 2024 03:54:46 server2 maldet(3881013): {scan} file list completed in 70s, found 23654 files... Aug 14 2024 03:54:46 server2 maldet(3881013): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Aug 14 2024 03:54:46 server2 maldet(3881013): {scan} scan of (23654 files) in progress... Aug 14 2024 04:01:52 server2 maldet(3881013): {scan} scan completed on : files 23654, malware hits 0, cleaned hits 0, time 503s Aug 14 2024 04:01:52 server2 maldet(3881013): {scan} scan report saved, to view run: maldet --report 240814-0353.3881013 Aug 15 2024 03:35:43 server2 maldet(4171992): {update} checking for available updates... Aug 15 2024 03:35:43 server2 maldet(4171992): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Aug 15 2024 03:35:43 server2 maldet(4171992): {update} hashing install files and checking against server... Aug 15 2024 03:35:43 server2 maldet(4171992): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Aug 15 2024 03:35:43 server2 maldet(4171992): {update} latest version already installed. Aug 15 2024 03:35:43 server2 maldet(4172125): {sigup} performing signature update check... Aug 15 2024 03:35:43 server2 maldet(4172125): {sigup} local signature set is version 202408102084908 Aug 15 2024 03:35:43 server2 maldet(4172125): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Aug 15 2024 03:35:43 server2 maldet(4172125): {sigup} latest signature set already installed Aug 15 2024 03:35:43 server2 maldet(4172236): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Aug 15 2024 03:35:44 server2 maldet(4172236): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Aug 15 2024 03:35:44 server2 maldet(4172236): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Aug 15 2024 03:35:44 server2 maldet(4172236): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Aug 15 2024 03:35:44 server2 maldet(4172236): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/cartforge/public_html/" "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/loco/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Aug 15 2024 03:36:43 server2 maldet(4172236): {scan} file list completed in 59s, found 3215 files... Aug 15 2024 03:36:43 server2 maldet(4172236): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Aug 15 2024 03:36:43 server2 maldet(4172236): {scan} scan of (3215 files) in progress... Aug 15 2024 03:37:39 server2 maldet(4172236): {scan} scan completed on : files 3215, malware hits 0, cleaned hits 0, time 116s Aug 15 2024 03:37:39 server2 maldet(4172236): {scan} scan report saved, to view run: maldet --report 240815-0335.4172236 Aug 16 2024 03:19:49 server2 maldet(274274): {update} checking for available updates... Aug 16 2024 03:19:49 server2 maldet(274274): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Aug 16 2024 03:19:49 server2 maldet(274274): {update} hashing install files and checking against server... Aug 16 2024 03:19:49 server2 maldet(274274): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Aug 16 2024 03:19:49 server2 maldet(274274): {update} latest version already installed. Aug 16 2024 03:19:49 server2 maldet(274407): {sigup} performing signature update check... Aug 16 2024 03:19:49 server2 maldet(274407): {sigup} local signature set is version 202408102084908 Aug 16 2024 03:19:49 server2 maldet(274407): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Aug 16 2024 03:19:49 server2 maldet(274407): {sigup} new signature set 20240816593955 available Aug 16 2024 03:19:49 server2 maldet(274407): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Aug 16 2024 03:19:49 server2 maldet(274407): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Aug 16 2024 03:19:49 server2 maldet(274407): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Aug 16 2024 03:19:49 server2 maldet(274407): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Aug 16 2024 03:19:49 server2 maldet(274407): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Aug 16 2024 03:19:49 server2 maldet(274407): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Aug 16 2024 03:19:49 server2 maldet(274407): {sigup} verified md5sum of maldet-sigpack.tgz Aug 16 2024 03:19:50 server2 maldet(274407): {sigup} unpacked and installed maldet-sigpack.tgz Aug 16 2024 03:19:50 server2 maldet(274407): {sigup} verified md5sum of maldet-clean.tgz Aug 16 2024 03:19:50 server2 maldet(274407): {sigup} unpacked and installed maldet-clean.tgz Aug 16 2024 03:19:50 server2 maldet(274407): {sigup} signature set update completed Aug 16 2024 03:19:50 server2 maldet(274407): {sigup} 17638 signatures (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Aug 16 2024 03:19:50 server2 maldet(274637): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Aug 16 2024 03:19:51 server2 maldet(274637): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Aug 16 2024 03:19:51 server2 maldet(274637): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Aug 16 2024 03:19:51 server2 maldet(274637): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Aug 16 2024 03:19:51 server2 maldet(274637): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/cartforge/public_html/" "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/loco/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Aug 16 2024 03:21:17 server2 maldet(274637): {scan} file list completed in 86s, found 23674 files... Aug 16 2024 03:21:17 server2 maldet(274637): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Aug 16 2024 03:21:17 server2 maldet(274637): {scan} scan of (23674 files) in progress... Aug 16 2024 03:26:01 server2 maldet(274637): {scan} scan completed on : files 23674, malware hits 0, cleaned hits 0, time 371s Aug 16 2024 03:26:01 server2 maldet(274637): {scan} scan report saved, to view run: maldet --report 240816-0319.274637 Aug 17 2024 03:29:52 server2 maldet(571530): {update} checking for available updates... Aug 17 2024 03:29:52 server2 maldet(571530): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Aug 17 2024 03:29:52 server2 maldet(571530): {update} hashing install files and checking against server... Aug 17 2024 03:29:52 server2 maldet(571530): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Aug 17 2024 03:29:52 server2 maldet(571530): {update} latest version already installed. Aug 17 2024 03:29:52 server2 maldet(571663): {sigup} performing signature update check... Aug 17 2024 03:29:52 server2 maldet(571663): {sigup} local signature set is version 20240816593955 Aug 17 2024 03:29:52 server2 maldet(571663): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Aug 17 2024 03:29:52 server2 maldet(571663): {sigup} latest signature set already installed Aug 17 2024 03:29:52 server2 maldet(571774): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Aug 17 2024 03:29:54 server2 maldet(571774): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Aug 17 2024 03:29:54 server2 maldet(571774): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Aug 17 2024 03:29:54 server2 maldet(571774): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Aug 17 2024 03:29:54 server2 maldet(571774): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/cartforge/public_html/" "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/loco/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Aug 17 2024 03:31:03 server2 maldet(571774): {scan} file list completed in 68s, found 17422 files... Aug 17 2024 03:31:03 server2 maldet(571774): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Aug 17 2024 03:31:03 server2 maldet(571774): {scan} scan of (17422 files) in progress... Aug 17 2024 03:32:18 server2 maldet(571774): {scan} scan completed on : files 17422, malware hits 0, cleaned hits 0, time 146s Aug 17 2024 03:32:18 server2 maldet(571774): {scan} scan report saved, to view run: maldet --report 240817-0329.571774 Aug 18 2024 03:56:15 server2 maldet(854602): {update} checking for available updates... Aug 18 2024 03:56:15 server2 maldet(854602): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Aug 18 2024 03:56:15 server2 maldet(854602): {update} hashing install files and checking against server... Aug 18 2024 03:56:15 server2 maldet(854602): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Aug 18 2024 03:56:15 server2 maldet(854602): {update} latest version already installed. Aug 18 2024 03:56:15 server2 maldet(854735): {sigup} performing signature update check... Aug 18 2024 03:56:15 server2 maldet(854735): {sigup} local signature set is version 20240816593955 Aug 18 2024 03:56:15 server2 maldet(854735): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Aug 18 2024 03:56:15 server2 maldet(854735): {sigup} latest signature set already installed Aug 18 2024 03:56:15 server2 maldet(854846): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Aug 18 2024 03:56:18 server2 maldet(854846): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Aug 18 2024 03:56:18 server2 maldet(854846): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Aug 18 2024 03:56:18 server2 maldet(854846): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Aug 18 2024 03:56:18 server2 maldet(854846): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/cartforge/public_html/" "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/loco/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Aug 18 2024 03:57:13 server2 maldet(854846): {scan} file list completed in 55s, found 18237 files... Aug 18 2024 03:57:13 server2 maldet(854846): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Aug 18 2024 03:57:13 server2 maldet(854846): {scan} scan of (18237 files) in progress... Aug 18 2024 04:04:08 server2 maldet(854846): {scan} scan completed on : files 18237, malware hits 0, cleaned hits 0, time 473s Aug 18 2024 04:04:08 server2 maldet(854846): {scan} scan report saved, to view run: maldet --report 240818-0356.854846 Aug 19 2024 03:21:28 server2 maldet(1146946): {update} checking for available updates... Aug 19 2024 03:21:28 server2 maldet(1146946): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Aug 19 2024 03:21:28 server2 maldet(1146946): {update} hashing install files and checking against server... Aug 19 2024 03:21:28 server2 maldet(1146946): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Aug 19 2024 03:21:28 server2 maldet(1146946): {update} latest version already installed. Aug 19 2024 03:21:28 server2 maldet(1147079): {sigup} performing signature update check... Aug 19 2024 03:21:28 server2 maldet(1147079): {sigup} local signature set is version 20240816593955 Aug 19 2024 03:21:28 server2 maldet(1147079): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Aug 19 2024 03:21:28 server2 maldet(1147079): {sigup} new signature set 202408191348753 available Aug 19 2024 03:21:28 server2 maldet(1147079): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Aug 19 2024 03:21:28 server2 maldet(1147079): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Aug 19 2024 03:21:28 server2 maldet(1147079): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Aug 19 2024 03:21:28 server2 maldet(1147079): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Aug 19 2024 03:21:28 server2 maldet(1147079): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Aug 19 2024 03:21:28 server2 maldet(1147079): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Aug 19 2024 03:21:28 server2 maldet(1147079): {sigup} verified md5sum of maldet-sigpack.tgz Aug 19 2024 03:21:29 server2 maldet(1147079): {sigup} unpacked and installed maldet-sigpack.tgz Aug 19 2024 03:21:29 server2 maldet(1147079): {sigup} verified md5sum of maldet-clean.tgz Aug 19 2024 03:21:29 server2 maldet(1147079): {sigup} unpacked and installed maldet-clean.tgz Aug 19 2024 03:21:29 server2 maldet(1147079): {sigup} signature set update completed Aug 19 2024 03:21:29 server2 maldet(1147079): {sigup} 17638 signatures (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Aug 19 2024 03:21:29 server2 maldet(1147310): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Aug 19 2024 03:21:30 server2 maldet(1147310): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Aug 19 2024 03:21:30 server2 maldet(1147310): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Aug 19 2024 03:21:30 server2 maldet(1147310): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Aug 19 2024 03:21:30 server2 maldet(1147310): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/cartforge/public_html/" "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/loco/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Aug 19 2024 03:22:33 server2 maldet(1147310): {scan} file list completed in 63s, found 2157 files... Aug 19 2024 03:22:33 server2 maldet(1147310): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Aug 19 2024 03:22:33 server2 maldet(1147310): {scan} scan of (2157 files) in progress... Aug 19 2024 03:23:07 server2 maldet(1147310): {scan} scan completed on : files 2157, malware hits 0, cleaned hits 0, time 98s Aug 19 2024 03:23:07 server2 maldet(1147310): {scan} scan report saved, to view run: maldet --report 240819-0321.1147310 Aug 20 2024 03:38:55 server2 maldet(1457479): {update} checking for available updates... Aug 20 2024 03:38:55 server2 maldet(1457479): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Aug 20 2024 03:38:56 server2 maldet(1457479): {update} hashing install files and checking against server... Aug 20 2024 03:38:56 server2 maldet(1457479): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Aug 20 2024 03:38:56 server2 maldet(1457479): {update} latest version already installed. Aug 20 2024 03:38:56 server2 maldet(1457612): {sigup} performing signature update check... Aug 20 2024 03:38:56 server2 maldet(1457612): {sigup} local signature set is version 202408191348753 Aug 20 2024 03:38:56 server2 maldet(1457612): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Aug 20 2024 03:38:56 server2 maldet(1457612): {sigup} latest signature set already installed Aug 20 2024 03:38:56 server2 maldet(1457724): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Aug 20 2024 03:38:57 server2 maldet(1457724): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Aug 20 2024 03:38:57 server2 maldet(1457724): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Aug 20 2024 03:38:57 server2 maldet(1457724): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Aug 20 2024 03:38:57 server2 maldet(1457724): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/cartforge/public_html/" "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/loco/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Aug 20 2024 03:39:52 server2 maldet(1457724): {scan} file list completed in 55s, found 3246 files... Aug 20 2024 03:39:52 server2 maldet(1457724): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Aug 20 2024 03:39:52 server2 maldet(1457724): {scan} scan of (3246 files) in progress... Aug 20 2024 03:41:15 server2 maldet(1457724): {scan} scan completed on : files 3246, malware hits 0, cleaned hits 0, time 139s Aug 20 2024 03:41:15 server2 maldet(1457724): {scan} scan report saved, to view run: maldet --report 240820-0338.1457724 Aug 21 2024 03:46:37 server2 maldet(1766563): {update} checking for available updates... Aug 21 2024 03:46:37 server2 maldet(1766563): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Aug 21 2024 03:46:37 server2 maldet(1766563): {update} hashing install files and checking against server... Aug 21 2024 03:46:37 server2 maldet(1766563): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Aug 21 2024 03:46:37 server2 maldet(1766563): {update} latest version already installed. Aug 21 2024 03:46:37 server2 maldet(1766696): {sigup} performing signature update check... Aug 21 2024 03:46:37 server2 maldet(1766696): {sigup} local signature set is version 202408191348753 Aug 21 2024 03:46:37 server2 maldet(1766696): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Aug 21 2024 03:46:37 server2 maldet(1766696): {sigup} latest signature set already installed Aug 21 2024 03:46:38 server2 maldet(1766807): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Aug 21 2024 03:46:40 server2 maldet(1766807): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Aug 21 2024 03:46:40 server2 maldet(1766807): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Aug 21 2024 03:46:40 server2 maldet(1766807): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Aug 21 2024 03:46:40 server2 maldet(1766807): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/cartforge/public_html/" "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/loco/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Aug 21 2024 03:47:28 server2 maldet(1766807): {scan} file list completed in 48s, found 17762 files... Aug 21 2024 03:47:28 server2 maldet(1766807): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Aug 21 2024 03:47:28 server2 maldet(1766807): {scan} scan of (17762 files) in progress... Aug 21 2024 03:51:00 server2 maldet(1766807): {scan} scan completed on : files 17762, malware hits 0, cleaned hits 0, time 262s Aug 21 2024 03:51:00 server2 maldet(1766807): {scan} scan report saved, to view run: maldet --report 240821-0346.1766807 Aug 22 2024 03:13:48 server2 maldet(2134526): {update} checking for available updates... Aug 22 2024 03:13:48 server2 maldet(2134526): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Aug 22 2024 03:13:48 server2 maldet(2134526): {update} hashing install files and checking against server... Aug 22 2024 03:13:48 server2 maldet(2134526): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Aug 22 2024 03:13:48 server2 maldet(2134526): {update} latest version already installed. Aug 22 2024 03:13:48 server2 maldet(2134659): {sigup} performing signature update check... Aug 22 2024 03:13:48 server2 maldet(2134659): {sigup} local signature set is version 202408191348753 Aug 22 2024 03:13:48 server2 maldet(2134659): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Aug 22 2024 03:13:48 server2 maldet(2134659): {sigup} new signature set 202408222103536 available Aug 22 2024 03:13:48 server2 maldet(2134659): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Aug 22 2024 03:13:48 server2 maldet(2134659): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Aug 22 2024 03:13:48 server2 maldet(2134659): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Aug 22 2024 03:13:48 server2 maldet(2134659): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Aug 22 2024 03:13:49 server2 maldet(2134659): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Aug 22 2024 03:13:49 server2 maldet(2134659): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Aug 22 2024 03:13:49 server2 maldet(2134659): {sigup} verified md5sum of maldet-sigpack.tgz Aug 22 2024 03:13:49 server2 maldet(2134659): {sigup} unpacked and installed maldet-sigpack.tgz Aug 22 2024 03:13:49 server2 maldet(2134659): {sigup} verified md5sum of maldet-clean.tgz Aug 22 2024 03:13:49 server2 maldet(2134659): {sigup} unpacked and installed maldet-clean.tgz Aug 22 2024 03:13:49 server2 maldet(2134659): {sigup} signature set update completed Aug 22 2024 03:13:49 server2 maldet(2134659): {sigup} 17638 signatures (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Aug 22 2024 03:13:49 server2 maldet(2134888): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Aug 22 2024 03:13:50 server2 maldet(2134888): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Aug 22 2024 03:13:50 server2 maldet(2134888): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Aug 22 2024 03:13:50 server2 maldet(2134888): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Aug 22 2024 03:13:50 server2 maldet(2134888): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/cartforge/public_html/" "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/loco/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Aug 22 2024 03:14:49 server2 maldet(2134888): {scan} file list completed in 59s, found 2911 files... Aug 22 2024 03:14:49 server2 maldet(2134888): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Aug 22 2024 03:14:49 server2 maldet(2134888): {scan} scan of (2911 files) in progress... Aug 22 2024 03:15:32 server2 maldet(2134888): {scan} scan completed on : files 2911, malware hits 0, cleaned hits 0, time 103s Aug 22 2024 03:15:32 server2 maldet(2134888): {scan} scan report saved, to view run: maldet --report 240822-0313.2134888 Aug 23 2024 03:11:12 server2 maldet(2435832): {update} checking for available updates... Aug 23 2024 03:11:12 server2 maldet(2435832): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Aug 23 2024 03:11:12 server2 maldet(2435832): {update} hashing install files and checking against server... Aug 23 2024 03:11:12 server2 maldet(2435832): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Aug 23 2024 03:11:12 server2 maldet(2435832): {update} latest version already installed. Aug 23 2024 03:11:12 server2 maldet(2435965): {sigup} performing signature update check... Aug 23 2024 03:11:13 server2 maldet(2435965): {sigup} local signature set is version 202408222103536 Aug 23 2024 03:11:13 server2 maldet(2435965): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Aug 23 2024 03:11:13 server2 maldet(2435965): {sigup} latest signature set already installed Aug 23 2024 03:11:13 server2 maldet(2436076): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Aug 23 2024 03:11:14 server2 maldet(2436076): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Aug 23 2024 03:11:14 server2 maldet(2436076): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Aug 23 2024 03:11:14 server2 maldet(2436076): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Aug 23 2024 03:11:14 server2 maldet(2436076): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/cartforge/public_html/" "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/loco/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Aug 23 2024 03:12:23 server2 maldet(2436076): {scan} file list completed in 68s, found 16461 files... Aug 23 2024 03:12:23 server2 maldet(2436076): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Aug 23 2024 03:12:23 server2 maldet(2436076): {scan} scan of (16461 files) in progress... Aug 23 2024 03:15:54 server2 maldet(2436076): {scan} scan completed on : files 16461, malware hits 0, cleaned hits 0, time 281s Aug 23 2024 03:15:54 server2 maldet(2436076): {scan} scan report saved, to view run: maldet --report 240823-0311.2436076 Aug 24 2024 03:34:17 server2 maldet(2730511): {update} checking for available updates... Aug 24 2024 03:34:17 server2 maldet(2730511): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Aug 24 2024 03:34:17 server2 maldet(2730511): {update} hashing install files and checking against server... Aug 24 2024 03:34:17 server2 maldet(2730511): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Aug 24 2024 03:34:17 server2 maldet(2730511): {update} latest version already installed. Aug 24 2024 03:34:18 server2 maldet(2730645): {sigup} performing signature update check... Aug 24 2024 03:34:18 server2 maldet(2730645): {sigup} local signature set is version 202408222103536 Aug 24 2024 03:34:18 server2 maldet(2730645): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Aug 24 2024 03:34:18 server2 maldet(2730645): {sigup} latest signature set already installed Aug 24 2024 03:34:18 server2 maldet(2730756): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Aug 24 2024 03:34:19 server2 maldet(2730756): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Aug 24 2024 03:34:19 server2 maldet(2730756): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Aug 24 2024 03:34:19 server2 maldet(2730756): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Aug 24 2024 03:34:19 server2 maldet(2730756): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/cartforge/public_html/" "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/loco/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Aug 24 2024 03:35:25 server2 maldet(2730756): {scan} file list completed in 66s, found 2317 files... Aug 24 2024 03:35:25 server2 maldet(2730756): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Aug 24 2024 03:35:25 server2 maldet(2730756): {scan} scan of (2317 files) in progress... Aug 24 2024 03:35:59 server2 maldet(2730756): {scan} scan completed on : files 2317, malware hits 0, cleaned hits 0, time 101s Aug 24 2024 03:35:59 server2 maldet(2730756): {scan} scan report saved, to view run: maldet --report 240824-0334.2730756 Aug 25 2024 03:49:44 server2 maldet(3036294): {update} checking for available updates... Aug 25 2024 03:49:45 server2 maldet(3036294): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Aug 25 2024 03:49:45 server2 maldet(3036294): {update} hashing install files and checking against server... Aug 25 2024 03:49:45 server2 maldet(3036294): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Aug 25 2024 03:49:45 server2 maldet(3036294): {update} latest version already installed. Aug 25 2024 03:49:45 server2 maldet(3036427): {sigup} performing signature update check... Aug 25 2024 03:49:45 server2 maldet(3036427): {sigup} local signature set is version 202408222103536 Aug 25 2024 03:49:45 server2 maldet(3036427): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Aug 25 2024 03:49:45 server2 maldet(3036427): {sigup} new signature set 202408252858527 available Aug 25 2024 03:49:45 server2 maldet(3036427): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Aug 25 2024 03:49:45 server2 maldet(3036427): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Aug 25 2024 03:49:45 server2 maldet(3036427): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Aug 25 2024 03:49:45 server2 maldet(3036427): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Aug 25 2024 03:49:45 server2 maldet(3036427): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Aug 25 2024 03:49:45 server2 maldet(3036427): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Aug 25 2024 03:49:45 server2 maldet(3036427): {sigup} verified md5sum of maldet-sigpack.tgz Aug 25 2024 03:49:46 server2 maldet(3036427): {sigup} unpacked and installed maldet-sigpack.tgz Aug 25 2024 03:49:46 server2 maldet(3036427): {sigup} verified md5sum of maldet-clean.tgz Aug 25 2024 03:49:46 server2 maldet(3036427): {sigup} unpacked and installed maldet-clean.tgz Aug 25 2024 03:49:46 server2 maldet(3036427): {sigup} signature set update completed Aug 25 2024 03:49:46 server2 maldet(3036427): {sigup} 17638 signatures (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Aug 25 2024 03:49:46 server2 maldet(3036655): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Aug 25 2024 03:49:48 server2 maldet(3036655): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Aug 25 2024 03:49:48 server2 maldet(3036655): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Aug 25 2024 03:49:48 server2 maldet(3036655): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Aug 25 2024 03:49:48 server2 maldet(3036655): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/cartforge/public_html/" "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/loco/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Aug 25 2024 03:50:26 server2 maldet(3036655): {scan} file list completed in 38s, found 17588 files... Aug 25 2024 03:50:26 server2 maldet(3036655): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Aug 25 2024 03:50:26 server2 maldet(3036655): {scan} scan of (17588 files) in progress... Aug 25 2024 03:54:08 server2 maldet(3036655): {scan} scan completed on : files 17588, malware hits 0, cleaned hits 0, time 262s Aug 25 2024 03:54:08 server2 maldet(3036655): {scan} scan report saved, to view run: maldet --report 240825-0349.3036655 Aug 26 2024 03:19:38 server2 maldet(3349973): {update} checking for available updates... Aug 26 2024 03:19:38 server2 maldet(3349973): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Aug 26 2024 03:19:38 server2 maldet(3349973): {update} hashing install files and checking against server... Aug 26 2024 03:19:38 server2 maldet(3349973): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Aug 26 2024 03:19:38 server2 maldet(3349973): {update} latest version already installed. Aug 26 2024 03:19:38 server2 maldet(3350106): {sigup} performing signature update check... Aug 26 2024 03:19:38 server2 maldet(3350106): {sigup} local signature set is version 202408252858527 Aug 26 2024 03:19:38 server2 maldet(3350106): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Aug 26 2024 03:19:38 server2 maldet(3350106): {sigup} latest signature set already installed Aug 26 2024 03:19:38 server2 maldet(3350217): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Aug 26 2024 03:19:40 server2 maldet(3350217): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Aug 26 2024 03:19:40 server2 maldet(3350217): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Aug 26 2024 03:19:40 server2 maldet(3350217): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Aug 26 2024 03:19:40 server2 maldet(3350217): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/cartforge/public_html/" "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/loco/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Aug 26 2024 03:20:45 server2 maldet(3350217): {scan} file list completed in 65s, found 2246 files... Aug 26 2024 03:20:45 server2 maldet(3350217): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Aug 26 2024 03:20:45 server2 maldet(3350217): {scan} scan of (2246 files) in progress... Aug 26 2024 03:21:22 server2 maldet(3350217): {scan} scan completed on : files 2246, malware hits 0, cleaned hits 0, time 104s Aug 26 2024 03:21:22 server2 maldet(3350217): {scan} scan report saved, to view run: maldet --report 240826-0319.3350217 Aug 27 2024 03:42:45 server2 maldet(3726971): {update} checking for available updates... Aug 27 2024 03:42:45 server2 maldet(3726971): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Aug 27 2024 03:42:45 server2 maldet(3726971): {update} hashing install files and checking against server... Aug 27 2024 03:42:45 server2 maldet(3726971): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Aug 27 2024 03:42:45 server2 maldet(3726971): {update} latest version already installed. Aug 27 2024 03:42:45 server2 maldet(3727104): {sigup} performing signature update check... Aug 27 2024 03:42:45 server2 maldet(3727104): {sigup} local signature set is version 202408252858527 Aug 27 2024 03:42:45 server2 maldet(3727104): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Aug 27 2024 03:42:45 server2 maldet(3727104): {sigup} latest signature set already installed Aug 27 2024 03:42:45 server2 maldet(3727215): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Aug 27 2024 03:42:46 server2 maldet(3727215): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Aug 27 2024 03:42:46 server2 maldet(3727215): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Aug 27 2024 03:42:46 server2 maldet(3727215): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Aug 27 2024 03:42:46 server2 maldet(3727215): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/cartforge/public_html/" "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/loco/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Aug 27 2024 03:43:35 server2 maldet(3727215): {scan} file list completed in 49s, found 17872 files... Aug 27 2024 03:43:35 server2 maldet(3727215): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Aug 27 2024 03:43:35 server2 maldet(3727215): {scan} scan of (17872 files) in progress... Aug 27 2024 03:47:15 server2 maldet(3727215): {scan} scan completed on : files 17872, malware hits 0, cleaned hits 0, time 270s Aug 27 2024 03:47:15 server2 maldet(3727215): {scan} scan report saved, to view run: maldet --report 240827-0342.3727215 Aug 28 2024 03:39:07 server2 maldet(4063546): {update} checking for available updates... Aug 28 2024 03:39:07 server2 maldet(4063546): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Aug 28 2024 03:39:07 server2 maldet(4063546): {update} hashing install files and checking against server... Aug 28 2024 03:39:07 server2 maldet(4063546): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Aug 28 2024 03:39:07 server2 maldet(4063546): {update} latest version already installed. Aug 28 2024 03:39:08 server2 maldet(4063682): {sigup} performing signature update check... Aug 28 2024 03:39:08 server2 maldet(4063682): {sigup} local signature set is version 202408252858527 Aug 28 2024 03:39:08 server2 maldet(4063682): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Aug 28 2024 03:39:08 server2 maldet(4063682): {sigup} new signature set 202408283551914 available Aug 28 2024 03:39:08 server2 maldet(4063682): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Aug 28 2024 03:39:08 server2 maldet(4063682): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Aug 28 2024 03:39:08 server2 maldet(4063682): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Aug 28 2024 03:39:08 server2 maldet(4063682): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Aug 28 2024 03:39:08 server2 maldet(4063682): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Aug 28 2024 03:39:08 server2 maldet(4063682): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Aug 28 2024 03:39:08 server2 maldet(4063682): {sigup} verified md5sum of maldet-sigpack.tgz Aug 28 2024 03:39:08 server2 maldet(4063682): {sigup} unpacked and installed maldet-sigpack.tgz Aug 28 2024 03:39:08 server2 maldet(4063682): {sigup} verified md5sum of maldet-clean.tgz Aug 28 2024 03:39:08 server2 maldet(4063682): {sigup} unpacked and installed maldet-clean.tgz Aug 28 2024 03:39:08 server2 maldet(4063682): {sigup} signature set update completed Aug 28 2024 03:39:08 server2 maldet(4063682): {sigup} 17638 signatures (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Aug 28 2024 03:39:08 server2 maldet(4063911): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Aug 28 2024 03:39:11 server2 maldet(4063911): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Aug 28 2024 03:39:11 server2 maldet(4063911): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Aug 28 2024 03:39:11 server2 maldet(4063911): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Aug 28 2024 03:39:11 server2 maldet(4063911): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/cartforge/public_html/" "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/loco/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Aug 28 2024 03:39:42 server2 maldet(4063911): {scan} file list completed in 31s, found 2129 files... Aug 28 2024 03:39:42 server2 maldet(4063911): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Aug 28 2024 03:39:42 server2 maldet(4063911): {scan} scan of (2129 files) in progress... Aug 28 2024 03:40:37 server2 maldet(4063911): {scan} scan completed on : files 2129, malware hits 0, cleaned hits 0, time 89s Aug 28 2024 03:40:37 server2 maldet(4063911): {scan} scan report saved, to view run: maldet --report 240828-0339.4063911 Aug 29 2024 03:22:13 server2 maldet(197669): {update} checking for available updates... Aug 29 2024 03:22:13 server2 maldet(197669): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Aug 29 2024 03:22:13 server2 maldet(197669): {update} hashing install files and checking against server... Aug 29 2024 03:22:13 server2 maldet(197669): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Aug 29 2024 03:22:13 server2 maldet(197669): {update} latest version already installed. Aug 29 2024 03:22:13 server2 maldet(197803): {sigup} performing signature update check... Aug 29 2024 03:22:13 server2 maldet(197803): {sigup} local signature set is version 202408283551914 Aug 29 2024 03:22:14 server2 maldet(197803): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Aug 29 2024 03:22:14 server2 maldet(197803): {sigup} latest signature set already installed Aug 29 2024 03:22:14 server2 maldet(197914): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Aug 29 2024 03:22:15 server2 maldet(197914): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Aug 29 2024 03:22:15 server2 maldet(197914): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Aug 29 2024 03:22:15 server2 maldet(197914): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Aug 29 2024 03:22:15 server2 maldet(197914): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/cartforge/public_html/" "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/loco/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Aug 29 2024 03:23:18 server2 maldet(197914): {scan} file list completed in 63s, found 2452 files... Aug 29 2024 03:23:18 server2 maldet(197914): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Aug 29 2024 03:23:18 server2 maldet(197914): {scan} scan of (2452 files) in progress... Aug 29 2024 03:23:47 server2 maldet(197914): {scan} scan completed on : files 2452, malware hits 0, cleaned hits 0, time 93s Aug 29 2024 03:23:47 server2 maldet(197914): {scan} scan report saved, to view run: maldet --report 240829-0322.197914 Aug 30 2024 03:39:01 server2 maldet(509744): {update} checking for available updates... Aug 30 2024 03:39:01 server2 maldet(509744): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Aug 30 2024 03:39:02 server2 maldet(509744): {update} hashing install files and checking against server... Aug 30 2024 03:39:02 server2 maldet(509744): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Aug 30 2024 03:39:02 server2 maldet(509744): {update} latest version already installed. Aug 30 2024 03:39:02 server2 maldet(509929): {sigup} performing signature update check... Aug 30 2024 03:39:02 server2 maldet(509929): {sigup} local signature set is version 202408283551914 Aug 30 2024 03:39:03 server2 maldet(509929): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Aug 30 2024 03:39:03 server2 maldet(509929): {sigup} latest signature set already installed Aug 30 2024 03:39:03 server2 maldet(510081): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Aug 30 2024 03:39:07 server2 maldet(510081): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Aug 30 2024 03:39:07 server2 maldet(510081): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Aug 30 2024 03:39:07 server2 maldet(510081): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Aug 30 2024 03:39:07 server2 maldet(510081): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/cartforge/public_html/" "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/loco/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Aug 30 2024 03:39:55 server2 maldet(510081): {scan} file list completed in 48s, found 24041 files... Aug 30 2024 03:39:55 server2 maldet(510081): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Aug 30 2024 03:39:55 server2 maldet(510081): {scan} scan of (24041 files) in progress... Aug 30 2024 03:44:24 server2 maldet(510081): {scan} scan completed on : files 24041, malware hits 0, cleaned hits 0, time 321s Aug 30 2024 03:44:24 server2 maldet(510081): {scan} scan report saved, to view run: maldet --report 240830-0339.510081 Aug 31 2024 03:44:22 server2 maldet(829555): {update} checking for available updates... Aug 31 2024 03:44:23 server2 maldet(829555): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Aug 31 2024 03:44:23 server2 maldet(829555): {update} hashing install files and checking against server... Aug 31 2024 03:44:23 server2 maldet(829555): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Aug 31 2024 03:44:23 server2 maldet(829555): {update} latest version already installed. Aug 31 2024 03:44:23 server2 maldet(829688): {sigup} performing signature update check... Aug 31 2024 03:44:23 server2 maldet(829688): {sigup} local signature set is version 202408283551914 Aug 31 2024 03:44:23 server2 maldet(829688): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Aug 31 2024 03:44:23 server2 maldet(829688): {sigup} new signature set 20240831113504 available Aug 31 2024 03:44:23 server2 maldet(829688): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Aug 31 2024 03:44:23 server2 maldet(829688): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Aug 31 2024 03:44:23 server2 maldet(829688): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Aug 31 2024 03:44:23 server2 maldet(829688): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Aug 31 2024 03:44:23 server2 maldet(829688): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Aug 31 2024 03:44:23 server2 maldet(829688): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Aug 31 2024 03:44:23 server2 maldet(829688): {sigup} verified md5sum of maldet-sigpack.tgz Aug 31 2024 03:44:23 server2 maldet(829688): {sigup} unpacked and installed maldet-sigpack.tgz Aug 31 2024 03:44:23 server2 maldet(829688): {sigup} verified md5sum of maldet-clean.tgz Aug 31 2024 03:44:23 server2 maldet(829688): {sigup} unpacked and installed maldet-clean.tgz Aug 31 2024 03:44:23 server2 maldet(829688): {sigup} signature set update completed Aug 31 2024 03:44:23 server2 maldet(829688): {sigup} 17638 signatures (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Aug 31 2024 03:44:24 server2 maldet(829917): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Aug 31 2024 03:44:24 server2 maldet(829917): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Aug 31 2024 03:44:25 server2 maldet(829917): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Aug 31 2024 03:44:25 server2 maldet(829917): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Aug 31 2024 03:44:25 server2 maldet(829917): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/cartforge/public_html/" "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/loco/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Aug 31 2024 03:45:07 server2 maldet(829917): {scan} file list completed in 42s, found 789 files... Aug 31 2024 03:45:07 server2 maldet(829917): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Aug 31 2024 03:45:07 server2 maldet(829917): {scan} scan of (789 files) in progress... Aug 31 2024 03:45:49 server2 maldet(829917): {scan} scan completed on : files 789, malware hits 0, cleaned hits 0, time 85s Aug 31 2024 03:45:49 server2 maldet(829917): {scan} scan report saved, to view run: maldet --report 240831-0344.829917 Sep 01 2024 03:29:00 server2 maldet(1151553): {update} checking for available updates... Sep 01 2024 03:29:01 server2 maldet(1151553): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Sep 01 2024 03:29:01 server2 maldet(1151553): {update} hashing install files and checking against server... Sep 01 2024 03:29:01 server2 maldet(1151553): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Sep 01 2024 03:29:01 server2 maldet(1151553): {update} latest version already installed. Sep 01 2024 03:29:01 server2 maldet(1151686): {sigup} performing signature update check... Sep 01 2024 03:29:01 server2 maldet(1151686): {sigup} local signature set is version 20240831113504 Sep 01 2024 03:29:01 server2 maldet(1151686): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Sep 01 2024 03:29:01 server2 maldet(1151686): {sigup} new signature set 20240901866020 available Sep 01 2024 03:29:01 server2 maldet(1151686): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Sep 01 2024 03:29:01 server2 maldet(1151686): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Sep 01 2024 03:29:01 server2 maldet(1151686): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Sep 01 2024 03:29:01 server2 maldet(1151686): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Sep 01 2024 03:29:01 server2 maldet(1151686): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Sep 01 2024 03:29:02 server2 maldet(1151686): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Sep 01 2024 03:29:02 server2 maldet(1151686): {sigup} verified md5sum of maldet-sigpack.tgz Sep 01 2024 03:29:02 server2 maldet(1151686): {sigup} unpacked and installed maldet-sigpack.tgz Sep 01 2024 03:29:02 server2 maldet(1151686): {sigup} verified md5sum of maldet-clean.tgz Sep 01 2024 03:29:02 server2 maldet(1151686): {sigup} unpacked and installed maldet-clean.tgz Sep 01 2024 03:29:02 server2 maldet(1151686): {sigup} signature set update completed Sep 01 2024 03:29:02 server2 maldet(1151686): {sigup} 17638 signatures (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Sep 01 2024 03:29:02 server2 maldet(1151997): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Sep 01 2024 03:29:07 server2 maldet(1151997): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Sep 01 2024 03:29:07 server2 maldet(1151997): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Sep 01 2024 03:29:07 server2 maldet(1151997): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Sep 01 2024 03:29:07 server2 maldet(1151997): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/cartforge/public_html/" "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/loco/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Sep 01 2024 03:29:39 server2 maldet(1151997): {scan} file list completed in 32s, found 17828 files... Sep 01 2024 03:29:39 server2 maldet(1151997): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Sep 01 2024 03:29:39 server2 maldet(1151997): {scan} scan of (17828 files) in progress... Sep 01 2024 03:33:39 server2 maldet(1151997): {scan} scan completed on : files 17828, malware hits 0, cleaned hits 0, time 276s Sep 01 2024 03:33:39 server2 maldet(1151997): {scan} scan report saved, to view run: maldet --report 240901-0329.1151997 Sep 02 2024 03:28:36 server2 maldet(1448046): {update} checking for available updates... Sep 02 2024 03:28:36 server2 maldet(1448046): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Sep 02 2024 03:28:36 server2 maldet(1448046): {update} hashing install files and checking against server... Sep 02 2024 03:28:36 server2 maldet(1448046): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Sep 02 2024 03:28:36 server2 maldet(1448046): {update} latest version already installed. Sep 02 2024 03:28:36 server2 maldet(1448179): {sigup} performing signature update check... Sep 02 2024 03:28:36 server2 maldet(1448179): {sigup} local signature set is version 20240901866020 Sep 02 2024 03:28:36 server2 maldet(1448179): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Sep 02 2024 03:28:36 server2 maldet(1448179): {sigup} latest signature set already installed Sep 02 2024 03:28:36 server2 maldet(1448290): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Sep 02 2024 03:28:37 server2 maldet(1448290): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Sep 02 2024 03:28:37 server2 maldet(1448290): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Sep 02 2024 03:28:37 server2 maldet(1448290): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Sep 02 2024 03:28:37 server2 maldet(1448290): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/cartforge/public_html/" "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/loco/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Sep 02 2024 03:29:23 server2 maldet(1448290): {scan} file list completed in 46s, found 23906 files... Sep 02 2024 03:29:23 server2 maldet(1448290): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Sep 02 2024 03:29:23 server2 maldet(1448290): {scan} scan of (23906 files) in progress... Sep 02 2024 03:33:20 server2 maldet(1448290): {scan} scan completed on : files 23906, malware hits 0, cleaned hits 0, time 284s Sep 02 2024 03:33:20 server2 maldet(1448290): {scan} scan report saved, to view run: maldet --report 240902-0328.1448290 Sep 03 2024 03:12:01 server2 maldet(1783507): {update} checking for available updates... Sep 03 2024 03:12:02 server2 maldet(1783507): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Sep 03 2024 03:12:02 server2 maldet(1783507): {update} hashing install files and checking against server... Sep 03 2024 03:12:02 server2 maldet(1783507): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Sep 03 2024 03:12:02 server2 maldet(1783507): {update} latest version already installed. Sep 03 2024 03:12:02 server2 maldet(1783683): {sigup} performing signature update check... Sep 03 2024 03:12:02 server2 maldet(1783683): {sigup} local signature set is version 20240901866020 Sep 03 2024 03:12:03 server2 maldet(1783683): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Sep 03 2024 03:12:04 server2 maldet(1783683): {sigup} latest signature set already installed Sep 03 2024 03:12:05 server2 maldet(1783848): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Sep 03 2024 03:12:06 server2 maldet(1783848): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Sep 03 2024 03:12:06 server2 maldet(1783848): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Sep 03 2024 03:12:06 server2 maldet(1783848): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Sep 03 2024 03:12:06 server2 maldet(1783848): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/cartforge/public_html/" "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/loco/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Sep 03 2024 03:12:58 server2 maldet(1783848): {scan} file list completed in 52s, found 19491 files... Sep 03 2024 03:12:58 server2 maldet(1783848): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Sep 03 2024 03:12:58 server2 maldet(1783848): {scan} scan of (19491 files) in progress... Sep 03 2024 03:17:30 server2 maldet(1783848): {scan} clamscan returned an error, check /usr/local/maldetect/logs/clamscan_log for details! Sep 03 2024 03:17:30 server2 maldet(1783848): {scan} scan completed on : files 19491, malware hits 0, cleaned hits 0, time 325s Sep 03 2024 03:17:30 server2 maldet(1783848): {scan} scan report saved, to view run: maldet --report 240903-0312.1783848 Sep 04 2024 03:29:16 server2 maldet(2107041): {update} checking for available updates... Sep 04 2024 03:29:16 server2 maldet(2107041): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Sep 04 2024 03:29:16 server2 maldet(2107041): {update} hashing install files and checking against server... Sep 04 2024 03:29:16 server2 maldet(2107041): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Sep 04 2024 03:29:16 server2 maldet(2107041): {update} latest version already installed. Sep 04 2024 03:29:17 server2 maldet(2107193): {sigup} performing signature update check... Sep 04 2024 03:29:17 server2 maldet(2107193): {sigup} local signature set is version 20240901866020 Sep 04 2024 03:29:17 server2 maldet(2107193): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Sep 04 2024 03:29:17 server2 maldet(2107193): {sigup} latest signature set already installed Sep 04 2024 03:29:17 server2 maldet(2107304): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Sep 04 2024 03:29:22 server2 maldet(2107304): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Sep 04 2024 03:29:22 server2 maldet(2107304): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Sep 04 2024 03:29:22 server2 maldet(2107304): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Sep 04 2024 03:29:22 server2 maldet(2107304): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/cartforge/public_html/" "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/loco/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Sep 04 2024 03:30:13 server2 maldet(2107304): {scan} file list completed in 51s, found 19855 files... Sep 04 2024 03:30:13 server2 maldet(2107304): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Sep 04 2024 03:30:13 server2 maldet(2107304): {scan} scan of (19855 files) in progress... Sep 04 2024 03:35:10 server2 maldet(2107304): {scan} scan completed on : files 19855, malware hits 0, cleaned hits 0, time 353s Sep 04 2024 03:35:10 server2 maldet(2107304): {scan} scan report saved, to view run: maldet --report 240904-0329.2107304 Sep 05 2024 03:49:36 server2 maldet(2798990): {update} checking for available updates... Sep 05 2024 03:49:36 server2 maldet(2798990): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Sep 05 2024 03:49:36 server2 maldet(2798990): {update} hashing install files and checking against server... Sep 05 2024 03:49:36 server2 maldet(2798990): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Sep 05 2024 03:49:36 server2 maldet(2798990): {update} latest version already installed. Sep 05 2024 03:49:37 server2 maldet(2799271): {sigup} performing signature update check... Sep 05 2024 03:49:37 server2 maldet(2799271): {sigup} local signature set is version 20240901866020 Sep 05 2024 03:49:37 server2 maldet(2799271): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Sep 05 2024 03:49:37 server2 maldet(2799271): {sigup} new signature set 202409041575765 available Sep 05 2024 03:49:37 server2 maldet(2799271): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Sep 05 2024 03:49:37 server2 maldet(2799271): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Sep 05 2024 03:49:37 server2 maldet(2799271): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Sep 05 2024 03:49:37 server2 maldet(2799271): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Sep 05 2024 03:49:37 server2 maldet(2799271): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Sep 05 2024 03:49:37 server2 maldet(2799271): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Sep 05 2024 03:49:37 server2 maldet(2799271): {sigup} verified md5sum of maldet-sigpack.tgz Sep 05 2024 03:49:37 server2 maldet(2799271): {sigup} unpacked and installed maldet-sigpack.tgz Sep 05 2024 03:49:37 server2 maldet(2799271): {sigup} verified md5sum of maldet-clean.tgz Sep 05 2024 03:49:37 server2 maldet(2799271): {sigup} unpacked and installed maldet-clean.tgz Sep 05 2024 03:49:37 server2 maldet(2799271): {sigup} signature set update completed Sep 05 2024 03:49:37 server2 maldet(2799271): {sigup} 17638 signatures (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Sep 05 2024 03:49:37 server2 maldet(2799636): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Sep 05 2024 03:49:39 server2 maldet(2799636): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Sep 05 2024 03:49:39 server2 maldet(2799636): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Sep 05 2024 03:49:39 server2 maldet(2799636): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Sep 05 2024 03:49:39 server2 maldet(2799636): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/cartforge/public_html/" "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/loco/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Sep 05 2024 03:50:26 server2 maldet(2799636): {scan} file list completed in 47s, found 19188 files... Sep 05 2024 03:50:27 server2 maldet(2799636): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Sep 05 2024 03:50:27 server2 maldet(2799636): {scan} scan of (19188 files) in progress... Sep 05 2024 03:53:54 server2 maldet(2799636): {scan} clamscan returned an error, check /usr/local/maldetect/logs/clamscan_log for details! Sep 05 2024 03:53:54 server2 maldet(2799636): {scan} scan completed on : files 19188, malware hits 0, cleaned hits 0, time 257s Sep 05 2024 03:53:54 server2 maldet(2799636): {scan} scan report saved, to view run: maldet --report 240905-0349.2799636 Sep 05 2024 13:55:39 server2 maldet(1210): {mon} could not find inotifywait command, install yum package inotify-tools or download from https://github.com/rvoicilas/inotify-tools/wiki/ Sep 06 2024 03:36:53 server2 maldet(1127516): {update} checking for available updates... Sep 06 2024 03:36:53 server2 maldet(1127516): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Sep 06 2024 03:36:53 server2 maldet(1127516): {update} hashing install files and checking against server... Sep 06 2024 03:36:53 server2 maldet(1127516): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Sep 06 2024 03:36:53 server2 maldet(1127516): {update} latest version already installed. Sep 06 2024 03:36:53 server2 maldet(1127649): {sigup} performing signature update check... Sep 06 2024 03:36:53 server2 maldet(1127649): {sigup} local signature set is version 202409041575765 Sep 06 2024 03:36:53 server2 maldet(1127649): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Sep 06 2024 03:36:53 server2 maldet(1127649): {sigup} latest signature set already installed Sep 06 2024 03:36:54 server2 maldet(1127760): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Sep 06 2024 03:36:54 server2 maldet(1127760): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Sep 06 2024 03:36:54 server2 maldet(1127760): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Sep 06 2024 03:36:54 server2 maldet(1127760): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Sep 06 2024 03:36:54 server2 maldet(1127760): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/cartforge/public_html/" "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/loco/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Sep 06 2024 03:37:27 server2 maldet(1127760): {scan} file list completed in 33s, found 19799 files... Sep 06 2024 03:37:27 server2 maldet(1127760): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Sep 06 2024 03:37:27 server2 maldet(1127760): {scan} scan of (19799 files) in progress... Sep 06 2024 03:40:46 server2 maldet(1127760): {scan} scan completed on : files 19799, malware hits 0, cleaned hits 0, time 232s Sep 06 2024 03:40:46 server2 maldet(1127760): {scan} scan report saved, to view run: maldet --report 240906-0336.1127760 Sep 07 2024 03:34:47 server2 maldet(1454646): {update} checking for available updates... Sep 07 2024 03:34:47 server2 maldet(1454646): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Sep 07 2024 03:34:47 server2 maldet(1454646): {update} hashing install files and checking against server... Sep 07 2024 03:34:47 server2 maldet(1454646): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Sep 07 2024 03:34:47 server2 maldet(1454646): {update} latest version already installed. Sep 07 2024 03:34:47 server2 maldet(1454779): {sigup} performing signature update check... Sep 07 2024 03:34:47 server2 maldet(1454779): {sigup} local signature set is version 202409041575765 Sep 07 2024 03:34:47 server2 maldet(1454779): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Sep 07 2024 03:34:47 server2 maldet(1454779): {sigup} latest signature set already installed Sep 07 2024 03:34:47 server2 maldet(1454890): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Sep 07 2024 03:34:48 server2 maldet(1454890): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Sep 07 2024 03:34:48 server2 maldet(1454890): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Sep 07 2024 03:34:48 server2 maldet(1454890): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Sep 07 2024 03:34:48 server2 maldet(1454890): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/cartforge/public_html/" "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/loco/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Sep 07 2024 03:35:24 server2 maldet(1454890): {scan} file list completed in 36s, found 2228 files... Sep 07 2024 03:35:24 server2 maldet(1454890): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Sep 07 2024 03:35:24 server2 maldet(1454890): {scan} scan of (2228 files) in progress... Sep 07 2024 03:35:44 server2 maldet(1454890): {scan} scan completed on : files 2228, malware hits 0, cleaned hits 0, time 57s Sep 07 2024 03:35:44 server2 maldet(1454890): {scan} scan report saved, to view run: maldet --report 240907-0334.1454890 Sep 08 2024 03:27:52 server2 maldet(1765684): {update} checking for available updates... Sep 08 2024 03:27:52 server2 maldet(1765684): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Sep 08 2024 03:27:52 server2 maldet(1765684): {update} hashing install files and checking against server... Sep 08 2024 03:27:53 server2 maldet(1765684): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Sep 08 2024 03:27:53 server2 maldet(1765684): {update} latest version already installed. Sep 08 2024 03:27:53 server2 maldet(1765817): {sigup} performing signature update check... Sep 08 2024 03:27:53 server2 maldet(1765817): {sigup} local signature set is version 202409041575765 Sep 08 2024 03:27:53 server2 maldet(1765817): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Sep 08 2024 03:27:53 server2 maldet(1765817): {sigup} new signature set 202409072330795 available Sep 08 2024 03:27:53 server2 maldet(1765817): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Sep 08 2024 03:27:53 server2 maldet(1765817): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Sep 08 2024 03:27:53 server2 maldet(1765817): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Sep 08 2024 03:27:53 server2 maldet(1765817): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Sep 08 2024 03:27:53 server2 maldet(1765817): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Sep 08 2024 03:27:53 server2 maldet(1765817): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Sep 08 2024 03:27:53 server2 maldet(1765817): {sigup} verified md5sum of maldet-sigpack.tgz Sep 08 2024 03:27:53 server2 maldet(1765817): {sigup} unpacked and installed maldet-sigpack.tgz Sep 08 2024 03:27:53 server2 maldet(1765817): {sigup} verified md5sum of maldet-clean.tgz Sep 08 2024 03:27:53 server2 maldet(1765817): {sigup} unpacked and installed maldet-clean.tgz Sep 08 2024 03:27:53 server2 maldet(1765817): {sigup} signature set update completed Sep 08 2024 03:27:53 server2 maldet(1765817): {sigup} 17638 signatures (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Sep 08 2024 03:27:53 server2 maldet(1766045): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Sep 08 2024 03:27:55 server2 maldet(1766045): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Sep 08 2024 03:27:55 server2 maldet(1766045): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Sep 08 2024 03:27:55 server2 maldet(1766045): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Sep 08 2024 03:27:55 server2 maldet(1766045): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/cartforge/public_html/" "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/loco/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Sep 08 2024 03:28:38 server2 maldet(1766045): {scan} file list completed in 43s, found 19180 files... Sep 08 2024 03:28:38 server2 maldet(1766045): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Sep 08 2024 03:28:38 server2 maldet(1766045): {scan} scan of (19180 files) in progress... Sep 08 2024 03:32:20 server2 maldet(1766045): {scan} scan completed on : files 19180, malware hits 0, cleaned hits 0, time 267s Sep 08 2024 03:32:20 server2 maldet(1766045): {scan} scan report saved, to view run: maldet --report 240908-0327.1766045 Sep 09 2024 03:21:28 server2 maldet(2122682): {update} checking for available updates... Sep 09 2024 03:21:28 server2 maldet(2122682): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Sep 09 2024 03:21:28 server2 maldet(2122682): {update} hashing install files and checking against server... Sep 09 2024 03:21:28 server2 maldet(2122682): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Sep 09 2024 03:21:28 server2 maldet(2122682): {update} latest version already installed. Sep 09 2024 03:21:28 server2 maldet(2122815): {sigup} performing signature update check... Sep 09 2024 03:21:28 server2 maldet(2122815): {sigup} local signature set is version 202409072330795 Sep 09 2024 03:21:28 server2 maldet(2122815): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Sep 09 2024 03:21:28 server2 maldet(2122815): {sigup} latest signature set already installed Sep 09 2024 03:21:28 server2 maldet(2122926): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Sep 09 2024 03:21:29 server2 maldet(2122926): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Sep 09 2024 03:21:29 server2 maldet(2122926): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Sep 09 2024 03:21:29 server2 maldet(2122926): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Sep 09 2024 03:21:29 server2 maldet(2122926): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/cartforge/public_html/" "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/loco/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Sep 09 2024 03:22:14 server2 maldet(2122926): {scan} file list completed in 45s, found 19313 files... Sep 09 2024 03:22:14 server2 maldet(2122926): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Sep 09 2024 03:22:14 server2 maldet(2122926): {scan} scan of (19313 files) in progress... Sep 09 2024 03:25:54 server2 maldet(2122926): {scan} scan completed on : files 19313, malware hits 0, cleaned hits 0, time 266s Sep 09 2024 03:25:54 server2 maldet(2122926): {scan} scan report saved, to view run: maldet --report 240909-0321.2122926 Sep 10 2024 06:13:26 server2 maldet(1240): {mon} could not find inotifywait command, install yum package inotify-tools or download from https://github.com/rvoicilas/inotify-tools/wiki/ Sep 10 2024 03:38:48 server2 maldet(33826): {update} checking for available updates... Sep 10 2024 03:38:48 server2 maldet(33826): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Sep 10 2024 03:38:48 server2 maldet(33826): {update} hashing install files and checking against server... Sep 10 2024 03:38:48 server2 maldet(33826): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Sep 10 2024 03:38:48 server2 maldet(33826): {update} latest version already installed. Sep 10 2024 03:38:48 server2 maldet(33959): {sigup} performing signature update check... Sep 10 2024 03:38:48 server2 maldet(33959): {sigup} local signature set is version 202409072330795 Sep 10 2024 03:38:48 server2 maldet(33959): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Sep 10 2024 03:38:48 server2 maldet(33959): {sigup} new signature set 202409103087802 available Sep 10 2024 03:38:48 server2 maldet(33959): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Sep 10 2024 03:38:48 server2 maldet(33959): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Sep 10 2024 03:38:48 server2 maldet(33959): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Sep 10 2024 03:38:48 server2 maldet(33959): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Sep 10 2024 03:38:49 server2 maldet(33959): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Sep 10 2024 03:38:49 server2 maldet(33959): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Sep 10 2024 03:38:49 server2 maldet(33959): {sigup} verified md5sum of maldet-sigpack.tgz Sep 10 2024 03:38:49 server2 maldet(33959): {sigup} unpacked and installed maldet-sigpack.tgz Sep 10 2024 03:38:49 server2 maldet(33959): {sigup} verified md5sum of maldet-clean.tgz Sep 10 2024 03:38:49 server2 maldet(33959): {sigup} unpacked and installed maldet-clean.tgz Sep 10 2024 03:38:49 server2 maldet(33959): {sigup} signature set update completed Sep 10 2024 03:38:49 server2 maldet(33959): {sigup} 17638 signatures (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Sep 10 2024 03:38:49 server2 maldet(34187): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Sep 10 2024 03:38:49 server2 maldet(34187): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Sep 10 2024 03:38:49 server2 maldet(34187): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Sep 10 2024 03:38:49 server2 maldet(34187): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Sep 10 2024 03:38:49 server2 maldet(34187): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/cartforge/public_html/" "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/loco/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Sep 10 2024 03:39:17 server2 maldet(34187): {scan} file list completed in 28s, found 19087 files... Sep 10 2024 03:39:17 server2 maldet(34187): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Sep 10 2024 03:39:17 server2 maldet(34187): {scan} scan of (19087 files) in progress... Sep 10 2024 03:41:25 server2 maldet(34187): {scan} scan completed on : files 19087, malware hits 0, cleaned hits 0, time 156s Sep 10 2024 03:41:25 server2 maldet(34187): {scan} scan report saved, to view run: maldet --report 240910-0338.34187 Sep 11 2024 03:46:37 server2 maldet(345923): {update} checking for available updates... Sep 11 2024 03:46:37 server2 maldet(345923): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Sep 11 2024 03:46:37 server2 maldet(345923): {update} hashing install files and checking against server... Sep 11 2024 03:46:37 server2 maldet(345923): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Sep 11 2024 03:46:37 server2 maldet(345923): {update} latest version already installed. Sep 11 2024 03:46:37 server2 maldet(346056): {sigup} performing signature update check... Sep 11 2024 03:46:37 server2 maldet(346056): {sigup} local signature set is version 202409103087802 Sep 11 2024 03:46:38 server2 maldet(346056): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Sep 11 2024 03:46:38 server2 maldet(346056): {sigup} latest signature set already installed Sep 11 2024 03:46:38 server2 maldet(346167): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Sep 11 2024 03:46:39 server2 maldet(346167): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Sep 11 2024 03:46:39 server2 maldet(346167): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Sep 11 2024 03:46:39 server2 maldet(346167): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Sep 11 2024 03:46:39 server2 maldet(346167): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/cartforge/public_html/" "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/loco/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Sep 11 2024 03:47:10 server2 maldet(346167): {scan} file list completed in 31s, found 1123 files... Sep 11 2024 03:47:10 server2 maldet(346167): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Sep 11 2024 03:47:10 server2 maldet(346167): {scan} scan of (1123 files) in progress... Sep 11 2024 03:47:38 server2 maldet(346167): {scan} scan completed on : files 1123, malware hits 0, cleaned hits 0, time 60s Sep 11 2024 03:47:38 server2 maldet(346167): {scan} scan report saved, to view run: maldet --report 240911-0346.346167 Sep 12 2024 03:15:08 server2 maldet(660220): {update} checking for available updates... Sep 12 2024 03:15:08 server2 maldet(660220): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Sep 12 2024 03:15:08 server2 maldet(660220): {update} hashing install files and checking against server... Sep 12 2024 03:15:08 server2 maldet(660220): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Sep 12 2024 03:15:08 server2 maldet(660220): {update} latest version already installed. Sep 12 2024 03:15:09 server2 maldet(660353): {sigup} performing signature update check... Sep 12 2024 03:15:09 server2 maldet(660353): {sigup} local signature set is version 202409103087802 Sep 12 2024 03:15:09 server2 maldet(660353): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Sep 12 2024 03:15:09 server2 maldet(660353): {sigup} latest signature set already installed Sep 12 2024 03:15:09 server2 maldet(660464): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Sep 12 2024 03:15:09 server2 maldet(660464): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Sep 12 2024 03:15:09 server2 maldet(660464): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Sep 12 2024 03:15:09 server2 maldet(660464): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Sep 12 2024 03:15:09 server2 maldet(660464): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/cartforge/public_html/" "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/loco/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Sep 12 2024 03:15:45 server2 maldet(660464): {scan} file list completed in 36s, found 2574 files... Sep 12 2024 03:15:45 server2 maldet(660464): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Sep 12 2024 03:15:45 server2 maldet(660464): {scan} scan of (2574 files) in progress... Sep 12 2024 03:16:13 server2 maldet(660464): {scan} scan completed on : files 2574, malware hits 0, cleaned hits 0, time 64s Sep 12 2024 03:16:14 server2 maldet(660464): {scan} scan report saved, to view run: maldet --report 240912-0315.660464 Sep 13 2024 03:22:07 server2 maldet(989951): {update} checking for available updates... Sep 13 2024 03:22:07 server2 maldet(989951): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Sep 13 2024 03:22:07 server2 maldet(989951): {update} hashing install files and checking against server... Sep 13 2024 03:22:07 server2 maldet(989951): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Sep 13 2024 03:22:07 server2 maldet(989951): {update} latest version already installed. Sep 13 2024 03:22:07 server2 maldet(990084): {sigup} performing signature update check... Sep 13 2024 03:22:07 server2 maldet(990084): {sigup} local signature set is version 202409103087802 Sep 13 2024 03:22:07 server2 maldet(990084): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Sep 13 2024 03:22:07 server2 maldet(990084): {sigup} new signature set 202409133842495 available Sep 13 2024 03:22:07 server2 maldet(990084): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Sep 13 2024 03:22:08 server2 maldet(990084): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Sep 13 2024 03:22:08 server2 maldet(990084): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Sep 13 2024 03:22:08 server2 maldet(990084): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Sep 13 2024 03:22:08 server2 maldet(990084): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Sep 13 2024 03:22:08 server2 maldet(990084): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Sep 13 2024 03:22:08 server2 maldet(990084): {sigup} verified md5sum of maldet-sigpack.tgz Sep 13 2024 03:22:08 server2 maldet(990084): {sigup} unpacked and installed maldet-sigpack.tgz Sep 13 2024 03:22:08 server2 maldet(990084): {sigup} verified md5sum of maldet-clean.tgz Sep 13 2024 03:22:08 server2 maldet(990084): {sigup} unpacked and installed maldet-clean.tgz Sep 13 2024 03:22:08 server2 maldet(990084): {sigup} signature set update completed Sep 13 2024 03:22:08 server2 maldet(990084): {sigup} 17638 signatures (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Sep 13 2024 03:22:08 server2 maldet(990312): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Sep 13 2024 03:22:08 server2 maldet(990312): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Sep 13 2024 03:22:08 server2 maldet(990312): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Sep 13 2024 03:22:08 server2 maldet(990312): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Sep 13 2024 03:22:08 server2 maldet(990312): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/cartforge/public_html/" "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/loco/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Sep 13 2024 03:22:46 server2 maldet(990312): {scan} file list completed in 38s, found 3141 files... Sep 13 2024 03:22:46 server2 maldet(990312): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Sep 13 2024 03:22:46 server2 maldet(990312): {scan} scan of (3141 files) in progress... Sep 13 2024 03:23:36 server2 maldet(990312): {scan} scan completed on : files 3141, malware hits 0, cleaned hits 0, time 88s Sep 13 2024 03:23:36 server2 maldet(990312): {scan} scan report saved, to view run: maldet --report 240913-0322.990312 Sep 14 2024 03:10:54 server2 maldet(1325936): {update} checking for available updates... Sep 14 2024 03:10:54 server2 maldet(1325936): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Sep 14 2024 03:10:54 server2 maldet(1325936): {update} hashing install files and checking against server... Sep 14 2024 03:10:55 server2 maldet(1325936): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Sep 14 2024 03:10:55 server2 maldet(1325936): {update} latest version already installed. Sep 14 2024 03:10:55 server2 maldet(1326114): {sigup} performing signature update check... Sep 14 2024 03:10:55 server2 maldet(1326114): {sigup} local signature set is version 202409133842495 Sep 14 2024 03:10:55 server2 maldet(1326114): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Sep 14 2024 03:10:55 server2 maldet(1326114): {sigup} latest signature set already installed Sep 14 2024 03:10:55 server2 maldet(1326225): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Sep 14 2024 03:10:56 server2 maldet(1326225): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Sep 14 2024 03:10:56 server2 maldet(1326225): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Sep 14 2024 03:10:56 server2 maldet(1326225): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Sep 14 2024 03:10:56 server2 maldet(1326225): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/cartforge/public_html/" "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/loco/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Sep 14 2024 03:11:43 server2 maldet(1326225): {scan} file list completed in 47s, found 2362 files... Sep 14 2024 03:11:44 server2 maldet(1326225): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Sep 14 2024 03:11:44 server2 maldet(1326225): {scan} scan of (2362 files) in progress... Sep 14 2024 03:12:19 server2 maldet(1326225): {scan} scan completed on : files 2362, malware hits 0, cleaned hits 0, time 84s Sep 14 2024 03:12:19 server2 maldet(1326225): {scan} scan report saved, to view run: maldet --report 240914-0310.1326225 Sep 15 2024 03:23:06 server2 maldet(1666687): {update} checking for available updates... Sep 15 2024 03:23:07 server2 maldet(1666687): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Sep 15 2024 03:23:07 server2 maldet(1666687): {update} hashing install files and checking against server... Sep 15 2024 03:23:07 server2 maldet(1666687): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Sep 15 2024 03:23:07 server2 maldet(1666687): {update} latest version already installed. Sep 15 2024 03:23:07 server2 maldet(1666821): {sigup} performing signature update check... Sep 15 2024 03:23:07 server2 maldet(1666821): {sigup} local signature set is version 202409133842495 Sep 15 2024 03:23:07 server2 maldet(1666821): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Sep 15 2024 03:23:07 server2 maldet(1666821): {sigup} latest signature set already installed Sep 15 2024 03:23:07 server2 maldet(1666932): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Sep 15 2024 03:23:09 server2 maldet(1666932): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Sep 15 2024 03:23:09 server2 maldet(1666932): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Sep 15 2024 03:23:09 server2 maldet(1666932): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Sep 15 2024 03:23:09 server2 maldet(1666932): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/cartforge/public_html/" "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/loco/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Sep 15 2024 03:23:45 server2 maldet(1666932): {scan} file list completed in 36s, found 2318 files... Sep 15 2024 03:23:45 server2 maldet(1666932): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Sep 15 2024 03:23:45 server2 maldet(1666932): {scan} scan of (2318 files) in progress... Sep 15 2024 03:24:22 server2 maldet(1666932): {scan} scan completed on : files 2318, malware hits 0, cleaned hits 0, time 75s Sep 15 2024 03:24:23 server2 maldet(1666932): {scan} scan report saved, to view run: maldet --report 240915-0323.1666932 Sep 16 2024 03:38:20 server2 maldet(2014908): {update} checking for available updates... Sep 16 2024 03:38:20 server2 maldet(2014908): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Sep 16 2024 03:38:20 server2 maldet(2014908): {update} hashing install files and checking against server... Sep 16 2024 03:38:20 server2 maldet(2014908): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Sep 16 2024 03:38:20 server2 maldet(2014908): {update} latest version already installed. Sep 16 2024 03:38:20 server2 maldet(2015041): {sigup} performing signature update check... Sep 16 2024 03:38:20 server2 maldet(2015041): {sigup} local signature set is version 202409133842495 Sep 16 2024 03:38:20 server2 maldet(2015041): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Sep 16 2024 03:38:21 server2 maldet(2015041): {sigup} latest signature set already installed Sep 16 2024 03:38:21 server2 maldet(2015152): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Sep 16 2024 03:38:21 server2 maldet(2015152): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Sep 16 2024 03:38:21 server2 maldet(2015152): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Sep 16 2024 03:38:21 server2 maldet(2015152): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Sep 16 2024 03:38:21 server2 maldet(2015152): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/cartforge/public_html/" "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/loco/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Sep 16 2024 03:38:53 server2 maldet(2015152): {scan} file list completed in 32s, found 25118 files... Sep 16 2024 03:38:53 server2 maldet(2015152): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Sep 16 2024 03:38:53 server2 maldet(2015152): {scan} scan of (25118 files) in progress... Sep 16 2024 03:44:39 server2 maldet(2015152): {scan} scan completed on : files 25118, malware hits 0, cleaned hits 0, time 378s Sep 16 2024 03:44:39 server2 maldet(2015152): {scan} scan report saved, to view run: maldet --report 240916-0338.2015152 Sep 17 2024 09:20:57 server2 maldet(1220): {mon} could not find inotifywait command, install yum package inotify-tools or download from https://github.com/rvoicilas/inotify-tools/wiki/ Sep 17 2024 05:48:11 server2 maldet(23530): {update} checking for available updates... Sep 17 2024 05:48:11 server2 maldet(23530): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Sep 17 2024 05:48:11 server2 maldet(23530): {update} hashing install files and checking against server... Sep 17 2024 05:48:11 server2 maldet(23530): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Sep 17 2024 05:48:11 server2 maldet(23530): {update} latest version already installed. Sep 17 2024 05:48:11 server2 maldet(23663): {sigup} performing signature update check... Sep 17 2024 05:48:11 server2 maldet(23663): {sigup} local signature set is version 202409133842495 Sep 17 2024 05:48:11 server2 maldet(23663): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Sep 17 2024 05:48:11 server2 maldet(23663): {sigup} new signature set 20240916341534 available Sep 17 2024 05:48:11 server2 maldet(23663): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Sep 17 2024 05:48:11 server2 maldet(23663): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Sep 17 2024 05:48:11 server2 maldet(23663): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Sep 17 2024 05:48:11 server2 maldet(23663): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Sep 17 2024 05:48:12 server2 maldet(23663): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Sep 17 2024 05:48:12 server2 maldet(23663): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Sep 17 2024 05:48:12 server2 maldet(23663): {sigup} verified md5sum of maldet-sigpack.tgz Sep 17 2024 05:48:12 server2 maldet(23663): {sigup} unpacked and installed maldet-sigpack.tgz Sep 17 2024 05:48:12 server2 maldet(23663): {sigup} verified md5sum of maldet-clean.tgz Sep 17 2024 05:48:12 server2 maldet(23663): {sigup} unpacked and installed maldet-clean.tgz Sep 17 2024 05:48:12 server2 maldet(23663): {sigup} signature set update completed Sep 17 2024 05:48:12 server2 maldet(23663): {sigup} 17638 signatures (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Sep 17 2024 05:48:12 server2 maldet(23898): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Sep 17 2024 05:48:12 server2 maldet(23898): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Sep 17 2024 05:48:12 server2 maldet(23898): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Sep 17 2024 05:48:12 server2 maldet(23898): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Sep 17 2024 05:48:12 server2 maldet(23898): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/cartforge/public_html/" "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/loco/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Sep 17 2024 05:48:50 server2 maldet(23898): {scan} file list completed in 38s, found 21102 files... Sep 17 2024 05:48:50 server2 maldet(23898): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Sep 17 2024 05:48:50 server2 maldet(23898): {scan} scan of (21102 files) in progress... Sep 17 2024 05:53:56 server2 maldet(23898): {scan} scan completed on : files 21102, malware hits 0, cleaned hits 0, time 344s Sep 17 2024 05:53:56 server2 maldet(23898): {scan} scan report saved, to view run: maldet --report 240917-0548.23898 Sep 18 2024 03:26:33 server2 maldet(303772): {update} checking for available updates... Sep 18 2024 03:26:33 server2 maldet(303772): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Sep 18 2024 03:26:33 server2 maldet(303772): {update} hashing install files and checking against server... Sep 18 2024 03:26:33 server2 maldet(303772): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Sep 18 2024 03:26:33 server2 maldet(303772): {update} latest version already installed. Sep 18 2024 03:26:33 server2 maldet(303905): {sigup} performing signature update check... Sep 18 2024 03:26:33 server2 maldet(303905): {sigup} local signature set is version 20240916341534 Sep 18 2024 03:26:33 server2 maldet(303905): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Sep 18 2024 03:26:33 server2 maldet(303905): {sigup} latest signature set already installed Sep 18 2024 03:26:33 server2 maldet(304016): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Sep 18 2024 03:26:35 server2 maldet(304016): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Sep 18 2024 03:26:35 server2 maldet(304016): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Sep 18 2024 03:26:35 server2 maldet(304016): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Sep 18 2024 03:26:35 server2 maldet(304016): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/cartforge/public_html/" "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/loco/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Sep 18 2024 03:27:16 server2 maldet(304016): {scan} file list completed in 41s, found 2844 files... Sep 18 2024 03:27:16 server2 maldet(304016): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Sep 18 2024 03:27:16 server2 maldet(304016): {scan} scan of (2844 files) in progress... Sep 18 2024 03:27:50 server2 maldet(304016): {scan} scan completed on : files 2844, malware hits 0, cleaned hits 0, time 77s Sep 18 2024 03:27:50 server2 maldet(304016): {scan} scan report saved, to view run: maldet --report 240918-0326.304016 Sep 19 2024 03:14:27 server2 maldet(613730): {update} checking for available updates... Sep 19 2024 03:14:27 server2 maldet(613730): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Sep 19 2024 03:14:27 server2 maldet(613730): {update} hashing install files and checking against server... Sep 19 2024 03:14:27 server2 maldet(613730): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Sep 19 2024 03:14:27 server2 maldet(613730): {update} latest version already installed. Sep 19 2024 03:14:28 server2 maldet(613863): {sigup} performing signature update check... Sep 19 2024 03:14:28 server2 maldet(613863): {sigup} local signature set is version 20240916341534 Sep 19 2024 03:14:28 server2 maldet(613863): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Sep 19 2024 03:14:28 server2 maldet(613863): {sigup} latest signature set already installed Sep 19 2024 03:14:28 server2 maldet(613974): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Sep 19 2024 03:14:29 server2 maldet(613974): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Sep 19 2024 03:14:29 server2 maldet(613974): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Sep 19 2024 03:14:29 server2 maldet(613974): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Sep 19 2024 03:14:29 server2 maldet(613974): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/cartforge/public_html/" "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/loco/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Sep 19 2024 03:15:22 server2 maldet(613974): {scan} file list completed in 53s, found 24354 files... Sep 19 2024 03:15:22 server2 maldet(613974): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Sep 19 2024 03:15:22 server2 maldet(613974): {scan} scan of (24354 files) in progress... Sep 19 2024 03:20:22 server2 maldet(613974): {scan} scan completed on : files 24354, malware hits 0, cleaned hits 0, time 354s Sep 19 2024 03:20:22 server2 maldet(613974): {scan} scan report saved, to view run: maldet --report 240919-0314.613974 Sep 20 2024 03:53:40 server2 maldet(948026): {update} checking for available updates... Sep 20 2024 03:53:40 server2 maldet(948026): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Sep 20 2024 03:53:40 server2 maldet(948026): {update} hashing install files and checking against server... Sep 20 2024 03:53:40 server2 maldet(948026): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Sep 20 2024 03:53:40 server2 maldet(948026): {update} latest version already installed. Sep 20 2024 03:53:40 server2 maldet(948159): {sigup} performing signature update check... Sep 20 2024 03:53:40 server2 maldet(948159): {sigup} local signature set is version 20240916341534 Sep 20 2024 03:53:40 server2 maldet(948159): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Sep 20 2024 03:53:40 server2 maldet(948159): {sigup} new signature set 202409191126888 available Sep 20 2024 03:53:40 server2 maldet(948159): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Sep 20 2024 03:53:40 server2 maldet(948159): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Sep 20 2024 03:53:40 server2 maldet(948159): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Sep 20 2024 03:53:40 server2 maldet(948159): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Sep 20 2024 03:53:40 server2 maldet(948159): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Sep 20 2024 03:53:40 server2 maldet(948159): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Sep 20 2024 03:53:40 server2 maldet(948159): {sigup} verified md5sum of maldet-sigpack.tgz Sep 20 2024 03:53:40 server2 maldet(948159): {sigup} unpacked and installed maldet-sigpack.tgz Sep 20 2024 03:53:40 server2 maldet(948159): {sigup} verified md5sum of maldet-clean.tgz Sep 20 2024 03:53:40 server2 maldet(948159): {sigup} unpacked and installed maldet-clean.tgz Sep 20 2024 03:53:40 server2 maldet(948159): {sigup} signature set update completed Sep 20 2024 03:53:41 server2 maldet(948159): {sigup} 17638 signatures (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Sep 20 2024 03:53:41 server2 maldet(948387): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Sep 20 2024 03:53:42 server2 maldet(948387): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Sep 20 2024 03:53:42 server2 maldet(948387): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Sep 20 2024 03:53:42 server2 maldet(948387): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Sep 20 2024 03:53:42 server2 maldet(948387): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/cartforge/public_html/" "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/loco/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Sep 20 2024 03:54:27 server2 maldet(948387): {scan} file list completed in 45s, found 3030 files... Sep 20 2024 03:54:27 server2 maldet(948387): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Sep 20 2024 03:54:27 server2 maldet(948387): {scan} scan of (3030 files) in progress... Sep 20 2024 03:55:29 server2 maldet(948387): {scan} scan completed on : files 3030, malware hits 0, cleaned hits 0, time 108s Sep 20 2024 03:55:29 server2 maldet(948387): {scan} scan report saved, to view run: maldet --report 240920-0353.948387 Sep 21 2024 03:37:05 server2 maldet(1274609): {update} checking for available updates... Sep 21 2024 03:37:05 server2 maldet(1274609): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Sep 21 2024 03:37:05 server2 maldet(1274609): {update} hashing install files and checking against server... Sep 21 2024 03:37:06 server2 maldet(1274609): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Sep 21 2024 03:37:06 server2 maldet(1274609): {update} latest version already installed. Sep 21 2024 03:37:06 server2 maldet(1274742): {sigup} performing signature update check... Sep 21 2024 03:37:06 server2 maldet(1274742): {sigup} local signature set is version 202409191126888 Sep 21 2024 03:37:06 server2 maldet(1274742): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Sep 21 2024 03:37:06 server2 maldet(1274742): {sigup} latest signature set already installed Sep 21 2024 03:37:06 server2 maldet(1274853): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Sep 21 2024 03:37:07 server2 maldet(1274853): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Sep 21 2024 03:37:07 server2 maldet(1274853): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Sep 21 2024 03:37:07 server2 maldet(1274853): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Sep 21 2024 03:37:07 server2 maldet(1274853): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/cartforge/public_html/" "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/loco/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Sep 21 2024 03:37:52 server2 maldet(1274853): {scan} file list completed in 45s, found 4311 files... Sep 21 2024 03:37:52 server2 maldet(1274853): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Sep 21 2024 03:37:52 server2 maldet(1274853): {scan} scan of (4311 files) in progress... Sep 21 2024 03:39:12 server2 maldet(1274853): {scan} scan completed on : files 4311, malware hits 0, cleaned hits 0, time 126s Sep 21 2024 03:39:12 server2 maldet(1274853): {scan} scan report saved, to view run: maldet --report 240921-0337.1274853 Sep 22 2024 03:53:01 server2 maldet(1596403): {update} checking for available updates... Sep 22 2024 03:53:01 server2 maldet(1596403): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Sep 22 2024 03:53:01 server2 maldet(1596403): {update} hashing install files and checking against server... Sep 22 2024 03:53:01 server2 maldet(1596403): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Sep 22 2024 03:53:01 server2 maldet(1596403): {update} latest version already installed. Sep 22 2024 03:53:02 server2 maldet(1596569): {sigup} performing signature update check... Sep 22 2024 03:53:02 server2 maldet(1596569): {sigup} local signature set is version 202409191126888 Sep 22 2024 03:53:02 server2 maldet(1596569): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Sep 22 2024 03:53:02 server2 maldet(1596569): {sigup} new signature set 20240922576214 available Sep 22 2024 03:53:02 server2 maldet(1596569): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Sep 22 2024 03:53:02 server2 maldet(1596569): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Sep 22 2024 03:53:02 server2 maldet(1596569): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Sep 22 2024 03:53:03 server2 maldet(1596569): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Sep 22 2024 03:53:03 server2 maldet(1596569): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Sep 22 2024 03:53:03 server2 maldet(1596569): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Sep 22 2024 03:53:03 server2 maldet(1596569): {sigup} verified md5sum of maldet-sigpack.tgz Sep 22 2024 03:53:03 server2 maldet(1596569): {sigup} unpacked and installed maldet-sigpack.tgz Sep 22 2024 03:53:03 server2 maldet(1596569): {sigup} verified md5sum of maldet-clean.tgz Sep 22 2024 03:53:03 server2 maldet(1596569): {sigup} unpacked and installed maldet-clean.tgz Sep 22 2024 03:53:03 server2 maldet(1596569): {sigup} signature set update completed Sep 22 2024 03:53:04 server2 maldet(1596569): {sigup} 17638 signatures (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Sep 22 2024 03:53:06 server2 maldet(1596870): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Sep 22 2024 03:53:09 server2 maldet(1596870): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Sep 22 2024 03:53:09 server2 maldet(1596870): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Sep 22 2024 03:53:09 server2 maldet(1596870): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Sep 22 2024 03:53:09 server2 maldet(1596870): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/cartforge/public_html/" "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/loco/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Sep 22 2024 03:54:06 server2 maldet(1596870): {scan} file list completed in 56s, found 2854 files... Sep 22 2024 03:54:06 server2 maldet(1596870): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Sep 22 2024 03:54:06 server2 maldet(1596870): {scan} scan of (2854 files) in progress... Sep 22 2024 03:55:18 server2 maldet(1596870): {scan} scan completed on : files 2854, malware hits 0, cleaned hits 0, time 132s Sep 22 2024 03:55:18 server2 maldet(1596870): {scan} scan report saved, to view run: maldet --report 240922-0353.1596870 Sep 23 2024 03:11:55 server2 maldet(1917790): {update} checking for available updates... Sep 23 2024 03:11:55 server2 maldet(1917790): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Sep 23 2024 03:11:56 server2 maldet(1917790): {update} hashing install files and checking against server... Sep 23 2024 03:11:56 server2 maldet(1917790): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Sep 23 2024 03:11:56 server2 maldet(1917790): {update} latest version already installed. Sep 23 2024 03:11:56 server2 maldet(1917923): {sigup} performing signature update check... Sep 23 2024 03:11:56 server2 maldet(1917923): {sigup} local signature set is version 20240922576214 Sep 23 2024 03:11:56 server2 maldet(1917923): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Sep 23 2024 03:11:56 server2 maldet(1917923): {sigup} latest signature set already installed Sep 23 2024 03:11:56 server2 maldet(1918034): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Sep 23 2024 03:11:57 server2 maldet(1918034): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Sep 23 2024 03:11:57 server2 maldet(1918034): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Sep 23 2024 03:11:57 server2 maldet(1918034): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Sep 23 2024 03:11:57 server2 maldet(1918034): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/cartforge/public_html/" "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/loco/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Sep 23 2024 03:12:46 server2 maldet(1918034): {scan} file list completed in 49s, found 19221 files... Sep 23 2024 03:12:46 server2 maldet(1918034): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Sep 23 2024 03:12:46 server2 maldet(1918034): {scan} scan of (19221 files) in progress... Sep 23 2024 03:16:18 server2 maldet(1918034): {scan} scan completed on : files 19221, malware hits 0, cleaned hits 0, time 262s Sep 23 2024 03:16:18 server2 maldet(1918034): {scan} scan report saved, to view run: maldet --report 240923-0311.1918034 Sep 24 2024 03:45:13 server2 maldet(2239884): {update} checking for available updates... Sep 24 2024 03:45:13 server2 maldet(2239884): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Sep 24 2024 03:45:13 server2 maldet(2239884): {update} hashing install files and checking against server... Sep 24 2024 03:45:13 server2 maldet(2239884): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Sep 24 2024 03:45:13 server2 maldet(2239884): {update} latest version already installed. Sep 24 2024 03:45:13 server2 maldet(2240017): {sigup} performing signature update check... Sep 24 2024 03:45:13 server2 maldet(2240017): {sigup} local signature set is version 20240922576214 Sep 24 2024 03:45:14 server2 maldet(2240017): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Sep 24 2024 03:45:14 server2 maldet(2240017): {sigup} latest signature set already installed Sep 24 2024 03:45:14 server2 maldet(2240128): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Sep 24 2024 03:45:15 server2 maldet(2240128): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Sep 24 2024 03:45:15 server2 maldet(2240128): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Sep 24 2024 03:45:15 server2 maldet(2240128): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Sep 24 2024 03:45:15 server2 maldet(2240128): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/cartforge/public_html/" "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/loco/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Sep 24 2024 03:46:17 server2 maldet(2240128): {scan} file list completed in 62s, found 6282 files... Sep 24 2024 03:46:17 server2 maldet(2240128): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Sep 24 2024 03:46:17 server2 maldet(2240128): {scan} scan of (6282 files) in progress... Sep 24 2024 03:48:33 server2 maldet(2240128): {scan} clamscan returned an error, check /usr/local/maldetect/logs/clamscan_log for details! Sep 24 2024 03:48:33 server2 maldet(2240128): {scan} scan completed on : files 6282, malware hits 0, cleaned hits 0, time 199s Sep 24 2024 03:48:33 server2 maldet(2240128): {scan} scan report saved, to view run: maldet --report 240924-0345.2240128 Sep 25 2024 03:32:14 server2 maldet(2546935): {update} checking for available updates... Sep 25 2024 03:32:14 server2 maldet(2546935): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Sep 25 2024 03:32:14 server2 maldet(2546935): {update} hashing install files and checking against server... Sep 25 2024 03:32:14 server2 maldet(2546935): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Sep 25 2024 03:32:14 server2 maldet(2546935): {update} latest version already installed. Sep 25 2024 03:32:14 server2 maldet(2547068): {sigup} performing signature update check... Sep 25 2024 03:32:14 server2 maldet(2547068): {sigup} local signature set is version 20240922576214 Sep 25 2024 03:32:14 server2 maldet(2547068): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Sep 25 2024 03:32:14 server2 maldet(2547068): {sigup} new signature set 202409251332019 available Sep 25 2024 03:32:14 server2 maldet(2547068): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Sep 25 2024 03:32:14 server2 maldet(2547068): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Sep 25 2024 03:32:14 server2 maldet(2547068): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Sep 25 2024 03:32:14 server2 maldet(2547068): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Sep 25 2024 03:32:14 server2 maldet(2547068): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Sep 25 2024 03:32:14 server2 maldet(2547068): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Sep 25 2024 03:32:14 server2 maldet(2547068): {sigup} verified md5sum of maldet-sigpack.tgz Sep 25 2024 03:32:14 server2 maldet(2547068): {sigup} unpacked and installed maldet-sigpack.tgz Sep 25 2024 03:32:15 server2 maldet(2547068): {sigup} verified md5sum of maldet-clean.tgz Sep 25 2024 03:32:15 server2 maldet(2547068): {sigup} unpacked and installed maldet-clean.tgz Sep 25 2024 03:32:15 server2 maldet(2547068): {sigup} signature set update completed Sep 25 2024 03:32:15 server2 maldet(2547068): {sigup} 17638 signatures (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Sep 25 2024 03:32:15 server2 maldet(2547301): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Sep 25 2024 03:32:17 server2 maldet(2547301): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Sep 25 2024 03:32:17 server2 maldet(2547301): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Sep 25 2024 03:32:17 server2 maldet(2547301): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Sep 25 2024 03:32:17 server2 maldet(2547301): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/cartforge/public_html/" "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/loco/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Sep 25 2024 03:32:52 server2 maldet(2547301): {scan} file list completed in 35s, found 9371 files... Sep 25 2024 03:32:52 server2 maldet(2547301): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Sep 25 2024 03:32:52 server2 maldet(2547301): {scan} scan of (9371 files) in progress... Sep 25 2024 03:34:52 server2 maldet(2547301): {scan} clamscan returned an error, check /usr/local/maldetect/logs/clamscan_log for details! Sep 25 2024 03:34:52 server2 maldet(2547301): {scan} scan completed on : files 9371, malware hits 0, cleaned hits 0, time 157s Sep 25 2024 03:34:52 server2 maldet(2547301): {scan} scan report saved, to view run: maldet --report 240925-0332.2547301 Sep 26 2024 03:25:13 server2 maldet(2865973): {update} checking for available updates... Sep 26 2024 03:25:13 server2 maldet(2865973): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Sep 26 2024 03:25:13 server2 maldet(2865973): {update} hashing install files and checking against server... Sep 26 2024 03:25:13 server2 maldet(2865973): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Sep 26 2024 03:25:13 server2 maldet(2865973): {update} latest version already installed. Sep 26 2024 03:25:14 server2 maldet(2866106): {sigup} performing signature update check... Sep 26 2024 03:25:14 server2 maldet(2866106): {sigup} local signature set is version 202409251332019 Sep 26 2024 03:25:14 server2 maldet(2866106): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Sep 26 2024 03:25:14 server2 maldet(2866106): {sigup} latest signature set already installed Sep 26 2024 03:25:14 server2 maldet(2866222): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Sep 26 2024 03:25:15 server2 maldet(2866222): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Sep 26 2024 03:25:15 server2 maldet(2866222): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Sep 26 2024 03:25:15 server2 maldet(2866222): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Sep 26 2024 03:25:15 server2 maldet(2866222): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/cartforge/public_html/" "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/loco/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Sep 26 2024 03:26:00 server2 maldet(2866222): {scan} file list completed in 45s, found 29675 files... Sep 26 2024 03:26:00 server2 maldet(2866222): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Sep 26 2024 03:26:00 server2 maldet(2866222): {scan} scan of (29675 files) in progress... Sep 26 2024 03:52:24 server2 maldet(2866222): {scan} scan completed on : files 29675, malware hits 0, cleaned hits 0, time 1630s Sep 26 2024 03:52:24 server2 maldet(2866222): {scan} scan report saved, to view run: maldet --report 240926-0325.2866222 Sep 27 2024 03:18:11 server2 maldet(3227100): {update} checking for available updates... Sep 27 2024 03:18:11 server2 maldet(3227100): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Sep 27 2024 03:18:11 server2 maldet(3227100): {update} hashing install files and checking against server... Sep 27 2024 03:18:11 server2 maldet(3227100): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Sep 27 2024 03:18:11 server2 maldet(3227100): {update} latest version already installed. Sep 27 2024 03:18:11 server2 maldet(3227239): {sigup} performing signature update check... Sep 27 2024 03:18:11 server2 maldet(3227239): {sigup} local signature set is version 202409251332019 Sep 27 2024 03:18:11 server2 maldet(3227239): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Sep 27 2024 03:18:12 server2 maldet(3227239): {sigup} latest signature set already installed Sep 27 2024 03:18:12 server2 maldet(3227350): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Sep 27 2024 03:18:12 server2 maldet(3227350): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Sep 27 2024 03:18:12 server2 maldet(3227350): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Sep 27 2024 03:18:12 server2 maldet(3227350): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Sep 27 2024 03:18:12 server2 maldet(3227350): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/cartforge/public_html/" "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/loco/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Sep 27 2024 03:18:44 server2 maldet(3227350): {scan} file list completed in 32s, found 19542 files... Sep 27 2024 03:18:44 server2 maldet(3227350): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Sep 27 2024 03:18:44 server2 maldet(3227350): {scan} scan of (19542 files) in progress... Sep 27 2024 03:21:35 server2 maldet(3227350): {scan} scan completed on : files 19542, malware hits 0, cleaned hits 0, time 203s Sep 27 2024 03:21:35 server2 maldet(3227350): {scan} scan report saved, to view run: maldet --report 240927-0318.3227350 Sep 28 2024 03:26:11 server2 maldet(3534763): {update} checking for available updates... Sep 28 2024 03:26:11 server2 maldet(3534763): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Sep 28 2024 03:26:11 server2 maldet(3534763): {update} hashing install files and checking against server... Sep 28 2024 03:26:11 server2 maldet(3534763): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Sep 28 2024 03:26:11 server2 maldet(3534763): {update} latest version already installed. Sep 28 2024 03:26:11 server2 maldet(3534901): {sigup} performing signature update check... Sep 28 2024 03:26:11 server2 maldet(3534901): {sigup} local signature set is version 202409251332019 Sep 28 2024 03:26:11 server2 maldet(3534901): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Sep 28 2024 03:26:11 server2 maldet(3534901): {sigup} new signature set 202409282086558 available Sep 28 2024 03:26:11 server2 maldet(3534901): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Sep 28 2024 03:26:11 server2 maldet(3534901): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Sep 28 2024 03:26:11 server2 maldet(3534901): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Sep 28 2024 03:26:11 server2 maldet(3534901): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Sep 28 2024 03:26:12 server2 maldet(3534901): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Sep 28 2024 03:26:12 server2 maldet(3534901): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Sep 28 2024 03:26:12 server2 maldet(3534901): {sigup} verified md5sum of maldet-sigpack.tgz Sep 28 2024 03:26:12 server2 maldet(3534901): {sigup} unpacked and installed maldet-sigpack.tgz Sep 28 2024 03:26:12 server2 maldet(3534901): {sigup} verified md5sum of maldet-clean.tgz Sep 28 2024 03:26:12 server2 maldet(3534901): {sigup} unpacked and installed maldet-clean.tgz Sep 28 2024 03:26:12 server2 maldet(3534901): {sigup} signature set update completed Sep 28 2024 03:26:12 server2 maldet(3534901): {sigup} 17638 signatures (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Sep 28 2024 03:26:12 server2 maldet(3535129): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Sep 28 2024 03:26:12 server2 maldet(3535129): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Sep 28 2024 03:26:12 server2 maldet(3535129): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Sep 28 2024 03:26:12 server2 maldet(3535129): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Sep 28 2024 03:26:12 server2 maldet(3535129): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/cartforge/public_html/" "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/loco/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Sep 28 2024 03:26:44 server2 maldet(3535129): {scan} file list completed in 32s, found 3825 files... Sep 28 2024 03:26:44 server2 maldet(3535129): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Sep 28 2024 03:26:44 server2 maldet(3535129): {scan} scan of (3825 files) in progress... Sep 28 2024 03:27:42 server2 maldet(3535129): {scan} scan completed on : files 3825, malware hits 0, cleaned hits 0, time 90s Sep 28 2024 03:27:42 server2 maldet(3535129): {scan} scan report saved, to view run: maldet --report 240928-0326.3535129 Sep 29 2024 03:37:59 server2 maldet(3853964): {update} checking for available updates... Sep 29 2024 03:38:00 server2 maldet(3853964): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Sep 29 2024 03:38:00 server2 maldet(3853964): {update} hashing install files and checking against server... Sep 29 2024 03:38:00 server2 maldet(3853964): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Sep 29 2024 03:38:00 server2 maldet(3853964): {update} latest version already installed. Sep 29 2024 03:38:00 server2 maldet(3854097): {sigup} performing signature update check... Sep 29 2024 03:38:00 server2 maldet(3854097): {sigup} local signature set is version 202409282086558 Sep 29 2024 03:38:00 server2 maldet(3854097): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Sep 29 2024 03:38:00 server2 maldet(3854097): {sigup} latest signature set already installed Sep 29 2024 03:38:00 server2 maldet(3854208): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Sep 29 2024 03:38:04 server2 maldet(3854208): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Sep 29 2024 03:38:04 server2 maldet(3854208): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Sep 29 2024 03:38:04 server2 maldet(3854208): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Sep 29 2024 03:38:04 server2 maldet(3854208): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/cartforge/public_html/" "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/loco/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Sep 29 2024 03:38:47 server2 maldet(3854208): {scan} file list completed in 43s, found 2296 files... Sep 29 2024 03:38:47 server2 maldet(3854208): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Sep 29 2024 03:38:47 server2 maldet(3854208): {scan} scan of (2296 files) in progress... Sep 29 2024 03:39:00 server2 maldet(3854208): {scan} scan completed on : files 2296, malware hits 0, cleaned hits 0, time 60s Sep 29 2024 03:39:00 server2 maldet(3854208): {scan} scan report saved, to view run: maldet --report 240929-0338.3854208 Sep 30 2024 03:47:46 server2 maldet(4176371): {update} checking for available updates... Sep 30 2024 03:47:46 server2 maldet(4176371): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Sep 30 2024 03:47:46 server2 maldet(4176371): {update} hashing install files and checking against server... Sep 30 2024 03:47:46 server2 maldet(4176371): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Sep 30 2024 03:47:46 server2 maldet(4176371): {update} latest version already installed. Sep 30 2024 03:47:46 server2 maldet(4176504): {sigup} performing signature update check... Sep 30 2024 03:47:46 server2 maldet(4176504): {sigup} local signature set is version 202409282086558 Sep 30 2024 03:47:46 server2 maldet(4176504): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Sep 30 2024 03:47:46 server2 maldet(4176504): {sigup} latest signature set already installed Sep 30 2024 03:47:47 server2 maldet(4176615): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Sep 30 2024 03:47:47 server2 maldet(4176615): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Sep 30 2024 03:47:47 server2 maldet(4176615): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Sep 30 2024 03:47:47 server2 maldet(4176615): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Sep 30 2024 03:47:47 server2 maldet(4176615): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/cartforge/public_html/" "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/loco/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Sep 30 2024 03:48:19 server2 maldet(4176615): {scan} file list completed in 32s, found 2065 files... Sep 30 2024 03:48:19 server2 maldet(4176615): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Sep 30 2024 03:48:19 server2 maldet(4176615): {scan} scan of (2065 files) in progress... Sep 30 2024 03:48:34 server2 maldet(4176615): {scan} scan completed on : files 2065, malware hits 0, cleaned hits 0, time 47s Sep 30 2024 03:48:34 server2 maldet(4176615): {scan} scan report saved, to view run: maldet --report 240930-0347.4176615 Oct 01 2024 03:47:57 server2 maldet(304540): {update} checking for available updates... Oct 01 2024 03:47:57 server2 maldet(304540): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Oct 01 2024 03:47:57 server2 maldet(304540): {update} hashing install files and checking against server... Oct 01 2024 03:47:57 server2 maldet(304540): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Oct 01 2024 03:47:57 server2 maldet(304540): {update} latest version already installed. Oct 01 2024 03:47:57 server2 maldet(304673): {sigup} performing signature update check... Oct 01 2024 03:47:57 server2 maldet(304673): {sigup} local signature set is version 202409282086558 Oct 01 2024 03:47:58 server2 maldet(304673): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Oct 01 2024 03:47:58 server2 maldet(304673): {sigup} new signature set 20241001551621 available Oct 01 2024 03:47:58 server2 maldet(304673): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Oct 01 2024 03:47:58 server2 maldet(304673): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Oct 01 2024 03:47:58 server2 maldet(304673): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Oct 01 2024 03:47:58 server2 maldet(304673): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Oct 01 2024 03:47:58 server2 maldet(304673): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Oct 01 2024 03:47:58 server2 maldet(304673): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Oct 01 2024 03:47:58 server2 maldet(304673): {sigup} verified md5sum of maldet-sigpack.tgz Oct 01 2024 03:47:58 server2 maldet(304673): {sigup} unpacked and installed maldet-sigpack.tgz Oct 01 2024 03:47:58 server2 maldet(304673): {sigup} verified md5sum of maldet-clean.tgz Oct 01 2024 03:47:58 server2 maldet(304673): {sigup} unpacked and installed maldet-clean.tgz Oct 01 2024 03:47:58 server2 maldet(304673): {sigup} signature set update completed Oct 01 2024 03:47:58 server2 maldet(304673): {sigup} 17638 signatures (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Oct 01 2024 03:47:59 server2 maldet(304901): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Oct 01 2024 03:48:00 server2 maldet(304901): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Oct 01 2024 03:48:00 server2 maldet(304901): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Oct 01 2024 03:48:00 server2 maldet(304901): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Oct 01 2024 03:48:00 server2 maldet(304901): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/cartforge/public_html/" "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/loco/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Oct 01 2024 03:48:46 server2 maldet(304901): {scan} file list completed in 46s, found 19414 files... Oct 01 2024 03:48:46 server2 maldet(304901): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Oct 01 2024 03:48:46 server2 maldet(304901): {scan} scan of (19414 files) in progress... Oct 01 2024 03:52:45 server2 maldet(304901): {scan} scan completed on : files 19414, malware hits 0, cleaned hits 0, time 286s Oct 01 2024 03:52:45 server2 maldet(304901): {scan} scan report saved, to view run: maldet --report 241001-0347.304901 Oct 02 2024 03:16:20 server2 maldet(612596): {update} checking for available updates... Oct 02 2024 03:16:20 server2 maldet(612596): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Oct 02 2024 03:16:20 server2 maldet(612596): {update} hashing install files and checking against server... Oct 02 2024 03:16:20 server2 maldet(612596): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Oct 02 2024 03:16:20 server2 maldet(612596): {update} latest version already installed. Oct 02 2024 03:16:20 server2 maldet(612729): {sigup} performing signature update check... Oct 02 2024 03:16:20 server2 maldet(612729): {sigup} local signature set is version 20241001551621 Oct 02 2024 03:16:20 server2 maldet(612729): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Oct 02 2024 03:16:20 server2 maldet(612729): {sigup} latest signature set already installed Oct 02 2024 03:16:20 server2 maldet(612840): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Oct 02 2024 03:16:22 server2 maldet(612840): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Oct 02 2024 03:16:22 server2 maldet(612840): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Oct 02 2024 03:16:22 server2 maldet(612840): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Oct 02 2024 03:16:22 server2 maldet(612840): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/cartforge/public_html/" "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/loco/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Oct 02 2024 03:17:03 server2 maldet(612840): {scan} file list completed in 40s, found 19600 files... Oct 02 2024 03:17:03 server2 maldet(612840): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Oct 02 2024 03:17:03 server2 maldet(612840): {scan} scan of (19600 files) in progress... Oct 02 2024 03:18:59 server2 maldet(612840): {scan} scan completed on : files 19600, malware hits 0, cleaned hits 0, time 159s Oct 02 2024 03:18:59 server2 maldet(612840): {scan} scan report saved, to view run: maldet --report 241002-0316.612840 Oct 03 2024 03:26:26 server2 maldet(927548): {update} checking for available updates... Oct 03 2024 03:26:26 server2 maldet(927548): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Oct 03 2024 03:26:26 server2 maldet(927548): {update} hashing install files and checking against server... Oct 03 2024 03:26:26 server2 maldet(927548): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Oct 03 2024 03:26:26 server2 maldet(927548): {update} latest version already installed. Oct 03 2024 03:26:26 server2 maldet(927681): {sigup} performing signature update check... Oct 03 2024 03:26:26 server2 maldet(927681): {sigup} local signature set is version 20241001551621 Oct 03 2024 03:26:26 server2 maldet(927681): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Oct 03 2024 03:26:26 server2 maldet(927681): {sigup} latest signature set already installed Oct 03 2024 03:26:26 server2 maldet(927792): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Oct 03 2024 03:26:27 server2 maldet(927792): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Oct 03 2024 03:26:27 server2 maldet(927792): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Oct 03 2024 03:26:27 server2 maldet(927792): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Oct 03 2024 03:26:27 server2 maldet(927792): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/cartforge/public_html/" "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/loco/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Oct 03 2024 03:27:10 server2 maldet(927792): {scan} file list completed in 42s, found 20025 files... Oct 03 2024 03:27:10 server2 maldet(927792): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Oct 03 2024 03:27:10 server2 maldet(927792): {scan} scan of (20025 files) in progress... Oct 03 2024 03:30:38 server2 maldet(927792): {scan} scan completed on : files 20025, malware hits 0, cleaned hits 0, time 252s Oct 03 2024 03:30:38 server2 maldet(927792): {scan} scan report saved, to view run: maldet --report 241003-0326.927792 Oct 04 2024 03:20:56 server2 maldet(1255828): {update} checking for available updates... Oct 04 2024 03:20:56 server2 maldet(1255828): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Oct 04 2024 03:20:56 server2 maldet(1255828): {update} hashing install files and checking against server... Oct 04 2024 03:20:56 server2 maldet(1255828): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Oct 04 2024 03:20:57 server2 maldet(1255828): {update} latest version already installed. Oct 04 2024 03:20:57 server2 maldet(1255962): {sigup} performing signature update check... Oct 04 2024 03:20:57 server2 maldet(1255962): {sigup} local signature set is version 20241001551621 Oct 04 2024 03:20:57 server2 maldet(1255962): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Oct 04 2024 03:20:57 server2 maldet(1255962): {sigup} new signature set 202410041307746 available Oct 04 2024 03:20:57 server2 maldet(1255962): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Oct 04 2024 03:20:57 server2 maldet(1255962): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Oct 04 2024 03:20:57 server2 maldet(1255962): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Oct 04 2024 03:20:57 server2 maldet(1255962): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Oct 04 2024 03:20:57 server2 maldet(1255962): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Oct 04 2024 03:20:57 server2 maldet(1255962): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Oct 04 2024 03:20:57 server2 maldet(1255962): {sigup} verified md5sum of maldet-sigpack.tgz Oct 04 2024 03:20:57 server2 maldet(1255962): {sigup} unpacked and installed maldet-sigpack.tgz Oct 04 2024 03:20:58 server2 maldet(1255962): {sigup} verified md5sum of maldet-clean.tgz Oct 04 2024 03:20:58 server2 maldet(1255962): {sigup} unpacked and installed maldet-clean.tgz Oct 04 2024 03:20:58 server2 maldet(1255962): {sigup} signature set update completed Oct 04 2024 03:20:58 server2 maldet(1255962): {sigup} 17638 signatures (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Oct 04 2024 03:20:58 server2 maldet(1256189): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Oct 04 2024 03:21:05 server2 maldet(1256189): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Oct 04 2024 03:21:05 server2 maldet(1256189): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Oct 04 2024 03:21:05 server2 maldet(1256189): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Oct 04 2024 03:21:05 server2 maldet(1256189): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/cartforge/public_html/" "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/loco/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Oct 04 2024 03:22:02 server2 maldet(1256189): {scan} file list completed in 57s, found 2457 files... Oct 04 2024 03:22:02 server2 maldet(1256189): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Oct 04 2024 03:22:02 server2 maldet(1256189): {scan} scan of (2457 files) in progress... Oct 04 2024 03:22:38 server2 maldet(1256189): {scan} scan completed on : files 2457, malware hits 0, cleaned hits 0, time 100s Oct 04 2024 03:22:38 server2 maldet(1256189): {scan} scan report saved, to view run: maldet --report 241004-0320.1256189 Oct 05 2024 03:53:37 server2 maldet(1594544): {update} checking for available updates... Oct 05 2024 03:53:37 server2 maldet(1594544): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Oct 05 2024 03:53:37 server2 maldet(1594544): {update} hashing install files and checking against server... Oct 05 2024 03:53:37 server2 maldet(1594544): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Oct 05 2024 03:53:37 server2 maldet(1594544): {update} latest version already installed. Oct 05 2024 03:53:37 server2 maldet(1594678): {sigup} performing signature update check... Oct 05 2024 03:53:37 server2 maldet(1594678): {sigup} local signature set is version 202410041307746 Oct 05 2024 03:53:37 server2 maldet(1594678): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Oct 05 2024 03:53:37 server2 maldet(1594678): {sigup} latest signature set already installed Oct 05 2024 03:53:38 server2 maldet(1594789): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Oct 05 2024 03:53:38 server2 maldet(1594789): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Oct 05 2024 03:53:38 server2 maldet(1594789): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Oct 05 2024 03:53:38 server2 maldet(1594789): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Oct 05 2024 03:53:38 server2 maldet(1594789): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/cartforge/public_html/" "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/loco/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Oct 05 2024 03:54:24 server2 maldet(1594789): {scan} file list completed in 46s, found 1975 files... Oct 05 2024 03:54:24 server2 maldet(1594789): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Oct 05 2024 03:54:24 server2 maldet(1594789): {scan} scan of (1975 files) in progress... Oct 05 2024 03:54:35 server2 maldet(1594789): {scan} scan completed on : files 1975, malware hits 0, cleaned hits 0, time 57s Oct 05 2024 03:54:35 server2 maldet(1594789): {scan} scan report saved, to view run: maldet --report 241005-0353.1594789 Oct 06 2024 03:19:59 server2 maldet(1900037): {update} checking for available updates... Oct 06 2024 03:19:59 server2 maldet(1900037): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Oct 06 2024 03:19:59 server2 maldet(1900037): {update} hashing install files and checking against server... Oct 06 2024 03:19:59 server2 maldet(1900037): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Oct 06 2024 03:19:59 server2 maldet(1900037): {update} latest version already installed. Oct 06 2024 03:19:59 server2 maldet(1900170): {sigup} performing signature update check... Oct 06 2024 03:19:59 server2 maldet(1900170): {sigup} local signature set is version 202410041307746 Oct 06 2024 03:19:59 server2 maldet(1900170): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Oct 06 2024 03:19:59 server2 maldet(1900170): {sigup} latest signature set already installed Oct 06 2024 03:19:59 server2 maldet(1900281): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Oct 06 2024 03:20:03 server2 maldet(1900281): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Oct 06 2024 03:20:03 server2 maldet(1900281): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Oct 06 2024 03:20:03 server2 maldet(1900281): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Oct 06 2024 03:20:03 server2 maldet(1900281): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/cartforge/public_html/" "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/loco/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Oct 06 2024 03:20:47 server2 maldet(1900281): {scan} file list completed in 44s, found 3004 files... Oct 06 2024 03:20:47 server2 maldet(1900281): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Oct 06 2024 03:20:47 server2 maldet(1900281): {scan} scan of (3004 files) in progress... Oct 06 2024 03:21:48 server2 maldet(1900281): {scan} scan completed on : files 3004, malware hits 0, cleaned hits 0, time 109s Oct 06 2024 03:21:48 server2 maldet(1900281): {scan} scan report saved, to view run: maldet --report 241006-0319.1900281 Oct 07 2024 04:00:22 server2 maldet(2258125): {update} checking for available updates... Oct 07 2024 04:00:23 server2 maldet(2258125): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Oct 07 2024 04:00:23 server2 maldet(2258125): {update} hashing install files and checking against server... Oct 07 2024 04:00:23 server2 maldet(2258125): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Oct 07 2024 04:00:23 server2 maldet(2258125): {update} latest version already installed. Oct 07 2024 04:00:23 server2 maldet(2258258): {sigup} performing signature update check... Oct 07 2024 04:00:23 server2 maldet(2258258): {sigup} local signature set is version 202410041307746 Oct 07 2024 04:00:23 server2 maldet(2258258): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Oct 07 2024 04:00:24 server2 maldet(2258258): {sigup} new signature set 202410072062761 available Oct 07 2024 04:00:24 server2 maldet(2258258): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Oct 07 2024 04:00:24 server2 maldet(2258258): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Oct 07 2024 04:00:24 server2 maldet(2258258): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Oct 07 2024 04:00:24 server2 maldet(2258258): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Oct 07 2024 04:00:24 server2 maldet(2258258): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Oct 07 2024 04:00:24 server2 maldet(2258258): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Oct 07 2024 04:00:24 server2 maldet(2258258): {sigup} verified md5sum of maldet-sigpack.tgz Oct 07 2024 04:00:24 server2 maldet(2258258): {sigup} unpacked and installed maldet-sigpack.tgz Oct 07 2024 04:00:24 server2 maldet(2258258): {sigup} verified md5sum of maldet-clean.tgz Oct 07 2024 04:00:24 server2 maldet(2258258): {sigup} unpacked and installed maldet-clean.tgz Oct 07 2024 04:00:25 server2 maldet(2258258): {sigup} signature set update completed Oct 07 2024 04:00:25 server2 maldet(2258258): {sigup} 17638 signatures (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Oct 07 2024 04:00:25 server2 maldet(2258487): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Oct 07 2024 04:00:26 server2 maldet(2258487): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Oct 07 2024 04:00:26 server2 maldet(2258487): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Oct 07 2024 04:00:26 server2 maldet(2258487): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Oct 07 2024 04:00:26 server2 maldet(2258487): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/cartforge/public_html/" "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/loco/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Oct 07 2024 04:01:37 server2 maldet(2258487): {scan} file list completed in 71s, found 2340 files... Oct 07 2024 04:01:37 server2 maldet(2258487): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Oct 07 2024 04:01:37 server2 maldet(2258487): {scan} scan of (2340 files) in progress... Oct 07 2024 04:02:06 server2 maldet(2258487): {scan} scan completed on : files 2340, malware hits 0, cleaned hits 0, time 100s Oct 07 2024 04:02:06 server2 maldet(2258487): {scan} scan report saved, to view run: maldet --report 241007-0400.2258487 Oct 08 2024 03:14:39 server2 maldet(2544801): {update} checking for available updates... Oct 08 2024 03:14:39 server2 maldet(2544801): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Oct 08 2024 03:14:39 server2 maldet(2544801): {update} hashing install files and checking against server... Oct 08 2024 03:14:39 server2 maldet(2544801): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Oct 08 2024 03:14:39 server2 maldet(2544801): {update} latest version already installed. Oct 08 2024 03:14:39 server2 maldet(2544934): {sigup} performing signature update check... Oct 08 2024 03:14:39 server2 maldet(2544934): {sigup} local signature set is version 202410072062761 Oct 08 2024 03:14:39 server2 maldet(2544934): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Oct 08 2024 03:14:39 server2 maldet(2544934): {sigup} latest signature set already installed Oct 08 2024 03:14:39 server2 maldet(2545045): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Oct 08 2024 03:14:41 server2 maldet(2545045): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Oct 08 2024 03:14:41 server2 maldet(2545045): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Oct 08 2024 03:14:41 server2 maldet(2545045): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Oct 08 2024 03:14:41 server2 maldet(2545045): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/cartforge/public_html/" "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/loco/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Oct 08 2024 03:15:54 server2 maldet(2545045): {scan} file list completed in 73s, found 2478 files... Oct 08 2024 03:15:54 server2 maldet(2545045): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Oct 08 2024 03:15:54 server2 maldet(2545045): {scan} scan of (2478 files) in progress... Oct 08 2024 03:16:17 server2 maldet(2545045): {scan} scan completed on : files 2478, malware hits 0, cleaned hits 0, time 98s Oct 08 2024 03:16:17 server2 maldet(2545045): {scan} scan report saved, to view run: maldet --report 241008-0314.2545045 Oct 09 2024 03:25:45 server2 maldet(3023667): {update} checking for available updates... Oct 09 2024 03:25:45 server2 maldet(3023667): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Oct 09 2024 03:25:45 server2 maldet(3023667): {update} hashing install files and checking against server... Oct 09 2024 03:25:45 server2 maldet(3023667): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Oct 09 2024 03:25:45 server2 maldet(3023667): {update} latest version already installed. Oct 09 2024 03:25:45 server2 maldet(3023800): {sigup} performing signature update check... Oct 09 2024 03:25:45 server2 maldet(3023800): {sigup} local signature set is version 202410072062761 Oct 09 2024 03:25:45 server2 maldet(3023800): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Oct 09 2024 03:25:45 server2 maldet(3023800): {sigup} latest signature set already installed Oct 09 2024 03:25:45 server2 maldet(3023911): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Oct 09 2024 03:25:47 server2 maldet(3023911): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Oct 09 2024 03:25:47 server2 maldet(3023911): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Oct 09 2024 03:25:47 server2 maldet(3023911): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Oct 09 2024 03:25:47 server2 maldet(3023911): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/cartforge/public_html/" "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/loco/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Oct 09 2024 03:26:19 server2 maldet(3023911): {scan} file list completed in 32s, found 2786 files... Oct 09 2024 03:26:19 server2 maldet(3023911): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Oct 09 2024 03:26:19 server2 maldet(3023911): {scan} scan of (2786 files) in progress... Oct 09 2024 03:26:52 server2 maldet(3023911): {scan} scan completed on : files 2786, malware hits 0, cleaned hits 0, time 67s Oct 09 2024 03:26:52 server2 maldet(3023911): {scan} scan report saved, to view run: maldet --report 241009-0325.3023911 Oct 10 2024 03:25:51 server2 maldet(3337855): {update} checking for available updates... Oct 10 2024 03:25:51 server2 maldet(3337855): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Oct 10 2024 03:25:51 server2 maldet(3337855): {update} hashing install files and checking against server... Oct 10 2024 03:25:51 server2 maldet(3337855): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Oct 10 2024 03:25:51 server2 maldet(3337855): {update} latest version already installed. Oct 10 2024 03:25:51 server2 maldet(3337988): {sigup} performing signature update check... Oct 10 2024 03:25:51 server2 maldet(3337988): {sigup} local signature set is version 202410072062761 Oct 10 2024 03:25:51 server2 maldet(3337988): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Oct 10 2024 03:25:51 server2 maldet(3337988): {sigup} new signature set 202410102917829 available Oct 10 2024 03:25:52 server2 maldet(3337988): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Oct 10 2024 03:25:52 server2 maldet(3337988): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Oct 10 2024 03:25:52 server2 maldet(3337988): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Oct 10 2024 03:25:52 server2 maldet(3337988): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Oct 10 2024 03:25:52 server2 maldet(3337988): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Oct 10 2024 03:25:52 server2 maldet(3337988): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Oct 10 2024 03:25:52 server2 maldet(3337988): {sigup} verified md5sum of maldet-sigpack.tgz Oct 10 2024 03:25:52 server2 maldet(3337988): {sigup} unpacked and installed maldet-sigpack.tgz Oct 10 2024 03:25:52 server2 maldet(3337988): {sigup} verified md5sum of maldet-clean.tgz Oct 10 2024 03:25:52 server2 maldet(3337988): {sigup} unpacked and installed maldet-clean.tgz Oct 10 2024 03:25:52 server2 maldet(3337988): {sigup} signature set update completed Oct 10 2024 03:25:52 server2 maldet(3337988): {sigup} 17638 signatures (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Oct 10 2024 03:25:52 server2 maldet(3338216): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Oct 10 2024 03:25:53 server2 maldet(3338216): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Oct 10 2024 03:25:53 server2 maldet(3338216): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Oct 10 2024 03:25:53 server2 maldet(3338216): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Oct 10 2024 03:25:53 server2 maldet(3338216): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/cartforge/public_html/" "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/loco/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Oct 10 2024 03:26:48 server2 maldet(3338216): {scan} file list completed in 55s, found 2055 files... Oct 10 2024 03:26:48 server2 maldet(3338216): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Oct 10 2024 03:26:48 server2 maldet(3338216): {scan} scan of (2055 files) in progress... Oct 10 2024 03:27:05 server2 maldet(3338216): {scan} scan completed on : files 2055, malware hits 0, cleaned hits 0, time 73s Oct 10 2024 03:27:05 server2 maldet(3338216): {scan} scan report saved, to view run: maldet --report 241010-0325.3338216 Oct 11 2024 03:39:58 server2 maldet(3640785): {update} checking for available updates... Oct 11 2024 03:39:58 server2 maldet(3640785): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Oct 11 2024 03:39:58 server2 maldet(3640785): {update} hashing install files and checking against server... Oct 11 2024 03:39:58 server2 maldet(3640785): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Oct 11 2024 03:39:58 server2 maldet(3640785): {update} latest version already installed. Oct 11 2024 03:39:58 server2 maldet(3640918): {sigup} performing signature update check... Oct 11 2024 03:39:58 server2 maldet(3640918): {sigup} local signature set is version 202410102917829 Oct 11 2024 03:39:58 server2 maldet(3640918): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Oct 11 2024 03:39:58 server2 maldet(3640918): {sigup} latest signature set already installed Oct 11 2024 03:39:58 server2 maldet(3641029): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Oct 11 2024 03:39:59 server2 maldet(3641029): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Oct 11 2024 03:39:59 server2 maldet(3641029): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Oct 11 2024 03:39:59 server2 maldet(3641029): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Oct 11 2024 03:39:59 server2 maldet(3641029): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/cartforge/public_html/" "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/loco/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Oct 11 2024 03:41:11 server2 maldet(3641029): {scan} file list completed in 72s, found 3324 files... Oct 11 2024 03:41:11 server2 maldet(3641029): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Oct 11 2024 03:41:11 server2 maldet(3641029): {scan} scan of (3324 files) in progress... Oct 11 2024 03:41:56 server2 maldet(3641029): {scan} scan completed on : files 3324, malware hits 0, cleaned hits 0, time 118s Oct 11 2024 03:41:56 server2 maldet(3641029): {scan} scan report saved, to view run: maldet --report 241011-0339.3641029 Oct 12 2024 03:45:15 server2 maldet(4027493): {update} checking for available updates... Oct 12 2024 03:45:16 server2 maldet(4027493): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Oct 12 2024 03:45:16 server2 maldet(4027493): {update} hashing install files and checking against server... Oct 12 2024 03:45:16 server2 maldet(4027493): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Oct 12 2024 03:45:16 server2 maldet(4027493): {update} latest version already installed. Oct 12 2024 03:45:16 server2 maldet(4027626): {sigup} performing signature update check... Oct 12 2024 03:45:16 server2 maldet(4027626): {sigup} local signature set is version 202410102917829 Oct 12 2024 03:45:16 server2 maldet(4027626): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Oct 12 2024 03:45:16 server2 maldet(4027626): {sigup} latest signature set already installed Oct 12 2024 03:45:16 server2 maldet(4027743): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Oct 12 2024 03:45:17 server2 maldet(4027743): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Oct 12 2024 03:45:17 server2 maldet(4027743): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Oct 12 2024 03:45:17 server2 maldet(4027743): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Oct 12 2024 03:45:17 server2 maldet(4027743): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/cartforge/public_html/" "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/loco/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Oct 12 2024 03:46:00 server2 maldet(4027743): {scan} file list completed in 43s, found 2274 files... Oct 12 2024 03:46:00 server2 maldet(4027743): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Oct 12 2024 03:46:00 server2 maldet(4027743): {scan} scan of (2274 files) in progress... Oct 12 2024 03:46:19 server2 maldet(4027743): {scan} scan completed on : files 2274, malware hits 0, cleaned hits 0, time 63s Oct 12 2024 03:46:19 server2 maldet(4027743): {scan} scan report saved, to view run: maldet --report 241012-0345.4027743 Oct 13 2024 03:11:24 server2 maldet(190036): {update} checking for available updates... Oct 13 2024 03:11:25 server2 maldet(190036): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Oct 13 2024 03:11:25 server2 maldet(190036): {update} hashing install files and checking against server... Oct 13 2024 03:11:25 server2 maldet(190036): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Oct 13 2024 03:11:25 server2 maldet(190036): {update} latest version already installed. Oct 13 2024 03:11:25 server2 maldet(190169): {sigup} performing signature update check... Oct 13 2024 03:11:25 server2 maldet(190169): {sigup} local signature set is version 202410102917829 Oct 13 2024 03:11:25 server2 maldet(190169): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Oct 13 2024 03:11:25 server2 maldet(190169): {sigup} new signature set 202410133691617 available Oct 13 2024 03:11:25 server2 maldet(190169): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Oct 13 2024 03:11:25 server2 maldet(190169): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Oct 13 2024 03:11:25 server2 maldet(190169): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Oct 13 2024 03:11:25 server2 maldet(190169): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Oct 13 2024 03:11:25 server2 maldet(190169): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Oct 13 2024 03:11:25 server2 maldet(190169): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Oct 13 2024 03:11:25 server2 maldet(190169): {sigup} verified md5sum of maldet-sigpack.tgz Oct 13 2024 03:11:25 server2 maldet(190169): {sigup} unpacked and installed maldet-sigpack.tgz Oct 13 2024 03:11:25 server2 maldet(190169): {sigup} verified md5sum of maldet-clean.tgz Oct 13 2024 03:11:25 server2 maldet(190169): {sigup} unpacked and installed maldet-clean.tgz Oct 13 2024 03:11:25 server2 maldet(190169): {sigup} signature set update completed Oct 13 2024 03:11:25 server2 maldet(190169): {sigup} 17638 signatures (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Oct 13 2024 03:11:26 server2 maldet(190400): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Oct 13 2024 03:11:27 server2 maldet(190400): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Oct 13 2024 03:11:27 server2 maldet(190400): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Oct 13 2024 03:11:27 server2 maldet(190400): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Oct 13 2024 03:11:27 server2 maldet(190400): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/cartforge/public_html/" "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/loco/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Oct 13 2024 03:12:10 server2 maldet(190400): {scan} file list completed in 43s, found 2138 files... Oct 13 2024 03:12:10 server2 maldet(190400): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Oct 13 2024 03:12:10 server2 maldet(190400): {scan} scan of (2138 files) in progress... Oct 13 2024 03:12:37 server2 maldet(190400): {scan} scan completed on : files 2138, malware hits 0, cleaned hits 0, time 71s Oct 13 2024 03:12:37 server2 maldet(190400): {scan} scan report saved, to view run: maldet --report 241013-0311.190400 Oct 14 2024 03:59:13 server2 maldet(511782): {update} checking for available updates... Oct 14 2024 03:59:13 server2 maldet(511782): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Oct 14 2024 03:59:13 server2 maldet(511782): {update} hashing install files and checking against server... Oct 14 2024 03:59:13 server2 maldet(511782): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Oct 14 2024 03:59:13 server2 maldet(511782): {update} latest version already installed. Oct 14 2024 03:59:14 server2 maldet(511918): {sigup} performing signature update check... Oct 14 2024 03:59:14 server2 maldet(511918): {sigup} local signature set is version 202410133691617 Oct 14 2024 03:59:14 server2 maldet(511918): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Oct 14 2024 03:59:14 server2 maldet(511918): {sigup} latest signature set already installed Oct 14 2024 03:59:14 server2 maldet(512040): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Oct 14 2024 03:59:15 server2 maldet(512040): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Oct 14 2024 03:59:15 server2 maldet(512040): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Oct 14 2024 03:59:15 server2 maldet(512040): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Oct 14 2024 03:59:15 server2 maldet(512040): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/cartforge/public_html/" "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/loco/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Oct 14 2024 04:00:15 server2 maldet(512040): {scan} file list completed in 60s, found 3062 files... Oct 14 2024 04:00:15 server2 maldet(512040): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Oct 14 2024 04:00:15 server2 maldet(512040): {scan} scan of (3062 files) in progress... Oct 14 2024 04:01:05 server2 maldet(512040): {scan} scan completed on : files 3062, malware hits 0, cleaned hits 0, time 110s Oct 14 2024 04:01:05 server2 maldet(512040): {scan} scan report saved, to view run: maldet --report 241014-0359.512040 Oct 15 2024 03:33:08 server2 maldet(830653): {update} checking for available updates... Oct 15 2024 03:33:08 server2 maldet(830653): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Oct 15 2024 03:33:08 server2 maldet(830653): {update} hashing install files and checking against server... Oct 15 2024 03:33:08 server2 maldet(830653): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Oct 15 2024 03:33:08 server2 maldet(830653): {update} latest version already installed. Oct 15 2024 03:33:09 server2 maldet(830786): {sigup} performing signature update check... Oct 15 2024 03:33:09 server2 maldet(830786): {sigup} local signature set is version 202410133691617 Oct 15 2024 03:33:09 server2 maldet(830786): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Oct 15 2024 03:33:09 server2 maldet(830786): {sigup} latest signature set already installed Oct 15 2024 03:33:09 server2 maldet(830897): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Oct 15 2024 03:33:10 server2 maldet(830897): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Oct 15 2024 03:33:10 server2 maldet(830897): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Oct 15 2024 03:33:10 server2 maldet(830897): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Oct 15 2024 03:33:10 server2 maldet(830897): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/cartforge/public_html/" "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/loco/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Oct 15 2024 03:33:52 server2 maldet(830897): {scan} file list completed in 42s, found 2148 files... Oct 15 2024 03:33:52 server2 maldet(830897): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Oct 15 2024 03:33:53 server2 maldet(830897): {scan} scan of (2148 files) in progress... Oct 15 2024 03:34:10 server2 maldet(830897): {scan} scan completed on : files 2148, malware hits 0, cleaned hits 0, time 61s Oct 15 2024 03:34:10 server2 maldet(830897): {scan} scan report saved, to view run: maldet --report 241015-0333.830897 Oct 16 2024 03:25:30 server2 maldet(1157349): {update} checking for available updates... Oct 16 2024 03:25:30 server2 maldet(1157349): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Oct 16 2024 03:25:30 server2 maldet(1157349): {update} hashing install files and checking against server... Oct 16 2024 03:25:30 server2 maldet(1157349): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Oct 16 2024 03:25:30 server2 maldet(1157349): {update} latest version already installed. Oct 16 2024 03:25:30 server2 maldet(1157482): {sigup} performing signature update check... Oct 16 2024 03:25:30 server2 maldet(1157482): {sigup} local signature set is version 202410133691617 Oct 16 2024 03:25:30 server2 maldet(1157482): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Oct 16 2024 03:25:30 server2 maldet(1157482): {sigup} new signature set 20241016273515 available Oct 16 2024 03:25:30 server2 maldet(1157482): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Oct 16 2024 03:25:31 server2 maldet(1157482): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Oct 16 2024 03:25:31 server2 maldet(1157482): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Oct 16 2024 03:25:31 server2 maldet(1157482): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Oct 16 2024 03:25:31 server2 maldet(1157482): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Oct 16 2024 03:25:31 server2 maldet(1157482): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Oct 16 2024 03:25:31 server2 maldet(1157482): {sigup} verified md5sum of maldet-sigpack.tgz Oct 16 2024 03:25:31 server2 maldet(1157482): {sigup} unpacked and installed maldet-sigpack.tgz Oct 16 2024 03:25:31 server2 maldet(1157482): {sigup} verified md5sum of maldet-clean.tgz Oct 16 2024 03:25:31 server2 maldet(1157482): {sigup} unpacked and installed maldet-clean.tgz Oct 16 2024 03:25:31 server2 maldet(1157482): {sigup} signature set update completed Oct 16 2024 03:25:31 server2 maldet(1157482): {sigup} 17638 signatures (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Oct 16 2024 03:25:31 server2 maldet(1157710): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Oct 16 2024 03:25:33 server2 maldet(1157710): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Oct 16 2024 03:25:33 server2 maldet(1157710): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Oct 16 2024 03:25:33 server2 maldet(1157710): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Oct 16 2024 03:25:33 server2 maldet(1157710): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/cartforge/public_html/" "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/loco/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Oct 16 2024 03:26:11 server2 maldet(1157710): {scan} file list completed in 38s, found 2171 files... Oct 16 2024 03:26:11 server2 maldet(1157710): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Oct 16 2024 03:26:11 server2 maldet(1157710): {scan} scan of (2171 files) in progress... Oct 16 2024 03:26:51 server2 maldet(1157710): {scan} scan completed on : files 2171, malware hits 0, cleaned hits 0, time 80s Oct 16 2024 03:26:51 server2 maldet(1157710): {scan} scan report saved, to view run: maldet --report 241016-0325.1157710 Oct 17 2024 03:51:50 server2 maldet(1483293): {update} checking for available updates... Oct 17 2024 03:51:50 server2 maldet(1483293): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Oct 17 2024 03:51:51 server2 maldet(1483293): {update} hashing install files and checking against server... Oct 17 2024 03:51:51 server2 maldet(1483293): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Oct 17 2024 03:51:51 server2 maldet(1483293): {update} latest version already installed. Oct 17 2024 03:51:51 server2 maldet(1483426): {sigup} performing signature update check... Oct 17 2024 03:51:51 server2 maldet(1483426): {sigup} local signature set is version 20241016273515 Oct 17 2024 03:51:51 server2 maldet(1483426): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Oct 17 2024 03:51:51 server2 maldet(1483426): {sigup} latest signature set already installed Oct 17 2024 03:51:51 server2 maldet(1483537): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Oct 17 2024 03:51:52 server2 maldet(1483537): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Oct 17 2024 03:51:52 server2 maldet(1483537): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Oct 17 2024 03:51:52 server2 maldet(1483537): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Oct 17 2024 03:51:52 server2 maldet(1483537): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/cartforge/public_html/" "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/loco/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Oct 17 2024 03:53:19 server2 maldet(1483537): {scan} file list completed in 87s, found 691 files... Oct 17 2024 03:53:19 server2 maldet(1483537): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Oct 17 2024 03:53:19 server2 maldet(1483537): {scan} scan of (691 files) in progress... Oct 17 2024 03:53:46 server2 maldet(1483537): {scan} scan completed on : files 691, malware hits 0, cleaned hits 0, time 115s Oct 17 2024 03:53:46 server2 maldet(1483537): {scan} scan report saved, to view run: maldet --report 241017-0351.1483537 Oct 18 2024 03:42:44 server2 maldet(1819189): {update} checking for available updates... Oct 18 2024 03:42:44 server2 maldet(1819189): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Oct 18 2024 03:42:44 server2 maldet(1819189): {update} hashing install files and checking against server... Oct 18 2024 03:42:44 server2 maldet(1819189): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Oct 18 2024 03:42:44 server2 maldet(1819189): {update} latest version already installed. Oct 18 2024 03:42:44 server2 maldet(1819322): {sigup} performing signature update check... Oct 18 2024 03:42:44 server2 maldet(1819322): {sigup} local signature set is version 20241016273515 Oct 18 2024 03:42:45 server2 maldet(1819322): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Oct 18 2024 03:42:45 server2 maldet(1819322): {sigup} latest signature set already installed Oct 18 2024 03:42:45 server2 maldet(1819433): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Oct 18 2024 03:42:46 server2 maldet(1819433): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Oct 18 2024 03:42:46 server2 maldet(1819433): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Oct 18 2024 03:42:46 server2 maldet(1819433): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Oct 18 2024 03:42:46 server2 maldet(1819433): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/cartforge/public_html/" "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/loco/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Oct 18 2024 03:43:40 server2 maldet(1819433): {scan} file list completed in 54s, found 2074 files... Oct 18 2024 03:43:40 server2 maldet(1819433): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Oct 18 2024 03:43:40 server2 maldet(1819433): {scan} scan of (2074 files) in progress... Oct 18 2024 03:43:59 server2 maldet(1819433): {scan} scan completed on : files 2074, malware hits 0, cleaned hits 0, time 74s Oct 18 2024 03:43:59 server2 maldet(1819433): {scan} scan report saved, to view run: maldet --report 241018-0342.1819433 Oct 19 2024 03:25:08 server2 maldet(2173732): {update} checking for available updates... Oct 19 2024 03:25:08 server2 maldet(2173732): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Oct 19 2024 03:25:08 server2 maldet(2173732): {update} hashing install files and checking against server... Oct 19 2024 03:25:08 server2 maldet(2173732): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Oct 19 2024 03:25:08 server2 maldet(2173732): {update} latest version already installed. Oct 19 2024 03:25:08 server2 maldet(2173866): {sigup} performing signature update check... Oct 19 2024 03:25:08 server2 maldet(2173866): {sigup} local signature set is version 20241016273515 Oct 19 2024 03:25:08 server2 maldet(2173866): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Oct 19 2024 03:25:08 server2 maldet(2173866): {sigup} new signature set 20241019573743 available Oct 19 2024 03:25:08 server2 maldet(2173866): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Oct 19 2024 03:25:08 server2 maldet(2173866): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Oct 19 2024 03:25:09 server2 maldet(2173866): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Oct 19 2024 03:25:09 server2 maldet(2173866): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Oct 19 2024 03:25:09 server2 maldet(2173866): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Oct 19 2024 03:25:09 server2 maldet(2173866): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Oct 19 2024 03:25:09 server2 maldet(2173866): {sigup} verified md5sum of maldet-sigpack.tgz Oct 19 2024 03:25:09 server2 maldet(2173866): {sigup} unpacked and installed maldet-sigpack.tgz Oct 19 2024 03:25:09 server2 maldet(2173866): {sigup} verified md5sum of maldet-clean.tgz Oct 19 2024 03:25:09 server2 maldet(2173866): {sigup} unpacked and installed maldet-clean.tgz Oct 19 2024 03:25:09 server2 maldet(2173866): {sigup} signature set update completed Oct 19 2024 03:25:09 server2 maldet(2173866): {sigup} 17638 signatures (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Oct 19 2024 03:25:09 server2 maldet(2174095): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Oct 19 2024 03:25:10 server2 maldet(2174095): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Oct 19 2024 03:25:10 server2 maldet(2174095): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Oct 19 2024 03:25:10 server2 maldet(2174095): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Oct 19 2024 03:25:10 server2 maldet(2174095): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/cartforge/public_html/" "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/loco/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Oct 19 2024 03:25:58 server2 maldet(2174095): {scan} file list completed in 48s, found 2170 files... Oct 19 2024 03:25:58 server2 maldet(2174095): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Oct 19 2024 03:25:58 server2 maldet(2174095): {scan} scan of (2170 files) in progress... Oct 19 2024 03:26:26 server2 maldet(2174095): {scan} scan completed on : files 2170, malware hits 0, cleaned hits 0, time 77s Oct 19 2024 03:26:26 server2 maldet(2174095): {scan} scan report saved, to view run: maldet --report 241019-0325.2174095 Oct 20 2024 03:09:47 server2 maldet(2574292): {update} checking for available updates... Oct 20 2024 03:09:47 server2 maldet(2574292): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Oct 20 2024 03:09:47 server2 maldet(2574292): {update} hashing install files and checking against server... Oct 20 2024 03:09:47 server2 maldet(2574292): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Oct 20 2024 03:09:47 server2 maldet(2574292): {update} latest version already installed. Oct 20 2024 03:09:47 server2 maldet(2574425): {sigup} performing signature update check... Oct 20 2024 03:09:47 server2 maldet(2574425): {sigup} local signature set is version 20241019573743 Oct 20 2024 03:09:47 server2 maldet(2574425): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Oct 20 2024 03:09:47 server2 maldet(2574425): {sigup} latest signature set already installed Oct 20 2024 03:09:47 server2 maldet(2574536): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Oct 20 2024 03:09:48 server2 maldet(2574536): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Oct 20 2024 03:09:48 server2 maldet(2574536): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Oct 20 2024 03:09:48 server2 maldet(2574536): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Oct 20 2024 03:09:48 server2 maldet(2574536): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/cartforge/public_html/" "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/loco/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Oct 20 2024 03:10:30 server2 maldet(2574536): {scan} file list completed in 42s, found 2625 files... Oct 20 2024 03:10:30 server2 maldet(2574536): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Oct 20 2024 03:10:30 server2 maldet(2574536): {scan} scan of (2625 files) in progress... Oct 20 2024 03:10:59 server2 maldet(2574536): {scan} scan completed on : files 2625, malware hits 0, cleaned hits 0, time 72s Oct 20 2024 03:10:59 server2 maldet(2574536): {scan} scan report saved, to view run: maldet --report 241020-0309.2574536 Oct 21 2024 03:20:59 server2 maldet(2895666): {update} checking for available updates... Oct 21 2024 03:20:59 server2 maldet(2895666): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Oct 21 2024 03:20:59 server2 maldet(2895666): {update} hashing install files and checking against server... Oct 21 2024 03:20:59 server2 maldet(2895666): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Oct 21 2024 03:20:59 server2 maldet(2895666): {update} latest version already installed. Oct 21 2024 03:20:59 server2 maldet(2895799): {sigup} performing signature update check... Oct 21 2024 03:20:59 server2 maldet(2895799): {sigup} local signature set is version 20241019573743 Oct 21 2024 03:21:00 server2 maldet(2895799): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Oct 21 2024 03:21:00 server2 maldet(2895799): {sigup} latest signature set already installed Oct 21 2024 03:21:00 server2 maldet(2895910): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Oct 21 2024 03:21:01 server2 maldet(2895910): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Oct 21 2024 03:21:01 server2 maldet(2895910): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Oct 21 2024 03:21:01 server2 maldet(2895910): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Oct 21 2024 03:21:01 server2 maldet(2895910): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/cartforge/public_html/" "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/loco/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Oct 21 2024 03:22:17 server2 maldet(2895910): {scan} file list completed in 76s, found 2392 files... Oct 21 2024 03:22:17 server2 maldet(2895910): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Oct 21 2024 03:22:17 server2 maldet(2895910): {scan} scan of (2392 files) in progress... Oct 21 2024 03:22:43 server2 maldet(2895910): {scan} scan completed on : files 2392, malware hits 0, cleaned hits 0, time 102s Oct 21 2024 03:22:43 server2 maldet(2895910): {scan} scan report saved, to view run: maldet --report 241021-0321.2895910 Oct 22 2024 03:45:56 server2 maldet(3239755): {update} checking for available updates... Oct 22 2024 03:45:56 server2 maldet(3239755): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Oct 22 2024 03:45:56 server2 maldet(3239755): {update} hashing install files and checking against server... Oct 22 2024 03:45:57 server2 maldet(3239755): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Oct 22 2024 03:45:57 server2 maldet(3239755): {update} latest version already installed. Oct 22 2024 03:45:57 server2 maldet(3239888): {sigup} performing signature update check... Oct 22 2024 03:45:57 server2 maldet(3239888): {sigup} local signature set is version 20241019573743 Oct 22 2024 03:45:57 server2 maldet(3239888): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Oct 22 2024 03:45:57 server2 maldet(3239888): {sigup} latest signature set already installed Oct 22 2024 03:45:57 server2 maldet(3239999): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Oct 22 2024 03:45:57 server2 maldet(3239999): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Oct 22 2024 03:45:57 server2 maldet(3239999): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Oct 22 2024 03:45:57 server2 maldet(3239999): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Oct 22 2024 03:45:57 server2 maldet(3239999): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/cartforge/public_html/" "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/loco/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Oct 22 2024 03:46:49 server2 maldet(3239999): {scan} file list completed in 51s, found 3925 files... Oct 22 2024 03:46:49 server2 maldet(3239999): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Oct 22 2024 03:46:49 server2 maldet(3239999): {scan} scan of (3925 files) in progress... Oct 22 2024 03:47:55 server2 maldet(3239999): {scan} scan completed on : files 3925, malware hits 0, cleaned hits 0, time 118s Oct 22 2024 03:47:55 server2 maldet(3239999): {scan} scan report saved, to view run: maldet --report 241022-0345.3239999 Oct 23 2024 03:45:44 server2 maldet(3687174): {update} checking for available updates... Oct 23 2024 03:45:44 server2 maldet(3687174): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Oct 23 2024 03:45:44 server2 maldet(3687174): {update} hashing install files and checking against server... Oct 23 2024 03:45:44 server2 maldet(3687174): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Oct 23 2024 03:45:44 server2 maldet(3687174): {update} latest version already installed. Oct 23 2024 03:45:44 server2 maldet(3687307): {sigup} performing signature update check... Oct 23 2024 03:45:44 server2 maldet(3687307): {sigup} local signature set is version 20241019573743 Oct 23 2024 03:45:44 server2 maldet(3687307): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Oct 23 2024 03:45:44 server2 maldet(3687307): {sigup} latest signature set already installed Oct 23 2024 03:45:44 server2 maldet(3687421): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Oct 23 2024 03:45:45 server2 maldet(3687421): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Oct 23 2024 03:45:45 server2 maldet(3687421): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Oct 23 2024 03:45:45 server2 maldet(3687421): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Oct 23 2024 03:45:45 server2 maldet(3687421): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/cartforge/public_html/" "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/loco/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Oct 23 2024 03:46:26 server2 maldet(3687421): {scan} file list completed in 41s, found 4236 files... Oct 23 2024 03:46:26 server2 maldet(3687421): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Oct 23 2024 03:46:26 server2 maldet(3687421): {scan} scan of (4236 files) in progress... Oct 23 2024 03:48:27 server2 maldet(3687421): {scan} scan completed on : files 4236, malware hits 0, cleaned hits 0, time 163s Oct 23 2024 03:48:27 server2 maldet(3687421): {scan} scan report saved, to view run: maldet --report 241023-0345.3687421 Oct 24 2024 03:18:48 server2 maldet(4069461): {update} checking for available updates... Oct 24 2024 03:18:48 server2 maldet(4069461): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Oct 24 2024 03:18:48 server2 maldet(4069461): {update} hashing install files and checking against server... Oct 24 2024 03:18:48 server2 maldet(4069461): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Oct 24 2024 03:18:48 server2 maldet(4069461): {update} latest version already installed. Oct 24 2024 03:18:48 server2 maldet(4069595): {sigup} performing signature update check... Oct 24 2024 03:18:48 server2 maldet(4069595): {sigup} local signature set is version 20241019573743 Oct 24 2024 03:18:49 server2 maldet(4069595): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Oct 24 2024 03:18:49 server2 maldet(4069595): {sigup} new signature set 202410221331455 available Oct 24 2024 03:18:49 server2 maldet(4069595): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Oct 24 2024 03:18:49 server2 maldet(4069595): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Oct 24 2024 03:18:49 server2 maldet(4069595): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Oct 24 2024 03:18:49 server2 maldet(4069595): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Oct 24 2024 03:18:49 server2 maldet(4069595): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Oct 24 2024 03:18:49 server2 maldet(4069595): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Oct 24 2024 03:18:49 server2 maldet(4069595): {sigup} verified md5sum of maldet-sigpack.tgz Oct 24 2024 03:18:49 server2 maldet(4069595): {sigup} unpacked and installed maldet-sigpack.tgz Oct 24 2024 03:18:49 server2 maldet(4069595): {sigup} verified md5sum of maldet-clean.tgz Oct 24 2024 03:18:49 server2 maldet(4069595): {sigup} unpacked and installed maldet-clean.tgz Oct 24 2024 03:18:49 server2 maldet(4069595): {sigup} signature set update completed Oct 24 2024 03:18:49 server2 maldet(4069595): {sigup} 17638 signatures (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Oct 24 2024 03:18:50 server2 maldet(4069824): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Oct 24 2024 03:18:50 server2 maldet(4069824): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Oct 24 2024 03:18:50 server2 maldet(4069824): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Oct 24 2024 03:18:50 server2 maldet(4069824): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Oct 24 2024 03:18:50 server2 maldet(4069824): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/cartforge/public_html/" "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/loco/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Oct 24 2024 03:19:48 server2 maldet(4069824): {scan} file list completed in 58s, found 12486 files... Oct 24 2024 03:19:48 server2 maldet(4069824): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Oct 24 2024 03:19:48 server2 maldet(4069824): {scan} scan of (12486 files) in progress... Oct 24 2024 03:27:59 server2 maldet(4069824): {scan} scan completed on : files 12486, malware hits 0, cleaned hits 0, time 549s Oct 24 2024 03:27:59 server2 maldet(4069824): {scan} scan report saved, to view run: maldet --report 241024-0318.4069824 Oct 25 2024 03:21:42 server2 maldet(214557): {update} checking for available updates... Oct 25 2024 03:21:42 server2 maldet(214557): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Oct 25 2024 03:21:42 server2 maldet(214557): {update} hashing install files and checking against server... Oct 25 2024 03:21:42 server2 maldet(214557): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Oct 25 2024 03:21:42 server2 maldet(214557): {update} latest version already installed. Oct 25 2024 03:21:43 server2 maldet(214691): {sigup} performing signature update check... Oct 25 2024 03:21:43 server2 maldet(214691): {sigup} local signature set is version 202410221331455 Oct 25 2024 03:21:43 server2 maldet(214691): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Oct 25 2024 03:21:43 server2 maldet(214691): {sigup} latest signature set already installed Oct 25 2024 03:21:43 server2 maldet(214802): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Oct 25 2024 03:21:44 server2 maldet(214802): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Oct 25 2024 03:21:44 server2 maldet(214802): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Oct 25 2024 03:21:44 server2 maldet(214802): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Oct 25 2024 03:21:44 server2 maldet(214802): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/cartforge/public_html/" "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/loco/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Oct 25 2024 03:22:32 server2 maldet(214802): {scan} file list completed in 48s, found 43536 files... Oct 25 2024 03:22:32 server2 maldet(214802): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Oct 25 2024 03:22:32 server2 maldet(214802): {scan} scan of (43536 files) in progress... Oct 25 2024 03:35:24 server2 maldet(214802): {scan} scan completed on : files 43536, malware hits 0, cleaned hits 0, time 821s Oct 25 2024 03:35:24 server2 maldet(214802): {scan} scan report saved, to view run: maldet --report 241025-0321.214802 Oct 26 2024 03:36:34 server2 maldet(594776): {update} checking for available updates... Oct 26 2024 03:36:34 server2 maldet(594776): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Oct 26 2024 03:36:34 server2 maldet(594776): {update} hashing install files and checking against server... Oct 26 2024 03:36:34 server2 maldet(594776): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Oct 26 2024 03:36:34 server2 maldet(594776): {update} latest version already installed. Oct 26 2024 03:36:34 server2 maldet(594909): {sigup} performing signature update check... Oct 26 2024 03:36:34 server2 maldet(594909): {sigup} local signature set is version 202410221331455 Oct 26 2024 03:36:34 server2 maldet(594909): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Oct 26 2024 03:36:34 server2 maldet(594909): {sigup} new signature set 202410252090927 available Oct 26 2024 03:36:34 server2 maldet(594909): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Oct 26 2024 03:36:34 server2 maldet(594909): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Oct 26 2024 03:36:35 server2 maldet(594909): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Oct 26 2024 03:36:35 server2 maldet(594909): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Oct 26 2024 03:36:35 server2 maldet(594909): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Oct 26 2024 03:36:35 server2 maldet(594909): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Oct 26 2024 03:36:35 server2 maldet(594909): {sigup} verified md5sum of maldet-sigpack.tgz Oct 26 2024 03:36:35 server2 maldet(594909): {sigup} unpacked and installed maldet-sigpack.tgz Oct 26 2024 03:36:35 server2 maldet(594909): {sigup} verified md5sum of maldet-clean.tgz Oct 26 2024 03:36:35 server2 maldet(594909): {sigup} unpacked and installed maldet-clean.tgz Oct 26 2024 03:36:35 server2 maldet(594909): {sigup} signature set update completed Oct 26 2024 03:36:35 server2 maldet(594909): {sigup} 17638 signatures (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Oct 26 2024 03:36:35 server2 maldet(595139): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Oct 26 2024 03:36:36 server2 maldet(595139): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Oct 26 2024 03:36:36 server2 maldet(595139): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Oct 26 2024 03:36:36 server2 maldet(595139): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Oct 26 2024 03:36:36 server2 maldet(595139): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/cartforge/public_html/" "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/loco/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Oct 26 2024 03:37:31 server2 maldet(595139): {scan} file list completed in 55s, found 13198 files... Oct 26 2024 03:37:31 server2 maldet(595139): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Oct 26 2024 03:37:31 server2 maldet(595139): {scan} scan of (13198 files) in progress... Oct 26 2024 03:47:01 server2 maldet(595139): {scan} scan completed on : files 13198, malware hits 0, cleaned hits 0, time 625s Oct 26 2024 03:47:01 server2 maldet(595139): {scan} scan report saved, to view run: maldet --report 241026-0336.595139 Oct 27 2024 03:49:49 server2 maldet(935129): {update} checking for available updates... Oct 27 2024 03:49:49 server2 maldet(935129): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Oct 27 2024 03:49:49 server2 maldet(935129): {update} hashing install files and checking against server... Oct 27 2024 03:49:49 server2 maldet(935129): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Oct 27 2024 03:49:49 server2 maldet(935129): {update} latest version already installed. Oct 27 2024 03:49:49 server2 maldet(935262): {sigup} performing signature update check... Oct 27 2024 03:49:49 server2 maldet(935262): {sigup} local signature set is version 202410252090927 Oct 27 2024 03:49:49 server2 maldet(935262): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Oct 27 2024 03:49:50 server2 maldet(935262): {sigup} latest signature set already installed Oct 27 2024 03:49:50 server2 maldet(935373): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Oct 27 2024 03:49:51 server2 maldet(935373): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Oct 27 2024 03:49:51 server2 maldet(935373): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Oct 27 2024 03:49:51 server2 maldet(935373): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Oct 27 2024 03:49:51 server2 maldet(935373): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/cartforge/public_html/" "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/loco/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Oct 27 2024 03:50:36 server2 maldet(935373): {scan} file list completed in 45s, found 10499 files... Oct 27 2024 03:50:36 server2 maldet(935373): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Oct 27 2024 03:50:37 server2 maldet(935373): {scan} scan of (10499 files) in progress... Oct 27 2024 04:01:26 server2 maldet(935373): {scan} scan completed on : files 10499, malware hits 0, cleaned hits 0, time 696s Oct 27 2024 04:01:26 server2 maldet(935373): {scan} scan report saved, to view run: maldet --report 241027-0349.935373 Oct 28 2024 03:16:46 server2 maldet(1821100): {update} checking for available updates... Oct 28 2024 03:16:46 server2 maldet(1821100): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Oct 28 2024 03:16:46 server2 maldet(1821100): {update} hashing install files and checking against server... Oct 28 2024 03:16:46 server2 maldet(1821100): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Oct 28 2024 03:16:46 server2 maldet(1821100): {update} latest version already installed. Oct 28 2024 03:16:46 server2 maldet(1821233): {sigup} performing signature update check... Oct 28 2024 03:16:46 server2 maldet(1821233): {sigup} local signature set is version 202410252090927 Oct 28 2024 03:16:46 server2 maldet(1821233): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Oct 28 2024 03:16:46 server2 maldet(1821233): {sigup} latest signature set already installed Oct 28 2024 03:16:47 server2 maldet(1821344): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Oct 28 2024 03:16:47 server2 maldet(1821344): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Oct 28 2024 03:16:47 server2 maldet(1821344): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Oct 28 2024 03:16:47 server2 maldet(1821344): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Oct 28 2024 03:16:48 server2 maldet(1821344): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/cartforge/public_html/" "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/loco/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Oct 28 2024 03:17:49 server2 maldet(1821344): {scan} file list completed in 62s, found 32906 files... Oct 28 2024 03:17:49 server2 maldet(1821344): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Oct 28 2024 03:17:49 server2 maldet(1821344): {scan} scan of (32906 files) in progress... Oct 28 2024 03:34:30 server2 maldet(1821344): {scan} clamscan returned an error, check /usr/local/maldetect/logs/clamscan_log for details! Oct 28 2024 03:34:30 server2 maldet(1821344): {scan} scan completed on : files 32906, malware hits 0, cleaned hits 0, time 1063s Oct 28 2024 03:34:30 server2 maldet(1821344): {scan} scan report saved, to view run: maldet --report 241028-0316.1821344 Oct 29 2024 03:33:43 server2 maldet(2201362): {update} checking for available updates... Oct 29 2024 03:33:43 server2 maldet(2201362): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Oct 29 2024 03:33:43 server2 maldet(2201362): {update} hashing install files and checking against server... Oct 29 2024 03:33:43 server2 maldet(2201362): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Oct 29 2024 03:33:43 server2 maldet(2201362): {update} latest version already installed. Oct 29 2024 03:33:43 server2 maldet(2201495): {sigup} performing signature update check... Oct 29 2024 03:33:43 server2 maldet(2201495): {sigup} local signature set is version 202410252090927 Oct 29 2024 03:33:43 server2 maldet(2201495): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Oct 29 2024 03:33:43 server2 maldet(2201495): {sigup} new signature set 202410282846833 available Oct 29 2024 03:33:43 server2 maldet(2201495): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Oct 29 2024 03:33:43 server2 maldet(2201495): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Oct 29 2024 03:33:44 server2 maldet(2201495): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Oct 29 2024 03:33:44 server2 maldet(2201495): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Oct 29 2024 03:33:44 server2 maldet(2201495): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Oct 29 2024 03:33:44 server2 maldet(2201495): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Oct 29 2024 03:33:44 server2 maldet(2201495): {sigup} verified md5sum of maldet-sigpack.tgz Oct 29 2024 03:33:44 server2 maldet(2201495): {sigup} unpacked and installed maldet-sigpack.tgz Oct 29 2024 03:33:44 server2 maldet(2201495): {sigup} verified md5sum of maldet-clean.tgz Oct 29 2024 03:33:44 server2 maldet(2201495): {sigup} unpacked and installed maldet-clean.tgz Oct 29 2024 03:33:44 server2 maldet(2201495): {sigup} signature set update completed Oct 29 2024 03:33:44 server2 maldet(2201495): {sigup} 17638 signatures (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Oct 29 2024 03:33:44 server2 maldet(2201723): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Oct 29 2024 03:33:45 server2 maldet(2201723): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Oct 29 2024 03:33:45 server2 maldet(2201723): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Oct 29 2024 03:33:45 server2 maldet(2201723): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Oct 29 2024 03:33:45 server2 maldet(2201723): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/cartforge/public_html/" "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/loco/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Oct 29 2024 03:34:32 server2 maldet(2201723): {scan} file list completed in 47s, found 7420 files... Oct 29 2024 03:34:32 server2 maldet(2201723): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Oct 29 2024 03:34:32 server2 maldet(2201723): {scan} scan of (7420 files) in progress... Oct 29 2024 03:36:27 server2 maldet(2201723): {scan} scan completed on : files 7420, malware hits 0, cleaned hits 0, time 163s Oct 29 2024 03:36:27 server2 maldet(2201723): {scan} scan report saved, to view run: maldet --report 241029-0333.2201723 Oct 30 2024 03:12:29 server2 maldet(2564993): {update} checking for available updates... Oct 30 2024 03:12:29 server2 maldet(2564993): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Oct 30 2024 03:12:29 server2 maldet(2564993): {update} hashing install files and checking against server... Oct 30 2024 03:12:29 server2 maldet(2564993): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Oct 30 2024 03:12:29 server2 maldet(2564993): {update} latest version already installed. Oct 30 2024 03:12:29 server2 maldet(2565126): {sigup} performing signature update check... Oct 30 2024 03:12:29 server2 maldet(2565126): {sigup} local signature set is version 202410282846833 Oct 30 2024 03:12:29 server2 maldet(2565126): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Oct 30 2024 03:12:29 server2 maldet(2565126): {sigup} latest signature set already installed Oct 30 2024 03:12:29 server2 maldet(2565237): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Oct 30 2024 03:12:34 server2 maldet(2565237): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Oct 30 2024 03:12:34 server2 maldet(2565237): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Oct 30 2024 03:12:34 server2 maldet(2565237): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Oct 30 2024 03:12:35 server2 maldet(2565237): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/cartforge/public_html/" "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/loco/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Oct 30 2024 03:13:28 server2 maldet(2565237): {scan} file list completed in 54s, found 9791 files... Oct 30 2024 03:13:28 server2 maldet(2565237): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Oct 30 2024 03:13:28 server2 maldet(2565237): {scan} scan of (9791 files) in progress... Oct 30 2024 03:17:59 server2 maldet(2565237): {scan} scan completed on : files 9791, malware hits 0, cleaned hits 0, time 330s Oct 30 2024 03:17:59 server2 maldet(2565237): {scan} scan report saved, to view run: maldet --report 241030-0312.2565237 Oct 31 2024 03:40:09 server2 maldet(2821196): {update} checking for available updates... Oct 31 2024 03:40:14 server2 maldet(2821196): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Oct 31 2024 03:40:14 server2 maldet(2821196): {update} hashing install files and checking against server... Oct 31 2024 03:40:14 server2 maldet(2821196): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Oct 31 2024 03:40:15 server2 maldet(2821196): {update} latest version already installed. Oct 31 2024 03:40:15 server2 maldet(2821332): {sigup} performing signature update check... Oct 31 2024 03:40:15 server2 maldet(2821332): {sigup} local signature set is version 202410282846833 Oct 31 2024 03:40:15 server2 maldet(2821332): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Oct 31 2024 03:40:15 server2 maldet(2821332): {sigup} latest signature set already installed Oct 31 2024 03:40:15 server2 maldet(2821443): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Oct 31 2024 03:40:16 server2 maldet(2821443): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Oct 31 2024 03:40:16 server2 maldet(2821443): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Oct 31 2024 03:40:16 server2 maldet(2821443): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Oct 31 2024 03:40:16 server2 maldet(2821443): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/cartforge/public_html/" "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/loco/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Oct 31 2024 03:41:03 server2 maldet(2821443): {scan} file list completed in 47s, found 30395 files... Oct 31 2024 03:41:03 server2 maldet(2821443): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Oct 31 2024 03:41:03 server2 maldet(2821443): {scan} scan of (30395 files) in progress... Oct 31 2024 04:03:08 server2 maldet(2821443): {scan} clamscan returned an error, check /usr/local/maldetect/logs/clamscan_log for details! Oct 31 2024 04:03:08 server2 maldet(2821443): {scan} scan completed on : files 30395, malware hits 0, cleaned hits 0, time 1373s Oct 31 2024 04:03:08 server2 maldet(2821443): {scan} scan report saved, to view run: maldet --report 241031-0340.2821443 Nov 01 2024 03:16:21 server2 maldet(3098805): {update} checking for available updates... Nov 01 2024 03:16:21 server2 maldet(3098805): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Nov 01 2024 03:16:21 server2 maldet(3098805): {update} hashing install files and checking against server... Nov 01 2024 03:16:21 server2 maldet(3098805): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Nov 01 2024 03:16:21 server2 maldet(3098805): {update} latest version already installed. Nov 01 2024 03:16:21 server2 maldet(3098939): {sigup} performing signature update check... Nov 01 2024 03:16:21 server2 maldet(3098939): {sigup} local signature set is version 202410282846833 Nov 01 2024 03:16:21 server2 maldet(3098939): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Nov 01 2024 03:16:21 server2 maldet(3098939): {sigup} new signature set 202410313602166 available Nov 01 2024 03:16:21 server2 maldet(3098939): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Nov 01 2024 03:16:22 server2 maldet(3098939): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Nov 01 2024 03:16:23 server2 maldet(3098939): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Nov 01 2024 03:16:23 server2 maldet(3098939): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Nov 01 2024 03:16:23 server2 maldet(3098939): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Nov 01 2024 03:16:23 server2 maldet(3098939): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Nov 01 2024 03:16:23 server2 maldet(3098939): {sigup} verified md5sum of maldet-sigpack.tgz Nov 01 2024 03:16:23 server2 maldet(3098939): {sigup} unpacked and installed maldet-sigpack.tgz Nov 01 2024 03:16:23 server2 maldet(3098939): {sigup} verified md5sum of maldet-clean.tgz Nov 01 2024 03:16:23 server2 maldet(3098939): {sigup} unpacked and installed maldet-clean.tgz Nov 01 2024 03:16:23 server2 maldet(3098939): {sigup} signature set update completed Nov 01 2024 03:16:23 server2 maldet(3098939): {sigup} 17638 signatures (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Nov 01 2024 03:16:23 server2 maldet(3099168): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Nov 01 2024 03:16:25 server2 maldet(3099168): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Nov 01 2024 03:16:25 server2 maldet(3099168): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Nov 01 2024 03:16:25 server2 maldet(3099168): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Nov 01 2024 03:16:25 server2 maldet(3099168): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/cartforge/public_html/" "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/loco/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Nov 01 2024 03:17:45 server2 maldet(3099168): {scan} file list completed in 80s, found 6398 files... Nov 01 2024 03:17:45 server2 maldet(3099168): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Nov 01 2024 03:17:45 server2 maldet(3099168): {scan} scan of (6398 files) in progress... Nov 01 2024 03:23:28 server2 maldet(3099168): {scan} scan completed on : files 6398, malware hits 0, cleaned hits 0, time 425s Nov 01 2024 03:23:28 server2 maldet(3099168): {scan} scan report saved, to view run: maldet --report 241101-0316.3099168 Nov 02 2024 03:39:57 server2 maldet(3353832): {update} checking for available updates... Nov 02 2024 03:39:57 server2 maldet(3353832): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Nov 02 2024 03:39:57 server2 maldet(3353832): {update} hashing install files and checking against server... Nov 02 2024 03:39:57 server2 maldet(3353832): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Nov 02 2024 03:39:57 server2 maldet(3353832): {update} latest version already installed. Nov 02 2024 03:39:57 server2 maldet(3353965): {sigup} performing signature update check... Nov 02 2024 03:39:57 server2 maldet(3353965): {sigup} local signature set is version 202410313602166 Nov 02 2024 03:39:57 server2 maldet(3353965): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Nov 02 2024 03:39:57 server2 maldet(3353965): {sigup} new signature set 20241101119716 available Nov 02 2024 03:39:57 server2 maldet(3353965): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Nov 02 2024 03:39:57 server2 maldet(3353965): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Nov 02 2024 03:39:57 server2 maldet(3353965): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Nov 02 2024 03:39:57 server2 maldet(3353965): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Nov 02 2024 03:39:58 server2 maldet(3353965): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Nov 02 2024 03:39:58 server2 maldet(3353965): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Nov 02 2024 03:39:58 server2 maldet(3353965): {sigup} verified md5sum of maldet-sigpack.tgz Nov 02 2024 03:39:58 server2 maldet(3353965): {sigup} unpacked and installed maldet-sigpack.tgz Nov 02 2024 03:39:58 server2 maldet(3353965): {sigup} verified md5sum of maldet-clean.tgz Nov 02 2024 03:39:58 server2 maldet(3353965): {sigup} unpacked and installed maldet-clean.tgz Nov 02 2024 03:39:58 server2 maldet(3353965): {sigup} signature set update completed Nov 02 2024 03:39:58 server2 maldet(3353965): {sigup} 17638 signatures (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Nov 02 2024 03:39:58 server2 maldet(3354194): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Nov 02 2024 03:39:59 server2 maldet(3354194): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Nov 02 2024 03:39:59 server2 maldet(3354194): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Nov 02 2024 03:39:59 server2 maldet(3354194): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Nov 02 2024 03:39:59 server2 maldet(3354194): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/cartforge/public_html/" "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/loco/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Nov 02 2024 03:40:51 server2 maldet(3354194): {scan} file list completed in 52s, found 5641 files... Nov 02 2024 03:40:51 server2 maldet(3354194): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Nov 02 2024 03:40:51 server2 maldet(3354194): {scan} scan of (5641 files) in progress... Nov 02 2024 03:44:42 server2 maldet(3354194): {scan} scan completed on : files 5641, malware hits 0, cleaned hits 0, time 284s Nov 02 2024 03:44:42 server2 maldet(3354194): {scan} scan report saved, to view run: maldet --report 241102-0339.3354194 Nov 03 2024 03:38:20 server2 maldet(3646163): {update} checking for available updates... Nov 03 2024 03:38:20 server2 maldet(3646163): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Nov 03 2024 03:38:20 server2 maldet(3646163): {update} hashing install files and checking against server... Nov 03 2024 03:38:20 server2 maldet(3646163): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Nov 03 2024 03:38:20 server2 maldet(3646163): {update} latest version already installed. Nov 03 2024 03:38:20 server2 maldet(3646296): {sigup} performing signature update check... Nov 03 2024 03:38:20 server2 maldet(3646296): {sigup} local signature set is version 20241101119716 Nov 03 2024 03:38:20 server2 maldet(3646296): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Nov 03 2024 03:38:20 server2 maldet(3646296): {sigup} latest signature set already installed Nov 03 2024 03:38:20 server2 maldet(3646408): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Nov 03 2024 03:38:22 server2 maldet(3646408): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Nov 03 2024 03:38:22 server2 maldet(3646408): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Nov 03 2024 03:38:22 server2 maldet(3646408): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Nov 03 2024 03:38:22 server2 maldet(3646408): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/cartforge/public_html/" "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/loco/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Nov 03 2024 03:38:58 server2 maldet(3646408): {scan} file list completed in 36s, found 4549 files... Nov 03 2024 03:38:58 server2 maldet(3646408): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Nov 03 2024 03:38:58 server2 maldet(3646408): {scan} scan of (4549 files) in progress... Nov 03 2024 03:41:48 server2 maldet(3646408): {scan} scan completed on : files 4549, malware hits 0, cleaned hits 0, time 208s Nov 03 2024 03:41:48 server2 maldet(3646408): {scan} scan report saved, to view run: maldet --report 241103-0338.3646408 Nov 04 2024 03:56:10 server2 maldet(3896740): {update} checking for available updates... Nov 04 2024 03:56:12 server2 maldet(3896740): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Nov 04 2024 03:56:12 server2 maldet(3896740): {update} hashing install files and checking against server... Nov 04 2024 03:56:12 server2 maldet(3896740): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Nov 04 2024 03:56:12 server2 maldet(3896740): {update} latest version already installed. Nov 04 2024 03:56:14 server2 maldet(3896899): {sigup} performing signature update check... Nov 04 2024 03:56:14 server2 maldet(3896899): {sigup} local signature set is version 20241101119716 Nov 04 2024 03:56:15 server2 maldet(3896899): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Nov 04 2024 03:56:16 server2 maldet(3896899): {sigup} new signature set 20241104598085 available Nov 04 2024 03:56:16 server2 maldet(3896899): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Nov 04 2024 03:56:16 server2 maldet(3896899): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Nov 04 2024 03:56:17 server2 maldet(3896899): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Nov 04 2024 03:56:17 server2 maldet(3896899): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Nov 04 2024 03:56:17 server2 maldet(3896899): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Nov 04 2024 03:56:18 server2 maldet(3896899): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Nov 04 2024 03:56:18 server2 maldet(3896899): {sigup} verified md5sum of maldet-sigpack.tgz Nov 04 2024 03:56:20 server2 maldet(3896899): {sigup} unpacked and installed maldet-sigpack.tgz Nov 04 2024 03:56:20 server2 maldet(3896899): {sigup} verified md5sum of maldet-clean.tgz Nov 04 2024 03:56:21 server2 maldet(3896899): {sigup} unpacked and installed maldet-clean.tgz Nov 04 2024 03:56:21 server2 maldet(3896899): {sigup} signature set update completed Nov 04 2024 03:56:22 server2 maldet(3896899): {sigup} 17638 signatures (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Nov 04 2024 03:56:25 server2 maldet(3897134): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Nov 04 2024 03:56:33 server2 maldet(3897134): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Nov 04 2024 03:56:33 server2 maldet(3897134): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Nov 04 2024 03:56:33 server2 maldet(3897134): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Nov 04 2024 03:56:33 server2 maldet(3897134): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/cartforge/public_html/" "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/loco/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Nov 04 2024 04:00:52 server2 maldet(3897134): {scan} file list completed in 259s, found 3980 files... Nov 04 2024 04:00:52 server2 maldet(3897134): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Nov 04 2024 04:00:52 server2 maldet(3897134): {scan} scan of (3980 files) in progress... Nov 04 2024 04:03:01 server2 maldet(3897134): {scan} scan completed on : files 3980, malware hits 0, cleaned hits 0, time 396s Nov 04 2024 04:03:01 server2 maldet(3897134): {scan} scan report saved, to view run: maldet --report 241104-0356.3897134 Nov 05 2024 03:37:22 server2 maldet(4131310): {update} checking for available updates... Nov 05 2024 03:37:22 server2 maldet(4131310): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Nov 05 2024 03:37:22 server2 maldet(4131310): {update} hashing install files and checking against server... Nov 05 2024 03:37:22 server2 maldet(4131310): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Nov 05 2024 03:37:22 server2 maldet(4131310): {update} latest version already installed. Nov 05 2024 03:37:22 server2 maldet(4131443): {sigup} performing signature update check... Nov 05 2024 03:37:22 server2 maldet(4131443): {sigup} local signature set is version 20241104598085 Nov 05 2024 03:37:22 server2 maldet(4131443): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Nov 05 2024 03:37:22 server2 maldet(4131443): {sigup} latest signature set already installed Nov 05 2024 03:37:22 server2 maldet(4131554): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Nov 05 2024 03:37:23 server2 maldet(4131554): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Nov 05 2024 03:37:23 server2 maldet(4131554): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Nov 05 2024 03:37:23 server2 maldet(4131554): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Nov 05 2024 03:37:23 server2 maldet(4131554): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/cartforge/public_html/" "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/loco/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Nov 05 2024 03:38:13 server2 maldet(4131554): {scan} file list completed in 50s, found 5358 files... Nov 05 2024 03:38:13 server2 maldet(4131554): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Nov 05 2024 03:38:13 server2 maldet(4131554): {scan} scan of (5358 files) in progress... Nov 05 2024 03:40:52 server2 maldet(4131554): {scan} scan completed on : files 5358, malware hits 0, cleaned hits 0, time 210s Nov 05 2024 03:40:52 server2 maldet(4131554): {scan} scan report saved, to view run: maldet --report 241105-0337.4131554 Nov 06 2024 03:29:30 server2 maldet(167323): {update} checking for available updates... Nov 06 2024 03:29:30 server2 maldet(167323): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Nov 06 2024 03:29:30 server2 maldet(167323): {update} hashing install files and checking against server... Nov 06 2024 03:29:30 server2 maldet(167323): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Nov 06 2024 03:29:30 server2 maldet(167323): {update} latest version already installed. Nov 06 2024 03:29:31 server2 maldet(167457): {sigup} performing signature update check... Nov 06 2024 03:29:31 server2 maldet(167457): {sigup} local signature set is version 20241104598085 Nov 06 2024 03:29:31 server2 maldet(167457): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Nov 06 2024 03:29:31 server2 maldet(167457): {sigup} latest signature set already installed Nov 06 2024 03:29:31 server2 maldet(167568): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Nov 06 2024 03:29:33 server2 maldet(167568): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Nov 06 2024 03:29:33 server2 maldet(167568): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Nov 06 2024 03:29:33 server2 maldet(167568): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Nov 06 2024 03:29:33 server2 maldet(167568): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/cartforge/public_html/" "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/loco/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Nov 06 2024 03:30:24 server2 maldet(167568): {scan} file list completed in 51s, found 21156 files... Nov 06 2024 03:30:24 server2 maldet(167568): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Nov 06 2024 03:30:24 server2 maldet(167568): {scan} scan of (21156 files) in progress... Nov 06 2024 03:35:42 server2 maldet(167568): {scan} scan completed on : files 21156, malware hits 0, cleaned hits 0, time 371s Nov 06 2024 03:35:42 server2 maldet(167568): {scan} scan report saved, to view run: maldet --report 241106-0329.167568 Nov 07 2024 03:45:22 server2 maldet(446016): {update} checking for available updates... Nov 07 2024 03:45:22 server2 maldet(446016): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Nov 07 2024 03:45:22 server2 maldet(446016): {update} hashing install files and checking against server... Nov 07 2024 03:45:23 server2 maldet(446016): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Nov 07 2024 03:45:23 server2 maldet(446016): {update} latest version already installed. Nov 07 2024 03:45:23 server2 maldet(446152): {sigup} performing signature update check... Nov 07 2024 03:45:23 server2 maldet(446152): {sigup} local signature set is version 20241104598085 Nov 07 2024 03:45:23 server2 maldet(446152): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Nov 07 2024 03:45:23 server2 maldet(446152): {sigup} new signature set 20241107590174 available Nov 07 2024 03:45:23 server2 maldet(446152): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Nov 07 2024 03:45:23 server2 maldet(446152): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Nov 07 2024 03:45:23 server2 maldet(446152): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Nov 07 2024 03:45:23 server2 maldet(446152): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Nov 07 2024 03:45:23 server2 maldet(446152): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Nov 07 2024 03:45:23 server2 maldet(446152): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Nov 07 2024 03:45:23 server2 maldet(446152): {sigup} verified md5sum of maldet-sigpack.tgz Nov 07 2024 03:45:24 server2 maldet(446152): {sigup} unpacked and installed maldet-sigpack.tgz Nov 07 2024 03:45:24 server2 maldet(446152): {sigup} verified md5sum of maldet-clean.tgz Nov 07 2024 03:45:24 server2 maldet(446152): {sigup} unpacked and installed maldet-clean.tgz Nov 07 2024 03:45:24 server2 maldet(446152): {sigup} signature set update completed Nov 07 2024 03:45:24 server2 maldet(446152): {sigup} 17638 signatures (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Nov 07 2024 03:45:24 server2 maldet(446387): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Nov 07 2024 03:45:25 server2 maldet(446387): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Nov 07 2024 03:45:25 server2 maldet(446387): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Nov 07 2024 03:45:25 server2 maldet(446387): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Nov 07 2024 03:45:25 server2 maldet(446387): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/cartforge/public_html/" "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/loco/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Nov 07 2024 03:46:28 server2 maldet(446387): {scan} file list completed in 63s, found 18881 files... Nov 07 2024 03:46:29 server2 maldet(446387): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Nov 07 2024 03:46:29 server2 maldet(446387): {scan} scan of (18881 files) in progress... Nov 07 2024 03:51:08 server2 maldet(446387): {scan} scan completed on : files 18881, malware hits 0, cleaned hits 0, time 344s Nov 07 2024 03:51:08 server2 maldet(446387): {scan} scan report saved, to view run: maldet --report 241107-0345.446387 Nov 08 2024 03:37:18 server2 maldet(743686): {update} checking for available updates... Nov 08 2024 03:37:18 server2 maldet(743686): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Nov 08 2024 03:37:18 server2 maldet(743686): {update} hashing install files and checking against server... Nov 08 2024 03:37:19 server2 maldet(743686): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Nov 08 2024 03:37:19 server2 maldet(743686): {update} latest version already installed. Nov 08 2024 03:37:19 server2 maldet(743819): {sigup} performing signature update check... Nov 08 2024 03:37:19 server2 maldet(743819): {sigup} local signature set is version 20241107590174 Nov 08 2024 03:37:19 server2 maldet(743819): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Nov 08 2024 03:37:19 server2 maldet(743819): {sigup} latest signature set already installed Nov 08 2024 03:37:19 server2 maldet(743930): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Nov 08 2024 03:37:20 server2 maldet(743930): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Nov 08 2024 03:37:20 server2 maldet(743930): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Nov 08 2024 03:37:20 server2 maldet(743930): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Nov 08 2024 03:37:20 server2 maldet(743930): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/cartforge/public_html/" "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/loco/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Nov 08 2024 03:38:09 server2 maldet(743930): {scan} file list completed in 49s, found 3212 files... Nov 08 2024 03:38:09 server2 maldet(743930): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Nov 08 2024 03:38:09 server2 maldet(743930): {scan} scan of (3212 files) in progress... Nov 08 2024 03:39:01 server2 maldet(743930): {scan} scan completed on : files 3212, malware hits 0, cleaned hits 0, time 102s Nov 08 2024 03:39:01 server2 maldet(743930): {scan} scan report saved, to view run: maldet --report 241108-0337.743930 Nov 09 2024 04:03:05 server2 maldet(998977): {update} checking for available updates... Nov 09 2024 04:03:05 server2 maldet(998977): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Nov 09 2024 04:03:05 server2 maldet(998977): {update} hashing install files and checking against server... Nov 09 2024 04:03:05 server2 maldet(998977): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Nov 09 2024 04:03:05 server2 maldet(998977): {update} latest version already installed. Nov 09 2024 04:03:05 server2 maldet(999110): {sigup} performing signature update check... Nov 09 2024 04:03:05 server2 maldet(999110): {sigup} local signature set is version 20241107590174 Nov 09 2024 04:03:05 server2 maldet(999110): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Nov 09 2024 04:03:05 server2 maldet(999110): {sigup} latest signature set already installed Nov 09 2024 04:03:05 server2 maldet(999221): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Nov 09 2024 04:03:07 server2 maldet(999221): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Nov 09 2024 04:03:07 server2 maldet(999221): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Nov 09 2024 04:03:07 server2 maldet(999221): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Nov 09 2024 04:03:07 server2 maldet(999221): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/cartforge/public_html/" "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/loco/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Nov 09 2024 04:03:55 server2 maldet(999221): {scan} file list completed in 48s, found 2635 files... Nov 09 2024 04:03:55 server2 maldet(999221): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Nov 09 2024 04:03:55 server2 maldet(999221): {scan} scan of (2635 files) in progress... Nov 09 2024 04:04:26 server2 maldet(999221): {scan} scan completed on : files 2635, malware hits 0, cleaned hits 0, time 81s Nov 09 2024 04:04:26 server2 maldet(999221): {scan} scan report saved, to view run: maldet --report 241109-0403.999221 Nov 10 2024 03:51:17 server2 maldet(1244815): {update} checking for available updates... Nov 10 2024 03:51:18 server2 maldet(1244815): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Nov 10 2024 03:51:18 server2 maldet(1244815): {update} hashing install files and checking against server... Nov 10 2024 03:51:18 server2 maldet(1244815): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Nov 10 2024 03:51:18 server2 maldet(1244815): {update} latest version already installed. Nov 10 2024 03:51:18 server2 maldet(1244948): {sigup} performing signature update check... Nov 10 2024 03:51:18 server2 maldet(1244948): {sigup} local signature set is version 20241107590174 Nov 10 2024 03:51:18 server2 maldet(1244948): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Nov 10 2024 03:51:18 server2 maldet(1244948): {sigup} new signature set 202411101345636 available Nov 10 2024 03:51:18 server2 maldet(1244948): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Nov 10 2024 03:51:18 server2 maldet(1244948): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Nov 10 2024 03:51:18 server2 maldet(1244948): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Nov 10 2024 03:51:18 server2 maldet(1244948): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Nov 10 2024 03:51:18 server2 maldet(1244948): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Nov 10 2024 03:51:18 server2 maldet(1244948): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Nov 10 2024 03:51:18 server2 maldet(1244948): {sigup} verified md5sum of maldet-sigpack.tgz Nov 10 2024 03:51:18 server2 maldet(1244948): {sigup} unpacked and installed maldet-sigpack.tgz Nov 10 2024 03:51:18 server2 maldet(1244948): {sigup} verified md5sum of maldet-clean.tgz Nov 10 2024 03:51:18 server2 maldet(1244948): {sigup} unpacked and installed maldet-clean.tgz Nov 10 2024 03:51:18 server2 maldet(1244948): {sigup} signature set update completed Nov 10 2024 03:51:19 server2 maldet(1244948): {sigup} 17638 signatures (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Nov 10 2024 03:51:19 server2 maldet(1245177): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Nov 10 2024 03:51:20 server2 maldet(1245177): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Nov 10 2024 03:51:20 server2 maldet(1245177): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Nov 10 2024 03:51:20 server2 maldet(1245177): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Nov 10 2024 03:51:20 server2 maldet(1245177): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/cartforge/public_html/" "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/loco/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Nov 10 2024 03:52:02 server2 maldet(1245177): {scan} file list completed in 42s, found 793 files... Nov 10 2024 03:52:02 server2 maldet(1245177): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Nov 10 2024 03:52:02 server2 maldet(1245177): {scan} scan of (793 files) in progress... Nov 10 2024 03:52:52 server2 maldet(1245177): {scan} scan completed on : files 793, malware hits 0, cleaned hits 0, time 93s Nov 10 2024 03:52:52 server2 maldet(1245177): {scan} scan report saved, to view run: maldet --report 241110-0351.1245177 Nov 11 2024 03:35:29 server2 maldet(1504084): {update} checking for available updates... Nov 11 2024 03:35:29 server2 maldet(1504084): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Nov 11 2024 03:35:29 server2 maldet(1504084): {update} hashing install files and checking against server... Nov 11 2024 03:35:29 server2 maldet(1504084): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Nov 11 2024 03:35:29 server2 maldet(1504084): {update} latest version already installed. Nov 11 2024 03:35:29 server2 maldet(1504217): {sigup} performing signature update check... Nov 11 2024 03:35:29 server2 maldet(1504217): {sigup} local signature set is version 202411101345636 Nov 11 2024 03:35:30 server2 maldet(1504217): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Nov 11 2024 03:35:30 server2 maldet(1504217): {sigup} latest signature set already installed Nov 11 2024 03:35:30 server2 maldet(1504329): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Nov 11 2024 03:35:32 server2 maldet(1504329): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Nov 11 2024 03:35:32 server2 maldet(1504329): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Nov 11 2024 03:35:32 server2 maldet(1504329): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Nov 11 2024 03:35:32 server2 maldet(1504329): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/cartforge/public_html/" "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/hessa/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/loco/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Nov 11 2024 03:36:46 server2 maldet(1504329): {scan} file list completed in 74s, found 37511 files... Nov 11 2024 03:36:46 server2 maldet(1504329): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Nov 11 2024 03:36:46 server2 maldet(1504329): {scan} scan of (37511 files) in progress... Nov 11 2024 03:55:57 server2 maldet(1504329): {scan} clamscan returned an error, check /usr/local/maldetect/logs/clamscan_log for details! Nov 11 2024 03:55:57 server2 maldet(1504329): {scan} scan completed on : files 37511, malware hits 0, cleaned hits 0, time 1227s Nov 11 2024 03:55:57 server2 maldet(1504329): {scan} scan report saved, to view run: maldet --report 241111-0335.1504329 Nov 12 2024 03:23:22 server2 maldet(1770343): {update} checking for available updates... Nov 12 2024 03:23:22 server2 maldet(1770343): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Nov 12 2024 03:23:22 server2 maldet(1770343): {update} hashing install files and checking against server... Nov 12 2024 03:23:22 server2 maldet(1770343): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Nov 12 2024 03:23:22 server2 maldet(1770343): {update} latest version already installed. Nov 12 2024 03:23:22 server2 maldet(1770476): {sigup} performing signature update check... Nov 12 2024 03:23:22 server2 maldet(1770476): {sigup} local signature set is version 202411101345636 Nov 12 2024 03:23:22 server2 maldet(1770476): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Nov 12 2024 03:23:22 server2 maldet(1770476): {sigup} latest signature set already installed Nov 12 2024 03:23:23 server2 maldet(1770587): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Nov 12 2024 03:23:24 server2 maldet(1770587): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Nov 12 2024 03:23:24 server2 maldet(1770587): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Nov 12 2024 03:23:24 server2 maldet(1770587): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Nov 12 2024 03:23:24 server2 maldet(1770587): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/cartforge/public_html/" "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/hessa/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/loco/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Nov 12 2024 03:24:30 server2 maldet(1770587): {scan} file list completed in 66s, found 2266 files... Nov 12 2024 03:24:31 server2 maldet(1770587): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Nov 12 2024 03:24:31 server2 maldet(1770587): {scan} scan of (2266 files) in progress... Nov 12 2024 03:24:53 server2 maldet(1770587): {scan} scan completed on : files 2266, malware hits 0, cleaned hits 0, time 90s Nov 12 2024 03:24:53 server2 maldet(1770587): {scan} scan report saved, to view run: maldet --report 241112-0323.1770587 Nov 13 2024 03:07:19 server2 maldet(2048641): {update} checking for available updates... Nov 13 2024 03:07:19 server2 maldet(2048641): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Nov 13 2024 03:07:19 server2 maldet(2048641): {update} hashing install files and checking against server... Nov 13 2024 03:07:19 server2 maldet(2048641): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Nov 13 2024 03:07:19 server2 maldet(2048641): {update} latest version already installed. Nov 13 2024 03:07:20 server2 maldet(2048774): {sigup} performing signature update check... Nov 13 2024 03:07:20 server2 maldet(2048774): {sigup} local signature set is version 202411101345636 Nov 13 2024 03:07:20 server2 maldet(2048774): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Nov 13 2024 03:07:20 server2 maldet(2048774): {sigup} new signature set 202411132100752 available Nov 13 2024 03:07:20 server2 maldet(2048774): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Nov 13 2024 03:07:20 server2 maldet(2048774): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Nov 13 2024 03:07:20 server2 maldet(2048774): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Nov 13 2024 03:07:20 server2 maldet(2048774): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Nov 13 2024 03:07:20 server2 maldet(2048774): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Nov 13 2024 03:07:20 server2 maldet(2048774): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Nov 13 2024 03:07:21 server2 maldet(2048774): {sigup} verified md5sum of maldet-sigpack.tgz Nov 13 2024 03:07:21 server2 maldet(2048774): {sigup} unpacked and installed maldet-sigpack.tgz Nov 13 2024 03:07:21 server2 maldet(2048774): {sigup} verified md5sum of maldet-clean.tgz Nov 13 2024 03:07:21 server2 maldet(2048774): {sigup} unpacked and installed maldet-clean.tgz Nov 13 2024 03:07:21 server2 maldet(2048774): {sigup} signature set update completed Nov 13 2024 03:07:21 server2 maldet(2048774): {sigup} 17638 signatures (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Nov 13 2024 03:07:21 server2 maldet(2049003): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Nov 13 2024 03:07:25 server2 maldet(2049003): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Nov 13 2024 03:07:25 server2 maldet(2049003): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Nov 13 2024 03:07:25 server2 maldet(2049003): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Nov 13 2024 03:07:25 server2 maldet(2049003): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/cartforge/public_html/" "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/hessa/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/loco/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Nov 13 2024 03:08:35 server2 maldet(2049003): {scan} file list completed in 70s, found 3615 files... Nov 13 2024 03:08:35 server2 maldet(2049003): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Nov 13 2024 03:08:35 server2 maldet(2049003): {scan} scan of (3615 files) in progress... Nov 13 2024 03:10:52 server2 maldet(2049003): {scan} scan completed on : files 3615, malware hits 0, cleaned hits 0, time 211s Nov 13 2024 03:10:52 server2 maldet(2049003): {scan} scan report saved, to view run: maldet --report 241113-0307.2049003 Nov 14 2024 03:26:08 server2 maldet(2349920): {update} checking for available updates... Nov 14 2024 03:26:08 server2 maldet(2349920): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Nov 14 2024 03:26:08 server2 maldet(2349920): {update} hashing install files and checking against server... Nov 14 2024 03:26:09 server2 maldet(2349920): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Nov 14 2024 03:26:09 server2 maldet(2349920): {update} latest version already installed. Nov 14 2024 03:26:09 server2 maldet(2350055): {sigup} performing signature update check... Nov 14 2024 03:26:09 server2 maldet(2350055): {sigup} local signature set is version 202411132100752 Nov 14 2024 03:26:09 server2 maldet(2350055): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Nov 14 2024 03:26:09 server2 maldet(2350055): {sigup} latest signature set already installed Nov 14 2024 03:26:09 server2 maldet(2350166): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Nov 14 2024 03:26:11 server2 maldet(2350166): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Nov 14 2024 03:26:11 server2 maldet(2350166): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Nov 14 2024 03:26:11 server2 maldet(2350166): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Nov 14 2024 03:26:11 server2 maldet(2350166): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/cartforge/public_html/" "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/hessa/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/loco/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Nov 14 2024 03:27:19 server2 maldet(2350166): {scan} file list completed in 68s, found 2398 files... Nov 14 2024 03:27:19 server2 maldet(2350166): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Nov 14 2024 03:27:19 server2 maldet(2350166): {scan} scan of (2398 files) in progress... Nov 14 2024 03:27:59 server2 maldet(2350166): {scan} scan completed on : files 2398, malware hits 0, cleaned hits 0, time 110s Nov 14 2024 03:27:59 server2 maldet(2350166): {scan} scan report saved, to view run: maldet --report 241114-0326.2350166 Nov 15 2024 03:52:23 server2 maldet(2593328): {update} checking for available updates... Nov 15 2024 03:52:23 server2 maldet(2593328): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Nov 15 2024 03:52:23 server2 maldet(2593328): {update} hashing install files and checking against server... Nov 15 2024 03:52:23 server2 maldet(2593328): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Nov 15 2024 03:52:23 server2 maldet(2593328): {update} latest version already installed. Nov 15 2024 03:52:23 server2 maldet(2593462): {sigup} performing signature update check... Nov 15 2024 03:52:23 server2 maldet(2593462): {sigup} local signature set is version 202411132100752 Nov 15 2024 03:52:23 server2 maldet(2593462): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Nov 15 2024 03:52:23 server2 maldet(2593462): {sigup} latest signature set already installed Nov 15 2024 03:52:24 server2 maldet(2593573): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Nov 15 2024 03:52:25 server2 maldet(2593573): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Nov 15 2024 03:52:25 server2 maldet(2593573): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Nov 15 2024 03:52:25 server2 maldet(2593573): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Nov 15 2024 03:52:25 server2 maldet(2593573): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/cartforge/public_html/" "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/hessa/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/loco/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Nov 15 2024 03:53:13 server2 maldet(2593573): {scan} file list completed in 48s, found 2785 files... Nov 15 2024 03:53:13 server2 maldet(2593573): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Nov 15 2024 03:53:13 server2 maldet(2593573): {scan} scan of (2785 files) in progress... Nov 15 2024 03:53:56 server2 maldet(2593573): {scan} scan completed on : files 2785, malware hits 0, cleaned hits 0, time 92s Nov 15 2024 03:53:56 server2 maldet(2593573): {scan} scan report saved, to view run: maldet --report 241115-0352.2593573 Nov 16 2024 03:37:25 server2 maldet(2851394): {update} checking for available updates... Nov 16 2024 03:37:25 server2 maldet(2851394): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Nov 16 2024 03:37:25 server2 maldet(2851394): {update} hashing install files and checking against server... Nov 16 2024 03:37:25 server2 maldet(2851394): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Nov 16 2024 03:37:25 server2 maldet(2851394): {update} latest version already installed. Nov 16 2024 03:37:26 server2 maldet(2851527): {sigup} performing signature update check... Nov 16 2024 03:37:26 server2 maldet(2851527): {sigup} local signature set is version 202411132100752 Nov 16 2024 03:37:26 server2 maldet(2851527): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Nov 16 2024 03:37:26 server2 maldet(2851527): {sigup} new signature set 20241116556149 available Nov 16 2024 03:37:26 server2 maldet(2851527): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Nov 16 2024 03:37:26 server2 maldet(2851527): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Nov 16 2024 03:37:26 server2 maldet(2851527): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Nov 16 2024 03:37:26 server2 maldet(2851527): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Nov 16 2024 03:37:26 server2 maldet(2851527): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Nov 16 2024 03:37:26 server2 maldet(2851527): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Nov 16 2024 03:37:26 server2 maldet(2851527): {sigup} verified md5sum of maldet-sigpack.tgz Nov 16 2024 03:37:26 server2 maldet(2851527): {sigup} unpacked and installed maldet-sigpack.tgz Nov 16 2024 03:37:27 server2 maldet(2851527): {sigup} verified md5sum of maldet-clean.tgz Nov 16 2024 03:37:27 server2 maldet(2851527): {sigup} unpacked and installed maldet-clean.tgz Nov 16 2024 03:37:27 server2 maldet(2851527): {sigup} signature set update completed Nov 16 2024 03:37:27 server2 maldet(2851527): {sigup} 17638 signatures (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Nov 16 2024 03:37:27 server2 maldet(2851755): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Nov 16 2024 03:37:28 server2 maldet(2851755): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Nov 16 2024 03:37:28 server2 maldet(2851755): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Nov 16 2024 03:37:28 server2 maldet(2851755): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Nov 16 2024 03:37:28 server2 maldet(2851755): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/cartforge/public_html/" "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/hessa/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/loco/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Nov 16 2024 03:38:46 server2 maldet(2851755): {scan} file list completed in 78s, found 2276 files... Nov 16 2024 03:38:46 server2 maldet(2851755): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Nov 16 2024 03:38:46 server2 maldet(2851755): {scan} scan of (2276 files) in progress... Nov 16 2024 03:39:16 server2 maldet(2851755): {scan} scan completed on : files 2276, malware hits 0, cleaned hits 0, time 109s Nov 16 2024 03:39:16 server2 maldet(2851755): {scan} scan report saved, to view run: maldet --report 241116-0337.2851755 Nov 17 2024 03:30:46 server2 maldet(3085863): {update} checking for available updates... Nov 17 2024 03:30:47 server2 maldet(3085863): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Nov 17 2024 03:30:47 server2 maldet(3085863): {update} hashing install files and checking against server... Nov 17 2024 03:30:47 server2 maldet(3085863): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Nov 17 2024 03:30:47 server2 maldet(3085863): {update} latest version already installed. Nov 17 2024 03:30:47 server2 maldet(3085997): {sigup} performing signature update check... Nov 17 2024 03:30:47 server2 maldet(3085997): {sigup} local signature set is version 20241116556149 Nov 17 2024 03:30:47 server2 maldet(3085997): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Nov 17 2024 03:30:47 server2 maldet(3085997): {sigup} latest signature set already installed Nov 17 2024 03:30:47 server2 maldet(3086108): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Nov 17 2024 03:30:52 server2 maldet(3086108): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Nov 17 2024 03:30:52 server2 maldet(3086108): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Nov 17 2024 03:30:52 server2 maldet(3086108): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Nov 17 2024 03:30:52 server2 maldet(3086108): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/cartforge/public_html/" "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/hessa/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/loco/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Nov 17 2024 03:31:42 server2 maldet(3086108): {scan} file list completed in 50s, found 637 files... Nov 17 2024 03:31:42 server2 maldet(3086108): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Nov 17 2024 03:31:42 server2 maldet(3086108): {scan} scan of (637 files) in progress... Nov 17 2024 03:32:20 server2 maldet(3086108): {scan} scan completed on : files 637, malware hits 0, cleaned hits 0, time 93s Nov 17 2024 03:32:20 server2 maldet(3086108): {scan} scan report saved, to view run: maldet --report 241117-0330.3086108 Nov 18 2024 03:35:39 server2 maldet(3321717): {update} checking for available updates... Nov 18 2024 03:35:39 server2 maldet(3321717): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Nov 18 2024 03:35:39 server2 maldet(3321717): {update} hashing install files and checking against server... Nov 18 2024 03:35:39 server2 maldet(3321717): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Nov 18 2024 03:35:39 server2 maldet(3321717): {update} latest version already installed. Nov 18 2024 03:35:39 server2 maldet(3321850): {sigup} performing signature update check... Nov 18 2024 03:35:39 server2 maldet(3321850): {sigup} local signature set is version 20241116556149 Nov 18 2024 03:35:39 server2 maldet(3321850): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Nov 18 2024 03:35:39 server2 maldet(3321850): {sigup} latest signature set already installed Nov 18 2024 03:35:40 server2 maldet(3321961): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Nov 18 2024 03:35:41 server2 maldet(3321961): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Nov 18 2024 03:35:41 server2 maldet(3321961): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Nov 18 2024 03:35:41 server2 maldet(3321961): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Nov 18 2024 03:35:41 server2 maldet(3321961): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/cartforge/public_html/" "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/hessa/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/loco/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Nov 18 2024 03:36:52 server2 maldet(3321961): {scan} file list completed in 71s, found 2161 files... Nov 18 2024 03:36:52 server2 maldet(3321961): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Nov 18 2024 03:36:52 server2 maldet(3321961): {scan} scan of (2161 files) in progress... Nov 18 2024 03:37:20 server2 maldet(3321961): {scan} scan completed on : files 2161, malware hits 0, cleaned hits 0, time 99s Nov 18 2024 03:37:20 server2 maldet(3321961): {scan} scan report saved, to view run: maldet --report 241118-0335.3321961 Nov 19 2024 03:45:48 server2 maldet(3558832): {update} checking for available updates... Nov 19 2024 03:45:48 server2 maldet(3558832): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Nov 19 2024 03:45:48 server2 maldet(3558832): {update} hashing install files and checking against server... Nov 19 2024 03:45:48 server2 maldet(3558832): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Nov 19 2024 03:45:48 server2 maldet(3558832): {update} latest version already installed. Nov 19 2024 03:45:48 server2 maldet(3558973): {sigup} performing signature update check... Nov 19 2024 03:45:48 server2 maldet(3558973): {sigup} local signature set is version 20241116556149 Nov 19 2024 03:45:49 server2 maldet(3558973): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Nov 19 2024 03:45:49 server2 maldet(3558973): {sigup} new signature set 202411191312395 available Nov 19 2024 03:45:49 server2 maldet(3558973): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Nov 19 2024 03:45:49 server2 maldet(3558973): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Nov 19 2024 03:45:49 server2 maldet(3558973): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Nov 19 2024 03:45:49 server2 maldet(3558973): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Nov 19 2024 03:45:49 server2 maldet(3558973): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Nov 19 2024 03:45:49 server2 maldet(3558973): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Nov 19 2024 03:45:49 server2 maldet(3558973): {sigup} verified md5sum of maldet-sigpack.tgz Nov 19 2024 03:45:49 server2 maldet(3558973): {sigup} unpacked and installed maldet-sigpack.tgz Nov 19 2024 03:45:49 server2 maldet(3558973): {sigup} verified md5sum of maldet-clean.tgz Nov 19 2024 03:45:49 server2 maldet(3558973): {sigup} unpacked and installed maldet-clean.tgz Nov 19 2024 03:45:49 server2 maldet(3558973): {sigup} signature set update completed Nov 19 2024 03:45:49 server2 maldet(3558973): {sigup} 17638 signatures (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Nov 19 2024 03:45:50 server2 maldet(3559353): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Nov 19 2024 03:45:51 server2 maldet(3559353): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Nov 19 2024 03:45:51 server2 maldet(3559353): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Nov 19 2024 03:45:51 server2 maldet(3559353): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Nov 19 2024 03:45:51 server2 maldet(3559353): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/cartforge/public_html/" "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/hessa/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/loco/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Nov 19 2024 03:47:47 server2 maldet(3559353): {scan} file list completed in 116s, found 24882 files... Nov 19 2024 03:47:47 server2 maldet(3559353): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Nov 19 2024 03:47:47 server2 maldet(3559353): {scan} scan of (24882 files) in progress... Nov 19 2024 03:54:26 server2 maldet(3559353): {scan} scan completed on : files 24882, malware hits 0, cleaned hits 0, time 516s Nov 19 2024 03:54:26 server2 maldet(3559353): {scan} scan report saved, to view run: maldet --report 241119-0345.3559353 Nov 20 2024 03:55:52 server2 maldet(3838824): {update} checking for available updates... Nov 20 2024 03:55:52 server2 maldet(3838824): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Nov 20 2024 03:55:52 server2 maldet(3838824): {update} hashing install files and checking against server... Nov 20 2024 03:55:52 server2 maldet(3838824): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Nov 20 2024 03:55:52 server2 maldet(3838824): {update} latest version already installed. Nov 20 2024 03:55:52 server2 maldet(3838957): {sigup} performing signature update check... Nov 20 2024 03:55:52 server2 maldet(3838957): {sigup} local signature set is version 202411191312395 Nov 20 2024 03:55:52 server2 maldet(3838957): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Nov 20 2024 03:55:52 server2 maldet(3838957): {sigup} latest signature set already installed Nov 20 2024 03:55:52 server2 maldet(3839068): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Nov 20 2024 03:55:54 server2 maldet(3839068): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Nov 20 2024 03:55:54 server2 maldet(3839068): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Nov 20 2024 03:55:54 server2 maldet(3839068): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Nov 20 2024 03:55:54 server2 maldet(3839068): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/cartforge/public_html/" "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/hessa/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/loco/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Nov 20 2024 03:56:53 server2 maldet(3839068): {scan} file list completed in 59s, found 6713 files... Nov 20 2024 03:56:53 server2 maldet(3839068): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Nov 20 2024 03:56:53 server2 maldet(3839068): {scan} scan of (6713 files) in progress... Nov 20 2024 03:59:38 server2 maldet(3839068): {scan} clamscan returned an error, check /usr/local/maldetect/logs/clamscan_log for details! Nov 20 2024 03:59:38 server2 maldet(3839068): {scan} scan completed on : files 6713, malware hits 0, cleaned hits 0, time 226s Nov 20 2024 03:59:38 server2 maldet(3839068): {scan} scan report saved, to view run: maldet --report 241120-0355.3839068 Nov 21 2024 03:52:55 server2 maldet(4080765): {update} checking for available updates... Nov 21 2024 03:52:55 server2 maldet(4080765): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Nov 21 2024 03:52:55 server2 maldet(4080765): {update} hashing install files and checking against server... Nov 21 2024 03:52:55 server2 maldet(4080765): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Nov 21 2024 03:52:55 server2 maldet(4080765): {update} latest version already installed. Nov 21 2024 03:52:56 server2 maldet(4080898): {sigup} performing signature update check... Nov 21 2024 03:52:56 server2 maldet(4080898): {sigup} local signature set is version 202411191312395 Nov 21 2024 03:52:56 server2 maldet(4080898): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Nov 21 2024 03:52:56 server2 maldet(4080898): {sigup} latest signature set already installed Nov 21 2024 03:52:56 server2 maldet(4081009): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Nov 21 2024 03:52:57 server2 maldet(4081009): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Nov 21 2024 03:52:57 server2 maldet(4081009): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Nov 21 2024 03:52:57 server2 maldet(4081009): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Nov 21 2024 03:52:57 server2 maldet(4081009): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/cartforge/public_html/" "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/hessa/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/loco/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Nov 21 2024 03:54:20 server2 maldet(4081009): {scan} file list completed in 83s, found 28390 files... Nov 21 2024 03:54:20 server2 maldet(4081009): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Nov 21 2024 03:54:20 server2 maldet(4081009): {scan} scan of (28390 files) in progress... Nov 21 2024 04:02:50 server2 maldet(4081009): {scan} scan completed on : files 28390, malware hits 0, cleaned hits 0, time 594s Nov 21 2024 04:02:50 server2 maldet(4081009): {scan} scan report saved, to view run: maldet --report 241121-0352.4081009 Nov 22 2024 03:12:00 server2 maldet(126249): {update} checking for available updates... Nov 22 2024 03:12:00 server2 maldet(126249): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Nov 22 2024 03:12:00 server2 maldet(126249): {update} hashing install files and checking against server... Nov 22 2024 03:12:00 server2 maldet(126249): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Nov 22 2024 03:12:00 server2 maldet(126249): {update} latest version already installed. Nov 22 2024 03:12:00 server2 maldet(126382): {sigup} performing signature update check... Nov 22 2024 03:12:00 server2 maldet(126382): {sigup} local signature set is version 202411191312395 Nov 22 2024 03:12:01 server2 maldet(126382): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Nov 22 2024 03:12:01 server2 maldet(126382): {sigup} latest signature set already installed Nov 22 2024 03:12:01 server2 maldet(126493): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Nov 22 2024 03:12:04 server2 maldet(126493): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Nov 22 2024 03:12:04 server2 maldet(126493): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Nov 22 2024 03:12:04 server2 maldet(126493): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Nov 22 2024 03:12:05 server2 maldet(126493): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/cartforge/public_html/" "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/hessa/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/loco/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Nov 22 2024 03:12:53 server2 maldet(126493): {scan} file list completed in 48s, found 15151 files... Nov 22 2024 03:12:53 server2 maldet(126493): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Nov 22 2024 03:12:53 server2 maldet(126493): {scan} scan of (15151 files) in progress... Nov 22 2024 03:18:17 server2 maldet(126493): {scan} scan completed on : files 15151, malware hits 0, cleaned hits 0, time 376s Nov 22 2024 03:18:17 server2 maldet(126493): {scan} scan report saved, to view run: maldet --report 241122-0312.126493 Nov 23 2024 03:10:43 server2 maldet(365931): {update} checking for available updates... Nov 23 2024 03:10:43 server2 maldet(365931): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Nov 23 2024 03:10:43 server2 maldet(365931): {update} hashing install files and checking against server... Nov 23 2024 03:10:44 server2 maldet(365931): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Nov 23 2024 03:10:44 server2 maldet(365931): {update} latest version already installed. Nov 23 2024 03:10:44 server2 maldet(366065): {sigup} performing signature update check... Nov 23 2024 03:10:44 server2 maldet(366065): {sigup} local signature set is version 202411191312395 Nov 23 2024 03:10:44 server2 maldet(366065): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Nov 23 2024 03:10:44 server2 maldet(366065): {sigup} new signature set 202411222071516 available Nov 23 2024 03:10:44 server2 maldet(366065): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Nov 23 2024 03:10:44 server2 maldet(366065): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Nov 23 2024 03:10:44 server2 maldet(366065): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Nov 23 2024 03:10:44 server2 maldet(366065): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Nov 23 2024 03:10:44 server2 maldet(366065): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Nov 23 2024 03:10:44 server2 maldet(366065): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Nov 23 2024 03:10:44 server2 maldet(366065): {sigup} verified md5sum of maldet-sigpack.tgz Nov 23 2024 03:10:45 server2 maldet(366065): {sigup} unpacked and installed maldet-sigpack.tgz Nov 23 2024 03:10:45 server2 maldet(366065): {sigup} verified md5sum of maldet-clean.tgz Nov 23 2024 03:10:45 server2 maldet(366065): {sigup} unpacked and installed maldet-clean.tgz Nov 23 2024 03:10:45 server2 maldet(366065): {sigup} signature set update completed Nov 23 2024 03:10:45 server2 maldet(366065): {sigup} 17638 signatures (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Nov 23 2024 03:10:45 server2 maldet(366294): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Nov 23 2024 03:10:46 server2 maldet(366294): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Nov 23 2024 03:10:46 server2 maldet(366294): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Nov 23 2024 03:10:46 server2 maldet(366294): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Nov 23 2024 03:10:46 server2 maldet(366294): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/cartforge/public_html/" "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/hessa/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/loco/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Nov 23 2024 03:11:47 server2 maldet(366294): {scan} file list completed in 61s, found 4666 files... Nov 23 2024 03:11:47 server2 maldet(366294): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Nov 23 2024 03:11:47 server2 maldet(366294): {scan} scan of (4666 files) in progress... Nov 23 2024 03:13:54 server2 maldet(366294): {scan} scan completed on : files 4666, malware hits 0, cleaned hits 0, time 189s Nov 23 2024 03:13:54 server2 maldet(366294): {scan} scan report saved, to view run: maldet --report 241123-0310.366294 Nov 24 2024 03:50:07 server2 maldet(614790): {update} checking for available updates... Nov 24 2024 03:50:07 server2 maldet(614790): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Nov 24 2024 03:50:07 server2 maldet(614790): {update} hashing install files and checking against server... Nov 24 2024 03:50:07 server2 maldet(614790): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Nov 24 2024 03:50:07 server2 maldet(614790): {update} latest version already installed. Nov 24 2024 03:50:07 server2 maldet(614923): {sigup} performing signature update check... Nov 24 2024 03:50:07 server2 maldet(614923): {sigup} local signature set is version 202411222071516 Nov 24 2024 03:50:07 server2 maldet(614923): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Nov 24 2024 03:50:07 server2 maldet(614923): {sigup} latest signature set already installed Nov 24 2024 03:50:07 server2 maldet(615034): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Nov 24 2024 03:50:09 server2 maldet(615034): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Nov 24 2024 03:50:09 server2 maldet(615034): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Nov 24 2024 03:50:09 server2 maldet(615034): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Nov 24 2024 03:50:09 server2 maldet(615034): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/cartforge/public_html/" "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/hessa/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/loco/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Nov 24 2024 03:50:56 server2 maldet(615034): {scan} file list completed in 47s, found 25540 files... Nov 24 2024 03:50:56 server2 maldet(615034): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Nov 24 2024 03:50:56 server2 maldet(615034): {scan} scan of (25540 files) in progress... Nov 24 2024 03:56:54 server2 maldet(615034): {scan} scan completed on : files 25540, malware hits 0, cleaned hits 0, time 407s Nov 24 2024 03:56:54 server2 maldet(615034): {scan} scan report saved, to view run: maldet --report 241124-0350.615034 Nov 25 2024 03:24:28 server2 maldet(868404): {update} checking for available updates... Nov 25 2024 03:24:28 server2 maldet(868404): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Nov 25 2024 03:24:28 server2 maldet(868404): {update} hashing install files and checking against server... Nov 25 2024 03:24:28 server2 maldet(868404): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Nov 25 2024 03:24:28 server2 maldet(868404): {update} latest version already installed. Nov 25 2024 03:24:28 server2 maldet(868537): {sigup} performing signature update check... Nov 25 2024 03:24:28 server2 maldet(868537): {sigup} local signature set is version 202411222071516 Nov 25 2024 03:24:28 server2 maldet(868537): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Nov 25 2024 03:24:29 server2 maldet(868537): {sigup} new signature set 202411252823427 available Nov 25 2024 03:24:29 server2 maldet(868537): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Nov 25 2024 03:24:29 server2 maldet(868537): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Nov 25 2024 03:24:29 server2 maldet(868537): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Nov 25 2024 03:24:29 server2 maldet(868537): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Nov 25 2024 03:24:29 server2 maldet(868537): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Nov 25 2024 03:24:29 server2 maldet(868537): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Nov 25 2024 03:24:29 server2 maldet(868537): {sigup} verified md5sum of maldet-sigpack.tgz Nov 25 2024 03:24:29 server2 maldet(868537): {sigup} unpacked and installed maldet-sigpack.tgz Nov 25 2024 03:24:29 server2 maldet(868537): {sigup} verified md5sum of maldet-clean.tgz Nov 25 2024 03:24:29 server2 maldet(868537): {sigup} unpacked and installed maldet-clean.tgz Nov 25 2024 03:24:29 server2 maldet(868537): {sigup} signature set update completed Nov 25 2024 03:24:29 server2 maldet(868537): {sigup} 17638 signatures (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Nov 25 2024 03:24:29 server2 maldet(868765): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Nov 25 2024 03:24:30 server2 maldet(868765): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Nov 25 2024 03:24:30 server2 maldet(868765): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Nov 25 2024 03:24:30 server2 maldet(868765): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Nov 25 2024 03:24:30 server2 maldet(868765): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/cartforge/public_html/" "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/hessa/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/loco/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Nov 25 2024 03:26:11 server2 maldet(868765): {scan} file list completed in 101s, found 6113 files... Nov 25 2024 03:26:11 server2 maldet(868765): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Nov 25 2024 03:26:11 server2 maldet(868765): {scan} scan of (6113 files) in progress... Nov 25 2024 03:28:55 server2 maldet(868765): {scan} scan completed on : files 6113, malware hits 0, cleaned hits 0, time 266s Nov 25 2024 03:28:55 server2 maldet(868765): {scan} scan report saved, to view run: maldet --report 241125-0324.868765 Nov 26 2024 03:40:16 server2 maldet(1125487): {update} checking for available updates... Nov 26 2024 03:40:18 server2 maldet(1125487): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Nov 26 2024 03:40:18 server2 maldet(1125487): {update} hashing install files and checking against server... Nov 26 2024 03:40:18 server2 maldet(1125487): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Nov 26 2024 03:40:18 server2 maldet(1125487): {update} latest version already installed. Nov 26 2024 03:40:18 server2 maldet(1125622): {sigup} performing signature update check... Nov 26 2024 03:40:18 server2 maldet(1125622): {sigup} local signature set is version 202411252823427 Nov 26 2024 03:40:18 server2 maldet(1125622): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Nov 26 2024 03:40:18 server2 maldet(1125622): {sigup} latest signature set already installed Nov 26 2024 03:40:19 server2 maldet(1125733): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Nov 26 2024 03:40:20 server2 maldet(1125733): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Nov 26 2024 03:40:20 server2 maldet(1125733): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Nov 26 2024 03:40:20 server2 maldet(1125733): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Nov 26 2024 03:40:20 server2 maldet(1125733): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/cartforge/public_html/" "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/hessa/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/loco/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Nov 26 2024 03:41:42 server2 maldet(1125733): {scan} file list completed in 82s, found 6864 files... Nov 26 2024 03:41:42 server2 maldet(1125733): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Nov 26 2024 03:41:42 server2 maldet(1125733): {scan} scan of (6864 files) in progress... Nov 26 2024 03:46:49 server2 maldet(1125733): {scan} scan completed on : files 6864, malware hits 0, cleaned hits 0, time 390s Nov 26 2024 03:46:49 server2 maldet(1125733): {scan} scan report saved, to view run: maldet --report 241126-0340.1125733 Nov 27 2024 03:57:48 server2 maldet(1377108): {update} checking for available updates... Nov 27 2024 03:57:48 server2 maldet(1377108): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Nov 27 2024 03:57:48 server2 maldet(1377108): {update} hashing install files and checking against server... Nov 27 2024 03:57:48 server2 maldet(1377108): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Nov 27 2024 03:57:48 server2 maldet(1377108): {update} latest version already installed. Nov 27 2024 03:57:49 server2 maldet(1377241): {sigup} performing signature update check... Nov 27 2024 03:57:49 server2 maldet(1377241): {sigup} local signature set is version 202411252823427 Nov 27 2024 03:57:49 server2 maldet(1377241): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Nov 27 2024 03:57:49 server2 maldet(1377241): {sigup} latest signature set already installed Nov 27 2024 03:57:49 server2 maldet(1377352): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Nov 27 2024 03:57:51 server2 maldet(1377352): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Nov 27 2024 03:57:51 server2 maldet(1377352): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Nov 27 2024 03:57:51 server2 maldet(1377352): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Nov 27 2024 03:57:51 server2 maldet(1377352): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/cartforge/public_html/" "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/hessa/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/loco/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Nov 27 2024 03:58:41 server2 maldet(1377352): {scan} file list completed in 50s, found 3936 files... Nov 27 2024 03:58:41 server2 maldet(1377352): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Nov 27 2024 03:58:41 server2 maldet(1377352): {scan} scan of (3936 files) in progress... Nov 27 2024 04:00:45 server2 maldet(1377352): {scan} scan completed on : files 3936, malware hits 0, cleaned hits 0, time 176s Nov 27 2024 04:00:45 server2 maldet(1377352): {scan} scan report saved, to view run: maldet --report 241127-0357.1377352 Nov 28 2024 03:36:47 server2 maldet(1620097): {update} checking for available updates... Nov 28 2024 03:36:47 server2 maldet(1620097): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Nov 28 2024 03:36:47 server2 maldet(1620097): {update} hashing install files and checking against server... Nov 28 2024 03:36:47 server2 maldet(1620097): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Nov 28 2024 03:36:47 server2 maldet(1620097): {update} latest version already installed. Nov 28 2024 03:36:47 server2 maldet(1620230): {sigup} performing signature update check... Nov 28 2024 03:36:47 server2 maldet(1620230): {sigup} local signature set is version 202411252823427 Nov 28 2024 03:36:47 server2 maldet(1620230): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Nov 28 2024 03:36:47 server2 maldet(1620230): {sigup} latest signature set already installed Nov 28 2024 03:36:47 server2 maldet(1620341): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Nov 28 2024 03:36:48 server2 maldet(1620341): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Nov 28 2024 03:36:48 server2 maldet(1620341): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Nov 28 2024 03:36:48 server2 maldet(1620341): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Nov 28 2024 03:36:48 server2 maldet(1620341): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/cartforge/public_html/" "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/hessa/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/loco/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Nov 28 2024 03:37:41 server2 maldet(1620341): {scan} file list completed in 53s, found 5035 files... Nov 28 2024 03:37:41 server2 maldet(1620341): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Nov 28 2024 03:37:41 server2 maldet(1620341): {scan} scan of (5035 files) in progress... Nov 28 2024 03:39:49 server2 maldet(1620341): {scan} scan completed on : files 5035, malware hits 0, cleaned hits 0, time 182s Nov 28 2024 03:39:49 server2 maldet(1620341): {scan} scan report saved, to view run: maldet --report 241128-0336.1620341 Nov 29 2024 03:18:19 server2 maldet(1869166): {update} checking for available updates... Nov 29 2024 03:18:19 server2 maldet(1869166): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Nov 29 2024 03:18:19 server2 maldet(1869166): {update} hashing install files and checking against server... Nov 29 2024 03:18:19 server2 maldet(1869166): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Nov 29 2024 03:18:20 server2 maldet(1869166): {update} latest version already installed. Nov 29 2024 03:18:20 server2 maldet(1869302): {sigup} performing signature update check... Nov 29 2024 03:18:20 server2 maldet(1869302): {sigup} local signature set is version 202411252823427 Nov 29 2024 03:18:20 server2 maldet(1869302): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Nov 29 2024 03:18:20 server2 maldet(1869302): {sigup} new signature set 202411283582038 available Nov 29 2024 03:18:20 server2 maldet(1869302): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Nov 29 2024 03:18:20 server2 maldet(1869302): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Nov 29 2024 03:18:20 server2 maldet(1869302): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Nov 29 2024 03:18:20 server2 maldet(1869302): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Nov 29 2024 03:18:20 server2 maldet(1869302): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Nov 29 2024 03:18:20 server2 maldet(1869302): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Nov 29 2024 03:18:21 server2 maldet(1869302): {sigup} verified md5sum of maldet-sigpack.tgz Nov 29 2024 03:18:21 server2 maldet(1869302): {sigup} unpacked and installed maldet-sigpack.tgz Nov 29 2024 03:18:21 server2 maldet(1869302): {sigup} verified md5sum of maldet-clean.tgz Nov 29 2024 03:18:21 server2 maldet(1869302): {sigup} unpacked and installed maldet-clean.tgz Nov 29 2024 03:18:21 server2 maldet(1869302): {sigup} signature set update completed Nov 29 2024 03:18:21 server2 maldet(1869302): {sigup} 17638 signatures (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Nov 29 2024 03:18:21 server2 maldet(1869531): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Nov 29 2024 03:18:22 server2 maldet(1869531): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Nov 29 2024 03:18:22 server2 maldet(1869531): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Nov 29 2024 03:18:22 server2 maldet(1869531): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Nov 29 2024 03:18:22 server2 maldet(1869531): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/cartforge/public_html/" "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/hessa/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/loco/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Nov 29 2024 03:20:42 server2 maldet(1869531): {scan} file list completed in 140s, found 6044 files... Nov 29 2024 03:20:43 server2 maldet(1869531): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Nov 29 2024 03:20:43 server2 maldet(1869531): {scan} scan of (6044 files) in progress... Nov 29 2024 03:25:23 server2 maldet(1869531): {scan} scan completed on : files 6044, malware hits 0, cleaned hits 0, time 422s Nov 29 2024 03:25:23 server2 maldet(1869531): {scan} scan report saved, to view run: maldet --report 241129-0318.1869531 Nov 30 2024 03:19:58 server2 maldet(2121801): {update} checking for available updates... Nov 30 2024 03:19:58 server2 maldet(2121801): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Nov 30 2024 03:19:58 server2 maldet(2121801): {update} hashing install files and checking against server... Nov 30 2024 03:19:59 server2 maldet(2121801): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Nov 30 2024 03:19:59 server2 maldet(2121801): {update} latest version already installed. Nov 30 2024 03:19:59 server2 maldet(2121934): {sigup} performing signature update check... Nov 30 2024 03:19:59 server2 maldet(2121934): {sigup} local signature set is version 202411283582038 Nov 30 2024 03:19:59 server2 maldet(2121934): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Nov 30 2024 03:19:59 server2 maldet(2121934): {sigup} latest signature set already installed Nov 30 2024 03:19:59 server2 maldet(2122045): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Nov 30 2024 03:20:01 server2 maldet(2122045): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Nov 30 2024 03:20:01 server2 maldet(2122045): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Nov 30 2024 03:20:01 server2 maldet(2122045): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Nov 30 2024 03:20:01 server2 maldet(2122045): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/cartforge/public_html/" "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/hessa/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/loco/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Nov 30 2024 03:21:49 server2 maldet(2122045): {scan} file list completed in 108s, found 4258 files... Nov 30 2024 03:21:49 server2 maldet(2122045): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Nov 30 2024 03:21:49 server2 maldet(2122045): {scan} scan of (4258 files) in progress... Nov 30 2024 03:24:54 server2 maldet(2122045): {scan} scan completed on : files 4258, malware hits 0, cleaned hits 0, time 295s Nov 30 2024 03:24:54 server2 maldet(2122045): {scan} scan report saved, to view run: maldet --report 241130-0319.2122045 Dec 01 2024 03:36:57 server2 maldet(2384244): {update} checking for available updates... Dec 01 2024 03:36:58 server2 maldet(2384244): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Dec 01 2024 03:36:58 server2 maldet(2384244): {update} hashing install files and checking against server... Dec 01 2024 03:36:58 server2 maldet(2384244): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Dec 01 2024 03:36:58 server2 maldet(2384244): {update} latest version already installed. Dec 01 2024 03:36:58 server2 maldet(2384381): {sigup} performing signature update check... Dec 01 2024 03:36:58 server2 maldet(2384381): {sigup} local signature set is version 202411283582038 Dec 01 2024 03:36:58 server2 maldet(2384381): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Dec 01 2024 03:36:58 server2 maldet(2384381): {sigup} latest signature set already installed Dec 01 2024 03:36:58 server2 maldet(2384492): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Dec 01 2024 03:37:00 server2 maldet(2384492): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Dec 01 2024 03:37:00 server2 maldet(2384492): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Dec 01 2024 03:37:00 server2 maldet(2384492): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Dec 01 2024 03:37:00 server2 maldet(2384492): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/cartforge/public_html/" "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/hessa/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/loco/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Dec 01 2024 03:37:54 server2 maldet(2384492): {scan} file list completed in 54s, found 3292 files... Dec 01 2024 03:37:54 server2 maldet(2384492): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Dec 01 2024 03:37:54 server2 maldet(2384492): {scan} scan of (3292 files) in progress... Dec 01 2024 03:40:11 server2 maldet(2384492): {scan} scan completed on : files 3292, malware hits 0, cleaned hits 0, time 193s Dec 01 2024 03:40:11 server2 maldet(2384492): {scan} scan report saved, to view run: maldet --report 241201-0336.2384492 Dec 02 2024 03:24:52 server2 maldet(2641047): {update} checking for available updates... Dec 02 2024 03:24:52 server2 maldet(2641047): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Dec 02 2024 03:24:52 server2 maldet(2641047): {update} hashing install files and checking against server... Dec 02 2024 03:24:52 server2 maldet(2641047): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Dec 02 2024 03:24:52 server2 maldet(2641047): {update} latest version already installed. Dec 02 2024 03:24:52 server2 maldet(2641181): {sigup} performing signature update check... Dec 02 2024 03:24:52 server2 maldet(2641181): {sigup} local signature set is version 202411283582038 Dec 02 2024 03:24:52 server2 maldet(2641181): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Dec 02 2024 03:24:53 server2 maldet(2641181): {sigup} new signature set 20241201128768 available Dec 02 2024 03:24:53 server2 maldet(2641181): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Dec 02 2024 03:24:53 server2 maldet(2641181): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Dec 02 2024 03:24:53 server2 maldet(2641181): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Dec 02 2024 03:24:53 server2 maldet(2641181): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Dec 02 2024 03:24:53 server2 maldet(2641181): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Dec 02 2024 03:24:53 server2 maldet(2641181): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Dec 02 2024 03:24:53 server2 maldet(2641181): {sigup} verified md5sum of maldet-sigpack.tgz Dec 02 2024 03:24:53 server2 maldet(2641181): {sigup} unpacked and installed maldet-sigpack.tgz Dec 02 2024 03:24:53 server2 maldet(2641181): {sigup} verified md5sum of maldet-clean.tgz Dec 02 2024 03:24:53 server2 maldet(2641181): {sigup} unpacked and installed maldet-clean.tgz Dec 02 2024 03:24:53 server2 maldet(2641181): {sigup} signature set update completed Dec 02 2024 03:24:53 server2 maldet(2641181): {sigup} 17638 signatures (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Dec 02 2024 03:24:54 server2 maldet(2641409): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Dec 02 2024 03:24:55 server2 maldet(2641409): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Dec 02 2024 03:24:55 server2 maldet(2641409): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Dec 02 2024 03:24:55 server2 maldet(2641409): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Dec 02 2024 03:24:55 server2 maldet(2641409): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/cartforge/public_html/" "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/hessa/public_html/" "/home/jamaicasupertour/public_html/" "/home/loco/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Dec 02 2024 03:25:51 server2 maldet(2641409): {scan} file list completed in 55s, found 5721 files... Dec 02 2024 03:25:51 server2 maldet(2641409): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Dec 02 2024 03:25:51 server2 maldet(2641409): {scan} scan of (5721 files) in progress... Dec 02 2024 03:29:21 server2 maldet(2641409): {scan} scan completed on : files 5721, malware hits 0, cleaned hits 0, time 267s Dec 02 2024 03:29:21 server2 maldet(2641409): {scan} scan report saved, to view run: maldet --report 241202-0324.2641409 Dec 03 2024 03:10:56 server2 maldet(2987010): {update} checking for available updates... Dec 03 2024 03:10:57 server2 maldet(2987010): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Dec 03 2024 03:10:57 server2 maldet(2987010): {update} hashing install files and checking against server... Dec 03 2024 03:10:57 server2 maldet(2987010): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Dec 03 2024 03:10:57 server2 maldet(2987010): {update} latest version already installed. Dec 03 2024 03:10:57 server2 maldet(2987146): {sigup} performing signature update check... Dec 03 2024 03:10:57 server2 maldet(2987146): {sigup} local signature set is version 20241201128768 Dec 03 2024 03:10:57 server2 maldet(2987146): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Dec 03 2024 03:10:57 server2 maldet(2987146): {sigup} latest signature set already installed Dec 03 2024 03:10:58 server2 maldet(2987260): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Dec 03 2024 03:10:59 server2 maldet(2987260): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Dec 03 2024 03:10:59 server2 maldet(2987260): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Dec 03 2024 03:10:59 server2 maldet(2987260): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Dec 03 2024 03:11:00 server2 maldet(2987260): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/cartforge/public_html/" "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/hessa/public_html/" "/home/jamaicasupertour/public_html/" "/home/loco/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Dec 03 2024 03:12:15 server2 maldet(2987260): {scan} file list completed in 75s, found 5781 files... Dec 03 2024 03:12:15 server2 maldet(2987260): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Dec 03 2024 03:12:15 server2 maldet(2987260): {scan} scan of (5781 files) in progress... Dec 03 2024 03:16:44 server2 maldet(2987260): {scan} scan completed on : files 5781, malware hits 0, cleaned hits 0, time 346s Dec 03 2024 03:16:44 server2 maldet(2987260): {scan} scan report saved, to view run: maldet --report 241203-0310.2987260 Dec 04 2024 03:54:17 server2 maldet(3277944): {update} checking for available updates... Dec 04 2024 03:54:17 server2 maldet(3277944): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Dec 04 2024 03:54:17 server2 maldet(3277944): {update} hashing install files and checking against server... Dec 04 2024 03:54:17 server2 maldet(3277944): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Dec 04 2024 03:54:17 server2 maldet(3277944): {update} latest version already installed. Dec 04 2024 03:54:17 server2 maldet(3278078): {sigup} performing signature update check... Dec 04 2024 03:54:17 server2 maldet(3278078): {sigup} local signature set is version 20241201128768 Dec 04 2024 03:54:17 server2 maldet(3278078): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Dec 04 2024 03:54:17 server2 maldet(3278078): {sigup} latest signature set already installed Dec 04 2024 03:54:18 server2 maldet(3278191): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Dec 04 2024 03:54:21 server2 maldet(3278191): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Dec 04 2024 03:54:21 server2 maldet(3278191): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Dec 04 2024 03:54:21 server2 maldet(3278191): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Dec 04 2024 03:54:21 server2 maldet(3278191): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/cartforge/public_html/" "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/hessa/public_html/" "/home/jamaicasupertour/public_html/" "/home/loco/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Dec 04 2024 03:55:31 server2 maldet(3278191): {scan} file list completed in 70s, found 22080 files... Dec 04 2024 03:55:31 server2 maldet(3278191): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Dec 04 2024 03:55:31 server2 maldet(3278191): {scan} scan of (22080 files) in progress... Dec 04 2024 04:02:51 server2 maldet(3278191): {scan} clamscan returned an error, check /usr/local/maldetect/logs/clamscan_log for details! Dec 04 2024 04:02:51 server2 maldet(3278191): {scan} scan completed on : files 22080, malware hits 0, cleaned hits 0, time 513s Dec 04 2024 04:02:51 server2 maldet(3278191): {scan} scan report saved, to view run: maldet --report 241204-0354.3278191 Dec 05 2024 03:28:01 server2 maldet(3562087): {update} checking for available updates... Dec 05 2024 03:28:01 server2 maldet(3562087): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Dec 05 2024 03:28:01 server2 maldet(3562087): {update} hashing install files and checking against server... Dec 05 2024 03:28:02 server2 maldet(3562087): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Dec 05 2024 03:28:02 server2 maldet(3562087): {update} latest version already installed. Dec 05 2024 03:28:02 server2 maldet(3562254): {sigup} performing signature update check... Dec 05 2024 03:28:02 server2 maldet(3562254): {sigup} local signature set is version 20241201128768 Dec 05 2024 03:28:03 server2 maldet(3562254): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Dec 05 2024 03:28:03 server2 maldet(3562254): {sigup} new signature set 20241204548533 available Dec 05 2024 03:28:03 server2 maldet(3562254): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Dec 05 2024 03:28:03 server2 maldet(3562254): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Dec 05 2024 03:28:05 server2 maldet(3562254): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Dec 05 2024 03:28:05 server2 maldet(3562254): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Dec 05 2024 03:28:06 server2 maldet(3562254): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Dec 05 2024 03:28:07 server2 maldet(3562254): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Dec 05 2024 03:28:07 server2 maldet(3562254): {sigup} verified md5sum of maldet-sigpack.tgz Dec 05 2024 03:28:07 server2 maldet(3562254): {sigup} unpacked and installed maldet-sigpack.tgz Dec 05 2024 03:28:07 server2 maldet(3562254): {sigup} verified md5sum of maldet-clean.tgz Dec 05 2024 03:28:07 server2 maldet(3562254): {sigup} unpacked and installed maldet-clean.tgz Dec 05 2024 03:28:07 server2 maldet(3562254): {sigup} signature set update completed Dec 05 2024 03:28:07 server2 maldet(3562254): {sigup} 17638 signatures (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Dec 05 2024 03:28:07 server2 maldet(3562532): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Dec 05 2024 03:28:09 server2 maldet(3562532): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Dec 05 2024 03:28:09 server2 maldet(3562532): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Dec 05 2024 03:28:09 server2 maldet(3562532): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Dec 05 2024 03:28:09 server2 maldet(3562532): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/cartforge/public_html/" "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/hessa/public_html/" "/home/jamaicasupertour/public_html/" "/home/loco/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Dec 05 2024 03:28:51 server2 maldet(3562532): {scan} file list completed in 42s, found 27932 files... Dec 05 2024 03:28:51 server2 maldet(3562532): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Dec 05 2024 03:28:51 server2 maldet(3562532): {scan} scan of (27932 files) in progress... Dec 05 2024 03:36:36 server2 maldet(3562532): {scan} scan completed on : files 27932, malware hits 0, cleaned hits 0, time 509s Dec 05 2024 03:36:36 server2 maldet(3562532): {scan} scan report saved, to view run: maldet --report 241205-0328.3562532 Dec 06 2024 03:13:25 server2 maldet(3846690): {update} checking for available updates... Dec 06 2024 03:13:26 server2 maldet(3846690): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Dec 06 2024 03:13:26 server2 maldet(3846690): {update} hashing install files and checking against server... Dec 06 2024 03:13:26 server2 maldet(3846690): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Dec 06 2024 03:13:26 server2 maldet(3846690): {update} latest version already installed. Dec 06 2024 03:13:26 server2 maldet(3846823): {sigup} performing signature update check... Dec 06 2024 03:13:26 server2 maldet(3846823): {sigup} local signature set is version 20241204548533 Dec 06 2024 03:13:26 server2 maldet(3846823): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Dec 06 2024 03:13:26 server2 maldet(3846823): {sigup} latest signature set already installed Dec 06 2024 03:13:26 server2 maldet(3846934): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Dec 06 2024 03:13:28 server2 maldet(3846934): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Dec 06 2024 03:13:28 server2 maldet(3846934): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Dec 06 2024 03:13:28 server2 maldet(3846934): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Dec 06 2024 03:13:28 server2 maldet(3846934): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/cartforge/public_html/" "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/hessa/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/loco/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Dec 06 2024 03:14:31 server2 maldet(3846934): {scan} file list completed in 63s, found 20865 files... Dec 06 2024 03:14:31 server2 maldet(3846934): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Dec 06 2024 03:14:32 server2 maldet(3846934): {scan} scan of (20865 files) in progress... Dec 06 2024 03:16:53 server2 maldet(3846934): {scan} scan completed on : files 20865, malware hits 0, cleaned hits 0, time 206s Dec 06 2024 03:16:53 server2 maldet(3846934): {scan} scan report saved, to view run: maldet --report 241206-0313.3846934 Dec 07 2024 04:05:57 server2 maldet(4153286): {update} checking for available updates... Dec 07 2024 04:05:57 server2 maldet(4153286): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Dec 07 2024 04:05:57 server2 maldet(4153286): {update} hashing install files and checking against server... Dec 07 2024 04:05:57 server2 maldet(4153286): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Dec 07 2024 04:05:57 server2 maldet(4153286): {update} latest version already installed. Dec 07 2024 04:05:57 server2 maldet(4153419): {sigup} performing signature update check... Dec 07 2024 04:05:58 server2 maldet(4153419): {sigup} local signature set is version 20241204548533 Dec 07 2024 04:05:58 server2 maldet(4153419): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Dec 07 2024 04:05:58 server2 maldet(4153419): {sigup} new signature set 20241207552742 available Dec 07 2024 04:05:58 server2 maldet(4153419): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Dec 07 2024 04:05:58 server2 maldet(4153419): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Dec 07 2024 04:05:58 server2 maldet(4153419): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Dec 07 2024 04:05:58 server2 maldet(4153419): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Dec 07 2024 04:05:58 server2 maldet(4153419): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Dec 07 2024 04:05:58 server2 maldet(4153419): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Dec 07 2024 04:05:58 server2 maldet(4153419): {sigup} verified md5sum of maldet-sigpack.tgz Dec 07 2024 04:05:58 server2 maldet(4153419): {sigup} unpacked and installed maldet-sigpack.tgz Dec 07 2024 04:05:58 server2 maldet(4153419): {sigup} verified md5sum of maldet-clean.tgz Dec 07 2024 04:05:58 server2 maldet(4153419): {sigup} unpacked and installed maldet-clean.tgz Dec 07 2024 04:05:58 server2 maldet(4153419): {sigup} signature set update completed Dec 07 2024 04:05:59 server2 maldet(4153419): {sigup} 17638 signatures (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Dec 07 2024 04:05:59 server2 maldet(4153648): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Dec 07 2024 04:06:07 server2 maldet(4153648): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Dec 07 2024 04:06:07 server2 maldet(4153648): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Dec 07 2024 04:06:07 server2 maldet(4153648): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Dec 07 2024 04:06:07 server2 maldet(4153648): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/cartforge/public_html/" "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/hessa/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/loco/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Dec 07 2024 04:07:13 server2 maldet(4153648): {scan} file list completed in 65s, found 3148 files... Dec 07 2024 04:07:13 server2 maldet(4153648): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Dec 07 2024 04:07:13 server2 maldet(4153648): {scan} scan of (3148 files) in progress... Dec 07 2024 04:09:14 server2 maldet(4153648): {scan} scan completed on : files 3148, malware hits 0, cleaned hits 0, time 195s Dec 07 2024 04:09:14 server2 maldet(4153648): {scan} scan report saved, to view run: maldet --report 241207-0405.4153648 Dec 08 2024 03:23:44 server2 maldet(235244): {update} checking for available updates... Dec 08 2024 03:23:44 server2 maldet(235244): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Dec 08 2024 03:23:44 server2 maldet(235244): {update} hashing install files and checking against server... Dec 08 2024 03:23:44 server2 maldet(235244): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Dec 08 2024 03:23:44 server2 maldet(235244): {update} latest version already installed. Dec 08 2024 03:23:44 server2 maldet(235377): {sigup} performing signature update check... Dec 08 2024 03:23:44 server2 maldet(235377): {sigup} local signature set is version 20241207552742 Dec 08 2024 03:23:44 server2 maldet(235377): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Dec 08 2024 03:23:45 server2 maldet(235377): {sigup} latest signature set already installed Dec 08 2024 03:23:45 server2 maldet(235490): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Dec 08 2024 03:23:47 server2 maldet(235490): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Dec 08 2024 03:23:47 server2 maldet(235490): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Dec 08 2024 03:23:47 server2 maldet(235490): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Dec 08 2024 03:23:47 server2 maldet(235490): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/cartforge/public_html/" "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/hessa/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/loco/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Dec 08 2024 03:24:39 server2 maldet(235490): {scan} file list completed in 52s, found 4262 files... Dec 08 2024 03:24:39 server2 maldet(235490): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Dec 08 2024 03:24:39 server2 maldet(235490): {scan} scan of (4262 files) in progress... Dec 08 2024 03:27:28 server2 maldet(235490): {scan} scan completed on : files 4262, malware hits 0, cleaned hits 0, time 223s Dec 08 2024 03:27:28 server2 maldet(235490): {scan} scan report saved, to view run: maldet --report 241208-0323.235490 Dec 09 2024 03:47:55 server2 maldet(489042): {update} checking for available updates... Dec 09 2024 03:47:55 server2 maldet(489042): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Dec 09 2024 03:47:55 server2 maldet(489042): {update} hashing install files and checking against server... Dec 09 2024 03:47:55 server2 maldet(489042): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Dec 09 2024 03:47:55 server2 maldet(489042): {update} latest version already installed. Dec 09 2024 03:47:55 server2 maldet(489175): {sigup} performing signature update check... Dec 09 2024 03:47:55 server2 maldet(489175): {sigup} local signature set is version 20241207552742 Dec 09 2024 03:47:56 server2 maldet(489175): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Dec 09 2024 03:47:56 server2 maldet(489175): {sigup} latest signature set already installed Dec 09 2024 03:47:56 server2 maldet(489286): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Dec 09 2024 03:47:59 server2 maldet(489286): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Dec 09 2024 03:47:59 server2 maldet(489286): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Dec 09 2024 03:47:59 server2 maldet(489286): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Dec 09 2024 03:47:59 server2 maldet(489286): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/cartforge/public_html/" "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/hessa/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/loco/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Dec 09 2024 03:49:18 server2 maldet(489286): {scan} file list completed in 79s, found 1556 files... Dec 09 2024 03:49:18 server2 maldet(489286): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Dec 09 2024 03:49:18 server2 maldet(489286): {scan} scan of (1556 files) in progress... Dec 09 2024 03:51:15 server2 maldet(489286): {scan} scan completed on : files 1556, malware hits 0, cleaned hits 0, time 199s Dec 09 2024 03:51:15 server2 maldet(489286): {scan} scan report saved, to view run: maldet --report 241209-0347.489286 Dec 10 2024 03:16:40 server2 maldet(751675): {update} checking for available updates... Dec 10 2024 03:16:40 server2 maldet(751675): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Dec 10 2024 03:16:40 server2 maldet(751675): {update} hashing install files and checking against server... Dec 10 2024 03:16:40 server2 maldet(751675): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Dec 10 2024 03:16:40 server2 maldet(751675): {update} latest version already installed. Dec 10 2024 03:16:40 server2 maldet(751810): {sigup} performing signature update check... Dec 10 2024 03:16:40 server2 maldet(751810): {sigup} local signature set is version 20241207552742 Dec 10 2024 03:16:41 server2 maldet(751810): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Dec 10 2024 03:16:41 server2 maldet(751810): {sigup} new signature set 20241210573652 available Dec 10 2024 03:16:41 server2 maldet(751810): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Dec 10 2024 03:16:41 server2 maldet(751810): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Dec 10 2024 03:16:41 server2 maldet(751810): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Dec 10 2024 03:16:41 server2 maldet(751810): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Dec 10 2024 03:16:41 server2 maldet(751810): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Dec 10 2024 03:16:41 server2 maldet(751810): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Dec 10 2024 03:16:41 server2 maldet(751810): {sigup} verified md5sum of maldet-sigpack.tgz Dec 10 2024 03:16:42 server2 maldet(751810): {sigup} unpacked and installed maldet-sigpack.tgz Dec 10 2024 03:16:42 server2 maldet(751810): {sigup} verified md5sum of maldet-clean.tgz Dec 10 2024 03:16:42 server2 maldet(751810): {sigup} unpacked and installed maldet-clean.tgz Dec 10 2024 03:16:42 server2 maldet(751810): {sigup} signature set update completed Dec 10 2024 03:16:42 server2 maldet(751810): {sigup} 17638 signatures (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Dec 10 2024 03:16:42 server2 maldet(752040): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Dec 10 2024 03:16:43 server2 maldet(752040): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Dec 10 2024 03:16:43 server2 maldet(752040): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Dec 10 2024 03:16:43 server2 maldet(752040): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Dec 10 2024 03:16:43 server2 maldet(752040): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/cartforge/public_html/" "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/hessa/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/loco/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Dec 10 2024 03:17:55 server2 maldet(752040): {scan} file list completed in 72s, found 922 files... Dec 10 2024 03:17:55 server2 maldet(752040): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Dec 10 2024 03:17:55 server2 maldet(752040): {scan} scan of (922 files) in progress... Dec 10 2024 03:18:59 server2 maldet(752040): {scan} scan completed on : files 922, malware hits 0, cleaned hits 0, time 137s Dec 10 2024 03:18:59 server2 maldet(752040): {scan} scan report saved, to view run: maldet --report 241210-0316.752040 Dec 11 2024 03:16:11 server2 maldet(1016940): {update} checking for available updates... Dec 11 2024 03:16:11 server2 maldet(1016940): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Dec 11 2024 03:16:11 server2 maldet(1016940): {update} hashing install files and checking against server... Dec 11 2024 03:16:11 server2 maldet(1016940): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Dec 11 2024 03:16:11 server2 maldet(1016940): {update} latest version already installed. Dec 11 2024 03:16:11 server2 maldet(1017073): {sigup} performing signature update check... Dec 11 2024 03:16:11 server2 maldet(1017073): {sigup} local signature set is version 20241210573652 Dec 11 2024 03:16:11 server2 maldet(1017073): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Dec 11 2024 03:16:11 server2 maldet(1017073): {sigup} latest signature set already installed Dec 11 2024 03:16:12 server2 maldet(1017185): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Dec 11 2024 03:16:14 server2 maldet(1017185): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Dec 11 2024 03:16:14 server2 maldet(1017185): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Dec 11 2024 03:16:14 server2 maldet(1017185): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Dec 11 2024 03:16:14 server2 maldet(1017185): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/cartforge/public_html/" "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/hessa/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/loco/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Dec 11 2024 03:17:16 server2 maldet(1017185): {scan} file list completed in 62s, found 4106 files... Dec 11 2024 03:17:16 server2 maldet(1017185): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Dec 11 2024 03:17:16 server2 maldet(1017185): {scan} scan of (4106 files) in progress... Dec 11 2024 03:20:07 server2 maldet(1017185): {scan} scan completed on : files 4106, malware hits 0, cleaned hits 0, time 235s Dec 11 2024 03:20:07 server2 maldet(1017185): {scan} scan report saved, to view run: maldet --report 241211-0316.1017185 Dec 12 2024 03:24:59 server2 maldet(1303063): {update} checking for available updates... Dec 12 2024 03:24:59 server2 maldet(1303063): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Dec 12 2024 03:24:59 server2 maldet(1303063): {update} hashing install files and checking against server... Dec 12 2024 03:25:00 server2 maldet(1303063): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Dec 12 2024 03:25:00 server2 maldet(1303063): {update} latest version already installed. Dec 12 2024 03:25:00 server2 maldet(1303196): {sigup} performing signature update check... Dec 12 2024 03:25:00 server2 maldet(1303196): {sigup} local signature set is version 20241210573652 Dec 12 2024 03:25:00 server2 maldet(1303196): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Dec 12 2024 03:25:00 server2 maldet(1303196): {sigup} latest signature set already installed Dec 12 2024 03:25:00 server2 maldet(1303307): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Dec 12 2024 03:25:00 server2 maldet(1303307): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Dec 12 2024 03:25:00 server2 maldet(1303307): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Dec 12 2024 03:25:00 server2 maldet(1303307): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Dec 12 2024 03:25:00 server2 maldet(1303307): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/cartforge/public_html/" "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/hessa/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/loco/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Dec 12 2024 03:25:33 server2 maldet(1303307): {scan} file list completed in 33s, found 1527 files... Dec 12 2024 03:25:33 server2 maldet(1303307): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Dec 12 2024 03:25:33 server2 maldet(1303307): {scan} scan of (1527 files) in progress... Dec 12 2024 03:26:37 server2 maldet(1303307): {scan} scan completed on : files 1527, malware hits 0, cleaned hits 0, time 97s Dec 12 2024 03:26:37 server2 maldet(1303307): {scan} scan report saved, to view run: maldet --report 241212-0325.1303307 Dec 13 2024 03:53:13 server2 maldet(1536003): {update} checking for available updates... Dec 13 2024 03:53:13 server2 maldet(1536003): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Dec 13 2024 03:53:13 server2 maldet(1536003): {update} hashing install files and checking against server... Dec 13 2024 03:53:13 server2 maldet(1536003): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Dec 13 2024 03:53:13 server2 maldet(1536003): {update} latest version already installed. Dec 13 2024 03:53:13 server2 maldet(1536138): {sigup} performing signature update check... Dec 13 2024 03:53:13 server2 maldet(1536138): {sigup} local signature set is version 20241210573652 Dec 13 2024 03:53:13 server2 maldet(1536138): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Dec 13 2024 03:53:13 server2 maldet(1536138): {sigup} new signature set 202412131329178 available Dec 13 2024 03:53:13 server2 maldet(1536138): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Dec 13 2024 03:53:14 server2 maldet(1536138): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Dec 13 2024 03:53:14 server2 maldet(1536138): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Dec 13 2024 03:53:14 server2 maldet(1536138): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Dec 13 2024 03:53:14 server2 maldet(1536138): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Dec 13 2024 03:53:14 server2 maldet(1536138): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Dec 13 2024 03:53:14 server2 maldet(1536138): {sigup} verified md5sum of maldet-sigpack.tgz Dec 13 2024 03:53:14 server2 maldet(1536138): {sigup} unpacked and installed maldet-sigpack.tgz Dec 13 2024 03:53:14 server2 maldet(1536138): {sigup} verified md5sum of maldet-clean.tgz Dec 13 2024 03:53:14 server2 maldet(1536138): {sigup} unpacked and installed maldet-clean.tgz Dec 13 2024 03:53:14 server2 maldet(1536138): {sigup} signature set update completed Dec 13 2024 03:53:14 server2 maldet(1536138): {sigup} 17638 signatures (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Dec 13 2024 03:53:14 server2 maldet(1536367): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Dec 13 2024 03:53:15 server2 maldet(1536367): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Dec 13 2024 03:53:15 server2 maldet(1536367): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Dec 13 2024 03:53:15 server2 maldet(1536367): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Dec 13 2024 03:53:15 server2 maldet(1536367): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/hessa/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/loco/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Dec 13 2024 03:53:30 server2 maldet(1536367): {scan} file list completed in 15s, found 767 files... Dec 13 2024 03:53:31 server2 maldet(1536367): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Dec 13 2024 03:53:31 server2 maldet(1536367): {scan} scan of (767 files) in progress... Dec 13 2024 03:54:17 server2 maldet(1536367): {scan} scan completed on : files 767, malware hits 0, cleaned hits 0, time 63s Dec 13 2024 03:54:17 server2 maldet(1536367): {scan} scan report saved, to view run: maldet --report 241213-0353.1536367 Dec 14 2024 03:35:40 server2 maldet(1773704): {update} checking for available updates... Dec 14 2024 03:35:40 server2 maldet(1773704): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Dec 14 2024 03:35:40 server2 maldet(1773704): {update} hashing install files and checking against server... Dec 14 2024 03:35:40 server2 maldet(1773704): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Dec 14 2024 03:35:40 server2 maldet(1773704): {update} latest version already installed. Dec 14 2024 03:35:41 server2 maldet(1773837): {sigup} performing signature update check... Dec 14 2024 03:35:41 server2 maldet(1773837): {sigup} local signature set is version 202412131329178 Dec 14 2024 03:35:41 server2 maldet(1773837): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Dec 14 2024 03:35:41 server2 maldet(1773837): {sigup} latest signature set already installed Dec 14 2024 03:35:41 server2 maldet(1773948): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Dec 14 2024 03:35:42 server2 maldet(1773948): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Dec 14 2024 03:35:42 server2 maldet(1773948): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Dec 14 2024 03:35:42 server2 maldet(1773948): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Dec 14 2024 03:35:42 server2 maldet(1773948): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/hessa/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/loco/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Dec 14 2024 03:36:06 server2 maldet(1773948): {scan} file list completed in 24s, found 1034 files... Dec 14 2024 03:36:06 server2 maldet(1773948): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Dec 14 2024 03:36:06 server2 maldet(1773948): {scan} scan of (1034 files) in progress... Dec 14 2024 03:37:07 server2 maldet(1773948): {scan} clamscan returned an error, check /usr/local/maldetect/logs/clamscan_log for details! Dec 14 2024 03:37:07 server2 maldet(1773948): {scan} scan completed on : files 1034, malware hits 0, cleaned hits 0, time 86s Dec 14 2024 03:37:07 server2 maldet(1773948): {scan} scan report saved, to view run: maldet --report 241214-0335.1773948 Dec 15 2024 03:40:58 server2 maldet(1999082): {update} checking for available updates... Dec 15 2024 03:40:58 server2 maldet(1999082): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Dec 15 2024 03:40:58 server2 maldet(1999082): {update} hashing install files and checking against server... Dec 15 2024 03:40:58 server2 maldet(1999082): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Dec 15 2024 03:40:58 server2 maldet(1999082): {update} latest version already installed. Dec 15 2024 03:40:58 server2 maldet(1999215): {sigup} performing signature update check... Dec 15 2024 03:40:58 server2 maldet(1999215): {sigup} local signature set is version 202412131329178 Dec 15 2024 03:40:58 server2 maldet(1999215): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Dec 15 2024 03:40:58 server2 maldet(1999215): {sigup} latest signature set already installed Dec 15 2024 03:40:58 server2 maldet(1999328): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Dec 15 2024 03:41:00 server2 maldet(1999328): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Dec 15 2024 03:41:00 server2 maldet(1999328): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Dec 15 2024 03:41:00 server2 maldet(1999328): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Dec 15 2024 03:41:00 server2 maldet(1999328): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/hessa/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/loco/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Dec 15 2024 03:41:12 server2 maldet(1999328): {scan} file list completed in 12s, found 394 files... Dec 15 2024 03:41:12 server2 maldet(1999328): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Dec 15 2024 03:41:12 server2 maldet(1999328): {scan} scan of (394 files) in progress... Dec 15 2024 03:41:47 server2 maldet(1999328): {scan} scan completed on : files 394, malware hits 0, cleaned hits 0, time 49s Dec 15 2024 03:41:47 server2 maldet(1999328): {scan} scan report saved, to view run: maldet --report 241215-0340.1999328 Dec 16 2024 03:31:44 server2 maldet(2214222): {update} checking for available updates... Dec 16 2024 03:31:44 server2 maldet(2214222): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Dec 16 2024 03:31:44 server2 maldet(2214222): {update} hashing install files and checking against server... Dec 16 2024 03:31:44 server2 maldet(2214222): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Dec 16 2024 03:31:44 server2 maldet(2214222): {update} latest version already installed. Dec 16 2024 03:31:44 server2 maldet(2214355): {sigup} performing signature update check... Dec 16 2024 03:31:44 server2 maldet(2214355): {sigup} local signature set is version 202412131329178 Dec 16 2024 03:31:45 server2 maldet(2214355): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Dec 16 2024 03:31:45 server2 maldet(2214355): {sigup} new signature set 20241216540968 available Dec 16 2024 03:31:45 server2 maldet(2214355): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Dec 16 2024 03:31:45 server2 maldet(2214355): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Dec 16 2024 03:31:45 server2 maldet(2214355): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Dec 16 2024 03:31:45 server2 maldet(2214355): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Dec 16 2024 03:31:45 server2 maldet(2214355): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Dec 16 2024 03:31:45 server2 maldet(2214355): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Dec 16 2024 03:31:45 server2 maldet(2214355): {sigup} verified md5sum of maldet-sigpack.tgz Dec 16 2024 03:31:45 server2 maldet(2214355): {sigup} unpacked and installed maldet-sigpack.tgz Dec 16 2024 03:31:45 server2 maldet(2214355): {sigup} verified md5sum of maldet-clean.tgz Dec 16 2024 03:31:45 server2 maldet(2214355): {sigup} unpacked and installed maldet-clean.tgz Dec 16 2024 03:31:45 server2 maldet(2214355): {sigup} signature set update completed Dec 16 2024 03:31:45 server2 maldet(2214355): {sigup} 17638 signatures (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Dec 16 2024 03:31:45 server2 maldet(2214587): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Dec 16 2024 03:31:46 server2 maldet(2214587): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Dec 16 2024 03:31:46 server2 maldet(2214587): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Dec 16 2024 03:31:46 server2 maldet(2214587): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Dec 16 2024 03:31:46 server2 maldet(2214587): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/hessa/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/loco/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Dec 16 2024 03:32:02 server2 maldet(2214587): {scan} file list completed in 16s, found 881 files... Dec 16 2024 03:32:02 server2 maldet(2214587): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Dec 16 2024 03:32:02 server2 maldet(2214587): {scan} scan of (881 files) in progress... Dec 16 2024 03:33:16 server2 maldet(2214587): {scan} scan completed on : files 881, malware hits 0, cleaned hits 0, time 91s Dec 16 2024 03:33:16 server2 maldet(2214587): {scan} scan report saved, to view run: maldet --report 241216-0331.2214587 Dec 17 2024 03:17:03 server2 maldet(2447848): {update} checking for available updates... Dec 17 2024 03:17:03 server2 maldet(2447848): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Dec 17 2024 03:17:03 server2 maldet(2447848): {update} hashing install files and checking against server... Dec 17 2024 03:17:03 server2 maldet(2447848): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Dec 17 2024 03:17:03 server2 maldet(2447848): {update} latest version already installed. Dec 17 2024 03:17:03 server2 maldet(2447981): {sigup} performing signature update check... Dec 17 2024 03:17:03 server2 maldet(2447981): {sigup} local signature set is version 20241216540968 Dec 17 2024 03:17:03 server2 maldet(2447981): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Dec 17 2024 03:17:04 server2 maldet(2447981): {sigup} latest signature set already installed Dec 17 2024 03:17:04 server2 maldet(2448093): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Dec 17 2024 03:17:05 server2 maldet(2448093): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Dec 17 2024 03:17:05 server2 maldet(2448093): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Dec 17 2024 03:17:05 server2 maldet(2448093): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Dec 17 2024 03:17:05 server2 maldet(2448093): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/hessa/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/loco/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Dec 17 2024 03:17:21 server2 maldet(2448093): {scan} file list completed in 16s, found 3097 files... Dec 17 2024 03:17:21 server2 maldet(2448093): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Dec 17 2024 03:17:21 server2 maldet(2448093): {scan} scan of (3097 files) in progress... Dec 17 2024 03:19:16 server2 maldet(2448093): {scan} scan completed on : files 3097, malware hits 0, cleaned hits 0, time 132s Dec 17 2024 03:19:16 server2 maldet(2448093): {scan} scan report saved, to view run: maldet --report 241217-0317.2448093 Dec 18 2024 03:47:13 server2 maldet(2686391): {update} checking for available updates... Dec 18 2024 03:47:13 server2 maldet(2686391): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Dec 18 2024 03:47:13 server2 maldet(2686391): {update} hashing install files and checking against server... Dec 18 2024 03:47:13 server2 maldet(2686391): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Dec 18 2024 03:47:14 server2 maldet(2686391): {update} latest version already installed. Dec 18 2024 03:47:14 server2 maldet(2686530): {sigup} performing signature update check... Dec 18 2024 03:47:14 server2 maldet(2686530): {sigup} local signature set is version 20241216540968 Dec 18 2024 03:47:14 server2 maldet(2686530): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Dec 18 2024 03:47:14 server2 maldet(2686530): {sigup} latest signature set already installed Dec 18 2024 03:47:14 server2 maldet(2686641): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Dec 18 2024 03:47:16 server2 maldet(2686641): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Dec 18 2024 03:47:16 server2 maldet(2686641): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Dec 18 2024 03:47:16 server2 maldet(2686641): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Dec 18 2024 03:47:16 server2 maldet(2686641): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/hessa/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/loco/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Dec 18 2024 03:47:26 server2 maldet(2686641): {scan} file list completed in 10s, found 1589 files... Dec 18 2024 03:47:26 server2 maldet(2686641): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Dec 18 2024 03:47:26 server2 maldet(2686641): {scan} scan of (1589 files) in progress... Dec 18 2024 03:48:27 server2 maldet(2686641): {scan} scan completed on : files 1589, malware hits 0, cleaned hits 0, time 73s Dec 18 2024 03:48:27 server2 maldet(2686641): {scan} scan report saved, to view run: maldet --report 241218-0347.2686641 Dec 19 2024 03:54:45 server2 maldet(2941346): {update} checking for available updates... Dec 19 2024 03:54:45 server2 maldet(2941346): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Dec 19 2024 03:54:45 server2 maldet(2941346): {update} hashing install files and checking against server... Dec 19 2024 03:54:45 server2 maldet(2941346): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Dec 19 2024 03:54:45 server2 maldet(2941346): {update} latest version already installed. Dec 19 2024 03:54:45 server2 maldet(2941479): {sigup} performing signature update check... Dec 19 2024 03:54:45 server2 maldet(2941479): {sigup} local signature set is version 20241216540968 Dec 19 2024 03:54:46 server2 maldet(2941479): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Dec 19 2024 03:54:46 server2 maldet(2941479): {sigup} latest signature set already installed Dec 19 2024 03:54:46 server2 maldet(2941590): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Dec 19 2024 03:54:46 server2 maldet(2941590): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Dec 19 2024 03:54:46 server2 maldet(2941590): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Dec 19 2024 03:54:46 server2 maldet(2941590): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Dec 19 2024 03:54:47 server2 maldet(2941590): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/hessa/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/loco/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Dec 19 2024 03:55:10 server2 maldet(2941590): {scan} file list completed in 24s, found 4308 files... Dec 19 2024 03:55:10 server2 maldet(2941590): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Dec 19 2024 03:55:10 server2 maldet(2941590): {scan} scan of (4308 files) in progress... Dec 19 2024 03:57:38 server2 maldet(2941590): {scan} scan completed on : files 4308, malware hits 0, cleaned hits 0, time 172s Dec 19 2024 03:57:38 server2 maldet(2941590): {scan} scan report saved, to view run: maldet --report 241219-0354.2941590 Dec 20 2024 03:10:58 server2 maldet(3260429): {update} checking for available updates... Dec 20 2024 03:10:59 server2 maldet(3260429): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Dec 20 2024 03:10:59 server2 maldet(3260429): {update} hashing install files and checking against server... Dec 20 2024 03:10:59 server2 maldet(3260429): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Dec 20 2024 03:10:59 server2 maldet(3260429): {update} latest version already installed. Dec 20 2024 03:10:59 server2 maldet(3260562): {sigup} performing signature update check... Dec 20 2024 03:10:59 server2 maldet(3260562): {sigup} local signature set is version 20241216540968 Dec 20 2024 03:10:59 server2 maldet(3260562): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Dec 20 2024 03:10:59 server2 maldet(3260562): {sigup} new signature set 202412191297071 available Dec 20 2024 03:10:59 server2 maldet(3260562): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Dec 20 2024 03:10:59 server2 maldet(3260562): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Dec 20 2024 03:10:59 server2 maldet(3260562): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Dec 20 2024 03:10:59 server2 maldet(3260562): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Dec 20 2024 03:10:59 server2 maldet(3260562): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Dec 20 2024 03:10:59 server2 maldet(3260562): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Dec 20 2024 03:10:59 server2 maldet(3260562): {sigup} verified md5sum of maldet-sigpack.tgz Dec 20 2024 03:11:00 server2 maldet(3260562): {sigup} unpacked and installed maldet-sigpack.tgz Dec 20 2024 03:11:00 server2 maldet(3260562): {sigup} verified md5sum of maldet-clean.tgz Dec 20 2024 03:11:00 server2 maldet(3260562): {sigup} unpacked and installed maldet-clean.tgz Dec 20 2024 03:11:00 server2 maldet(3260562): {sigup} signature set update completed Dec 20 2024 03:11:00 server2 maldet(3260562): {sigup} 17638 signatures (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Dec 20 2024 03:11:00 server2 maldet(3260793): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Dec 20 2024 03:11:01 server2 maldet(3260793): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Dec 20 2024 03:11:01 server2 maldet(3260793): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Dec 20 2024 03:11:01 server2 maldet(3260793): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Dec 20 2024 03:11:01 server2 maldet(3260793): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/hessa/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/loco/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Dec 20 2024 03:11:25 server2 maldet(3260793): {scan} file list completed in 24s, found 1084 files... Dec 20 2024 03:11:25 server2 maldet(3260793): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Dec 20 2024 03:11:25 server2 maldet(3260793): {scan} scan of (1084 files) in progress... Dec 20 2024 03:12:09 server2 maldet(3260793): {scan} scan completed on : files 1084, malware hits 0, cleaned hits 0, time 69s Dec 20 2024 03:12:09 server2 maldet(3260793): {scan} scan report saved, to view run: maldet --report 241220-0311.3260793 Dec 21 2024 03:47:20 server2 maldet(3508961): {update} checking for available updates... Dec 21 2024 03:47:20 server2 maldet(3508961): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Dec 21 2024 03:47:20 server2 maldet(3508961): {update} hashing install files and checking against server... Dec 21 2024 03:47:20 server2 maldet(3508961): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Dec 21 2024 03:47:20 server2 maldet(3508961): {update} latest version already installed. Dec 21 2024 03:47:20 server2 maldet(3509094): {sigup} performing signature update check... Dec 21 2024 03:47:20 server2 maldet(3509094): {sigup} local signature set is version 202412191297071 Dec 21 2024 03:47:20 server2 maldet(3509094): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Dec 21 2024 03:47:20 server2 maldet(3509094): {sigup} latest signature set already installed Dec 21 2024 03:47:21 server2 maldet(3509205): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Dec 21 2024 03:47:21 server2 maldet(3509205): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Dec 21 2024 03:47:21 server2 maldet(3509205): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Dec 21 2024 03:47:21 server2 maldet(3509205): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Dec 21 2024 03:47:21 server2 maldet(3509205): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/hessa/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/loco/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Dec 21 2024 03:47:43 server2 maldet(3509205): {scan} file list completed in 22s, found 1560 files... Dec 21 2024 03:47:43 server2 maldet(3509205): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Dec 21 2024 03:47:43 server2 maldet(3509205): {scan} scan of (1560 files) in progress... Dec 21 2024 03:48:36 server2 maldet(3509205): {scan} scan completed on : files 1560, malware hits 0, cleaned hits 0, time 75s Dec 21 2024 03:48:36 server2 maldet(3509205): {scan} scan report saved, to view run: maldet --report 241221-0347.3509205 Dec 22 2024 03:43:59 server2 maldet(3760351): {update} checking for available updates... Dec 22 2024 03:43:59 server2 maldet(3760351): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Dec 22 2024 03:43:59 server2 maldet(3760351): {update} hashing install files and checking against server... Dec 22 2024 03:43:59 server2 maldet(3760351): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Dec 22 2024 03:43:59 server2 maldet(3760351): {update} latest version already installed. Dec 22 2024 03:43:59 server2 maldet(3760484): {sigup} performing signature update check... Dec 22 2024 03:43:59 server2 maldet(3760484): {sigup} local signature set is version 202412191297071 Dec 22 2024 03:43:59 server2 maldet(3760484): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Dec 22 2024 03:43:59 server2 maldet(3760484): {sigup} new signature set 20241222594668 available Dec 22 2024 03:43:59 server2 maldet(3760484): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Dec 22 2024 03:43:59 server2 maldet(3760484): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Dec 22 2024 03:43:59 server2 maldet(3760484): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Dec 22 2024 03:43:59 server2 maldet(3760484): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Dec 22 2024 03:43:59 server2 maldet(3760484): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Dec 22 2024 03:43:59 server2 maldet(3760484): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Dec 22 2024 03:43:59 server2 maldet(3760484): {sigup} verified md5sum of maldet-sigpack.tgz Dec 22 2024 03:44:00 server2 maldet(3760484): {sigup} unpacked and installed maldet-sigpack.tgz Dec 22 2024 03:44:00 server2 maldet(3760484): {sigup} verified md5sum of maldet-clean.tgz Dec 22 2024 03:44:00 server2 maldet(3760484): {sigup} unpacked and installed maldet-clean.tgz Dec 22 2024 03:44:00 server2 maldet(3760484): {sigup} signature set update completed Dec 22 2024 03:44:00 server2 maldet(3760484): {sigup} 17638 signatures (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Dec 22 2024 03:44:00 server2 maldet(3760712): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Dec 22 2024 03:44:03 server2 maldet(3760712): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Dec 22 2024 03:44:04 server2 maldet(3760712): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Dec 22 2024 03:44:04 server2 maldet(3760712): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Dec 22 2024 03:44:04 server2 maldet(3760712): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/hessa/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/loco/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Dec 22 2024 03:44:25 server2 maldet(3760712): {scan} file list completed in 21s, found 532 files... Dec 22 2024 03:44:25 server2 maldet(3760712): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Dec 22 2024 03:44:25 server2 maldet(3760712): {scan} scan of (532 files) in progress... Dec 22 2024 03:44:55 server2 maldet(3760712): {scan} scan completed on : files 532, malware hits 0, cleaned hits 0, time 55s Dec 22 2024 03:44:55 server2 maldet(3760712): {scan} scan report saved, to view run: maldet --report 241222-0344.3760712 Dec 23 2024 03:37:30 server2 maldet(4012946): {update} checking for available updates... Dec 23 2024 03:37:30 server2 maldet(4012946): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Dec 23 2024 03:37:30 server2 maldet(4012946): {update} hashing install files and checking against server... Dec 23 2024 03:37:31 server2 maldet(4012946): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Dec 23 2024 03:37:31 server2 maldet(4012946): {update} latest version already installed. Dec 23 2024 03:37:31 server2 maldet(4013079): {sigup} performing signature update check... Dec 23 2024 03:37:31 server2 maldet(4013079): {sigup} local signature set is version 20241222594668 Dec 23 2024 03:37:31 server2 maldet(4013079): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Dec 23 2024 03:37:31 server2 maldet(4013079): {sigup} latest signature set already installed Dec 23 2024 03:37:31 server2 maldet(4013190): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Dec 23 2024 03:37:32 server2 maldet(4013190): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Dec 23 2024 03:37:32 server2 maldet(4013190): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Dec 23 2024 03:37:32 server2 maldet(4013190): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Dec 23 2024 03:37:32 server2 maldet(4013190): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/hessa/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/loco/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Dec 23 2024 03:37:57 server2 maldet(4013190): {scan} file list completed in 24s, found 775 files... Dec 23 2024 03:37:57 server2 maldet(4013190): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Dec 23 2024 03:37:57 server2 maldet(4013190): {scan} scan of (775 files) in progress... Dec 23 2024 03:38:36 server2 maldet(4013190): {scan} scan completed on : files 775, malware hits 0, cleaned hits 0, time 65s Dec 23 2024 03:38:36 server2 maldet(4013190): {scan} scan report saved, to view run: maldet --report 241223-0337.4013190 Dec 24 2024 03:16:40 server2 maldet(75793): {update} checking for available updates... Dec 24 2024 03:16:40 server2 maldet(75793): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Dec 24 2024 03:16:40 server2 maldet(75793): {update} hashing install files and checking against server... Dec 24 2024 03:16:40 server2 maldet(75793): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Dec 24 2024 03:16:40 server2 maldet(75793): {update} latest version already installed. Dec 24 2024 03:16:41 server2 maldet(75926): {sigup} performing signature update check... Dec 24 2024 03:16:41 server2 maldet(75926): {sigup} local signature set is version 20241222594668 Dec 24 2024 03:16:41 server2 maldet(75926): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Dec 24 2024 03:16:41 server2 maldet(75926): {sigup} latest signature set already installed Dec 24 2024 03:16:41 server2 maldet(76037): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Dec 24 2024 03:16:43 server2 maldet(76037): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Dec 24 2024 03:16:43 server2 maldet(76037): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Dec 24 2024 03:16:43 server2 maldet(76037): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Dec 24 2024 03:16:43 server2 maldet(76037): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/hessa/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/loco/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Dec 24 2024 03:17:23 server2 maldet(76037): {scan} file list completed in 40s, found 612 files... Dec 24 2024 03:17:23 server2 maldet(76037): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Dec 24 2024 03:17:23 server2 maldet(76037): {scan} scan of (612 files) in progress... Dec 24 2024 03:17:55 server2 maldet(76037): {scan} scan completed on : files 612, malware hits 0, cleaned hits 0, time 74s Dec 24 2024 03:17:55 server2 maldet(76037): {scan} scan report saved, to view run: maldet --report 241224-0316.76037 Dec 25 2024 03:31:57 server2 maldet(3581097): {update} checking for available updates... Dec 25 2024 03:31:57 server2 maldet(3581097): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Dec 25 2024 03:31:57 server2 maldet(3581097): {update} hashing install files and checking against server... Dec 25 2024 03:31:57 server2 maldet(3581097): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Dec 25 2024 03:31:57 server2 maldet(3581097): {update} latest version already installed. Dec 25 2024 03:31:58 server2 maldet(3581230): {sigup} performing signature update check... Dec 25 2024 03:31:58 server2 maldet(3581230): {sigup} local signature set is version 20241222594668 Dec 25 2024 03:31:58 server2 maldet(3581230): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Dec 25 2024 03:31:58 server2 maldet(3581230): {sigup} new signature set 202412251350335 available Dec 25 2024 03:31:58 server2 maldet(3581230): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Dec 25 2024 03:31:58 server2 maldet(3581230): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Dec 25 2024 03:31:58 server2 maldet(3581230): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Dec 25 2024 03:31:58 server2 maldet(3581230): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Dec 25 2024 03:31:58 server2 maldet(3581230): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Dec 25 2024 03:31:59 server2 maldet(3581230): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Dec 25 2024 03:31:59 server2 maldet(3581230): {sigup} verified md5sum of maldet-sigpack.tgz Dec 25 2024 03:31:59 server2 maldet(3581230): {sigup} unpacked and installed maldet-sigpack.tgz Dec 25 2024 03:31:59 server2 maldet(3581230): {sigup} verified md5sum of maldet-clean.tgz Dec 25 2024 03:31:59 server2 maldet(3581230): {sigup} unpacked and installed maldet-clean.tgz Dec 25 2024 03:31:59 server2 maldet(3581230): {sigup} signature set update completed Dec 25 2024 03:31:59 server2 maldet(3581230): {sigup} 17638 signatures (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Dec 25 2024 03:32:00 server2 maldet(3581459): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Dec 25 2024 03:32:03 server2 maldet(3581459): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Dec 25 2024 03:32:03 server2 maldet(3581459): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Dec 25 2024 03:32:03 server2 maldet(3581459): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Dec 25 2024 03:32:03 server2 maldet(3581459): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/hessa/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/loco/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Dec 25 2024 03:32:40 server2 maldet(3581459): {scan} file list completed in 37s, found 3332 files... Dec 25 2024 03:32:41 server2 maldet(3581459): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Dec 25 2024 03:32:41 server2 maldet(3581459): {scan} scan of (3332 files) in progress... Dec 25 2024 03:36:38 server2 maldet(3581459): {scan} scan completed on : files 3332, malware hits 0, cleaned hits 0, time 278s Dec 25 2024 03:36:38 server2 maldet(3581459): {scan} scan report saved, to view run: maldet --report 241225-0331.3581459 Dec 26 2024 03:35:39 server2 maldet(2904557): {update} checking for available updates... Dec 26 2024 03:35:39 server2 maldet(2904557): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Dec 26 2024 03:35:39 server2 maldet(2904557): {update} hashing install files and checking against server... Dec 26 2024 03:35:39 server2 maldet(2904557): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Dec 26 2024 03:35:39 server2 maldet(2904557): {update} latest version already installed. Dec 26 2024 03:35:40 server2 maldet(2904690): {sigup} performing signature update check... Dec 26 2024 03:35:40 server2 maldet(2904690): {sigup} local signature set is version 202412251350335 Dec 26 2024 03:35:40 server2 maldet(2904690): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Dec 26 2024 03:35:40 server2 maldet(2904690): {sigup} latest signature set already installed Dec 26 2024 03:35:40 server2 maldet(2904801): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Dec 26 2024 03:35:41 server2 maldet(2904801): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Dec 26 2024 03:35:41 server2 maldet(2904801): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Dec 26 2024 03:35:41 server2 maldet(2904801): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Dec 26 2024 03:35:41 server2 maldet(2904801): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/hessa/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/loco/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Dec 26 2024 03:36:21 server2 maldet(2904801): {scan} file list completed in 40s, found 31337 files... Dec 26 2024 03:36:21 server2 maldet(2904801): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Dec 26 2024 03:36:21 server2 maldet(2904801): {scan} scan of (31337 files) in progress... Dec 26 2024 04:01:56 server2 maldet(2904801): {scan} scan completed on : files 31337, malware hits 0, cleaned hits 0, time 1576s Dec 26 2024 04:01:56 server2 maldet(2904801): {scan} scan report saved, to view run: maldet --report 241226-0335.2904801 Dec 27 2024 03:11:06 server2 maldet(3163768): {update} checking for available updates... Dec 27 2024 03:11:06 server2 maldet(3163768): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Dec 27 2024 03:11:06 server2 maldet(3163768): {update} hashing install files and checking against server... Dec 27 2024 03:11:07 server2 maldet(3163768): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Dec 27 2024 03:11:07 server2 maldet(3163768): {update} latest version already installed. Dec 27 2024 03:11:07 server2 maldet(3163904): {sigup} performing signature update check... Dec 27 2024 03:11:07 server2 maldet(3163904): {sigup} local signature set is version 202412251350335 Dec 27 2024 03:11:07 server2 maldet(3163904): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Dec 27 2024 03:11:07 server2 maldet(3163904): {sigup} latest signature set already installed Dec 27 2024 03:11:07 server2 maldet(3164015): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Dec 27 2024 03:11:09 server2 maldet(3164015): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Dec 27 2024 03:11:09 server2 maldet(3164015): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Dec 27 2024 03:11:09 server2 maldet(3164015): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Dec 27 2024 03:11:09 server2 maldet(3164015): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/hessa/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/loco/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Dec 27 2024 03:11:42 server2 maldet(3164015): {scan} file list completed in 33s, found 1491 files... Dec 27 2024 03:11:42 server2 maldet(3164015): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Dec 27 2024 03:11:42 server2 maldet(3164015): {scan} scan of (1491 files) in progress... Dec 27 2024 03:13:36 server2 maldet(3164015): {scan} scan completed on : files 1491, malware hits 0, cleaned hits 0, time 149s Dec 27 2024 03:13:36 server2 maldet(3164015): {scan} scan report saved, to view run: maldet --report 241227-0311.3164015 Dec 28 2024 04:06:27 server2 maldet(3449448): {update} checking for available updates... Dec 28 2024 04:06:27 server2 maldet(3449448): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Dec 28 2024 04:06:27 server2 maldet(3449448): {update} hashing install files and checking against server... Dec 28 2024 04:06:28 server2 maldet(3449448): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Dec 28 2024 04:06:28 server2 maldet(3449448): {update} latest version already installed. Dec 28 2024 04:06:28 server2 maldet(3449583): {sigup} performing signature update check... Dec 28 2024 04:06:28 server2 maldet(3449583): {sigup} local signature set is version 202412251350335 Dec 28 2024 04:06:28 server2 maldet(3449583): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Dec 28 2024 04:06:28 server2 maldet(3449583): {sigup} new signature set 202412282106009 available Dec 28 2024 04:06:28 server2 maldet(3449583): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Dec 28 2024 04:06:28 server2 maldet(3449583): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Dec 28 2024 04:06:28 server2 maldet(3449583): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Dec 28 2024 04:06:29 server2 maldet(3449583): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Dec 28 2024 04:06:29 server2 maldet(3449583): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Dec 28 2024 04:06:29 server2 maldet(3449583): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Dec 28 2024 04:06:29 server2 maldet(3449583): {sigup} verified md5sum of maldet-sigpack.tgz Dec 28 2024 04:06:29 server2 maldet(3449583): {sigup} unpacked and installed maldet-sigpack.tgz Dec 28 2024 04:06:29 server2 maldet(3449583): {sigup} verified md5sum of maldet-clean.tgz Dec 28 2024 04:06:29 server2 maldet(3449583): {sigup} unpacked and installed maldet-clean.tgz Dec 28 2024 04:06:29 server2 maldet(3449583): {sigup} signature set update completed Dec 28 2024 04:06:30 server2 maldet(3449583): {sigup} 17638 signatures (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Dec 28 2024 04:06:30 server2 maldet(3449812): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Dec 28 2024 04:06:30 server2 maldet(3449812): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Dec 28 2024 04:06:30 server2 maldet(3449812): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Dec 28 2024 04:06:31 server2 maldet(3449812): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Dec 28 2024 04:06:31 server2 maldet(3449812): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/hessa/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/loco/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Dec 28 2024 04:07:03 server2 maldet(3449812): {scan} file list completed in 31s, found 33253 files... Dec 28 2024 04:07:03 server2 maldet(3449812): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Dec 28 2024 04:07:03 server2 maldet(3449812): {scan} scan of (33253 files) in progress... Dec 28 2024 04:28:24 server2 maldet(3449812): {scan} scan completed on : files 33253, malware hits 0, cleaned hits 0, time 1314s Dec 28 2024 04:28:24 server2 maldet(3449812): {scan} scan report saved, to view run: maldet --report 241228-0406.3449812 Dec 29 2024 03:35:39 server2 maldet(3699478): {update} checking for available updates... Dec 29 2024 03:35:40 server2 maldet(3699478): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Dec 29 2024 03:35:40 server2 maldet(3699478): {update} hashing install files and checking against server... Dec 29 2024 03:35:40 server2 maldet(3699478): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Dec 29 2024 03:35:40 server2 maldet(3699478): {update} latest version already installed. Dec 29 2024 03:35:40 server2 maldet(3699611): {sigup} performing signature update check... Dec 29 2024 03:35:40 server2 maldet(3699611): {sigup} local signature set is version 202412282106009 Dec 29 2024 03:35:40 server2 maldet(3699611): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Dec 29 2024 03:35:40 server2 maldet(3699611): {sigup} latest signature set already installed Dec 29 2024 03:35:41 server2 maldet(3699722): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Dec 29 2024 03:35:45 server2 maldet(3699722): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Dec 29 2024 03:35:45 server2 maldet(3699722): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Dec 29 2024 03:35:45 server2 maldet(3699722): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Dec 29 2024 03:35:45 server2 maldet(3699722): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/hessa/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/loco/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Dec 29 2024 03:36:51 server2 maldet(3699722): {scan} file list completed in 66s, found 2280 files... Dec 29 2024 03:36:51 server2 maldet(3699722): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Dec 29 2024 03:36:51 server2 maldet(3699722): {scan} scan of (2280 files) in progress... Dec 29 2024 03:40:24 server2 maldet(3699722): {scan} scan completed on : files 2280, malware hits 0, cleaned hits 0, time 283s Dec 29 2024 03:40:24 server2 maldet(3699722): {scan} scan report saved, to view run: maldet --report 241229-0335.3699722 Dec 30 2024 03:45:16 server2 maldet(3965653): {update} checking for available updates... Dec 30 2024 03:45:16 server2 maldet(3965653): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Dec 30 2024 03:45:16 server2 maldet(3965653): {update} hashing install files and checking against server... Dec 30 2024 03:45:16 server2 maldet(3965653): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Dec 30 2024 03:45:16 server2 maldet(3965653): {update} latest version already installed. Dec 30 2024 03:45:16 server2 maldet(3965786): {sigup} performing signature update check... Dec 30 2024 03:45:17 server2 maldet(3965786): {sigup} local signature set is version 202412282106009 Dec 30 2024 03:45:17 server2 maldet(3965786): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Dec 30 2024 03:45:17 server2 maldet(3965786): {sigup} latest signature set already installed Dec 30 2024 03:45:17 server2 maldet(3965901): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Dec 30 2024 03:45:19 server2 maldet(3965901): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Dec 30 2024 03:45:19 server2 maldet(3965901): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Dec 30 2024 03:45:19 server2 maldet(3965901): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Dec 30 2024 03:45:19 server2 maldet(3965901): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/hessa/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/loco/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Dec 30 2024 03:45:45 server2 maldet(3965901): {scan} file list completed in 26s, found 3990 files... Dec 30 2024 03:45:45 server2 maldet(3965901): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Dec 30 2024 03:45:45 server2 maldet(3965901): {scan} scan of (3990 files) in progress... Dec 30 2024 03:48:04 server2 maldet(3965901): {scan} scan completed on : files 3990, malware hits 0, cleaned hits 0, time 167s Dec 30 2024 03:48:04 server2 maldet(3965901): {scan} scan report saved, to view run: maldet --report 241230-0345.3965901 Dec 31 2024 03:58:45 server2 maldet(50869): {update} checking for available updates... Dec 31 2024 03:58:46 server2 maldet(50869): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Dec 31 2024 03:58:46 server2 maldet(50869): {update} hashing install files and checking against server... Dec 31 2024 03:58:46 server2 maldet(50869): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Dec 31 2024 03:58:46 server2 maldet(50869): {update} latest version already installed. Dec 31 2024 03:58:46 server2 maldet(51005): {sigup} performing signature update check... Dec 31 2024 03:58:46 server2 maldet(51005): {sigup} local signature set is version 202412282106009 Dec 31 2024 03:58:46 server2 maldet(51005): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Dec 31 2024 03:58:46 server2 maldet(51005): {sigup} new signature set 202412312825989 available Dec 31 2024 03:58:46 server2 maldet(51005): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Dec 31 2024 03:58:46 server2 maldet(51005): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Dec 31 2024 03:58:46 server2 maldet(51005): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Dec 31 2024 03:58:46 server2 maldet(51005): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Dec 31 2024 03:58:47 server2 maldet(51005): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Dec 31 2024 03:58:47 server2 maldet(51005): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Dec 31 2024 03:58:47 server2 maldet(51005): {sigup} verified md5sum of maldet-sigpack.tgz Dec 31 2024 03:58:47 server2 maldet(51005): {sigup} unpacked and installed maldet-sigpack.tgz Dec 31 2024 03:58:47 server2 maldet(51005): {sigup} verified md5sum of maldet-clean.tgz Dec 31 2024 03:58:47 server2 maldet(51005): {sigup} unpacked and installed maldet-clean.tgz Dec 31 2024 03:58:47 server2 maldet(51005): {sigup} signature set update completed Dec 31 2024 03:58:47 server2 maldet(51005): {sigup} 17638 signatures (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Dec 31 2024 03:58:47 server2 maldet(51238): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Dec 31 2024 03:58:49 server2 maldet(51238): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Dec 31 2024 03:58:49 server2 maldet(51238): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Dec 31 2024 03:58:49 server2 maldet(51238): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Dec 31 2024 03:58:49 server2 maldet(51238): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/hessa/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/loco/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Dec 31 2024 03:59:26 server2 maldet(51238): {scan} file list completed in 37s, found 723 files... Dec 31 2024 03:59:26 server2 maldet(51238): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Dec 31 2024 03:59:26 server2 maldet(51238): {scan} scan of (723 files) in progress... Dec 31 2024 04:01:06 server2 maldet(51238): {scan} scan completed on : files 723, malware hits 0, cleaned hits 0, time 139s Dec 31 2024 04:01:06 server2 maldet(51238): {scan} scan report saved, to view run: maldet --report 241231-0358.51238 Jan 01 2025 03:52:49 server2 maldet(307393): {update} checking for available updates... Jan 01 2025 03:52:49 server2 maldet(307393): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Jan 01 2025 03:52:49 server2 maldet(307393): {update} hashing install files and checking against server... Jan 01 2025 03:52:49 server2 maldet(307393): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Jan 01 2025 03:52:49 server2 maldet(307393): {update} latest version already installed. Jan 01 2025 03:52:50 server2 maldet(307526): {sigup} performing signature update check... Jan 01 2025 03:52:50 server2 maldet(307526): {sigup} local signature set is version 202412312825989 Jan 01 2025 03:52:50 server2 maldet(307526): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Jan 01 2025 03:52:50 server2 maldet(307526): {sigup} latest signature set already installed Jan 01 2025 03:52:50 server2 maldet(307637): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Jan 01 2025 03:52:53 server2 maldet(307637): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Jan 01 2025 03:52:53 server2 maldet(307637): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Jan 01 2025 03:52:53 server2 maldet(307637): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Jan 01 2025 03:52:53 server2 maldet(307637): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/hessa/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/loco/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Jan 01 2025 03:53:21 server2 maldet(307637): {scan} file list completed in 28s, found 826 files... Jan 01 2025 03:53:21 server2 maldet(307637): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Jan 01 2025 03:53:21 server2 maldet(307637): {scan} scan of (826 files) in progress... Jan 01 2025 03:54:20 server2 maldet(307637): {scan} scan completed on : files 826, malware hits 0, cleaned hits 0, time 90s Jan 01 2025 03:54:20 server2 maldet(307637): {scan} scan report saved, to view run: maldet --report 250101-0352.307637 Jan 02 2025 03:45:01 server2 maldet(553307): {update} checking for available updates... Jan 02 2025 03:45:01 server2 maldet(553307): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Jan 02 2025 03:45:01 server2 maldet(553307): {update} hashing install files and checking against server... Jan 02 2025 03:45:02 server2 maldet(553307): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Jan 02 2025 03:45:02 server2 maldet(553307): {update} latest version already installed. Jan 02 2025 03:45:02 server2 maldet(553536): {sigup} performing signature update check... Jan 02 2025 03:45:03 server2 maldet(553536): {sigup} local signature set is version 202412312825989 Jan 02 2025 03:45:03 server2 maldet(553536): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Jan 02 2025 03:45:03 server2 maldet(553536): {sigup} latest signature set already installed Jan 02 2025 03:45:03 server2 maldet(553673): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Jan 02 2025 03:45:09 server2 maldet(553673): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Jan 02 2025 03:45:09 server2 maldet(553673): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Jan 02 2025 03:45:09 server2 maldet(553673): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Jan 02 2025 03:45:09 server2 maldet(553673): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/hessa/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/loco/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Jan 02 2025 03:46:02 server2 maldet(553673): {scan} file list completed in 52s, found 766 files... Jan 02 2025 03:46:02 server2 maldet(553673): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Jan 02 2025 03:46:02 server2 maldet(553673): {scan} scan of (766 files) in progress... Jan 02 2025 03:46:58 server2 maldet(553673): {scan} scan completed on : files 766, malware hits 0, cleaned hits 0, time 115s Jan 02 2025 03:46:58 server2 maldet(553673): {scan} scan report saved, to view run: maldet --report 250102-0345.553673 Jan 03 2025 03:25:39 server2 maldet(794836): {update} checking for available updates... Jan 03 2025 03:25:39 server2 maldet(794836): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Jan 03 2025 03:25:39 server2 maldet(794836): {update} hashing install files and checking against server... Jan 03 2025 03:25:39 server2 maldet(794836): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Jan 03 2025 03:25:39 server2 maldet(794836): {update} latest version already installed. Jan 03 2025 03:25:39 server2 maldet(794988): {sigup} performing signature update check... Jan 03 2025 03:25:39 server2 maldet(794988): {sigup} local signature set is version 202412312825989 Jan 03 2025 03:25:39 server2 maldet(794988): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Jan 03 2025 03:25:39 server2 maldet(794988): {sigup} latest signature set already installed Jan 03 2025 03:25:40 server2 maldet(795113): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Jan 03 2025 03:25:42 server2 maldet(795113): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Jan 03 2025 03:25:42 server2 maldet(795113): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Jan 03 2025 03:25:42 server2 maldet(795113): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Jan 03 2025 03:25:42 server2 maldet(795113): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/hessa/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/loco/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Jan 03 2025 03:26:13 server2 maldet(795113): {scan} file list completed in 31s, found 1995 files... Jan 03 2025 03:26:13 server2 maldet(795113): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Jan 03 2025 03:26:13 server2 maldet(795113): {scan} scan of (1995 files) in progress... Jan 03 2025 03:27:59 server2 maldet(795113): {scan} scan completed on : files 1995, malware hits 0, cleaned hits 0, time 139s Jan 03 2025 03:27:59 server2 maldet(795113): {scan} scan report saved, to view run: maldet --report 250103-0325.795113 Jan 04 2025 03:38:00 server2 maldet(1070939): {update} checking for available updates... Jan 04 2025 03:38:00 server2 maldet(1070939): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Jan 04 2025 03:38:01 server2 maldet(1070939): {update} hashing install files and checking against server... Jan 04 2025 03:38:01 server2 maldet(1070939): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Jan 04 2025 03:38:01 server2 maldet(1070939): {update} latest version already installed. Jan 04 2025 03:38:02 server2 maldet(1071086): {sigup} performing signature update check... Jan 04 2025 03:38:02 server2 maldet(1071086): {sigup} local signature set is version 202412312825989 Jan 04 2025 03:38:02 server2 maldet(1071086): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Jan 04 2025 03:38:02 server2 maldet(1071086): {sigup} new signature set 20250104545340 available Jan 04 2025 03:38:02 server2 maldet(1071086): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Jan 04 2025 03:38:03 server2 maldet(1071086): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Jan 04 2025 03:38:03 server2 maldet(1071086): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Jan 04 2025 03:38:03 server2 maldet(1071086): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Jan 04 2025 03:38:03 server2 maldet(1071086): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Jan 04 2025 03:38:03 server2 maldet(1071086): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Jan 04 2025 03:38:03 server2 maldet(1071086): {sigup} verified md5sum of maldet-sigpack.tgz Jan 04 2025 03:38:04 server2 maldet(1071086): {sigup} unpacked and installed maldet-sigpack.tgz Jan 04 2025 03:38:04 server2 maldet(1071086): {sigup} verified md5sum of maldet-clean.tgz Jan 04 2025 03:38:04 server2 maldet(1071086): {sigup} unpacked and installed maldet-clean.tgz Jan 04 2025 03:38:04 server2 maldet(1071086): {sigup} signature set update completed Jan 04 2025 03:38:04 server2 maldet(1071086): {sigup} 17638 signatures (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Jan 04 2025 03:38:05 server2 maldet(1071360): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Jan 04 2025 03:38:07 server2 maldet(1071360): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Jan 04 2025 03:38:07 server2 maldet(1071360): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Jan 04 2025 03:38:07 server2 maldet(1071360): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Jan 04 2025 03:38:07 server2 maldet(1071360): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/hessa/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/loco/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Jan 04 2025 03:38:34 server2 maldet(1071360): {scan} file list completed in 27s, found 1066 files... Jan 04 2025 03:38:34 server2 maldet(1071360): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Jan 04 2025 03:38:34 server2 maldet(1071360): {scan} scan of (1066 files) in progress... Jan 04 2025 03:39:30 server2 maldet(1071360): {scan} scan completed on : files 1066, malware hits 0, cleaned hits 0, time 85s Jan 04 2025 03:39:30 server2 maldet(1071360): {scan} scan report saved, to view run: maldet --report 250104-0338.1071360 Jan 05 2025 03:32:46 server2 maldet(1323301): {update} checking for available updates... Jan 05 2025 03:32:47 server2 maldet(1323301): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Jan 05 2025 03:32:47 server2 maldet(1323301): {update} hashing install files and checking against server... Jan 05 2025 03:32:47 server2 maldet(1323301): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Jan 05 2025 03:32:47 server2 maldet(1323301): {update} latest version already installed. Jan 05 2025 03:32:47 server2 maldet(1323434): {sigup} performing signature update check... Jan 05 2025 03:32:47 server2 maldet(1323434): {sigup} local signature set is version 20250104545340 Jan 05 2025 03:32:47 server2 maldet(1323434): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Jan 05 2025 03:32:47 server2 maldet(1323434): {sigup} latest signature set already installed Jan 05 2025 03:32:48 server2 maldet(1323549): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Jan 05 2025 03:32:51 server2 maldet(1323549): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Jan 05 2025 03:32:51 server2 maldet(1323549): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Jan 05 2025 03:32:51 server2 maldet(1323549): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Jan 05 2025 03:32:52 server2 maldet(1323549): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/hessa/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/loco/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Jan 05 2025 03:33:43 server2 maldet(1323549): {scan} file list completed in 51s, found 483 files... Jan 05 2025 03:33:43 server2 maldet(1323549): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Jan 05 2025 03:33:43 server2 maldet(1323549): {scan} scan of (483 files) in progress... Jan 05 2025 03:34:34 server2 maldet(1323549): {scan} scan completed on : files 483, malware hits 0, cleaned hits 0, time 106s Jan 05 2025 03:34:34 server2 maldet(1323549): {scan} scan report saved, to view run: maldet --report 250105-0332.1323549 Jan 06 2025 03:18:40 server2 maldet(1542711): {update} checking for available updates... Jan 06 2025 03:18:40 server2 maldet(1542711): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Jan 06 2025 03:18:40 server2 maldet(1542711): {update} hashing install files and checking against server... Jan 06 2025 03:18:41 server2 maldet(1542711): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Jan 06 2025 03:18:41 server2 maldet(1542711): {update} latest version already installed. Jan 06 2025 03:18:41 server2 maldet(1542844): {sigup} performing signature update check... Jan 06 2025 03:18:41 server2 maldet(1542844): {sigup} local signature set is version 20250104545340 Jan 06 2025 03:18:41 server2 maldet(1542844): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Jan 06 2025 03:18:41 server2 maldet(1542844): {sigup} latest signature set already installed Jan 06 2025 03:18:41 server2 maldet(1542955): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Jan 06 2025 03:18:43 server2 maldet(1542955): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Jan 06 2025 03:18:43 server2 maldet(1542955): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Jan 06 2025 03:18:43 server2 maldet(1542955): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Jan 06 2025 03:18:43 server2 maldet(1542955): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/hessa/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/home/walla3t/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Jan 06 2025 03:19:12 server2 maldet(1542955): {scan} file list completed in 29s, found 11769 files... Jan 06 2025 03:19:12 server2 maldet(1542955): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Jan 06 2025 03:19:12 server2 maldet(1542955): {scan} scan of (11769 files) in progress... Jan 06 2025 03:26:26 server2 maldet(1542955): {scan} scan completed on : files 11769, malware hits 0, cleaned hits 0, time 464s Jan 06 2025 03:26:26 server2 maldet(1542955): {scan} scan report saved, to view run: maldet --report 250106-0318.1542955 Jan 07 2025 03:45:36 server2 maldet(1777572): {update} checking for available updates... Jan 07 2025 03:45:36 server2 maldet(1777572): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Jan 07 2025 03:45:36 server2 maldet(1777572): {update} hashing install files and checking against server... Jan 07 2025 03:45:37 server2 maldet(1777572): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Jan 07 2025 03:45:37 server2 maldet(1777572): {update} latest version already installed. Jan 07 2025 03:45:37 server2 maldet(1777707): {sigup} performing signature update check... Jan 07 2025 03:45:37 server2 maldet(1777707): {sigup} local signature set is version 20250104545340 Jan 07 2025 03:45:37 server2 maldet(1777707): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Jan 07 2025 03:45:37 server2 maldet(1777707): {sigup} latest signature set already installed Jan 07 2025 03:45:38 server2 maldet(1777818): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Jan 07 2025 03:45:39 server2 maldet(1777818): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Jan 07 2025 03:45:39 server2 maldet(1777818): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Jan 07 2025 03:45:39 server2 maldet(1777818): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Jan 07 2025 03:45:39 server2 maldet(1777818): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/hessa/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/home/walla3t/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Jan 07 2025 03:46:16 server2 maldet(1777818): {scan} file list completed in 37s, found 842 files... Jan 07 2025 03:46:16 server2 maldet(1777818): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Jan 07 2025 03:46:16 server2 maldet(1777818): {scan} scan of (842 files) in progress... Jan 07 2025 03:47:00 server2 maldet(1777818): {scan} scan completed on : files 842, malware hits 0, cleaned hits 0, time 82s Jan 07 2025 03:47:00 server2 maldet(1777818): {scan} scan report saved, to view run: maldet --report 250107-0345.1777818 Jan 08 2025 03:57:53 server2 maldet(2072551): {update} checking for available updates... Jan 08 2025 03:57:54 server2 maldet(2072551): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Jan 08 2025 03:57:54 server2 maldet(2072551): {update} hashing install files and checking against server... Jan 08 2025 03:57:54 server2 maldet(2072551): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Jan 08 2025 03:57:54 server2 maldet(2072551): {update} latest version already installed. Jan 08 2025 03:57:54 server2 maldet(2072686): {sigup} performing signature update check... Jan 08 2025 03:57:54 server2 maldet(2072686): {sigup} local signature set is version 20250104545340 Jan 08 2025 03:57:54 server2 maldet(2072686): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Jan 08 2025 03:57:54 server2 maldet(2072686): {sigup} latest signature set already installed Jan 08 2025 03:57:54 server2 maldet(2072797): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Jan 08 2025 03:57:57 server2 maldet(2072797): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Jan 08 2025 03:57:57 server2 maldet(2072797): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Jan 08 2025 03:57:57 server2 maldet(2072797): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Jan 08 2025 03:57:57 server2 maldet(2072797): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/hessa/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/home/walla3t/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Jan 08 2025 03:58:27 server2 maldet(2072797): {scan} file list completed in 30s, found 4546 files... Jan 08 2025 03:58:27 server2 maldet(2072797): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Jan 08 2025 03:58:27 server2 maldet(2072797): {scan} scan of (4546 files) in progress... Jan 08 2025 04:01:56 server2 maldet(2072797): {scan} scan completed on : files 4546, malware hits 0, cleaned hits 0, time 242s Jan 08 2025 04:01:56 server2 maldet(2072797): {scan} scan report saved, to view run: maldet --report 250108-0357.2072797 Jan 09 2025 03:40:56 server2 maldet(2301131): {update} checking for available updates... Jan 09 2025 03:40:57 server2 maldet(2301131): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Jan 09 2025 03:40:57 server2 maldet(2301131): {update} hashing install files and checking against server... Jan 09 2025 03:40:57 server2 maldet(2301131): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Jan 09 2025 03:40:57 server2 maldet(2301131): {update} latest version already installed. Jan 09 2025 03:40:57 server2 maldet(2301264): {sigup} performing signature update check... Jan 09 2025 03:40:57 server2 maldet(2301264): {sigup} local signature set is version 20250104545340 Jan 09 2025 03:40:57 server2 maldet(2301264): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Jan 09 2025 03:40:57 server2 maldet(2301264): {sigup} latest signature set already installed Jan 09 2025 03:40:57 server2 maldet(2301377): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Jan 09 2025 03:40:57 server2 maldet(2301377): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Jan 09 2025 03:40:57 server2 maldet(2301377): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Jan 09 2025 03:40:57 server2 maldet(2301377): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Jan 09 2025 03:40:57 server2 maldet(2301377): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/hessa/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/home/walla3t/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Jan 09 2025 03:41:12 server2 maldet(2301377): {scan} file list completed in 15s, found 717 files... Jan 09 2025 03:41:12 server2 maldet(2301377): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Jan 09 2025 03:41:12 server2 maldet(2301377): {scan} scan of (717 files) in progress... Jan 09 2025 03:41:41 server2 maldet(2301377): {scan} scan completed on : files 717, malware hits 0, cleaned hits 0, time 44s Jan 09 2025 03:41:41 server2 maldet(2301377): {scan} scan report saved, to view run: maldet --report 250109-0340.2301377 Jan 10 2025 03:44:34 server2 maldet(2548980): {update} checking for available updates... Jan 10 2025 03:44:34 server2 maldet(2548980): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Jan 10 2025 03:44:34 server2 maldet(2548980): {update} hashing install files and checking against server... Jan 10 2025 03:44:34 server2 maldet(2548980): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Jan 10 2025 03:44:34 server2 maldet(2548980): {update} latest version already installed. Jan 10 2025 03:44:34 server2 maldet(2549114): {sigup} performing signature update check... Jan 10 2025 03:44:34 server2 maldet(2549114): {sigup} local signature set is version 20250104545340 Jan 10 2025 03:44:34 server2 maldet(2549114): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Jan 10 2025 03:44:34 server2 maldet(2549114): {sigup} latest signature set already installed Jan 10 2025 03:44:34 server2 maldet(2549225): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Jan 10 2025 03:44:35 server2 maldet(2549225): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Jan 10 2025 03:44:35 server2 maldet(2549225): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Jan 10 2025 03:44:35 server2 maldet(2549225): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Jan 10 2025 03:44:35 server2 maldet(2549225): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/hessa/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/home/walla3t/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Jan 10 2025 03:44:49 server2 maldet(2549225): {scan} file list completed in 14s, found 645 files... Jan 10 2025 03:44:49 server2 maldet(2549225): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Jan 10 2025 03:44:49 server2 maldet(2549225): {scan} scan of (645 files) in progress... Jan 10 2025 03:45:16 server2 maldet(2549225): {scan} scan completed on : files 645, malware hits 0, cleaned hits 0, time 42s Jan 10 2025 03:45:16 server2 maldet(2549225): {scan} scan report saved, to view run: maldet --report 250110-0344.2549225 Jan 10 2025 21:56:37 server2 maldet(1284): {mon} could not find inotifywait command, install yum package inotify-tools or download from https://github.com/rvoicilas/inotify-tools/wiki/ Jan 11 2025 03:22:44 server2 maldet(108378): {update} checking for available updates... Jan 11 2025 03:22:44 server2 maldet(108378): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Jan 11 2025 03:22:44 server2 maldet(108378): {update} hashing install files and checking against server... Jan 11 2025 03:22:44 server2 maldet(108378): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Jan 11 2025 03:22:44 server2 maldet(108378): {update} latest version already installed. Jan 11 2025 03:22:44 server2 maldet(108511): {sigup} performing signature update check... Jan 11 2025 03:22:44 server2 maldet(108511): {sigup} local signature set is version 20250104545340 Jan 11 2025 03:22:44 server2 maldet(108511): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Jan 11 2025 03:22:44 server2 maldet(108511): {sigup} latest signature set already installed Jan 11 2025 03:22:45 server2 maldet(108622): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Jan 11 2025 03:22:45 server2 maldet(108622): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Jan 11 2025 03:22:45 server2 maldet(108622): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Jan 11 2025 03:22:45 server2 maldet(108622): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Jan 11 2025 03:22:45 server2 maldet(108622): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/hessa/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/home/walla3t/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Jan 11 2025 03:23:00 server2 maldet(108622): {scan} file list completed in 15s, found 590 files... Jan 11 2025 03:23:00 server2 maldet(108622): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Jan 11 2025 03:23:00 server2 maldet(108622): {scan} scan of (590 files) in progress... Jan 11 2025 03:23:27 server2 maldet(108622): {scan} scan completed on : files 590, malware hits 0, cleaned hits 0, time 42s Jan 11 2025 03:23:27 server2 maldet(108622): {scan} scan report saved, to view run: maldet --report 250111-0322.108622 Jan 12 2025 03:56:31 server2 maldet(348692): {update} checking for available updates... Jan 12 2025 03:56:31 server2 maldet(348692): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Jan 12 2025 03:56:31 server2 maldet(348692): {update} hashing install files and checking against server... Jan 12 2025 03:56:31 server2 maldet(348692): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Jan 12 2025 03:56:31 server2 maldet(348692): {update} latest version already installed. Jan 12 2025 03:56:32 server2 maldet(348825): {sigup} performing signature update check... Jan 12 2025 03:56:32 server2 maldet(348825): {sigup} local signature set is version 20250104545340 Jan 12 2025 03:56:32 server2 maldet(348825): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Jan 12 2025 03:56:32 server2 maldet(348825): {sigup} latest signature set already installed Jan 12 2025 03:56:32 server2 maldet(348937): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Jan 12 2025 03:56:33 server2 maldet(348937): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Jan 12 2025 03:56:33 server2 maldet(348937): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Jan 12 2025 03:56:33 server2 maldet(348937): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Jan 12 2025 03:56:34 server2 maldet(348937): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/hessa/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/home/walla3t/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Jan 12 2025 03:56:49 server2 maldet(348937): {scan} file list completed in 16s, found 735 files... Jan 12 2025 03:56:49 server2 maldet(348937): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Jan 12 2025 03:56:49 server2 maldet(348937): {scan} scan of (735 files) in progress... Jan 12 2025 03:57:13 server2 maldet(348937): {scan} scan completed on : files 735, malware hits 0, cleaned hits 0, time 41s Jan 12 2025 03:57:13 server2 maldet(348937): {scan} scan report saved, to view run: maldet --report 250112-0356.348937 Jan 13 2025 03:54:30 server2 maldet(572126): {update} checking for available updates... Jan 13 2025 03:54:30 server2 maldet(572126): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Jan 13 2025 03:54:30 server2 maldet(572126): {update} hashing install files and checking against server... Jan 13 2025 03:54:30 server2 maldet(572126): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Jan 13 2025 03:54:30 server2 maldet(572126): {update} latest version already installed. Jan 13 2025 03:54:30 server2 maldet(572259): {sigup} performing signature update check... Jan 13 2025 03:54:30 server2 maldet(572259): {sigup} local signature set is version 20250104545340 Jan 13 2025 03:54:30 server2 maldet(572259): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Jan 13 2025 03:54:30 server2 maldet(572259): {sigup} new signature set 20250113611953 available Jan 13 2025 03:54:30 server2 maldet(572259): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Jan 13 2025 03:54:30 server2 maldet(572259): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Jan 13 2025 03:54:31 server2 maldet(572259): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Jan 13 2025 03:54:31 server2 maldet(572259): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Jan 13 2025 03:54:31 server2 maldet(572259): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Jan 13 2025 03:54:31 server2 maldet(572259): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Jan 13 2025 03:54:31 server2 maldet(572259): {sigup} verified md5sum of maldet-sigpack.tgz Jan 13 2025 03:54:31 server2 maldet(572259): {sigup} unpacked and installed maldet-sigpack.tgz Jan 13 2025 03:54:31 server2 maldet(572259): {sigup} verified md5sum of maldet-clean.tgz Jan 13 2025 03:54:31 server2 maldet(572259): {sigup} unpacked and installed maldet-clean.tgz Jan 13 2025 03:54:31 server2 maldet(572259): {sigup} signature set update completed Jan 13 2025 03:54:31 server2 maldet(572259): {sigup} 17638 signatures (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Jan 13 2025 03:54:31 server2 maldet(572489): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Jan 13 2025 03:54:31 server2 maldet(572489): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Jan 13 2025 03:54:31 server2 maldet(572489): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Jan 13 2025 03:54:31 server2 maldet(572489): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Jan 13 2025 03:54:31 server2 maldet(572489): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/hessa/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/home/walla3t/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Jan 13 2025 03:54:49 server2 maldet(572489): {scan} file list completed in 18s, found 503 files... Jan 13 2025 03:54:49 server2 maldet(572489): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Jan 13 2025 03:54:49 server2 maldet(572489): {scan} scan of (503 files) in progress... Jan 13 2025 03:55:06 server2 maldet(572489): {scan} scan completed on : files 503, malware hits 0, cleaned hits 0, time 35s Jan 13 2025 03:55:06 server2 maldet(572489): {scan} scan report saved, to view run: maldet --report 250113-0354.572489 Jan 14 2025 03:46:28 server2 maldet(791004): {update} checking for available updates... Jan 14 2025 03:46:28 server2 maldet(791004): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Jan 14 2025 03:46:28 server2 maldet(791004): {update} hashing install files and checking against server... Jan 14 2025 03:46:28 server2 maldet(791004): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Jan 14 2025 03:46:28 server2 maldet(791004): {update} latest version already installed. Jan 14 2025 03:46:29 server2 maldet(791137): {sigup} performing signature update check... Jan 14 2025 03:46:29 server2 maldet(791137): {sigup} local signature set is version 20250113611953 Jan 14 2025 03:46:29 server2 maldet(791137): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Jan 14 2025 03:46:29 server2 maldet(791137): {sigup} latest signature set already installed Jan 14 2025 03:46:29 server2 maldet(791248): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Jan 14 2025 03:46:29 server2 maldet(791248): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Jan 14 2025 03:46:29 server2 maldet(791248): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Jan 14 2025 03:46:29 server2 maldet(791248): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Jan 14 2025 03:46:29 server2 maldet(791248): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/hessa/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/home/walla3t/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Jan 14 2025 03:46:44 server2 maldet(791248): {scan} file list completed in 15s, found 660 files... Jan 14 2025 03:46:44 server2 maldet(791248): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Jan 14 2025 03:46:44 server2 maldet(791248): {scan} scan of (660 files) in progress... Jan 14 2025 03:47:03 server2 maldet(791248): {scan} scan completed on : files 660, malware hits 0, cleaned hits 0, time 34s Jan 14 2025 03:47:03 server2 maldet(791248): {scan} scan report saved, to view run: maldet --report 250114-0346.791248 Jan 15 2025 03:35:07 server2 maldet(1016738): {update} checking for available updates... Jan 15 2025 03:35:07 server2 maldet(1016738): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Jan 15 2025 03:35:07 server2 maldet(1016738): {update} hashing install files and checking against server... Jan 15 2025 03:35:08 server2 maldet(1016738): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Jan 15 2025 03:35:08 server2 maldet(1016738): {update} latest version already installed. Jan 15 2025 03:35:08 server2 maldet(1016871): {sigup} performing signature update check... Jan 15 2025 03:35:08 server2 maldet(1016871): {sigup} local signature set is version 20250113611953 Jan 15 2025 03:35:08 server2 maldet(1016871): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Jan 15 2025 03:35:08 server2 maldet(1016871): {sigup} latest signature set already installed Jan 15 2025 03:35:08 server2 maldet(1016983): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Jan 15 2025 03:35:09 server2 maldet(1016983): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Jan 15 2025 03:35:09 server2 maldet(1016983): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Jan 15 2025 03:35:09 server2 maldet(1016983): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Jan 15 2025 03:35:09 server2 maldet(1016983): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/hessa/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/home/walla3t/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Jan 15 2025 03:35:24 server2 maldet(1016983): {scan} file list completed in 15s, found 3972 files... Jan 15 2025 03:35:24 server2 maldet(1016983): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Jan 15 2025 03:35:24 server2 maldet(1016983): {scan} scan of (3972 files) in progress... Jan 15 2025 03:37:03 server2 maldet(1016983): {scan} scan completed on : files 3972, malware hits 0, cleaned hits 0, time 115s Jan 15 2025 03:37:03 server2 maldet(1016983): {scan} scan report saved, to view run: maldet --report 250115-0335.1016983 Jan 16 2025 03:38:23 server2 maldet(1233547): {update} checking for available updates... Jan 16 2025 03:38:23 server2 maldet(1233547): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Jan 16 2025 03:38:23 server2 maldet(1233547): {update} hashing install files and checking against server... Jan 16 2025 03:38:23 server2 maldet(1233547): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Jan 16 2025 03:38:23 server2 maldet(1233547): {update} latest version already installed. Jan 16 2025 03:38:23 server2 maldet(1233680): {sigup} performing signature update check... Jan 16 2025 03:38:23 server2 maldet(1233680): {sigup} local signature set is version 20250113611953 Jan 16 2025 03:38:23 server2 maldet(1233680): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Jan 16 2025 03:38:23 server2 maldet(1233680): {sigup} new signature set 202501161368332 available Jan 16 2025 03:38:23 server2 maldet(1233680): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Jan 16 2025 03:38:23 server2 maldet(1233680): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Jan 16 2025 03:38:23 server2 maldet(1233680): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Jan 16 2025 03:38:23 server2 maldet(1233680): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Jan 16 2025 03:38:23 server2 maldet(1233680): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Jan 16 2025 03:38:23 server2 maldet(1233680): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Jan 16 2025 03:38:23 server2 maldet(1233680): {sigup} verified md5sum of maldet-sigpack.tgz Jan 16 2025 03:38:24 server2 maldet(1233680): {sigup} unpacked and installed maldet-sigpack.tgz Jan 16 2025 03:38:24 server2 maldet(1233680): {sigup} verified md5sum of maldet-clean.tgz Jan 16 2025 03:38:24 server2 maldet(1233680): {sigup} unpacked and installed maldet-clean.tgz Jan 16 2025 03:38:24 server2 maldet(1233680): {sigup} signature set update completed Jan 16 2025 03:38:24 server2 maldet(1233680): {sigup} 17638 signatures (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Jan 16 2025 03:38:24 server2 maldet(1233912): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Jan 16 2025 03:38:24 server2 maldet(1233912): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Jan 16 2025 03:38:24 server2 maldet(1233912): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Jan 16 2025 03:38:24 server2 maldet(1233912): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Jan 16 2025 03:38:24 server2 maldet(1233912): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/hessa/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/home/walla3t/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Jan 16 2025 03:38:40 server2 maldet(1233912): {scan} file list completed in 16s, found 3097 files... Jan 16 2025 03:38:40 server2 maldet(1233912): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Jan 16 2025 03:38:40 server2 maldet(1233912): {scan} scan of (3097 files) in progress... Jan 16 2025 03:40:29 server2 maldet(1233912): {scan} scan completed on : files 3097, malware hits 0, cleaned hits 0, time 125s Jan 16 2025 03:40:29 server2 maldet(1233912): {scan} scan report saved, to view run: maldet --report 250116-0338.1233912 Jan 17 2025 03:22:29 server2 maldet(1477426): {update} checking for available updates... Jan 17 2025 03:22:29 server2 maldet(1477426): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Jan 17 2025 03:22:29 server2 maldet(1477426): {update} hashing install files and checking against server... Jan 17 2025 03:22:29 server2 maldet(1477426): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Jan 17 2025 03:22:29 server2 maldet(1477426): {update} latest version already installed. Jan 17 2025 03:22:29 server2 maldet(1477559): {sigup} performing signature update check... Jan 17 2025 03:22:29 server2 maldet(1477559): {sigup} local signature set is version 202501161368332 Jan 17 2025 03:22:29 server2 maldet(1477559): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Jan 17 2025 03:22:29 server2 maldet(1477559): {sigup} latest signature set already installed Jan 17 2025 03:22:29 server2 maldet(1477670): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Jan 17 2025 03:22:30 server2 maldet(1477670): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Jan 17 2025 03:22:30 server2 maldet(1477670): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Jan 17 2025 03:22:30 server2 maldet(1477670): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Jan 17 2025 03:22:30 server2 maldet(1477670): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/hessa/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/home/walla3t/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Jan 17 2025 03:22:47 server2 maldet(1477670): {scan} file list completed in 17s, found 538 files... Jan 17 2025 03:22:47 server2 maldet(1477670): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Jan 17 2025 03:22:47 server2 maldet(1477670): {scan} scan of (538 files) in progress... Jan 17 2025 03:23:08 server2 maldet(1477670): {scan} scan completed on : files 538, malware hits 0, cleaned hits 0, time 39s Jan 17 2025 03:23:08 server2 maldet(1477670): {scan} scan report saved, to view run: maldet --report 250117-0322.1477670 Jan 18 2025 03:39:29 server2 maldet(1719008): {update} checking for available updates... Jan 18 2025 03:39:29 server2 maldet(1719008): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Jan 18 2025 03:39:29 server2 maldet(1719008): {update} hashing install files and checking against server... Jan 18 2025 03:39:29 server2 maldet(1719008): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Jan 18 2025 03:39:29 server2 maldet(1719008): {update} latest version already installed. Jan 18 2025 03:39:29 server2 maldet(1719141): {sigup} performing signature update check... Jan 18 2025 03:39:29 server2 maldet(1719141): {sigup} local signature set is version 202501161368332 Jan 18 2025 03:39:29 server2 maldet(1719141): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Jan 18 2025 03:39:29 server2 maldet(1719141): {sigup} latest signature set already installed Jan 18 2025 03:39:29 server2 maldet(1719252): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Jan 18 2025 03:39:31 server2 maldet(1719252): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Jan 18 2025 03:39:31 server2 maldet(1719252): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Jan 18 2025 03:39:31 server2 maldet(1719252): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Jan 18 2025 03:39:31 server2 maldet(1719252): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/hessa/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/home/walla3t/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Jan 18 2025 03:40:04 server2 maldet(1719252): {scan} file list completed in 33s, found 598 files... Jan 18 2025 03:40:04 server2 maldet(1719252): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Jan 18 2025 03:40:04 server2 maldet(1719252): {scan} scan of (598 files) in progress... Jan 18 2025 03:40:30 server2 maldet(1719252): {scan} scan completed on : files 598, malware hits 0, cleaned hits 0, time 61s Jan 18 2025 03:40:30 server2 maldet(1719252): {scan} scan report saved, to view run: maldet --report 250118-0339.1719252 Jan 19 2025 03:52:49 server2 maldet(1953575): {update} checking for available updates... Jan 19 2025 03:52:49 server2 maldet(1953575): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Jan 19 2025 03:52:49 server2 maldet(1953575): {update} hashing install files and checking against server... Jan 19 2025 03:52:49 server2 maldet(1953575): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Jan 19 2025 03:52:49 server2 maldet(1953575): {update} latest version already installed. Jan 19 2025 03:52:49 server2 maldet(1953710): {sigup} performing signature update check... Jan 19 2025 03:52:49 server2 maldet(1953710): {sigup} local signature set is version 202501161368332 Jan 19 2025 03:52:50 server2 maldet(1953710): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Jan 19 2025 03:52:50 server2 maldet(1953710): {sigup} new signature set 202501192124524 available Jan 19 2025 03:52:50 server2 maldet(1953710): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Jan 19 2025 03:52:50 server2 maldet(1953710): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Jan 19 2025 03:52:50 server2 maldet(1953710): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Jan 19 2025 03:52:50 server2 maldet(1953710): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Jan 19 2025 03:52:50 server2 maldet(1953710): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Jan 19 2025 03:52:50 server2 maldet(1953710): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Jan 19 2025 03:52:50 server2 maldet(1953710): {sigup} verified md5sum of maldet-sigpack.tgz Jan 19 2025 03:52:50 server2 maldet(1953710): {sigup} unpacked and installed maldet-sigpack.tgz Jan 19 2025 03:52:50 server2 maldet(1953710): {sigup} verified md5sum of maldet-clean.tgz Jan 19 2025 03:52:50 server2 maldet(1953710): {sigup} unpacked and installed maldet-clean.tgz Jan 19 2025 03:52:50 server2 maldet(1953710): {sigup} signature set update completed Jan 19 2025 03:52:50 server2 maldet(1953710): {sigup} 17638 signatures (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Jan 19 2025 03:52:50 server2 maldet(1953938): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Jan 19 2025 03:52:54 server2 maldet(1953938): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Jan 19 2025 03:52:54 server2 maldet(1953938): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Jan 19 2025 03:52:54 server2 maldet(1953938): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Jan 19 2025 03:52:54 server2 maldet(1953938): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/hessa/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/home/walla3t/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Jan 19 2025 03:53:30 server2 maldet(1953938): {scan} file list completed in 36s, found 531 files... Jan 19 2025 03:53:30 server2 maldet(1953938): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Jan 19 2025 03:53:30 server2 maldet(1953938): {scan} scan of (531 files) in progress... Jan 19 2025 03:54:42 server2 maldet(1953938): {scan} scan completed on : files 531, malware hits 0, cleaned hits 0, time 112s Jan 19 2025 03:54:42 server2 maldet(1953938): {scan} scan report saved, to view run: maldet --report 250119-0352.1953938 Jan 20 2025 03:41:13 server2 maldet(2160668): {update} checking for available updates... Jan 20 2025 03:41:13 server2 maldet(2160668): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Jan 20 2025 03:41:13 server2 maldet(2160668): {update} hashing install files and checking against server... Jan 20 2025 03:41:13 server2 maldet(2160668): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Jan 20 2025 03:41:13 server2 maldet(2160668): {update} latest version already installed. Jan 20 2025 03:41:13 server2 maldet(2160802): {sigup} performing signature update check... Jan 20 2025 03:41:13 server2 maldet(2160802): {sigup} local signature set is version 202501192124524 Jan 20 2025 03:41:14 server2 maldet(2160802): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Jan 20 2025 03:41:14 server2 maldet(2160802): {sigup} latest signature set already installed Jan 20 2025 03:41:14 server2 maldet(2160913): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Jan 20 2025 03:41:16 server2 maldet(2160913): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Jan 20 2025 03:41:16 server2 maldet(2160913): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Jan 20 2025 03:41:16 server2 maldet(2160913): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Jan 20 2025 03:41:16 server2 maldet(2160913): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/hessa/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/home/walla3t/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Jan 20 2025 03:41:53 server2 maldet(2160913): {scan} file list completed in 37s, found 778 files... Jan 20 2025 03:41:53 server2 maldet(2160913): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Jan 20 2025 03:41:53 server2 maldet(2160913): {scan} scan of (778 files) in progress... Jan 20 2025 03:42:37 server2 maldet(2160913): {scan} scan completed on : files 778, malware hits 0, cleaned hits 0, time 83s Jan 20 2025 03:42:37 server2 maldet(2160913): {scan} scan report saved, to view run: maldet --report 250120-0341.2160913 Jan 21 2025 03:13:44 server2 maldet(2403274): {update} checking for available updates... Jan 21 2025 03:13:48 server2 maldet(2403274): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Jan 21 2025 03:13:48 server2 maldet(2403274): {update} hashing install files and checking against server... Jan 21 2025 03:13:48 server2 maldet(2403274): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Jan 21 2025 03:13:48 server2 maldet(2403274): {update} latest version already installed. Jan 21 2025 03:13:48 server2 maldet(2403431): {sigup} performing signature update check... Jan 21 2025 03:13:48 server2 maldet(2403431): {sigup} local signature set is version 202501192124524 Jan 21 2025 03:13:48 server2 maldet(2403431): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Jan 21 2025 03:13:48 server2 maldet(2403431): {sigup} latest signature set already installed Jan 21 2025 03:13:49 server2 maldet(2403546): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Jan 21 2025 03:13:50 server2 maldet(2403546): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Jan 21 2025 03:13:50 server2 maldet(2403546): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Jan 21 2025 03:13:50 server2 maldet(2403546): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Jan 21 2025 03:13:50 server2 maldet(2403546): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/hessa/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/home/walla3t/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Jan 21 2025 03:14:30 server2 maldet(2403546): {scan} file list completed in 40s, found 2181 files... Jan 21 2025 03:14:30 server2 maldet(2403546): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Jan 21 2025 03:14:30 server2 maldet(2403546): {scan} scan of (2181 files) in progress... Jan 21 2025 03:16:12 server2 maldet(2403546): {scan} scan completed on : files 2181, malware hits 0, cleaned hits 0, time 142s Jan 21 2025 03:16:12 server2 maldet(2403546): {scan} scan report saved, to view run: maldet --report 250121-0313.2403546 Jan 22 2025 03:39:45 server2 maldet(2637712): {update} checking for available updates... Jan 22 2025 03:39:47 server2 maldet(2637712): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Jan 22 2025 03:39:47 server2 maldet(2637712): {update} hashing install files and checking against server... Jan 22 2025 03:39:47 server2 maldet(2637712): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Jan 22 2025 03:39:47 server2 maldet(2637712): {update} latest version already installed. Jan 22 2025 03:39:48 server2 maldet(2637847): {sigup} performing signature update check... Jan 22 2025 03:39:48 server2 maldet(2637847): {sigup} local signature set is version 202501192124524 Jan 22 2025 03:39:48 server2 maldet(2637847): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Jan 22 2025 03:39:48 server2 maldet(2637847): {sigup} new signature set 202501222816618 available Jan 22 2025 03:39:48 server2 maldet(2637847): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Jan 22 2025 03:39:48 server2 maldet(2637847): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Jan 22 2025 03:39:48 server2 maldet(2637847): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Jan 22 2025 03:39:48 server2 maldet(2637847): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Jan 22 2025 03:39:49 server2 maldet(2637847): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Jan 22 2025 03:39:49 server2 maldet(2637847): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Jan 22 2025 03:39:49 server2 maldet(2637847): {sigup} verified md5sum of maldet-sigpack.tgz Jan 22 2025 03:39:49 server2 maldet(2637847): {sigup} unpacked and installed maldet-sigpack.tgz Jan 22 2025 03:39:49 server2 maldet(2637847): {sigup} verified md5sum of maldet-clean.tgz Jan 22 2025 03:39:49 server2 maldet(2637847): {sigup} unpacked and installed maldet-clean.tgz Jan 22 2025 03:39:49 server2 maldet(2637847): {sigup} signature set update completed Jan 22 2025 03:39:49 server2 maldet(2637847): {sigup} 17638 signatures (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Jan 22 2025 03:39:49 server2 maldet(2638081): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Jan 22 2025 03:39:52 server2 maldet(2638081): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Jan 22 2025 03:39:52 server2 maldet(2638081): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Jan 22 2025 03:39:52 server2 maldet(2638081): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Jan 22 2025 03:39:52 server2 maldet(2638081): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/hessa/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/home/walla3t/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Jan 22 2025 03:41:09 server2 maldet(2638081): {scan} file list completed in 77s, found 591 files... Jan 22 2025 03:41:09 server2 maldet(2638081): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Jan 22 2025 03:41:09 server2 maldet(2638081): {scan} scan of (591 files) in progress... Jan 22 2025 03:42:05 server2 maldet(2638081): {scan} scan completed on : files 591, malware hits 0, cleaned hits 0, time 136s Jan 22 2025 03:42:05 server2 maldet(2638081): {scan} scan report saved, to view run: maldet --report 250122-0339.2638081 Jan 23 2025 03:54:35 server2 maldet(2870106): {update} checking for available updates... Jan 23 2025 03:54:35 server2 maldet(2870106): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Jan 23 2025 03:54:35 server2 maldet(2870106): {update} hashing install files and checking against server... Jan 23 2025 03:54:35 server2 maldet(2870106): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Jan 23 2025 03:54:35 server2 maldet(2870106): {update} latest version already installed. Jan 23 2025 03:54:35 server2 maldet(2870240): {sigup} performing signature update check... Jan 23 2025 03:54:35 server2 maldet(2870240): {sigup} local signature set is version 202501222816618 Jan 23 2025 03:54:36 server2 maldet(2870240): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Jan 23 2025 03:54:36 server2 maldet(2870240): {sigup} latest signature set already installed Jan 23 2025 03:54:36 server2 maldet(2870351): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Jan 23 2025 03:54:37 server2 maldet(2870351): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Jan 23 2025 03:54:37 server2 maldet(2870351): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Jan 23 2025 03:54:37 server2 maldet(2870351): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Jan 23 2025 03:54:37 server2 maldet(2870351): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/hessa/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/home/walla3t/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Jan 23 2025 03:55:06 server2 maldet(2870351): {scan} file list completed in 29s, found 579 files... Jan 23 2025 03:55:06 server2 maldet(2870351): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Jan 23 2025 03:55:06 server2 maldet(2870351): {scan} scan of (579 files) in progress... Jan 23 2025 03:55:34 server2 maldet(2870351): {scan} scan completed on : files 579, malware hits 0, cleaned hits 0, time 58s Jan 23 2025 03:55:34 server2 maldet(2870351): {scan} scan report saved, to view run: maldet --report 250123-0354.2870351 Jan 24 2025 03:44:37 server2 maldet(3087711): {update} checking for available updates... Jan 24 2025 03:44:37 server2 maldet(3087711): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Jan 24 2025 03:44:37 server2 maldet(3087711): {update} hashing install files and checking against server... Jan 24 2025 03:44:37 server2 maldet(3087711): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Jan 24 2025 03:44:37 server2 maldet(3087711): {update} latest version already installed. Jan 24 2025 03:44:38 server2 maldet(3087844): {sigup} performing signature update check... Jan 24 2025 03:44:38 server2 maldet(3087844): {sigup} local signature set is version 202501222816618 Jan 24 2025 03:44:38 server2 maldet(3087844): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Jan 24 2025 03:44:38 server2 maldet(3087844): {sigup} latest signature set already installed Jan 24 2025 03:44:38 server2 maldet(3087955): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Jan 24 2025 03:44:40 server2 maldet(3087955): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Jan 24 2025 03:44:40 server2 maldet(3087955): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Jan 24 2025 03:44:40 server2 maldet(3087955): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Jan 24 2025 03:44:40 server2 maldet(3087955): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/hessa/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/home/walla3t/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Jan 24 2025 03:45:27 server2 maldet(3087955): {scan} file list completed in 46s, found 2081 files... Jan 24 2025 03:45:27 server2 maldet(3087955): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Jan 24 2025 03:45:27 server2 maldet(3087955): {scan} scan of (2081 files) in progress... Jan 24 2025 03:47:06 server2 maldet(3087955): {scan} scan completed on : files 2081, malware hits 0, cleaned hits 0, time 148s Jan 24 2025 03:47:06 server2 maldet(3087955): {scan} scan report saved, to view run: maldet --report 250124-0344.3087955 Jan 25 2025 03:38:25 server2 maldet(3357473): {update} checking for available updates... Jan 25 2025 03:38:25 server2 maldet(3357473): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Jan 25 2025 03:38:25 server2 maldet(3357473): {update} hashing install files and checking against server... Jan 25 2025 03:38:25 server2 maldet(3357473): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Jan 25 2025 03:38:25 server2 maldet(3357473): {update} latest version already installed. Jan 25 2025 03:38:25 server2 maldet(3357606): {sigup} performing signature update check... Jan 25 2025 03:38:25 server2 maldet(3357606): {sigup} local signature set is version 202501222816618 Jan 25 2025 03:38:25 server2 maldet(3357606): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Jan 25 2025 03:38:26 server2 maldet(3357606): {sigup} new signature set 202501253509456 available Jan 25 2025 03:38:26 server2 maldet(3357606): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Jan 25 2025 03:38:26 server2 maldet(3357606): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Jan 25 2025 03:38:26 server2 maldet(3357606): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Jan 25 2025 03:38:26 server2 maldet(3357606): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Jan 25 2025 03:38:26 server2 maldet(3357606): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Jan 25 2025 03:38:27 server2 maldet(3357606): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Jan 25 2025 03:38:27 server2 maldet(3357606): {sigup} verified md5sum of maldet-sigpack.tgz Jan 25 2025 03:38:27 server2 maldet(3357606): {sigup} unpacked and installed maldet-sigpack.tgz Jan 25 2025 03:38:27 server2 maldet(3357606): {sigup} verified md5sum of maldet-clean.tgz Jan 25 2025 03:38:27 server2 maldet(3357606): {sigup} unpacked and installed maldet-clean.tgz Jan 25 2025 03:38:27 server2 maldet(3357606): {sigup} signature set update completed Jan 25 2025 03:38:27 server2 maldet(3357606): {sigup} 17638 signatures (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Jan 25 2025 03:38:27 server2 maldet(3357839): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Jan 25 2025 03:38:29 server2 maldet(3357839): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Jan 25 2025 03:38:29 server2 maldet(3357839): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Jan 25 2025 03:38:29 server2 maldet(3357839): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Jan 25 2025 03:38:29 server2 maldet(3357839): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/hessa/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/home/walla3t/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Jan 25 2025 03:39:14 server2 maldet(3357839): {scan} file list completed in 45s, found 799 files... Jan 25 2025 03:39:14 server2 maldet(3357839): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Jan 25 2025 03:39:15 server2 maldet(3357839): {scan} scan of (799 files) in progress... Jan 25 2025 03:40:03 server2 maldet(3357839): {scan} scan completed on : files 799, malware hits 0, cleaned hits 0, time 96s Jan 25 2025 03:40:03 server2 maldet(3357839): {scan} scan report saved, to view run: maldet --report 250125-0338.3357839 Jan 26 2025 03:20:00 server2 maldet(3567720): {update} checking for available updates... Jan 26 2025 03:20:00 server2 maldet(3567720): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Jan 26 2025 03:20:00 server2 maldet(3567720): {update} hashing install files and checking against server... Jan 26 2025 03:20:01 server2 maldet(3567720): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Jan 26 2025 03:20:01 server2 maldet(3567720): {update} latest version already installed. Jan 26 2025 03:20:01 server2 maldet(3567857): {sigup} performing signature update check... Jan 26 2025 03:20:01 server2 maldet(3567857): {sigup} local signature set is version 202501253509456 Jan 26 2025 03:20:01 server2 maldet(3567857): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Jan 26 2025 03:20:01 server2 maldet(3567857): {sigup} latest signature set already installed Jan 26 2025 03:20:02 server2 maldet(3568075): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Jan 26 2025 03:20:10 server2 maldet(3568075): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Jan 26 2025 03:20:10 server2 maldet(3568075): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Jan 26 2025 03:20:10 server2 maldet(3568075): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Jan 26 2025 03:20:10 server2 maldet(3568075): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/hessa/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/home/walla3t/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Jan 26 2025 03:20:54 server2 maldet(3568075): {scan} file list completed in 44s, found 426 files... Jan 26 2025 03:20:54 server2 maldet(3568075): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Jan 26 2025 03:20:54 server2 maldet(3568075): {scan} scan of (426 files) in progress... Jan 26 2025 03:21:29 server2 maldet(3568075): {scan} scan completed on : files 426, malware hits 0, cleaned hits 0, time 87s Jan 26 2025 03:21:29 server2 maldet(3568075): {scan} scan report saved, to view run: maldet --report 250126-0320.3568075 Jan 27 2025 03:22:06 server2 maldet(3791173): {update} checking for available updates... Jan 27 2025 03:22:06 server2 maldet(3791173): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Jan 27 2025 03:22:06 server2 maldet(3791173): {update} hashing install files and checking against server... Jan 27 2025 03:22:06 server2 maldet(3791173): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Jan 27 2025 03:22:06 server2 maldet(3791173): {update} latest version already installed. Jan 27 2025 03:22:06 server2 maldet(3791306): {sigup} performing signature update check... Jan 27 2025 03:22:06 server2 maldet(3791306): {sigup} local signature set is version 202501253509456 Jan 27 2025 03:22:07 server2 maldet(3791306): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Jan 27 2025 03:22:07 server2 maldet(3791306): {sigup} latest signature set already installed Jan 27 2025 03:22:07 server2 maldet(3791417): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Jan 27 2025 03:22:08 server2 maldet(3791417): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Jan 27 2025 03:22:08 server2 maldet(3791417): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Jan 27 2025 03:22:08 server2 maldet(3791417): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Jan 27 2025 03:22:08 server2 maldet(3791417): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/hessa/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/home/walla3t/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Jan 27 2025 03:22:46 server2 maldet(3791417): {scan} file list completed in 38s, found 477 files... Jan 27 2025 03:22:46 server2 maldet(3791417): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Jan 27 2025 03:22:46 server2 maldet(3791417): {scan} scan of (477 files) in progress... Jan 27 2025 03:23:12 server2 maldet(3791417): {scan} scan completed on : files 477, malware hits 0, cleaned hits 0, time 65s Jan 27 2025 03:23:12 server2 maldet(3791417): {scan} scan report saved, to view run: maldet --report 250127-0322.3791417 Jan 28 2025 03:10:31 server2 maldet(4007988): {update} checking for available updates... Jan 28 2025 03:10:31 server2 maldet(4007988): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Jan 28 2025 03:10:31 server2 maldet(4007988): {update} hashing install files and checking against server... Jan 28 2025 03:10:31 server2 maldet(4007988): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Jan 28 2025 03:10:31 server2 maldet(4007988): {update} latest version already installed. Jan 28 2025 03:10:31 server2 maldet(4008123): {sigup} performing signature update check... Jan 28 2025 03:10:31 server2 maldet(4008123): {sigup} local signature set is version 202501253509456 Jan 28 2025 03:10:32 server2 maldet(4008123): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Jan 28 2025 03:10:32 server2 maldet(4008123): {sigup} new signature set 202501287825 available Jan 28 2025 03:10:32 server2 maldet(4008123): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Jan 28 2025 03:10:32 server2 maldet(4008123): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Jan 28 2025 03:10:32 server2 maldet(4008123): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Jan 28 2025 03:10:32 server2 maldet(4008123): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Jan 28 2025 03:10:32 server2 maldet(4008123): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Jan 28 2025 03:10:32 server2 maldet(4008123): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Jan 28 2025 03:10:32 server2 maldet(4008123): {sigup} verified md5sum of maldet-sigpack.tgz Jan 28 2025 03:10:32 server2 maldet(4008123): {sigup} unpacked and installed maldet-sigpack.tgz Jan 28 2025 03:10:33 server2 maldet(4008123): {sigup} verified md5sum of maldet-clean.tgz Jan 28 2025 03:10:33 server2 maldet(4008123): {sigup} unpacked and installed maldet-clean.tgz Jan 28 2025 03:10:33 server2 maldet(4008123): {sigup} signature set update completed Jan 28 2025 03:10:33 server2 maldet(4008123): {sigup} 17638 signatures (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Jan 28 2025 03:10:33 server2 maldet(4008352): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Jan 28 2025 03:10:35 server2 maldet(4008352): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Jan 28 2025 03:10:35 server2 maldet(4008352): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Jan 28 2025 03:10:35 server2 maldet(4008352): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Jan 28 2025 03:10:35 server2 maldet(4008352): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/hessa/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/home/walla3t/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Jan 28 2025 03:11:12 server2 maldet(4008352): {scan} file list completed in 37s, found 5696 files... Jan 28 2025 03:11:12 server2 maldet(4008352): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Jan 28 2025 03:11:12 server2 maldet(4008352): {scan} scan of (5696 files) in progress... Jan 28 2025 03:14:45 server2 maldet(4008352): {scan} scan completed on : files 5696, malware hits 0, cleaned hits 0, time 252s Jan 28 2025 03:14:45 server2 maldet(4008352): {scan} scan report saved, to view run: maldet --report 250128-0310.4008352 Jan 29 2025 03:43:40 server2 maldet(38473): {update} checking for available updates... Jan 29 2025 03:43:41 server2 maldet(38473): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Jan 29 2025 03:43:41 server2 maldet(38473): {update} hashing install files and checking against server... Jan 29 2025 03:43:41 server2 maldet(38473): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Jan 29 2025 03:43:41 server2 maldet(38473): {update} latest version already installed. Jan 29 2025 03:43:41 server2 maldet(38606): {sigup} performing signature update check... Jan 29 2025 03:43:41 server2 maldet(38606): {sigup} local signature set is version 202501287825 Jan 29 2025 03:43:41 server2 maldet(38606): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Jan 29 2025 03:43:41 server2 maldet(38606): {sigup} latest signature set already installed Jan 29 2025 03:43:41 server2 maldet(38717): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Jan 29 2025 03:43:42 server2 maldet(38717): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Jan 29 2025 03:43:42 server2 maldet(38717): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Jan 29 2025 03:43:42 server2 maldet(38717): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Jan 29 2025 03:43:42 server2 maldet(38717): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/hessa/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/home/walla3t/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Jan 29 2025 03:44:17 server2 maldet(38717): {scan} file list completed in 35s, found 1200 files... Jan 29 2025 03:44:17 server2 maldet(38717): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Jan 29 2025 03:44:17 server2 maldet(38717): {scan} scan of (1200 files) in progress... Jan 29 2025 03:45:34 server2 maldet(38717): {scan} scan completed on : files 1200, malware hits 0, cleaned hits 0, time 113s Jan 29 2025 03:45:34 server2 maldet(38717): {scan} scan report saved, to view run: maldet --report 250129-0343.38717 Jan 30 2025 03:52:45 server2 maldet(240151): {update} checking for available updates... Jan 30 2025 03:52:45 server2 maldet(240151): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Jan 30 2025 03:52:45 server2 maldet(240151): {update} hashing install files and checking against server... Jan 30 2025 03:52:45 server2 maldet(240151): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Jan 30 2025 03:52:45 server2 maldet(240151): {update} latest version already installed. Jan 30 2025 03:52:45 server2 maldet(240284): {sigup} performing signature update check... Jan 30 2025 03:52:45 server2 maldet(240284): {sigup} local signature set is version 202501287825 Jan 30 2025 03:52:45 server2 maldet(240284): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Jan 30 2025 03:52:45 server2 maldet(240284): {sigup} latest signature set already installed Jan 30 2025 03:52:46 server2 maldet(240395): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Jan 30 2025 03:52:47 server2 maldet(240395): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Jan 30 2025 03:52:47 server2 maldet(240395): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Jan 30 2025 03:52:47 server2 maldet(240395): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Jan 30 2025 03:52:47 server2 maldet(240395): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/hessa/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/home/walla3t/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Jan 30 2025 03:53:18 server2 maldet(240395): {scan} file list completed in 31s, found 1415 files... Jan 30 2025 03:53:18 server2 maldet(240395): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Jan 30 2025 03:53:18 server2 maldet(240395): {scan} scan of (1415 files) in progress... Jan 30 2025 03:54:07 server2 maldet(240395): {scan} scan completed on : files 1415, malware hits 0, cleaned hits 0, time 81s Jan 30 2025 03:54:07 server2 maldet(240395): {scan} scan report saved, to view run: maldet --report 250130-0352.240395 Jan 31 2025 03:57:56 server2 maldet(467124): {update} checking for available updates... Jan 31 2025 03:57:56 server2 maldet(467124): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Jan 31 2025 03:57:56 server2 maldet(467124): {update} hashing install files and checking against server... Jan 31 2025 03:57:56 server2 maldet(467124): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Jan 31 2025 03:57:56 server2 maldet(467124): {update} latest version already installed. Jan 31 2025 03:57:56 server2 maldet(467257): {sigup} performing signature update check... Jan 31 2025 03:57:56 server2 maldet(467257): {sigup} local signature set is version 202501287825 Jan 31 2025 03:57:56 server2 maldet(467257): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Jan 31 2025 03:57:56 server2 maldet(467257): {sigup} new signature set 20250131488045 available Jan 31 2025 03:57:56 server2 maldet(467257): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Jan 31 2025 03:57:56 server2 maldet(467257): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Jan 31 2025 03:57:56 server2 maldet(467257): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Jan 31 2025 03:57:56 server2 maldet(467257): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Jan 31 2025 03:57:57 server2 maldet(467257): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Jan 31 2025 03:57:57 server2 maldet(467257): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Jan 31 2025 03:57:57 server2 maldet(467257): {sigup} verified md5sum of maldet-sigpack.tgz Jan 31 2025 03:57:57 server2 maldet(467257): {sigup} unpacked and installed maldet-sigpack.tgz Jan 31 2025 03:57:57 server2 maldet(467257): {sigup} verified md5sum of maldet-clean.tgz Jan 31 2025 03:57:57 server2 maldet(467257): {sigup} unpacked and installed maldet-clean.tgz Jan 31 2025 03:57:57 server2 maldet(467257): {sigup} signature set update completed Jan 31 2025 03:57:57 server2 maldet(467257): {sigup} 17638 signatures (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Jan 31 2025 03:57:57 server2 maldet(467485): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Jan 31 2025 03:57:58 server2 maldet(467485): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Jan 31 2025 03:57:58 server2 maldet(467485): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Jan 31 2025 03:57:59 server2 maldet(467485): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Jan 31 2025 03:57:59 server2 maldet(467485): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/hessa/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/home/walla3t/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Jan 31 2025 03:58:38 server2 maldet(467485): {scan} file list completed in 39s, found 546 files... Jan 31 2025 03:58:38 server2 maldet(467485): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Jan 31 2025 03:58:38 server2 maldet(467485): {scan} scan of (546 files) in progress... Jan 31 2025 03:59:31 server2 maldet(467485): {scan} scan completed on : files 546, malware hits 0, cleaned hits 0, time 94s Jan 31 2025 03:59:31 server2 maldet(467485): {scan} scan report saved, to view run: maldet --report 250131-0357.467485 Feb 01 2025 03:45:20 server2 maldet(673399): {update} checking for available updates... Feb 01 2025 03:45:20 server2 maldet(673399): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Feb 01 2025 03:45:20 server2 maldet(673399): {update} hashing install files and checking against server... Feb 01 2025 03:45:20 server2 maldet(673399): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Feb 01 2025 03:45:20 server2 maldet(673399): {update} latest version already installed. Feb 01 2025 03:45:20 server2 maldet(673546): {sigup} performing signature update check... Feb 01 2025 03:45:20 server2 maldet(673546): {sigup} local signature set is version 20250131488045 Feb 01 2025 03:45:20 server2 maldet(673546): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Feb 01 2025 03:45:20 server2 maldet(673546): {sigup} new signature set 202502011136909 available Feb 01 2025 03:45:20 server2 maldet(673546): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Feb 01 2025 03:45:21 server2 maldet(673546): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Feb 01 2025 03:45:21 server2 maldet(673546): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Feb 01 2025 03:45:21 server2 maldet(673546): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Feb 01 2025 03:45:21 server2 maldet(673546): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Feb 01 2025 03:45:21 server2 maldet(673546): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Feb 01 2025 03:45:21 server2 maldet(673546): {sigup} verified md5sum of maldet-sigpack.tgz Feb 01 2025 03:45:21 server2 maldet(673546): {sigup} unpacked and installed maldet-sigpack.tgz Feb 01 2025 03:45:21 server2 maldet(673546): {sigup} verified md5sum of maldet-clean.tgz Feb 01 2025 03:45:21 server2 maldet(673546): {sigup} unpacked and installed maldet-clean.tgz Feb 01 2025 03:45:21 server2 maldet(673546): {sigup} signature set update completed Feb 01 2025 03:45:21 server2 maldet(673546): {sigup} 17638 signatures (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Feb 01 2025 03:45:21 server2 maldet(673778): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Feb 01 2025 03:45:22 server2 maldet(673778): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Feb 01 2025 03:45:23 server2 maldet(673778): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Feb 01 2025 03:45:23 server2 maldet(673778): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Feb 01 2025 03:45:23 server2 maldet(673778): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/hessa/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/home/walla3t/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Feb 01 2025 03:45:55 server2 maldet(673778): {scan} file list completed in 32s, found 867 files... Feb 01 2025 03:45:55 server2 maldet(673778): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Feb 01 2025 03:45:55 server2 maldet(673778): {scan} scan of (867 files) in progress... Feb 01 2025 03:46:54 server2 maldet(673778): {scan} scan completed on : files 867, malware hits 0, cleaned hits 0, time 92s Feb 01 2025 03:46:54 server2 maldet(673778): {scan} scan report saved, to view run: maldet --report 250201-0345.673778 Feb 02 2025 03:33:42 server2 maldet(881249): {update} checking for available updates... Feb 02 2025 03:33:42 server2 maldet(881249): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Feb 02 2025 03:33:42 server2 maldet(881249): {update} hashing install files and checking against server... Feb 02 2025 03:33:42 server2 maldet(881249): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Feb 02 2025 03:33:42 server2 maldet(881249): {update} latest version already installed. Feb 02 2025 03:33:43 server2 maldet(881382): {sigup} performing signature update check... Feb 02 2025 03:33:43 server2 maldet(881382): {sigup} local signature set is version 202502011136909 Feb 02 2025 03:33:43 server2 maldet(881382): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Feb 02 2025 03:33:43 server2 maldet(881382): {sigup} latest signature set already installed Feb 02 2025 03:33:43 server2 maldet(881493): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Feb 02 2025 03:33:47 server2 maldet(881493): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Feb 02 2025 03:33:47 server2 maldet(881493): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Feb 02 2025 03:33:47 server2 maldet(881493): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Feb 02 2025 03:33:47 server2 maldet(881493): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/hessa/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/home/walla3t/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Feb 02 2025 03:34:27 server2 maldet(881493): {scan} file list completed in 40s, found 572 files... Feb 02 2025 03:34:27 server2 maldet(881493): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Feb 02 2025 03:34:27 server2 maldet(881493): {scan} scan of (572 files) in progress... Feb 02 2025 03:35:08 server2 maldet(881493): {scan} scan completed on : files 572, malware hits 0, cleaned hits 0, time 85s Feb 02 2025 03:35:08 server2 maldet(881493): {scan} scan report saved, to view run: maldet --report 250202-0333.881493 Feb 03 2025 03:42:22 server2 maldet(1108794): {update} checking for available updates... Feb 03 2025 03:42:22 server2 maldet(1108794): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Feb 03 2025 03:42:22 server2 maldet(1108794): {update} hashing install files and checking against server... Feb 03 2025 03:42:22 server2 maldet(1108794): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Feb 03 2025 03:42:22 server2 maldet(1108794): {update} latest version already installed. Feb 03 2025 03:42:23 server2 maldet(1108929): {sigup} performing signature update check... Feb 03 2025 03:42:23 server2 maldet(1108929): {sigup} local signature set is version 202502011136909 Feb 03 2025 03:42:23 server2 maldet(1108929): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Feb 03 2025 03:42:23 server2 maldet(1108929): {sigup} latest signature set already installed Feb 03 2025 03:42:23 server2 maldet(1109040): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Feb 03 2025 03:42:24 server2 maldet(1109040): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Feb 03 2025 03:42:24 server2 maldet(1109040): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Feb 03 2025 03:42:24 server2 maldet(1109040): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Feb 03 2025 03:42:24 server2 maldet(1109040): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/hessa/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/home/walla3t/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Feb 03 2025 03:42:56 server2 maldet(1109040): {scan} file list completed in 32s, found 697 files... Feb 03 2025 03:42:56 server2 maldet(1109040): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Feb 03 2025 03:42:56 server2 maldet(1109040): {scan} scan of (697 files) in progress... Feb 03 2025 03:43:39 server2 maldet(1109040): {scan} scan completed on : files 697, malware hits 0, cleaned hits 0, time 76s Feb 03 2025 03:43:39 server2 maldet(1109040): {scan} scan report saved, to view run: maldet --report 250203-0342.1109040 Feb 04 2025 03:49:06 server2 maldet(1326015): {update} checking for available updates... Feb 04 2025 03:49:06 server2 maldet(1326015): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Feb 04 2025 03:49:06 server2 maldet(1326015): {update} hashing install files and checking against server... Feb 04 2025 03:49:06 server2 maldet(1326015): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Feb 04 2025 03:49:06 server2 maldet(1326015): {update} latest version already installed. Feb 04 2025 03:49:06 server2 maldet(1326148): {sigup} performing signature update check... Feb 04 2025 03:49:06 server2 maldet(1326148): {sigup} local signature set is version 202502011136909 Feb 04 2025 03:49:07 server2 maldet(1326148): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Feb 04 2025 03:49:07 server2 maldet(1326148): {sigup} new signature set 20250204487606 available Feb 04 2025 03:49:07 server2 maldet(1326148): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Feb 04 2025 03:49:07 server2 maldet(1326148): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Feb 04 2025 03:49:07 server2 maldet(1326148): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Feb 04 2025 03:49:07 server2 maldet(1326148): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Feb 04 2025 03:49:07 server2 maldet(1326148): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Feb 04 2025 03:49:07 server2 maldet(1326148): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Feb 04 2025 03:49:07 server2 maldet(1326148): {sigup} verified md5sum of maldet-sigpack.tgz Feb 04 2025 03:49:07 server2 maldet(1326148): {sigup} unpacked and installed maldet-sigpack.tgz Feb 04 2025 03:49:07 server2 maldet(1326148): {sigup} verified md5sum of maldet-clean.tgz Feb 04 2025 03:49:07 server2 maldet(1326148): {sigup} unpacked and installed maldet-clean.tgz Feb 04 2025 03:49:07 server2 maldet(1326148): {sigup} signature set update completed Feb 04 2025 03:49:07 server2 maldet(1326148): {sigup} 17638 signatures (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Feb 04 2025 03:49:08 server2 maldet(1326376): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Feb 04 2025 03:49:09 server2 maldet(1326376): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Feb 04 2025 03:49:09 server2 maldet(1326376): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Feb 04 2025 03:49:09 server2 maldet(1326376): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Feb 04 2025 03:49:09 server2 maldet(1326376): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/hessa/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/home/walla3t/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Feb 04 2025 03:49:48 server2 maldet(1326376): {scan} file list completed in 39s, found 9346 files... Feb 04 2025 03:49:48 server2 maldet(1326376): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Feb 04 2025 03:49:48 server2 maldet(1326376): {scan} scan of (9346 files) in progress... Feb 04 2025 03:54:35 server2 maldet(1326376): {scan} scan completed on : files 9346, malware hits 0, cleaned hits 0, time 327s Feb 04 2025 03:54:35 server2 maldet(1326376): {scan} scan report saved, to view run: maldet --report 250204-0349.1326376 Feb 05 2025 03:25:45 server2 maldet(1519891): {update} checking for available updates... Feb 05 2025 03:25:45 server2 maldet(1519891): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Feb 05 2025 03:25:45 server2 maldet(1519891): {update} hashing install files and checking against server... Feb 05 2025 03:25:45 server2 maldet(1519891): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Feb 05 2025 03:25:45 server2 maldet(1519891): {update} latest version already installed. Feb 05 2025 03:25:45 server2 maldet(1520024): {sigup} performing signature update check... Feb 05 2025 03:25:45 server2 maldet(1520024): {sigup} local signature set is version 20250204487606 Feb 05 2025 03:25:46 server2 maldet(1520024): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Feb 05 2025 03:25:46 server2 maldet(1520024): {sigup} latest signature set already installed Feb 05 2025 03:25:46 server2 maldet(1520135): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Feb 05 2025 03:25:49 server2 maldet(1520135): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Feb 05 2025 03:25:49 server2 maldet(1520135): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Feb 05 2025 03:25:49 server2 maldet(1520135): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Feb 05 2025 03:25:49 server2 maldet(1520135): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/hessa/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/home/walla3t/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Feb 05 2025 03:26:39 server2 maldet(1520135): {scan} file list completed in 50s, found 929 files... Feb 05 2025 03:26:39 server2 maldet(1520135): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Feb 05 2025 03:26:39 server2 maldet(1520135): {scan} scan of (929 files) in progress... Feb 05 2025 03:27:47 server2 maldet(1520135): {scan} scan completed on : files 929, malware hits 0, cleaned hits 0, time 121s Feb 05 2025 03:27:47 server2 maldet(1520135): {scan} scan report saved, to view run: maldet --report 250205-0325.1520135 Feb 06 2025 03:52:31 server2 maldet(1729612): {update} checking for available updates... Feb 06 2025 03:52:31 server2 maldet(1729612): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Feb 06 2025 03:52:31 server2 maldet(1729612): {update} hashing install files and checking against server... Feb 06 2025 03:52:31 server2 maldet(1729612): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Feb 06 2025 03:52:31 server2 maldet(1729612): {update} latest version already installed. Feb 06 2025 03:52:32 server2 maldet(1729745): {sigup} performing signature update check... Feb 06 2025 03:52:32 server2 maldet(1729745): {sigup} local signature set is version 20250204487606 Feb 06 2025 03:52:32 server2 maldet(1729745): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Feb 06 2025 03:52:32 server2 maldet(1729745): {sigup} latest signature set already installed Feb 06 2025 03:52:32 server2 maldet(1729856): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Feb 06 2025 03:52:34 server2 maldet(1729856): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Feb 06 2025 03:52:34 server2 maldet(1729856): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Feb 06 2025 03:52:34 server2 maldet(1729856): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Feb 06 2025 03:52:34 server2 maldet(1729856): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/hessa/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/home/walla3t/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Feb 06 2025 03:53:14 server2 maldet(1729856): {scan} file list completed in 40s, found 622 files... Feb 06 2025 03:53:14 server2 maldet(1729856): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Feb 06 2025 03:53:14 server2 maldet(1729856): {scan} scan of (622 files) in progress... Feb 06 2025 03:53:55 server2 maldet(1729856): {scan} scan completed on : files 622, malware hits 0, cleaned hits 0, time 83s Feb 06 2025 03:53:55 server2 maldet(1729856): {scan} scan report saved, to view run: maldet --report 250206-0352.1729856 Feb 07 2025 03:39:28 server2 maldet(1921284): {update} checking for available updates... Feb 07 2025 03:39:28 server2 maldet(1921284): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Feb 07 2025 03:39:28 server2 maldet(1921284): {update} hashing install files and checking against server... Feb 07 2025 03:39:28 server2 maldet(1921284): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Feb 07 2025 03:39:28 server2 maldet(1921284): {update} latest version already installed. Feb 07 2025 03:39:28 server2 maldet(1921417): {sigup} performing signature update check... Feb 07 2025 03:39:28 server2 maldet(1921417): {sigup} local signature set is version 20250204487606 Feb 07 2025 03:39:28 server2 maldet(1921417): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Feb 07 2025 03:39:28 server2 maldet(1921417): {sigup} new signature set 202502071181419 available Feb 07 2025 03:39:28 server2 maldet(1921417): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Feb 07 2025 03:39:29 server2 maldet(1921417): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Feb 07 2025 03:39:29 server2 maldet(1921417): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Feb 07 2025 03:39:29 server2 maldet(1921417): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Feb 07 2025 03:39:29 server2 maldet(1921417): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Feb 07 2025 03:39:29 server2 maldet(1921417): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Feb 07 2025 03:39:29 server2 maldet(1921417): {sigup} verified md5sum of maldet-sigpack.tgz Feb 07 2025 03:39:29 server2 maldet(1921417): {sigup} unpacked and installed maldet-sigpack.tgz Feb 07 2025 03:39:30 server2 maldet(1921417): {sigup} verified md5sum of maldet-clean.tgz Feb 07 2025 03:39:30 server2 maldet(1921417): {sigup} unpacked and installed maldet-clean.tgz Feb 07 2025 03:39:30 server2 maldet(1921417): {sigup} signature set update completed Feb 07 2025 03:39:30 server2 maldet(1921417): {sigup} 17638 signatures (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Feb 07 2025 03:39:30 server2 maldet(1921647): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Feb 07 2025 03:39:32 server2 maldet(1921647): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Feb 07 2025 03:39:32 server2 maldet(1921647): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Feb 07 2025 03:39:32 server2 maldet(1921647): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Feb 07 2025 03:39:32 server2 maldet(1921647): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/hessa/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/home/walla3t/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Feb 07 2025 03:40:21 server2 maldet(1921647): {scan} file list completed in 49s, found 761 files... Feb 07 2025 03:40:21 server2 maldet(1921647): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Feb 07 2025 03:40:21 server2 maldet(1921647): {scan} scan of (761 files) in progress... Feb 07 2025 03:41:32 server2 maldet(1921647): {scan} scan completed on : files 761, malware hits 0, cleaned hits 0, time 122s Feb 07 2025 03:41:32 server2 maldet(1921647): {scan} scan report saved, to view run: maldet --report 250207-0339.1921647 Feb 08 2025 03:45:16 server2 maldet(2126322): {update} checking for available updates... Feb 08 2025 03:45:16 server2 maldet(2126322): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Feb 08 2025 03:45:16 server2 maldet(2126322): {update} hashing install files and checking against server... Feb 08 2025 03:45:16 server2 maldet(2126322): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Feb 08 2025 03:45:16 server2 maldet(2126322): {update} latest version already installed. Feb 08 2025 03:45:16 server2 maldet(2126456): {sigup} performing signature update check... Feb 08 2025 03:45:16 server2 maldet(2126456): {sigup} local signature set is version 202502071181419 Feb 08 2025 03:45:16 server2 maldet(2126456): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Feb 08 2025 03:45:17 server2 maldet(2126456): {sigup} latest signature set already installed Feb 08 2025 03:45:17 server2 maldet(2126569): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Feb 08 2025 03:45:19 server2 maldet(2126569): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Feb 08 2025 03:45:19 server2 maldet(2126569): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Feb 08 2025 03:45:19 server2 maldet(2126569): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Feb 08 2025 03:45:19 server2 maldet(2126569): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/hessa/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/home/walla3t/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Feb 08 2025 03:45:57 server2 maldet(2126569): {scan} file list completed in 38s, found 1313 files... Feb 08 2025 03:45:57 server2 maldet(2126569): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Feb 08 2025 03:45:57 server2 maldet(2126569): {scan} scan of (1313 files) in progress... Feb 08 2025 03:47:11 server2 maldet(2126569): {scan} scan completed on : files 1313, malware hits 0, cleaned hits 0, time 114s Feb 08 2025 03:47:11 server2 maldet(2126569): {scan} scan report saved, to view run: maldet --report 250208-0345.2126569 Feb 09 2025 03:52:47 server2 maldet(2364014): {update} checking for available updates... Feb 09 2025 03:52:47 server2 maldet(2364014): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Feb 09 2025 03:52:47 server2 maldet(2364014): {update} hashing install files and checking against server... Feb 09 2025 03:52:47 server2 maldet(2364014): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Feb 09 2025 03:52:47 server2 maldet(2364014): {update} latest version already installed. Feb 09 2025 03:52:47 server2 maldet(2364147): {sigup} performing signature update check... Feb 09 2025 03:52:47 server2 maldet(2364147): {sigup} local signature set is version 202502071181419 Feb 09 2025 03:52:47 server2 maldet(2364147): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Feb 09 2025 03:52:47 server2 maldet(2364147): {sigup} latest signature set already installed Feb 09 2025 03:52:48 server2 maldet(2364259): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Feb 09 2025 03:52:52 server2 maldet(2364259): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Feb 09 2025 03:52:52 server2 maldet(2364259): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Feb 09 2025 03:52:52 server2 maldet(2364259): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Feb 09 2025 03:52:52 server2 maldet(2364259): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/hessa/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/home/walla3t/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Feb 09 2025 03:53:37 server2 maldet(2364259): {scan} file list completed in 45s, found 469 files... Feb 09 2025 03:53:37 server2 maldet(2364259): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Feb 09 2025 03:53:37 server2 maldet(2364259): {scan} scan of (469 files) in progress... Feb 09 2025 03:54:05 server2 maldet(2364259): {scan} scan completed on : files 469, malware hits 0, cleaned hits 0, time 77s Feb 09 2025 03:54:05 server2 maldet(2364259): {scan} scan report saved, to view run: maldet --report 250209-0352.2364259 Feb 10 2025 03:50:14 server2 maldet(2561037): {update} checking for available updates... Feb 10 2025 03:50:17 server2 maldet(2561037): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Feb 10 2025 03:50:18 server2 maldet(2561037): {update} hashing install files and checking against server... Feb 10 2025 03:50:22 server2 maldet(2561037): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Feb 10 2025 03:50:22 server2 maldet(2561037): {update} latest version already installed. Feb 10 2025 03:50:30 server2 maldet(2561266): {sigup} performing signature update check... Feb 10 2025 03:50:31 server2 maldet(2561266): {sigup} local signature set is version 202502071181419 Feb 10 2025 03:50:32 server2 maldet(2561266): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Feb 10 2025 03:50:32 server2 maldet(2561266): {sigup} new signature set 202502101887208 available Feb 10 2025 03:50:32 server2 maldet(2561266): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Feb 10 2025 03:50:32 server2 maldet(2561266): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Feb 10 2025 03:50:33 server2 maldet(2561266): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Feb 10 2025 03:50:33 server2 maldet(2561266): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Feb 10 2025 03:50:34 server2 maldet(2561266): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Feb 10 2025 03:50:35 server2 maldet(2561266): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Feb 10 2025 03:50:36 server2 maldet(2561266): {sigup} verified md5sum of maldet-sigpack.tgz Feb 10 2025 03:50:36 server2 maldet(2561266): {sigup} unpacked and installed maldet-sigpack.tgz Feb 10 2025 03:50:38 server2 maldet(2561266): {sigup} verified md5sum of maldet-clean.tgz Feb 10 2025 03:50:39 server2 maldet(2561266): {sigup} unpacked and installed maldet-clean.tgz Feb 10 2025 03:50:40 server2 maldet(2561266): {sigup} signature set update completed Feb 10 2025 03:50:41 server2 maldet(2561266): {sigup} 17638 signatures (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Feb 10 2025 03:50:46 server2 maldet(2561603): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Feb 10 2025 03:50:55 server2 maldet(2561603): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Feb 10 2025 03:50:56 server2 maldet(2561603): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Feb 10 2025 03:50:56 server2 maldet(2561603): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Feb 10 2025 03:50:56 server2 maldet(2561603): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/hessa/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/home/walla3t/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Feb 10 2025 04:17:00 server2 maldet(2561603): {scan} file list completed in 1561s, found 1091 files... Feb 10 2025 04:17:00 server2 maldet(2561603): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Feb 10 2025 04:17:01 server2 maldet(2561603): {scan} scan of (1091 files) in progress... Feb 10 2025 04:21:32 server2 maldet(2561603): {scan} scan completed on : files 1091, malware hits 0, cleaned hits 0, time 1842s Feb 10 2025 04:21:33 server2 maldet(2561603): {scan} scan report saved, to view run: maldet --report 250210-0350.2561603 Feb 11 2025 03:47:33 server2 maldet(2772598): {update} checking for available updates... Feb 11 2025 03:47:34 server2 maldet(2772598): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Feb 11 2025 03:47:35 server2 maldet(2772598): {update} hashing install files and checking against server... Feb 11 2025 03:47:37 server2 maldet(2772598): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Feb 11 2025 03:47:37 server2 maldet(2772598): {update} latest version already installed. Feb 11 2025 03:47:41 server2 maldet(2772736): {sigup} performing signature update check... Feb 11 2025 03:47:42 server2 maldet(2772736): {sigup} local signature set is version 202502101887208 Feb 11 2025 03:47:43 server2 maldet(2772736): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Feb 11 2025 03:47:44 server2 maldet(2772736): {sigup} latest signature set already installed Feb 11 2025 03:47:45 server2 maldet(2772847): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Feb 11 2025 03:47:57 server2 maldet(2772847): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Feb 11 2025 03:47:57 server2 maldet(2772847): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Feb 11 2025 03:47:57 server2 maldet(2772847): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Feb 11 2025 03:47:58 server2 maldet(2772847): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/hessa/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/home/walla3t/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Feb 11 2025 04:00:45 server2 maldet(2772847): {scan} file list completed in 767s, found 4220 files... Feb 11 2025 04:00:45 server2 maldet(2772847): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Feb 11 2025 04:00:45 server2 maldet(2772847): {scan} scan of (4220 files) in progress... Feb 11 2025 04:03:23 server2 maldet(2772847): {scan} scan completed on : files 4220, malware hits 0, cleaned hits 0, time 938s Feb 11 2025 04:03:23 server2 maldet(2772847): {scan} scan report saved, to view run: maldet --report 250211-0347.2772847 Feb 12 2025 03:23:42 server2 maldet(3033432): {update} checking for available updates... Feb 12 2025 03:23:43 server2 maldet(3033432): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Feb 12 2025 03:23:43 server2 maldet(3033432): {update} hashing install files and checking against server... Feb 12 2025 03:23:43 server2 maldet(3033432): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Feb 12 2025 03:23:43 server2 maldet(3033432): {update} latest version already installed. Feb 12 2025 03:23:43 server2 maldet(3033567): {sigup} performing signature update check... Feb 12 2025 03:23:43 server2 maldet(3033567): {sigup} local signature set is version 202502101887208 Feb 12 2025 03:23:43 server2 maldet(3033567): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Feb 12 2025 03:23:43 server2 maldet(3033567): {sigup} latest signature set already installed Feb 12 2025 03:23:44 server2 maldet(3033678): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Feb 12 2025 03:23:49 server2 maldet(3033678): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Feb 12 2025 03:23:49 server2 maldet(3033678): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Feb 12 2025 03:23:49 server2 maldet(3033678): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Feb 12 2025 03:23:49 server2 maldet(3033678): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/hessa/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/home/walla3t/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Feb 12 2025 03:24:46 server2 maldet(3033678): {scan} file list completed in 57s, found 2812 files... Feb 12 2025 03:24:46 server2 maldet(3033678): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Feb 12 2025 03:24:46 server2 maldet(3033678): {scan} scan of (2812 files) in progress... Feb 12 2025 03:28:09 server2 maldet(3033678): {scan} scan completed on : files 2812, malware hits 0, cleaned hits 0, time 265s Feb 12 2025 03:28:09 server2 maldet(3033678): {scan} scan report saved, to view run: maldet --report 250212-0323.3033678 Feb 13 2025 03:34:42 server2 maldet(3293539): {update} checking for available updates... Feb 13 2025 03:34:42 server2 maldet(3293539): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Feb 13 2025 03:34:42 server2 maldet(3293539): {update} hashing install files and checking against server... Feb 13 2025 03:34:42 server2 maldet(3293539): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Feb 13 2025 03:34:42 server2 maldet(3293539): {update} latest version already installed. Feb 13 2025 03:34:42 server2 maldet(3293672): {sigup} performing signature update check... Feb 13 2025 03:34:42 server2 maldet(3293672): {sigup} local signature set is version 202502101887208 Feb 13 2025 03:34:42 server2 maldet(3293672): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Feb 13 2025 03:34:43 server2 maldet(3293672): {sigup} new signature set 20250213535116 available Feb 13 2025 03:34:43 server2 maldet(3293672): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Feb 13 2025 03:34:43 server2 maldet(3293672): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Feb 13 2025 03:34:43 server2 maldet(3293672): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Feb 13 2025 03:34:43 server2 maldet(3293672): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Feb 13 2025 03:34:43 server2 maldet(3293672): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Feb 13 2025 03:34:43 server2 maldet(3293672): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Feb 13 2025 03:34:43 server2 maldet(3293672): {sigup} verified md5sum of maldet-sigpack.tgz Feb 13 2025 03:34:43 server2 maldet(3293672): {sigup} unpacked and installed maldet-sigpack.tgz Feb 13 2025 03:34:43 server2 maldet(3293672): {sigup} verified md5sum of maldet-clean.tgz Feb 13 2025 03:34:43 server2 maldet(3293672): {sigup} unpacked and installed maldet-clean.tgz Feb 13 2025 03:34:43 server2 maldet(3293672): {sigup} signature set update completed Feb 13 2025 03:34:43 server2 maldet(3293672): {sigup} 17638 signatures (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Feb 13 2025 03:34:44 server2 maldet(3293900): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Feb 13 2025 03:34:45 server2 maldet(3293900): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Feb 13 2025 03:34:45 server2 maldet(3293900): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Feb 13 2025 03:34:45 server2 maldet(3293900): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Feb 13 2025 03:34:45 server2 maldet(3293900): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/hessa/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/home/walla3t/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Feb 13 2025 03:35:38 server2 maldet(3293900): {scan} file list completed in 53s, found 1616 files... Feb 13 2025 03:35:38 server2 maldet(3293900): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Feb 13 2025 03:35:38 server2 maldet(3293900): {scan} scan of (1616 files) in progress... Feb 13 2025 03:37:14 server2 maldet(3293900): {scan} scan completed on : files 1616, malware hits 0, cleaned hits 0, time 150s Feb 13 2025 03:37:14 server2 maldet(3293900): {scan} scan report saved, to view run: maldet --report 250213-0334.3293900 Feb 14 2025 03:33:09 server2 maldet(3514747): {update} checking for available updates... Feb 14 2025 03:33:09 server2 maldet(3514747): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Feb 14 2025 03:33:10 server2 maldet(3514747): {update} hashing install files and checking against server... Feb 14 2025 03:33:11 server2 maldet(3514747): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Feb 14 2025 03:33:11 server2 maldet(3514747): {update} latest version already installed. Feb 14 2025 03:33:11 server2 maldet(3514880): {sigup} performing signature update check... Feb 14 2025 03:33:11 server2 maldet(3514880): {sigup} local signature set is version 20250213535116 Feb 14 2025 03:33:11 server2 maldet(3514880): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Feb 14 2025 03:33:11 server2 maldet(3514880): {sigup} latest signature set already installed Feb 14 2025 03:33:12 server2 maldet(3514991): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Feb 14 2025 03:33:14 server2 maldet(3514991): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Feb 14 2025 03:33:14 server2 maldet(3514991): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Feb 14 2025 03:33:14 server2 maldet(3514991): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Feb 14 2025 03:33:14 server2 maldet(3514991): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/hessa/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/home/walla3t/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Feb 14 2025 03:33:54 server2 maldet(3514991): {scan} file list completed in 40s, found 2531 files... Feb 14 2025 03:33:54 server2 maldet(3514991): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Feb 14 2025 03:33:54 server2 maldet(3514991): {scan} scan of (2531 files) in progress... Feb 14 2025 03:36:24 server2 maldet(3514991): {scan} clamscan returned an error, check /usr/local/maldetect/logs/clamscan_log for details! Feb 14 2025 03:36:24 server2 maldet(3514991): {scan} scan completed on : files 2531, malware hits 0, cleaned hits 0, time 192s Feb 14 2025 03:36:24 server2 maldet(3514991): {scan} scan report saved, to view run: maldet --report 250214-0333.3514991 Feb 15 2025 03:47:31 server2 maldet(3723883): {update} checking for available updates... Feb 15 2025 03:47:31 server2 maldet(3723883): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Feb 15 2025 03:47:31 server2 maldet(3723883): {update} hashing install files and checking against server... Feb 15 2025 03:47:32 server2 maldet(3723883): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Feb 15 2025 03:47:32 server2 maldet(3723883): {update} latest version already installed. Feb 15 2025 03:47:32 server2 maldet(3724017): {sigup} performing signature update check... Feb 15 2025 03:47:32 server2 maldet(3724017): {sigup} local signature set is version 20250213535116 Feb 15 2025 03:47:32 server2 maldet(3724017): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Feb 15 2025 03:47:32 server2 maldet(3724017): {sigup} latest signature set already installed Feb 15 2025 03:47:33 server2 maldet(3724128): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Feb 15 2025 03:47:34 server2 maldet(3724128): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Feb 15 2025 03:47:34 server2 maldet(3724128): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Feb 15 2025 03:47:34 server2 maldet(3724128): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Feb 15 2025 03:47:34 server2 maldet(3724128): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/hessa/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/home/walla3t/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Feb 15 2025 03:48:17 server2 maldet(3724128): {scan} file list completed in 43s, found 558 files... Feb 15 2025 03:48:17 server2 maldet(3724128): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Feb 15 2025 03:48:17 server2 maldet(3724128): {scan} scan of (558 files) in progress... Feb 15 2025 03:48:44 server2 maldet(3724128): {scan} scan completed on : files 558, malware hits 0, cleaned hits 0, time 71s Feb 15 2025 03:48:44 server2 maldet(3724128): {scan} scan report saved, to view run: maldet --report 250215-0347.3724128 Feb 16 2025 03:33:41 server2 maldet(3939630): {update} checking for available updates... Feb 16 2025 03:33:41 server2 maldet(3939630): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Feb 16 2025 03:33:41 server2 maldet(3939630): {update} hashing install files and checking against server... Feb 16 2025 03:33:41 server2 maldet(3939630): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Feb 16 2025 03:33:41 server2 maldet(3939630): {update} latest version already installed. Feb 16 2025 03:33:41 server2 maldet(3939765): {sigup} performing signature update check... Feb 16 2025 03:33:41 server2 maldet(3939765): {sigup} local signature set is version 20250213535116 Feb 16 2025 03:33:41 server2 maldet(3939765): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Feb 16 2025 03:33:42 server2 maldet(3939765): {sigup} new signature set 202502161228229 available Feb 16 2025 03:33:42 server2 maldet(3939765): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Feb 16 2025 03:33:42 server2 maldet(3939765): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Feb 16 2025 03:33:42 server2 maldet(3939765): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Feb 16 2025 03:33:42 server2 maldet(3939765): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Feb 16 2025 03:33:42 server2 maldet(3939765): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Feb 16 2025 03:33:42 server2 maldet(3939765): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Feb 16 2025 03:33:42 server2 maldet(3939765): {sigup} verified md5sum of maldet-sigpack.tgz Feb 16 2025 03:33:42 server2 maldet(3939765): {sigup} unpacked and installed maldet-sigpack.tgz Feb 16 2025 03:33:42 server2 maldet(3939765): {sigup} verified md5sum of maldet-clean.tgz Feb 16 2025 03:33:42 server2 maldet(3939765): {sigup} unpacked and installed maldet-clean.tgz Feb 16 2025 03:33:42 server2 maldet(3939765): {sigup} signature set update completed Feb 16 2025 03:33:43 server2 maldet(3939765): {sigup} 17638 signatures (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Feb 16 2025 03:33:43 server2 maldet(3939993): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Feb 16 2025 03:33:46 server2 maldet(3939993): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Feb 16 2025 03:33:46 server2 maldet(3939993): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Feb 16 2025 03:33:46 server2 maldet(3939993): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Feb 16 2025 03:33:46 server2 maldet(3939993): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/hessa/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/home/walla3t/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Feb 16 2025 03:34:32 server2 maldet(3939993): {scan} file list completed in 46s, found 737 files... Feb 16 2025 03:34:32 server2 maldet(3939993): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Feb 16 2025 03:34:32 server2 maldet(3939993): {scan} scan of (737 files) in progress... Feb 16 2025 03:35:19 server2 maldet(3939993): {scan} scan completed on : files 737, malware hits 0, cleaned hits 0, time 96s Feb 16 2025 03:35:19 server2 maldet(3939993): {scan} scan report saved, to view run: maldet --report 250216-0333.3939993 Feb 17 2025 03:27:41 server2 maldet(4148659): {update} checking for available updates... Feb 17 2025 03:27:41 server2 maldet(4148659): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Feb 17 2025 03:27:41 server2 maldet(4148659): {update} hashing install files and checking against server... Feb 17 2025 03:27:41 server2 maldet(4148659): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Feb 17 2025 03:27:41 server2 maldet(4148659): {update} latest version already installed. Feb 17 2025 03:27:42 server2 maldet(4148792): {sigup} performing signature update check... Feb 17 2025 03:27:42 server2 maldet(4148792): {sigup} local signature set is version 202502161228229 Feb 17 2025 03:27:42 server2 maldet(4148792): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Feb 17 2025 03:27:42 server2 maldet(4148792): {sigup} latest signature set already installed Feb 17 2025 03:27:42 server2 maldet(4148903): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Feb 17 2025 03:27:44 server2 maldet(4148903): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Feb 17 2025 03:27:44 server2 maldet(4148903): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Feb 17 2025 03:27:44 server2 maldet(4148903): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Feb 17 2025 03:27:44 server2 maldet(4148903): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/hessa/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/home/walla3t/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Feb 17 2025 03:28:31 server2 maldet(4148903): {scan} file list completed in 47s, found 2432 files... Feb 17 2025 03:28:31 server2 maldet(4148903): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Feb 17 2025 03:28:31 server2 maldet(4148903): {scan} scan of (2432 files) in progress... Feb 17 2025 03:30:32 server2 maldet(4148903): {scan} scan completed on : files 2432, malware hits 0, cleaned hits 0, time 170s Feb 17 2025 03:30:32 server2 maldet(4148903): {scan} scan report saved, to view run: maldet --report 250217-0327.4148903 Feb 18 2025 03:16:17 server2 maldet(188259): {update} checking for available updates... Feb 18 2025 03:16:17 server2 maldet(188259): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Feb 18 2025 03:16:17 server2 maldet(188259): {update} hashing install files and checking against server... Feb 18 2025 03:16:17 server2 maldet(188259): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Feb 18 2025 03:16:17 server2 maldet(188259): {update} latest version already installed. Feb 18 2025 03:16:18 server2 maldet(188392): {sigup} performing signature update check... Feb 18 2025 03:16:18 server2 maldet(188392): {sigup} local signature set is version 202502161228229 Feb 18 2025 03:16:18 server2 maldet(188392): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Feb 18 2025 03:16:18 server2 maldet(188392): {sigup} latest signature set already installed Feb 18 2025 03:16:18 server2 maldet(188503): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Feb 18 2025 03:16:20 server2 maldet(188503): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Feb 18 2025 03:16:20 server2 maldet(188503): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Feb 18 2025 03:16:20 server2 maldet(188503): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Feb 18 2025 03:16:20 server2 maldet(188503): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/hessa/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/home/walla3t/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Feb 18 2025 03:17:06 server2 maldet(188503): {scan} file list completed in 46s, found 440 files... Feb 18 2025 03:17:06 server2 maldet(188503): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Feb 18 2025 03:17:06 server2 maldet(188503): {scan} scan of (440 files) in progress... Feb 18 2025 03:17:32 server2 maldet(188503): {scan} scan completed on : files 440, malware hits 0, cleaned hits 0, time 74s Feb 18 2025 03:17:32 server2 maldet(188503): {scan} scan report saved, to view run: maldet --report 250218-0316.188503 Feb 19 2025 03:14:57 server2 maldet(405347): {update} checking for available updates... Feb 19 2025 03:14:57 server2 maldet(405347): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Feb 19 2025 03:14:57 server2 maldet(405347): {update} hashing install files and checking against server... Feb 19 2025 03:14:57 server2 maldet(405347): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Feb 19 2025 03:14:57 server2 maldet(405347): {update} latest version already installed. Feb 19 2025 03:14:58 server2 maldet(405482): {sigup} performing signature update check... Feb 19 2025 03:14:58 server2 maldet(405482): {sigup} local signature set is version 202502161228229 Feb 19 2025 03:14:58 server2 maldet(405482): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Feb 19 2025 03:14:58 server2 maldet(405482): {sigup} new signature set 20250219501964 available Feb 19 2025 03:14:58 server2 maldet(405482): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Feb 19 2025 03:14:58 server2 maldet(405482): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Feb 19 2025 03:14:58 server2 maldet(405482): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Feb 19 2025 03:14:58 server2 maldet(405482): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Feb 19 2025 03:14:58 server2 maldet(405482): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Feb 19 2025 03:14:58 server2 maldet(405482): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Feb 19 2025 03:14:58 server2 maldet(405482): {sigup} verified md5sum of maldet-sigpack.tgz Feb 19 2025 03:14:59 server2 maldet(405482): {sigup} unpacked and installed maldet-sigpack.tgz Feb 19 2025 03:14:59 server2 maldet(405482): {sigup} verified md5sum of maldet-clean.tgz Feb 19 2025 03:14:59 server2 maldet(405482): {sigup} unpacked and installed maldet-clean.tgz Feb 19 2025 03:14:59 server2 maldet(405482): {sigup} signature set update completed Feb 19 2025 03:14:59 server2 maldet(405482): {sigup} 17638 signatures (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Feb 19 2025 03:14:59 server2 maldet(405712): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Feb 19 2025 03:15:04 server2 maldet(405712): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Feb 19 2025 03:15:04 server2 maldet(405712): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Feb 19 2025 03:15:04 server2 maldet(405712): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Feb 19 2025 03:15:04 server2 maldet(405712): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/hessa/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/home/walla3t/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Feb 19 2025 03:15:59 server2 maldet(405712): {scan} file list completed in 55s, found 2228 files... Feb 19 2025 03:15:59 server2 maldet(405712): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Feb 19 2025 03:15:59 server2 maldet(405712): {scan} scan of (2228 files) in progress... Feb 19 2025 03:18:38 server2 maldet(405712): {scan} scan completed on : files 2228, malware hits 0, cleaned hits 0, time 219s Feb 19 2025 03:18:38 server2 maldet(405712): {scan} scan report saved, to view run: maldet --report 250219-0314.405712 Feb 20 2025 03:36:20 server2 maldet(686601): {update} checking for available updates... Feb 20 2025 03:36:20 server2 maldet(686601): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Feb 20 2025 03:36:20 server2 maldet(686601): {update} hashing install files and checking against server... Feb 20 2025 03:36:20 server2 maldet(686601): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Feb 20 2025 03:36:20 server2 maldet(686601): {update} latest version already installed. Feb 20 2025 03:36:21 server2 maldet(686737): {sigup} performing signature update check... Feb 20 2025 03:36:21 server2 maldet(686737): {sigup} local signature set is version 20250219501964 Feb 20 2025 03:36:21 server2 maldet(686737): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Feb 20 2025 03:36:21 server2 maldet(686737): {sigup} latest signature set already installed Feb 20 2025 03:36:21 server2 maldet(686848): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Feb 20 2025 03:36:25 server2 maldet(686848): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Feb 20 2025 03:36:25 server2 maldet(686848): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Feb 20 2025 03:36:25 server2 maldet(686848): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Feb 20 2025 03:36:25 server2 maldet(686848): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/hessa/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/home/walla3t/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Feb 20 2025 03:37:10 server2 maldet(686848): {scan} file list completed in 45s, found 863 files... Feb 20 2025 03:37:11 server2 maldet(686848): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Feb 20 2025 03:37:11 server2 maldet(686848): {scan} scan of (863 files) in progress... Feb 20 2025 03:38:11 server2 maldet(686848): {scan} scan completed on : files 863, malware hits 0, cleaned hits 0, time 110s Feb 20 2025 03:38:11 server2 maldet(686848): {scan} scan report saved, to view run: maldet --report 250220-0336.686848 Feb 21 2025 03:16:12 server2 maldet(911765): {update} checking for available updates... Feb 21 2025 03:16:12 server2 maldet(911765): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Feb 21 2025 03:16:12 server2 maldet(911765): {update} hashing install files and checking against server... Feb 21 2025 03:16:13 server2 maldet(911765): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Feb 21 2025 03:16:13 server2 maldet(911765): {update} latest version already installed. Feb 21 2025 03:16:13 server2 maldet(911898): {sigup} performing signature update check... Feb 21 2025 03:16:13 server2 maldet(911898): {sigup} local signature set is version 20250219501964 Feb 21 2025 03:16:13 server2 maldet(911898): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Feb 21 2025 03:16:13 server2 maldet(911898): {sigup} latest signature set already installed Feb 21 2025 03:16:13 server2 maldet(912009): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Feb 21 2025 03:16:15 server2 maldet(912009): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Feb 21 2025 03:16:15 server2 maldet(912009): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Feb 21 2025 03:16:15 server2 maldet(912009): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Feb 21 2025 03:16:15 server2 maldet(912009): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/hessa/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/home/walla3t/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Feb 21 2025 03:16:56 server2 maldet(912009): {scan} file list completed in 40s, found 936 files... Feb 21 2025 03:16:56 server2 maldet(912009): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Feb 21 2025 03:16:56 server2 maldet(912009): {scan} scan of (936 files) in progress... Feb 21 2025 03:17:51 server2 maldet(912009): {scan} scan completed on : files 936, malware hits 0, cleaned hits 0, time 98s Feb 21 2025 03:17:51 server2 maldet(912009): {scan} scan report saved, to view run: maldet --report 250221-0316.912009 Feb 22 2025 03:38:28 server2 maldet(1140295): {update} checking for available updates... Feb 22 2025 03:38:28 server2 maldet(1140295): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Feb 22 2025 03:38:28 server2 maldet(1140295): {update} hashing install files and checking against server... Feb 22 2025 03:38:28 server2 maldet(1140295): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Feb 22 2025 03:38:28 server2 maldet(1140295): {update} latest version already installed. Feb 22 2025 03:38:28 server2 maldet(1140428): {sigup} performing signature update check... Feb 22 2025 03:38:28 server2 maldet(1140428): {sigup} local signature set is version 20250219501964 Feb 22 2025 03:38:28 server2 maldet(1140428): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Feb 22 2025 03:38:28 server2 maldet(1140428): {sigup} new signature set 202502221194053 available Feb 22 2025 03:38:28 server2 maldet(1140428): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Feb 22 2025 03:38:28 server2 maldet(1140428): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Feb 22 2025 03:38:29 server2 maldet(1140428): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Feb 22 2025 03:38:29 server2 maldet(1140428): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Feb 22 2025 03:38:29 server2 maldet(1140428): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Feb 22 2025 03:38:29 server2 maldet(1140428): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Feb 22 2025 03:38:29 server2 maldet(1140428): {sigup} verified md5sum of maldet-sigpack.tgz Feb 22 2025 03:38:29 server2 maldet(1140428): {sigup} unpacked and installed maldet-sigpack.tgz Feb 22 2025 03:38:29 server2 maldet(1140428): {sigup} verified md5sum of maldet-clean.tgz Feb 22 2025 03:38:29 server2 maldet(1140428): {sigup} unpacked and installed maldet-clean.tgz Feb 22 2025 03:38:29 server2 maldet(1140428): {sigup} signature set update completed Feb 22 2025 03:38:29 server2 maldet(1140428): {sigup} 17638 signatures (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Feb 22 2025 03:38:29 server2 maldet(1140659): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Feb 22 2025 03:38:30 server2 maldet(1140659): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Feb 22 2025 03:38:30 server2 maldet(1140659): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Feb 22 2025 03:38:30 server2 maldet(1140659): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Feb 22 2025 03:38:30 server2 maldet(1140659): {scan} executed eval /bin/nice -n 19 /bin/ionice -c2 -n 6 /bin/find "/home/corals/public_html/" "/home/currencyreturn/public_html/" "/home/ecombricks/public_html/" "/home/hessa/public_html/" "/home/jamaicasupertour/public_html/" "/home/laraship/public_html/" "/home/medad/public_html/" "/home/shadybiz/public_html/" "/home/walla3t/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Feb 22 2025 03:39:11 server2 maldet(1140659): {scan} file list completed in 41s, found 632 files... Feb 22 2025 03:39:11 server2 maldet(1140659): {scan} found clamav binary at /usr/local/cpanel/3rdparty/bin/clamdscan, using clamav scanner engine... Feb 22 2025 03:39:11 server2 maldet(1140659): {scan} scan of (632 files) in progress... Feb 22 2025 03:40:00 server2 maldet(1140659): {scan} scan completed on : files 632, malware hits 0, cleaned hits 0, time 91s Feb 22 2025 03:40:00 server2 maldet(1140659): {scan} scan report saved, to view run: maldet --report 250222-0338.1140659 Feb 23 2025 03:44:40 server2 maldet(1361375): {update} checking for available updates... Feb 23 2025 03:44:40 server2 maldet(1361375): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Feb 23 2025 03:44:40 server2 maldet(1361375): {update} new version 1.6.6 found, updating... Feb 23 2025 03:44:40 server2 maldet(1361375): {update} downloaded https://cdn.rfxn.com/downloads/maldetect-current.tar.gz Feb 23 2025 03:44:40 server2 maldet(1361375): {update} downloaded https://cdn.rfxn.com/downloads/maldetect-current.tar.gz.md5 Feb 23 2025 03:44:40 server2 maldet(1361375): {update} verified md5sum of maldetect-current.tar.gz