Current Path : /usr/local/maldetect.last/logs/ |
Current File : //usr/local/maldetect.last/logs/event_log |
Apr 11 2023 06:57:34 webserver maldet(29796): {sigup} performing signature update check... Apr 11 2023 06:57:34 webserver maldet(29796): {sigup} local signature set is version 20230331490193 Apr 11 2023 06:57:34 webserver maldet(29796): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Apr 11 2023 06:57:34 webserver maldet(29796): {sigup} new signature set 202304103956725 available Apr 11 2023 06:57:34 webserver maldet(29796): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Apr 11 2023 06:57:34 webserver maldet(29796): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Apr 11 2023 06:57:34 webserver maldet(29796): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Apr 11 2023 06:57:34 webserver maldet(29796): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Apr 11 2023 06:57:34 webserver maldet(29796): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Apr 11 2023 06:57:34 webserver maldet(29796): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Apr 11 2023 06:57:34 webserver maldet(29796): {sigup} verified md5sum of maldet-sigpack.tgz Apr 11 2023 06:57:34 webserver maldet(29796): {sigup} unpacked and installed maldet-sigpack.tgz Apr 11 2023 06:57:34 webserver maldet(29796): {sigup} verified md5sum of maldet-clean.tgz Apr 11 2023 06:57:34 webserver maldet(29796): {sigup} unpacked and installed maldet-clean.tgz Apr 11 2023 06:57:34 webserver maldet(29796): {sigup} signature set update completed Apr 11 2023 06:57:34 webserver maldet(29796): {sigup} 17638 signatures (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Apr 11 2023 06:57:34 webserver maldet(29368): {update} completed update v1.6.5 cd06ce => v1.6.5 7510e7, running signature updates... Apr 11 2023 06:57:35 webserver maldet(30051): {sigup} performing signature update check... Apr 11 2023 06:57:35 webserver maldet(30051): {sigup} local signature set is version 202304103956725 Apr 11 2023 06:57:35 webserver maldet(30051): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Apr 11 2023 06:57:35 webserver maldet(30051): {sigup} latest signature set already installed Apr 11 2023 06:57:35 webserver maldet(29368): {update} update and config import completed Apr 11 2023 06:57:35 webserver maldet(30169): {sigup} performing signature update check... Apr 11 2023 06:57:35 webserver maldet(30169): {sigup} local signature set is version 202304103956725 Apr 11 2023 06:57:35 webserver maldet(30169): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Apr 11 2023 06:57:35 webserver maldet(30169): {sigup} latest signature set already installed Apr 11 2023 06:57:35 webserver maldet(30284): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Apr 11 2023 06:57:35 webserver maldet(30284): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Apr 11 2023 06:57:35 webserver maldet(30284): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Apr 11 2023 06:57:35 webserver maldet(30284): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Apr 11 2023 06:57:35 webserver maldet(30284): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Apr 11 2023 07:00:11 webserver maldet(30284): {scan} file list completed in 156s, found 568 files... Apr 11 2023 07:00:11 webserver maldet(30284): {scan} found clamav binary at /usr/bin/clamdscan, using clamav scanner engine... Apr 11 2023 07:00:11 webserver maldet(30284): {scan} scan of (568 files) in progress... Apr 11 2023 07:00:17 webserver maldet(30284): {scan} scan completed on : files 568, malware hits 0, cleaned hits 0, time 162s Apr 11 2023 07:00:17 webserver maldet(30284): {scan} scan report saved, to view run: maldet --report 230411-0657.30284 Apr 12 2023 06:57:24 webserver maldet(28307): {update} checking for available updates... Apr 12 2023 06:57:24 webserver maldet(28307): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Apr 12 2023 06:57:24 webserver maldet(28307): {update} hashing install files and checking against server... Apr 12 2023 06:57:24 webserver maldet(28307): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Apr 12 2023 06:57:24 webserver maldet(28307): {update} latest version already installed. Apr 12 2023 06:57:24 webserver maldet(28443): {sigup} performing signature update check... Apr 12 2023 06:57:24 webserver maldet(28443): {sigup} local signature set is version 202304103956725 Apr 12 2023 06:57:24 webserver maldet(28443): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Apr 12 2023 06:57:24 webserver maldet(28443): {sigup} latest signature set already installed Apr 12 2023 06:57:24 webserver maldet(28558): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Apr 12 2023 06:57:24 webserver maldet(28558): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Apr 12 2023 06:57:24 webserver maldet(28558): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Apr 12 2023 06:57:24 webserver maldet(28558): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Apr 12 2023 06:57:24 webserver maldet(28558): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Apr 12 2023 06:59:48 webserver maldet(28558): {scan} file list completed in 144s, found 325 files... Apr 12 2023 06:59:48 webserver maldet(28558): {scan} found clamav binary at /usr/bin/clamdscan, using clamav scanner engine... Apr 12 2023 06:59:48 webserver maldet(28558): {scan} scan of (325 files) in progress... Apr 12 2023 06:59:54 webserver maldet(28558): {scan} scan completed on : files 325, malware hits 0, cleaned hits 0, time 150s Apr 12 2023 06:59:54 webserver maldet(28558): {scan} scan report saved, to view run: maldet --report 230412-0657.28558 Apr 13 2023 06:56:46 webserver maldet(31030): {update} checking for available updates... Apr 13 2023 06:56:46 webserver maldet(31030): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Apr 13 2023 06:56:46 webserver maldet(31030): {update} hashing install files and checking against server... Apr 13 2023 06:56:46 webserver maldet(31030): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Apr 13 2023 06:56:46 webserver maldet(31030): {update} latest version already installed. Apr 13 2023 06:56:46 webserver maldet(31166): {sigup} performing signature update check... Apr 13 2023 06:56:46 webserver maldet(31166): {sigup} local signature set is version 202304103956725 Apr 13 2023 06:56:46 webserver maldet(31166): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Apr 13 2023 06:56:46 webserver maldet(31166): {sigup} latest signature set already installed Apr 13 2023 06:56:46 webserver maldet(31281): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Apr 13 2023 06:56:46 webserver maldet(31281): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Apr 13 2023 06:56:46 webserver maldet(31281): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Apr 13 2023 06:56:46 webserver maldet(31281): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Apr 13 2023 06:56:46 webserver maldet(31281): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Apr 13 2023 06:59:03 webserver maldet(31281): {scan} file list completed in 137s, found 757 files... Apr 13 2023 06:59:03 webserver maldet(31281): {scan} found clamav binary at /usr/bin/clamdscan, using clamav scanner engine... Apr 13 2023 06:59:03 webserver maldet(31281): {scan} scan of (757 files) in progress... Apr 13 2023 06:59:13 webserver maldet(31281): {scan} clamscan returned an error, check /usr/local/maldetect/logs/clamscan_log for details! Apr 13 2023 06:59:13 webserver maldet(31281): {scan} scan completed on : files 757, malware hits 0, cleaned hits 0, time 147s Apr 13 2023 06:59:13 webserver maldet(31281): {scan} scan report saved, to view run: maldet --report 230413-0656.31281 Apr 14 2023 06:59:07 webserver maldet(26161): {update} checking for available updates... Apr 14 2023 06:59:07 webserver maldet(26161): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Apr 14 2023 06:59:07 webserver maldet(26161): {update} hashing install files and checking against server... Apr 14 2023 06:59:07 webserver maldet(26161): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Apr 14 2023 06:59:07 webserver maldet(26161): {update} latest version already installed. Apr 14 2023 06:59:08 webserver maldet(26297): {sigup} performing signature update check... Apr 14 2023 06:59:08 webserver maldet(26297): {sigup} local signature set is version 202304103956725 Apr 14 2023 06:59:08 webserver maldet(26297): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Apr 14 2023 06:59:08 webserver maldet(26297): {sigup} new signature set 202304131144055 available Apr 14 2023 06:59:08 webserver maldet(26297): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Apr 14 2023 06:59:08 webserver maldet(26297): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Apr 14 2023 06:59:08 webserver maldet(26297): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Apr 14 2023 06:59:08 webserver maldet(26297): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Apr 14 2023 06:59:08 webserver maldet(26297): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Apr 14 2023 06:59:08 webserver maldet(26297): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Apr 14 2023 06:59:08 webserver maldet(26297): {sigup} verified md5sum of maldet-sigpack.tgz Apr 14 2023 06:59:08 webserver maldet(26297): {sigup} unpacked and installed maldet-sigpack.tgz Apr 14 2023 06:59:08 webserver maldet(26297): {sigup} verified md5sum of maldet-clean.tgz Apr 14 2023 06:59:08 webserver maldet(26297): {sigup} unpacked and installed maldet-clean.tgz Apr 14 2023 06:59:08 webserver maldet(26297): {sigup} signature set update completed Apr 14 2023 06:59:08 webserver maldet(26297): {sigup} 17637 signatures (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Apr 14 2023 06:59:08 webserver maldet(26529): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Apr 14 2023 06:59:08 webserver maldet(26529): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Apr 14 2023 06:59:08 webserver maldet(26529): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Apr 14 2023 06:59:08 webserver maldet(26529): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Apr 14 2023 06:59:08 webserver maldet(26529): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Apr 14 2023 07:02:06 webserver maldet(26529): {scan} file list completed in 178s, found 1771 files... Apr 14 2023 07:02:06 webserver maldet(26529): {scan} found clamav binary at /usr/bin/clamdscan, using clamav scanner engine... Apr 14 2023 07:02:06 webserver maldet(26529): {scan} scan of (1771 files) in progress... Apr 14 2023 07:02:32 webserver maldet(26529): {scan} scan completed on : files 1771, malware hits 0, cleaned hits 0, time 204s Apr 14 2023 07:02:32 webserver maldet(26529): {scan} scan report saved, to view run: maldet --report 230414-0659.26529 Apr 15 2023 06:58:41 webserver maldet(20796): {update} checking for available updates... Apr 15 2023 06:58:41 webserver maldet(20796): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Apr 15 2023 06:58:42 webserver maldet(20796): {update} hashing install files and checking against server... Apr 15 2023 06:58:42 webserver maldet(20796): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Apr 15 2023 06:58:42 webserver maldet(20796): {update} latest version already installed. Apr 15 2023 06:58:42 webserver maldet(20932): {sigup} performing signature update check... Apr 15 2023 06:58:42 webserver maldet(20932): {sigup} local signature set is version 202304131144055 Apr 15 2023 06:58:42 webserver maldet(20932): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Apr 15 2023 06:58:42 webserver maldet(20932): {sigup} latest signature set already installed Apr 15 2023 06:58:42 webserver maldet(21047): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Apr 15 2023 06:58:42 webserver maldet(21047): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Apr 15 2023 06:58:42 webserver maldet(21047): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Apr 15 2023 06:58:42 webserver maldet(21047): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Apr 15 2023 06:58:42 webserver maldet(21047): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Apr 15 2023 07:00:50 webserver maldet(21047): {scan} file list completed in 128s, found 1378 files... Apr 15 2023 07:00:50 webserver maldet(21047): {scan} found clamav binary at /usr/bin/clamdscan, using clamav scanner engine... Apr 15 2023 07:00:50 webserver maldet(21047): {scan} scan of (1378 files) in progress... Apr 15 2023 07:01:08 webserver maldet(21047): {scan} clamscan returned an error, check /usr/local/maldetect/logs/clamscan_log for details! Apr 15 2023 07:01:08 webserver maldet(21047): {scan} scan completed on : files 1378, malware hits 0, cleaned hits 0, time 146s Apr 15 2023 07:01:08 webserver maldet(21047): {scan} scan report saved, to view run: maldet --report 230415-0658.21047 Apr 16 2023 06:57:46 webserver maldet(14480): {update} checking for available updates... Apr 16 2023 06:57:46 webserver maldet(14480): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Apr 16 2023 06:57:46 webserver maldet(14480): {update} hashing install files and checking against server... Apr 16 2023 06:57:46 webserver maldet(14480): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Apr 16 2023 06:57:46 webserver maldet(14480): {update} latest version already installed. Apr 16 2023 06:57:46 webserver maldet(14618): {sigup} performing signature update check... Apr 16 2023 06:57:46 webserver maldet(14618): {sigup} local signature set is version 202304131144055 Apr 16 2023 06:57:46 webserver maldet(14618): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Apr 16 2023 06:57:46 webserver maldet(14618): {sigup} new signature set 20230416491380 available Apr 16 2023 06:57:46 webserver maldet(14618): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Apr 16 2023 06:57:46 webserver maldet(14618): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Apr 16 2023 06:57:46 webserver maldet(14618): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Apr 16 2023 06:57:46 webserver maldet(14618): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Apr 16 2023 06:57:46 webserver maldet(14618): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Apr 16 2023 06:57:46 webserver maldet(14618): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Apr 16 2023 06:57:46 webserver maldet(14618): {sigup} unable to verify md5sum of maldet-sigpack.tgz, please try again or contact proj@rfxn.com Apr 16 2023 06:57:46 webserver maldet(14618): {sigup} verified md5sum of maldet-clean.tgz Apr 16 2023 06:57:46 webserver maldet(14618): {sigup} unpacked and installed maldet-clean.tgz Apr 16 2023 06:57:46 webserver maldet(14805): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Apr 16 2023 06:57:46 webserver maldet(14805): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Apr 16 2023 06:57:46 webserver maldet(14805): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Apr 16 2023 06:57:46 webserver maldet(14805): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Apr 16 2023 06:57:46 webserver maldet(14805): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Apr 16 2023 06:57:52 webserver maldet(14805): {scan} file list completed in 6s, found 1578 files... Apr 16 2023 06:57:52 webserver maldet(14805): {scan} found clamav binary at /usr/bin/clamdscan, using clamav scanner engine... Apr 16 2023 06:57:52 webserver maldet(14805): {scan} scan of (1578 files) in progress... Apr 16 2023 06:58:07 webserver maldet(14805): {scan} clamscan returned an error, check /usr/local/maldetect/logs/clamscan_log for details! Apr 16 2023 06:58:07 webserver maldet(14805): {scan} scan completed on : files 1578, malware hits 0, cleaned hits 0, time 21s Apr 16 2023 06:58:07 webserver maldet(14805): {scan} scan report saved, to view run: maldet --report 230416-0657.14805 Apr 17 2023 07:11:01 webserver maldet(8675): {update} checking for available updates... Apr 17 2023 07:11:01 webserver maldet(8675): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Apr 17 2023 07:11:01 webserver maldet(8675): {update} hashing install files and checking against server... Apr 17 2023 07:11:01 webserver maldet(8675): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Apr 17 2023 07:11:01 webserver maldet(8675): {update} latest version already installed. Apr 17 2023 07:11:01 webserver maldet(8812): {sigup} performing signature update check... Apr 17 2023 07:11:01 webserver maldet(8812): {sigup} local signature set is version 202304131144055 Apr 17 2023 07:11:01 webserver maldet(8812): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Apr 17 2023 07:11:01 webserver maldet(8812): {sigup} new signature set 20230416491380 available Apr 17 2023 07:11:01 webserver maldet(8812): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Apr 17 2023 07:11:01 webserver maldet(8812): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Apr 17 2023 07:11:01 webserver maldet(8812): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Apr 17 2023 07:11:01 webserver maldet(8812): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Apr 17 2023 07:11:01 webserver maldet(8812): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Apr 17 2023 07:11:01 webserver maldet(8812): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Apr 17 2023 07:11:01 webserver maldet(8812): {sigup} verified md5sum of maldet-sigpack.tgz Apr 17 2023 07:11:02 webserver maldet(8812): {sigup} unpacked and installed maldet-sigpack.tgz Apr 17 2023 07:11:02 webserver maldet(8812): {sigup} verified md5sum of maldet-clean.tgz Apr 17 2023 07:11:02 webserver maldet(8812): {sigup} unpacked and installed maldet-clean.tgz Apr 17 2023 07:11:02 webserver maldet(8812): {sigup} signature set update completed Apr 17 2023 07:11:02 webserver maldet(8812): {sigup} 17637 signatures (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Apr 17 2023 07:11:02 webserver maldet(9047): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Apr 17 2023 07:11:04 webserver maldet(9047): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Apr 17 2023 07:11:04 webserver maldet(9047): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Apr 17 2023 07:11:04 webserver maldet(9047): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Apr 17 2023 07:11:04 webserver maldet(9047): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Apr 17 2023 07:14:50 webserver maldet(9047): {scan} file list completed in 226s, found 562 files... Apr 17 2023 07:14:50 webserver maldet(9047): {scan} found clamav binary at /usr/bin/clamdscan, using clamav scanner engine... Apr 17 2023 07:14:50 webserver maldet(9047): {scan} scan of (562 files) in progress... Apr 17 2023 07:14:57 webserver maldet(9047): {scan} scan completed on : files 562, malware hits 0, cleaned hits 0, time 235s Apr 17 2023 07:14:57 webserver maldet(9047): {scan} scan report saved, to view run: maldet --report 230417-0711.9047 Apr 18 2023 06:56:10 webserver maldet(2970): {update} checking for available updates... Apr 18 2023 06:56:10 webserver maldet(2970): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Apr 18 2023 06:56:10 webserver maldet(2970): {update} hashing install files and checking against server... Apr 18 2023 06:56:10 webserver maldet(2970): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Apr 18 2023 06:56:10 webserver maldet(2970): {update} latest version already installed. Apr 18 2023 06:56:10 webserver maldet(3106): {sigup} performing signature update check... Apr 18 2023 06:56:10 webserver maldet(3106): {sigup} local signature set is version 20230416491380 Apr 18 2023 06:56:10 webserver maldet(3106): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Apr 18 2023 06:56:10 webserver maldet(3106): {sigup} latest signature set already installed Apr 18 2023 06:56:10 webserver maldet(3220): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Apr 18 2023 06:56:10 webserver maldet(3220): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Apr 18 2023 06:56:10 webserver maldet(3220): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Apr 18 2023 06:56:11 webserver maldet(3220): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Apr 18 2023 06:56:11 webserver maldet(3220): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Apr 18 2023 06:58:29 webserver maldet(3220): {scan} file list completed in 138s, found 717 files... Apr 18 2023 06:58:29 webserver maldet(3220): {scan} found clamav binary at /usr/bin/clamdscan, using clamav scanner engine... Apr 18 2023 06:58:30 webserver maldet(3220): {scan} scan of (717 files) in progress... Apr 18 2023 06:58:39 webserver maldet(3220): {scan} scan completed on : files 717, malware hits 0, cleaned hits 0, time 149s Apr 18 2023 06:58:39 webserver maldet(3220): {scan} scan report saved, to view run: maldet --report 230418-0656.3220 Apr 19 2023 06:58:17 webserver maldet(30460): {update} checking for available updates... Apr 19 2023 06:58:17 webserver maldet(30460): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Apr 19 2023 06:58:17 webserver maldet(30460): {update} hashing install files and checking against server... Apr 19 2023 06:58:17 webserver maldet(30460): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Apr 19 2023 06:58:17 webserver maldet(30460): {update} latest version already installed. Apr 19 2023 06:58:17 webserver maldet(30596): {sigup} performing signature update check... Apr 19 2023 06:58:17 webserver maldet(30596): {sigup} local signature set is version 20230416491380 Apr 19 2023 06:58:17 webserver maldet(30596): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Apr 19 2023 06:58:18 webserver maldet(30596): {sigup} latest signature set already installed Apr 19 2023 06:58:18 webserver maldet(30710): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Apr 19 2023 06:58:18 webserver maldet(30710): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Apr 19 2023 06:58:18 webserver maldet(30710): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Apr 19 2023 06:58:18 webserver maldet(30710): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Apr 19 2023 06:58:18 webserver maldet(30710): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Apr 19 2023 07:00:32 webserver maldet(30710): {scan} file list completed in 134s, found 1426 files... Apr 19 2023 07:00:32 webserver maldet(30710): {scan} found clamav binary at /usr/bin/clamdscan, using clamav scanner engine... Apr 19 2023 07:00:32 webserver maldet(30710): {scan} scan of (1426 files) in progress... Apr 19 2023 07:00:50 webserver maldet(30710): {scan} scan completed on : files 1426, malware hits 0, cleaned hits 0, time 152s Apr 19 2023 07:00:50 webserver maldet(30710): {scan} scan report saved, to view run: maldet --report 230419-0658.30710 Apr 20 2023 06:58:12 webserver maldet(23417): {update} checking for available updates... Apr 20 2023 06:58:12 webserver maldet(23417): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Apr 20 2023 06:58:12 webserver maldet(23417): {update} hashing install files and checking against server... Apr 20 2023 06:58:12 webserver maldet(23417): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Apr 20 2023 06:58:12 webserver maldet(23417): {update} latest version already installed. Apr 20 2023 06:58:12 webserver maldet(23553): {sigup} performing signature update check... Apr 20 2023 06:58:12 webserver maldet(23553): {sigup} local signature set is version 20230416491380 Apr 20 2023 06:58:12 webserver maldet(23553): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Apr 20 2023 06:58:12 webserver maldet(23553): {sigup} new signature set 202304191182804 available Apr 20 2023 06:58:12 webserver maldet(23553): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Apr 20 2023 06:58:12 webserver maldet(23553): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Apr 20 2023 06:58:12 webserver maldet(23553): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Apr 20 2023 06:58:12 webserver maldet(23553): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Apr 20 2023 06:58:12 webserver maldet(23553): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Apr 20 2023 06:58:12 webserver maldet(23553): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Apr 20 2023 06:58:12 webserver maldet(23553): {sigup} verified md5sum of maldet-sigpack.tgz Apr 20 2023 06:58:12 webserver maldet(23553): {sigup} unpacked and installed maldet-sigpack.tgz Apr 20 2023 06:58:12 webserver maldet(23553): {sigup} verified md5sum of maldet-clean.tgz Apr 20 2023 06:58:12 webserver maldet(23553): {sigup} unpacked and installed maldet-clean.tgz Apr 20 2023 06:58:12 webserver maldet(23553): {sigup} signature set update completed Apr 20 2023 06:58:12 webserver maldet(23553): {sigup} 17637 signatures (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Apr 20 2023 06:58:12 webserver maldet(23784): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Apr 20 2023 06:58:13 webserver maldet(23784): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Apr 20 2023 06:58:13 webserver maldet(23784): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Apr 20 2023 06:58:13 webserver maldet(23784): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Apr 20 2023 06:58:13 webserver maldet(23784): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Apr 20 2023 07:00:36 webserver maldet(23784): {scan} file list completed in 143s, found 334 files... Apr 20 2023 07:00:36 webserver maldet(23784): {scan} found clamav binary at /usr/bin/clamdscan, using clamav scanner engine... Apr 20 2023 07:00:36 webserver maldet(23784): {scan} scan of (334 files) in progress... Apr 20 2023 07:00:41 webserver maldet(23784): {scan} scan completed on : files 334, malware hits 0, cleaned hits 0, time 149s Apr 20 2023 07:00:41 webserver maldet(23784): {scan} scan report saved, to view run: maldet --report 230420-0658.23784 Apr 21 2023 06:57:24 webserver maldet(18236): {update} checking for available updates... Apr 21 2023 06:57:24 webserver maldet(18236): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Apr 21 2023 06:57:25 webserver maldet(18236): {update} hashing install files and checking against server... Apr 21 2023 06:57:25 webserver maldet(18236): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Apr 21 2023 06:57:25 webserver maldet(18236): {update} latest version already installed. Apr 21 2023 06:57:25 webserver maldet(18372): {sigup} performing signature update check... Apr 21 2023 06:57:25 webserver maldet(18372): {sigup} local signature set is version 202304191182804 Apr 21 2023 06:57:25 webserver maldet(18372): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Apr 21 2023 06:57:25 webserver maldet(18372): {sigup} latest signature set already installed Apr 21 2023 06:57:25 webserver maldet(18487): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Apr 21 2023 06:57:25 webserver maldet(18487): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Apr 21 2023 06:57:25 webserver maldet(18487): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Apr 21 2023 06:57:25 webserver maldet(18487): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Apr 21 2023 06:57:25 webserver maldet(18487): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Apr 21 2023 06:59:53 webserver maldet(18487): {scan} file list completed in 148s, found 385 files... Apr 21 2023 06:59:53 webserver maldet(18487): {scan} found clamav binary at /usr/bin/clamdscan, using clamav scanner engine... Apr 21 2023 06:59:53 webserver maldet(18487): {scan} scan of (385 files) in progress... Apr 21 2023 06:59:58 webserver maldet(18487): {scan} scan completed on : files 385, malware hits 0, cleaned hits 0, time 153s Apr 21 2023 06:59:58 webserver maldet(18487): {scan} scan report saved, to view run: maldet --report 230421-0657.18487 Apr 22 2023 06:58:46 webserver maldet(13419): {update} checking for available updates... Apr 22 2023 06:58:46 webserver maldet(13419): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Apr 22 2023 06:58:46 webserver maldet(13419): {update} hashing install files and checking against server... Apr 22 2023 06:58:46 webserver maldet(13419): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Apr 22 2023 06:58:46 webserver maldet(13419): {update} latest version already installed. Apr 22 2023 06:58:46 webserver maldet(13555): {sigup} performing signature update check... Apr 22 2023 06:58:46 webserver maldet(13555): {sigup} local signature set is version 202304191182804 Apr 22 2023 06:58:46 webserver maldet(13555): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Apr 22 2023 06:58:46 webserver maldet(13555): {sigup} new signature set 20230422539465 available Apr 22 2023 06:58:46 webserver maldet(13555): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Apr 22 2023 06:58:46 webserver maldet(13555): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Apr 22 2023 06:58:46 webserver maldet(13555): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Apr 22 2023 06:58:46 webserver maldet(13555): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Apr 22 2023 06:58:46 webserver maldet(13555): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Apr 22 2023 06:58:46 webserver maldet(13555): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Apr 22 2023 06:58:46 webserver maldet(13555): {sigup} verified md5sum of maldet-sigpack.tgz Apr 22 2023 06:58:47 webserver maldet(13555): {sigup} unpacked and installed maldet-sigpack.tgz Apr 22 2023 06:58:47 webserver maldet(13555): {sigup} verified md5sum of maldet-clean.tgz Apr 22 2023 06:58:47 webserver maldet(13555): {sigup} unpacked and installed maldet-clean.tgz Apr 22 2023 06:58:47 webserver maldet(13555): {sigup} signature set update completed Apr 22 2023 06:58:47 webserver maldet(13555): {sigup} 17637 signatures (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Apr 22 2023 06:58:47 webserver maldet(13787): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Apr 22 2023 06:58:47 webserver maldet(13787): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Apr 22 2023 06:58:47 webserver maldet(13787): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Apr 22 2023 06:58:47 webserver maldet(13787): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Apr 22 2023 06:58:47 webserver maldet(13787): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Apr 22 2023 07:01:26 webserver maldet(13787): {scan} file list completed in 159s, found 491 files... Apr 22 2023 07:01:26 webserver maldet(13787): {scan} found clamav binary at /usr/bin/clamdscan, using clamav scanner engine... Apr 22 2023 07:01:26 webserver maldet(13787): {scan} scan of (491 files) in progress... Apr 22 2023 07:01:32 webserver maldet(13787): {scan} clamscan returned an error, check /usr/local/maldetect/logs/clamscan_log for details! Apr 22 2023 07:01:32 webserver maldet(13787): {scan} scan completed on : files 491, malware hits 0, cleaned hits 0, time 165s Apr 22 2023 07:01:32 webserver maldet(13787): {scan} scan report saved, to view run: maldet --report 230422-0658.13787 Apr 23 2023 06:56:17 webserver maldet(6122): {update} checking for available updates... Apr 23 2023 06:56:17 webserver maldet(6122): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Apr 23 2023 06:56:17 webserver maldet(6122): {update} hashing install files and checking against server... Apr 23 2023 06:56:17 webserver maldet(6122): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Apr 23 2023 06:56:17 webserver maldet(6122): {update} latest version already installed. Apr 23 2023 06:56:17 webserver maldet(6259): {sigup} performing signature update check... Apr 23 2023 06:56:17 webserver maldet(6259): {sigup} local signature set is version 20230422539465 Apr 23 2023 06:56:17 webserver maldet(6259): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Apr 23 2023 06:56:18 webserver maldet(6259): {sigup} latest signature set already installed Apr 23 2023 06:56:18 webserver maldet(6373): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Apr 23 2023 06:56:18 webserver maldet(6373): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Apr 23 2023 06:56:18 webserver maldet(6373): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Apr 23 2023 06:56:18 webserver maldet(6373): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Apr 23 2023 06:56:18 webserver maldet(6373): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Apr 23 2023 06:58:27 webserver maldet(6373): {scan} file list completed in 128s, found 346 files... Apr 23 2023 06:58:27 webserver maldet(6373): {scan} found clamav binary at /usr/bin/clamdscan, using clamav scanner engine... Apr 23 2023 06:58:27 webserver maldet(6373): {scan} scan of (346 files) in progress... Apr 23 2023 06:58:31 webserver maldet(6373): {scan} scan completed on : files 346, malware hits 0, cleaned hits 0, time 133s Apr 23 2023 06:58:31 webserver maldet(6373): {scan} scan report saved, to view run: maldet --report 230423-0656.6373 Apr 24 2023 06:55:51 webserver maldet(885): {update} checking for available updates... Apr 24 2023 06:55:51 webserver maldet(885): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Apr 24 2023 06:55:51 webserver maldet(885): {update} hashing install files and checking against server... Apr 24 2023 06:55:51 webserver maldet(885): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Apr 24 2023 06:55:51 webserver maldet(885): {update} latest version already installed. Apr 24 2023 06:55:51 webserver maldet(1021): {sigup} performing signature update check... Apr 24 2023 06:55:51 webserver maldet(1021): {sigup} local signature set is version 20230422539465 Apr 24 2023 06:55:51 webserver maldet(1021): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Apr 24 2023 06:55:51 webserver maldet(1021): {sigup} latest signature set already installed Apr 24 2023 06:55:51 webserver maldet(1136): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Apr 24 2023 06:55:52 webserver maldet(1136): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Apr 24 2023 06:55:52 webserver maldet(1136): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Apr 24 2023 06:55:52 webserver maldet(1136): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Apr 24 2023 06:55:52 webserver maldet(1136): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Apr 24 2023 06:58:09 webserver maldet(1136): {scan} file list completed in 137s, found 445 files... Apr 24 2023 06:58:09 webserver maldet(1136): {scan} found clamav binary at /usr/bin/clamdscan, using clamav scanner engine... Apr 24 2023 06:58:09 webserver maldet(1136): {scan} scan of (445 files) in progress... Apr 24 2023 06:58:17 webserver maldet(1136): {scan} scan completed on : files 445, malware hits 0, cleaned hits 0, time 146s Apr 24 2023 06:58:17 webserver maldet(1136): {scan} scan report saved, to view run: maldet --report 230424-0655.1136 Apr 25 2023 06:59:54 webserver maldet(23813): {update} checking for available updates... Apr 25 2023 06:59:54 webserver maldet(23813): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Apr 25 2023 06:59:54 webserver maldet(23813): {update} hashing install files and checking against server... Apr 25 2023 06:59:54 webserver maldet(23813): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Apr 25 2023 06:59:54 webserver maldet(23813): {update} latest version already installed. Apr 25 2023 06:59:54 webserver maldet(23949): {sigup} performing signature update check... Apr 25 2023 06:59:54 webserver maldet(23949): {sigup} local signature set is version 20230422539465 Apr 25 2023 06:59:54 webserver maldet(23949): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Apr 25 2023 06:59:54 webserver maldet(23949): {sigup} new signature set 202304251237452 available Apr 25 2023 06:59:54 webserver maldet(23949): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Apr 25 2023 06:59:54 webserver maldet(23949): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Apr 25 2023 06:59:54 webserver maldet(23949): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Apr 25 2023 06:59:54 webserver maldet(23949): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Apr 25 2023 06:59:54 webserver maldet(23949): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Apr 25 2023 06:59:54 webserver maldet(23949): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Apr 25 2023 06:59:54 webserver maldet(23949): {sigup} unable to verify md5sum of maldet-sigpack.tgz, please try again or contact proj@rfxn.com Apr 25 2023 06:59:54 webserver maldet(23949): {sigup} verified md5sum of maldet-clean.tgz Apr 25 2023 06:59:54 webserver maldet(23949): {sigup} unpacked and installed maldet-clean.tgz Apr 25 2023 06:59:54 webserver maldet(24136): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Apr 25 2023 06:59:54 webserver maldet(24136): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Apr 25 2023 06:59:54 webserver maldet(24136): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Apr 25 2023 06:59:54 webserver maldet(24136): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Apr 25 2023 06:59:54 webserver maldet(24136): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Apr 25 2023 07:02:55 webserver maldet(24136): {scan} file list completed in 181s, found 339 files... Apr 25 2023 07:02:55 webserver maldet(24136): {scan} found clamav binary at /usr/bin/clamdscan, using clamav scanner engine... Apr 25 2023 07:02:55 webserver maldet(24136): {scan} scan of (339 files) in progress... Apr 25 2023 07:03:00 webserver maldet(24136): {scan} scan completed on : files 339, malware hits 0, cleaned hits 0, time 186s Apr 25 2023 07:03:00 webserver maldet(24136): {scan} scan report saved, to view run: maldet --report 230425-0659.24136 Apr 26 2023 06:56:27 webserver maldet(15867): {update} checking for available updates... Apr 26 2023 06:56:27 webserver maldet(15867): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Apr 26 2023 06:56:27 webserver maldet(15867): {update} hashing install files and checking against server... Apr 26 2023 06:56:27 webserver maldet(15867): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Apr 26 2023 06:56:27 webserver maldet(15867): {update} latest version already installed. Apr 26 2023 06:56:27 webserver maldet(16004): {sigup} performing signature update check... Apr 26 2023 06:56:27 webserver maldet(16004): {sigup} local signature set is version 20230422539465 Apr 26 2023 06:56:27 webserver maldet(16004): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Apr 26 2023 06:56:27 webserver maldet(16004): {sigup} new signature set 202304251237452 available Apr 26 2023 06:56:27 webserver maldet(16004): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Apr 26 2023 06:56:27 webserver maldet(16004): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Apr 26 2023 06:56:27 webserver maldet(16004): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Apr 26 2023 06:56:27 webserver maldet(16004): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Apr 26 2023 06:56:27 webserver maldet(16004): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Apr 26 2023 06:56:27 webserver maldet(16004): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Apr 26 2023 06:56:27 webserver maldet(16004): {sigup} verified md5sum of maldet-sigpack.tgz Apr 26 2023 06:56:28 webserver maldet(16004): {sigup} unpacked and installed maldet-sigpack.tgz Apr 26 2023 06:56:28 webserver maldet(16004): {sigup} verified md5sum of maldet-clean.tgz Apr 26 2023 06:56:28 webserver maldet(16004): {sigup} unpacked and installed maldet-clean.tgz Apr 26 2023 06:56:28 webserver maldet(16004): {sigup} signature set update completed Apr 26 2023 06:56:28 webserver maldet(16004): {sigup} 17637 signatures (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Apr 26 2023 06:56:28 webserver maldet(16236): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Apr 26 2023 06:56:28 webserver maldet(16236): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Apr 26 2023 06:56:28 webserver maldet(16236): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Apr 26 2023 06:56:28 webserver maldet(16236): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Apr 26 2023 06:56:28 webserver maldet(16236): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Apr 26 2023 06:59:05 webserver maldet(16236): {scan} file list completed in 157s, found 223 files... Apr 26 2023 06:59:05 webserver maldet(16236): {scan} found clamav binary at /usr/bin/clamdscan, using clamav scanner engine... Apr 26 2023 06:59:05 webserver maldet(16236): {scan} scan of (223 files) in progress... Apr 26 2023 06:59:09 webserver maldet(16236): {scan} scan completed on : files 223, malware hits 0, cleaned hits 0, time 161s Apr 26 2023 06:59:09 webserver maldet(16236): {scan} scan report saved, to view run: maldet --report 230426-0656.16236 Apr 27 2023 06:57:43 webserver maldet(7926): {update} checking for available updates... Apr 27 2023 06:57:43 webserver maldet(7926): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Apr 27 2023 06:57:43 webserver maldet(7926): {update} hashing install files and checking against server... Apr 27 2023 06:57:43 webserver maldet(7926): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Apr 27 2023 06:57:43 webserver maldet(7926): {update} latest version already installed. Apr 27 2023 06:57:43 webserver maldet(8062): {sigup} performing signature update check... Apr 27 2023 06:57:43 webserver maldet(8062): {sigup} local signature set is version 202304251237452 Apr 27 2023 06:57:43 webserver maldet(8062): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Apr 27 2023 06:57:43 webserver maldet(8062): {sigup} latest signature set already installed Apr 27 2023 06:57:43 webserver maldet(8177): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Apr 27 2023 06:57:43 webserver maldet(8177): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Apr 27 2023 06:57:43 webserver maldet(8177): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Apr 27 2023 06:57:43 webserver maldet(8177): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Apr 27 2023 06:57:43 webserver maldet(8177): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Apr 27 2023 06:59:54 webserver maldet(8177): {scan} file list completed in 131s, found 372 files... Apr 27 2023 06:59:54 webserver maldet(8177): {scan} found clamav binary at /usr/bin/clamdscan, using clamav scanner engine... Apr 27 2023 06:59:54 webserver maldet(8177): {scan} scan of (372 files) in progress... Apr 27 2023 07:00:02 webserver maldet(8177): {scan} scan completed on : files 372, malware hits 0, cleaned hits 0, time 139s Apr 27 2023 07:00:02 webserver maldet(8177): {scan} scan report saved, to view run: maldet --report 230427-0657.8177 Apr 28 2023 06:56:53 webserver maldet(5459): {update} checking for available updates... Apr 28 2023 06:56:53 webserver maldet(5459): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Apr 28 2023 06:56:53 webserver maldet(5459): {update} hashing install files and checking against server... Apr 28 2023 06:56:53 webserver maldet(5459): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Apr 28 2023 06:56:53 webserver maldet(5459): {update} latest version already installed. Apr 28 2023 06:56:53 webserver maldet(5595): {sigup} performing signature update check... Apr 28 2023 06:56:53 webserver maldet(5595): {sigup} local signature set is version 202304251237452 Apr 28 2023 06:56:53 webserver maldet(5595): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Apr 28 2023 06:56:53 webserver maldet(5595): {sigup} new signature set 202304281928720 available Apr 28 2023 06:56:53 webserver maldet(5595): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Apr 28 2023 06:56:53 webserver maldet(5595): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Apr 28 2023 06:56:53 webserver maldet(5595): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Apr 28 2023 06:56:53 webserver maldet(5595): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Apr 28 2023 06:56:53 webserver maldet(5595): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Apr 28 2023 06:56:53 webserver maldet(5595): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Apr 28 2023 06:56:53 webserver maldet(5595): {sigup} verified md5sum of maldet-sigpack.tgz Apr 28 2023 06:56:54 webserver maldet(5595): {sigup} unpacked and installed maldet-sigpack.tgz Apr 28 2023 06:56:54 webserver maldet(5595): {sigup} verified md5sum of maldet-clean.tgz Apr 28 2023 06:56:54 webserver maldet(5595): {sigup} unpacked and installed maldet-clean.tgz Apr 28 2023 06:56:54 webserver maldet(5595): {sigup} signature set update completed Apr 28 2023 06:56:54 webserver maldet(5595): {sigup} 17637 signatures (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Apr 28 2023 06:56:54 webserver maldet(5827): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Apr 28 2023 06:56:54 webserver maldet(5827): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Apr 28 2023 06:56:54 webserver maldet(5827): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Apr 28 2023 06:56:54 webserver maldet(5827): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Apr 28 2023 06:56:54 webserver maldet(5827): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Apr 28 2023 06:59:47 webserver maldet(5827): {scan} file list completed in 173s, found 373 files... Apr 28 2023 06:59:47 webserver maldet(5827): {scan} found clamav binary at /usr/bin/clamdscan, using clamav scanner engine... Apr 28 2023 06:59:47 webserver maldet(5827): {scan} scan of (373 files) in progress... Apr 28 2023 06:59:53 webserver maldet(5827): {scan} scan completed on : files 373, malware hits 0, cleaned hits 0, time 179s Apr 28 2023 06:59:53 webserver maldet(5827): {scan} scan report saved, to view run: maldet --report 230428-0656.5827 Apr 29 2023 06:56:33 webserver maldet(27753): {update} checking for available updates... Apr 29 2023 06:56:33 webserver maldet(27753): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Apr 29 2023 06:56:33 webserver maldet(27753): {update} hashing install files and checking against server... Apr 29 2023 06:56:33 webserver maldet(27753): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Apr 29 2023 06:56:33 webserver maldet(27753): {update} latest version already installed. Apr 29 2023 06:56:33 webserver maldet(27890): {sigup} performing signature update check... Apr 29 2023 06:56:33 webserver maldet(27890): {sigup} local signature set is version 202304281928720 Apr 29 2023 06:56:33 webserver maldet(27890): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Apr 29 2023 06:56:33 webserver maldet(27890): {sigup} latest signature set already installed Apr 29 2023 06:56:33 webserver maldet(28005): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Apr 29 2023 06:56:34 webserver maldet(28005): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Apr 29 2023 06:56:34 webserver maldet(28005): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Apr 29 2023 06:56:34 webserver maldet(28005): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Apr 29 2023 06:56:34 webserver maldet(28005): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Apr 29 2023 06:58:47 webserver maldet(28005): {scan} file list completed in 133s, found 467 files... Apr 29 2023 06:58:47 webserver maldet(28005): {scan} found clamav binary at /usr/bin/clamdscan, using clamav scanner engine... Apr 29 2023 06:58:47 webserver maldet(28005): {scan} scan of (467 files) in progress... Apr 29 2023 06:58:53 webserver maldet(28005): {scan} scan completed on : files 467, malware hits 0, cleaned hits 0, time 140s Apr 29 2023 06:58:53 webserver maldet(28005): {scan} scan report saved, to view run: maldet --report 230429-0656.28005 Apr 30 2023 06:59:32 webserver maldet(23883): {update} checking for available updates... Apr 30 2023 06:59:32 webserver maldet(23883): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Apr 30 2023 06:59:32 webserver maldet(23883): {update} hashing install files and checking against server... Apr 30 2023 06:59:32 webserver maldet(23883): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Apr 30 2023 06:59:32 webserver maldet(23883): {update} latest version already installed. Apr 30 2023 06:59:32 webserver maldet(24019): {sigup} performing signature update check... Apr 30 2023 06:59:32 webserver maldet(24019): {sigup} local signature set is version 202304281928720 Apr 30 2023 06:59:32 webserver maldet(24019): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Apr 30 2023 06:59:33 webserver maldet(24019): {sigup} latest signature set already installed Apr 30 2023 06:59:33 webserver maldet(24134): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Apr 30 2023 06:59:33 webserver maldet(24134): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Apr 30 2023 06:59:33 webserver maldet(24134): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Apr 30 2023 06:59:33 webserver maldet(24134): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Apr 30 2023 06:59:33 webserver maldet(24134): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Apr 30 2023 07:01:54 webserver maldet(24134): {scan} file list completed in 141s, found 500 files... Apr 30 2023 07:01:54 webserver maldet(24134): {scan} found clamav binary at /usr/bin/clamdscan, using clamav scanner engine... Apr 30 2023 07:01:54 webserver maldet(24134): {scan} scan of (500 files) in progress... Apr 30 2023 07:02:01 webserver maldet(24134): {scan} scan completed on : files 500, malware hits 0, cleaned hits 0, time 148s Apr 30 2023 07:02:01 webserver maldet(24134): {scan} scan report saved, to view run: maldet --report 230430-0659.24134 May 01 2023 06:56:57 webserver maldet(19165): {update} checking for available updates... May 01 2023 06:56:57 webserver maldet(19165): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver May 01 2023 06:56:57 webserver maldet(19165): {update} hashing install files and checking against server... May 01 2023 06:56:57 webserver maldet(19165): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash May 01 2023 06:56:57 webserver maldet(19165): {update} latest version already installed. May 01 2023 06:56:57 webserver maldet(19301): {sigup} performing signature update check... May 01 2023 06:56:57 webserver maldet(19301): {sigup} local signature set is version 202304281928720 May 01 2023 06:56:57 webserver maldet(19301): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver May 01 2023 06:56:57 webserver maldet(19301): {sigup} latest signature set already installed May 01 2023 06:56:57 webserver maldet(19416): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress May 01 2023 06:56:57 webserver maldet(19416): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) May 01 2023 06:56:57 webserver maldet(19416): {scan} building file list for of new/modified files from last 1 days, this might take awhile... May 01 2023 06:56:57 webserver maldet(19416): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 May 01 2023 06:56:57 webserver maldet(19416): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 May 01 2023 06:59:07 webserver maldet(19416): {scan} file list completed in 130s, found 799 files... May 01 2023 06:59:07 webserver maldet(19416): {scan} found clamav binary at /usr/bin/clamdscan, using clamav scanner engine... May 01 2023 06:59:07 webserver maldet(19416): {scan} scan of (799 files) in progress... May 01 2023 06:59:17 webserver maldet(19416): {scan} scan completed on : files 799, malware hits 0, cleaned hits 0, time 140s May 01 2023 06:59:17 webserver maldet(19416): {scan} scan report saved, to view run: maldet --report 230501-0656.19416 May 02 2023 06:57:52 webserver maldet(18965): {update} checking for available updates... May 02 2023 06:57:52 webserver maldet(18965): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver May 02 2023 06:57:52 webserver maldet(18965): {update} hashing install files and checking against server... May 02 2023 06:57:52 webserver maldet(18965): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash May 02 2023 06:57:52 webserver maldet(18965): {update} latest version already installed. May 02 2023 06:57:52 webserver maldet(19101): {sigup} performing signature update check... May 02 2023 06:57:52 webserver maldet(19101): {sigup} local signature set is version 202304281928720 May 02 2023 06:57:52 webserver maldet(19101): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver May 02 2023 06:57:52 webserver maldet(19101): {sigup} latest signature set already installed May 02 2023 06:57:52 webserver maldet(19220): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress May 02 2023 06:57:52 webserver maldet(19220): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) May 02 2023 06:57:52 webserver maldet(19220): {scan} building file list for of new/modified files from last 1 days, this might take awhile... May 02 2023 06:57:52 webserver maldet(19220): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 May 02 2023 06:57:52 webserver maldet(19220): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 May 02 2023 07:00:09 webserver maldet(19220): {scan} file list completed in 137s, found 865 files... May 02 2023 07:00:09 webserver maldet(19220): {scan} found clamav binary at /usr/bin/clamdscan, using clamav scanner engine... May 02 2023 07:00:09 webserver maldet(19220): {scan} scan of (865 files) in progress... May 02 2023 07:00:21 webserver maldet(19220): {scan} scan completed on : files 865, malware hits 0, cleaned hits 0, time 149s May 02 2023 07:00:21 webserver maldet(19220): {scan} scan report saved, to view run: maldet --report 230502-0657.19220 May 03 2023 06:58:03 webserver maldet(14725): {update} checking for available updates... May 03 2023 06:58:03 webserver maldet(14725): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver May 03 2023 06:58:03 webserver maldet(14725): {update} hashing install files and checking against server... May 03 2023 06:58:03 webserver maldet(14725): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash May 03 2023 06:58:03 webserver maldet(14725): {update} latest version already installed. May 03 2023 06:58:03 webserver maldet(14862): {sigup} performing signature update check... May 03 2023 06:58:03 webserver maldet(14862): {sigup} local signature set is version 202304281928720 May 03 2023 06:58:03 webserver maldet(14862): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver May 03 2023 06:58:03 webserver maldet(14862): {sigup} latest signature set already installed May 03 2023 06:58:03 webserver maldet(14977): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress May 03 2023 06:58:04 webserver maldet(14977): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) May 03 2023 06:58:04 webserver maldet(14977): {scan} building file list for of new/modified files from last 1 days, this might take awhile... May 03 2023 06:58:04 webserver maldet(14977): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 May 03 2023 06:58:04 webserver maldet(14977): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 May 03 2023 06:58:56 webserver maldet(14977): {scan} file list completed in 52s, found 301 files... May 03 2023 06:58:56 webserver maldet(14977): {scan} found clamav binary at /usr/bin/clamdscan, using clamav scanner engine... May 03 2023 06:58:56 webserver maldet(14977): {scan} scan of (301 files) in progress... May 03 2023 06:59:00 webserver maldet(14977): {scan} scan completed on : files 301, malware hits 0, cleaned hits 0, time 57s May 03 2023 06:59:00 webserver maldet(14977): {scan} scan report saved, to view run: maldet --report 230503-0658.14977 May 04 2023 06:58:54 webserver maldet(16857): {update} checking for available updates... May 04 2023 06:58:54 webserver maldet(16857): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver May 04 2023 06:58:54 webserver maldet(16857): {update} hashing install files and checking against server... May 04 2023 06:58:54 webserver maldet(16857): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash May 04 2023 06:58:54 webserver maldet(16857): {update} latest version already installed. May 04 2023 06:58:54 webserver maldet(16993): {sigup} performing signature update check... May 04 2023 06:58:54 webserver maldet(16993): {sigup} local signature set is version 202304281928720 May 04 2023 06:58:54 webserver maldet(16993): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver May 04 2023 06:58:54 webserver maldet(16993): {sigup} latest signature set already installed May 04 2023 06:58:54 webserver maldet(17108): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress May 04 2023 06:58:55 webserver maldet(17108): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) May 04 2023 06:58:55 webserver maldet(17108): {scan} building file list for of new/modified files from last 1 days, this might take awhile... May 04 2023 06:58:55 webserver maldet(17108): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 May 04 2023 06:58:55 webserver maldet(17108): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 May 04 2023 07:01:25 webserver maldet(17108): {scan} file list completed in 150s, found 474 files... May 04 2023 07:01:25 webserver maldet(17108): {scan} found clamav binary at /usr/bin/clamdscan, using clamav scanner engine... May 04 2023 07:01:25 webserver maldet(17108): {scan} scan of (474 files) in progress... May 04 2023 07:01:32 webserver maldet(17108): {scan} scan completed on : files 474, malware hits 0, cleaned hits 0, time 158s May 04 2023 07:01:32 webserver maldet(17108): {scan} scan report saved, to view run: maldet --report 230504-0658.17108 May 05 2023 06:57:28 webserver maldet(16860): {update} checking for available updates... May 05 2023 06:57:28 webserver maldet(16860): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver May 05 2023 06:57:28 webserver maldet(16860): {update} hashing install files and checking against server... May 05 2023 06:57:28 webserver maldet(16860): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash May 05 2023 06:57:28 webserver maldet(16860): {update} latest version already installed. May 05 2023 06:57:28 webserver maldet(16996): {sigup} performing signature update check... May 05 2023 06:57:28 webserver maldet(16996): {sigup} local signature set is version 202304281928720 May 05 2023 06:57:28 webserver maldet(16996): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver May 05 2023 06:57:28 webserver maldet(16996): {sigup} new signature set 20230504491938 available May 05 2023 06:57:28 webserver maldet(16996): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz May 05 2023 06:57:28 webserver maldet(16996): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz May 05 2023 06:57:28 webserver maldet(16996): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 May 05 2023 06:57:28 webserver maldet(16996): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz May 05 2023 06:57:29 webserver maldet(16996): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz May 05 2023 06:57:29 webserver maldet(16996): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 May 05 2023 06:57:29 webserver maldet(16996): {sigup} verified md5sum of maldet-sigpack.tgz May 05 2023 06:57:29 webserver maldet(16996): {sigup} unpacked and installed maldet-sigpack.tgz May 05 2023 06:57:29 webserver maldet(16996): {sigup} verified md5sum of maldet-clean.tgz May 05 2023 06:57:29 webserver maldet(16996): {sigup} unpacked and installed maldet-clean.tgz May 05 2023 06:57:29 webserver maldet(16996): {sigup} signature set update completed May 05 2023 06:57:29 webserver maldet(16996): {sigup} 17637 signatures (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) May 05 2023 06:57:29 webserver maldet(17228): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress May 05 2023 06:57:29 webserver maldet(17228): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) May 05 2023 06:57:29 webserver maldet(17228): {scan} building file list for of new/modified files from last 1 days, this might take awhile... May 05 2023 06:57:29 webserver maldet(17228): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 May 05 2023 06:57:29 webserver maldet(17228): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 May 05 2023 06:59:44 webserver maldet(17228): {scan} file list completed in 135s, found 597 files... May 05 2023 06:59:44 webserver maldet(17228): {scan} found clamav binary at /usr/bin/clamdscan, using clamav scanner engine... May 05 2023 06:59:44 webserver maldet(17228): {scan} scan of (597 files) in progress... May 05 2023 06:59:50 webserver maldet(17228): {scan} scan completed on : files 597, malware hits 0, cleaned hits 0, time 141s May 05 2023 06:59:50 webserver maldet(17228): {scan} scan report saved, to view run: maldet --report 230505-0657.17228 May 06 2023 06:58:47 webserver maldet(21903): {update} checking for available updates... May 06 2023 06:58:47 webserver maldet(21903): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver May 06 2023 06:58:47 webserver maldet(21903): {update} hashing install files and checking against server... May 06 2023 06:58:48 webserver maldet(21903): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash May 06 2023 06:58:48 webserver maldet(21903): {update} latest version already installed. May 06 2023 06:58:48 webserver maldet(22039): {sigup} performing signature update check... May 06 2023 06:58:48 webserver maldet(22039): {sigup} local signature set is version 20230504491938 May 06 2023 06:58:48 webserver maldet(22039): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver May 06 2023 06:58:48 webserver maldet(22039): {sigup} latest signature set already installed May 06 2023 06:58:48 webserver maldet(22154): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress May 06 2023 06:58:48 webserver maldet(22154): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) May 06 2023 06:58:48 webserver maldet(22154): {scan} building file list for of new/modified files from last 1 days, this might take awhile... May 06 2023 06:58:48 webserver maldet(22154): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 May 06 2023 06:58:48 webserver maldet(22154): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 May 06 2023 06:58:52 webserver maldet(22154): {scan} file list completed in 4s, found 454 files... May 06 2023 06:58:52 webserver maldet(22154): {scan} found clamav binary at /usr/bin/clamdscan, using clamav scanner engine... May 06 2023 06:58:52 webserver maldet(22154): {scan} scan of (454 files) in progress... May 06 2023 06:58:59 webserver maldet(22154): {scan} scan completed on : files 454, malware hits 0, cleaned hits 0, time 11s May 06 2023 06:58:59 webserver maldet(22154): {scan} scan report saved, to view run: maldet --report 230506-0658.22154 May 07 2023 06:56:42 webserver maldet(18961): {update} checking for available updates... May 07 2023 06:56:42 webserver maldet(18961): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver May 07 2023 06:56:42 webserver maldet(18961): {update} hashing install files and checking against server... May 07 2023 06:56:43 webserver maldet(18961): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash May 07 2023 06:56:43 webserver maldet(18961): {update} latest version already installed. May 07 2023 06:56:43 webserver maldet(19098): {sigup} performing signature update check... May 07 2023 06:56:43 webserver maldet(19098): {sigup} local signature set is version 20230504491938 May 07 2023 06:56:43 webserver maldet(19098): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver May 07 2023 06:56:43 webserver maldet(19098): {sigup} new signature set 202305071183635 available May 07 2023 06:56:43 webserver maldet(19098): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz May 07 2023 06:56:43 webserver maldet(19098): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz May 07 2023 06:56:43 webserver maldet(19098): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 May 07 2023 06:56:43 webserver maldet(19098): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz May 07 2023 06:56:43 webserver maldet(19098): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz May 07 2023 06:56:43 webserver maldet(19098): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 May 07 2023 06:56:43 webserver maldet(19098): {sigup} verified md5sum of maldet-sigpack.tgz May 07 2023 06:56:43 webserver maldet(19098): {sigup} unpacked and installed maldet-sigpack.tgz May 07 2023 06:56:43 webserver maldet(19098): {sigup} verified md5sum of maldet-clean.tgz May 07 2023 06:56:43 webserver maldet(19098): {sigup} unpacked and installed maldet-clean.tgz May 07 2023 06:56:43 webserver maldet(19098): {sigup} signature set update completed May 07 2023 06:56:43 webserver maldet(19098): {sigup} 17637 signatures (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) May 07 2023 06:56:43 webserver maldet(19330): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress May 07 2023 06:56:43 webserver maldet(19330): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) May 07 2023 06:56:43 webserver maldet(19330): {scan} building file list for of new/modified files from last 1 days, this might take awhile... May 07 2023 06:56:43 webserver maldet(19330): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 May 07 2023 06:56:43 webserver maldet(19330): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 May 07 2023 06:56:48 webserver maldet(19330): {scan} file list completed in 5s, found 487 files... May 07 2023 06:56:48 webserver maldet(19330): {scan} found clamav binary at /usr/bin/clamdscan, using clamav scanner engine... May 07 2023 06:56:48 webserver maldet(19330): {scan} scan of (487 files) in progress... May 07 2023 06:56:56 webserver maldet(19330): {scan} scan completed on : files 487, malware hits 0, cleaned hits 0, time 13s May 07 2023 06:56:56 webserver maldet(19330): {scan} scan report saved, to view run: maldet --report 230507-0656.19330 May 08 2023 06:58:24 webserver maldet(21277): {update} checking for available updates... May 08 2023 06:58:24 webserver maldet(21277): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver May 08 2023 06:58:24 webserver maldet(21277): {update} hashing install files and checking against server... May 08 2023 06:58:24 webserver maldet(21277): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash May 08 2023 06:58:24 webserver maldet(21277): {update} latest version already installed. May 08 2023 06:58:24 webserver maldet(21413): {sigup} performing signature update check... May 08 2023 06:58:24 webserver maldet(21413): {sigup} local signature set is version 20230504491938 May 08 2023 06:58:24 webserver maldet(21413): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver May 08 2023 06:58:25 webserver maldet(21413): {sigup} new signature set 202305071183635 available May 08 2023 06:58:25 webserver maldet(21413): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz May 08 2023 06:58:25 webserver maldet(21413): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz May 08 2023 06:58:25 webserver maldet(21413): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 May 08 2023 06:58:25 webserver maldet(21413): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz May 08 2023 06:58:25 webserver maldet(21413): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz May 08 2023 06:58:25 webserver maldet(21413): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 May 08 2023 06:58:25 webserver maldet(21413): {sigup} verified md5sum of maldet-sigpack.tgz May 08 2023 06:58:25 webserver maldet(21413): {sigup} unpacked and installed maldet-sigpack.tgz May 08 2023 06:58:25 webserver maldet(21413): {sigup} verified md5sum of maldet-clean.tgz May 08 2023 06:58:25 webserver maldet(21413): {sigup} unpacked and installed maldet-clean.tgz May 08 2023 06:58:25 webserver maldet(21413): {sigup} signature set update completed May 08 2023 06:58:25 webserver maldet(21413): {sigup} 17637 signatures (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) May 08 2023 06:58:25 webserver maldet(21645): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress May 08 2023 06:58:25 webserver maldet(21645): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) May 08 2023 06:58:25 webserver maldet(21645): {scan} building file list for of new/modified files from last 1 days, this might take awhile... May 08 2023 06:58:25 webserver maldet(21645): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 May 08 2023 06:58:25 webserver maldet(21645): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 May 08 2023 07:03:12 webserver maldet(21645): {scan} file list completed in 287s, found 454 files... May 08 2023 07:03:12 webserver maldet(21645): {scan} found clamav binary at /usr/bin/clamdscan, using clamav scanner engine... May 08 2023 07:03:12 webserver maldet(21645): {scan} scan of (454 files) in progress... May 08 2023 07:03:22 webserver maldet(21645): {scan} clamscan returned an error, check /usr/local/maldetect/logs/clamscan_log for details! May 08 2023 07:03:22 webserver maldet(21645): {scan} scan completed on : files 454, malware hits 0, cleaned hits 0, time 297s May 08 2023 07:03:22 webserver maldet(21645): {scan} scan report saved, to view run: maldet --report 230508-0658.21645 May 09 2023 06:56:47 webserver maldet(18221): {update} checking for available updates... May 09 2023 06:56:47 webserver maldet(18221): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver May 09 2023 06:56:47 webserver maldet(18221): {update} hashing install files and checking against server... May 09 2023 06:56:47 webserver maldet(18221): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash May 09 2023 06:56:47 webserver maldet(18221): {update} latest version already installed. May 09 2023 06:56:47 webserver maldet(18357): {sigup} performing signature update check... May 09 2023 06:56:47 webserver maldet(18357): {sigup} local signature set is version 202305071183635 May 09 2023 06:56:47 webserver maldet(18357): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver May 09 2023 06:56:47 webserver maldet(18357): {sigup} latest signature set already installed May 09 2023 06:56:47 webserver maldet(18472): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress May 09 2023 06:56:47 webserver maldet(18472): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) May 09 2023 06:56:47 webserver maldet(18472): {scan} building file list for of new/modified files from last 1 days, this might take awhile... May 09 2023 06:56:47 webserver maldet(18472): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 May 09 2023 06:56:47 webserver maldet(18472): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 May 09 2023 06:58:56 webserver maldet(18472): {scan} file list completed in 129s, found 320 files... May 09 2023 06:58:56 webserver maldet(18472): {scan} found clamav binary at /usr/bin/clamdscan, using clamav scanner engine... May 09 2023 06:58:56 webserver maldet(18472): {scan} scan of (320 files) in progress... May 09 2023 06:59:01 webserver maldet(18472): {scan} scan completed on : files 320, malware hits 0, cleaned hits 0, time 134s May 09 2023 06:59:01 webserver maldet(18472): {scan} scan report saved, to view run: maldet --report 230509-0656.18472 May 10 2023 07:10:55 webserver maldet(16528): {update} checking for available updates... May 10 2023 07:10:55 webserver maldet(16528): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver May 10 2023 07:10:55 webserver maldet(16528): {update} hashing install files and checking against server... May 10 2023 07:10:55 webserver maldet(16528): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash May 10 2023 07:10:55 webserver maldet(16528): {update} latest version already installed. May 10 2023 07:10:55 webserver maldet(16665): {sigup} performing signature update check... May 10 2023 07:10:55 webserver maldet(16665): {sigup} local signature set is version 202305071183635 May 10 2023 07:10:55 webserver maldet(16665): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver May 10 2023 07:10:55 webserver maldet(16665): {sigup} new signature set 202305101874994 available May 10 2023 07:10:55 webserver maldet(16665): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz May 10 2023 07:10:55 webserver maldet(16665): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz May 10 2023 07:10:55 webserver maldet(16665): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 May 10 2023 07:10:55 webserver maldet(16665): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz May 10 2023 07:10:55 webserver maldet(16665): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz May 10 2023 07:10:55 webserver maldet(16665): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 May 10 2023 07:10:55 webserver maldet(16665): {sigup} verified md5sum of maldet-sigpack.tgz May 10 2023 07:10:55 webserver maldet(16665): {sigup} unpacked and installed maldet-sigpack.tgz May 10 2023 07:10:55 webserver maldet(16665): {sigup} verified md5sum of maldet-clean.tgz May 10 2023 07:10:55 webserver maldet(16665): {sigup} unpacked and installed maldet-clean.tgz May 10 2023 07:10:55 webserver maldet(16665): {sigup} signature set update completed May 10 2023 07:10:55 webserver maldet(16665): {sigup} 17637 signatures (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) May 10 2023 07:10:55 webserver maldet(16897): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress May 10 2023 07:10:58 webserver maldet(16897): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) May 10 2023 07:10:58 webserver maldet(16897): {scan} building file list for of new/modified files from last 1 days, this might take awhile... May 10 2023 07:10:58 webserver maldet(16897): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 May 10 2023 07:10:58 webserver maldet(16897): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 May 10 2023 07:14:59 webserver maldet(16897): {scan} file list completed in 241s, found 360 files... May 10 2023 07:14:59 webserver maldet(16897): {scan} found clamav binary at /usr/bin/clamdscan, using clamav scanner engine... May 10 2023 07:14:59 webserver maldet(16897): {scan} scan of (360 files) in progress... May 10 2023 07:15:05 webserver maldet(16897): {scan} clamscan returned an error, check /usr/local/maldetect/logs/clamscan_log for details! May 10 2023 07:15:05 webserver maldet(16897): {scan} scan completed on : files 360, malware hits 0, cleaned hits 0, time 250s May 10 2023 07:15:05 webserver maldet(16897): {scan} scan report saved, to view run: maldet --report 230510-0710.16897 May 11 2023 06:58:54 webserver maldet(14900): {update} checking for available updates... May 11 2023 06:58:54 webserver maldet(14900): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver May 11 2023 06:58:54 webserver maldet(14900): {update} hashing install files and checking against server... May 11 2023 06:58:54 webserver maldet(14900): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash May 11 2023 06:58:54 webserver maldet(14900): {update} latest version already installed. May 11 2023 06:58:55 webserver maldet(15036): {sigup} performing signature update check... May 11 2023 06:58:55 webserver maldet(15036): {sigup} local signature set is version 202305101874994 May 11 2023 06:58:55 webserver maldet(15036): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver May 11 2023 06:58:55 webserver maldet(15036): {sigup} latest signature set already installed May 11 2023 06:58:55 webserver maldet(15151): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress May 11 2023 06:58:55 webserver maldet(15151): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) May 11 2023 06:58:55 webserver maldet(15151): {scan} building file list for of new/modified files from last 1 days, this might take awhile... May 11 2023 06:58:55 webserver maldet(15151): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 May 11 2023 06:58:55 webserver maldet(15151): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 May 11 2023 07:01:52 webserver maldet(15151): {scan} file list completed in 177s, found 3075 files... May 11 2023 07:01:52 webserver maldet(15151): {scan} found clamav binary at /usr/bin/clamdscan, using clamav scanner engine... May 11 2023 07:01:52 webserver maldet(15151): {scan} scan of (3075 files) in progress... May 11 2023 07:02:53 webserver maldet(15151): {scan} scan completed on : files 3075, malware hits 0, cleaned hits 0, time 238s May 11 2023 07:02:53 webserver maldet(15151): {scan} scan report saved, to view run: maldet --report 230511-0658.15151 May 12 2023 06:57:27 webserver maldet(14784): {update} checking for available updates... May 12 2023 06:57:27 webserver maldet(14784): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver May 12 2023 06:57:27 webserver maldet(14784): {update} hashing install files and checking against server... May 12 2023 06:57:27 webserver maldet(14784): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash May 12 2023 06:57:27 webserver maldet(14784): {update} latest version already installed. May 12 2023 06:57:27 webserver maldet(14920): {sigup} performing signature update check... May 12 2023 06:57:27 webserver maldet(14920): {sigup} local signature set is version 202305101874994 May 12 2023 06:57:27 webserver maldet(14920): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver May 12 2023 06:57:27 webserver maldet(14920): {sigup} latest signature set already installed May 12 2023 06:57:27 webserver maldet(15035): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress May 12 2023 06:57:27 webserver maldet(15035): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) May 12 2023 06:57:27 webserver maldet(15035): {scan} building file list for of new/modified files from last 1 days, this might take awhile... May 12 2023 06:57:27 webserver maldet(15035): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 May 12 2023 06:57:27 webserver maldet(15035): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 May 12 2023 06:59:53 webserver maldet(15035): {scan} file list completed in 146s, found 12822 files... May 12 2023 06:59:53 webserver maldet(15035): {scan} found clamav binary at /usr/bin/clamdscan, using clamav scanner engine... May 12 2023 06:59:53 webserver maldet(15035): {scan} scan of (12822 files) in progress... May 12 2023 07:03:39 webserver maldet(15035): {scan} clamscan returned an error, check /usr/local/maldetect/logs/clamscan_log for details! May 12 2023 07:03:39 webserver maldet(15035): {scan} scan completed on : files 12822, malware hits 0, cleaned hits 0, time 372s May 12 2023 07:03:39 webserver maldet(15035): {scan} scan report saved, to view run: maldet --report 230512-0657.15035 May 13 2023 06:57:46 webserver maldet(13290): {update} checking for available updates... May 13 2023 06:57:46 webserver maldet(13290): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver May 13 2023 06:57:46 webserver maldet(13290): {update} hashing install files and checking against server... May 13 2023 06:57:46 webserver maldet(13290): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash May 13 2023 06:57:46 webserver maldet(13290): {update} latest version already installed. May 13 2023 06:57:46 webserver maldet(13426): {sigup} performing signature update check... May 13 2023 06:57:46 webserver maldet(13426): {sigup} local signature set is version 202305101874994 May 13 2023 06:57:46 webserver maldet(13426): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver May 13 2023 06:57:46 webserver maldet(13426): {sigup} new signature set 20230513510879 available May 13 2023 06:57:46 webserver maldet(13426): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz May 13 2023 06:57:46 webserver maldet(13426): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz May 13 2023 06:57:46 webserver maldet(13426): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 May 13 2023 06:57:46 webserver maldet(13426): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz May 13 2023 06:57:46 webserver maldet(13426): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz May 13 2023 06:57:46 webserver maldet(13426): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 May 13 2023 06:57:46 webserver maldet(13426): {sigup} verified md5sum of maldet-sigpack.tgz May 13 2023 06:57:47 webserver maldet(13426): {sigup} unpacked and installed maldet-sigpack.tgz May 13 2023 06:57:47 webserver maldet(13426): {sigup} verified md5sum of maldet-clean.tgz May 13 2023 06:57:47 webserver maldet(13426): {sigup} unpacked and installed maldet-clean.tgz May 13 2023 06:57:47 webserver maldet(13426): {sigup} signature set update completed May 13 2023 06:57:47 webserver maldet(13426): {sigup} 17637 signatures (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) May 13 2023 06:57:47 webserver maldet(13658): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress May 13 2023 06:57:47 webserver maldet(13658): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) May 13 2023 06:57:47 webserver maldet(13658): {scan} building file list for of new/modified files from last 1 days, this might take awhile... May 13 2023 06:57:47 webserver maldet(13658): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 May 13 2023 06:57:47 webserver maldet(13658): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 May 13 2023 07:00:02 webserver maldet(13658): {scan} file list completed in 135s, found 216 files... May 13 2023 07:00:02 webserver maldet(13658): {scan} found clamav binary at /usr/bin/clamdscan, using clamav scanner engine... May 13 2023 07:00:02 webserver maldet(13658): {scan} scan of (216 files) in progress... May 13 2023 07:00:06 webserver maldet(13658): {scan} scan completed on : files 216, malware hits 0, cleaned hits 0, time 139s May 13 2023 07:00:06 webserver maldet(13658): {scan} scan report saved, to view run: maldet --report 230513-0657.13658 May 14 2023 06:57:21 webserver maldet(15293): {update} checking for available updates... May 14 2023 06:57:21 webserver maldet(15293): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver May 14 2023 06:57:21 webserver maldet(15293): {update} hashing install files and checking against server... May 14 2023 06:57:21 webserver maldet(15293): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash May 14 2023 06:57:21 webserver maldet(15293): {update} latest version already installed. May 14 2023 06:57:22 webserver maldet(15429): {sigup} performing signature update check... May 14 2023 06:57:22 webserver maldet(15429): {sigup} local signature set is version 20230513510879 May 14 2023 06:57:22 webserver maldet(15429): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver May 14 2023 06:57:22 webserver maldet(15429): {sigup} latest signature set already installed May 14 2023 06:57:22 webserver maldet(15546): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress May 14 2023 06:57:22 webserver maldet(15546): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) May 14 2023 06:57:22 webserver maldet(15546): {scan} building file list for of new/modified files from last 1 days, this might take awhile... May 14 2023 06:57:22 webserver maldet(15546): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 May 14 2023 06:57:22 webserver maldet(15546): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 May 14 2023 06:59:46 webserver maldet(15546): {scan} file list completed in 144s, found 218 files... May 14 2023 06:59:46 webserver maldet(15546): {scan} found clamav binary at /usr/bin/clamdscan, using clamav scanner engine... May 14 2023 06:59:46 webserver maldet(15546): {scan} scan of (218 files) in progress... May 14 2023 06:59:50 webserver maldet(15546): {scan} scan completed on : files 218, malware hits 0, cleaned hits 0, time 148s May 14 2023 06:59:50 webserver maldet(15546): {scan} scan report saved, to view run: maldet --report 230514-0657.15546 May 15 2023 06:59:13 webserver maldet(15408): {update} checking for available updates... May 15 2023 06:59:13 webserver maldet(15408): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver May 15 2023 06:59:13 webserver maldet(15408): {update} hashing install files and checking against server... May 15 2023 06:59:13 webserver maldet(15408): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash May 15 2023 06:59:13 webserver maldet(15408): {update} latest version already installed. May 15 2023 06:59:13 webserver maldet(15546): {sigup} performing signature update check... May 15 2023 06:59:13 webserver maldet(15546): {sigup} local signature set is version 20230513510879 May 15 2023 06:59:13 webserver maldet(15546): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver May 15 2023 06:59:13 webserver maldet(15546): {sigup} latest signature set already installed May 15 2023 06:59:13 webserver maldet(15660): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress May 15 2023 06:59:13 webserver maldet(15660): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) May 15 2023 06:59:13 webserver maldet(15660): {scan} building file list for of new/modified files from last 1 days, this might take awhile... May 15 2023 06:59:13 webserver maldet(15660): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 May 15 2023 06:59:13 webserver maldet(15660): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 May 15 2023 07:01:28 webserver maldet(15660): {scan} file list completed in 135s, found 215 files... May 15 2023 07:01:28 webserver maldet(15660): {scan} found clamav binary at /usr/bin/clamdscan, using clamav scanner engine... May 15 2023 07:01:28 webserver maldet(15660): {scan} scan of (215 files) in progress... May 15 2023 07:01:31 webserver maldet(15660): {scan} scan completed on : files 215, malware hits 0, cleaned hits 0, time 138s May 15 2023 07:01:31 webserver maldet(15660): {scan} scan report saved, to view run: maldet --report 230515-0659.15660 May 16 2023 06:56:28 webserver maldet(7739): {update} checking for available updates... May 16 2023 06:56:28 webserver maldet(7739): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver May 16 2023 06:56:28 webserver maldet(7739): {update} hashing install files and checking against server... May 16 2023 06:56:29 webserver maldet(7739): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash May 16 2023 06:56:29 webserver maldet(7739): {update} latest version already installed. May 16 2023 06:56:29 webserver maldet(7875): {sigup} performing signature update check... May 16 2023 06:56:29 webserver maldet(7875): {sigup} local signature set is version 20230513510879 May 16 2023 06:56:29 webserver maldet(7875): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver May 16 2023 06:56:29 webserver maldet(7875): {sigup} new signature set 202305161200869 available May 16 2023 06:56:29 webserver maldet(7875): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz May 16 2023 06:56:29 webserver maldet(7875): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz May 16 2023 06:56:29 webserver maldet(7875): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 May 16 2023 06:56:29 webserver maldet(7875): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz May 16 2023 06:56:29 webserver maldet(7875): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz May 16 2023 06:56:29 webserver maldet(7875): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 May 16 2023 06:56:29 webserver maldet(7875): {sigup} verified md5sum of maldet-sigpack.tgz May 16 2023 06:56:29 webserver maldet(7875): {sigup} unpacked and installed maldet-sigpack.tgz May 16 2023 06:56:29 webserver maldet(7875): {sigup} verified md5sum of maldet-clean.tgz May 16 2023 06:56:29 webserver maldet(7875): {sigup} unpacked and installed maldet-clean.tgz May 16 2023 06:56:29 webserver maldet(7875): {sigup} signature set update completed May 16 2023 06:56:29 webserver maldet(7875): {sigup} 17637 signatures (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) May 16 2023 06:56:29 webserver maldet(8107): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress May 16 2023 06:56:29 webserver maldet(8107): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) May 16 2023 06:56:29 webserver maldet(8107): {scan} building file list for of new/modified files from last 1 days, this might take awhile... May 16 2023 06:56:29 webserver maldet(8107): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 May 16 2023 06:56:29 webserver maldet(8107): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 May 16 2023 06:58:43 webserver maldet(8107): {scan} file list completed in 134s, found 18917 files... May 16 2023 06:58:43 webserver maldet(8107): {scan} found clamav binary at /usr/bin/clamdscan, using clamav scanner engine... May 16 2023 06:58:43 webserver maldet(8107): {scan} scan of (18917 files) in progress... May 16 2023 07:02:00 webserver maldet(8107): {scan} scan completed on : files 18917, malware hits 0, cleaned hits 0, time 331s May 16 2023 07:02:00 webserver maldet(8107): {scan} scan report saved, to view run: maldet --report 230516-0656.8107 May 17 2023 06:58:40 webserver maldet(4086): {update} checking for available updates... May 17 2023 06:58:40 webserver maldet(4086): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver May 17 2023 06:58:40 webserver maldet(4086): {update} hashing install files and checking against server... May 17 2023 06:58:40 webserver maldet(4086): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash May 17 2023 06:58:40 webserver maldet(4086): {update} latest version already installed. May 17 2023 06:58:41 webserver maldet(4222): {sigup} performing signature update check... May 17 2023 06:58:41 webserver maldet(4222): {sigup} local signature set is version 202305161200869 May 17 2023 06:58:41 webserver maldet(4222): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver May 17 2023 06:58:41 webserver maldet(4222): {sigup} latest signature set already installed May 17 2023 06:58:41 webserver maldet(4338): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress May 17 2023 06:58:41 webserver maldet(4338): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) May 17 2023 06:58:41 webserver maldet(4338): {scan} building file list for of new/modified files from last 1 days, this might take awhile... May 17 2023 06:58:41 webserver maldet(4338): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 May 17 2023 06:58:41 webserver maldet(4338): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 May 17 2023 06:58:45 webserver maldet(4338): {scan} file list completed in 4s, found 597 files... May 17 2023 06:58:45 webserver maldet(4338): {scan} found clamav binary at /usr/bin/clamdscan, using clamav scanner engine... May 17 2023 06:58:45 webserver maldet(4338): {scan} scan of (597 files) in progress... May 17 2023 06:59:01 webserver maldet(4338): {scan} scan completed on : files 597, malware hits 0, cleaned hits 0, time 20s May 17 2023 06:59:01 webserver maldet(4338): {scan} scan report saved, to view run: maldet --report 230517-0658.4338 May 18 2023 06:57:14 webserver maldet(4974): {update} checking for available updates... May 18 2023 06:57:14 webserver maldet(4974): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver May 18 2023 06:57:14 webserver maldet(4974): {update} hashing install files and checking against server... May 18 2023 06:57:14 webserver maldet(4974): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash May 18 2023 06:57:14 webserver maldet(4974): {update} latest version already installed. May 18 2023 06:57:14 webserver maldet(5110): {sigup} performing signature update check... May 18 2023 06:57:14 webserver maldet(5110): {sigup} local signature set is version 202305161200869 May 18 2023 06:57:14 webserver maldet(5110): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver May 18 2023 06:57:14 webserver maldet(5110): {sigup} latest signature set already installed May 18 2023 06:57:14 webserver maldet(5225): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress May 18 2023 06:57:15 webserver maldet(5225): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) May 18 2023 06:57:15 webserver maldet(5225): {scan} building file list for of new/modified files from last 1 days, this might take awhile... May 18 2023 06:57:15 webserver maldet(5225): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 May 18 2023 06:57:15 webserver maldet(5225): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 May 18 2023 06:59:23 webserver maldet(5225): {scan} file list completed in 128s, found 628 files... May 18 2023 06:59:23 webserver maldet(5225): {scan} found clamav binary at /usr/bin/clamdscan, using clamav scanner engine... May 18 2023 06:59:23 webserver maldet(5225): {scan} scan of (628 files) in progress... May 18 2023 06:59:39 webserver maldet(5225): {scan} clamscan returned an error, check /usr/local/maldetect/logs/clamscan_log for details! May 18 2023 06:59:39 webserver maldet(5225): {scan} scan completed on : files 628, malware hits 0, cleaned hits 0, time 145s May 18 2023 06:59:39 webserver maldet(5225): {scan} scan report saved, to view run: maldet --report 230518-0657.5225 May 19 2023 06:58:26 webserver maldet(14564): {update} checking for available updates... May 19 2023 06:58:26 webserver maldet(14564): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver May 19 2023 06:58:26 webserver maldet(14564): {update} hashing install files and checking against server... May 19 2023 06:58:26 webserver maldet(14564): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash May 19 2023 06:58:26 webserver maldet(14564): {update} latest version already installed. May 19 2023 06:58:27 webserver maldet(14700): {sigup} performing signature update check... May 19 2023 06:58:27 webserver maldet(14700): {sigup} local signature set is version 202305161200869 May 19 2023 06:58:27 webserver maldet(14700): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver May 19 2023 06:58:27 webserver maldet(14700): {sigup} new signature set 20230519491100 available May 19 2023 06:58:27 webserver maldet(14700): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz May 19 2023 06:58:27 webserver maldet(14700): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz May 19 2023 06:58:27 webserver maldet(14700): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 May 19 2023 06:58:27 webserver maldet(14700): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz May 19 2023 06:58:27 webserver maldet(14700): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz May 19 2023 06:58:27 webserver maldet(14700): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 May 19 2023 06:58:27 webserver maldet(14700): {sigup} verified md5sum of maldet-sigpack.tgz May 19 2023 06:58:27 webserver maldet(14700): {sigup} unpacked and installed maldet-sigpack.tgz May 19 2023 06:58:27 webserver maldet(14700): {sigup} verified md5sum of maldet-clean.tgz May 19 2023 06:58:27 webserver maldet(14700): {sigup} unpacked and installed maldet-clean.tgz May 19 2023 06:58:27 webserver maldet(14700): {sigup} signature set update completed May 19 2023 06:58:27 webserver maldet(14700): {sigup} 17637 signatures (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) May 19 2023 06:58:27 webserver maldet(14932): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress May 19 2023 06:58:28 webserver maldet(14932): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) May 19 2023 06:58:28 webserver maldet(14932): {scan} building file list for of new/modified files from last 1 days, this might take awhile... May 19 2023 06:58:28 webserver maldet(14932): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 May 19 2023 06:58:28 webserver maldet(14932): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 May 19 2023 07:00:46 webserver maldet(14932): {scan} file list completed in 138s, found 222 files... May 19 2023 07:00:46 webserver maldet(14932): {scan} found clamav binary at /usr/bin/clamdscan, using clamav scanner engine... May 19 2023 07:00:46 webserver maldet(14932): {scan} scan of (222 files) in progress... May 19 2023 07:00:50 webserver maldet(14932): {scan} scan completed on : files 222, malware hits 0, cleaned hits 0, time 143s May 19 2023 07:00:50 webserver maldet(14932): {scan} scan report saved, to view run: maldet --report 230519-0658.14932 May 20 2023 06:56:49 webserver maldet(30845): {update} checking for available updates... May 20 2023 06:56:49 webserver maldet(30845): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver May 20 2023 06:56:49 webserver maldet(30845): {update} hashing install files and checking against server... May 20 2023 06:56:49 webserver maldet(30845): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash May 20 2023 06:56:49 webserver maldet(30845): {update} latest version already installed. May 20 2023 06:56:49 webserver maldet(30981): {sigup} performing signature update check... May 20 2023 06:56:49 webserver maldet(30981): {sigup} local signature set is version 20230519491100 May 20 2023 06:56:49 webserver maldet(30981): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver May 20 2023 06:56:49 webserver maldet(30981): {sigup} latest signature set already installed May 20 2023 06:56:50 webserver maldet(31096): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress May 20 2023 06:56:50 webserver maldet(31096): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) May 20 2023 06:56:50 webserver maldet(31096): {scan} building file list for of new/modified files from last 1 days, this might take awhile... May 20 2023 06:56:50 webserver maldet(31096): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 May 20 2023 06:56:50 webserver maldet(31096): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 May 20 2023 06:56:55 webserver maldet(31096): {scan} file list completed in 5s, found 366 files... May 20 2023 06:56:55 webserver maldet(31096): {scan} found clamav binary at /usr/bin/clamdscan, using clamav scanner engine... May 20 2023 06:56:55 webserver maldet(31096): {scan} scan of (366 files) in progress... May 20 2023 06:57:02 webserver maldet(31096): {scan} clamscan returned an error, check /usr/local/maldetect/logs/clamscan_log for details! May 20 2023 06:57:02 webserver maldet(31096): {scan} scan completed on : files 366, malware hits 0, cleaned hits 0, time 12s May 20 2023 06:57:02 webserver maldet(31096): {scan} scan report saved, to view run: maldet --report 230520-0656.31096 May 21 2023 06:58:25 webserver maldet(30253): {update} checking for available updates... May 21 2023 06:58:25 webserver maldet(30253): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver May 21 2023 06:58:25 webserver maldet(30253): {update} hashing install files and checking against server... May 21 2023 06:58:25 webserver maldet(30253): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash May 21 2023 06:58:25 webserver maldet(30253): {update} latest version already installed. May 21 2023 06:58:25 webserver maldet(30389): {sigup} performing signature update check... May 21 2023 06:58:25 webserver maldet(30389): {sigup} local signature set is version 20230519491100 May 21 2023 06:58:26 webserver maldet(30389): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver May 21 2023 06:58:26 webserver maldet(30389): {sigup} latest signature set already installed May 21 2023 06:58:26 webserver maldet(30504): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress May 21 2023 06:58:26 webserver maldet(30504): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) May 21 2023 06:58:26 webserver maldet(30504): {scan} building file list for of new/modified files from last 1 days, this might take awhile... May 21 2023 06:58:26 webserver maldet(30504): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 May 21 2023 06:58:26 webserver maldet(30504): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 May 21 2023 06:58:30 webserver maldet(30504): {scan} file list completed in 4s, found 281 files... May 21 2023 06:58:30 webserver maldet(30504): {scan} found clamav binary at /usr/bin/clamdscan, using clamav scanner engine... May 21 2023 06:58:30 webserver maldet(30504): {scan} scan of (281 files) in progress... May 21 2023 06:58:35 webserver maldet(30504): {scan} scan completed on : files 281, malware hits 0, cleaned hits 0, time 9s May 21 2023 06:58:35 webserver maldet(30504): {scan} scan report saved, to view run: maldet --report 230521-0658.30504 May 22 2023 06:58:17 webserver maldet(29290): {update} checking for available updates... May 22 2023 06:58:17 webserver maldet(29290): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver May 22 2023 06:58:17 webserver maldet(29290): {update} hashing install files and checking against server... May 22 2023 06:58:17 webserver maldet(29290): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash May 22 2023 06:58:17 webserver maldet(29290): {update} latest version already installed. May 22 2023 06:58:17 webserver maldet(29426): {sigup} performing signature update check... May 22 2023 06:58:17 webserver maldet(29426): {sigup} local signature set is version 20230519491100 May 22 2023 06:58:18 webserver maldet(29426): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver May 22 2023 06:58:18 webserver maldet(29426): {sigup} new signature set 202305221181514 available May 22 2023 06:58:18 webserver maldet(29426): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz May 22 2023 06:58:18 webserver maldet(29426): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz May 22 2023 06:58:18 webserver maldet(29426): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 May 22 2023 06:58:18 webserver maldet(29426): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz May 22 2023 06:58:18 webserver maldet(29426): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz May 22 2023 06:58:18 webserver maldet(29426): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 May 22 2023 06:58:18 webserver maldet(29426): {sigup} verified md5sum of maldet-sigpack.tgz May 22 2023 06:58:18 webserver maldet(29426): {sigup} unpacked and installed maldet-sigpack.tgz May 22 2023 06:58:18 webserver maldet(29426): {sigup} verified md5sum of maldet-clean.tgz May 22 2023 06:58:18 webserver maldet(29426): {sigup} unpacked and installed maldet-clean.tgz May 22 2023 06:58:18 webserver maldet(29426): {sigup} signature set update completed May 22 2023 06:58:18 webserver maldet(29426): {sigup} 17637 signatures (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) May 22 2023 06:58:18 webserver maldet(29657): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress May 22 2023 06:58:18 webserver maldet(29657): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) May 22 2023 06:58:18 webserver maldet(29657): {scan} building file list for of new/modified files from last 1 days, this might take awhile... May 22 2023 06:58:18 webserver maldet(29657): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 May 22 2023 06:58:18 webserver maldet(29657): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 May 22 2023 06:58:23 webserver maldet(29657): {scan} file list completed in 5s, found 278 files... May 22 2023 06:58:23 webserver maldet(29657): {scan} found clamav binary at /usr/bin/clamdscan, using clamav scanner engine... May 22 2023 06:58:23 webserver maldet(29657): {scan} scan of (278 files) in progress... May 22 2023 06:58:29 webserver maldet(29657): {scan} scan completed on : files 278, malware hits 0, cleaned hits 0, time 11s May 22 2023 06:58:29 webserver maldet(29657): {scan} scan report saved, to view run: maldet --report 230522-0658.29657 May 23 2023 06:56:41 webserver maldet(24355): {update} checking for available updates... May 23 2023 06:56:41 webserver maldet(24355): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver May 23 2023 06:56:41 webserver maldet(24355): {update} hashing install files and checking against server... May 23 2023 06:56:41 webserver maldet(24355): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash May 23 2023 06:56:41 webserver maldet(24355): {update} latest version already installed. May 23 2023 06:56:41 webserver maldet(24491): {sigup} performing signature update check... May 23 2023 06:56:41 webserver maldet(24491): {sigup} local signature set is version 202305221181514 May 23 2023 06:56:41 webserver maldet(24491): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver May 23 2023 06:56:41 webserver maldet(24491): {sigup} latest signature set already installed May 23 2023 06:56:41 webserver maldet(24606): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress May 23 2023 06:56:41 webserver maldet(24606): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) May 23 2023 06:56:41 webserver maldet(24606): {scan} building file list for of new/modified files from last 1 days, this might take awhile... May 23 2023 06:56:41 webserver maldet(24606): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 May 23 2023 06:56:41 webserver maldet(24606): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 May 23 2023 06:58:54 webserver maldet(24606): {scan} file list completed in 133s, found 300 files... May 23 2023 06:58:54 webserver maldet(24606): {scan} found clamav binary at /usr/bin/clamdscan, using clamav scanner engine... May 23 2023 06:58:54 webserver maldet(24606): {scan} scan of (300 files) in progress... May 23 2023 06:59:00 webserver maldet(24606): {scan} scan completed on : files 300, malware hits 0, cleaned hits 0, time 139s May 23 2023 06:59:00 webserver maldet(24606): {scan} scan report saved, to view run: maldet --report 230523-0656.24606 May 24 2023 06:59:49 webserver maldet(25169): {update} checking for available updates... May 24 2023 06:59:49 webserver maldet(25169): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver May 24 2023 06:59:49 webserver maldet(25169): {update} hashing install files and checking against server... May 24 2023 06:59:49 webserver maldet(25169): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash May 24 2023 06:59:49 webserver maldet(25169): {update} latest version already installed. May 24 2023 06:59:49 webserver maldet(25305): {sigup} performing signature update check... May 24 2023 06:59:49 webserver maldet(25305): {sigup} local signature set is version 202305221181514 May 24 2023 06:59:50 webserver maldet(25305): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver May 24 2023 06:59:50 webserver maldet(25305): {sigup} latest signature set already installed May 24 2023 06:59:50 webserver maldet(25420): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress May 24 2023 06:59:50 webserver maldet(25420): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) May 24 2023 06:59:50 webserver maldet(25420): {scan} building file list for of new/modified files from last 1 days, this might take awhile... May 24 2023 06:59:50 webserver maldet(25420): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 May 24 2023 06:59:50 webserver maldet(25420): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 May 24 2023 07:02:11 webserver maldet(25420): {scan} file list completed in 141s, found 1636 files... May 24 2023 07:02:11 webserver maldet(25420): {scan} found clamav binary at /usr/bin/clamdscan, using clamav scanner engine... May 24 2023 07:02:11 webserver maldet(25420): {scan} scan of (1636 files) in progress... May 24 2023 07:02:32 webserver maldet(25420): {scan} scan completed on : files 1636, malware hits 0, cleaned hits 0, time 162s May 24 2023 07:02:32 webserver maldet(25420): {scan} scan report saved, to view run: maldet --report 230524-0659.25420 May 25 2023 07:10:30 webserver maldet(1847): {update} checking for available updates... May 25 2023 07:10:30 webserver maldet(1847): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver May 25 2023 07:10:30 webserver maldet(1847): {update} hashing install files and checking against server... May 25 2023 07:10:30 webserver maldet(1847): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash May 25 2023 07:10:30 webserver maldet(1847): {update} latest version already installed. May 25 2023 07:10:30 webserver maldet(1983): {sigup} performing signature update check... May 25 2023 07:10:30 webserver maldet(1983): {sigup} local signature set is version 202305221181514 May 25 2023 07:10:30 webserver maldet(1983): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver May 25 2023 07:10:30 webserver maldet(1983): {sigup} latest signature set already installed May 25 2023 07:10:31 webserver maldet(2098): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress May 25 2023 07:10:31 webserver maldet(2098): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) May 25 2023 07:10:31 webserver maldet(2098): {scan} building file list for of new/modified files from last 1 days, this might take awhile... May 25 2023 07:10:31 webserver maldet(2098): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 May 25 2023 07:10:31 webserver maldet(2098): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 May 25 2023 07:10:36 webserver maldet(2098): {scan} file list completed in 5s, found 835 files... May 25 2023 07:10:36 webserver maldet(2098): {scan} found clamav binary at /usr/bin/clamdscan, using clamav scanner engine... May 25 2023 07:10:36 webserver maldet(2098): {scan} scan of (835 files) in progress... May 25 2023 07:10:57 webserver maldet(2098): {scan} clamscan returned an error, check /usr/local/maldetect/logs/clamscan_log for details! May 25 2023 07:10:57 webserver maldet(2098): {scan} scan completed on : files 835, malware hits 0, cleaned hits 0, time 26s May 25 2023 07:10:57 webserver maldet(2098): {scan} scan report saved, to view run: maldet --report 230525-0710.2098 May 26 2023 06:56:59 webserver maldet(4625): {update} checking for available updates... May 26 2023 06:56:59 webserver maldet(4625): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver May 26 2023 06:56:59 webserver maldet(4625): {update} hashing install files and checking against server... May 26 2023 06:56:59 webserver maldet(4625): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash May 26 2023 06:56:59 webserver maldet(4625): {update} latest version already installed. May 26 2023 06:56:59 webserver maldet(4761): {sigup} performing signature update check... May 26 2023 06:56:59 webserver maldet(4761): {sigup} local signature set is version 202305221181514 May 26 2023 06:57:00 webserver maldet(4761): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver May 26 2023 06:57:00 webserver maldet(4761): {sigup} new signature set 202305251872464 available May 26 2023 06:57:00 webserver maldet(4761): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz May 26 2023 06:57:00 webserver maldet(4761): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz May 26 2023 06:57:00 webserver maldet(4761): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 May 26 2023 06:57:00 webserver maldet(4761): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz May 26 2023 06:57:00 webserver maldet(4761): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz May 26 2023 06:57:00 webserver maldet(4761): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 May 26 2023 06:57:00 webserver maldet(4761): {sigup} verified md5sum of maldet-sigpack.tgz May 26 2023 06:57:00 webserver maldet(4761): {sigup} unpacked and installed maldet-sigpack.tgz May 26 2023 06:57:00 webserver maldet(4761): {sigup} verified md5sum of maldet-clean.tgz May 26 2023 06:57:00 webserver maldet(4761): {sigup} unpacked and installed maldet-clean.tgz May 26 2023 06:57:00 webserver maldet(4761): {sigup} signature set update completed May 26 2023 06:57:00 webserver maldet(4761): {sigup} 17637 signatures (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) May 26 2023 06:57:00 webserver maldet(4993): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress May 26 2023 06:57:00 webserver maldet(4993): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) May 26 2023 06:57:00 webserver maldet(4993): {scan} building file list for of new/modified files from last 1 days, this might take awhile... May 26 2023 06:57:00 webserver maldet(4993): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 May 26 2023 06:57:00 webserver maldet(4993): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 May 26 2023 06:57:05 webserver maldet(4993): {scan} file list completed in 5s, found 574 files... May 26 2023 06:57:05 webserver maldet(4993): {scan} found clamav binary at /usr/bin/clamdscan, using clamav scanner engine... May 26 2023 06:57:05 webserver maldet(4993): {scan} scan of (574 files) in progress... May 26 2023 06:57:14 webserver maldet(4993): {scan} scan completed on : files 574, malware hits 0, cleaned hits 0, time 14s May 26 2023 06:57:14 webserver maldet(4993): {scan} scan report saved, to view run: maldet --report 230526-0657.4993 May 27 2023 06:56:05 webserver maldet(22867): {update} checking for available updates... May 27 2023 06:56:05 webserver maldet(22867): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver May 27 2023 06:56:05 webserver maldet(22867): {update} hashing install files and checking against server... May 27 2023 06:56:05 webserver maldet(22867): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash May 27 2023 06:56:05 webserver maldet(22867): {update} latest version already installed. May 27 2023 06:56:05 webserver maldet(23003): {sigup} performing signature update check... May 27 2023 06:56:05 webserver maldet(23003): {sigup} local signature set is version 202305251872464 May 27 2023 06:56:05 webserver maldet(23003): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver May 27 2023 06:56:05 webserver maldet(23003): {sigup} latest signature set already installed May 27 2023 06:56:05 webserver maldet(23118): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress May 27 2023 06:56:05 webserver maldet(23118): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) May 27 2023 06:56:05 webserver maldet(23118): {scan} building file list for of new/modified files from last 1 days, this might take awhile... May 27 2023 06:56:05 webserver maldet(23118): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 May 27 2023 06:56:05 webserver maldet(23118): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 May 27 2023 06:58:40 webserver maldet(23118): {scan} file list completed in 155s, found 318 files... May 27 2023 06:58:40 webserver maldet(23118): {scan} found clamav binary at /usr/bin/clamdscan, using clamav scanner engine... May 27 2023 06:58:40 webserver maldet(23118): {scan} scan of (318 files) in progress... May 27 2023 06:58:44 webserver maldet(23118): {scan} clamscan returned an error, check /usr/local/maldetect/logs/clamscan_log for details! May 27 2023 06:58:44 webserver maldet(23118): {scan} scan completed on : files 318, malware hits 0, cleaned hits 0, time 159s May 27 2023 06:58:44 webserver maldet(23118): {scan} scan report saved, to view run: maldet --report 230527-0656.23118 May 28 2023 06:58:29 webserver maldet(27274): {update} checking for available updates... May 28 2023 06:58:29 webserver maldet(27274): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver May 28 2023 06:58:29 webserver maldet(27274): {update} hashing install files and checking against server... May 28 2023 06:58:29 webserver maldet(27274): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash May 28 2023 06:58:29 webserver maldet(27274): {update} latest version already installed. May 28 2023 06:58:29 webserver maldet(27410): {sigup} performing signature update check... May 28 2023 06:58:29 webserver maldet(27410): {sigup} local signature set is version 202305251872464 May 28 2023 06:58:29 webserver maldet(27410): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver May 28 2023 06:58:29 webserver maldet(27410): {sigup} new signature set 202305282563293 available May 28 2023 06:58:29 webserver maldet(27410): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz May 28 2023 06:58:30 webserver maldet(27410): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz May 28 2023 06:58:30 webserver maldet(27410): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 May 28 2023 06:58:30 webserver maldet(27410): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz May 28 2023 06:58:30 webserver maldet(27410): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz May 28 2023 06:58:30 webserver maldet(27410): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 May 28 2023 06:58:30 webserver maldet(27410): {sigup} verified md5sum of maldet-sigpack.tgz May 28 2023 06:58:30 webserver maldet(27410): {sigup} unpacked and installed maldet-sigpack.tgz May 28 2023 06:58:30 webserver maldet(27410): {sigup} verified md5sum of maldet-clean.tgz May 28 2023 06:58:30 webserver maldet(27410): {sigup} unpacked and installed maldet-clean.tgz May 28 2023 06:58:30 webserver maldet(27410): {sigup} signature set update completed May 28 2023 06:58:30 webserver maldet(27410): {sigup} 17637 signatures (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) May 28 2023 06:58:30 webserver maldet(27642): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress May 28 2023 06:58:33 webserver maldet(27642): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) May 28 2023 06:58:33 webserver maldet(27642): {scan} building file list for of new/modified files from last 1 days, this might take awhile... May 28 2023 06:58:33 webserver maldet(27642): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 May 28 2023 06:58:33 webserver maldet(27642): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 May 28 2023 07:00:44 webserver maldet(27642): {scan} file list completed in 131s, found 317 files... May 28 2023 07:00:44 webserver maldet(27642): {scan} found clamav binary at /usr/bin/clamdscan, using clamav scanner engine... May 28 2023 07:00:44 webserver maldet(27642): {scan} scan of (317 files) in progress... May 28 2023 07:00:50 webserver maldet(27642): {scan} scan completed on : files 317, malware hits 0, cleaned hits 0, time 139s May 28 2023 07:00:50 webserver maldet(27642): {scan} scan report saved, to view run: maldet --report 230528-0658.27642 May 29 2023 06:59:27 webserver maldet(32587): {update} checking for available updates... May 29 2023 06:59:27 webserver maldet(32587): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver May 29 2023 06:59:28 webserver maldet(32587): {update} hashing install files and checking against server... May 29 2023 06:59:28 webserver maldet(32587): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash May 29 2023 06:59:28 webserver maldet(32587): {update} latest version already installed. May 29 2023 06:59:28 webserver maldet(32723): {sigup} performing signature update check... May 29 2023 06:59:28 webserver maldet(32723): {sigup} local signature set is version 202305251872464 May 29 2023 06:59:28 webserver maldet(32723): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver May 29 2023 06:59:28 webserver maldet(32723): {sigup} new signature set 202305282563293 available May 29 2023 06:59:28 webserver maldet(32723): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz May 29 2023 06:59:28 webserver maldet(32723): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz May 29 2023 06:59:28 webserver maldet(32723): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 May 29 2023 06:59:28 webserver maldet(32723): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz May 29 2023 06:59:28 webserver maldet(32723): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz May 29 2023 06:59:28 webserver maldet(32723): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 May 29 2023 06:59:28 webserver maldet(32723): {sigup} verified md5sum of maldet-sigpack.tgz May 29 2023 06:59:28 webserver maldet(32723): {sigup} unpacked and installed maldet-sigpack.tgz May 29 2023 06:59:28 webserver maldet(32723): {sigup} verified md5sum of maldet-clean.tgz May 29 2023 06:59:28 webserver maldet(32723): {sigup} unpacked and installed maldet-clean.tgz May 29 2023 06:59:28 webserver maldet(32723): {sigup} signature set update completed May 29 2023 06:59:28 webserver maldet(32723): {sigup} 17637 signatures (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) May 29 2023 06:59:28 webserver maldet(492): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress May 29 2023 06:59:28 webserver maldet(492): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) May 29 2023 06:59:28 webserver maldet(492): {scan} building file list for of new/modified files from last 1 days, this might take awhile... May 29 2023 06:59:28 webserver maldet(492): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 May 29 2023 06:59:28 webserver maldet(492): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 May 29 2023 06:59:33 webserver maldet(492): {scan} file list completed in 5s, found 282 files... May 29 2023 06:59:33 webserver maldet(492): {scan} found clamav binary at /usr/bin/clamdscan, using clamav scanner engine... May 29 2023 06:59:33 webserver maldet(492): {scan} scan of (282 files) in progress... May 29 2023 06:59:37 webserver maldet(492): {scan} scan completed on : files 282, malware hits 0, cleaned hits 0, time 9s May 29 2023 06:59:37 webserver maldet(492): {scan} scan report saved, to view run: maldet --report 230529-0659.492 May 30 2023 06:56:45 webserver maldet(29561): {update} checking for available updates... May 30 2023 06:56:45 webserver maldet(29561): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver May 30 2023 06:56:45 webserver maldet(29561): {update} hashing install files and checking against server... May 30 2023 06:56:45 webserver maldet(29561): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash May 30 2023 06:56:45 webserver maldet(29561): {update} latest version already installed. May 30 2023 06:56:45 webserver maldet(29697): {sigup} performing signature update check... May 30 2023 06:56:45 webserver maldet(29697): {sigup} local signature set is version 202305282563293 May 30 2023 06:56:45 webserver maldet(29697): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver May 30 2023 06:56:45 webserver maldet(29697): {sigup} latest signature set already installed May 30 2023 06:56:45 webserver maldet(29812): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress May 30 2023 06:56:45 webserver maldet(29812): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) May 30 2023 06:56:45 webserver maldet(29812): {scan} building file list for of new/modified files from last 1 days, this might take awhile... May 30 2023 06:56:45 webserver maldet(29812): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 May 30 2023 06:56:45 webserver maldet(29812): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 May 30 2023 06:56:50 webserver maldet(29812): {scan} file list completed in 5s, found 462 files... May 30 2023 06:56:50 webserver maldet(29812): {scan} found clamav binary at /usr/bin/clamdscan, using clamav scanner engine... May 30 2023 06:56:50 webserver maldet(29812): {scan} scan of (462 files) in progress... May 30 2023 06:56:56 webserver maldet(29812): {scan} scan completed on : files 462, malware hits 0, cleaned hits 0, time 11s May 30 2023 06:56:56 webserver maldet(29812): {scan} scan report saved, to view run: maldet --report 230530-0656.29812 May 31 2023 07:08:02 webserver maldet(26860): {update} checking for available updates... May 31 2023 07:08:17 webserver maldet(26860): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver May 31 2023 07:08:17 webserver maldet(26860): {update} hashing install files and checking against server... May 31 2023 07:08:33 webserver maldet(26860): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash May 31 2023 07:08:33 webserver maldet(26860): {update} latest version already installed. May 31 2023 07:08:33 webserver maldet(27007): {sigup} performing signature update check... May 31 2023 07:08:33 webserver maldet(27007): {sigup} local signature set is version 202305282563293 May 31 2023 07:08:49 webserver maldet(27007): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver May 31 2023 07:08:49 webserver maldet(27007): {sigup} latest signature set already installed May 31 2023 07:08:49 webserver maldet(27132): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress May 31 2023 07:08:49 webserver maldet(27132): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) May 31 2023 07:08:49 webserver maldet(27132): {scan} building file list for of new/modified files from last 1 days, this might take awhile... May 31 2023 07:08:49 webserver maldet(27132): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 May 31 2023 07:08:49 webserver maldet(27132): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 May 31 2023 07:08:53 webserver maldet(27132): {scan} file list completed in 4s, found 4421 files... May 31 2023 07:08:53 webserver maldet(27132): {scan} found clamav binary at /usr/bin/clamdscan, using clamav scanner engine... May 31 2023 07:08:53 webserver maldet(27132): {scan} scan of (4421 files) in progress... May 31 2023 07:09:48 webserver maldet(27132): {scan} clamscan returned an error, check /usr/local/maldetect/logs/clamscan_log for details! May 31 2023 07:09:48 webserver maldet(27132): {scan} scan completed on : files 4421, malware hits 0, cleaned hits 0, time 59s May 31 2023 07:09:48 webserver maldet(27132): {scan} scan report saved, to view run: maldet --report 230531-0708.27132 Jun 01 2023 06:56:10 webserver maldet(478): {update} checking for available updates... Jun 01 2023 06:56:10 webserver maldet(478): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Jun 01 2023 06:56:10 webserver maldet(478): {update} hashing install files and checking against server... Jun 01 2023 06:56:10 webserver maldet(478): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Jun 01 2023 06:56:10 webserver maldet(478): {update} latest version already installed. Jun 01 2023 06:56:10 webserver maldet(614): {sigup} performing signature update check... Jun 01 2023 06:56:10 webserver maldet(614): {sigup} local signature set is version 202305282563293 Jun 01 2023 06:56:10 webserver maldet(614): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Jun 01 2023 06:56:10 webserver maldet(614): {sigup} new signature set 202306011138897 available Jun 01 2023 06:56:10 webserver maldet(614): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Jun 01 2023 06:56:10 webserver maldet(614): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Jun 01 2023 06:56:10 webserver maldet(614): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Jun 01 2023 06:56:10 webserver maldet(614): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Jun 01 2023 06:56:10 webserver maldet(614): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Jun 01 2023 06:56:10 webserver maldet(614): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Jun 01 2023 06:56:10 webserver maldet(614): {sigup} unable to verify md5sum of maldet-sigpack.tgz, please try again or contact proj@rfxn.com Jun 01 2023 06:56:10 webserver maldet(614): {sigup} verified md5sum of maldet-clean.tgz Jun 01 2023 06:56:10 webserver maldet(614): {sigup} unpacked and installed maldet-clean.tgz Jun 01 2023 06:56:10 webserver maldet(803): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Jun 01 2023 06:56:11 webserver maldet(803): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Jun 01 2023 06:56:11 webserver maldet(803): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Jun 01 2023 06:56:11 webserver maldet(803): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Jun 01 2023 06:56:11 webserver maldet(803): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Jun 01 2023 06:58:24 webserver maldet(803): {scan} file list completed in 133s, found 628 files... Jun 01 2023 06:58:24 webserver maldet(803): {scan} found clamav binary at /usr/bin/clamdscan, using clamav scanner engine... Jun 01 2023 06:58:24 webserver maldet(803): {scan} scan of (628 files) in progress... Jun 01 2023 06:58:32 webserver maldet(803): {scan} scan completed on : files 628, malware hits 0, cleaned hits 0, time 142s Jun 01 2023 06:58:32 webserver maldet(803): {scan} scan report saved, to view run: maldet --report 230601-0656.803 Jun 02 2023 06:57:12 webserver maldet(29892): {update} checking for available updates... Jun 02 2023 06:57:12 webserver maldet(29892): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Jun 02 2023 06:57:12 webserver maldet(29892): {update} hashing install files and checking against server... Jun 02 2023 06:57:12 webserver maldet(29892): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Jun 02 2023 06:57:12 webserver maldet(29892): {update} latest version already installed. Jun 02 2023 06:57:12 webserver maldet(30028): {sigup} performing signature update check... Jun 02 2023 06:57:12 webserver maldet(30028): {sigup} local signature set is version 202305282563293 Jun 02 2023 06:57:12 webserver maldet(30028): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Jun 02 2023 06:57:12 webserver maldet(30028): {sigup} new signature set 202306011138897 available Jun 02 2023 06:57:12 webserver maldet(30028): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Jun 02 2023 06:57:12 webserver maldet(30028): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Jun 02 2023 06:57:12 webserver maldet(30028): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Jun 02 2023 06:57:12 webserver maldet(30028): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Jun 02 2023 06:57:12 webserver maldet(30028): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Jun 02 2023 06:57:12 webserver maldet(30028): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Jun 02 2023 06:57:12 webserver maldet(30028): {sigup} verified md5sum of maldet-sigpack.tgz Jun 02 2023 06:57:12 webserver maldet(30028): {sigup} unpacked and installed maldet-sigpack.tgz Jun 02 2023 06:57:12 webserver maldet(30028): {sigup} verified md5sum of maldet-clean.tgz Jun 02 2023 06:57:12 webserver maldet(30028): {sigup} unpacked and installed maldet-clean.tgz Jun 02 2023 06:57:12 webserver maldet(30028): {sigup} signature set update completed Jun 02 2023 06:57:12 webserver maldet(30028): {sigup} 17637 signatures (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Jun 02 2023 06:57:12 webserver maldet(30259): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Jun 02 2023 06:57:13 webserver maldet(30259): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Jun 02 2023 06:57:13 webserver maldet(30259): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Jun 02 2023 06:57:13 webserver maldet(30259): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Jun 02 2023 06:57:13 webserver maldet(30259): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Jun 02 2023 06:59:55 webserver maldet(30259): {scan} file list completed in 162s, found 379 files... Jun 02 2023 06:59:55 webserver maldet(30259): {scan} found clamav binary at /usr/bin/clamdscan, using clamav scanner engine... Jun 02 2023 06:59:55 webserver maldet(30259): {scan} scan of (379 files) in progress... Jun 02 2023 07:00:00 webserver maldet(30259): {scan} clamscan returned an error, check /usr/local/maldetect/logs/clamscan_log for details! Jun 02 2023 07:00:00 webserver maldet(30259): {scan} scan completed on : files 379, malware hits 0, cleaned hits 0, time 168s Jun 02 2023 07:00:00 webserver maldet(30259): {scan} scan report saved, to view run: maldet --report 230602-0657.30259 Jun 03 2023 06:58:58 webserver maldet(26603): {update} checking for available updates... Jun 03 2023 06:58:58 webserver maldet(26603): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Jun 03 2023 06:58:58 webserver maldet(26603): {update} hashing install files and checking against server... Jun 03 2023 06:58:58 webserver maldet(26603): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Jun 03 2023 06:58:58 webserver maldet(26603): {update} latest version already installed. Jun 03 2023 06:58:58 webserver maldet(26739): {sigup} performing signature update check... Jun 03 2023 06:58:58 webserver maldet(26739): {sigup} local signature set is version 202306011138897 Jun 03 2023 06:58:58 webserver maldet(26739): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Jun 03 2023 06:58:58 webserver maldet(26739): {sigup} latest signature set already installed Jun 03 2023 06:58:58 webserver maldet(26854): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Jun 03 2023 06:58:58 webserver maldet(26854): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Jun 03 2023 06:58:58 webserver maldet(26854): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Jun 03 2023 06:58:58 webserver maldet(26854): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Jun 03 2023 06:58:58 webserver maldet(26854): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Jun 03 2023 06:59:03 webserver maldet(26854): {scan} file list completed in 5s, found 703 files... Jun 03 2023 06:59:03 webserver maldet(26854): {scan} found clamav binary at /usr/bin/clamdscan, using clamav scanner engine... Jun 03 2023 06:59:03 webserver maldet(26854): {scan} scan of (703 files) in progress... Jun 03 2023 06:59:17 webserver maldet(26854): {scan} clamscan returned an error, check /usr/local/maldetect/logs/clamscan_log for details! Jun 03 2023 06:59:17 webserver maldet(26854): {scan} scan completed on : files 703, malware hits 0, cleaned hits 0, time 19s Jun 03 2023 06:59:17 webserver maldet(26854): {scan} scan report saved, to view run: maldet --report 230603-0658.26854 Jun 04 2023 06:58:48 webserver maldet(23839): {update} checking for available updates... Jun 04 2023 06:58:48 webserver maldet(23839): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Jun 04 2023 06:58:48 webserver maldet(23839): {update} hashing install files and checking against server... Jun 04 2023 06:58:48 webserver maldet(23839): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Jun 04 2023 06:58:48 webserver maldet(23839): {update} latest version already installed. Jun 04 2023 06:58:48 webserver maldet(23975): {sigup} performing signature update check... Jun 04 2023 06:58:48 webserver maldet(23975): {sigup} local signature set is version 202306011138897 Jun 04 2023 06:58:48 webserver maldet(23975): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Jun 04 2023 06:58:48 webserver maldet(23975): {sigup} latest signature set already installed Jun 04 2023 06:58:48 webserver maldet(24090): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Jun 04 2023 06:58:49 webserver maldet(24090): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Jun 04 2023 06:58:49 webserver maldet(24090): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Jun 04 2023 06:58:49 webserver maldet(24090): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Jun 04 2023 06:58:49 webserver maldet(24090): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Jun 04 2023 07:01:27 webserver maldet(24090): {scan} file list completed in 158s, found 147 files... Jun 04 2023 07:01:27 webserver maldet(24090): {scan} found clamav binary at /usr/bin/clamdscan, using clamav scanner engine... Jun 04 2023 07:01:27 webserver maldet(24090): {scan} scan of (147 files) in progress... Jun 04 2023 07:01:32 webserver maldet(24090): {scan} scan completed on : files 147, malware hits 0, cleaned hits 0, time 163s Jun 04 2023 07:01:32 webserver maldet(24090): {scan} scan report saved, to view run: maldet --report 230604-0658.24090 Jun 05 2023 07:10:28 webserver maldet(21451): {update} checking for available updates... Jun 05 2023 07:10:28 webserver maldet(21451): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Jun 05 2023 07:10:28 webserver maldet(21451): {update} hashing install files and checking against server... Jun 05 2023 07:10:28 webserver maldet(21451): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Jun 05 2023 07:10:28 webserver maldet(21451): {update} latest version already installed. Jun 05 2023 07:10:28 webserver maldet(21587): {sigup} performing signature update check... Jun 05 2023 07:10:28 webserver maldet(21587): {sigup} local signature set is version 202306011138897 Jun 05 2023 07:10:28 webserver maldet(21587): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Jun 05 2023 07:10:28 webserver maldet(21587): {sigup} new signature set 202306041830514 available Jun 05 2023 07:10:28 webserver maldet(21587): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Jun 05 2023 07:10:28 webserver maldet(21587): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Jun 05 2023 07:10:28 webserver maldet(21587): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Jun 05 2023 07:10:28 webserver maldet(21587): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Jun 05 2023 07:10:28 webserver maldet(21587): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Jun 05 2023 07:10:28 webserver maldet(21587): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Jun 05 2023 07:10:28 webserver maldet(21587): {sigup} verified md5sum of maldet-sigpack.tgz Jun 05 2023 07:10:28 webserver maldet(21587): {sigup} unpacked and installed maldet-sigpack.tgz Jun 05 2023 07:10:28 webserver maldet(21587): {sigup} verified md5sum of maldet-clean.tgz Jun 05 2023 07:10:28 webserver maldet(21587): {sigup} unpacked and installed maldet-clean.tgz Jun 05 2023 07:10:28 webserver maldet(21587): {sigup} signature set update completed Jun 05 2023 07:10:28 webserver maldet(21587): {sigup} 17637 signatures (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Jun 05 2023 07:10:28 webserver maldet(21819): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Jun 05 2023 07:10:29 webserver maldet(21819): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Jun 05 2023 07:10:29 webserver maldet(21819): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Jun 05 2023 07:10:29 webserver maldet(21819): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Jun 05 2023 07:10:29 webserver maldet(21819): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Jun 05 2023 07:10:33 webserver maldet(21819): {scan} file list completed in 4s, found 517 files... Jun 05 2023 07:10:33 webserver maldet(21819): {scan} found clamav binary at /usr/bin/clamdscan, using clamav scanner engine... Jun 05 2023 07:10:33 webserver maldet(21819): {scan} scan of (517 files) in progress... Jun 05 2023 07:10:39 webserver maldet(21819): {scan} scan completed on : files 517, malware hits 0, cleaned hits 0, time 11s Jun 05 2023 07:10:39 webserver maldet(21819): {scan} scan report saved, to view run: maldet --report 230605-0710.21819 Jun 06 2023 06:56:34 webserver maldet(24643): {update} checking for available updates... Jun 06 2023 06:56:34 webserver maldet(24643): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Jun 06 2023 06:56:34 webserver maldet(24643): {update} hashing install files and checking against server... Jun 06 2023 06:56:34 webserver maldet(24643): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Jun 06 2023 06:56:34 webserver maldet(24643): {update} latest version already installed. Jun 06 2023 06:56:34 webserver maldet(24779): {sigup} performing signature update check... Jun 06 2023 06:56:34 webserver maldet(24779): {sigup} local signature set is version 202306041830514 Jun 06 2023 06:56:34 webserver maldet(24779): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Jun 06 2023 06:56:34 webserver maldet(24779): {sigup} latest signature set already installed Jun 06 2023 06:56:34 webserver maldet(24894): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Jun 06 2023 06:56:35 webserver maldet(24894): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Jun 06 2023 06:56:35 webserver maldet(24894): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Jun 06 2023 06:56:35 webserver maldet(24894): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Jun 06 2023 06:56:35 webserver maldet(24894): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Jun 06 2023 06:56:39 webserver maldet(24894): {scan} file list completed in 4s, found 294 files... Jun 06 2023 06:56:39 webserver maldet(24894): {scan} found clamav binary at /usr/bin/clamdscan, using clamav scanner engine... Jun 06 2023 06:56:39 webserver maldet(24894): {scan} scan of (294 files) in progress... Jun 06 2023 06:56:43 webserver maldet(24894): {scan} scan completed on : files 294, malware hits 0, cleaned hits 0, time 9s Jun 06 2023 06:56:43 webserver maldet(24894): {scan} scan report saved, to view run: maldet --report 230606-0656.24894 Jun 07 2023 07:07:14 webserver maldet(19510): {update} checking for available updates... Jun 07 2023 07:07:14 webserver maldet(19510): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Jun 07 2023 07:07:14 webserver maldet(19510): {update} hashing install files and checking against server... Jun 07 2023 07:07:14 webserver maldet(19510): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Jun 07 2023 07:07:14 webserver maldet(19510): {update} latest version already installed. Jun 07 2023 07:07:15 webserver maldet(19646): {sigup} performing signature update check... Jun 07 2023 07:07:15 webserver maldet(19646): {sigup} local signature set is version 202306041830514 Jun 07 2023 07:07:15 webserver maldet(19646): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Jun 07 2023 07:07:15 webserver maldet(19646): {sigup} latest signature set already installed Jun 07 2023 07:07:15 webserver maldet(19760): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Jun 07 2023 07:07:15 webserver maldet(19760): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Jun 07 2023 07:07:15 webserver maldet(19760): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Jun 07 2023 07:07:15 webserver maldet(19760): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Jun 07 2023 07:07:15 webserver maldet(19760): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Jun 07 2023 07:07:19 webserver maldet(19760): {scan} file list completed in 4s, found 227 files... Jun 07 2023 07:07:19 webserver maldet(19760): {scan} found clamav binary at /usr/bin/clamdscan, using clamav scanner engine... Jun 07 2023 07:07:19 webserver maldet(19760): {scan} scan of (227 files) in progress... Jun 07 2023 07:07:23 webserver maldet(19760): {scan} scan completed on : files 227, malware hits 0, cleaned hits 0, time 8s Jun 07 2023 07:07:23 webserver maldet(19760): {scan} scan report saved, to view run: maldet --report 230607-0707.19760 Jun 08 2023 06:56:22 webserver maldet(17058): {update} checking for available updates... Jun 08 2023 06:56:22 webserver maldet(17058): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Jun 08 2023 06:56:22 webserver maldet(17058): {update} hashing install files and checking against server... Jun 08 2023 06:56:22 webserver maldet(17058): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Jun 08 2023 06:56:22 webserver maldet(17058): {update} latest version already installed. Jun 08 2023 06:56:22 webserver maldet(17194): {sigup} performing signature update check... Jun 08 2023 06:56:22 webserver maldet(17194): {sigup} local signature set is version 202306041830514 Jun 08 2023 06:56:22 webserver maldet(17194): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Jun 08 2023 06:56:22 webserver maldet(17194): {sigup} latest signature set already installed Jun 08 2023 06:56:23 webserver maldet(17309): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Jun 08 2023 06:56:23 webserver maldet(17309): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Jun 08 2023 06:56:23 webserver maldet(17309): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Jun 08 2023 06:56:23 webserver maldet(17309): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Jun 08 2023 06:56:23 webserver maldet(17309): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Jun 08 2023 06:57:00 webserver maldet(17309): {scan} file list completed in 37s, found 219 files... Jun 08 2023 06:57:00 webserver maldet(17309): {scan} found clamav binary at /usr/bin/clamdscan, using clamav scanner engine... Jun 08 2023 06:57:00 webserver maldet(17309): {scan} scan of (219 files) in progress... Jun 08 2023 06:57:04 webserver maldet(17309): {scan} scan completed on : files 219, malware hits 0, cleaned hits 0, time 41s Jun 08 2023 06:57:04 webserver maldet(17309): {scan} scan report saved, to view run: maldet --report 230608-0656.17309 Jun 09 2023 07:04:14 webserver maldet(12097): {update} checking for available updates... Jun 09 2023 07:04:14 webserver maldet(12097): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Jun 09 2023 07:04:14 webserver maldet(12097): {update} hashing install files and checking against server... Jun 09 2023 07:04:14 webserver maldet(12097): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Jun 09 2023 07:04:14 webserver maldet(12097): {update} latest version already installed. Jun 09 2023 07:04:14 webserver maldet(12234): {sigup} performing signature update check... Jun 09 2023 07:04:14 webserver maldet(12234): {sigup} local signature set is version 202306041830514 Jun 09 2023 07:04:14 webserver maldet(12234): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Jun 09 2023 07:04:14 webserver maldet(12234): {sigup} latest signature set already installed Jun 09 2023 07:04:14 webserver maldet(12348): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Jun 09 2023 07:04:14 webserver maldet(12348): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Jun 09 2023 07:04:14 webserver maldet(12348): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Jun 09 2023 07:04:14 webserver maldet(12348): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Jun 09 2023 07:04:14 webserver maldet(12348): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Jun 09 2023 07:04:32 webserver maldet(12348): {scan} file list completed in 18s, found 235 files... Jun 09 2023 07:04:32 webserver maldet(12348): {scan} found clamav binary at /usr/bin/clamdscan, using clamav scanner engine... Jun 09 2023 07:04:32 webserver maldet(12348): {scan} scan of (235 files) in progress... Jun 09 2023 07:04:37 webserver maldet(12348): {scan} scan completed on : files 235, malware hits 0, cleaned hits 0, time 23s Jun 09 2023 07:04:37 webserver maldet(12348): {scan} scan report saved, to view run: maldet --report 230609-0704.12348 Jun 10 2023 06:57:41 webserver maldet(8295): {update} checking for available updates... Jun 10 2023 06:57:41 webserver maldet(8295): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Jun 10 2023 06:57:41 webserver maldet(8295): {update} hashing install files and checking against server... Jun 10 2023 06:57:41 webserver maldet(8295): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Jun 10 2023 06:57:41 webserver maldet(8295): {update} latest version already installed. Jun 10 2023 06:57:41 webserver maldet(8431): {sigup} performing signature update check... Jun 10 2023 06:57:41 webserver maldet(8431): {sigup} local signature set is version 202306041830514 Jun 10 2023 06:57:41 webserver maldet(8431): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Jun 10 2023 06:57:41 webserver maldet(8431): {sigup} new signature set 202306101175576 available Jun 10 2023 06:57:41 webserver maldet(8431): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Jun 10 2023 06:57:42 webserver maldet(8431): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Jun 10 2023 06:57:42 webserver maldet(8431): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Jun 10 2023 06:57:42 webserver maldet(8431): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Jun 10 2023 06:57:42 webserver maldet(8431): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Jun 10 2023 06:57:42 webserver maldet(8431): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Jun 10 2023 06:57:42 webserver maldet(8431): {sigup} verified md5sum of maldet-sigpack.tgz Jun 10 2023 06:57:42 webserver maldet(8431): {sigup} unpacked and installed maldet-sigpack.tgz Jun 10 2023 06:57:42 webserver maldet(8431): {sigup} verified md5sum of maldet-clean.tgz Jun 10 2023 06:57:42 webserver maldet(8431): {sigup} unpacked and installed maldet-clean.tgz Jun 10 2023 06:57:42 webserver maldet(8431): {sigup} signature set update completed Jun 10 2023 06:57:42 webserver maldet(8431): {sigup} 17637 signatures (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Jun 10 2023 06:57:42 webserver maldet(8666): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Jun 10 2023 06:57:42 webserver maldet(8666): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Jun 10 2023 06:57:42 webserver maldet(8666): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Jun 10 2023 06:57:42 webserver maldet(8666): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Jun 10 2023 06:57:42 webserver maldet(8666): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Jun 10 2023 06:57:47 webserver maldet(8666): {scan} file list completed in 5s, found 107 files... Jun 10 2023 06:57:47 webserver maldet(8666): {scan} found clamav binary at /usr/bin/clamdscan, using clamav scanner engine... Jun 10 2023 06:57:47 webserver maldet(8666): {scan} scan of (107 files) in progress... Jun 10 2023 06:57:50 webserver maldet(8666): {scan} scan completed on : files 107, malware hits 0, cleaned hits 0, time 8s Jun 10 2023 06:57:50 webserver maldet(8666): {scan} scan report saved, to view run: maldet --report 230610-0657.8666 Jun 11 2023 06:58:18 webserver maldet(3105): {update} checking for available updates... Jun 11 2023 06:58:18 webserver maldet(3105): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Jun 11 2023 06:58:18 webserver maldet(3105): {update} hashing install files and checking against server... Jun 11 2023 06:58:18 webserver maldet(3105): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Jun 11 2023 06:58:18 webserver maldet(3105): {update} latest version already installed. Jun 11 2023 06:58:18 webserver maldet(3241): {sigup} performing signature update check... Jun 11 2023 06:58:18 webserver maldet(3241): {sigup} local signature set is version 202306101175576 Jun 11 2023 06:58:18 webserver maldet(3241): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Jun 11 2023 06:58:18 webserver maldet(3241): {sigup} latest signature set already installed Jun 11 2023 06:58:18 webserver maldet(3355): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Jun 11 2023 06:58:18 webserver maldet(3355): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Jun 11 2023 06:58:18 webserver maldet(3355): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Jun 11 2023 06:58:18 webserver maldet(3355): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Jun 11 2023 06:58:18 webserver maldet(3355): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Jun 11 2023 06:58:23 webserver maldet(3355): {scan} file list completed in 5s, found 306 files... Jun 11 2023 06:58:23 webserver maldet(3355): {scan} found clamav binary at /usr/bin/clamdscan, using clamav scanner engine... Jun 11 2023 06:58:23 webserver maldet(3355): {scan} scan of (306 files) in progress... Jun 11 2023 06:58:27 webserver maldet(3355): {scan} scan completed on : files 306, malware hits 0, cleaned hits 0, time 9s Jun 11 2023 06:58:27 webserver maldet(3355): {scan} scan report saved, to view run: maldet --report 230611-0658.3355 Jun 12 2023 06:58:14 webserver maldet(2892): {update} checking for available updates... Jun 12 2023 06:58:14 webserver maldet(2892): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Jun 12 2023 06:58:14 webserver maldet(2892): {update} hashing install files and checking against server... Jun 12 2023 06:58:14 webserver maldet(2892): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Jun 12 2023 06:58:14 webserver maldet(2892): {update} latest version already installed. Jun 12 2023 06:58:14 webserver maldet(3028): {sigup} performing signature update check... Jun 12 2023 06:58:14 webserver maldet(3028): {sigup} local signature set is version 202306101175576 Jun 12 2023 06:58:14 webserver maldet(3028): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Jun 12 2023 06:58:14 webserver maldet(3028): {sigup} latest signature set already installed Jun 12 2023 06:58:14 webserver maldet(3142): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Jun 12 2023 06:58:15 webserver maldet(3142): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Jun 12 2023 06:58:15 webserver maldet(3142): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Jun 12 2023 06:58:15 webserver maldet(3142): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Jun 12 2023 06:58:15 webserver maldet(3142): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Jun 12 2023 07:00:58 webserver maldet(3142): {scan} file list completed in 163s, found 262 files... Jun 12 2023 07:00:58 webserver maldet(3142): {scan} found clamav binary at /usr/bin/clamdscan, using clamav scanner engine... Jun 12 2023 07:00:58 webserver maldet(3142): {scan} scan of (262 files) in progress... Jun 12 2023 07:01:04 webserver maldet(3142): {scan} clamscan returned an error, check /usr/local/maldetect/logs/clamscan_log for details! Jun 12 2023 07:01:04 webserver maldet(3142): {scan} scan completed on : files 262, malware hits 0, cleaned hits 0, time 170s Jun 12 2023 07:01:04 webserver maldet(3142): {scan} scan report saved, to view run: maldet --report 230612-0658.3142 Jun 13 2023 06:56:48 webserver maldet(2536): {update} checking for available updates... Jun 13 2023 06:56:48 webserver maldet(2536): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Jun 13 2023 06:56:48 webserver maldet(2536): {update} hashing install files and checking against server... Jun 13 2023 06:56:48 webserver maldet(2536): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Jun 13 2023 06:56:48 webserver maldet(2536): {update} latest version already installed. Jun 13 2023 06:56:49 webserver maldet(2672): {sigup} performing signature update check... Jun 13 2023 06:56:49 webserver maldet(2672): {sigup} local signature set is version 202306101175576 Jun 13 2023 06:56:49 webserver maldet(2672): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Jun 13 2023 06:56:49 webserver maldet(2672): {sigup} new signature set 202306131866083 available Jun 13 2023 06:56:49 webserver maldet(2672): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Jun 13 2023 06:56:49 webserver maldet(2672): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Jun 13 2023 06:56:49 webserver maldet(2672): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Jun 13 2023 06:56:49 webserver maldet(2672): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Jun 13 2023 06:56:49 webserver maldet(2672): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Jun 13 2023 06:56:49 webserver maldet(2672): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Jun 13 2023 06:56:49 webserver maldet(2672): {sigup} verified md5sum of maldet-sigpack.tgz Jun 13 2023 06:56:49 webserver maldet(2672): {sigup} unpacked and installed maldet-sigpack.tgz Jun 13 2023 06:56:49 webserver maldet(2672): {sigup} verified md5sum of maldet-clean.tgz Jun 13 2023 06:56:49 webserver maldet(2672): {sigup} unpacked and installed maldet-clean.tgz Jun 13 2023 06:56:49 webserver maldet(2672): {sigup} signature set update completed Jun 13 2023 06:56:49 webserver maldet(2672): {sigup} 17637 signatures (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Jun 13 2023 06:56:49 webserver maldet(2904): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Jun 13 2023 06:56:50 webserver maldet(2904): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Jun 13 2023 06:56:50 webserver maldet(2904): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Jun 13 2023 06:56:50 webserver maldet(2904): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Jun 13 2023 06:56:50 webserver maldet(2904): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Jun 13 2023 06:59:27 webserver maldet(2904): {scan} file list completed in 157s, found 302 files... Jun 13 2023 06:59:27 webserver maldet(2904): {scan} found clamav binary at /usr/bin/clamdscan, using clamav scanner engine... Jun 13 2023 06:59:27 webserver maldet(2904): {scan} scan of (302 files) in progress... Jun 13 2023 06:59:31 webserver maldet(2904): {scan} scan completed on : files 302, malware hits 0, cleaned hits 0, time 162s Jun 13 2023 06:59:31 webserver maldet(2904): {scan} scan report saved, to view run: maldet --report 230613-0656.2904 Jun 14 2023 06:58:08 webserver maldet(2275): {update} checking for available updates... Jun 14 2023 06:58:08 webserver maldet(2275): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Jun 14 2023 06:58:08 webserver maldet(2275): {update} hashing install files and checking against server... Jun 14 2023 06:58:08 webserver maldet(2275): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Jun 14 2023 06:58:08 webserver maldet(2275): {update} latest version already installed. Jun 14 2023 06:58:08 webserver maldet(2411): {sigup} performing signature update check... Jun 14 2023 06:58:08 webserver maldet(2411): {sigup} local signature set is version 202306131866083 Jun 14 2023 06:58:08 webserver maldet(2411): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Jun 14 2023 06:58:08 webserver maldet(2411): {sigup} latest signature set already installed Jun 14 2023 06:58:08 webserver maldet(2525): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Jun 14 2023 06:58:08 webserver maldet(2525): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Jun 14 2023 06:58:08 webserver maldet(2525): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Jun 14 2023 06:58:08 webserver maldet(2525): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Jun 14 2023 06:58:08 webserver maldet(2525): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Jun 14 2023 06:58:13 webserver maldet(2525): {scan} file list completed in 5s, found 242 files... Jun 14 2023 06:58:13 webserver maldet(2525): {scan} found clamav binary at /usr/bin/clamdscan, using clamav scanner engine... Jun 14 2023 06:58:13 webserver maldet(2525): {scan} scan of (242 files) in progress... Jun 14 2023 06:58:16 webserver maldet(2525): {scan} scan completed on : files 242, malware hits 0, cleaned hits 0, time 8s Jun 14 2023 06:58:16 webserver maldet(2525): {scan} scan report saved, to view run: maldet --report 230614-0658.2525 Jun 15 2023 06:59:12 webserver maldet(3921): {update} checking for available updates... Jun 15 2023 06:59:12 webserver maldet(3921): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Jun 15 2023 06:59:12 webserver maldet(3921): {update} hashing install files and checking against server... Jun 15 2023 06:59:12 webserver maldet(3921): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Jun 15 2023 06:59:12 webserver maldet(3921): {update} latest version already installed. Jun 15 2023 06:59:12 webserver maldet(4057): {sigup} performing signature update check... Jun 15 2023 06:59:12 webserver maldet(4057): {sigup} local signature set is version 202306131866083 Jun 15 2023 06:59:12 webserver maldet(4057): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Jun 15 2023 06:59:12 webserver maldet(4057): {sigup} latest signature set already installed Jun 15 2023 06:59:13 webserver maldet(4171): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Jun 15 2023 06:59:13 webserver maldet(4171): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Jun 15 2023 06:59:13 webserver maldet(4171): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Jun 15 2023 06:59:13 webserver maldet(4171): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Jun 15 2023 06:59:13 webserver maldet(4171): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Jun 15 2023 07:01:37 webserver maldet(4171): {scan} file list completed in 144s, found 267 files... Jun 15 2023 07:01:37 webserver maldet(4171): {scan} found clamav binary at /usr/bin/clamdscan, using clamav scanner engine... Jun 15 2023 07:01:37 webserver maldet(4171): {scan} scan of (267 files) in progress... Jun 15 2023 07:01:40 webserver maldet(4171): {scan} clamscan returned an error, check /usr/local/maldetect/logs/clamscan_log for details! Jun 15 2023 07:01:40 webserver maldet(4171): {scan} scan completed on : files 267, malware hits 0, cleaned hits 0, time 147s Jun 15 2023 07:01:40 webserver maldet(4171): {scan} scan report saved, to view run: maldet --report 230615-0659.4171 Jun 16 2023 06:58:23 webserver maldet(4969): {update} checking for available updates... Jun 16 2023 06:58:23 webserver maldet(4969): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Jun 16 2023 06:58:23 webserver maldet(4969): {update} hashing install files and checking against server... Jun 16 2023 06:58:23 webserver maldet(4969): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Jun 16 2023 06:58:23 webserver maldet(4969): {update} latest version already installed. Jun 16 2023 06:58:23 webserver maldet(5105): {sigup} performing signature update check... Jun 16 2023 06:58:23 webserver maldet(5105): {sigup} local signature set is version 202306131866083 Jun 16 2023 06:58:23 webserver maldet(5105): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Jun 16 2023 06:58:23 webserver maldet(5105): {sigup} latest signature set already installed Jun 16 2023 06:58:23 webserver maldet(5221): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Jun 16 2023 06:58:23 webserver maldet(5221): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Jun 16 2023 06:58:23 webserver maldet(5221): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Jun 16 2023 06:58:23 webserver maldet(5221): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Jun 16 2023 06:58:23 webserver maldet(5221): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Jun 16 2023 07:00:55 webserver maldet(5221): {scan} file list completed in 152s, found 234 files... Jun 16 2023 07:00:55 webserver maldet(5221): {scan} found clamav binary at /usr/bin/clamdscan, using clamav scanner engine... Jun 16 2023 07:00:55 webserver maldet(5221): {scan} scan of (234 files) in progress... Jun 16 2023 07:00:59 webserver maldet(5221): {scan} clamscan returned an error, check /usr/local/maldetect/logs/clamscan_log for details! Jun 16 2023 07:00:59 webserver maldet(5221): {scan} scan completed on : files 234, malware hits 0, cleaned hits 0, time 156s Jun 16 2023 07:00:59 webserver maldet(5221): {scan} scan report saved, to view run: maldet --report 230616-0658.5221 Jun 17 2023 06:57:03 webserver maldet(6515): {update} checking for available updates... Jun 17 2023 06:57:03 webserver maldet(6515): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Jun 17 2023 06:57:03 webserver maldet(6515): {update} hashing install files and checking against server... Jun 17 2023 06:57:03 webserver maldet(6515): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Jun 17 2023 06:57:03 webserver maldet(6515): {update} latest version already installed. Jun 17 2023 06:57:03 webserver maldet(6652): {sigup} performing signature update check... Jun 17 2023 06:57:03 webserver maldet(6652): {sigup} local signature set is version 202306131866083 Jun 17 2023 06:57:03 webserver maldet(6652): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Jun 17 2023 06:57:03 webserver maldet(6652): {sigup} new signature set 202306162562538 available Jun 17 2023 06:57:03 webserver maldet(6652): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Jun 17 2023 06:57:04 webserver maldet(6652): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Jun 17 2023 06:57:04 webserver maldet(6652): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Jun 17 2023 06:57:04 webserver maldet(6652): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Jun 17 2023 06:57:04 webserver maldet(6652): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Jun 17 2023 06:57:04 webserver maldet(6652): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Jun 17 2023 06:57:04 webserver maldet(6652): {sigup} verified md5sum of maldet-sigpack.tgz Jun 17 2023 06:57:04 webserver maldet(6652): {sigup} unpacked and installed maldet-sigpack.tgz Jun 17 2023 06:57:04 webserver maldet(6652): {sigup} verified md5sum of maldet-clean.tgz Jun 17 2023 06:57:04 webserver maldet(6652): {sigup} unpacked and installed maldet-clean.tgz Jun 17 2023 06:57:04 webserver maldet(6652): {sigup} signature set update completed Jun 17 2023 06:57:04 webserver maldet(6652): {sigup} 17637 signatures (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Jun 17 2023 06:57:04 webserver maldet(6885): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Jun 17 2023 06:57:04 webserver maldet(6885): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Jun 17 2023 06:57:04 webserver maldet(6885): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Jun 17 2023 06:57:04 webserver maldet(6885): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Jun 17 2023 06:57:04 webserver maldet(6885): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Jun 17 2023 06:59:32 webserver maldet(6885): {scan} file list completed in 148s, found 228 files... Jun 17 2023 06:59:32 webserver maldet(6885): {scan} found clamav binary at /usr/bin/clamdscan, using clamav scanner engine... Jun 17 2023 06:59:32 webserver maldet(6885): {scan} scan of (228 files) in progress... Jun 17 2023 06:59:37 webserver maldet(6885): {scan} scan completed on : files 228, malware hits 0, cleaned hits 0, time 153s Jun 17 2023 06:59:37 webserver maldet(6885): {scan} scan report saved, to view run: maldet --report 230617-0657.6885 Jun 18 2023 06:56:52 webserver maldet(12090): {update} checking for available updates... Jun 18 2023 06:56:52 webserver maldet(12090): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Jun 18 2023 06:56:52 webserver maldet(12090): {update} hashing install files and checking against server... Jun 18 2023 06:56:52 webserver maldet(12090): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Jun 18 2023 06:56:53 webserver maldet(12090): {update} latest version already installed. Jun 18 2023 06:56:53 webserver maldet(12226): {sigup} performing signature update check... Jun 18 2023 06:56:53 webserver maldet(12226): {sigup} local signature set is version 202306162562538 Jun 18 2023 06:56:53 webserver maldet(12226): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Jun 18 2023 06:56:53 webserver maldet(12226): {sigup} latest signature set already installed Jun 18 2023 06:56:53 webserver maldet(12341): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Jun 18 2023 06:56:53 webserver maldet(12341): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Jun 18 2023 06:56:53 webserver maldet(12341): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Jun 18 2023 06:56:53 webserver maldet(12341): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Jun 18 2023 06:56:53 webserver maldet(12341): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Jun 18 2023 06:59:18 webserver maldet(12341): {scan} file list completed in 145s, found 228 files... Jun 18 2023 06:59:18 webserver maldet(12341): {scan} found clamav binary at /usr/bin/clamdscan, using clamav scanner engine... Jun 18 2023 06:59:18 webserver maldet(12341): {scan} scan of (228 files) in progress... Jun 18 2023 06:59:24 webserver maldet(12341): {scan} scan completed on : files 228, malware hits 0, cleaned hits 0, time 151s Jun 18 2023 06:59:24 webserver maldet(12341): {scan} scan report saved, to view run: maldet --report 230618-0656.12341 Jun 19 2023 06:57:47 webserver maldet(24682): {update} checking for available updates... Jun 19 2023 06:57:48 webserver maldet(24682): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Jun 19 2023 06:57:48 webserver maldet(24682): {update} hashing install files and checking against server... Jun 19 2023 06:57:48 webserver maldet(24682): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Jun 19 2023 06:57:48 webserver maldet(24682): {update} latest version already installed. Jun 19 2023 06:57:48 webserver maldet(24818): {sigup} performing signature update check... Jun 19 2023 06:57:48 webserver maldet(24818): {sigup} local signature set is version 202306162562538 Jun 19 2023 06:57:48 webserver maldet(24818): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Jun 19 2023 06:57:48 webserver maldet(24818): {sigup} latest signature set already installed Jun 19 2023 06:57:48 webserver maldet(24933): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Jun 19 2023 06:57:48 webserver maldet(24933): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Jun 19 2023 06:57:48 webserver maldet(24933): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Jun 19 2023 06:57:48 webserver maldet(24933): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Jun 19 2023 06:57:48 webserver maldet(24933): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Jun 19 2023 06:57:53 webserver maldet(24933): {scan} file list completed in 5s, found 225 files... Jun 19 2023 06:57:53 webserver maldet(24933): {scan} found clamav binary at /usr/bin/clamdscan, using clamav scanner engine... Jun 19 2023 06:57:53 webserver maldet(24933): {scan} scan of (225 files) in progress... Jun 19 2023 06:58:00 webserver maldet(24933): {scan} scan completed on : files 225, malware hits 0, cleaned hits 0, time 12s Jun 19 2023 06:58:00 webserver maldet(24933): {scan} scan report saved, to view run: maldet --report 230619-0657.24933 Jun 20 2023 06:56:46 webserver maldet(24127): {update} checking for available updates... Jun 20 2023 06:56:46 webserver maldet(24127): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Jun 20 2023 06:56:46 webserver maldet(24127): {update} hashing install files and checking against server... Jun 20 2023 06:56:46 webserver maldet(24127): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Jun 20 2023 06:56:46 webserver maldet(24127): {update} latest version already installed. Jun 20 2023 06:56:46 webserver maldet(24263): {sigup} performing signature update check... Jun 20 2023 06:56:46 webserver maldet(24263): {sigup} local signature set is version 202306162562538 Jun 20 2023 06:56:47 webserver maldet(24263): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Jun 20 2023 06:56:47 webserver maldet(24263): {sigup} latest signature set already installed Jun 20 2023 06:56:47 webserver maldet(24378): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Jun 20 2023 06:56:47 webserver maldet(24378): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Jun 20 2023 06:56:47 webserver maldet(24378): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Jun 20 2023 06:56:47 webserver maldet(24378): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Jun 20 2023 06:56:47 webserver maldet(24378): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Jun 20 2023 06:59:03 webserver maldet(24378): {scan} file list completed in 136s, found 321 files... Jun 20 2023 06:59:03 webserver maldet(24378): {scan} found clamav binary at /usr/bin/clamdscan, using clamav scanner engine... Jun 20 2023 06:59:03 webserver maldet(24378): {scan} scan of (321 files) in progress... Jun 20 2023 06:59:09 webserver maldet(24378): {scan} scan completed on : files 321, malware hits 0, cleaned hits 0, time 142s Jun 20 2023 06:59:09 webserver maldet(24378): {scan} scan report saved, to view run: maldet --report 230620-0656.24378 Jun 21 2023 07:04:40 webserver maldet(27146): {update} checking for available updates... Jun 21 2023 07:04:40 webserver maldet(27146): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Jun 21 2023 07:04:40 webserver maldet(27146): {update} hashing install files and checking against server... Jun 21 2023 07:04:40 webserver maldet(27146): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Jun 21 2023 07:04:40 webserver maldet(27146): {update} latest version already installed. Jun 21 2023 07:04:40 webserver maldet(27282): {sigup} performing signature update check... Jun 21 2023 07:04:40 webserver maldet(27282): {sigup} local signature set is version 202306162562538 Jun 21 2023 07:04:40 webserver maldet(27282): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Jun 21 2023 07:04:40 webserver maldet(27282): {sigup} latest signature set already installed Jun 21 2023 07:04:40 webserver maldet(27397): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Jun 21 2023 07:04:40 webserver maldet(27397): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Jun 21 2023 07:04:40 webserver maldet(27397): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Jun 21 2023 07:04:40 webserver maldet(27397): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Jun 21 2023 07:04:40 webserver maldet(27397): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Jun 21 2023 07:06:55 webserver maldet(27397): {scan} file list completed in 135s, found 481 files... Jun 21 2023 07:06:55 webserver maldet(27397): {scan} found clamav binary at /usr/bin/clamdscan, using clamav scanner engine... Jun 21 2023 07:06:55 webserver maldet(27397): {scan} scan of (481 files) in progress... Jun 21 2023 07:07:01 webserver maldet(27397): {scan} clamscan returned an error, check /usr/local/maldetect/logs/clamscan_log for details! Jun 21 2023 07:07:01 webserver maldet(27397): {scan} scan completed on : files 481, malware hits 0, cleaned hits 0, time 141s Jun 21 2023 07:07:01 webserver maldet(27397): {scan} scan report saved, to view run: maldet --report 230621-0704.27397 Jun 22 2023 06:56:30 webserver maldet(29453): {update} checking for available updates... Jun 22 2023 06:56:30 webserver maldet(29453): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Jun 22 2023 06:56:30 webserver maldet(29453): {update} hashing install files and checking against server... Jun 22 2023 06:56:31 webserver maldet(29453): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Jun 22 2023 06:56:31 webserver maldet(29453): {update} latest version already installed. Jun 22 2023 06:56:31 webserver maldet(29589): {sigup} performing signature update check... Jun 22 2023 06:56:31 webserver maldet(29589): {sigup} local signature set is version 202306162562538 Jun 22 2023 06:56:31 webserver maldet(29589): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Jun 22 2023 06:56:31 webserver maldet(29589): {sigup} new signature set 20230622486882 available Jun 22 2023 06:56:31 webserver maldet(29589): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Jun 22 2023 06:56:31 webserver maldet(29589): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Jun 22 2023 06:56:31 webserver maldet(29589): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Jun 22 2023 06:56:31 webserver maldet(29589): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Jun 22 2023 06:56:31 webserver maldet(29589): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Jun 22 2023 06:56:31 webserver maldet(29589): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Jun 22 2023 06:56:31 webserver maldet(29589): {sigup} unable to verify md5sum of maldet-sigpack.tgz, please try again or contact proj@rfxn.com Jun 22 2023 06:56:31 webserver maldet(29589): {sigup} verified md5sum of maldet-clean.tgz Jun 22 2023 06:56:31 webserver maldet(29589): {sigup} unpacked and installed maldet-clean.tgz Jun 22 2023 06:56:31 webserver maldet(29776): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Jun 22 2023 06:56:31 webserver maldet(29776): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Jun 22 2023 06:56:31 webserver maldet(29776): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Jun 22 2023 06:56:31 webserver maldet(29776): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Jun 22 2023 06:56:31 webserver maldet(29776): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Jun 22 2023 06:58:46 webserver maldet(29776): {scan} file list completed in 135s, found 202 files... Jun 22 2023 06:58:46 webserver maldet(29776): {scan} found clamav binary at /usr/bin/clamdscan, using clamav scanner engine... Jun 22 2023 06:58:46 webserver maldet(29776): {scan} scan of (202 files) in progress... Jun 22 2023 06:58:50 webserver maldet(29776): {scan} clamscan returned an error, check /usr/local/maldetect/logs/clamscan_log for details! Jun 22 2023 06:58:50 webserver maldet(29776): {scan} scan completed on : files 202, malware hits 0, cleaned hits 0, time 139s Jun 22 2023 06:58:50 webserver maldet(29776): {scan} scan report saved, to view run: maldet --report 230622-0656.29776 Jun 23 2023 06:56:03 webserver maldet(30678): {update} checking for available updates... Jun 23 2023 06:56:03 webserver maldet(30678): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Jun 23 2023 06:56:03 webserver maldet(30678): {update} hashing install files and checking against server... Jun 23 2023 06:56:03 webserver maldet(30678): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Jun 23 2023 06:56:03 webserver maldet(30678): {update} latest version already installed. Jun 23 2023 06:56:03 webserver maldet(30818): {sigup} performing signature update check... Jun 23 2023 06:56:03 webserver maldet(30818): {sigup} local signature set is version 202306162562538 Jun 23 2023 06:56:03 webserver maldet(30818): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Jun 23 2023 06:56:03 webserver maldet(30818): {sigup} new signature set 20230622486882 available Jun 23 2023 06:56:03 webserver maldet(30818): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Jun 23 2023 06:56:03 webserver maldet(30818): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Jun 23 2023 06:56:03 webserver maldet(30818): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Jun 23 2023 06:56:03 webserver maldet(30818): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Jun 23 2023 06:56:03 webserver maldet(30818): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Jun 23 2023 06:56:03 webserver maldet(30818): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Jun 23 2023 06:56:03 webserver maldet(30818): {sigup} verified md5sum of maldet-sigpack.tgz Jun 23 2023 06:56:03 webserver maldet(30818): {sigup} unpacked and installed maldet-sigpack.tgz Jun 23 2023 06:56:04 webserver maldet(30818): {sigup} verified md5sum of maldet-clean.tgz Jun 23 2023 06:56:04 webserver maldet(30818): {sigup} unpacked and installed maldet-clean.tgz Jun 23 2023 06:56:04 webserver maldet(30818): {sigup} signature set update completed Jun 23 2023 06:56:04 webserver maldet(30818): {sigup} 17637 signatures (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Jun 23 2023 06:56:04 webserver maldet(31051): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Jun 23 2023 06:56:09 webserver maldet(31051): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Jun 23 2023 06:56:09 webserver maldet(31051): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Jun 23 2023 06:56:09 webserver maldet(31051): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Jun 23 2023 06:56:09 webserver maldet(31051): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Jun 23 2023 06:59:53 webserver maldet(31051): {scan} file list completed in 224s, found 240 files... Jun 23 2023 06:59:53 webserver maldet(31051): {scan} found clamav binary at /usr/bin/clamdscan, using clamav scanner engine... Jun 23 2023 06:59:53 webserver maldet(31051): {scan} scan of (240 files) in progress... Jun 23 2023 06:59:57 webserver maldet(31051): {scan} clamscan returned an error, check /usr/local/maldetect/logs/clamscan_log for details! Jun 23 2023 06:59:57 webserver maldet(31051): {scan} scan completed on : files 240, malware hits 0, cleaned hits 0, time 233s Jun 23 2023 06:59:57 webserver maldet(31051): {scan} scan report saved, to view run: maldet --report 230623-0656.31051 Jun 24 2023 06:14:20 webserver maldet(266): {mon} could not find inotifywait command, install yum package inotify-tools or download from https://github.com/rvoicilas/inotify-tools/wiki/ Jun 24 2023 06:57:51 webserver maldet(3328): {update} checking for available updates... Jun 24 2023 06:57:51 webserver maldet(3328): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Jun 24 2023 06:57:51 webserver maldet(3328): {update} hashing install files and checking against server... Jun 24 2023 06:57:52 webserver maldet(3328): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Jun 24 2023 06:57:52 webserver maldet(3328): {update} latest version already installed. Jun 24 2023 06:57:52 webserver maldet(3464): {sigup} performing signature update check... Jun 24 2023 06:57:52 webserver maldet(3464): {sigup} local signature set is version 20230622486882 Jun 24 2023 06:57:52 webserver maldet(3464): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Jun 24 2023 06:57:52 webserver maldet(3464): {sigup} latest signature set already installed Jun 24 2023 06:57:52 webserver maldet(3579): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Jun 24 2023 06:57:52 webserver maldet(3579): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Jun 24 2023 06:57:52 webserver maldet(3579): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Jun 24 2023 06:57:52 webserver maldet(3579): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Jun 24 2023 06:57:52 webserver maldet(3579): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Jun 24 2023 07:01:33 webserver maldet(3579): {scan} file list completed in 221s, found 216 files... Jun 24 2023 07:01:33 webserver maldet(3579): {scan} found clamav binary at /usr/bin/clamdscan, using clamav scanner engine... Jun 24 2023 07:01:33 webserver maldet(3579): {scan} scan of (216 files) in progress... Jun 24 2023 07:01:40 webserver maldet(3579): {scan} scan completed on : files 216, malware hits 0, cleaned hits 0, time 228s Jun 24 2023 07:01:40 webserver maldet(3579): {scan} scan report saved, to view run: maldet --report 230624-0657.3579 Jun 25 2023 06:59:06 webserver maldet(27480): {update} checking for available updates... Jun 25 2023 06:59:06 webserver maldet(27480): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Jun 25 2023 06:59:06 webserver maldet(27480): {update} hashing install files and checking against server... Jun 25 2023 06:59:06 webserver maldet(27480): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Jun 25 2023 06:59:06 webserver maldet(27480): {update} latest version already installed. Jun 25 2023 06:59:06 webserver maldet(27616): {sigup} performing signature update check... Jun 25 2023 06:59:06 webserver maldet(27616): {sigup} local signature set is version 20230622486882 Jun 25 2023 06:59:06 webserver maldet(27616): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Jun 25 2023 06:59:06 webserver maldet(27616): {sigup} latest signature set already installed Jun 25 2023 06:59:06 webserver maldet(27731): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Jun 25 2023 06:59:06 webserver maldet(27731): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Jun 25 2023 06:59:06 webserver maldet(27731): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Jun 25 2023 06:59:06 webserver maldet(27731): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Jun 25 2023 06:59:06 webserver maldet(27731): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Jun 25 2023 06:59:11 webserver maldet(27731): {scan} file list completed in 5s, found 212 files... Jun 25 2023 06:59:11 webserver maldet(27731): {scan} found clamav binary at /usr/bin/clamdscan, using clamav scanner engine... Jun 25 2023 06:59:11 webserver maldet(27731): {scan} scan of (212 files) in progress... Jun 25 2023 06:59:14 webserver maldet(27731): {scan} scan completed on : files 212, malware hits 0, cleaned hits 0, time 8s Jun 25 2023 06:59:14 webserver maldet(27731): {scan} scan report saved, to view run: maldet --report 230625-0659.27731 Jun 26 2023 06:58:41 webserver maldet(23698): {update} checking for available updates... Jun 26 2023 06:58:41 webserver maldet(23698): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Jun 26 2023 06:58:41 webserver maldet(23698): {update} hashing install files and checking against server... Jun 26 2023 06:58:41 webserver maldet(23698): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Jun 26 2023 06:58:41 webserver maldet(23698): {update} latest version already installed. Jun 26 2023 06:58:41 webserver maldet(23834): {sigup} performing signature update check... Jun 26 2023 06:58:41 webserver maldet(23834): {sigup} local signature set is version 20230622486882 Jun 26 2023 06:58:41 webserver maldet(23834): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Jun 26 2023 06:58:41 webserver maldet(23834): {sigup} new signature set 202306251216229 available Jun 26 2023 06:58:41 webserver maldet(23834): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Jun 26 2023 06:58:41 webserver maldet(23834): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Jun 26 2023 06:58:41 webserver maldet(23834): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Jun 26 2023 06:58:41 webserver maldet(23834): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Jun 26 2023 06:58:41 webserver maldet(23834): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Jun 26 2023 06:58:41 webserver maldet(23834): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Jun 26 2023 06:58:41 webserver maldet(23834): {sigup} verified md5sum of maldet-sigpack.tgz Jun 26 2023 06:58:42 webserver maldet(23834): {sigup} unpacked and installed maldet-sigpack.tgz Jun 26 2023 06:58:42 webserver maldet(23834): {sigup} verified md5sum of maldet-clean.tgz Jun 26 2023 06:58:42 webserver maldet(23834): {sigup} unpacked and installed maldet-clean.tgz Jun 26 2023 06:58:42 webserver maldet(23834): {sigup} signature set update completed Jun 26 2023 06:58:42 webserver maldet(23834): {sigup} 17637 signatures (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Jun 26 2023 06:58:42 webserver maldet(24066): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Jun 26 2023 06:58:42 webserver maldet(24066): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Jun 26 2023 06:58:42 webserver maldet(24066): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Jun 26 2023 06:58:42 webserver maldet(24066): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Jun 26 2023 06:58:42 webserver maldet(24066): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Jun 26 2023 06:58:46 webserver maldet(24066): {scan} file list completed in 4s, found 219 files... Jun 26 2023 06:58:46 webserver maldet(24066): {scan} found clamav binary at /usr/bin/clamdscan, using clamav scanner engine... Jun 26 2023 06:58:46 webserver maldet(24066): {scan} scan of (219 files) in progress... Jun 26 2023 06:58:51 webserver maldet(24066): {scan} scan completed on : files 219, malware hits 0, cleaned hits 0, time 9s Jun 26 2023 06:58:51 webserver maldet(24066): {scan} scan report saved, to view run: maldet --report 230626-0658.24066 Jun 27 2023 06:56:55 webserver maldet(21880): {update} checking for available updates... Jun 27 2023 06:56:55 webserver maldet(21880): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Jun 27 2023 06:56:55 webserver maldet(21880): {update} hashing install files and checking against server... Jun 27 2023 06:56:55 webserver maldet(21880): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Jun 27 2023 06:56:55 webserver maldet(21880): {update} latest version already installed. Jun 27 2023 06:56:55 webserver maldet(22016): {sigup} performing signature update check... Jun 27 2023 06:56:55 webserver maldet(22016): {sigup} local signature set is version 202306251216229 Jun 27 2023 06:56:55 webserver maldet(22016): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Jun 27 2023 06:56:55 webserver maldet(22016): {sigup} latest signature set already installed Jun 27 2023 06:56:55 webserver maldet(22131): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Jun 27 2023 06:56:55 webserver maldet(22131): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Jun 27 2023 06:56:55 webserver maldet(22131): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Jun 27 2023 06:56:55 webserver maldet(22131): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Jun 27 2023 06:56:55 webserver maldet(22131): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Jun 27 2023 06:57:00 webserver maldet(22131): {scan} file list completed in 5s, found 242 files... Jun 27 2023 06:57:00 webserver maldet(22131): {scan} found clamav binary at /usr/bin/clamdscan, using clamav scanner engine... Jun 27 2023 06:57:00 webserver maldet(22131): {scan} scan of (242 files) in progress... Jun 27 2023 06:57:04 webserver maldet(22131): {scan} scan completed on : files 242, malware hits 0, cleaned hits 0, time 9s Jun 27 2023 06:57:04 webserver maldet(22131): {scan} scan report saved, to view run: maldet --report 230627-0656.22131 Jun 28 2023 06:58:16 webserver maldet(18538): {update} checking for available updates... Jun 28 2023 06:58:16 webserver maldet(18538): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Jun 28 2023 06:58:16 webserver maldet(18538): {update} hashing install files and checking against server... Jun 28 2023 06:58:16 webserver maldet(18538): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Jun 28 2023 06:58:16 webserver maldet(18538): {update} latest version already installed. Jun 28 2023 06:58:16 webserver maldet(18674): {sigup} performing signature update check... Jun 28 2023 06:58:16 webserver maldet(18674): {sigup} local signature set is version 202306251216229 Jun 28 2023 06:58:16 webserver maldet(18674): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Jun 28 2023 06:58:16 webserver maldet(18674): {sigup} new signature set 20230628518475 available Jun 28 2023 06:58:16 webserver maldet(18674): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Jun 28 2023 06:58:16 webserver maldet(18674): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Jun 28 2023 06:58:16 webserver maldet(18674): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Jun 28 2023 06:58:16 webserver maldet(18674): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Jun 28 2023 06:58:16 webserver maldet(18674): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Jun 28 2023 06:58:16 webserver maldet(18674): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Jun 28 2023 06:58:16 webserver maldet(18674): {sigup} verified md5sum of maldet-sigpack.tgz Jun 28 2023 06:58:16 webserver maldet(18674): {sigup} unpacked and installed maldet-sigpack.tgz Jun 28 2023 06:58:16 webserver maldet(18674): {sigup} verified md5sum of maldet-clean.tgz Jun 28 2023 06:58:16 webserver maldet(18674): {sigup} unpacked and installed maldet-clean.tgz Jun 28 2023 06:58:16 webserver maldet(18674): {sigup} signature set update completed Jun 28 2023 06:58:16 webserver maldet(18674): {sigup} 17637 signatures (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Jun 28 2023 06:58:16 webserver maldet(18905): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Jun 28 2023 06:58:17 webserver maldet(18905): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Jun 28 2023 06:58:17 webserver maldet(18905): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Jun 28 2023 06:58:17 webserver maldet(18905): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Jun 28 2023 06:58:17 webserver maldet(18905): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Jun 28 2023 06:58:22 webserver maldet(18905): {scan} file list completed in 5s, found 241 files... Jun 28 2023 06:58:22 webserver maldet(18905): {scan} found clamav binary at /usr/bin/clamdscan, using clamav scanner engine... Jun 28 2023 06:58:22 webserver maldet(18905): {scan} scan of (241 files) in progress... Jun 28 2023 06:58:27 webserver maldet(18905): {scan} clamscan returned an error, check /usr/local/maldetect/logs/clamscan_log for details! Jun 28 2023 06:58:27 webserver maldet(18905): {scan} scan completed on : files 241, malware hits 0, cleaned hits 0, time 11s Jun 28 2023 06:58:27 webserver maldet(18905): {scan} scan report saved, to view run: maldet --report 230628-0658.18905 Jun 29 2023 06:56:20 webserver maldet(16409): {update} checking for available updates... Jun 29 2023 06:56:20 webserver maldet(16409): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Jun 29 2023 06:56:20 webserver maldet(16409): {update} hashing install files and checking against server... Jun 29 2023 06:56:20 webserver maldet(16409): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Jun 29 2023 06:56:20 webserver maldet(16409): {update} latest version already installed. Jun 29 2023 06:56:20 webserver maldet(16545): {sigup} performing signature update check... Jun 29 2023 06:56:20 webserver maldet(16545): {sigup} local signature set is version 20230628518475 Jun 29 2023 06:56:20 webserver maldet(16545): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Jun 29 2023 06:56:20 webserver maldet(16545): {sigup} latest signature set already installed Jun 29 2023 06:56:20 webserver maldet(16659): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Jun 29 2023 06:56:20 webserver maldet(16659): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Jun 29 2023 06:56:20 webserver maldet(16659): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Jun 29 2023 06:56:20 webserver maldet(16659): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Jun 29 2023 06:56:20 webserver maldet(16659): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Jun 29 2023 06:56:25 webserver maldet(16659): {scan} file list completed in 5s, found 216 files... Jun 29 2023 06:56:25 webserver maldet(16659): {scan} found clamav binary at /usr/bin/clamdscan, using clamav scanner engine... Jun 29 2023 06:56:25 webserver maldet(16659): {scan} scan of (216 files) in progress... Jun 29 2023 06:56:29 webserver maldet(16659): {scan} scan completed on : files 216, malware hits 0, cleaned hits 0, time 9s Jun 29 2023 06:56:29 webserver maldet(16659): {scan} scan report saved, to view run: maldet --report 230629-0656.16659 Jun 30 2023 07:08:22 webserver maldet(12823): {update} checking for available updates... Jun 30 2023 07:08:22 webserver maldet(12823): {update} could not download https://cdn.rfxn.com/downloads/maldet.current.ver, please try again later. Jun 30 2023 07:08:22 webserver maldet(12823): {update} could not download version file from server, please try again later. Jun 30 2023 07:08:22 webserver maldet(12921): {sigup} performing signature update check... Jun 30 2023 07:08:22 webserver maldet(12921): {sigup} local signature set is version 20230628518475 Jun 30 2023 07:08:22 webserver maldet(12921): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Jun 30 2023 07:08:22 webserver maldet(12921): {sigup} latest signature set already installed Jun 30 2023 07:08:22 webserver maldet(13036): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Jun 30 2023 07:08:22 webserver maldet(13036): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Jun 30 2023 07:08:22 webserver maldet(13036): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Jun 30 2023 07:08:22 webserver maldet(13036): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Jun 30 2023 07:08:22 webserver maldet(13036): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Jun 30 2023 07:08:27 webserver maldet(13036): {scan} file list completed in 5s, found 210 files... Jun 30 2023 07:08:27 webserver maldet(13036): {scan} found clamav binary at /usr/bin/clamdscan, using clamav scanner engine... Jun 30 2023 07:08:27 webserver maldet(13036): {scan} scan of (210 files) in progress... Jun 30 2023 07:08:30 webserver maldet(13036): {scan} scan completed on : files 210, malware hits 0, cleaned hits 0, time 8s Jun 30 2023 07:08:30 webserver maldet(13036): {scan} scan report saved, to view run: maldet --report 230630-0708.13036 Jul 01 2023 06:56:30 webserver maldet(9493): {update} checking for available updates... Jul 01 2023 06:56:30 webserver maldet(9493): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Jul 01 2023 06:56:30 webserver maldet(9493): {update} hashing install files and checking against server... Jul 01 2023 06:56:30 webserver maldet(9493): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Jul 01 2023 06:56:30 webserver maldet(9493): {update} latest version already installed. Jul 01 2023 06:56:30 webserver maldet(9629): {sigup} performing signature update check... Jul 01 2023 06:56:30 webserver maldet(9629): {sigup} local signature set is version 20230628518475 Jul 01 2023 06:56:30 webserver maldet(9629): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Jul 01 2023 06:56:30 webserver maldet(9629): {sigup} new signature set 20230701478685 available Jul 01 2023 06:56:30 webserver maldet(9629): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Jul 01 2023 06:56:31 webserver maldet(9629): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Jul 01 2023 06:56:31 webserver maldet(9629): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Jul 01 2023 06:56:31 webserver maldet(9629): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Jul 01 2023 06:56:31 webserver maldet(9629): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Jul 01 2023 06:56:31 webserver maldet(9629): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Jul 01 2023 06:56:31 webserver maldet(9629): {sigup} unable to verify md5sum of maldet-sigpack.tgz, please try again or contact proj@rfxn.com Jul 01 2023 06:56:31 webserver maldet(9629): {sigup} verified md5sum of maldet-clean.tgz Jul 01 2023 06:56:31 webserver maldet(9629): {sigup} unpacked and installed maldet-clean.tgz Jul 01 2023 06:56:31 webserver maldet(9816): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Jul 01 2023 06:56:31 webserver maldet(9816): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Jul 01 2023 06:56:31 webserver maldet(9816): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Jul 01 2023 06:56:31 webserver maldet(9816): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Jul 01 2023 06:56:31 webserver maldet(9816): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Jul 01 2023 06:56:36 webserver maldet(9816): {scan} file list completed in 5s, found 472 files... Jul 01 2023 06:56:36 webserver maldet(9816): {scan} found clamav binary at /usr/bin/clamdscan, using clamav scanner engine... Jul 01 2023 06:56:36 webserver maldet(9816): {scan} scan of (472 files) in progress... Jul 01 2023 06:56:41 webserver maldet(9816): {scan} scan completed on : files 472, malware hits 0, cleaned hits 0, time 10s Jul 01 2023 06:56:41 webserver maldet(9816): {scan} scan report saved, to view run: maldet --report 230701-0656.9816 Jul 02 2023 06:56:05 webserver maldet(9066): {update} checking for available updates... Jul 02 2023 06:56:05 webserver maldet(9066): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Jul 02 2023 06:56:05 webserver maldet(9066): {update} hashing install files and checking against server... Jul 02 2023 06:56:05 webserver maldet(9066): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Jul 02 2023 06:56:05 webserver maldet(9066): {update} latest version already installed. Jul 02 2023 06:56:05 webserver maldet(9202): {sigup} performing signature update check... Jul 02 2023 06:56:05 webserver maldet(9202): {sigup} local signature set is version 20230628518475 Jul 02 2023 06:56:05 webserver maldet(9202): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Jul 02 2023 06:56:05 webserver maldet(9202): {sigup} new signature set 20230701478685 available Jul 02 2023 06:56:05 webserver maldet(9202): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Jul 02 2023 06:56:05 webserver maldet(9202): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Jul 02 2023 06:56:05 webserver maldet(9202): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Jul 02 2023 06:56:05 webserver maldet(9202): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Jul 02 2023 06:56:05 webserver maldet(9202): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Jul 02 2023 06:56:05 webserver maldet(9202): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Jul 02 2023 06:56:05 webserver maldet(9202): {sigup} verified md5sum of maldet-sigpack.tgz Jul 02 2023 06:56:05 webserver maldet(9202): {sigup} unpacked and installed maldet-sigpack.tgz Jul 02 2023 06:56:05 webserver maldet(9202): {sigup} verified md5sum of maldet-clean.tgz Jul 02 2023 06:56:05 webserver maldet(9202): {sigup} unpacked and installed maldet-clean.tgz Jul 02 2023 06:56:05 webserver maldet(9202): {sigup} signature set update completed Jul 02 2023 06:56:05 webserver maldet(9202): {sigup} 17637 signatures (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Jul 02 2023 06:56:05 webserver maldet(9434): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Jul 02 2023 06:56:06 webserver maldet(9434): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Jul 02 2023 06:56:06 webserver maldet(9434): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Jul 02 2023 06:56:06 webserver maldet(9434): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Jul 02 2023 06:56:06 webserver maldet(9434): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Jul 02 2023 06:56:11 webserver maldet(9434): {scan} file list completed in 5s, found 219 files... Jul 02 2023 06:56:11 webserver maldet(9434): {scan} found clamav binary at /usr/bin/clamdscan, using clamav scanner engine... Jul 02 2023 06:56:11 webserver maldet(9434): {scan} scan of (219 files) in progress... Jul 02 2023 06:56:15 webserver maldet(9434): {scan} scan completed on : files 219, malware hits 0, cleaned hits 0, time 10s Jul 02 2023 06:56:15 webserver maldet(9434): {scan} scan report saved, to view run: maldet --report 230702-0656.9434 Jul 03 2023 06:55:59 webserver maldet(12286): {update} checking for available updates... Jul 03 2023 06:55:59 webserver maldet(12286): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Jul 03 2023 06:55:59 webserver maldet(12286): {update} hashing install files and checking against server... Jul 03 2023 06:56:00 webserver maldet(12286): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Jul 03 2023 06:56:00 webserver maldet(12286): {update} latest version already installed. Jul 03 2023 06:56:00 webserver maldet(12422): {sigup} performing signature update check... Jul 03 2023 06:56:00 webserver maldet(12422): {sigup} local signature set is version 20230701478685 Jul 03 2023 06:56:00 webserver maldet(12422): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Jul 03 2023 06:56:00 webserver maldet(12422): {sigup} latest signature set already installed Jul 03 2023 06:56:00 webserver maldet(12537): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Jul 03 2023 06:56:00 webserver maldet(12537): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Jul 03 2023 06:56:00 webserver maldet(12537): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Jul 03 2023 06:56:00 webserver maldet(12537): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Jul 03 2023 06:56:00 webserver maldet(12537): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Jul 03 2023 06:56:05 webserver maldet(12537): {scan} file list completed in 5s, found 216 files... Jul 03 2023 06:56:05 webserver maldet(12537): {scan} found clamav binary at /usr/bin/clamdscan, using clamav scanner engine... Jul 03 2023 06:56:05 webserver maldet(12537): {scan} scan of (216 files) in progress... Jul 03 2023 06:56:09 webserver maldet(12537): {scan} scan completed on : files 216, malware hits 0, cleaned hits 0, time 9s Jul 03 2023 06:56:09 webserver maldet(12537): {scan} scan report saved, to view run: maldet --report 230703-0656.12537 Jul 04 2023 06:57:03 webserver maldet(13504): {update} checking for available updates... Jul 04 2023 06:57:03 webserver maldet(13504): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Jul 04 2023 06:57:03 webserver maldet(13504): {update} hashing install files and checking against server... Jul 04 2023 06:57:03 webserver maldet(13504): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Jul 04 2023 06:57:03 webserver maldet(13504): {update} latest version already installed. Jul 04 2023 06:57:03 webserver maldet(13640): {sigup} performing signature update check... Jul 04 2023 06:57:03 webserver maldet(13640): {sigup} local signature set is version 20230701478685 Jul 04 2023 06:57:03 webserver maldet(13640): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Jul 04 2023 06:57:03 webserver maldet(13640): {sigup} new signature set 202307041177952 available Jul 04 2023 06:57:03 webserver maldet(13640): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Jul 04 2023 06:57:03 webserver maldet(13640): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Jul 04 2023 06:57:03 webserver maldet(13640): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Jul 04 2023 06:57:03 webserver maldet(13640): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Jul 04 2023 06:57:03 webserver maldet(13640): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Jul 04 2023 06:57:03 webserver maldet(13640): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Jul 04 2023 06:57:03 webserver maldet(13640): {sigup} verified md5sum of maldet-sigpack.tgz Jul 04 2023 06:57:03 webserver maldet(13640): {sigup} unpacked and installed maldet-sigpack.tgz Jul 04 2023 06:57:03 webserver maldet(13640): {sigup} verified md5sum of maldet-clean.tgz Jul 04 2023 06:57:04 webserver maldet(13640): {sigup} unpacked and installed maldet-clean.tgz Jul 04 2023 06:57:04 webserver maldet(13640): {sigup} signature set update completed Jul 04 2023 06:57:04 webserver maldet(13640): {sigup} 17637 signatures (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Jul 04 2023 06:57:04 webserver maldet(13874): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Jul 04 2023 06:57:04 webserver maldet(13874): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Jul 04 2023 06:57:04 webserver maldet(13874): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Jul 04 2023 06:57:04 webserver maldet(13874): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Jul 04 2023 06:57:04 webserver maldet(13874): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Jul 04 2023 06:57:09 webserver maldet(13874): {scan} file list completed in 5s, found 284 files... Jul 04 2023 06:57:09 webserver maldet(13874): {scan} found clamav binary at /usr/bin/clamdscan, using clamav scanner engine... Jul 04 2023 06:57:09 webserver maldet(13874): {scan} scan of (284 files) in progress... Jul 04 2023 06:57:17 webserver maldet(13874): {scan} scan completed on : files 284, malware hits 0, cleaned hits 0, time 13s Jul 04 2023 06:57:17 webserver maldet(13874): {scan} scan report saved, to view run: maldet --report 230704-0657.13874 Jul 05 2023 07:10:17 webserver maldet(15650): {update} checking for available updates... Jul 05 2023 07:10:17 webserver maldet(15650): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Jul 05 2023 07:10:17 webserver maldet(15650): {update} hashing install files and checking against server... Jul 05 2023 07:10:17 webserver maldet(15650): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Jul 05 2023 07:10:17 webserver maldet(15650): {update} latest version already installed. Jul 05 2023 07:10:17 webserver maldet(15786): {sigup} performing signature update check... Jul 05 2023 07:10:17 webserver maldet(15786): {sigup} local signature set is version 20230701478685 Jul 05 2023 07:10:18 webserver maldet(15786): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Jul 05 2023 07:10:18 webserver maldet(15786): {sigup} new signature set 202307041177952 available Jul 05 2023 07:10:18 webserver maldet(15786): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Jul 05 2023 07:10:18 webserver maldet(15786): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Jul 05 2023 07:10:18 webserver maldet(15786): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Jul 05 2023 07:10:18 webserver maldet(15786): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Jul 05 2023 07:10:18 webserver maldet(15786): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Jul 05 2023 07:10:18 webserver maldet(15786): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Jul 05 2023 07:10:18 webserver maldet(15786): {sigup} verified md5sum of maldet-sigpack.tgz Jul 05 2023 07:10:18 webserver maldet(15786): {sigup} unpacked and installed maldet-sigpack.tgz Jul 05 2023 07:10:18 webserver maldet(15786): {sigup} verified md5sum of maldet-clean.tgz Jul 05 2023 07:10:18 webserver maldet(15786): {sigup} unpacked and installed maldet-clean.tgz Jul 05 2023 07:10:18 webserver maldet(15786): {sigup} signature set update completed Jul 05 2023 07:10:18 webserver maldet(15786): {sigup} 17637 signatures (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Jul 05 2023 07:10:18 webserver maldet(16017): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Jul 05 2023 07:10:18 webserver maldet(16017): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Jul 05 2023 07:10:18 webserver maldet(16017): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Jul 05 2023 07:10:18 webserver maldet(16017): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Jul 05 2023 07:10:18 webserver maldet(16017): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Jul 05 2023 07:10:23 webserver maldet(16017): {scan} file list completed in 5s, found 455 files... Jul 05 2023 07:10:23 webserver maldet(16017): {scan} found clamav binary at /usr/bin/clamdscan, using clamav scanner engine... Jul 05 2023 07:10:23 webserver maldet(16017): {scan} scan of (455 files) in progress... Jul 05 2023 07:10:30 webserver maldet(16017): {scan} scan completed on : files 455, malware hits 0, cleaned hits 0, time 12s Jul 05 2023 07:10:30 webserver maldet(16017): {scan} scan report saved, to view run: maldet --report 230705-0710.16017 Jul 06 2023 06:58:44 webserver maldet(16430): {update} checking for available updates... Jul 06 2023 06:58:44 webserver maldet(16430): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Jul 06 2023 06:58:44 webserver maldet(16430): {update} hashing install files and checking against server... Jul 06 2023 06:58:44 webserver maldet(16430): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Jul 06 2023 06:58:44 webserver maldet(16430): {update} latest version already installed. Jul 06 2023 06:58:44 webserver maldet(16566): {sigup} performing signature update check... Jul 06 2023 06:58:44 webserver maldet(16566): {sigup} local signature set is version 202307041177952 Jul 06 2023 06:58:44 webserver maldet(16566): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Jul 06 2023 06:58:44 webserver maldet(16566): {sigup} latest signature set already installed Jul 06 2023 06:58:44 webserver maldet(16681): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Jul 06 2023 06:58:44 webserver maldet(16681): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Jul 06 2023 06:58:44 webserver maldet(16681): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Jul 06 2023 06:58:44 webserver maldet(16681): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Jul 06 2023 06:58:44 webserver maldet(16681): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Jul 06 2023 07:01:01 webserver maldet(16681): {scan} file list completed in 137s, found 73 files... Jul 06 2023 07:01:01 webserver maldet(16681): {scan} found clamav binary at /usr/bin/clamdscan, using clamav scanner engine... Jul 06 2023 07:01:01 webserver maldet(16681): {scan} scan of (73 files) in progress... Jul 06 2023 07:01:06 webserver maldet(16681): {scan} scan completed on : files 73, malware hits 0, cleaned hits 0, time 142s Jul 06 2023 07:01:06 webserver maldet(16681): {scan} scan report saved, to view run: maldet --report 230706-0658.16681 Jul 07 2023 06:57:38 webserver maldet(13022): {update} checking for available updates... Jul 07 2023 06:57:38 webserver maldet(13022): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Jul 07 2023 06:57:38 webserver maldet(13022): {update} hashing install files and checking against server... Jul 07 2023 06:57:38 webserver maldet(13022): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Jul 07 2023 06:57:38 webserver maldet(13022): {update} latest version already installed. Jul 07 2023 06:57:38 webserver maldet(13158): {sigup} performing signature update check... Jul 07 2023 06:57:38 webserver maldet(13158): {sigup} local signature set is version 202307041177952 Jul 07 2023 06:57:38 webserver maldet(13158): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Jul 07 2023 06:57:38 webserver maldet(13158): {sigup} latest signature set already installed Jul 07 2023 06:57:38 webserver maldet(13273): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Jul 07 2023 06:57:38 webserver maldet(13273): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Jul 07 2023 06:57:38 webserver maldet(13273): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Jul 07 2023 06:57:38 webserver maldet(13273): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Jul 07 2023 06:57:38 webserver maldet(13273): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Jul 07 2023 06:57:43 webserver maldet(13273): {scan} file list completed in 5s, found 249 files... Jul 07 2023 06:57:43 webserver maldet(13273): {scan} found clamav binary at /usr/bin/clamdscan, using clamav scanner engine... Jul 07 2023 06:57:43 webserver maldet(13273): {scan} scan of (249 files) in progress... Jul 07 2023 06:57:47 webserver maldet(13273): {scan} scan completed on : files 249, malware hits 0, cleaned hits 0, time 9s Jul 07 2023 06:57:47 webserver maldet(13273): {scan} scan report saved, to view run: maldet --report 230707-0657.13273 Jul 08 2023 07:10:30 webserver maldet(12136): {update} checking for available updates... Jul 08 2023 07:10:30 webserver maldet(12136): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Jul 08 2023 07:10:30 webserver maldet(12136): {update} hashing install files and checking against server... Jul 08 2023 07:10:30 webserver maldet(12136): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Jul 08 2023 07:10:30 webserver maldet(12136): {update} latest version already installed. Jul 08 2023 07:10:31 webserver maldet(12272): {sigup} performing signature update check... Jul 08 2023 07:10:31 webserver maldet(12272): {sigup} local signature set is version 202307041177952 Jul 08 2023 07:10:31 webserver maldet(12272): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Jul 08 2023 07:10:31 webserver maldet(12272): {sigup} new signature set 202307071878302 available Jul 08 2023 07:10:31 webserver maldet(12272): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Jul 08 2023 07:10:31 webserver maldet(12272): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Jul 08 2023 07:10:31 webserver maldet(12272): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Jul 08 2023 07:10:31 webserver maldet(12272): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Jul 08 2023 07:10:31 webserver maldet(12272): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Jul 08 2023 07:10:31 webserver maldet(12272): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Jul 08 2023 07:10:31 webserver maldet(12272): {sigup} verified md5sum of maldet-sigpack.tgz Jul 08 2023 07:10:31 webserver maldet(12272): {sigup} unpacked and installed maldet-sigpack.tgz Jul 08 2023 07:10:31 webserver maldet(12272): {sigup} verified md5sum of maldet-clean.tgz Jul 08 2023 07:10:31 webserver maldet(12272): {sigup} unpacked and installed maldet-clean.tgz Jul 08 2023 07:10:31 webserver maldet(12272): {sigup} signature set update completed Jul 08 2023 07:10:31 webserver maldet(12272): {sigup} 17637 signatures (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Jul 08 2023 07:10:31 webserver maldet(12504): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Jul 08 2023 07:10:31 webserver maldet(12504): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Jul 08 2023 07:10:31 webserver maldet(12504): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Jul 08 2023 07:10:31 webserver maldet(12504): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Jul 08 2023 07:10:31 webserver maldet(12504): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Jul 08 2023 07:10:36 webserver maldet(12504): {scan} file list completed in 5s, found 235 files... Jul 08 2023 07:10:36 webserver maldet(12504): {scan} found clamav binary at /usr/bin/clamdscan, using clamav scanner engine... Jul 08 2023 07:10:36 webserver maldet(12504): {scan} scan of (235 files) in progress... Jul 08 2023 07:10:41 webserver maldet(12504): {scan} scan completed on : files 235, malware hits 0, cleaned hits 0, time 10s Jul 08 2023 07:10:41 webserver maldet(12504): {scan} scan report saved, to view run: maldet --report 230708-0710.12504 Jul 09 2023 06:55:56 webserver maldet(12147): {update} checking for available updates... Jul 09 2023 06:55:56 webserver maldet(12147): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Jul 09 2023 06:55:56 webserver maldet(12147): {update} hashing install files and checking against server... Jul 09 2023 06:55:56 webserver maldet(12147): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Jul 09 2023 06:55:56 webserver maldet(12147): {update} latest version already installed. Jul 09 2023 06:55:56 webserver maldet(12283): {sigup} performing signature update check... Jul 09 2023 06:55:56 webserver maldet(12283): {sigup} local signature set is version 202307071878302 Jul 09 2023 06:55:56 webserver maldet(12283): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Jul 09 2023 06:55:56 webserver maldet(12283): {sigup} latest signature set already installed Jul 09 2023 06:55:56 webserver maldet(12398): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Jul 09 2023 06:55:56 webserver maldet(12398): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Jul 09 2023 06:55:56 webserver maldet(12398): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Jul 09 2023 06:55:56 webserver maldet(12398): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Jul 09 2023 06:55:56 webserver maldet(12398): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Jul 09 2023 06:56:01 webserver maldet(12398): {scan} file list completed in 5s, found 53 files... Jul 09 2023 06:56:01 webserver maldet(12398): {scan} found clamav binary at /usr/bin/clamdscan, using clamav scanner engine... Jul 09 2023 06:56:01 webserver maldet(12398): {scan} scan of (53 files) in progress... Jul 09 2023 06:56:04 webserver maldet(12398): {scan} clamscan returned an error, check /usr/local/maldetect/logs/clamscan_log for details! Jul 09 2023 06:56:04 webserver maldet(12398): {scan} scan completed on : files 53, malware hits 0, cleaned hits 0, time 8s Jul 09 2023 06:56:04 webserver maldet(12398): {scan} scan report saved, to view run: maldet --report 230709-0655.12398 Jul 10 2023 06:57:05 webserver maldet(4814): {update} checking for available updates... Jul 10 2023 06:57:05 webserver maldet(4814): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Jul 10 2023 06:57:05 webserver maldet(4814): {update} hashing install files and checking against server... Jul 10 2023 06:57:05 webserver maldet(4814): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Jul 10 2023 06:57:05 webserver maldet(4814): {update} latest version already installed. Jul 10 2023 06:57:05 webserver maldet(4950): {sigup} performing signature update check... Jul 10 2023 06:57:05 webserver maldet(4950): {sigup} local signature set is version 202307071878302 Jul 10 2023 06:57:05 webserver maldet(4950): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Jul 10 2023 06:57:05 webserver maldet(4950): {sigup} new signature set 202307102576578 available Jul 10 2023 06:57:05 webserver maldet(4950): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Jul 10 2023 06:57:05 webserver maldet(4950): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Jul 10 2023 06:57:05 webserver maldet(4950): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Jul 10 2023 06:57:05 webserver maldet(4950): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Jul 10 2023 06:57:05 webserver maldet(4950): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Jul 10 2023 06:57:05 webserver maldet(4950): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Jul 10 2023 06:57:05 webserver maldet(4950): {sigup} unable to verify md5sum of maldet-sigpack.tgz, please try again or contact proj@rfxn.com Jul 10 2023 06:57:05 webserver maldet(4950): {sigup} verified md5sum of maldet-clean.tgz Jul 10 2023 06:57:05 webserver maldet(4950): {sigup} unpacked and installed maldet-clean.tgz Jul 10 2023 06:57:05 webserver maldet(5137): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Jul 10 2023 06:57:05 webserver maldet(5137): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Jul 10 2023 06:57:05 webserver maldet(5137): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Jul 10 2023 06:57:05 webserver maldet(5137): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Jul 10 2023 06:57:05 webserver maldet(5137): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Jul 10 2023 06:57:10 webserver maldet(5137): {scan} file list completed in 5s, found 8498 files... Jul 10 2023 06:57:10 webserver maldet(5137): {scan} found clamav binary at /usr/bin/clamdscan, using clamav scanner engine... Jul 10 2023 06:57:10 webserver maldet(5137): {scan} scan of (8498 files) in progress... Jul 10 2023 06:59:08 webserver maldet(5137): {scan} clamscan returned an error, check /usr/local/maldetect/logs/clamscan_log for details! Jul 10 2023 06:59:08 webserver maldet(5137): {scan} scan completed on : files 8498, malware hits 0, cleaned hits 0, time 123s Jul 10 2023 06:59:08 webserver maldet(5137): {scan} scan report saved, to view run: maldet --report 230710-0657.5137 Jul 11 2023 06:55:55 webserver maldet(1239): {update} checking for available updates... Jul 11 2023 06:55:55 webserver maldet(1239): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Jul 11 2023 06:55:55 webserver maldet(1239): {update} hashing install files and checking against server... Jul 11 2023 06:55:55 webserver maldet(1239): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Jul 11 2023 06:55:55 webserver maldet(1239): {update} latest version already installed. Jul 11 2023 06:55:55 webserver maldet(1375): {sigup} performing signature update check... Jul 11 2023 06:55:55 webserver maldet(1375): {sigup} local signature set is version 202307071878302 Jul 11 2023 06:55:55 webserver maldet(1375): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Jul 11 2023 06:55:55 webserver maldet(1375): {sigup} new signature set 202307102576578 available Jul 11 2023 06:55:55 webserver maldet(1375): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Jul 11 2023 06:55:55 webserver maldet(1375): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Jul 11 2023 06:55:55 webserver maldet(1375): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Jul 11 2023 06:55:55 webserver maldet(1375): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Jul 11 2023 06:55:55 webserver maldet(1375): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Jul 11 2023 06:55:55 webserver maldet(1375): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Jul 11 2023 06:55:55 webserver maldet(1375): {sigup} verified md5sum of maldet-sigpack.tgz Jul 11 2023 06:55:55 webserver maldet(1375): {sigup} unpacked and installed maldet-sigpack.tgz Jul 11 2023 06:55:55 webserver maldet(1375): {sigup} verified md5sum of maldet-clean.tgz Jul 11 2023 06:55:55 webserver maldet(1375): {sigup} unpacked and installed maldet-clean.tgz Jul 11 2023 06:55:55 webserver maldet(1375): {sigup} signature set update completed Jul 11 2023 06:55:55 webserver maldet(1375): {sigup} 17637 signatures (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Jul 11 2023 06:55:56 webserver maldet(1624): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Jul 11 2023 06:55:56 webserver maldet(1624): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Jul 11 2023 06:55:56 webserver maldet(1624): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Jul 11 2023 06:55:56 webserver maldet(1624): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Jul 11 2023 06:55:56 webserver maldet(1624): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Jul 11 2023 06:56:40 webserver maldet(1624): {scan} file list completed in 44s, found 86 files... Jul 11 2023 06:56:40 webserver maldet(1624): {scan} found clamav binary at /usr/bin/clamdscan, using clamav scanner engine... Jul 11 2023 06:56:40 webserver maldet(1624): {scan} scan of (86 files) in progress... Jul 11 2023 06:56:42 webserver maldet(1624): {scan} scan completed on : files 86, malware hits 0, cleaned hits 0, time 46s Jul 11 2023 06:56:42 webserver maldet(1624): {scan} scan report saved, to view run: maldet --report 230711-0655.1624 Jul 12 2023 06:56:47 webserver maldet(27818): {update} checking for available updates... Jul 12 2023 06:56:47 webserver maldet(27818): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Jul 12 2023 06:56:47 webserver maldet(27818): {update} hashing install files and checking against server... Jul 12 2023 06:56:47 webserver maldet(27818): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Jul 12 2023 06:56:47 webserver maldet(27818): {update} latest version already installed. Jul 12 2023 06:56:47 webserver maldet(27954): {sigup} performing signature update check... Jul 12 2023 06:56:47 webserver maldet(27954): {sigup} local signature set is version 202307102576578 Jul 12 2023 06:56:47 webserver maldet(27954): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Jul 12 2023 06:56:47 webserver maldet(27954): {sigup} latest signature set already installed Jul 12 2023 06:56:47 webserver maldet(28069): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Jul 12 2023 06:56:47 webserver maldet(28069): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Jul 12 2023 06:56:47 webserver maldet(28069): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Jul 12 2023 06:56:47 webserver maldet(28069): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Jul 12 2023 06:56:47 webserver maldet(28069): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Jul 12 2023 06:56:52 webserver maldet(28069): {scan} file list completed in 5s, found 83 files... Jul 12 2023 06:56:52 webserver maldet(28069): {scan} found clamav binary at /usr/bin/clamdscan, using clamav scanner engine... Jul 12 2023 06:56:52 webserver maldet(28069): {scan} scan of (83 files) in progress... Jul 12 2023 06:56:55 webserver maldet(28069): {scan} scan completed on : files 83, malware hits 0, cleaned hits 0, time 8s Jul 12 2023 06:56:55 webserver maldet(28069): {scan} scan report saved, to view run: maldet --report 230712-0656.28069 Jul 13 2023 07:01:47 webserver maldet(20362): {update} checking for available updates... Jul 13 2023 07:01:47 webserver maldet(20362): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Jul 13 2023 07:01:47 webserver maldet(20362): {update} hashing install files and checking against server... Jul 13 2023 07:01:47 webserver maldet(20362): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Jul 13 2023 07:01:47 webserver maldet(20362): {update} latest version already installed. Jul 13 2023 07:01:47 webserver maldet(20498): {sigup} performing signature update check... Jul 13 2023 07:01:47 webserver maldet(20498): {sigup} local signature set is version 202307102576578 Jul 13 2023 07:01:47 webserver maldet(20498): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Jul 13 2023 07:01:47 webserver maldet(20498): {sigup} new signature set 202307133277687 available Jul 13 2023 07:01:47 webserver maldet(20498): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Jul 13 2023 07:01:47 webserver maldet(20498): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Jul 13 2023 07:01:47 webserver maldet(20498): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Jul 13 2023 07:01:47 webserver maldet(20498): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Jul 13 2023 07:01:47 webserver maldet(20498): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Jul 13 2023 07:01:47 webserver maldet(20498): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Jul 13 2023 07:01:47 webserver maldet(20498): {sigup} verified md5sum of maldet-sigpack.tgz Jul 13 2023 07:01:47 webserver maldet(20498): {sigup} unpacked and installed maldet-sigpack.tgz Jul 13 2023 07:01:47 webserver maldet(20498): {sigup} verified md5sum of maldet-clean.tgz Jul 13 2023 07:01:47 webserver maldet(20498): {sigup} unpacked and installed maldet-clean.tgz Jul 13 2023 07:01:47 webserver maldet(20498): {sigup} signature set update completed Jul 13 2023 07:01:47 webserver maldet(20498): {sigup} 17637 signatures (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Jul 13 2023 07:01:47 webserver maldet(20730): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Jul 13 2023 07:01:47 webserver maldet(20730): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Jul 13 2023 07:01:47 webserver maldet(20730): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Jul 13 2023 07:01:47 webserver maldet(20730): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Jul 13 2023 07:01:47 webserver maldet(20730): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Jul 13 2023 07:01:53 webserver maldet(20730): {scan} file list completed in 5s, found 11868 files... Jul 13 2023 07:01:53 webserver maldet(20730): {scan} found clamav binary at /usr/bin/clamdscan, using clamav scanner engine... Jul 13 2023 07:01:53 webserver maldet(20730): {scan} scan of (11868 files) in progress... Jul 13 2023 07:04:16 webserver maldet(20730): {scan} clamscan returned an error, check /usr/local/maldetect/logs/clamscan_log for details! Jul 13 2023 07:04:16 webserver maldet(20730): {scan} scan completed on : files 11868, malware hits 0, cleaned hits 0, time 149s Jul 13 2023 07:04:16 webserver maldet(20730): {scan} scan report saved, to view run: maldet --report 230713-0701.20730 Jul 14 2023 06:56:16 webserver maldet(14397): {update} checking for available updates... Jul 14 2023 06:56:16 webserver maldet(14397): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Jul 14 2023 06:56:16 webserver maldet(14397): {update} hashing install files and checking against server... Jul 14 2023 06:56:16 webserver maldet(14397): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Jul 14 2023 06:56:16 webserver maldet(14397): {update} latest version already installed. Jul 14 2023 06:56:16 webserver maldet(14533): {sigup} performing signature update check... Jul 14 2023 06:56:16 webserver maldet(14533): {sigup} local signature set is version 202307133277687 Jul 14 2023 06:56:16 webserver maldet(14533): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Jul 14 2023 06:56:16 webserver maldet(14533): {sigup} latest signature set already installed Jul 14 2023 06:56:16 webserver maldet(14647): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Jul 14 2023 06:56:16 webserver maldet(14647): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Jul 14 2023 06:56:16 webserver maldet(14647): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Jul 14 2023 06:56:16 webserver maldet(14647): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Jul 14 2023 06:56:16 webserver maldet(14647): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Jul 14 2023 06:56:21 webserver maldet(14647): {scan} file list completed in 5s, found 334 files... Jul 14 2023 06:56:21 webserver maldet(14647): {scan} found clamav binary at /usr/bin/clamdscan, using clamav scanner engine... Jul 14 2023 06:56:21 webserver maldet(14647): {scan} scan of (334 files) in progress... Jul 14 2023 06:56:27 webserver maldet(14647): {scan} scan completed on : files 334, malware hits 0, cleaned hits 0, time 11s Jul 14 2023 06:56:27 webserver maldet(14647): {scan} scan report saved, to view run: maldet --report 230714-0656.14647 Jul 15 2023 06:56:57 webserver maldet(6768): {update} checking for available updates... Jul 15 2023 06:56:57 webserver maldet(6768): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Jul 15 2023 06:56:57 webserver maldet(6768): {update} hashing install files and checking against server... Jul 15 2023 06:56:57 webserver maldet(6768): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Jul 15 2023 06:56:57 webserver maldet(6768): {update} latest version already installed. Jul 15 2023 06:56:58 webserver maldet(6904): {sigup} performing signature update check... Jul 15 2023 06:56:58 webserver maldet(6904): {sigup} local signature set is version 202307133277687 Jul 15 2023 06:56:58 webserver maldet(6904): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Jul 15 2023 06:56:58 webserver maldet(6904): {sigup} latest signature set already installed Jul 15 2023 06:56:58 webserver maldet(7019): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Jul 15 2023 06:56:58 webserver maldet(7019): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Jul 15 2023 06:56:58 webserver maldet(7019): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Jul 15 2023 06:56:58 webserver maldet(7019): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Jul 15 2023 06:56:58 webserver maldet(7019): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Jul 15 2023 06:57:03 webserver maldet(7019): {scan} file list completed in 5s, found 309 files... Jul 15 2023 06:57:03 webserver maldet(7019): {scan} found clamav binary at /usr/bin/clamdscan, using clamav scanner engine... Jul 15 2023 06:57:03 webserver maldet(7019): {scan} scan of (309 files) in progress... Jul 15 2023 06:57:07 webserver maldet(7019): {scan} scan completed on : files 309, malware hits 0, cleaned hits 0, time 9s Jul 15 2023 06:57:07 webserver maldet(7019): {scan} scan report saved, to view run: maldet --report 230715-0656.7019 Jul 16 2023 06:59:22 webserver maldet(30927): {update} checking for available updates... Jul 16 2023 06:59:22 webserver maldet(30927): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Jul 16 2023 06:59:22 webserver maldet(30927): {update} hashing install files and checking against server... Jul 16 2023 06:59:22 webserver maldet(30927): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Jul 16 2023 06:59:22 webserver maldet(30927): {update} latest version already installed. Jul 16 2023 06:59:22 webserver maldet(31063): {sigup} performing signature update check... Jul 16 2023 06:59:22 webserver maldet(31063): {sigup} local signature set is version 202307133277687 Jul 16 2023 06:59:22 webserver maldet(31063): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Jul 16 2023 06:59:22 webserver maldet(31063): {sigup} latest signature set already installed Jul 16 2023 06:59:22 webserver maldet(31178): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Jul 16 2023 06:59:22 webserver maldet(31178): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Jul 16 2023 06:59:22 webserver maldet(31178): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Jul 16 2023 06:59:22 webserver maldet(31178): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Jul 16 2023 06:59:22 webserver maldet(31178): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Jul 16 2023 06:59:27 webserver maldet(31178): {scan} file list completed in 5s, found 295 files... Jul 16 2023 06:59:27 webserver maldet(31178): {scan} found clamav binary at /usr/bin/clamdscan, using clamav scanner engine... Jul 16 2023 06:59:27 webserver maldet(31178): {scan} scan of (295 files) in progress... Jul 16 2023 06:59:30 webserver maldet(31178): {scan} scan completed on : files 295, malware hits 0, cleaned hits 0, time 8s Jul 16 2023 06:59:30 webserver maldet(31178): {scan} scan report saved, to view run: maldet --report 230716-0659.31178 Jul 17 2023 06:56:02 webserver maldet(29381): {update} checking for available updates... Jul 17 2023 06:56:02 webserver maldet(29381): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Jul 17 2023 06:56:02 webserver maldet(29381): {update} hashing install files and checking against server... Jul 17 2023 06:56:02 webserver maldet(29381): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Jul 17 2023 06:56:02 webserver maldet(29381): {update} latest version already installed. Jul 17 2023 06:56:03 webserver maldet(29517): {sigup} performing signature update check... Jul 17 2023 06:56:03 webserver maldet(29517): {sigup} local signature set is version 202307133277687 Jul 17 2023 06:56:03 webserver maldet(29517): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Jul 17 2023 06:56:03 webserver maldet(29517): {sigup} new signature set 20230716521865 available Jul 17 2023 06:56:03 webserver maldet(29517): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Jul 17 2023 06:56:03 webserver maldet(29517): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Jul 17 2023 06:56:03 webserver maldet(29517): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Jul 17 2023 06:56:03 webserver maldet(29517): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Jul 17 2023 06:56:03 webserver maldet(29517): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Jul 17 2023 06:56:03 webserver maldet(29517): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Jul 17 2023 06:56:03 webserver maldet(29517): {sigup} verified md5sum of maldet-sigpack.tgz Jul 17 2023 06:56:03 webserver maldet(29517): {sigup} unpacked and installed maldet-sigpack.tgz Jul 17 2023 06:56:03 webserver maldet(29517): {sigup} verified md5sum of maldet-clean.tgz Jul 17 2023 06:56:03 webserver maldet(29517): {sigup} unpacked and installed maldet-clean.tgz Jul 17 2023 06:56:03 webserver maldet(29517): {sigup} signature set update completed Jul 17 2023 06:56:03 webserver maldet(29517): {sigup} 17637 signatures (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Jul 17 2023 06:56:03 webserver maldet(29749): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Jul 17 2023 06:56:03 webserver maldet(29749): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Jul 17 2023 06:56:03 webserver maldet(29749): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Jul 17 2023 06:56:03 webserver maldet(29749): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Jul 17 2023 06:56:03 webserver maldet(29749): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Jul 17 2023 06:56:08 webserver maldet(29749): {scan} file list completed in 5s, found 404 files... Jul 17 2023 06:56:08 webserver maldet(29749): {scan} found clamav binary at /usr/bin/clamdscan, using clamav scanner engine... Jul 17 2023 06:56:08 webserver maldet(29749): {scan} scan of (404 files) in progress... Jul 17 2023 06:56:15 webserver maldet(29749): {scan} scan completed on : files 404, malware hits 0, cleaned hits 0, time 12s Jul 17 2023 06:56:15 webserver maldet(29749): {scan} scan report saved, to view run: maldet --report 230717-0656.29749 Jul 18 2023 06:56:39 webserver maldet(21184): {update} checking for available updates... Jul 18 2023 06:56:39 webserver maldet(21184): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Jul 18 2023 06:56:39 webserver maldet(21184): {update} hashing install files and checking against server... Jul 18 2023 06:56:39 webserver maldet(21184): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Jul 18 2023 06:56:39 webserver maldet(21184): {update} latest version already installed. Jul 18 2023 06:56:39 webserver maldet(21320): {sigup} performing signature update check... Jul 18 2023 06:56:39 webserver maldet(21320): {sigup} local signature set is version 20230716521865 Jul 18 2023 06:56:39 webserver maldet(21320): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Jul 18 2023 06:56:39 webserver maldet(21320): {sigup} latest signature set already installed Jul 18 2023 06:56:39 webserver maldet(21435): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Jul 18 2023 06:56:39 webserver maldet(21435): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Jul 18 2023 06:56:39 webserver maldet(21435): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Jul 18 2023 06:56:39 webserver maldet(21435): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Jul 18 2023 06:56:39 webserver maldet(21435): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Jul 18 2023 06:56:44 webserver maldet(21435): {scan} file list completed in 5s, found 397 files... Jul 18 2023 06:56:44 webserver maldet(21435): {scan} found clamav binary at /usr/bin/clamdscan, using clamav scanner engine... Jul 18 2023 06:56:44 webserver maldet(21435): {scan} scan of (397 files) in progress... Jul 18 2023 06:56:49 webserver maldet(21435): {scan} scan completed on : files 397, malware hits 0, cleaned hits 0, time 10s Jul 18 2023 06:56:49 webserver maldet(21435): {scan} scan report saved, to view run: maldet --report 230718-0656.21435 Jul 19 2023 07:05:55 webserver maldet(10038): {update} checking for available updates... Jul 19 2023 07:05:55 webserver maldet(10038): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Jul 19 2023 07:05:55 webserver maldet(10038): {update} hashing install files and checking against server... Jul 19 2023 07:05:55 webserver maldet(10038): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Jul 19 2023 07:05:55 webserver maldet(10038): {update} latest version already installed. Jul 19 2023 07:05:55 webserver maldet(10174): {sigup} performing signature update check... Jul 19 2023 07:05:55 webserver maldet(10174): {sigup} local signature set is version 20230716521865 Jul 19 2023 07:05:55 webserver maldet(10174): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Jul 19 2023 07:05:55 webserver maldet(10174): {sigup} latest signature set already installed Jul 19 2023 07:05:55 webserver maldet(10289): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Jul 19 2023 07:05:55 webserver maldet(10289): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Jul 19 2023 07:05:55 webserver maldet(10289): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Jul 19 2023 07:05:55 webserver maldet(10289): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Jul 19 2023 07:05:55 webserver maldet(10289): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Jul 19 2023 07:08:10 webserver maldet(10289): {scan} file list completed in 135s, found 512 files... Jul 19 2023 07:08:10 webserver maldet(10289): {scan} found clamav binary at /usr/bin/clamdscan, using clamav scanner engine... Jul 19 2023 07:08:10 webserver maldet(10289): {scan} scan of (512 files) in progress... Jul 19 2023 07:08:16 webserver maldet(10289): {scan} clamscan returned an error, check /usr/local/maldetect/logs/clamscan_log for details! Jul 19 2023 07:08:16 webserver maldet(10289): {scan} scan completed on : files 512, malware hits 0, cleaned hits 0, time 141s Jul 19 2023 07:08:16 webserver maldet(10289): {scan} scan report saved, to view run: maldet --report 230719-0705.10289 Jul 20 2023 07:00:11 webserver maldet(2520): {update} checking for available updates... Jul 20 2023 07:00:11 webserver maldet(2520): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Jul 20 2023 07:00:11 webserver maldet(2520): {update} hashing install files and checking against server... Jul 20 2023 07:00:11 webserver maldet(2520): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Jul 20 2023 07:00:11 webserver maldet(2520): {update} latest version already installed. Jul 20 2023 07:00:11 webserver maldet(2656): {sigup} performing signature update check... Jul 20 2023 07:00:11 webserver maldet(2656): {sigup} local signature set is version 20230716521865 Jul 20 2023 07:00:11 webserver maldet(2656): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Jul 20 2023 07:00:16 webserver maldet(2656): {sigup} new signature set 202307191228844 available Jul 20 2023 07:00:16 webserver maldet(2656): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Jul 20 2023 07:00:16 webserver maldet(2656): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Jul 20 2023 07:00:16 webserver maldet(2656): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Jul 20 2023 07:00:16 webserver maldet(2656): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Jul 20 2023 07:00:16 webserver maldet(2656): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Jul 20 2023 07:00:16 webserver maldet(2656): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Jul 20 2023 07:00:16 webserver maldet(2656): {sigup} verified md5sum of maldet-sigpack.tgz Jul 20 2023 07:00:19 webserver maldet(2656): {sigup} unpacked and installed maldet-sigpack.tgz Jul 20 2023 07:00:19 webserver maldet(2656): {sigup} verified md5sum of maldet-clean.tgz Jul 20 2023 07:00:19 webserver maldet(2656): {sigup} unpacked and installed maldet-clean.tgz Jul 20 2023 07:00:20 webserver maldet(2656): {sigup} signature set update completed Jul 20 2023 07:00:20 webserver maldet(2656): {sigup} 17637 signatures (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Jul 20 2023 07:00:20 webserver maldet(2923): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Jul 20 2023 07:00:22 webserver maldet(2923): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Jul 20 2023 07:00:22 webserver maldet(2923): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Jul 20 2023 07:00:22 webserver maldet(2923): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Jul 20 2023 07:00:22 webserver maldet(2923): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Jul 20 2023 07:20:23 webserver maldet(2923): {scan} file list completed in 1201s, found 576 files... Jul 20 2023 07:20:23 webserver maldet(2923): {scan} found clamav binary at /usr/bin/clamdscan, using clamav scanner engine... Jul 20 2023 07:20:23 webserver maldet(2923): {scan} scan of (576 files) in progress... Jul 20 2023 07:20:37 webserver maldet(2923): {scan} clamscan returned an error, check /usr/local/maldetect/logs/clamscan_log for details! Jul 20 2023 07:20:37 webserver maldet(2923): {scan} scan completed on : files 576, malware hits 0, cleaned hits 0, time 1217s Jul 20 2023 07:20:37 webserver maldet(2923): {scan} scan report saved, to view run: maldet --report 230720-0700.2923 Jul 21 2023 06:58:35 webserver maldet(30491): {update} checking for available updates... Jul 21 2023 06:58:35 webserver maldet(30491): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Jul 21 2023 06:58:35 webserver maldet(30491): {update} hashing install files and checking against server... Jul 21 2023 06:58:35 webserver maldet(30491): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Jul 21 2023 06:58:35 webserver maldet(30491): {update} latest version already installed. Jul 21 2023 06:58:35 webserver maldet(30627): {sigup} performing signature update check... Jul 21 2023 06:58:35 webserver maldet(30627): {sigup} local signature set is version 202307191228844 Jul 21 2023 06:58:35 webserver maldet(30627): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Jul 21 2023 06:58:36 webserver maldet(30627): {sigup} latest signature set already installed Jul 21 2023 06:58:36 webserver maldet(30742): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Jul 21 2023 06:58:36 webserver maldet(30742): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Jul 21 2023 06:58:36 webserver maldet(30742): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Jul 21 2023 06:58:36 webserver maldet(30742): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Jul 21 2023 06:58:36 webserver maldet(30742): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Jul 21 2023 07:00:52 webserver maldet(30742): {scan} file list completed in 136s, found 734 files... Jul 21 2023 07:00:52 webserver maldet(30742): {scan} found clamav binary at /usr/bin/clamdscan, using clamav scanner engine... Jul 21 2023 07:00:52 webserver maldet(30742): {scan} scan of (734 files) in progress... Jul 21 2023 07:01:00 webserver maldet(30742): {scan} scan completed on : files 734, malware hits 0, cleaned hits 0, time 144s Jul 21 2023 07:01:00 webserver maldet(30742): {scan} scan report saved, to view run: maldet --report 230721-0658.30742 Jul 22 2023 06:58:40 webserver maldet(21081): {update} checking for available updates... Jul 22 2023 06:58:40 webserver maldet(21081): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Jul 22 2023 06:58:40 webserver maldet(21081): {update} hashing install files and checking against server... Jul 22 2023 06:58:41 webserver maldet(21081): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Jul 22 2023 06:58:41 webserver maldet(21081): {update} latest version already installed. Jul 22 2023 06:58:41 webserver maldet(21217): {sigup} performing signature update check... Jul 22 2023 06:58:41 webserver maldet(21217): {sigup} local signature set is version 202307191228844 Jul 22 2023 06:58:41 webserver maldet(21217): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Jul 22 2023 06:58:41 webserver maldet(21217): {sigup} new signature set 202307221934471 available Jul 22 2023 06:58:41 webserver maldet(21217): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Jul 22 2023 06:58:41 webserver maldet(21217): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Jul 22 2023 06:58:41 webserver maldet(21217): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Jul 22 2023 06:58:41 webserver maldet(21217): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Jul 22 2023 06:58:41 webserver maldet(21217): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Jul 22 2023 06:58:41 webserver maldet(21217): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Jul 22 2023 06:58:41 webserver maldet(21217): {sigup} verified md5sum of maldet-sigpack.tgz Jul 22 2023 06:58:41 webserver maldet(21217): {sigup} unpacked and installed maldet-sigpack.tgz Jul 22 2023 06:58:41 webserver maldet(21217): {sigup} verified md5sum of maldet-clean.tgz Jul 22 2023 06:58:41 webserver maldet(21217): {sigup} unpacked and installed maldet-clean.tgz Jul 22 2023 06:58:41 webserver maldet(21217): {sigup} signature set update completed Jul 22 2023 06:58:41 webserver maldet(21217): {sigup} 17637 signatures (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Jul 22 2023 06:58:41 webserver maldet(21449): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Jul 22 2023 06:58:41 webserver maldet(21449): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Jul 22 2023 06:58:41 webserver maldet(21449): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Jul 22 2023 06:58:41 webserver maldet(21449): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Jul 22 2023 06:58:41 webserver maldet(21449): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Jul 22 2023 06:58:46 webserver maldet(21449): {scan} file list completed in 5s, found 564 files... Jul 22 2023 06:58:46 webserver maldet(21449): {scan} found clamav binary at /usr/bin/clamdscan, using clamav scanner engine... Jul 22 2023 06:58:46 webserver maldet(21449): {scan} scan of (564 files) in progress... Jul 22 2023 06:58:53 webserver maldet(21449): {scan} clamscan returned an error, check /usr/local/maldetect/logs/clamscan_log for details! Jul 22 2023 06:58:53 webserver maldet(21449): {scan} scan completed on : files 564, malware hits 0, cleaned hits 0, time 12s Jul 22 2023 06:58:53 webserver maldet(21449): {scan} scan report saved, to view run: maldet --report 230722-0658.21449 Jul 23 2023 06:56:02 webserver maldet(12062): {update} checking for available updates... Jul 23 2023 06:56:02 webserver maldet(12062): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Jul 23 2023 06:56:02 webserver maldet(12062): {update} hashing install files and checking against server... Jul 23 2023 06:56:02 webserver maldet(12062): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Jul 23 2023 06:56:02 webserver maldet(12062): {update} latest version already installed. Jul 23 2023 06:56:02 webserver maldet(12198): {sigup} performing signature update check... Jul 23 2023 06:56:02 webserver maldet(12198): {sigup} local signature set is version 202307191228844 Jul 23 2023 06:56:02 webserver maldet(12198): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Jul 23 2023 06:56:02 webserver maldet(12198): {sigup} new signature set 202307221934471 available Jul 23 2023 06:56:02 webserver maldet(12198): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Jul 23 2023 06:56:03 webserver maldet(12198): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Jul 23 2023 06:56:03 webserver maldet(12198): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Jul 23 2023 06:56:03 webserver maldet(12198): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Jul 23 2023 06:56:03 webserver maldet(12198): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Jul 23 2023 06:56:03 webserver maldet(12198): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Jul 23 2023 06:56:03 webserver maldet(12198): {sigup} verified md5sum of maldet-sigpack.tgz Jul 23 2023 06:56:03 webserver maldet(12198): {sigup} unpacked and installed maldet-sigpack.tgz Jul 23 2023 06:56:03 webserver maldet(12198): {sigup} verified md5sum of maldet-clean.tgz Jul 23 2023 06:56:03 webserver maldet(12198): {sigup} unpacked and installed maldet-clean.tgz Jul 23 2023 06:56:03 webserver maldet(12198): {sigup} signature set update completed Jul 23 2023 06:56:03 webserver maldet(12198): {sigup} 17637 signatures (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Jul 23 2023 06:56:03 webserver maldet(12430): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Jul 23 2023 06:56:03 webserver maldet(12430): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Jul 23 2023 06:56:03 webserver maldet(12430): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Jul 23 2023 06:56:03 webserver maldet(12430): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Jul 23 2023 06:56:03 webserver maldet(12430): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Jul 23 2023 07:01:02 webserver maldet(12430): {scan} file list completed in 299s, found 936 files... Jul 23 2023 07:01:02 webserver maldet(12430): {scan} found clamav binary at /usr/bin/clamdscan, using clamav scanner engine... Jul 23 2023 07:01:02 webserver maldet(12430): {scan} scan of (936 files) in progress... Jul 23 2023 07:01:17 webserver maldet(12430): {scan} clamscan returned an error, check /usr/local/maldetect/logs/clamscan_log for details! Jul 23 2023 07:01:17 webserver maldet(12430): {scan} scan completed on : files 936, malware hits 0, cleaned hits 0, time 314s Jul 23 2023 07:01:17 webserver maldet(12430): {scan} scan report saved, to view run: maldet --report 230723-0656.12430 Jul 23 2023 08:02:00 webserver maldet(264): {mon} could not find inotifywait command, install yum package inotify-tools or download from https://github.com/rvoicilas/inotify-tools/wiki/ Jul 24 2023 06:56:43 webserver maldet(18176): {update} checking for available updates... Jul 24 2023 06:56:43 webserver maldet(18176): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Jul 24 2023 06:56:43 webserver maldet(18176): {update} hashing install files and checking against server... Jul 24 2023 06:56:43 webserver maldet(18176): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Jul 24 2023 06:56:43 webserver maldet(18176): {update} latest version already installed. Jul 24 2023 06:56:43 webserver maldet(18312): {sigup} performing signature update check... Jul 24 2023 06:56:43 webserver maldet(18312): {sigup} local signature set is version 202307221934471 Jul 24 2023 06:56:43 webserver maldet(18312): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Jul 24 2023 06:56:43 webserver maldet(18312): {sigup} latest signature set already installed Jul 24 2023 06:56:43 webserver maldet(18427): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Jul 24 2023 06:56:44 webserver maldet(18427): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Jul 24 2023 06:56:44 webserver maldet(18427): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Jul 24 2023 06:56:44 webserver maldet(18427): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Jul 24 2023 06:56:44 webserver maldet(18427): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Jul 24 2023 07:00:05 webserver maldet(18427): {scan} file list completed in 201s, found 1581 files... Jul 24 2023 07:00:05 webserver maldet(18427): {scan} found clamav binary at /usr/bin/clamdscan, using clamav scanner engine... Jul 24 2023 07:00:05 webserver maldet(18427): {scan} scan of (1581 files) in progress... Jul 24 2023 07:00:27 webserver maldet(18427): {scan} clamscan returned an error, check /usr/local/maldetect/logs/clamscan_log for details! Jul 24 2023 07:00:27 webserver maldet(18427): {scan} scan completed on : files 1581, malware hits 0, cleaned hits 0, time 224s Jul 24 2023 07:00:27 webserver maldet(18427): {scan} scan report saved, to view run: maldet --report 230724-0656.18427 Jul 24 2023 18:19:11 webserver maldet(220): {mon} could not find inotifywait command, install yum package inotify-tools or download from https://github.com/rvoicilas/inotify-tools/wiki/ Jul 25 2023 07:08:15 webserver maldet(30042): {update} checking for available updates... Jul 25 2023 07:08:15 webserver maldet(30042): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Jul 25 2023 07:08:15 webserver maldet(30042): {update} hashing install files and checking against server... Jul 25 2023 07:08:15 webserver maldet(30042): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Jul 25 2023 07:08:15 webserver maldet(30042): {update} latest version already installed. Jul 25 2023 07:08:15 webserver maldet(30178): {sigup} performing signature update check... Jul 25 2023 07:08:15 webserver maldet(30178): {sigup} local signature set is version 202307221934471 Jul 25 2023 07:08:15 webserver maldet(30178): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Jul 25 2023 07:08:15 webserver maldet(30178): {sigup} new signature set 202307252752593 available Jul 25 2023 07:08:15 webserver maldet(30178): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Jul 25 2023 07:08:15 webserver maldet(30178): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Jul 25 2023 07:08:15 webserver maldet(30178): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Jul 25 2023 07:08:15 webserver maldet(30178): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Jul 25 2023 07:08:15 webserver maldet(30178): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Jul 25 2023 07:08:16 webserver maldet(30178): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Jul 25 2023 07:08:16 webserver maldet(30178): {sigup} verified md5sum of maldet-sigpack.tgz Jul 25 2023 07:08:16 webserver maldet(30178): {sigup} unpacked and installed maldet-sigpack.tgz Jul 25 2023 07:08:16 webserver maldet(30178): {sigup} verified md5sum of maldet-clean.tgz Jul 25 2023 07:08:16 webserver maldet(30178): {sigup} unpacked and installed maldet-clean.tgz Jul 25 2023 07:08:16 webserver maldet(30178): {sigup} signature set update completed Jul 25 2023 07:08:16 webserver maldet(30178): {sigup} 17637 signatures (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Jul 25 2023 07:08:16 webserver maldet(30409): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Jul 25 2023 07:08:18 webserver maldet(30409): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Jul 25 2023 07:08:18 webserver maldet(30409): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Jul 25 2023 07:08:18 webserver maldet(30409): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Jul 25 2023 07:08:18 webserver maldet(30409): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Jul 25 2023 07:11:39 webserver maldet(30409): {scan} file list completed in 201s, found 658 files... Jul 25 2023 07:11:39 webserver maldet(30409): {scan} found clamav binary at /usr/bin/clamdscan, using clamav scanner engine... Jul 25 2023 07:11:39 webserver maldet(30409): {scan} scan of (658 files) in progress... Jul 25 2023 07:11:49 webserver maldet(30409): {scan} scan completed on : files 658, malware hits 0, cleaned hits 0, time 213s Jul 25 2023 07:11:49 webserver maldet(30409): {scan} scan report saved, to view run: maldet --report 230725-0708.30409 Jul 26 2023 06:56:32 webserver maldet(15715): {update} checking for available updates... Jul 26 2023 06:56:32 webserver maldet(15715): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Jul 26 2023 06:56:32 webserver maldet(15715): {update} hashing install files and checking against server... Jul 26 2023 06:56:32 webserver maldet(15715): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Jul 26 2023 06:56:32 webserver maldet(15715): {update} latest version already installed. Jul 26 2023 06:56:32 webserver maldet(15851): {sigup} performing signature update check... Jul 26 2023 06:56:32 webserver maldet(15851): {sigup} local signature set is version 202307252752593 Jul 26 2023 06:56:32 webserver maldet(15851): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Jul 26 2023 06:56:32 webserver maldet(15851): {sigup} latest signature set already installed Jul 26 2023 06:56:32 webserver maldet(15966): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Jul 26 2023 06:56:33 webserver maldet(15966): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Jul 26 2023 06:56:33 webserver maldet(15966): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Jul 26 2023 06:56:33 webserver maldet(15966): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Jul 26 2023 06:56:33 webserver maldet(15966): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Jul 26 2023 06:57:04 webserver maldet(15966): {scan} file list completed in 31s, found 394 files... Jul 26 2023 06:57:04 webserver maldet(15966): {scan} found clamav binary at /usr/bin/clamdscan, using clamav scanner engine... Jul 26 2023 06:57:04 webserver maldet(15966): {scan} scan of (394 files) in progress... Jul 26 2023 06:57:11 webserver maldet(15966): {scan} clamscan returned an error, check /usr/local/maldetect/logs/clamscan_log for details! Jul 26 2023 06:57:11 webserver maldet(15966): {scan} scan completed on : files 394, malware hits 0, cleaned hits 0, time 39s Jul 26 2023 06:57:11 webserver maldet(15966): {scan} scan report saved, to view run: maldet --report 230726-0656.15966 Jul 27 2023 07:08:35 webserver maldet(6492): {update} checking for available updates... Jul 27 2023 07:08:35 webserver maldet(6492): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Jul 27 2023 07:08:35 webserver maldet(6492): {update} hashing install files and checking against server... Jul 27 2023 07:08:35 webserver maldet(6492): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Jul 27 2023 07:08:35 webserver maldet(6492): {update} latest version already installed. Jul 27 2023 07:08:35 webserver maldet(6628): {sigup} performing signature update check... Jul 27 2023 07:08:35 webserver maldet(6628): {sigup} local signature set is version 202307252752593 Jul 27 2023 07:08:35 webserver maldet(6628): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Jul 27 2023 07:08:35 webserver maldet(6628): {sigup} latest signature set already installed Jul 27 2023 07:08:35 webserver maldet(6743): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Jul 27 2023 07:08:36 webserver maldet(6743): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Jul 27 2023 07:08:36 webserver maldet(6743): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Jul 27 2023 07:08:36 webserver maldet(6743): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Jul 27 2023 07:08:36 webserver maldet(6743): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Jul 27 2023 07:14:04 webserver maldet(6743): {scan} file list completed in 328s, found 550 files... Jul 27 2023 07:14:04 webserver maldet(6743): {scan} found clamav binary at /usr/bin/clamdscan, using clamav scanner engine... Jul 27 2023 07:14:04 webserver maldet(6743): {scan} scan of (550 files) in progress... Jul 27 2023 07:14:20 webserver maldet(6743): {scan} scan completed on : files 550, malware hits 0, cleaned hits 0, time 345s Jul 27 2023 07:14:20 webserver maldet(6743): {scan} scan report saved, to view run: maldet --report 230727-0708.6743 Jul 28 2023 06:56:13 webserver maldet(30721): {update} checking for available updates... Jul 28 2023 06:56:13 webserver maldet(30721): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Jul 28 2023 06:56:13 webserver maldet(30721): {update} hashing install files and checking against server... Jul 28 2023 06:56:13 webserver maldet(30721): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Jul 28 2023 06:56:13 webserver maldet(30721): {update} latest version already installed. Jul 28 2023 06:56:13 webserver maldet(30857): {sigup} performing signature update check... Jul 28 2023 06:56:13 webserver maldet(30857): {sigup} local signature set is version 202307252752593 Jul 28 2023 06:56:14 webserver maldet(30857): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Jul 28 2023 06:56:14 webserver maldet(30857): {sigup} new signature set 202307283459186 available Jul 28 2023 06:56:14 webserver maldet(30857): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Jul 28 2023 06:56:14 webserver maldet(30857): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Jul 28 2023 06:56:14 webserver maldet(30857): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Jul 28 2023 06:56:14 webserver maldet(30857): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Jul 28 2023 06:56:14 webserver maldet(30857): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Jul 28 2023 06:56:14 webserver maldet(30857): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Jul 28 2023 06:56:14 webserver maldet(30857): {sigup} verified md5sum of maldet-sigpack.tgz Jul 28 2023 06:56:14 webserver maldet(30857): {sigup} unpacked and installed maldet-sigpack.tgz Jul 28 2023 06:56:14 webserver maldet(30857): {sigup} verified md5sum of maldet-clean.tgz Jul 28 2023 06:56:14 webserver maldet(30857): {sigup} unpacked and installed maldet-clean.tgz Jul 28 2023 06:56:14 webserver maldet(30857): {sigup} signature set update completed Jul 28 2023 06:56:14 webserver maldet(30857): {sigup} 17637 signatures (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Jul 28 2023 06:56:15 webserver maldet(31088): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Jul 28 2023 06:56:15 webserver maldet(31088): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Jul 28 2023 06:56:15 webserver maldet(31088): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Jul 28 2023 06:56:15 webserver maldet(31088): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Jul 28 2023 06:56:16 webserver maldet(31088): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Jul 28 2023 07:11:27 webserver maldet(31088): {scan} file list completed in 911s, found 768 files... Jul 28 2023 07:11:27 webserver maldet(31088): {scan} found clamav binary at /usr/bin/clamdscan, using clamav scanner engine... Jul 28 2023 07:11:27 webserver maldet(31088): {scan} scan of (768 files) in progress... Jul 28 2023 07:12:07 webserver maldet(31088): {scan} clamscan returned an error, check /usr/local/maldetect/logs/clamscan_log for details! Jul 28 2023 07:12:07 webserver maldet(31088): {scan} scan completed on : files 768, malware hits 0, cleaned hits 0, time 952s Jul 28 2023 07:12:07 webserver maldet(31088): {scan} scan report saved, to view run: maldet --report 230728-0656.31088 Jul 29 2023 06:57:41 webserver maldet(17456): {update} checking for available updates... Jul 29 2023 06:57:41 webserver maldet(17456): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Jul 29 2023 06:57:41 webserver maldet(17456): {update} hashing install files and checking against server... Jul 29 2023 06:57:41 webserver maldet(17456): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Jul 29 2023 06:57:41 webserver maldet(17456): {update} latest version already installed. Jul 29 2023 06:57:41 webserver maldet(17592): {sigup} performing signature update check... Jul 29 2023 06:57:41 webserver maldet(17592): {sigup} local signature set is version 202307283459186 Jul 29 2023 06:57:41 webserver maldet(17592): {sigup} could not download https://cdn.rfxn.com/downloads/maldet.sigs.ver, please try again later. Jul 29 2023 06:57:41 webserver maldet(17592): {sigup} could not download signature data from server, please try again later. Jul 29 2023 06:57:42 webserver maldet(17699): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Jul 29 2023 06:57:42 webserver maldet(17699): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Jul 29 2023 06:57:42 webserver maldet(17699): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Jul 29 2023 06:57:43 webserver maldet(17699): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Jul 29 2023 06:57:43 webserver maldet(17699): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Jul 29 2023 07:12:00 webserver maldet(17699): {scan} file list completed in 857s, found 1001 files... Jul 29 2023 07:12:00 webserver maldet(17699): {scan} found clamav binary at /usr/bin/clamdscan, using clamav scanner engine... Jul 29 2023 07:12:00 webserver maldet(17699): {scan} scan of (1001 files) in progress... Jul 29 2023 07:12:25 webserver maldet(17699): {scan} clamscan returned an error, check /usr/local/maldetect/logs/clamscan_log for details! Jul 29 2023 07:12:25 webserver maldet(17699): {scan} scan completed on : files 1001, malware hits 0, cleaned hits 0, time 883s Jul 29 2023 07:12:25 webserver maldet(17699): {scan} scan report saved, to view run: maldet --report 230729-0657.17699 Jul 30 2023 06:59:04 webserver maldet(4231): {update} checking for available updates... Jul 30 2023 06:59:04 webserver maldet(4231): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Jul 30 2023 06:59:04 webserver maldet(4231): {update} hashing install files and checking against server... Jul 30 2023 06:59:05 webserver maldet(4231): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Jul 30 2023 06:59:05 webserver maldet(4231): {update} latest version already installed. Jul 30 2023 06:59:05 webserver maldet(4367): {sigup} performing signature update check... Jul 30 2023 06:59:05 webserver maldet(4367): {sigup} local signature set is version 202307283459186 Jul 30 2023 06:59:05 webserver maldet(4367): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Jul 30 2023 06:59:06 webserver maldet(4367): {sigup} latest signature set already installed Jul 30 2023 06:59:06 webserver maldet(4482): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Jul 30 2023 06:59:12 webserver maldet(4482): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Jul 30 2023 06:59:12 webserver maldet(4482): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Jul 30 2023 06:59:12 webserver maldet(4482): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Jul 30 2023 06:59:12 webserver maldet(4482): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Jul 30 2023 07:33:41 webserver maldet(4482): {scan} file list completed in 2069s, found 1349 files... Jul 30 2023 07:33:41 webserver maldet(4482): {scan} found clamav binary at /usr/bin/clamdscan, using clamav scanner engine... Jul 30 2023 07:33:41 webserver maldet(4482): {scan} scan of (1349 files) in progress... Jul 30 2023 07:34:34 webserver maldet(4482): {scan} clamscan returned an error, check /usr/local/maldetect/logs/clamscan_log for details! Jul 30 2023 07:34:34 webserver maldet(4482): {scan} scan completed on : files 1349, malware hits 0, cleaned hits 0, time 2128s Jul 30 2023 07:34:34 webserver maldet(4482): {scan} scan report saved, to view run: maldet --report 230730-0659.4482 Jul 31 2023 06:56:29 webserver maldet(23288): {update} checking for available updates... Jul 31 2023 06:56:29 webserver maldet(23288): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Jul 31 2023 06:56:29 webserver maldet(23288): {update} hashing install files and checking against server... Jul 31 2023 06:56:29 webserver maldet(23288): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Jul 31 2023 06:56:29 webserver maldet(23288): {update} latest version already installed. Jul 31 2023 06:56:30 webserver maldet(23424): {sigup} performing signature update check... Jul 31 2023 06:56:30 webserver maldet(23424): {sigup} local signature set is version 202307283459186 Jul 31 2023 06:56:30 webserver maldet(23424): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Jul 31 2023 06:56:30 webserver maldet(23424): {sigup} latest signature set already installed Jul 31 2023 06:56:30 webserver maldet(23539): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Jul 31 2023 06:56:30 webserver maldet(23539): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Jul 31 2023 06:56:30 webserver maldet(23539): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Jul 31 2023 06:56:30 webserver maldet(23539): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Jul 31 2023 06:56:30 webserver maldet(23539): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Jul 31 2023 06:58:46 webserver maldet(23539): {scan} file list completed in 136s, found 674 files... Jul 31 2023 06:58:46 webserver maldet(23539): {scan} found clamav binary at /usr/bin/clamdscan, using clamav scanner engine... Jul 31 2023 06:58:46 webserver maldet(23539): {scan} scan of (674 files) in progress... Jul 31 2023 06:58:58 webserver maldet(23539): {scan} clamscan returned an error, check /usr/local/maldetect/logs/clamscan_log for details! Jul 31 2023 06:58:58 webserver maldet(23539): {scan} scan completed on : files 674, malware hits 0, cleaned hits 0, time 148s Jul 31 2023 06:58:58 webserver maldet(23539): {scan} scan report saved, to view run: maldet --report 230731-0656.23539 Aug 01 2023 06:58:31 webserver maldet(12448): {update} checking for available updates... Aug 01 2023 06:58:31 webserver maldet(12448): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Aug 01 2023 06:58:31 webserver maldet(12448): {update} hashing install files and checking against server... Aug 01 2023 06:58:31 webserver maldet(12448): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Aug 01 2023 06:58:31 webserver maldet(12448): {update} latest version already installed. Aug 01 2023 06:58:31 webserver maldet(12584): {sigup} performing signature update check... Aug 01 2023 06:58:31 webserver maldet(12584): {sigup} local signature set is version 202307283459186 Aug 01 2023 06:58:31 webserver maldet(12584): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Aug 01 2023 06:58:31 webserver maldet(12584): {sigup} new signature set 20230731491014 available Aug 01 2023 06:58:31 webserver maldet(12584): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Aug 01 2023 06:58:31 webserver maldet(12584): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Aug 01 2023 06:58:31 webserver maldet(12584): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Aug 01 2023 06:58:31 webserver maldet(12584): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Aug 01 2023 06:58:31 webserver maldet(12584): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Aug 01 2023 06:58:31 webserver maldet(12584): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Aug 01 2023 06:58:31 webserver maldet(12584): {sigup} unable to verify md5sum of maldet-sigpack.tgz, please try again or contact proj@rfxn.com Aug 01 2023 06:58:31 webserver maldet(12584): {sigup} verified md5sum of maldet-clean.tgz Aug 01 2023 06:58:31 webserver maldet(12584): {sigup} unpacked and installed maldet-clean.tgz Aug 01 2023 06:58:31 webserver maldet(12771): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Aug 01 2023 06:58:32 webserver maldet(12771): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Aug 01 2023 06:58:32 webserver maldet(12771): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Aug 01 2023 06:58:32 webserver maldet(12771): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Aug 01 2023 06:58:32 webserver maldet(12771): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Aug 01 2023 07:00:47 webserver maldet(12771): {scan} file list completed in 135s, found 866 files... Aug 01 2023 07:00:47 webserver maldet(12771): {scan} found clamav binary at /usr/bin/clamdscan, using clamav scanner engine... Aug 01 2023 07:00:47 webserver maldet(12771): {scan} scan of (866 files) in progress... Aug 01 2023 07:00:59 webserver maldet(12771): {scan} clamscan returned an error, check /usr/local/maldetect/logs/clamscan_log for details! Aug 01 2023 07:00:59 webserver maldet(12771): {scan} scan completed on : files 866, malware hits 0, cleaned hits 0, time 148s Aug 01 2023 07:00:59 webserver maldet(12771): {scan} scan report saved, to view run: maldet --report 230801-0658.12771 Aug 02 2023 06:57:48 webserver maldet(30645): {update} checking for available updates... Aug 02 2023 06:57:48 webserver maldet(30645): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Aug 02 2023 06:57:48 webserver maldet(30645): {update} hashing install files and checking against server... Aug 02 2023 06:57:48 webserver maldet(30645): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Aug 02 2023 06:57:48 webserver maldet(30645): {update} latest version already installed. Aug 02 2023 06:57:48 webserver maldet(30781): {sigup} performing signature update check... Aug 02 2023 06:57:48 webserver maldet(30781): {sigup} local signature set is version 202307283459186 Aug 02 2023 06:57:48 webserver maldet(30781): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Aug 02 2023 06:57:48 webserver maldet(30781): {sigup} new signature set 202308011141420 available Aug 02 2023 06:57:48 webserver maldet(30781): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Aug 02 2023 06:57:48 webserver maldet(30781): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Aug 02 2023 06:57:48 webserver maldet(30781): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Aug 02 2023 06:57:48 webserver maldet(30781): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Aug 02 2023 06:57:48 webserver maldet(30781): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Aug 02 2023 06:57:48 webserver maldet(30781): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Aug 02 2023 06:57:48 webserver maldet(30781): {sigup} verified md5sum of maldet-sigpack.tgz Aug 02 2023 06:57:49 webserver maldet(30781): {sigup} unpacked and installed maldet-sigpack.tgz Aug 02 2023 06:57:49 webserver maldet(30781): {sigup} verified md5sum of maldet-clean.tgz Aug 02 2023 06:57:49 webserver maldet(30781): {sigup} unpacked and installed maldet-clean.tgz Aug 02 2023 06:57:49 webserver maldet(30781): {sigup} signature set update completed Aug 02 2023 06:57:49 webserver maldet(30781): {sigup} 17637 signatures (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Aug 02 2023 06:57:49 webserver maldet(31013): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Aug 02 2023 06:57:49 webserver maldet(31013): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Aug 02 2023 06:57:49 webserver maldet(31013): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Aug 02 2023 06:57:49 webserver maldet(31013): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Aug 02 2023 06:57:49 webserver maldet(31013): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Aug 02 2023 07:00:44 webserver maldet(31013): {scan} file list completed in 175s, found 642 files... Aug 02 2023 07:00:44 webserver maldet(31013): {scan} found clamav binary at /usr/bin/clamdscan, using clamav scanner engine... Aug 02 2023 07:00:44 webserver maldet(31013): {scan} scan of (642 files) in progress... Aug 02 2023 07:00:54 webserver maldet(31013): {scan} scan completed on : files 642, malware hits 0, cleaned hits 0, time 185s Aug 02 2023 07:00:54 webserver maldet(31013): {scan} scan report saved, to view run: maldet --report 230802-0657.31013 Aug 03 2023 06:56:00 webserver maldet(24548): {update} checking for available updates... Aug 03 2023 06:56:00 webserver maldet(24548): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Aug 03 2023 06:56:00 webserver maldet(24548): {update} hashing install files and checking against server... Aug 03 2023 06:56:00 webserver maldet(24548): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Aug 03 2023 06:56:00 webserver maldet(24548): {update} latest version already installed. Aug 03 2023 06:56:00 webserver maldet(24684): {sigup} performing signature update check... Aug 03 2023 06:56:00 webserver maldet(24684): {sigup} local signature set is version 202308011141420 Aug 03 2023 06:56:01 webserver maldet(24684): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Aug 03 2023 06:56:01 webserver maldet(24684): {sigup} latest signature set already installed Aug 03 2023 06:56:01 webserver maldet(24799): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Aug 03 2023 06:56:01 webserver maldet(24799): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Aug 03 2023 06:56:01 webserver maldet(24799): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Aug 03 2023 06:56:01 webserver maldet(24799): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Aug 03 2023 06:56:01 webserver maldet(24799): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Aug 03 2023 06:58:19 webserver maldet(24799): {scan} file list completed in 138s, found 781 files... Aug 03 2023 06:58:19 webserver maldet(24799): {scan} found clamav binary at /usr/bin/clamdscan, using clamav scanner engine... Aug 03 2023 06:58:19 webserver maldet(24799): {scan} scan of (781 files) in progress... Aug 03 2023 06:58:30 webserver maldet(24799): {scan} scan completed on : files 781, malware hits 0, cleaned hits 0, time 149s Aug 03 2023 06:58:30 webserver maldet(24799): {scan} scan report saved, to view run: maldet --report 230803-0656.24799 Aug 04 2023 07:03:00 webserver maldet(15614): {update} checking for available updates... Aug 04 2023 07:03:00 webserver maldet(15614): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Aug 04 2023 07:03:00 webserver maldet(15614): {update} hashing install files and checking against server... Aug 04 2023 07:03:01 webserver maldet(15614): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Aug 04 2023 07:03:01 webserver maldet(15614): {update} latest version already installed. Aug 04 2023 07:03:01 webserver maldet(15750): {sigup} performing signature update check... Aug 04 2023 07:03:01 webserver maldet(15750): {sigup} local signature set is version 202308011141420 Aug 04 2023 07:03:01 webserver maldet(15750): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Aug 04 2023 07:03:01 webserver maldet(15750): {sigup} new signature set 202308041840306 available Aug 04 2023 07:03:01 webserver maldet(15750): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Aug 04 2023 07:03:01 webserver maldet(15750): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Aug 04 2023 07:03:01 webserver maldet(15750): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Aug 04 2023 07:03:01 webserver maldet(15750): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Aug 04 2023 07:03:01 webserver maldet(15750): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Aug 04 2023 07:03:01 webserver maldet(15750): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Aug 04 2023 07:03:01 webserver maldet(15750): {sigup} verified md5sum of maldet-sigpack.tgz Aug 04 2023 07:03:01 webserver maldet(15750): {sigup} unpacked and installed maldet-sigpack.tgz Aug 04 2023 07:03:01 webserver maldet(15750): {sigup} verified md5sum of maldet-clean.tgz Aug 04 2023 07:03:01 webserver maldet(15750): {sigup} unpacked and installed maldet-clean.tgz Aug 04 2023 07:03:01 webserver maldet(15750): {sigup} signature set update completed Aug 04 2023 07:03:01 webserver maldet(15750): {sigup} 17637 signatures (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Aug 04 2023 07:03:01 webserver maldet(15982): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Aug 04 2023 07:03:02 webserver maldet(15982): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Aug 04 2023 07:03:02 webserver maldet(15982): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Aug 04 2023 07:03:02 webserver maldet(15982): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Aug 04 2023 07:03:02 webserver maldet(15982): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Aug 04 2023 07:05:41 webserver maldet(15982): {scan} file list completed in 159s, found 827 files... Aug 04 2023 07:05:41 webserver maldet(15982): {scan} found clamav binary at /usr/bin/clamdscan, using clamav scanner engine... Aug 04 2023 07:05:41 webserver maldet(15982): {scan} scan of (827 files) in progress... Aug 04 2023 07:05:53 webserver maldet(15982): {scan} clamscan returned an error, check /usr/local/maldetect/logs/clamscan_log for details! Aug 04 2023 07:05:53 webserver maldet(15982): {scan} scan completed on : files 827, malware hits 0, cleaned hits 0, time 172s Aug 04 2023 07:05:53 webserver maldet(15982): {scan} scan report saved, to view run: maldet --report 230804-0703.15982 Aug 05 2023 06:57:28 webserver maldet(6426): {update} checking for available updates... Aug 05 2023 06:57:28 webserver maldet(6426): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Aug 05 2023 06:57:28 webserver maldet(6426): {update} hashing install files and checking against server... Aug 05 2023 06:57:28 webserver maldet(6426): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Aug 05 2023 06:57:28 webserver maldet(6426): {update} latest version already installed. Aug 05 2023 06:57:28 webserver maldet(6562): {sigup} performing signature update check... Aug 05 2023 06:57:28 webserver maldet(6562): {sigup} local signature set is version 202308041840306 Aug 05 2023 06:57:28 webserver maldet(6562): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Aug 05 2023 06:57:28 webserver maldet(6562): {sigup} latest signature set already installed Aug 05 2023 06:57:28 webserver maldet(6677): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Aug 05 2023 06:57:29 webserver maldet(6677): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Aug 05 2023 06:57:29 webserver maldet(6677): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Aug 05 2023 06:57:29 webserver maldet(6677): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Aug 05 2023 06:57:29 webserver maldet(6677): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Aug 05 2023 06:59:45 webserver maldet(6677): {scan} file list completed in 136s, found 626 files... Aug 05 2023 06:59:45 webserver maldet(6677): {scan} found clamav binary at /usr/bin/clamdscan, using clamav scanner engine... Aug 05 2023 06:59:45 webserver maldet(6677): {scan} scan of (626 files) in progress... Aug 05 2023 06:59:55 webserver maldet(6677): {scan} scan completed on : files 626, malware hits 0, cleaned hits 0, time 147s Aug 05 2023 06:59:55 webserver maldet(6677): {scan} scan report saved, to view run: maldet --report 230805-0657.6677 Aug 06 2023 06:58:57 webserver maldet(3396): {update} checking for available updates... Aug 06 2023 06:58:57 webserver maldet(3396): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Aug 06 2023 06:58:57 webserver maldet(3396): {update} hashing install files and checking against server... Aug 06 2023 06:58:57 webserver maldet(3396): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Aug 06 2023 06:58:57 webserver maldet(3396): {update} latest version already installed. Aug 06 2023 06:58:57 webserver maldet(3532): {sigup} performing signature update check... Aug 06 2023 06:58:57 webserver maldet(3532): {sigup} local signature set is version 202308041840306 Aug 06 2023 06:58:57 webserver maldet(3532): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Aug 06 2023 06:58:57 webserver maldet(3532): {sigup} latest signature set already installed Aug 06 2023 06:58:57 webserver maldet(3647): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Aug 06 2023 06:58:57 webserver maldet(3647): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Aug 06 2023 06:58:57 webserver maldet(3647): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Aug 06 2023 06:58:57 webserver maldet(3647): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Aug 06 2023 06:58:57 webserver maldet(3647): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Aug 06 2023 07:02:38 webserver maldet(3647): {scan} file list completed in 221s, found 710 files... Aug 06 2023 07:02:38 webserver maldet(3647): {scan} found clamav binary at /usr/bin/clamdscan, using clamav scanner engine... Aug 06 2023 07:02:38 webserver maldet(3647): {scan} scan of (710 files) in progress... Aug 06 2023 07:02:50 webserver maldet(3647): {scan} scan completed on : files 710, malware hits 0, cleaned hits 0, time 233s Aug 06 2023 07:02:50 webserver maldet(3647): {scan} scan report saved, to view run: maldet --report 230806-0658.3647 Aug 07 2023 06:59:33 webserver maldet(26332): {update} checking for available updates... Aug 07 2023 06:59:33 webserver maldet(26332): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Aug 07 2023 06:59:33 webserver maldet(26332): {update} hashing install files and checking against server... Aug 07 2023 06:59:33 webserver maldet(26332): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Aug 07 2023 06:59:33 webserver maldet(26332): {update} latest version already installed. Aug 07 2023 06:59:34 webserver maldet(26468): {sigup} performing signature update check... Aug 07 2023 06:59:34 webserver maldet(26468): {sigup} local signature set is version 202308041840306 Aug 07 2023 06:59:34 webserver maldet(26468): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Aug 07 2023 06:59:34 webserver maldet(26468): {sigup} new signature set 202308072563181 available Aug 07 2023 06:59:34 webserver maldet(26468): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Aug 07 2023 06:59:34 webserver maldet(26468): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Aug 07 2023 06:59:34 webserver maldet(26468): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Aug 07 2023 06:59:34 webserver maldet(26468): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Aug 07 2023 06:59:34 webserver maldet(26468): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Aug 07 2023 06:59:34 webserver maldet(26468): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Aug 07 2023 06:59:34 webserver maldet(26468): {sigup} unable to verify md5sum of maldet-sigpack.tgz, please try again or contact proj@rfxn.com Aug 07 2023 06:59:34 webserver maldet(26468): {sigup} verified md5sum of maldet-clean.tgz Aug 07 2023 06:59:34 webserver maldet(26468): {sigup} unpacked and installed maldet-clean.tgz Aug 07 2023 06:59:34 webserver maldet(26655): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Aug 07 2023 06:59:34 webserver maldet(26655): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Aug 07 2023 06:59:34 webserver maldet(26655): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Aug 07 2023 06:59:34 webserver maldet(26655): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Aug 07 2023 06:59:34 webserver maldet(26655): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Aug 07 2023 07:02:28 webserver maldet(26655): {scan} file list completed in 174s, found 1058 files... Aug 07 2023 07:02:28 webserver maldet(26655): {scan} found clamav binary at /usr/bin/clamdscan, using clamav scanner engine... Aug 07 2023 07:02:28 webserver maldet(26655): {scan} scan of (1058 files) in progress... Aug 07 2023 07:02:42 webserver maldet(26655): {scan} scan completed on : files 1058, malware hits 0, cleaned hits 0, time 188s Aug 07 2023 07:02:42 webserver maldet(26655): {scan} scan report saved, to view run: maldet --report 230807-0659.26655 Aug 08 2023 06:58:48 webserver maldet(23459): {update} checking for available updates... Aug 08 2023 06:58:48 webserver maldet(23459): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Aug 08 2023 06:58:48 webserver maldet(23459): {update} hashing install files and checking against server... Aug 08 2023 06:58:48 webserver maldet(23459): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Aug 08 2023 06:58:48 webserver maldet(23459): {update} latest version already installed. Aug 08 2023 06:58:48 webserver maldet(23595): {sigup} performing signature update check... Aug 08 2023 06:58:48 webserver maldet(23595): {sigup} local signature set is version 202308041840306 Aug 08 2023 06:58:48 webserver maldet(23595): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Aug 08 2023 06:58:49 webserver maldet(23595): {sigup} new signature set 202308072563181 available Aug 08 2023 06:58:49 webserver maldet(23595): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Aug 08 2023 06:58:49 webserver maldet(23595): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Aug 08 2023 06:58:49 webserver maldet(23595): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Aug 08 2023 06:58:49 webserver maldet(23595): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Aug 08 2023 06:58:49 webserver maldet(23595): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Aug 08 2023 06:58:49 webserver maldet(23595): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Aug 08 2023 06:58:49 webserver maldet(23595): {sigup} verified md5sum of maldet-sigpack.tgz Aug 08 2023 06:58:49 webserver maldet(23595): {sigup} unpacked and installed maldet-sigpack.tgz Aug 08 2023 06:58:49 webserver maldet(23595): {sigup} verified md5sum of maldet-clean.tgz Aug 08 2023 06:58:49 webserver maldet(23595): {sigup} unpacked and installed maldet-clean.tgz Aug 08 2023 06:58:49 webserver maldet(23595): {sigup} signature set update completed Aug 08 2023 06:58:49 webserver maldet(23595): {sigup} 17637 signatures (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Aug 08 2023 06:58:49 webserver maldet(23827): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Aug 08 2023 06:58:49 webserver maldet(23827): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Aug 08 2023 06:58:49 webserver maldet(23827): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Aug 08 2023 06:58:49 webserver maldet(23827): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Aug 08 2023 06:58:49 webserver maldet(23827): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Aug 08 2023 07:01:37 webserver maldet(23827): {scan} file list completed in 168s, found 1474 files... Aug 08 2023 07:01:37 webserver maldet(23827): {scan} found clamav binary at /usr/bin/clamdscan, using clamav scanner engine... Aug 08 2023 07:01:37 webserver maldet(23827): {scan} scan of (1474 files) in progress... Aug 08 2023 07:01:57 webserver maldet(23827): {scan} clamscan returned an error, check /usr/local/maldetect/logs/clamscan_log for details! Aug 08 2023 07:01:57 webserver maldet(23827): {scan} scan completed on : files 1474, malware hits 0, cleaned hits 0, time 188s Aug 08 2023 07:01:57 webserver maldet(23827): {scan} scan report saved, to view run: maldet --report 230808-0658.23827 Aug 09 2023 06:56:17 webserver maldet(17457): {update} checking for available updates... Aug 09 2023 06:56:17 webserver maldet(17457): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Aug 09 2023 06:56:17 webserver maldet(17457): {update} hashing install files and checking against server... Aug 09 2023 06:56:17 webserver maldet(17457): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Aug 09 2023 06:56:17 webserver maldet(17457): {update} latest version already installed. Aug 09 2023 06:56:17 webserver maldet(17594): {sigup} performing signature update check... Aug 09 2023 06:56:17 webserver maldet(17594): {sigup} local signature set is version 202308072563181 Aug 09 2023 06:56:17 webserver maldet(17594): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Aug 09 2023 06:56:17 webserver maldet(17594): {sigup} latest signature set already installed Aug 09 2023 06:56:17 webserver maldet(17709): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Aug 09 2023 06:56:19 webserver maldet(17709): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Aug 09 2023 06:56:19 webserver maldet(17709): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Aug 09 2023 06:56:19 webserver maldet(17709): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Aug 09 2023 06:56:19 webserver maldet(17709): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Aug 09 2023 07:15:17 webserver maldet(17709): {scan} file list completed in 1138s, found 4769 files... Aug 09 2023 07:15:17 webserver maldet(17709): {scan} found clamav binary at /usr/bin/clamdscan, using clamav scanner engine... Aug 09 2023 07:15:17 webserver maldet(17709): {scan} scan of (4769 files) in progress... Aug 09 2023 07:18:03 webserver maldet(17709): {scan} clamscan returned an error, check /usr/local/maldetect/logs/clamscan_log for details! Aug 09 2023 07:18:03 webserver maldet(17709): {scan} scan completed on : files 4769, malware hits 0, cleaned hits 0, time 1306s Aug 09 2023 07:18:03 webserver maldet(17709): {scan} scan report saved, to view run: maldet --report 230809-0656.17709 Aug 10 2023 07:00:23 webserver maldet(19802): {update} checking for available updates... Aug 10 2023 07:00:23 webserver maldet(19802): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Aug 10 2023 07:00:23 webserver maldet(19802): {update} hashing install files and checking against server... Aug 10 2023 07:00:23 webserver maldet(19802): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Aug 10 2023 07:00:23 webserver maldet(19802): {update} latest version already installed. Aug 10 2023 07:00:23 webserver maldet(19938): {sigup} performing signature update check... Aug 10 2023 07:00:23 webserver maldet(19938): {sigup} local signature set is version 202308072563181 Aug 10 2023 07:00:23 webserver maldet(19938): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Aug 10 2023 07:00:23 webserver maldet(19938): {sigup} new signature set 202308103259474 available Aug 10 2023 07:00:23 webserver maldet(19938): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Aug 10 2023 07:00:24 webserver maldet(19938): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Aug 10 2023 07:00:24 webserver maldet(19938): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Aug 10 2023 07:00:24 webserver maldet(19938): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Aug 10 2023 07:00:24 webserver maldet(19938): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Aug 10 2023 07:00:24 webserver maldet(19938): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Aug 10 2023 07:00:24 webserver maldet(19938): {sigup} verified md5sum of maldet-sigpack.tgz Aug 10 2023 07:00:24 webserver maldet(19938): {sigup} unpacked and installed maldet-sigpack.tgz Aug 10 2023 07:00:24 webserver maldet(19938): {sigup} verified md5sum of maldet-clean.tgz Aug 10 2023 07:00:24 webserver maldet(19938): {sigup} unpacked and installed maldet-clean.tgz Aug 10 2023 07:00:24 webserver maldet(19938): {sigup} signature set update completed Aug 10 2023 07:00:24 webserver maldet(19938): {sigup} 17637 signatures (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Aug 10 2023 07:00:24 webserver maldet(20169): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Aug 10 2023 07:00:41 webserver maldet(20169): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Aug 10 2023 07:00:41 webserver maldet(20169): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Aug 10 2023 07:00:41 webserver maldet(20169): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Aug 10 2023 07:00:41 webserver maldet(20169): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Aug 10 2023 07:05:09 webserver maldet(20169): {scan} file list completed in 268s, found 350 files... Aug 10 2023 07:05:09 webserver maldet(20169): {scan} found clamav binary at /usr/bin/clamdscan, using clamav scanner engine... Aug 10 2023 07:05:10 webserver maldet(20169): {scan} scan of (350 files) in progress... Aug 10 2023 07:05:17 webserver maldet(20169): {scan} scan completed on : files 350, malware hits 0, cleaned hits 0, time 293s Aug 10 2023 07:05:17 webserver maldet(20169): {scan} scan report saved, to view run: maldet --report 230810-0700.20169 Aug 11 2023 06:59:24 webserver maldet(12167): {update} checking for available updates... Aug 11 2023 06:59:24 webserver maldet(12167): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Aug 11 2023 06:59:24 webserver maldet(12167): {update} hashing install files and checking against server... Aug 11 2023 06:59:24 webserver maldet(12167): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Aug 11 2023 06:59:24 webserver maldet(12167): {update} latest version already installed. Aug 11 2023 06:59:24 webserver maldet(12303): {sigup} performing signature update check... Aug 11 2023 06:59:24 webserver maldet(12303): {sigup} local signature set is version 202308103259474 Aug 11 2023 06:59:24 webserver maldet(12303): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Aug 11 2023 06:59:24 webserver maldet(12303): {sigup} latest signature set already installed Aug 11 2023 06:59:24 webserver maldet(12418): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Aug 11 2023 06:59:24 webserver maldet(12418): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Aug 11 2023 06:59:24 webserver maldet(12418): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Aug 11 2023 06:59:24 webserver maldet(12418): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Aug 11 2023 06:59:24 webserver maldet(12418): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Aug 11 2023 07:02:04 webserver maldet(12418): {scan} file list completed in 160s, found 3699 files... Aug 11 2023 07:02:04 webserver maldet(12418): {scan} found clamav binary at /usr/bin/clamdscan, using clamav scanner engine... Aug 11 2023 07:02:04 webserver maldet(12418): {scan} scan of (3699 files) in progress... Aug 11 2023 07:03:01 webserver maldet(12418): {scan} clamscan returned an error, check /usr/local/maldetect/logs/clamscan_log for details! Aug 11 2023 07:03:01 webserver maldet(12418): {scan} scan completed on : files 3699, malware hits 0, cleaned hits 0, time 217s Aug 11 2023 07:03:01 webserver maldet(12418): {scan} scan report saved, to view run: maldet --report 230811-0659.12418 Aug 12 2023 06:58:30 webserver maldet(9475): {update} checking for available updates... Aug 12 2023 06:58:30 webserver maldet(9475): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Aug 12 2023 06:58:30 webserver maldet(9475): {update} hashing install files and checking against server... Aug 12 2023 06:58:30 webserver maldet(9475): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Aug 12 2023 06:58:30 webserver maldet(9475): {update} latest version already installed. Aug 12 2023 06:58:30 webserver maldet(9612): {sigup} performing signature update check... Aug 12 2023 06:58:30 webserver maldet(9612): {sigup} local signature set is version 202308103259474 Aug 12 2023 06:58:30 webserver maldet(9612): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Aug 12 2023 06:58:30 webserver maldet(9612): {sigup} latest signature set already installed Aug 12 2023 06:58:30 webserver maldet(9727): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Aug 12 2023 06:58:31 webserver maldet(9727): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Aug 12 2023 06:58:31 webserver maldet(9727): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Aug 12 2023 06:58:31 webserver maldet(9727): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Aug 12 2023 06:58:31 webserver maldet(9727): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Aug 12 2023 07:01:15 webserver maldet(9727): {scan} file list completed in 164s, found 584 files... Aug 12 2023 07:01:15 webserver maldet(9727): {scan} found clamav binary at /usr/bin/clamdscan, using clamav scanner engine... Aug 12 2023 07:01:15 webserver maldet(9727): {scan} scan of (584 files) in progress... Aug 12 2023 07:01:24 webserver maldet(9727): {scan} scan completed on : files 584, malware hits 0, cleaned hits 0, time 174s Aug 12 2023 07:01:24 webserver maldet(9727): {scan} scan report saved, to view run: maldet --report 230812-0658.9727 Aug 13 2023 06:58:52 webserver maldet(7134): {update} checking for available updates... Aug 13 2023 06:58:53 webserver maldet(7134): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Aug 13 2023 06:58:53 webserver maldet(7134): {update} hashing install files and checking against server... Aug 13 2023 06:58:53 webserver maldet(7134): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Aug 13 2023 06:58:53 webserver maldet(7134): {update} latest version already installed. Aug 13 2023 06:58:53 webserver maldet(7270): {sigup} performing signature update check... Aug 13 2023 06:58:53 webserver maldet(7270): {sigup} local signature set is version 202308103259474 Aug 13 2023 06:58:53 webserver maldet(7270): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Aug 13 2023 06:58:53 webserver maldet(7270): {sigup} latest signature set already installed Aug 13 2023 06:58:54 webserver maldet(7385): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Aug 13 2023 06:59:38 webserver maldet(7385): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Aug 13 2023 06:59:38 webserver maldet(7385): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Aug 13 2023 06:59:38 webserver maldet(7385): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Aug 13 2023 06:59:38 webserver maldet(7385): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Aug 13 2023 07:12:08 webserver maldet(7385): {scan} file list completed in 750s, found 11129 files... Aug 13 2023 07:12:08 webserver maldet(7385): {scan} found clamav binary at /usr/bin/clamdscan, using clamav scanner engine... Aug 13 2023 07:12:08 webserver maldet(7385): {scan} scan of (11129 files) in progress... Aug 13 2023 07:16:18 webserver maldet(7385): {scan} clamscan returned an error, check /usr/local/maldetect/logs/clamscan_log for details! Aug 13 2023 07:16:18 webserver maldet(7385): {scan} scan completed on : files 11129, malware hits 0, cleaned hits 0, time 1044s Aug 13 2023 07:16:18 webserver maldet(7385): {scan} scan report saved, to view run: maldet --report 230813-0658.7385 Aug 14 2023 07:09:15 webserver maldet(32416): {update} checking for available updates... Aug 14 2023 07:09:15 webserver maldet(32416): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Aug 14 2023 07:09:15 webserver maldet(32416): {update} hashing install files and checking against server... Aug 14 2023 07:09:15 webserver maldet(32416): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Aug 14 2023 07:09:15 webserver maldet(32416): {update} latest version already installed. Aug 14 2023 07:09:15 webserver maldet(32552): {sigup} performing signature update check... Aug 14 2023 07:09:15 webserver maldet(32552): {sigup} local signature set is version 202308103259474 Aug 14 2023 07:09:15 webserver maldet(32552): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Aug 14 2023 07:09:15 webserver maldet(32552): {sigup} latest signature set already installed Aug 14 2023 07:09:15 webserver maldet(32666): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Aug 14 2023 07:09:17 webserver maldet(32666): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Aug 14 2023 07:09:17 webserver maldet(32666): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Aug 14 2023 07:09:17 webserver maldet(32666): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Aug 14 2023 07:09:17 webserver maldet(32666): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Aug 14 2023 07:11:29 webserver maldet(32666): {scan} file list completed in 132s, found 358 files... Aug 14 2023 07:11:29 webserver maldet(32666): {scan} found clamav binary at /usr/bin/clamdscan, using clamav scanner engine... Aug 14 2023 07:11:29 webserver maldet(32666): {scan} scan of (358 files) in progress... Aug 14 2023 07:11:35 webserver maldet(32666): {scan} scan completed on : files 358, malware hits 0, cleaned hits 0, time 140s Aug 14 2023 07:11:35 webserver maldet(32666): {scan} scan report saved, to view run: maldet --report 230814-0709.32666 Aug 15 2023 07:04:30 webserver maldet(26569): {update} checking for available updates... Aug 15 2023 07:04:31 webserver maldet(26569): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Aug 15 2023 07:04:31 webserver maldet(26569): {update} hashing install files and checking against server... Aug 15 2023 07:04:31 webserver maldet(26569): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Aug 15 2023 07:04:31 webserver maldet(26569): {update} latest version already installed. Aug 15 2023 07:04:31 webserver maldet(26705): {sigup} performing signature update check... Aug 15 2023 07:04:31 webserver maldet(26705): {sigup} local signature set is version 202308103259474 Aug 15 2023 07:04:31 webserver maldet(26705): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Aug 15 2023 07:04:31 webserver maldet(26705): {sigup} latest signature set already installed Aug 15 2023 07:04:31 webserver maldet(26821): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Aug 15 2023 07:04:31 webserver maldet(26821): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Aug 15 2023 07:04:31 webserver maldet(26821): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Aug 15 2023 07:04:31 webserver maldet(26821): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Aug 15 2023 07:04:31 webserver maldet(26821): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Aug 15 2023 07:07:00 webserver maldet(26821): {scan} file list completed in 149s, found 416 files... Aug 15 2023 07:07:00 webserver maldet(26821): {scan} found clamav binary at /usr/bin/clamdscan, using clamav scanner engine... Aug 15 2023 07:07:00 webserver maldet(26821): {scan} scan of (416 files) in progress... Aug 15 2023 07:07:08 webserver maldet(26821): {scan} clamscan returned an error, check /usr/local/maldetect/logs/clamscan_log for details! Aug 15 2023 07:07:08 webserver maldet(26821): {scan} scan completed on : files 416, malware hits 0, cleaned hits 0, time 157s Aug 15 2023 07:07:08 webserver maldet(26821): {scan} scan report saved, to view run: maldet --report 230815-0704.26821 Aug 16 2023 06:59:39 webserver maldet(22162): {update} checking for available updates... Aug 16 2023 06:59:39 webserver maldet(22162): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Aug 16 2023 06:59:39 webserver maldet(22162): {update} hashing install files and checking against server... Aug 16 2023 06:59:39 webserver maldet(22162): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Aug 16 2023 06:59:39 webserver maldet(22162): {update} latest version already installed. Aug 16 2023 06:59:39 webserver maldet(22298): {sigup} performing signature update check... Aug 16 2023 06:59:39 webserver maldet(22298): {sigup} local signature set is version 202308103259474 Aug 16 2023 06:59:39 webserver maldet(22298): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Aug 16 2023 06:59:40 webserver maldet(22298): {sigup} latest signature set already installed Aug 16 2023 06:59:40 webserver maldet(22413): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Aug 16 2023 06:59:40 webserver maldet(22413): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Aug 16 2023 06:59:40 webserver maldet(22413): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Aug 16 2023 06:59:40 webserver maldet(22413): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Aug 16 2023 06:59:40 webserver maldet(22413): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Aug 16 2023 07:02:17 webserver maldet(22413): {scan} file list completed in 157s, found 682 files... Aug 16 2023 07:02:17 webserver maldet(22413): {scan} found clamav binary at /usr/bin/clamdscan, using clamav scanner engine... Aug 16 2023 07:02:17 webserver maldet(22413): {scan} scan of (682 files) in progress... Aug 16 2023 07:02:27 webserver maldet(22413): {scan} clamscan returned an error, check /usr/local/maldetect/logs/clamscan_log for details! Aug 16 2023 07:02:27 webserver maldet(22413): {scan} scan completed on : files 682, malware hits 0, cleaned hits 0, time 167s Aug 16 2023 07:02:27 webserver maldet(22413): {scan} scan report saved, to view run: maldet --report 230816-0659.22413 Aug 16 2023 17:19:14 webserver maldet(269): {mon} could not find inotifywait command, install yum package inotify-tools or download from https://github.com/rvoicilas/inotify-tools/wiki/ Aug 17 2023 06:58:17 webserver maldet(31075): {update} checking for available updates... Aug 17 2023 06:58:17 webserver maldet(31075): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Aug 17 2023 06:58:17 webserver maldet(31075): {update} hashing install files and checking against server... Aug 17 2023 06:58:17 webserver maldet(31075): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Aug 17 2023 06:58:17 webserver maldet(31075): {update} latest version already installed. Aug 17 2023 06:58:17 webserver maldet(31212): {sigup} performing signature update check... Aug 17 2023 06:58:17 webserver maldet(31212): {sigup} local signature set is version 202308103259474 Aug 17 2023 06:58:17 webserver maldet(31212): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Aug 17 2023 06:58:18 webserver maldet(31212): {sigup} new signature set 20230816511126 available Aug 17 2023 06:58:18 webserver maldet(31212): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Aug 17 2023 06:58:18 webserver maldet(31212): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Aug 17 2023 06:58:18 webserver maldet(31212): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Aug 17 2023 06:58:18 webserver maldet(31212): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Aug 17 2023 06:58:18 webserver maldet(31212): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Aug 17 2023 06:58:18 webserver maldet(31212): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Aug 17 2023 06:58:18 webserver maldet(31212): {sigup} verified md5sum of maldet-sigpack.tgz Aug 17 2023 06:58:18 webserver maldet(31212): {sigup} unpacked and installed maldet-sigpack.tgz Aug 17 2023 06:58:18 webserver maldet(31212): {sigup} verified md5sum of maldet-clean.tgz Aug 17 2023 06:58:18 webserver maldet(31212): {sigup} unpacked and installed maldet-clean.tgz Aug 17 2023 06:58:18 webserver maldet(31212): {sigup} signature set update completed Aug 17 2023 06:58:18 webserver maldet(31212): {sigup} 17637 signatures (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Aug 17 2023 06:58:18 webserver maldet(31445): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Aug 17 2023 06:58:19 webserver maldet(31445): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Aug 17 2023 06:58:19 webserver maldet(31445): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Aug 17 2023 06:58:19 webserver maldet(31445): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Aug 17 2023 06:58:19 webserver maldet(31445): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Aug 17 2023 07:01:39 webserver maldet(31445): {scan} file list completed in 200s, found 610 files... Aug 17 2023 07:01:39 webserver maldet(31445): {scan} found clamav binary at /usr/bin/clamdscan, using clamav scanner engine... Aug 17 2023 07:01:39 webserver maldet(31445): {scan} scan of (610 files) in progress... Aug 17 2023 07:01:47 webserver maldet(31445): {scan} scan completed on : files 610, malware hits 0, cleaned hits 0, time 209s Aug 17 2023 07:01:47 webserver maldet(31445): {scan} scan report saved, to view run: maldet --report 230817-0658.31445 Aug 18 2023 06:56:01 webserver maldet(2426): {update} checking for available updates... Aug 18 2023 06:56:01 webserver maldet(2426): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Aug 18 2023 06:56:01 webserver maldet(2426): {update} hashing install files and checking against server... Aug 18 2023 06:56:01 webserver maldet(2426): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Aug 18 2023 06:56:01 webserver maldet(2426): {update} latest version already installed. Aug 18 2023 06:56:02 webserver maldet(2562): {sigup} performing signature update check... Aug 18 2023 06:56:02 webserver maldet(2562): {sigup} local signature set is version 20230816511126 Aug 18 2023 06:56:02 webserver maldet(2562): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Aug 18 2023 06:56:02 webserver maldet(2562): {sigup} latest signature set already installed Aug 18 2023 06:56:02 webserver maldet(2677): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Aug 18 2023 06:56:02 webserver maldet(2677): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Aug 18 2023 06:56:02 webserver maldet(2677): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Aug 18 2023 06:56:02 webserver maldet(2677): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Aug 18 2023 06:56:02 webserver maldet(2677): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Aug 18 2023 06:59:13 webserver maldet(2677): {scan} file list completed in 191s, found 533 files... Aug 18 2023 06:59:13 webserver maldet(2677): {scan} found clamav binary at /usr/bin/clamdscan, using clamav scanner engine... Aug 18 2023 06:59:13 webserver maldet(2677): {scan} scan of (533 files) in progress... Aug 18 2023 06:59:22 webserver maldet(2677): {scan} clamscan returned an error, check /usr/local/maldetect/logs/clamscan_log for details! Aug 18 2023 06:59:22 webserver maldet(2677): {scan} scan completed on : files 533, malware hits 0, cleaned hits 0, time 200s Aug 18 2023 06:59:22 webserver maldet(2677): {scan} scan report saved, to view run: maldet --report 230818-0656.2677 Aug 19 2023 06:58:48 webserver maldet(2205): {update} checking for available updates... Aug 19 2023 06:58:48 webserver maldet(2205): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Aug 19 2023 06:58:48 webserver maldet(2205): {update} hashing install files and checking against server... Aug 19 2023 06:58:48 webserver maldet(2205): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Aug 19 2023 06:58:48 webserver maldet(2205): {update} latest version already installed. Aug 19 2023 06:58:48 webserver maldet(2341): {sigup} performing signature update check... Aug 19 2023 06:58:48 webserver maldet(2341): {sigup} local signature set is version 20230816511126 Aug 19 2023 06:58:49 webserver maldet(2341): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Aug 19 2023 06:58:49 webserver maldet(2341): {sigup} latest signature set already installed Aug 19 2023 06:58:49 webserver maldet(2456): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Aug 19 2023 06:58:49 webserver maldet(2456): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Aug 19 2023 06:58:49 webserver maldet(2456): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Aug 19 2023 06:58:49 webserver maldet(2456): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Aug 19 2023 06:58:49 webserver maldet(2456): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Aug 19 2023 07:01:02 webserver maldet(2456): {scan} file list completed in 133s, found 1065 files... Aug 19 2023 07:01:02 webserver maldet(2456): {scan} found clamav binary at /usr/bin/clamdscan, using clamav scanner engine... Aug 19 2023 07:01:02 webserver maldet(2456): {scan} scan of (1065 files) in progress... Aug 19 2023 07:01:21 webserver maldet(2456): {scan} scan completed on : files 1065, malware hits 0, cleaned hits 0, time 152s Aug 19 2023 07:01:21 webserver maldet(2456): {scan} scan report saved, to view run: maldet --report 230819-0658.2456 Aug 20 2023 06:57:41 webserver maldet(24046): {update} checking for available updates... Aug 20 2023 06:57:41 webserver maldet(24046): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Aug 20 2023 06:57:41 webserver maldet(24046): {update} hashing install files and checking against server... Aug 20 2023 06:57:42 webserver maldet(24046): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Aug 20 2023 06:57:42 webserver maldet(24046): {update} latest version already installed. Aug 20 2023 06:57:42 webserver maldet(24182): {sigup} performing signature update check... Aug 20 2023 06:57:42 webserver maldet(24182): {sigup} local signature set is version 20230816511126 Aug 20 2023 06:57:42 webserver maldet(24182): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Aug 20 2023 06:57:42 webserver maldet(24182): {sigup} new signature set 202308191221559 available Aug 20 2023 06:57:42 webserver maldet(24182): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Aug 20 2023 06:57:42 webserver maldet(24182): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Aug 20 2023 06:57:42 webserver maldet(24182): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Aug 20 2023 06:57:42 webserver maldet(24182): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Aug 20 2023 06:57:42 webserver maldet(24182): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Aug 20 2023 06:57:42 webserver maldet(24182): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Aug 20 2023 06:57:42 webserver maldet(24182): {sigup} verified md5sum of maldet-sigpack.tgz Aug 20 2023 06:57:42 webserver maldet(24182): {sigup} unpacked and installed maldet-sigpack.tgz Aug 20 2023 06:57:43 webserver maldet(24182): {sigup} verified md5sum of maldet-clean.tgz Aug 20 2023 06:57:43 webserver maldet(24182): {sigup} unpacked and installed maldet-clean.tgz Aug 20 2023 06:57:43 webserver maldet(24182): {sigup} signature set update completed Aug 20 2023 06:57:43 webserver maldet(24182): {sigup} 17637 signatures (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Aug 20 2023 06:57:43 webserver maldet(24414): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Aug 20 2023 06:57:43 webserver maldet(24414): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Aug 20 2023 06:57:43 webserver maldet(24414): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Aug 20 2023 06:57:43 webserver maldet(24414): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Aug 20 2023 06:57:43 webserver maldet(24414): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Aug 20 2023 07:00:13 webserver maldet(24414): {scan} file list completed in 150s, found 267 files... Aug 20 2023 07:00:13 webserver maldet(24414): {scan} found clamav binary at /usr/bin/clamdscan, using clamav scanner engine... Aug 20 2023 07:00:13 webserver maldet(24414): {scan} scan of (267 files) in progress... Aug 20 2023 07:00:17 webserver maldet(24414): {scan} clamscan returned an error, check /usr/local/maldetect/logs/clamscan_log for details! Aug 20 2023 07:00:17 webserver maldet(24414): {scan} scan completed on : files 267, malware hits 0, cleaned hits 0, time 154s Aug 20 2023 07:00:17 webserver maldet(24414): {scan} scan report saved, to view run: maldet --report 230820-0657.24414 Aug 21 2023 06:57:53 webserver maldet(22357): {update} checking for available updates... Aug 21 2023 06:57:53 webserver maldet(22357): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Aug 21 2023 06:57:53 webserver maldet(22357): {update} hashing install files and checking against server... Aug 21 2023 06:57:53 webserver maldet(22357): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Aug 21 2023 06:57:53 webserver maldet(22357): {update} latest version already installed. Aug 21 2023 06:57:53 webserver maldet(22493): {sigup} performing signature update check... Aug 21 2023 06:57:53 webserver maldet(22493): {sigup} local signature set is version 202308191221559 Aug 21 2023 06:57:53 webserver maldet(22493): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Aug 21 2023 06:57:53 webserver maldet(22493): {sigup} latest signature set already installed Aug 21 2023 06:57:53 webserver maldet(22610): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Aug 21 2023 06:57:53 webserver maldet(22610): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Aug 21 2023 06:57:53 webserver maldet(22610): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Aug 21 2023 06:57:53 webserver maldet(22610): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Aug 21 2023 06:57:53 webserver maldet(22610): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Aug 21 2023 06:57:59 webserver maldet(22610): {scan} file list completed in 6s, found 134 files... Aug 21 2023 06:57:59 webserver maldet(22610): {scan} found clamav binary at /usr/bin/clamdscan, using clamav scanner engine... Aug 21 2023 06:57:59 webserver maldet(22610): {scan} scan of (134 files) in progress... Aug 21 2023 06:58:02 webserver maldet(22610): {scan} scan completed on : files 134, malware hits 0, cleaned hits 0, time 9s Aug 21 2023 06:58:02 webserver maldet(22610): {scan} scan report saved, to view run: maldet --report 230821-0657.22610 Aug 22 2023 07:04:06 webserver maldet(15850): {update} checking for available updates... Aug 22 2023 07:04:06 webserver maldet(15850): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Aug 22 2023 07:04:06 webserver maldet(15850): {update} hashing install files and checking against server... Aug 22 2023 07:04:06 webserver maldet(15850): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Aug 22 2023 07:04:06 webserver maldet(15850): {update} latest version already installed. Aug 22 2023 07:04:07 webserver maldet(15986): {sigup} performing signature update check... Aug 22 2023 07:04:07 webserver maldet(15986): {sigup} local signature set is version 202308191221559 Aug 22 2023 07:04:07 webserver maldet(15986): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Aug 22 2023 07:04:07 webserver maldet(15986): {sigup} new signature set 202308221929619 available Aug 22 2023 07:04:07 webserver maldet(15986): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Aug 22 2023 07:04:07 webserver maldet(15986): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Aug 22 2023 07:04:07 webserver maldet(15986): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Aug 22 2023 07:04:07 webserver maldet(15986): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Aug 22 2023 07:04:07 webserver maldet(15986): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Aug 22 2023 07:04:07 webserver maldet(15986): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Aug 22 2023 07:04:07 webserver maldet(15986): {sigup} verified md5sum of maldet-sigpack.tgz Aug 22 2023 07:04:07 webserver maldet(15986): {sigup} unpacked and installed maldet-sigpack.tgz Aug 22 2023 07:04:07 webserver maldet(15986): {sigup} verified md5sum of maldet-clean.tgz Aug 22 2023 07:04:07 webserver maldet(15986): {sigup} unpacked and installed maldet-clean.tgz Aug 22 2023 07:04:07 webserver maldet(15986): {sigup} signature set update completed Aug 22 2023 07:04:07 webserver maldet(15986): {sigup} 17637 signatures (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Aug 22 2023 07:04:08 webserver maldet(16220): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Aug 22 2023 07:04:08 webserver maldet(16220): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Aug 22 2023 07:04:08 webserver maldet(16220): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Aug 22 2023 07:04:08 webserver maldet(16220): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Aug 22 2023 07:04:08 webserver maldet(16220): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Aug 22 2023 07:08:52 webserver maldet(16220): {scan} file list completed in 284s, found 403 files... Aug 22 2023 07:08:52 webserver maldet(16220): {scan} found clamav binary at /usr/bin/clamdscan, using clamav scanner engine... Aug 22 2023 07:08:52 webserver maldet(16220): {scan} scan of (403 files) in progress... Aug 22 2023 07:08:59 webserver maldet(16220): {scan} scan completed on : files 403, malware hits 0, cleaned hits 0, time 291s Aug 22 2023 07:08:59 webserver maldet(16220): {scan} scan report saved, to view run: maldet --report 230822-0704.16220 Aug 23 2023 07:04:07 webserver maldet(2772): {update} checking for available updates... Aug 23 2023 07:04:08 webserver maldet(2772): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Aug 23 2023 07:04:08 webserver maldet(2772): {update} hashing install files and checking against server... Aug 23 2023 07:04:08 webserver maldet(2772): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Aug 23 2023 07:04:08 webserver maldet(2772): {update} latest version already installed. Aug 23 2023 07:04:08 webserver maldet(2916): {sigup} performing signature update check... Aug 23 2023 07:04:08 webserver maldet(2916): {sigup} local signature set is version 202308221929619 Aug 23 2023 07:04:08 webserver maldet(2916): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Aug 23 2023 07:04:08 webserver maldet(2916): {sigup} latest signature set already installed Aug 23 2023 07:04:08 webserver maldet(3032): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Aug 23 2023 07:04:08 webserver maldet(3032): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Aug 23 2023 07:04:08 webserver maldet(3032): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Aug 23 2023 07:04:08 webserver maldet(3032): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Aug 23 2023 07:04:08 webserver maldet(3032): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Aug 23 2023 07:08:23 webserver maldet(3032): {scan} file list completed in 255s, found 568 files... Aug 23 2023 07:08:24 webserver maldet(3032): {scan} found clamav binary at /usr/bin/clamscan, using clamav scanner engine... Aug 23 2023 07:08:24 webserver maldet(3032): {scan} scan of (568 files) in progress... Aug 23 2023 07:08:55 webserver maldet(3032): {scan} clamscan returned an error, check /usr/local/maldetect/logs/clamscan_log for details! Aug 23 2023 07:08:55 webserver maldet(3032): {scan} scan completed on : files 568, malware hits 0, cleaned hits 0, time 287s Aug 23 2023 07:08:55 webserver maldet(3032): {scan} scan report saved, to view run: maldet --report 230823-0704.3032 Aug 24 2023 06:59:18 webserver maldet(28203): {update} checking for available updates... Aug 24 2023 06:59:18 webserver maldet(28203): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Aug 24 2023 06:59:18 webserver maldet(28203): {update} hashing install files and checking against server... Aug 24 2023 06:59:18 webserver maldet(28203): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Aug 24 2023 06:59:18 webserver maldet(28203): {update} latest version already installed. Aug 24 2023 06:59:18 webserver maldet(28339): {sigup} performing signature update check... Aug 24 2023 06:59:18 webserver maldet(28339): {sigup} local signature set is version 202308221929619 Aug 24 2023 06:59:18 webserver maldet(28339): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Aug 24 2023 06:59:18 webserver maldet(28339): {sigup} latest signature set already installed Aug 24 2023 06:59:18 webserver maldet(28453): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Aug 24 2023 06:59:19 webserver maldet(28453): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Aug 24 2023 06:59:19 webserver maldet(28453): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Aug 24 2023 06:59:19 webserver maldet(28453): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Aug 24 2023 06:59:19 webserver maldet(28453): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Aug 24 2023 07:01:36 webserver maldet(28453): {scan} file list completed in 137s, found 632 files... Aug 24 2023 07:01:36 webserver maldet(28453): {scan} found clamav binary at /usr/bin/clamscan, using clamav scanner engine... Aug 24 2023 07:01:36 webserver maldet(28453): {scan} scan of (632 files) in progress... Aug 24 2023 07:02:10 webserver maldet(28453): {scan} scan completed on : files 632, malware hits 0, cleaned hits 0, time 172s Aug 24 2023 07:02:10 webserver maldet(28453): {scan} scan report saved, to view run: maldet --report 230824-0659.28453 Aug 25 2023 06:56:22 webserver maldet(22570): {update} checking for available updates... Aug 25 2023 06:56:22 webserver maldet(22570): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Aug 25 2023 06:56:22 webserver maldet(22570): {update} hashing install files and checking against server... Aug 25 2023 06:56:22 webserver maldet(22570): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Aug 25 2023 06:56:22 webserver maldet(22570): {update} latest version already installed. Aug 25 2023 06:56:22 webserver maldet(22706): {sigup} performing signature update check... Aug 25 2023 06:56:22 webserver maldet(22706): {sigup} local signature set is version 202308221929619 Aug 25 2023 06:56:22 webserver maldet(22706): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Aug 25 2023 06:56:22 webserver maldet(22706): {sigup} new signature set 202308252633785 available Aug 25 2023 06:56:22 webserver maldet(22706): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Aug 25 2023 06:56:22 webserver maldet(22706): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Aug 25 2023 06:56:23 webserver maldet(22706): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Aug 25 2023 06:56:23 webserver maldet(22706): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Aug 25 2023 06:56:23 webserver maldet(22706): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Aug 25 2023 06:56:23 webserver maldet(22706): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Aug 25 2023 06:56:23 webserver maldet(22706): {sigup} unable to verify md5sum of maldet-sigpack.tgz, please try again or contact proj@rfxn.com Aug 25 2023 06:56:23 webserver maldet(22706): {sigup} verified md5sum of maldet-clean.tgz Aug 25 2023 06:56:23 webserver maldet(22706): {sigup} unpacked and installed maldet-clean.tgz Aug 25 2023 06:56:23 webserver maldet(22893): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Aug 25 2023 06:56:23 webserver maldet(22893): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Aug 25 2023 06:56:23 webserver maldet(22893): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Aug 25 2023 06:56:23 webserver maldet(22893): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Aug 25 2023 06:56:23 webserver maldet(22893): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Aug 25 2023 06:58:43 webserver maldet(22893): {scan} file list completed in 140s, found 341 files... Aug 25 2023 06:58:43 webserver maldet(22893): {scan} found clamav binary at /usr/bin/clamscan, using clamav scanner engine... Aug 25 2023 06:58:43 webserver maldet(22893): {scan} scan of (341 files) in progress... Aug 25 2023 06:59:11 webserver maldet(22893): {scan} scan completed on : files 341, malware hits 0, cleaned hits 0, time 168s Aug 25 2023 06:59:11 webserver maldet(22893): {scan} scan report saved, to view run: maldet --report 230825-0656.22893 Aug 26 2023 06:57:19 webserver maldet(11776): {update} checking for available updates... Aug 26 2023 06:57:19 webserver maldet(11776): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Aug 26 2023 06:57:19 webserver maldet(11776): {update} hashing install files and checking against server... Aug 26 2023 06:57:20 webserver maldet(11776): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Aug 26 2023 06:57:20 webserver maldet(11776): {update} latest version already installed. Aug 26 2023 06:57:20 webserver maldet(11912): {sigup} performing signature update check... Aug 26 2023 06:57:20 webserver maldet(11912): {sigup} local signature set is version 202308221929619 Aug 26 2023 06:57:20 webserver maldet(11912): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Aug 26 2023 06:57:20 webserver maldet(11912): {sigup} new signature set 202308252633785 available Aug 26 2023 06:57:20 webserver maldet(11912): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Aug 26 2023 06:57:20 webserver maldet(11912): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Aug 26 2023 06:57:20 webserver maldet(11912): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Aug 26 2023 06:57:20 webserver maldet(11912): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Aug 26 2023 06:57:20 webserver maldet(11912): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Aug 26 2023 06:57:20 webserver maldet(11912): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Aug 26 2023 06:57:20 webserver maldet(11912): {sigup} verified md5sum of maldet-sigpack.tgz Aug 26 2023 06:57:20 webserver maldet(11912): {sigup} unpacked and installed maldet-sigpack.tgz Aug 26 2023 06:57:20 webserver maldet(11912): {sigup} verified md5sum of maldet-clean.tgz Aug 26 2023 06:57:20 webserver maldet(11912): {sigup} unpacked and installed maldet-clean.tgz Aug 26 2023 06:57:20 webserver maldet(11912): {sigup} signature set update completed Aug 26 2023 06:57:20 webserver maldet(11912): {sigup} 17637 signatures (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Aug 26 2023 06:57:20 webserver maldet(12142): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Aug 26 2023 06:57:21 webserver maldet(12142): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Aug 26 2023 06:57:21 webserver maldet(12142): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Aug 26 2023 06:57:21 webserver maldet(12142): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Aug 26 2023 06:57:21 webserver maldet(12142): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Aug 26 2023 06:59:55 webserver maldet(12142): {scan} file list completed in 154s, found 8709 files... Aug 26 2023 06:59:55 webserver maldet(12142): {scan} found clamav binary at /usr/bin/clamscan, using clamav scanner engine... Aug 26 2023 06:59:55 webserver maldet(12142): {scan} scan of (8709 files) in progress... Aug 26 2023 07:02:37 webserver maldet(12142): {scan} clamscan returned an error, check /usr/local/maldetect/logs/clamscan_log for details! Aug 26 2023 07:02:37 webserver maldet(12142): {scan} scan completed on : files 8709, malware hits 0, cleaned hits 0, time 317s Aug 26 2023 07:02:37 webserver maldet(12142): {scan} scan report saved, to view run: maldet --report 230826-0657.12142 Aug 27 2023 06:58:46 webserver maldet(998): {update} checking for available updates... Aug 27 2023 06:58:46 webserver maldet(998): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Aug 27 2023 06:58:46 webserver maldet(998): {update} hashing install files and checking against server... Aug 27 2023 06:58:46 webserver maldet(998): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Aug 27 2023 06:58:46 webserver maldet(998): {update} latest version already installed. Aug 27 2023 06:58:46 webserver maldet(1136): {sigup} performing signature update check... Aug 27 2023 06:58:47 webserver maldet(1136): {sigup} local signature set is version 202308252633785 Aug 27 2023 06:58:47 webserver maldet(1136): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Aug 27 2023 06:58:47 webserver maldet(1136): {sigup} latest signature set already installed Aug 27 2023 06:58:47 webserver maldet(1251): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Aug 27 2023 06:58:47 webserver maldet(1251): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Aug 27 2023 06:58:47 webserver maldet(1251): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Aug 27 2023 06:58:47 webserver maldet(1251): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Aug 27 2023 06:58:47 webserver maldet(1251): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Aug 27 2023 07:01:24 webserver maldet(1251): {scan} file list completed in 157s, found 96 files... Aug 27 2023 07:01:24 webserver maldet(1251): {scan} found clamav binary at /usr/bin/clamscan, using clamav scanner engine... Aug 27 2023 07:01:24 webserver maldet(1251): {scan} scan of (96 files) in progress... Aug 27 2023 07:01:47 webserver maldet(1251): {scan} scan completed on : files 96, malware hits 0, cleaned hits 0, time 180s Aug 27 2023 07:01:47 webserver maldet(1251): {scan} scan report saved, to view run: maldet --report 230827-0658.1251 Aug 28 2023 06:59:33 webserver maldet(30651): {update} checking for available updates... Aug 28 2023 06:59:33 webserver maldet(30651): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Aug 28 2023 06:59:33 webserver maldet(30651): {update} hashing install files and checking against server... Aug 28 2023 06:59:33 webserver maldet(30651): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Aug 28 2023 06:59:33 webserver maldet(30651): {update} latest version already installed. Aug 28 2023 06:59:33 webserver maldet(30787): {sigup} performing signature update check... Aug 28 2023 06:59:33 webserver maldet(30787): {sigup} local signature set is version 202308252633785 Aug 28 2023 06:59:33 webserver maldet(30787): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Aug 28 2023 06:59:33 webserver maldet(30787): {sigup} new signature set 202308283330996 available Aug 28 2023 06:59:33 webserver maldet(30787): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Aug 28 2023 06:59:33 webserver maldet(30787): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Aug 28 2023 06:59:33 webserver maldet(30787): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Aug 28 2023 06:59:33 webserver maldet(30787): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Aug 28 2023 06:59:34 webserver maldet(30787): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Aug 28 2023 06:59:34 webserver maldet(30787): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Aug 28 2023 06:59:34 webserver maldet(30787): {sigup} verified md5sum of maldet-sigpack.tgz Aug 28 2023 06:59:34 webserver maldet(30787): {sigup} unpacked and installed maldet-sigpack.tgz Aug 28 2023 06:59:34 webserver maldet(30787): {sigup} verified md5sum of maldet-clean.tgz Aug 28 2023 06:59:34 webserver maldet(30787): {sigup} unpacked and installed maldet-clean.tgz Aug 28 2023 06:59:34 webserver maldet(30787): {sigup} signature set update completed Aug 28 2023 06:59:34 webserver maldet(30787): {sigup} 17637 signatures (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Aug 28 2023 06:59:34 webserver maldet(31018): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Aug 28 2023 06:59:34 webserver maldet(31018): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Aug 28 2023 06:59:34 webserver maldet(31018): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Aug 28 2023 06:59:34 webserver maldet(31018): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Aug 28 2023 06:59:34 webserver maldet(31018): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Aug 28 2023 07:02:02 webserver maldet(31018): {scan} file list completed in 148s, found 86 files... Aug 28 2023 07:02:02 webserver maldet(31018): {scan} found clamav binary at /usr/bin/clamscan, using clamav scanner engine... Aug 28 2023 07:02:02 webserver maldet(31018): {scan} scan of (86 files) in progress... Aug 28 2023 07:02:29 webserver maldet(31018): {scan} clamscan returned an error, check /usr/local/maldetect/logs/clamscan_log for details! Aug 28 2023 07:02:29 webserver maldet(31018): {scan} scan completed on : files 86, malware hits 0, cleaned hits 0, time 175s Aug 28 2023 07:02:29 webserver maldet(31018): {scan} scan report saved, to view run: maldet --report 230828-0659.31018 Aug 29 2023 06:59:32 webserver maldet(29009): {update} checking for available updates... Aug 29 2023 06:59:32 webserver maldet(29009): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Aug 29 2023 06:59:32 webserver maldet(29009): {update} hashing install files and checking against server... Aug 29 2023 06:59:32 webserver maldet(29009): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Aug 29 2023 06:59:32 webserver maldet(29009): {update} latest version already installed. Aug 29 2023 06:59:32 webserver maldet(29145): {sigup} performing signature update check... Aug 29 2023 06:59:32 webserver maldet(29145): {sigup} local signature set is version 202308283330996 Aug 29 2023 06:59:32 webserver maldet(29145): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Aug 29 2023 06:59:32 webserver maldet(29145): {sigup} latest signature set already installed Aug 29 2023 06:59:32 webserver maldet(29260): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Aug 29 2023 06:59:32 webserver maldet(29260): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Aug 29 2023 06:59:32 webserver maldet(29260): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Aug 29 2023 06:59:32 webserver maldet(29260): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Aug 29 2023 06:59:32 webserver maldet(29260): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Aug 29 2023 06:59:37 webserver maldet(29260): {scan} file list completed in 5s, found 251 files... Aug 29 2023 06:59:37 webserver maldet(29260): {scan} found clamav binary at /usr/bin/clamscan, using clamav scanner engine... Aug 29 2023 06:59:37 webserver maldet(29260): {scan} scan of (251 files) in progress... Aug 29 2023 07:00:03 webserver maldet(29260): {scan} clamscan returned an error, check /usr/local/maldetect/logs/clamscan_log for details! Aug 29 2023 07:00:03 webserver maldet(29260): {scan} scan completed on : files 251, malware hits 0, cleaned hits 0, time 31s Aug 29 2023 07:00:03 webserver maldet(29260): {scan} scan report saved, to view run: maldet --report 230829-0659.29260 Aug 30 2023 06:57:37 webserver maldet(19267): {update} checking for available updates... Aug 30 2023 06:57:37 webserver maldet(19267): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Aug 30 2023 06:57:37 webserver maldet(19267): {update} hashing install files and checking against server... Aug 30 2023 06:57:37 webserver maldet(19267): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Aug 30 2023 06:57:37 webserver maldet(19267): {update} latest version already installed. Aug 30 2023 06:57:37 webserver maldet(19403): {sigup} performing signature update check... Aug 30 2023 06:57:37 webserver maldet(19403): {sigup} local signature set is version 202308283330996 Aug 30 2023 06:57:37 webserver maldet(19403): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Aug 30 2023 06:57:37 webserver maldet(19403): {sigup} latest signature set already installed Aug 30 2023 06:57:37 webserver maldet(19518): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Aug 30 2023 06:57:38 webserver maldet(19518): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Aug 30 2023 06:57:38 webserver maldet(19518): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Aug 30 2023 06:57:38 webserver maldet(19518): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Aug 30 2023 06:57:38 webserver maldet(19518): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Aug 30 2023 07:00:03 webserver maldet(19518): {scan} file list completed in 145s, found 4723 files... Aug 30 2023 07:00:03 webserver maldet(19518): {scan} found clamav binary at /usr/bin/clamscan, using clamav scanner engine... Aug 30 2023 07:00:03 webserver maldet(19518): {scan} scan of (4723 files) in progress... Aug 30 2023 07:01:36 webserver maldet(19518): {scan} scan completed on : files 4723, malware hits 0, cleaned hits 0, time 239s Aug 30 2023 07:01:36 webserver maldet(19518): {scan} scan report saved, to view run: maldet --report 230830-0657.19518 Aug 31 2023 06:59:01 webserver maldet(13581): {update} checking for available updates... Aug 31 2023 06:59:01 webserver maldet(13581): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Aug 31 2023 06:59:01 webserver maldet(13581): {update} hashing install files and checking against server... Aug 31 2023 06:59:01 webserver maldet(13581): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Aug 31 2023 06:59:01 webserver maldet(13581): {update} latest version already installed. Aug 31 2023 06:59:01 webserver maldet(13718): {sigup} performing signature update check... Aug 31 2023 06:59:01 webserver maldet(13718): {sigup} local signature set is version 202308283330996 Aug 31 2023 06:59:01 webserver maldet(13718): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Aug 31 2023 06:59:02 webserver maldet(13718): {sigup} new signature set 20230831532934 available Aug 31 2023 06:59:02 webserver maldet(13718): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Aug 31 2023 06:59:02 webserver maldet(13718): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Aug 31 2023 06:59:02 webserver maldet(13718): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Aug 31 2023 06:59:02 webserver maldet(13718): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Aug 31 2023 06:59:02 webserver maldet(13718): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Aug 31 2023 06:59:02 webserver maldet(13718): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Aug 31 2023 06:59:02 webserver maldet(13718): {sigup} unable to verify md5sum of maldet-sigpack.tgz, please try again or contact proj@rfxn.com Aug 31 2023 06:59:02 webserver maldet(13718): {sigup} verified md5sum of maldet-clean.tgz Aug 31 2023 06:59:02 webserver maldet(13718): {sigup} unpacked and installed maldet-clean.tgz Aug 31 2023 06:59:02 webserver maldet(13905): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Aug 31 2023 06:59:03 webserver maldet(13905): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Aug 31 2023 06:59:03 webserver maldet(13905): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Aug 31 2023 06:59:03 webserver maldet(13905): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Aug 31 2023 06:59:03 webserver maldet(13905): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Aug 31 2023 07:09:53 webserver maldet(13905): {scan} file list completed in 650s, found 379 files... Aug 31 2023 07:09:53 webserver maldet(13905): {scan} found clamav binary at /usr/bin/clamscan, using clamav scanner engine... Aug 31 2023 07:09:53 webserver maldet(13905): {scan} scan of (379 files) in progress... Aug 31 2023 07:10:47 webserver maldet(13905): {scan} clamscan returned an error, check /usr/local/maldetect/logs/clamscan_log for details! Aug 31 2023 07:10:47 webserver maldet(13905): {scan} scan completed on : files 379, malware hits 0, cleaned hits 0, time 705s Aug 31 2023 07:10:47 webserver maldet(13905): {scan} scan report saved, to view run: maldet --report 230831-0659.13905 Sep 01 2023 06:59:19 webserver maldet(14532): {update} checking for available updates... Sep 01 2023 06:59:20 webserver maldet(14532): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Sep 01 2023 06:59:20 webserver maldet(14532): {update} hashing install files and checking against server... Sep 01 2023 06:59:20 webserver maldet(14532): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Sep 01 2023 06:59:20 webserver maldet(14532): {update} latest version already installed. Sep 01 2023 06:59:20 webserver maldet(14668): {sigup} performing signature update check... Sep 01 2023 06:59:20 webserver maldet(14668): {sigup} local signature set is version 202308283330996 Sep 01 2023 06:59:20 webserver maldet(14668): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Sep 01 2023 06:59:20 webserver maldet(14668): {sigup} new signature set 20230831532934 available Sep 01 2023 06:59:20 webserver maldet(14668): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Sep 01 2023 06:59:20 webserver maldet(14668): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Sep 01 2023 06:59:20 webserver maldet(14668): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Sep 01 2023 06:59:20 webserver maldet(14668): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Sep 01 2023 06:59:20 webserver maldet(14668): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Sep 01 2023 06:59:20 webserver maldet(14668): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Sep 01 2023 06:59:20 webserver maldet(14668): {sigup} verified md5sum of maldet-sigpack.tgz Sep 01 2023 06:59:20 webserver maldet(14668): {sigup} unpacked and installed maldet-sigpack.tgz Sep 01 2023 06:59:21 webserver maldet(14668): {sigup} verified md5sum of maldet-clean.tgz Sep 01 2023 06:59:21 webserver maldet(14668): {sigup} unpacked and installed maldet-clean.tgz Sep 01 2023 06:59:21 webserver maldet(14668): {sigup} signature set update completed Sep 01 2023 06:59:21 webserver maldet(14668): {sigup} 17637 signatures (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Sep 01 2023 06:59:21 webserver maldet(14899): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Sep 01 2023 06:59:21 webserver maldet(14899): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Sep 01 2023 06:59:21 webserver maldet(14899): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Sep 01 2023 06:59:21 webserver maldet(14899): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Sep 01 2023 06:59:21 webserver maldet(14899): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Sep 01 2023 07:04:48 webserver maldet(14899): {scan} file list completed in 327s, found 5365 files... Sep 01 2023 07:04:48 webserver maldet(14899): {scan} found clamav binary at /usr/bin/clamscan, using clamav scanner engine... Sep 01 2023 07:04:48 webserver maldet(14899): {scan} scan of (5365 files) in progress... Sep 01 2023 07:06:40 webserver maldet(14899): {scan} clamscan returned an error, check /usr/local/maldetect/logs/clamscan_log for details! Sep 01 2023 07:06:40 webserver maldet(14899): {scan} scan completed on : files 5365, malware hits 0, cleaned hits 0, time 439s Sep 01 2023 07:06:40 webserver maldet(14899): {scan} scan report saved, to view run: maldet --report 230901-0659.14899 Sep 02 2023 06:57:44 webserver maldet(32626): {update} checking for available updates... Sep 02 2023 06:57:44 webserver maldet(32626): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Sep 02 2023 06:57:44 webserver maldet(32626): {update} hashing install files and checking against server... Sep 02 2023 06:57:44 webserver maldet(32626): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Sep 02 2023 06:57:44 webserver maldet(32626): {update} latest version already installed. Sep 02 2023 06:57:44 webserver maldet(32762): {sigup} performing signature update check... Sep 02 2023 06:57:44 webserver maldet(32762): {sigup} local signature set is version 202309011182320 Sep 02 2023 06:57:44 webserver maldet(32762): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Sep 02 2023 06:57:44 webserver maldet(32762): {sigup} latest signature set already installed Sep 02 2023 06:57:44 webserver maldet(414): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Sep 02 2023 06:57:44 webserver maldet(414): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Sep 02 2023 06:57:44 webserver maldet(414): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Sep 02 2023 06:57:44 webserver maldet(414): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Sep 02 2023 06:57:44 webserver maldet(414): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Sep 02 2023 07:02:40 webserver maldet(414): {scan} file list completed in 295s, found 232 files... Sep 02 2023 07:02:40 webserver maldet(414): {scan} found clamav binary at /usr/bin/clamscan, using clamav scanner engine... Sep 02 2023 07:02:40 webserver maldet(414): {scan} scan of (232 files) in progress... Sep 02 2023 07:03:12 webserver maldet(414): {scan} scan completed on : files 232, malware hits 0, cleaned hits 0, time 328s Sep 02 2023 07:03:12 webserver maldet(414): {scan} scan report saved, to view run: maldet --report 230902-0657.414 Sep 03 2023 06:59:49 webserver maldet(7062): {update} checking for available updates... Sep 03 2023 06:59:50 webserver maldet(7062): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Sep 03 2023 06:59:50 webserver maldet(7062): {update} hashing install files and checking against server... Sep 03 2023 06:59:50 webserver maldet(7062): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Sep 03 2023 06:59:50 webserver maldet(7062): {update} latest version already installed. Sep 03 2023 06:59:50 webserver maldet(7198): {sigup} performing signature update check... Sep 03 2023 06:59:50 webserver maldet(7198): {sigup} local signature set is version 202309011182320 Sep 03 2023 06:59:50 webserver maldet(7198): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Sep 03 2023 06:59:50 webserver maldet(7198): {sigup} latest signature set already installed Sep 03 2023 06:59:50 webserver maldet(7313): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Sep 03 2023 06:59:51 webserver maldet(7313): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Sep 03 2023 06:59:51 webserver maldet(7313): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Sep 03 2023 06:59:51 webserver maldet(7313): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Sep 03 2023 06:59:51 webserver maldet(7313): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Sep 03 2023 07:21:39 webserver maldet(7313): {scan} file list completed in 1308s, found 3473 files... Sep 03 2023 07:21:39 webserver maldet(7313): {scan} found clamav binary at /usr/bin/clamscan, using clamav scanner engine... Sep 03 2023 07:21:39 webserver maldet(7313): {scan} scan of (3473 files) in progress... Sep 03 2023 07:24:39 webserver maldet(7313): {scan} clamscan returned an error, check /usr/local/maldetect/logs/clamscan_log for details! Sep 03 2023 07:24:39 webserver maldet(7313): {scan} scan completed on : files 3473, malware hits 0, cleaned hits 0, time 1489s Sep 03 2023 07:24:39 webserver maldet(7313): {scan} scan report saved, to view run: maldet --report 230903-0659.7313 Sep 04 2023 06:57:27 webserver maldet(6143): {update} checking for available updates... Sep 04 2023 06:57:27 webserver maldet(6143): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Sep 04 2023 06:57:27 webserver maldet(6143): {update} hashing install files and checking against server... Sep 04 2023 06:57:27 webserver maldet(6143): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Sep 04 2023 06:57:27 webserver maldet(6143): {update} latest version already installed. Sep 04 2023 06:57:27 webserver maldet(6279): {sigup} performing signature update check... Sep 04 2023 06:57:27 webserver maldet(6279): {sigup} local signature set is version 202309011182320 Sep 04 2023 06:57:27 webserver maldet(6279): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Sep 04 2023 06:57:27 webserver maldet(6279): {sigup} new signature set 202309041879620 available Sep 04 2023 06:57:27 webserver maldet(6279): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Sep 04 2023 06:57:28 webserver maldet(6279): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Sep 04 2023 06:57:28 webserver maldet(6279): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Sep 04 2023 06:57:28 webserver maldet(6279): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Sep 04 2023 06:57:28 webserver maldet(6279): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Sep 04 2023 06:57:28 webserver maldet(6279): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Sep 04 2023 06:57:28 webserver maldet(6279): {sigup} unable to verify md5sum of maldet-sigpack.tgz, please try again or contact proj@rfxn.com Sep 04 2023 06:57:28 webserver maldet(6279): {sigup} verified md5sum of maldet-clean.tgz Sep 04 2023 06:57:28 webserver maldet(6279): {sigup} unpacked and installed maldet-clean.tgz Sep 04 2023 06:57:28 webserver maldet(6466): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Sep 04 2023 06:57:28 webserver maldet(6466): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Sep 04 2023 06:57:28 webserver maldet(6466): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Sep 04 2023 06:57:28 webserver maldet(6466): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Sep 04 2023 06:57:28 webserver maldet(6466): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Sep 04 2023 07:00:07 webserver maldet(6466): {scan} file list completed in 159s, found 436 files... Sep 04 2023 07:00:07 webserver maldet(6466): {scan} found clamav binary at /usr/bin/clamscan, using clamav scanner engine... Sep 04 2023 07:00:07 webserver maldet(6466): {scan} scan of (436 files) in progress... Sep 04 2023 07:00:42 webserver maldet(6466): {scan} clamscan returned an error, check /usr/local/maldetect/logs/clamscan_log for details! Sep 04 2023 07:00:42 webserver maldet(6466): {scan} scan completed on : files 436, malware hits 0, cleaned hits 0, time 194s Sep 04 2023 07:00:42 webserver maldet(6466): {scan} scan report saved, to view run: maldet --report 230904-0657.6466 Sep 05 2023 06:57:23 webserver maldet(6144): {update} checking for available updates... Sep 05 2023 06:57:23 webserver maldet(6144): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Sep 05 2023 06:57:23 webserver maldet(6144): {update} hashing install files and checking against server... Sep 05 2023 06:57:24 webserver maldet(6144): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Sep 05 2023 06:57:24 webserver maldet(6144): {update} latest version already installed. Sep 05 2023 06:57:24 webserver maldet(6280): {sigup} performing signature update check... Sep 05 2023 06:57:24 webserver maldet(6280): {sigup} local signature set is version 202309011182320 Sep 05 2023 06:57:24 webserver maldet(6280): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Sep 05 2023 06:57:24 webserver maldet(6280): {sigup} new signature set 202309041879620 available Sep 05 2023 06:57:24 webserver maldet(6280): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Sep 05 2023 06:57:24 webserver maldet(6280): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Sep 05 2023 06:57:24 webserver maldet(6280): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Sep 05 2023 06:57:24 webserver maldet(6280): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Sep 05 2023 06:57:24 webserver maldet(6280): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Sep 05 2023 06:57:24 webserver maldet(6280): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Sep 05 2023 06:57:24 webserver maldet(6280): {sigup} verified md5sum of maldet-sigpack.tgz Sep 05 2023 06:57:24 webserver maldet(6280): {sigup} unpacked and installed maldet-sigpack.tgz Sep 05 2023 06:57:24 webserver maldet(6280): {sigup} verified md5sum of maldet-clean.tgz Sep 05 2023 06:57:24 webserver maldet(6280): {sigup} unpacked and installed maldet-clean.tgz Sep 05 2023 06:57:24 webserver maldet(6280): {sigup} signature set update completed Sep 05 2023 06:57:24 webserver maldet(6280): {sigup} 17637 signatures (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Sep 05 2023 06:57:24 webserver maldet(6510): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Sep 05 2023 06:57:25 webserver maldet(6510): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Sep 05 2023 06:57:25 webserver maldet(6510): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Sep 05 2023 06:57:25 webserver maldet(6510): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Sep 05 2023 06:57:25 webserver maldet(6510): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Sep 05 2023 06:59:46 webserver maldet(6510): {scan} file list completed in 141s, found 390 files... Sep 05 2023 06:59:46 webserver maldet(6510): {scan} found clamav binary at /usr/bin/clamscan, using clamav scanner engine... Sep 05 2023 06:59:46 webserver maldet(6510): {scan} scan of (390 files) in progress... Sep 05 2023 07:00:20 webserver maldet(6510): {scan} clamscan returned an error, check /usr/local/maldetect/logs/clamscan_log for details! Sep 05 2023 07:00:20 webserver maldet(6510): {scan} scan completed on : files 390, malware hits 0, cleaned hits 0, time 176s Sep 05 2023 07:00:20 webserver maldet(6510): {scan} scan report saved, to view run: maldet --report 230905-0657.6510 Sep 06 2023 07:00:27 webserver maldet(11233): {update} checking for available updates... Sep 06 2023 07:00:28 webserver maldet(11233): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Sep 06 2023 07:00:28 webserver maldet(11233): {update} hashing install files and checking against server... Sep 06 2023 07:00:28 webserver maldet(11233): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Sep 06 2023 07:00:28 webserver maldet(11233): {update} latest version already installed. Sep 06 2023 07:00:28 webserver maldet(11369): {sigup} performing signature update check... Sep 06 2023 07:00:28 webserver maldet(11369): {sigup} local signature set is version 202309041879620 Sep 06 2023 07:00:28 webserver maldet(11369): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Sep 06 2023 07:00:28 webserver maldet(11369): {sigup} latest signature set already installed Sep 06 2023 07:00:28 webserver maldet(11484): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Sep 06 2023 07:00:28 webserver maldet(11484): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Sep 06 2023 07:00:28 webserver maldet(11484): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Sep 06 2023 07:00:28 webserver maldet(11484): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Sep 06 2023 07:00:28 webserver maldet(11484): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Sep 06 2023 07:03:08 webserver maldet(11484): {scan} file list completed in 160s, found 352 files... Sep 06 2023 07:03:08 webserver maldet(11484): {scan} found clamav binary at /usr/bin/clamscan, using clamav scanner engine... Sep 06 2023 07:03:08 webserver maldet(11484): {scan} scan of (352 files) in progress... Sep 06 2023 07:03:50 webserver maldet(11484): {scan} clamscan returned an error, check /usr/local/maldetect/logs/clamscan_log for details! Sep 06 2023 07:03:50 webserver maldet(11484): {scan} scan completed on : files 352, malware hits 0, cleaned hits 0, time 202s Sep 06 2023 07:03:50 webserver maldet(11484): {scan} scan report saved, to view run: maldet --report 230906-0700.11484 Sep 07 2023 06:59:21 webserver maldet(13673): {update} checking for available updates... Sep 07 2023 06:59:21 webserver maldet(13673): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Sep 07 2023 06:59:21 webserver maldet(13673): {update} hashing install files and checking against server... Sep 07 2023 06:59:21 webserver maldet(13673): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Sep 07 2023 06:59:21 webserver maldet(13673): {update} latest version already installed. Sep 07 2023 06:59:22 webserver maldet(13809): {sigup} performing signature update check... Sep 07 2023 06:59:22 webserver maldet(13809): {sigup} local signature set is version 202309041879620 Sep 07 2023 06:59:22 webserver maldet(13809): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Sep 07 2023 06:59:22 webserver maldet(13809): {sigup} new signature set 202309072840097 available Sep 07 2023 06:59:22 webserver maldet(13809): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Sep 07 2023 06:59:22 webserver maldet(13809): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Sep 07 2023 06:59:22 webserver maldet(13809): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Sep 07 2023 06:59:22 webserver maldet(13809): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Sep 07 2023 06:59:22 webserver maldet(13809): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Sep 07 2023 06:59:22 webserver maldet(13809): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Sep 07 2023 06:59:22 webserver maldet(13809): {sigup} unable to verify md5sum of maldet-sigpack.tgz, please try again or contact proj@rfxn.com Sep 07 2023 06:59:22 webserver maldet(13809): {sigup} verified md5sum of maldet-clean.tgz Sep 07 2023 06:59:22 webserver maldet(13809): {sigup} unpacked and installed maldet-clean.tgz Sep 07 2023 06:59:22 webserver maldet(13997): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Sep 07 2023 06:59:22 webserver maldet(13997): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Sep 07 2023 06:59:22 webserver maldet(13997): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Sep 07 2023 06:59:22 webserver maldet(13997): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Sep 07 2023 06:59:22 webserver maldet(13997): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Sep 07 2023 07:02:01 webserver maldet(13997): {scan} file list completed in 159s, found 251 files... Sep 07 2023 07:02:01 webserver maldet(13997): {scan} found clamav binary at /usr/bin/clamscan, using clamav scanner engine... Sep 07 2023 07:02:01 webserver maldet(13997): {scan} scan of (251 files) in progress... Sep 07 2023 07:02:29 webserver maldet(13997): {scan} clamscan returned an error, check /usr/local/maldetect/logs/clamscan_log for details! Sep 07 2023 07:02:29 webserver maldet(13997): {scan} scan completed on : files 251, malware hits 0, cleaned hits 0, time 187s Sep 07 2023 07:02:29 webserver maldet(13997): {scan} scan report saved, to view run: maldet --report 230907-0659.13997 Sep 08 2023 07:06:13 webserver maldet(12108): {update} checking for available updates... Sep 08 2023 07:06:13 webserver maldet(12108): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Sep 08 2023 07:06:13 webserver maldet(12108): {update} hashing install files and checking against server... Sep 08 2023 07:06:14 webserver maldet(12108): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Sep 08 2023 07:06:14 webserver maldet(12108): {update} latest version already installed. Sep 08 2023 07:06:14 webserver maldet(12248): {sigup} performing signature update check... Sep 08 2023 07:06:14 webserver maldet(12248): {sigup} local signature set is version 202309041879620 Sep 08 2023 07:06:14 webserver maldet(12248): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Sep 08 2023 07:06:14 webserver maldet(12248): {sigup} new signature set 202309072840097 available Sep 08 2023 07:06:14 webserver maldet(12248): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Sep 08 2023 07:06:14 webserver maldet(12248): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Sep 08 2023 07:06:14 webserver maldet(12248): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Sep 08 2023 07:06:14 webserver maldet(12248): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Sep 08 2023 07:06:14 webserver maldet(12248): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Sep 08 2023 07:06:14 webserver maldet(12248): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Sep 08 2023 07:06:14 webserver maldet(12248): {sigup} verified md5sum of maldet-sigpack.tgz Sep 08 2023 07:06:14 webserver maldet(12248): {sigup} unpacked and installed maldet-sigpack.tgz Sep 08 2023 07:06:15 webserver maldet(12248): {sigup} verified md5sum of maldet-clean.tgz Sep 08 2023 07:06:15 webserver maldet(12248): {sigup} unpacked and installed maldet-clean.tgz Sep 08 2023 07:06:15 webserver maldet(12248): {sigup} signature set update completed Sep 08 2023 07:06:15 webserver maldet(12248): {sigup} 17637 signatures (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Sep 08 2023 07:06:15 webserver maldet(12486): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Sep 08 2023 07:06:15 webserver maldet(12486): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Sep 08 2023 07:06:15 webserver maldet(12486): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Sep 08 2023 07:06:15 webserver maldet(12486): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Sep 08 2023 07:06:15 webserver maldet(12486): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Sep 08 2023 07:08:37 webserver maldet(12486): {scan} file list completed in 142s, found 251 files... Sep 08 2023 07:08:37 webserver maldet(12486): {scan} found clamav binary at /usr/bin/clamscan, using clamav scanner engine... Sep 08 2023 07:08:37 webserver maldet(12486): {scan} scan of (251 files) in progress... Sep 08 2023 07:09:07 webserver maldet(12486): {scan} scan completed on : files 251, malware hits 0, cleaned hits 0, time 172s Sep 08 2023 07:09:07 webserver maldet(12486): {scan} scan report saved, to view run: maldet --report 230908-0706.12486 Sep 09 2023 06:59:26 webserver maldet(15416): {update} checking for available updates... Sep 09 2023 06:59:26 webserver maldet(15416): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Sep 09 2023 06:59:26 webserver maldet(15416): {update} hashing install files and checking against server... Sep 09 2023 06:59:26 webserver maldet(15416): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Sep 09 2023 06:59:26 webserver maldet(15416): {update} latest version already installed. Sep 09 2023 06:59:27 webserver maldet(15552): {sigup} performing signature update check... Sep 09 2023 06:59:27 webserver maldet(15552): {sigup} local signature set is version 202309072840097 Sep 09 2023 06:59:27 webserver maldet(15552): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Sep 09 2023 06:59:27 webserver maldet(15552): {sigup} latest signature set already installed Sep 09 2023 06:59:27 webserver maldet(15667): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Sep 09 2023 06:59:27 webserver maldet(15667): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Sep 09 2023 06:59:27 webserver maldet(15667): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Sep 09 2023 06:59:27 webserver maldet(15667): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Sep 09 2023 06:59:27 webserver maldet(15667): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Sep 09 2023 06:59:32 webserver maldet(15667): {scan} file list completed in 5s, found 213 files... Sep 09 2023 06:59:32 webserver maldet(15667): {scan} found clamav binary at /usr/bin/clamscan, using clamav scanner engine... Sep 09 2023 06:59:32 webserver maldet(15667): {scan} scan of (213 files) in progress... Sep 09 2023 07:00:07 webserver maldet(15667): {scan} scan completed on : files 213, malware hits 0, cleaned hits 0, time 40s Sep 09 2023 07:00:07 webserver maldet(15667): {scan} scan report saved, to view run: maldet --report 230909-0659.15667 Sep 10 2023 06:59:47 webserver maldet(13006): {update} checking for available updates... Sep 10 2023 06:59:47 webserver maldet(13006): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Sep 10 2023 06:59:47 webserver maldet(13006): {update} hashing install files and checking against server... Sep 10 2023 06:59:47 webserver maldet(13006): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Sep 10 2023 06:59:47 webserver maldet(13006): {update} latest version already installed. Sep 10 2023 06:59:47 webserver maldet(13142): {sigup} performing signature update check... Sep 10 2023 06:59:47 webserver maldet(13142): {sigup} local signature set is version 202309072840097 Sep 10 2023 06:59:47 webserver maldet(13142): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Sep 10 2023 06:59:48 webserver maldet(13142): {sigup} new signature set 20230910481553 available Sep 10 2023 06:59:48 webserver maldet(13142): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Sep 10 2023 06:59:48 webserver maldet(13142): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Sep 10 2023 06:59:48 webserver maldet(13142): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Sep 10 2023 06:59:48 webserver maldet(13142): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Sep 10 2023 06:59:48 webserver maldet(13142): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Sep 10 2023 06:59:48 webserver maldet(13142): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Sep 10 2023 06:59:48 webserver maldet(13142): {sigup} unable to verify md5sum of maldet-sigpack.tgz, please try again or contact proj@rfxn.com Sep 10 2023 06:59:48 webserver maldet(13142): {sigup} verified md5sum of maldet-clean.tgz Sep 10 2023 06:59:48 webserver maldet(13142): {sigup} unpacked and installed maldet-clean.tgz Sep 10 2023 06:59:48 webserver maldet(13329): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Sep 10 2023 06:59:48 webserver maldet(13329): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Sep 10 2023 06:59:48 webserver maldet(13329): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Sep 10 2023 06:59:48 webserver maldet(13329): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Sep 10 2023 06:59:48 webserver maldet(13329): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Sep 10 2023 07:02:12 webserver maldet(13329): {scan} file list completed in 144s, found 245 files... Sep 10 2023 07:02:12 webserver maldet(13329): {scan} found clamav binary at /usr/bin/clamscan, using clamav scanner engine... Sep 10 2023 07:02:12 webserver maldet(13329): {scan} scan of (245 files) in progress... Sep 10 2023 07:02:39 webserver maldet(13329): {scan} scan completed on : files 245, malware hits 0, cleaned hits 0, time 171s Sep 10 2023 07:02:39 webserver maldet(13329): {scan} scan report saved, to view run: maldet --report 230910-0659.13329 Sep 11 2023 06:58:37 webserver maldet(17333): {update} checking for available updates... Sep 11 2023 06:58:38 webserver maldet(17333): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Sep 11 2023 06:58:38 webserver maldet(17333): {update} hashing install files and checking against server... Sep 11 2023 06:58:38 webserver maldet(17333): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Sep 11 2023 06:58:38 webserver maldet(17333): {update} latest version already installed. Sep 11 2023 06:58:38 webserver maldet(17469): {sigup} performing signature update check... Sep 11 2023 06:58:38 webserver maldet(17469): {sigup} local signature set is version 202309072840097 Sep 11 2023 06:58:38 webserver maldet(17469): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Sep 11 2023 06:58:38 webserver maldet(17469): {sigup} new signature set 20230910481553 available Sep 11 2023 06:58:38 webserver maldet(17469): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Sep 11 2023 06:58:38 webserver maldet(17469): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Sep 11 2023 06:58:38 webserver maldet(17469): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Sep 11 2023 06:58:38 webserver maldet(17469): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Sep 11 2023 06:58:38 webserver maldet(17469): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Sep 11 2023 06:58:38 webserver maldet(17469): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Sep 11 2023 06:58:38 webserver maldet(17469): {sigup} verified md5sum of maldet-sigpack.tgz Sep 11 2023 06:58:38 webserver maldet(17469): {sigup} unpacked and installed maldet-sigpack.tgz Sep 11 2023 06:58:38 webserver maldet(17469): {sigup} verified md5sum of maldet-clean.tgz Sep 11 2023 06:58:38 webserver maldet(17469): {sigup} unpacked and installed maldet-clean.tgz Sep 11 2023 06:58:38 webserver maldet(17469): {sigup} signature set update completed Sep 11 2023 06:58:38 webserver maldet(17469): {sigup} 17637 signatures (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Sep 11 2023 06:58:38 webserver maldet(17700): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Sep 11 2023 06:58:39 webserver maldet(17700): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Sep 11 2023 06:58:39 webserver maldet(17700): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Sep 11 2023 06:58:39 webserver maldet(17700): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Sep 11 2023 06:58:39 webserver maldet(17700): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Sep 11 2023 07:01:12 webserver maldet(17700): {scan} file list completed in 153s, found 232 files... Sep 11 2023 07:01:12 webserver maldet(17700): {scan} found clamav binary at /usr/bin/clamscan, using clamav scanner engine... Sep 11 2023 07:01:12 webserver maldet(17700): {scan} scan of (232 files) in progress... Sep 11 2023 07:01:40 webserver maldet(17700): {scan} scan completed on : files 232, malware hits 0, cleaned hits 0, time 182s Sep 11 2023 07:01:40 webserver maldet(17700): {scan} scan report saved, to view run: maldet --report 230911-0658.17700 Sep 12 2023 06:56:21 webserver maldet(24555): {update} checking for available updates... Sep 12 2023 06:56:21 webserver maldet(24555): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Sep 12 2023 06:56:21 webserver maldet(24555): {update} hashing install files and checking against server... Sep 12 2023 06:56:21 webserver maldet(24555): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Sep 12 2023 06:56:21 webserver maldet(24555): {update} latest version already installed. Sep 12 2023 06:56:21 webserver maldet(24691): {sigup} performing signature update check... Sep 12 2023 06:56:21 webserver maldet(24691): {sigup} local signature set is version 20230910481553 Sep 12 2023 06:56:21 webserver maldet(24691): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Sep 12 2023 06:56:21 webserver maldet(24691): {sigup} latest signature set already installed Sep 12 2023 06:56:21 webserver maldet(24805): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Sep 12 2023 06:56:22 webserver maldet(24805): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Sep 12 2023 06:56:22 webserver maldet(24805): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Sep 12 2023 06:56:22 webserver maldet(24805): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Sep 12 2023 06:56:22 webserver maldet(24805): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Sep 12 2023 06:58:44 webserver maldet(24805): {scan} file list completed in 142s, found 134 files... Sep 12 2023 06:58:44 webserver maldet(24805): {scan} found clamav binary at /usr/bin/clamscan, using clamav scanner engine... Sep 12 2023 06:58:44 webserver maldet(24805): {scan} scan of (134 files) in progress... Sep 12 2023 06:59:23 webserver maldet(24805): {scan} clamscan returned an error, check /usr/local/maldetect/logs/clamscan_log for details! Sep 12 2023 06:59:24 webserver maldet(24805): {scan} scan completed on : files 134, malware hits 0, cleaned hits 0, time 182s Sep 12 2023 06:59:24 webserver maldet(24805): {scan} scan report saved, to view run: maldet --report 230912-0656.24805 Sep 13 2023 06:58:55 webserver maldet(30298): {update} checking for available updates... Sep 13 2023 06:58:55 webserver maldet(30298): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Sep 13 2023 06:58:55 webserver maldet(30298): {update} hashing install files and checking against server... Sep 13 2023 06:58:55 webserver maldet(30298): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Sep 13 2023 06:58:55 webserver maldet(30298): {update} latest version already installed. Sep 13 2023 06:58:55 webserver maldet(30437): {sigup} performing signature update check... Sep 13 2023 06:58:55 webserver maldet(30437): {sigup} local signature set is version 20230910481553 Sep 13 2023 06:58:55 webserver maldet(30437): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Sep 13 2023 06:58:55 webserver maldet(30437): {sigup} new signature set 20230913486689 available Sep 13 2023 06:58:55 webserver maldet(30437): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Sep 13 2023 06:58:55 webserver maldet(30437): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Sep 13 2023 06:58:55 webserver maldet(30437): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Sep 13 2023 06:58:55 webserver maldet(30437): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Sep 13 2023 06:58:55 webserver maldet(30437): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Sep 13 2023 06:58:55 webserver maldet(30437): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Sep 13 2023 06:58:55 webserver maldet(30437): {sigup} unable to verify md5sum of maldet-sigpack.tgz, please try again or contact proj@rfxn.com Sep 13 2023 06:58:55 webserver maldet(30437): {sigup} verified md5sum of maldet-clean.tgz Sep 13 2023 06:58:55 webserver maldet(30437): {sigup} unpacked and installed maldet-clean.tgz Sep 13 2023 06:58:55 webserver maldet(30624): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Sep 13 2023 06:58:55 webserver maldet(30624): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Sep 13 2023 06:58:55 webserver maldet(30624): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Sep 13 2023 06:58:55 webserver maldet(30624): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Sep 13 2023 06:58:55 webserver maldet(30624): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Sep 13 2023 07:01:12 webserver maldet(30624): {scan} file list completed in 137s, found 330 files... Sep 13 2023 07:01:12 webserver maldet(30624): {scan} found clamav binary at /usr/bin/clamscan, using clamav scanner engine... Sep 13 2023 07:01:12 webserver maldet(30624): {scan} scan of (330 files) in progress... Sep 13 2023 07:01:39 webserver maldet(30624): {scan} scan completed on : files 330, malware hits 0, cleaned hits 0, time 164s Sep 13 2023 07:01:39 webserver maldet(30624): {scan} scan report saved, to view run: maldet --report 230913-0658.30624 Sep 14 2023 06:56:02 webserver maldet(30206): {update} checking for available updates... Sep 14 2023 06:56:02 webserver maldet(30206): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Sep 14 2023 06:56:02 webserver maldet(30206): {update} hashing install files and checking against server... Sep 14 2023 06:56:02 webserver maldet(30206): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Sep 14 2023 06:56:02 webserver maldet(30206): {update} latest version already installed. Sep 14 2023 06:56:03 webserver maldet(30345): {sigup} performing signature update check... Sep 14 2023 06:56:03 webserver maldet(30345): {sigup} local signature set is version 20230910481553 Sep 14 2023 06:56:03 webserver maldet(30345): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Sep 14 2023 06:56:03 webserver maldet(30345): {sigup} new signature set 20230913486689 available Sep 14 2023 06:56:03 webserver maldet(30345): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Sep 14 2023 06:56:03 webserver maldet(30345): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Sep 14 2023 06:56:03 webserver maldet(30345): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Sep 14 2023 06:56:03 webserver maldet(30345): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Sep 14 2023 06:56:03 webserver maldet(30345): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Sep 14 2023 06:56:03 webserver maldet(30345): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Sep 14 2023 06:56:03 webserver maldet(30345): {sigup} verified md5sum of maldet-sigpack.tgz Sep 14 2023 06:56:03 webserver maldet(30345): {sigup} unpacked and installed maldet-sigpack.tgz Sep 14 2023 06:56:04 webserver maldet(30345): {sigup} verified md5sum of maldet-clean.tgz Sep 14 2023 06:56:04 webserver maldet(30345): {sigup} unpacked and installed maldet-clean.tgz Sep 14 2023 06:56:04 webserver maldet(30345): {sigup} signature set update completed Sep 14 2023 06:56:04 webserver maldet(30345): {sigup} 17637 signatures (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Sep 14 2023 06:56:04 webserver maldet(30576): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Sep 14 2023 06:56:04 webserver maldet(30576): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Sep 14 2023 06:56:04 webserver maldet(30576): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Sep 14 2023 06:56:04 webserver maldet(30576): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Sep 14 2023 06:56:04 webserver maldet(30576): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Sep 14 2023 07:01:08 webserver maldet(30576): {scan} file list completed in 304s, found 267 files... Sep 14 2023 07:01:08 webserver maldet(30576): {scan} found clamav binary at /usr/bin/clamscan, using clamav scanner engine... Sep 14 2023 07:01:08 webserver maldet(30576): {scan} scan of (267 files) in progress... Sep 14 2023 07:01:38 webserver maldet(30576): {scan} clamscan returned an error, check /usr/local/maldetect/logs/clamscan_log for details! Sep 14 2023 07:01:38 webserver maldet(30576): {scan} scan completed on : files 267, malware hits 0, cleaned hits 0, time 334s Sep 14 2023 07:01:38 webserver maldet(30576): {scan} scan report saved, to view run: maldet --report 230914-0656.30576 Sep 15 2023 06:57:49 webserver maldet(28857): {update} checking for available updates... Sep 15 2023 06:57:49 webserver maldet(28857): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Sep 15 2023 06:57:49 webserver maldet(28857): {update} hashing install files and checking against server... Sep 15 2023 06:57:49 webserver maldet(28857): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Sep 15 2023 06:57:49 webserver maldet(28857): {update} latest version already installed. Sep 15 2023 06:57:49 webserver maldet(28993): {sigup} performing signature update check... Sep 15 2023 06:57:49 webserver maldet(28993): {sigup} local signature set is version 20230913486689 Sep 15 2023 06:57:49 webserver maldet(28993): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Sep 15 2023 06:57:50 webserver maldet(28993): {sigup} latest signature set already installed Sep 15 2023 06:57:50 webserver maldet(29108): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Sep 15 2023 06:57:51 webserver maldet(29108): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Sep 15 2023 06:57:51 webserver maldet(29108): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Sep 15 2023 06:57:51 webserver maldet(29108): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Sep 15 2023 06:57:51 webserver maldet(29108): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Sep 15 2023 07:04:13 webserver maldet(29108): {scan} file list completed in 382s, found 396 files... Sep 15 2023 07:04:13 webserver maldet(29108): {scan} found clamav binary at /usr/bin/clamscan, using clamav scanner engine... Sep 15 2023 07:04:13 webserver maldet(29108): {scan} scan of (396 files) in progress... Sep 15 2023 07:04:46 webserver maldet(29108): {scan} scan completed on : files 396, malware hits 0, cleaned hits 0, time 416s Sep 15 2023 07:04:46 webserver maldet(29108): {scan} scan report saved, to view run: maldet --report 230915-0657.29108 Sep 16 2023 07:04:49 webserver maldet(30910): {update} checking for available updates... Sep 16 2023 07:04:49 webserver maldet(30910): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Sep 16 2023 07:04:49 webserver maldet(30910): {update} hashing install files and checking against server... Sep 16 2023 07:04:49 webserver maldet(30910): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Sep 16 2023 07:04:49 webserver maldet(30910): {update} latest version already installed. Sep 16 2023 07:04:49 webserver maldet(31046): {sigup} performing signature update check... Sep 16 2023 07:04:49 webserver maldet(31046): {sigup} local signature set is version 20230913486689 Sep 16 2023 07:04:49 webserver maldet(31046): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Sep 16 2023 07:04:49 webserver maldet(31046): {sigup} latest signature set already installed Sep 16 2023 07:04:49 webserver maldet(31161): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Sep 16 2023 07:04:50 webserver maldet(31161): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Sep 16 2023 07:04:50 webserver maldet(31161): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Sep 16 2023 07:04:50 webserver maldet(31161): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Sep 16 2023 07:04:50 webserver maldet(31161): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Sep 16 2023 07:15:02 webserver maldet(31161): {scan} file list completed in 612s, found 298 files... Sep 16 2023 07:15:02 webserver maldet(31161): {scan} found clamav binary at /usr/bin/clamscan, using clamav scanner engine... Sep 16 2023 07:15:02 webserver maldet(31161): {scan} scan of (298 files) in progress... Sep 16 2023 07:15:38 webserver maldet(31161): {scan} scan completed on : files 298, malware hits 0, cleaned hits 0, time 649s Sep 16 2023 07:15:38 webserver maldet(31161): {scan} scan report saved, to view run: maldet --report 230916-0704.31161 Sep 17 2023 06:58:28 webserver maldet(9557): {update} checking for available updates... Sep 17 2023 06:58:28 webserver maldet(9557): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Sep 17 2023 06:58:28 webserver maldet(9557): {update} hashing install files and checking against server... Sep 17 2023 06:58:28 webserver maldet(9557): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Sep 17 2023 06:58:28 webserver maldet(9557): {update} latest version already installed. Sep 17 2023 06:58:28 webserver maldet(9693): {sigup} performing signature update check... Sep 17 2023 06:58:28 webserver maldet(9693): {sigup} local signature set is version 20230913486689 Sep 17 2023 06:58:28 webserver maldet(9693): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Sep 17 2023 06:58:28 webserver maldet(9693): {sigup} new signature set 202309161217367 available Sep 17 2023 06:58:29 webserver maldet(9693): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Sep 17 2023 06:58:29 webserver maldet(9693): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Sep 17 2023 06:58:29 webserver maldet(9693): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Sep 17 2023 06:58:29 webserver maldet(9693): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Sep 17 2023 06:58:29 webserver maldet(9693): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Sep 17 2023 06:58:29 webserver maldet(9693): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Sep 17 2023 06:58:29 webserver maldet(9693): {sigup} verified md5sum of maldet-sigpack.tgz Sep 17 2023 06:58:29 webserver maldet(9693): {sigup} unpacked and installed maldet-sigpack.tgz Sep 17 2023 06:58:29 webserver maldet(9693): {sigup} verified md5sum of maldet-clean.tgz Sep 17 2023 06:58:29 webserver maldet(9693): {sigup} unpacked and installed maldet-clean.tgz Sep 17 2023 06:58:29 webserver maldet(9693): {sigup} signature set update completed Sep 17 2023 06:58:29 webserver maldet(9693): {sigup} 17637 signatures (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Sep 17 2023 06:58:29 webserver maldet(9941): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Sep 17 2023 06:58:29 webserver maldet(9941): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Sep 17 2023 06:58:29 webserver maldet(9941): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Sep 17 2023 06:58:29 webserver maldet(9941): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Sep 17 2023 06:58:29 webserver maldet(9941): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Sep 17 2023 07:01:09 webserver maldet(9941): {scan} file list completed in 160s, found 215 files... Sep 17 2023 07:01:09 webserver maldet(9941): {scan} found clamav binary at /usr/bin/clamscan, using clamav scanner engine... Sep 17 2023 07:01:09 webserver maldet(9941): {scan} scan of (215 files) in progress... Sep 17 2023 07:01:38 webserver maldet(9941): {scan} clamscan returned an error, check /usr/local/maldetect/logs/clamscan_log for details! Sep 17 2023 07:01:38 webserver maldet(9941): {scan} scan completed on : files 215, malware hits 0, cleaned hits 0, time 189s Sep 17 2023 07:01:38 webserver maldet(9941): {scan} scan report saved, to view run: maldet --report 230917-0658.9941 Sep 18 2023 07:01:40 webserver maldet(6658): {update} checking for available updates... Sep 18 2023 07:01:40 webserver maldet(6658): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Sep 18 2023 07:01:40 webserver maldet(6658): {update} hashing install files and checking against server... Sep 18 2023 07:01:40 webserver maldet(6658): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Sep 18 2023 07:01:40 webserver maldet(6658): {update} latest version already installed. Sep 18 2023 07:01:40 webserver maldet(6794): {sigup} performing signature update check... Sep 18 2023 07:01:40 webserver maldet(6794): {sigup} local signature set is version 202309161217367 Sep 18 2023 07:01:40 webserver maldet(6794): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Sep 18 2023 07:01:40 webserver maldet(6794): {sigup} latest signature set already installed Sep 18 2023 07:01:40 webserver maldet(6909): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Sep 18 2023 07:01:41 webserver maldet(6909): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Sep 18 2023 07:01:41 webserver maldet(6909): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Sep 18 2023 07:01:41 webserver maldet(6909): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Sep 18 2023 07:01:41 webserver maldet(6909): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Sep 18 2023 07:04:23 webserver maldet(6909): {scan} file list completed in 162s, found 467 files... Sep 18 2023 07:04:23 webserver maldet(6909): {scan} found clamav binary at /usr/bin/clamscan, using clamav scanner engine... Sep 18 2023 07:04:23 webserver maldet(6909): {scan} scan of (467 files) in progress... Sep 18 2023 07:04:52 webserver maldet(6909): {scan} clamscan returned an error, check /usr/local/maldetect/logs/clamscan_log for details! Sep 18 2023 07:04:52 webserver maldet(6909): {scan} scan completed on : files 467, malware hits 0, cleaned hits 0, time 192s Sep 18 2023 07:04:52 webserver maldet(6909): {scan} scan report saved, to view run: maldet --report 230918-0701.6909 Sep 19 2023 06:59:22 webserver maldet(3936): {update} checking for available updates... Sep 19 2023 06:59:22 webserver maldet(3936): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Sep 19 2023 06:59:22 webserver maldet(3936): {update} hashing install files and checking against server... Sep 19 2023 06:59:22 webserver maldet(3936): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Sep 19 2023 06:59:22 webserver maldet(3936): {update} latest version already installed. Sep 19 2023 06:59:23 webserver maldet(4072): {sigup} performing signature update check... Sep 19 2023 06:59:23 webserver maldet(4072): {sigup} local signature set is version 202309161217367 Sep 19 2023 06:59:23 webserver maldet(4072): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Sep 19 2023 06:59:23 webserver maldet(4072): {sigup} latest signature set already installed Sep 19 2023 06:59:23 webserver maldet(4187): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Sep 19 2023 06:59:23 webserver maldet(4187): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Sep 19 2023 06:59:23 webserver maldet(4187): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Sep 19 2023 06:59:23 webserver maldet(4187): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Sep 19 2023 06:59:23 webserver maldet(4187): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Sep 19 2023 07:02:10 webserver maldet(4187): {scan} file list completed in 167s, found 77 files... Sep 19 2023 07:02:10 webserver maldet(4187): {scan} found clamav binary at /usr/bin/clamscan, using clamav scanner engine... Sep 19 2023 07:02:10 webserver maldet(4187): {scan} scan of (77 files) in progress... Sep 19 2023 07:02:42 webserver maldet(4187): {scan} scan completed on : files 77, malware hits 0, cleaned hits 0, time 199s Sep 19 2023 07:02:42 webserver maldet(4187): {scan} scan report saved, to view run: maldet --report 230919-0659.4187 Sep 20 2023 06:59:11 webserver maldet(1396): {update} checking for available updates... Sep 20 2023 06:59:11 webserver maldet(1396): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Sep 20 2023 06:59:11 webserver maldet(1396): {update} hashing install files and checking against server... Sep 20 2023 06:59:11 webserver maldet(1396): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Sep 20 2023 06:59:11 webserver maldet(1396): {update} latest version already installed. Sep 20 2023 06:59:11 webserver maldet(1532): {sigup} performing signature update check... Sep 20 2023 06:59:11 webserver maldet(1532): {sigup} local signature set is version 202309161217367 Sep 20 2023 06:59:11 webserver maldet(1532): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Sep 20 2023 06:59:11 webserver maldet(1532): {sigup} new signature set 202309191914112 available Sep 20 2023 06:59:11 webserver maldet(1532): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Sep 20 2023 06:59:11 webserver maldet(1532): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Sep 20 2023 06:59:11 webserver maldet(1532): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Sep 20 2023 06:59:11 webserver maldet(1532): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Sep 20 2023 06:59:11 webserver maldet(1532): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Sep 20 2023 06:59:11 webserver maldet(1532): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Sep 20 2023 06:59:11 webserver maldet(1532): {sigup} verified md5sum of maldet-sigpack.tgz Sep 20 2023 06:59:12 webserver maldet(1532): {sigup} unpacked and installed maldet-sigpack.tgz Sep 20 2023 06:59:12 webserver maldet(1532): {sigup} verified md5sum of maldet-clean.tgz Sep 20 2023 06:59:12 webserver maldet(1532): {sigup} unpacked and installed maldet-clean.tgz Sep 20 2023 06:59:12 webserver maldet(1532): {sigup} signature set update completed Sep 20 2023 06:59:12 webserver maldet(1532): {sigup} 17637 signatures (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Sep 20 2023 06:59:12 webserver maldet(1762): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Sep 20 2023 06:59:12 webserver maldet(1762): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Sep 20 2023 06:59:12 webserver maldet(1762): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Sep 20 2023 06:59:12 webserver maldet(1762): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Sep 20 2023 06:59:12 webserver maldet(1762): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Sep 20 2023 07:01:42 webserver maldet(1762): {scan} file list completed in 150s, found 242 files... Sep 20 2023 07:01:42 webserver maldet(1762): {scan} found clamav binary at /usr/bin/clamscan, using clamav scanner engine... Sep 20 2023 07:01:42 webserver maldet(1762): {scan} scan of (242 files) in progress... Sep 20 2023 07:02:13 webserver maldet(1762): {scan} scan completed on : files 242, malware hits 0, cleaned hits 0, time 181s Sep 20 2023 07:02:13 webserver maldet(1762): {scan} scan report saved, to view run: maldet --report 230920-0659.1762 Sep 21 2023 06:59:23 webserver maldet(2907): {update} checking for available updates... Sep 21 2023 06:59:23 webserver maldet(2907): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Sep 21 2023 06:59:23 webserver maldet(2907): {update} hashing install files and checking against server... Sep 21 2023 06:59:23 webserver maldet(2907): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Sep 21 2023 06:59:23 webserver maldet(2907): {update} latest version already installed. Sep 21 2023 06:59:23 webserver maldet(3043): {sigup} performing signature update check... Sep 21 2023 06:59:23 webserver maldet(3043): {sigup} local signature set is version 202309191914112 Sep 21 2023 06:59:23 webserver maldet(3043): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Sep 21 2023 06:59:23 webserver maldet(3043): {sigup} latest signature set already installed Sep 21 2023 06:59:23 webserver maldet(3158): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Sep 21 2023 06:59:24 webserver maldet(3158): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Sep 21 2023 06:59:24 webserver maldet(3158): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Sep 21 2023 06:59:24 webserver maldet(3158): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Sep 21 2023 06:59:24 webserver maldet(3158): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Sep 21 2023 07:03:42 webserver maldet(3158): {scan} file list completed in 258s, found 539 files... Sep 21 2023 07:03:42 webserver maldet(3158): {scan} found clamav binary at /usr/bin/clamscan, using clamav scanner engine... Sep 21 2023 07:03:42 webserver maldet(3158): {scan} scan of (539 files) in progress... Sep 21 2023 07:04:16 webserver maldet(3158): {scan} clamscan returned an error, check /usr/local/maldetect/logs/clamscan_log for details! Sep 21 2023 07:04:16 webserver maldet(3158): {scan} scan completed on : files 539, malware hits 0, cleaned hits 0, time 293s Sep 21 2023 07:04:16 webserver maldet(3158): {scan} scan report saved, to view run: maldet --report 230921-0659.3158 Sep 22 2023 06:58:49 webserver maldet(29851): {update} checking for available updates... Sep 22 2023 06:58:49 webserver maldet(29851): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Sep 22 2023 06:58:49 webserver maldet(29851): {update} hashing install files and checking against server... Sep 22 2023 06:58:49 webserver maldet(29851): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Sep 22 2023 06:58:49 webserver maldet(29851): {update} latest version already installed. Sep 22 2023 06:58:49 webserver maldet(29987): {sigup} performing signature update check... Sep 22 2023 06:58:49 webserver maldet(29987): {sigup} local signature set is version 202309191914112 Sep 22 2023 06:58:49 webserver maldet(29987): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Sep 22 2023 06:58:49 webserver maldet(29987): {sigup} latest signature set already installed Sep 22 2023 06:58:50 webserver maldet(30102): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Sep 22 2023 06:58:50 webserver maldet(30102): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Sep 22 2023 06:58:50 webserver maldet(30102): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Sep 22 2023 06:58:50 webserver maldet(30102): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Sep 22 2023 06:58:50 webserver maldet(30102): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Sep 22 2023 07:02:20 webserver maldet(30102): {scan} file list completed in 210s, found 268 files... Sep 22 2023 07:02:20 webserver maldet(30102): {scan} found clamav binary at /usr/bin/clamscan, using clamav scanner engine... Sep 22 2023 07:02:20 webserver maldet(30102): {scan} scan of (268 files) in progress... Sep 22 2023 07:02:50 webserver maldet(30102): {scan} clamscan returned an error, check /usr/local/maldetect/logs/clamscan_log for details! Sep 22 2023 07:02:50 webserver maldet(30102): {scan} scan completed on : files 268, malware hits 0, cleaned hits 0, time 240s Sep 22 2023 07:02:50 webserver maldet(30102): {scan} scan report saved, to view run: maldet --report 230922-0658.30102 Sep 23 2023 06:57:45 webserver maldet(21221): {update} checking for available updates... Sep 23 2023 06:57:45 webserver maldet(21221): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Sep 23 2023 06:57:45 webserver maldet(21221): {update} hashing install files and checking against server... Sep 23 2023 06:57:45 webserver maldet(21221): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Sep 23 2023 06:57:45 webserver maldet(21221): {update} latest version already installed. Sep 23 2023 06:57:45 webserver maldet(21357): {sigup} performing signature update check... Sep 23 2023 06:57:45 webserver maldet(21357): {sigup} local signature set is version 202309191914112 Sep 23 2023 06:57:45 webserver maldet(21357): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Sep 23 2023 06:57:45 webserver maldet(21357): {sigup} new signature set 202309222612647 available Sep 23 2023 06:57:45 webserver maldet(21357): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Sep 23 2023 06:57:45 webserver maldet(21357): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Sep 23 2023 06:57:45 webserver maldet(21357): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Sep 23 2023 06:57:45 webserver maldet(21357): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Sep 23 2023 06:57:45 webserver maldet(21357): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Sep 23 2023 06:57:45 webserver maldet(21357): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Sep 23 2023 06:57:45 webserver maldet(21357): {sigup} verified md5sum of maldet-sigpack.tgz Sep 23 2023 06:57:46 webserver maldet(21357): {sigup} unpacked and installed maldet-sigpack.tgz Sep 23 2023 06:57:46 webserver maldet(21357): {sigup} verified md5sum of maldet-clean.tgz Sep 23 2023 06:57:46 webserver maldet(21357): {sigup} unpacked and installed maldet-clean.tgz Sep 23 2023 06:57:46 webserver maldet(21357): {sigup} signature set update completed Sep 23 2023 06:57:46 webserver maldet(21357): {sigup} 17637 signatures (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Sep 23 2023 06:57:46 webserver maldet(21588): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Sep 23 2023 06:57:46 webserver maldet(21588): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Sep 23 2023 06:57:46 webserver maldet(21588): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Sep 23 2023 06:57:46 webserver maldet(21588): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Sep 23 2023 06:57:46 webserver maldet(21588): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Sep 23 2023 07:00:53 webserver maldet(21588): {scan} file list completed in 187s, found 754 files... Sep 23 2023 07:00:53 webserver maldet(21588): {scan} found clamav binary at /usr/bin/clamscan, using clamav scanner engine... Sep 23 2023 07:00:53 webserver maldet(21588): {scan} scan of (754 files) in progress... Sep 23 2023 07:01:29 webserver maldet(21588): {scan} clamscan returned an error, check /usr/local/maldetect/logs/clamscan_log for details! Sep 23 2023 07:01:29 webserver maldet(21588): {scan} scan completed on : files 754, malware hits 0, cleaned hits 0, time 223s Sep 23 2023 07:01:29 webserver maldet(21588): {scan} scan report saved, to view run: maldet --report 230923-0657.21588 Sep 24 2023 06:57:12 webserver maldet(21626): {update} checking for available updates... Sep 24 2023 06:57:12 webserver maldet(21626): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Sep 24 2023 06:57:12 webserver maldet(21626): {update} hashing install files and checking against server... Sep 24 2023 06:57:12 webserver maldet(21626): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Sep 24 2023 06:57:12 webserver maldet(21626): {update} latest version already installed. Sep 24 2023 06:57:12 webserver maldet(21762): {sigup} performing signature update check... Sep 24 2023 06:57:12 webserver maldet(21762): {sigup} local signature set is version 202309222612647 Sep 24 2023 06:57:12 webserver maldet(21762): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Sep 24 2023 06:57:12 webserver maldet(21762): {sigup} latest signature set already installed Sep 24 2023 06:57:12 webserver maldet(21876): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Sep 24 2023 06:57:12 webserver maldet(21876): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Sep 24 2023 06:57:12 webserver maldet(21876): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Sep 24 2023 06:57:12 webserver maldet(21876): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Sep 24 2023 06:57:12 webserver maldet(21876): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Sep 24 2023 06:59:26 webserver maldet(21876): {scan} file list completed in 134s, found 987 files... Sep 24 2023 06:59:26 webserver maldet(21876): {scan} found clamav binary at /usr/bin/clamscan, using clamav scanner engine... Sep 24 2023 06:59:26 webserver maldet(21876): {scan} scan of (987 files) in progress... Sep 24 2023 07:00:04 webserver maldet(21876): {scan} clamscan returned an error, check /usr/local/maldetect/logs/clamscan_log for details! Sep 24 2023 07:00:04 webserver maldet(21876): {scan} scan completed on : files 987, malware hits 0, cleaned hits 0, time 172s Sep 24 2023 07:00:04 webserver maldet(21876): {scan} scan report saved, to view run: maldet --report 230924-0657.21876 Sep 25 2023 06:59:51 webserver maldet(20151): {update} checking for available updates... Sep 25 2023 06:59:51 webserver maldet(20151): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Sep 25 2023 06:59:51 webserver maldet(20151): {update} hashing install files and checking against server... Sep 25 2023 06:59:51 webserver maldet(20151): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Sep 25 2023 06:59:51 webserver maldet(20151): {update} latest version already installed. Sep 25 2023 06:59:51 webserver maldet(20287): {sigup} performing signature update check... Sep 25 2023 06:59:51 webserver maldet(20287): {sigup} local signature set is version 202309222612647 Sep 25 2023 06:59:51 webserver maldet(20287): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Sep 25 2023 06:59:51 webserver maldet(20287): {sigup} latest signature set already installed Sep 25 2023 06:59:51 webserver maldet(20402): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Sep 25 2023 06:59:52 webserver maldet(20402): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Sep 25 2023 06:59:52 webserver maldet(20402): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Sep 25 2023 06:59:52 webserver maldet(20402): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Sep 25 2023 06:59:52 webserver maldet(20402): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Sep 25 2023 07:02:59 webserver maldet(20402): {scan} file list completed in 187s, found 336 files... Sep 25 2023 07:02:59 webserver maldet(20402): {scan} found clamav binary at /usr/bin/clamscan, using clamav scanner engine... Sep 25 2023 07:02:59 webserver maldet(20402): {scan} scan of (336 files) in progress... Sep 25 2023 07:03:33 webserver maldet(20402): {scan} scan completed on : files 336, malware hits 0, cleaned hits 0, time 222s Sep 25 2023 07:03:33 webserver maldet(20402): {scan} scan report saved, to view run: maldet --report 230925-0659.20402 Sep 26 2023 06:55:59 webserver maldet(15314): {update} checking for available updates... Sep 26 2023 06:55:59 webserver maldet(15314): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Sep 26 2023 06:55:59 webserver maldet(15314): {update} hashing install files and checking against server... Sep 26 2023 06:55:59 webserver maldet(15314): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Sep 26 2023 06:55:59 webserver maldet(15314): {update} latest version already installed. Sep 26 2023 06:55:59 webserver maldet(15451): {sigup} performing signature update check... Sep 26 2023 06:55:59 webserver maldet(15451): {sigup} local signature set is version 202309222612647 Sep 26 2023 06:55:59 webserver maldet(15451): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Sep 26 2023 06:55:59 webserver maldet(15451): {sigup} new signature set 20230925538362 available Sep 26 2023 06:55:59 webserver maldet(15451): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Sep 26 2023 06:55:59 webserver maldet(15451): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Sep 26 2023 06:55:59 webserver maldet(15451): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Sep 26 2023 06:55:59 webserver maldet(15451): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Sep 26 2023 06:55:59 webserver maldet(15451): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Sep 26 2023 06:55:59 webserver maldet(15451): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Sep 26 2023 06:55:59 webserver maldet(15451): {sigup} verified md5sum of maldet-sigpack.tgz Sep 26 2023 06:55:59 webserver maldet(15451): {sigup} unpacked and installed maldet-sigpack.tgz Sep 26 2023 06:55:59 webserver maldet(15451): {sigup} verified md5sum of maldet-clean.tgz Sep 26 2023 06:55:59 webserver maldet(15451): {sigup} unpacked and installed maldet-clean.tgz Sep 26 2023 06:55:59 webserver maldet(15451): {sigup} signature set update completed Sep 26 2023 06:55:59 webserver maldet(15451): {sigup} 17637 signatures (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Sep 26 2023 06:55:59 webserver maldet(15682): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Sep 26 2023 06:56:00 webserver maldet(15682): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Sep 26 2023 06:56:00 webserver maldet(15682): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Sep 26 2023 06:56:00 webserver maldet(15682): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Sep 26 2023 06:56:00 webserver maldet(15682): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Sep 26 2023 06:58:47 webserver maldet(15682): {scan} file list completed in 167s, found 402 files... Sep 26 2023 06:58:47 webserver maldet(15682): {scan} found clamav binary at /usr/bin/clamscan, using clamav scanner engine... Sep 26 2023 06:58:47 webserver maldet(15682): {scan} scan of (402 files) in progress... Sep 26 2023 06:59:19 webserver maldet(15682): {scan} clamscan returned an error, check /usr/local/maldetect/logs/clamscan_log for details! Sep 26 2023 06:59:19 webserver maldet(15682): {scan} scan completed on : files 402, malware hits 0, cleaned hits 0, time 200s Sep 26 2023 06:59:19 webserver maldet(15682): {scan} scan report saved, to view run: maldet --report 230926-0655.15682 Sep 27 2023 06:58:51 webserver maldet(7914): {update} checking for available updates... Sep 27 2023 06:58:51 webserver maldet(7914): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Sep 27 2023 06:58:51 webserver maldet(7914): {update} hashing install files and checking against server... Sep 27 2023 06:58:51 webserver maldet(7914): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Sep 27 2023 06:58:51 webserver maldet(7914): {update} latest version already installed. Sep 27 2023 06:58:51 webserver maldet(8050): {sigup} performing signature update check... Sep 27 2023 06:58:51 webserver maldet(8050): {sigup} local signature set is version 20230925538362 Sep 27 2023 06:58:51 webserver maldet(8050): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Sep 27 2023 06:58:51 webserver maldet(8050): {sigup} latest signature set already installed Sep 27 2023 06:58:52 webserver maldet(8165): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Sep 27 2023 06:58:52 webserver maldet(8165): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Sep 27 2023 06:58:52 webserver maldet(8165): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Sep 27 2023 06:58:52 webserver maldet(8165): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Sep 27 2023 06:58:52 webserver maldet(8165): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Sep 27 2023 07:01:49 webserver maldet(8165): {scan} file list completed in 177s, found 461 files... Sep 27 2023 07:01:49 webserver maldet(8165): {scan} found clamav binary at /usr/bin/clamscan, using clamav scanner engine... Sep 27 2023 07:01:49 webserver maldet(8165): {scan} scan of (461 files) in progress... Sep 27 2023 07:02:26 webserver maldet(8165): {scan} clamscan returned an error, check /usr/local/maldetect/logs/clamscan_log for details! Sep 27 2023 07:02:26 webserver maldet(8165): {scan} scan completed on : files 461, malware hits 0, cleaned hits 0, time 214s Sep 27 2023 07:02:26 webserver maldet(8165): {scan} scan report saved, to view run: maldet --report 230927-0658.8165 Sep 28 2023 06:56:41 webserver maldet(15663): {update} checking for available updates... Sep 28 2023 06:56:41 webserver maldet(15663): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Sep 28 2023 06:56:41 webserver maldet(15663): {update} hashing install files and checking against server... Sep 28 2023 06:56:41 webserver maldet(15663): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Sep 28 2023 06:56:41 webserver maldet(15663): {update} latest version already installed. Sep 28 2023 06:56:41 webserver maldet(15799): {sigup} performing signature update check... Sep 28 2023 06:56:41 webserver maldet(15799): {sigup} local signature set is version 20230925538362 Sep 28 2023 06:56:42 webserver maldet(15799): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Sep 28 2023 06:56:42 webserver maldet(15799): {sigup} new signature set 202309281258944 available Sep 28 2023 06:56:42 webserver maldet(15799): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Sep 28 2023 06:56:42 webserver maldet(15799): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Sep 28 2023 06:56:42 webserver maldet(15799): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Sep 28 2023 06:56:42 webserver maldet(15799): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Sep 28 2023 06:56:42 webserver maldet(15799): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Sep 28 2023 06:56:42 webserver maldet(15799): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Sep 28 2023 06:56:42 webserver maldet(15799): {sigup} unable to verify md5sum of maldet-sigpack.tgz, please try again or contact proj@rfxn.com Sep 28 2023 06:56:42 webserver maldet(15799): {sigup} verified md5sum of maldet-clean.tgz Sep 28 2023 06:56:42 webserver maldet(15799): {sigup} unpacked and installed maldet-clean.tgz Sep 28 2023 06:56:42 webserver maldet(15990): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Sep 28 2023 06:56:43 webserver maldet(15990): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Sep 28 2023 06:56:43 webserver maldet(15990): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Sep 28 2023 06:56:43 webserver maldet(15990): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Sep 28 2023 06:56:43 webserver maldet(15990): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Sep 28 2023 06:58:57 webserver maldet(15990): {scan} file list completed in 134s, found 406 files... Sep 28 2023 06:58:57 webserver maldet(15990): {scan} found clamav binary at /usr/bin/clamscan, using clamav scanner engine... Sep 28 2023 06:58:57 webserver maldet(15990): {scan} scan of (406 files) in progress... Sep 28 2023 06:59:52 webserver maldet(15990): {scan} clamscan returned an error, check /usr/local/maldetect/logs/clamscan_log for details! Sep 28 2023 06:59:52 webserver maldet(15990): {scan} scan completed on : files 406, malware hits 0, cleaned hits 0, time 190s Sep 28 2023 06:59:52 webserver maldet(15990): {scan} scan report saved, to view run: maldet --report 230928-0656.15990 Sep 29 2023 06:59:36 webserver maldet(30526): {update} checking for available updates... Sep 29 2023 06:59:36 webserver maldet(30526): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Sep 29 2023 06:59:36 webserver maldet(30526): {update} hashing install files and checking against server... Sep 29 2023 06:59:36 webserver maldet(30526): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Sep 29 2023 06:59:36 webserver maldet(30526): {update} latest version already installed. Sep 29 2023 06:59:36 webserver maldet(30662): {sigup} performing signature update check... Sep 29 2023 06:59:36 webserver maldet(30662): {sigup} local signature set is version 20230925538362 Sep 29 2023 06:59:36 webserver maldet(30662): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Sep 29 2023 06:59:36 webserver maldet(30662): {sigup} new signature set 202309281258944 available Sep 29 2023 06:59:36 webserver maldet(30662): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Sep 29 2023 06:59:36 webserver maldet(30662): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Sep 29 2023 06:59:36 webserver maldet(30662): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Sep 29 2023 06:59:36 webserver maldet(30662): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Sep 29 2023 06:59:36 webserver maldet(30662): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Sep 29 2023 06:59:36 webserver maldet(30662): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Sep 29 2023 06:59:36 webserver maldet(30662): {sigup} verified md5sum of maldet-sigpack.tgz Sep 29 2023 06:59:37 webserver maldet(30662): {sigup} unpacked and installed maldet-sigpack.tgz Sep 29 2023 06:59:37 webserver maldet(30662): {sigup} verified md5sum of maldet-clean.tgz Sep 29 2023 06:59:37 webserver maldet(30662): {sigup} unpacked and installed maldet-clean.tgz Sep 29 2023 06:59:37 webserver maldet(30662): {sigup} signature set update completed Sep 29 2023 06:59:37 webserver maldet(30662): {sigup} 17637 signatures (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Sep 29 2023 06:59:37 webserver maldet(30893): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Sep 29 2023 06:59:37 webserver maldet(30893): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Sep 29 2023 06:59:37 webserver maldet(30893): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Sep 29 2023 06:59:37 webserver maldet(30893): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Sep 29 2023 06:59:37 webserver maldet(30893): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Sep 29 2023 07:04:45 webserver maldet(30893): {scan} file list completed in 308s, found 397 files... Sep 29 2023 07:04:45 webserver maldet(30893): {scan} found clamav binary at /usr/bin/clamscan, using clamav scanner engine... Sep 29 2023 07:04:45 webserver maldet(30893): {scan} scan of (397 files) in progress... Sep 29 2023 07:05:21 webserver maldet(30893): {scan} clamscan returned an error, check /usr/local/maldetect/logs/clamscan_log for details! Sep 29 2023 07:05:21 webserver maldet(30893): {scan} scan completed on : files 397, malware hits 0, cleaned hits 0, time 344s Sep 29 2023 07:05:21 webserver maldet(30893): {scan} scan report saved, to view run: maldet --report 230929-0659.30893 Sep 30 2023 06:56:16 webserver maldet(27375): {update} checking for available updates... Sep 30 2023 06:56:17 webserver maldet(27375): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Sep 30 2023 06:56:17 webserver maldet(27375): {update} hashing install files and checking against server... Sep 30 2023 06:56:17 webserver maldet(27375): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Sep 30 2023 06:56:17 webserver maldet(27375): {update} latest version already installed. Sep 30 2023 06:56:17 webserver maldet(27511): {sigup} performing signature update check... Sep 30 2023 06:56:17 webserver maldet(27511): {sigup} local signature set is version 202309281258944 Sep 30 2023 06:56:17 webserver maldet(27511): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Sep 30 2023 06:56:17 webserver maldet(27511): {sigup} latest signature set already installed Sep 30 2023 06:56:17 webserver maldet(27625): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Sep 30 2023 06:56:18 webserver maldet(27625): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Sep 30 2023 06:56:18 webserver maldet(27625): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Sep 30 2023 06:56:18 webserver maldet(27625): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Sep 30 2023 06:56:18 webserver maldet(27625): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Sep 30 2023 07:12:31 webserver maldet(27625): {scan} file list completed in 973s, found 684 files... Sep 30 2023 07:12:31 webserver maldet(27625): {scan} found clamav binary at /usr/bin/clamscan, using clamav scanner engine... Sep 30 2023 07:12:31 webserver maldet(27625): {scan} scan of (684 files) in progress... Sep 30 2023 07:13:15 webserver maldet(27625): {scan} clamscan returned an error, check /usr/local/maldetect/logs/clamscan_log for details! Sep 30 2023 07:13:15 webserver maldet(27625): {scan} scan completed on : files 684, malware hits 0, cleaned hits 0, time 1018s Sep 30 2023 07:13:15 webserver maldet(27625): {scan} scan report saved, to view run: maldet --report 230930-0656.27625 Oct 01 2023 06:58:23 webserver maldet(29358): {update} checking for available updates... Oct 01 2023 06:58:23 webserver maldet(29358): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Oct 01 2023 06:58:23 webserver maldet(29358): {update} hashing install files and checking against server... Oct 01 2023 06:58:24 webserver maldet(29358): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Oct 01 2023 06:58:24 webserver maldet(29358): {update} latest version already installed. Oct 01 2023 06:58:24 webserver maldet(29494): {sigup} performing signature update check... Oct 01 2023 06:58:24 webserver maldet(29494): {sigup} local signature set is version 202309281258944 Oct 01 2023 06:58:24 webserver maldet(29494): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Oct 01 2023 06:58:24 webserver maldet(29494): {sigup} latest signature set already installed Oct 01 2023 06:58:24 webserver maldet(29610): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Oct 01 2023 06:58:25 webserver maldet(29610): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Oct 01 2023 06:58:25 webserver maldet(29610): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Oct 01 2023 06:58:25 webserver maldet(29610): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Oct 01 2023 06:58:25 webserver maldet(29610): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Oct 01 2023 07:02:58 webserver maldet(29610): {scan} file list completed in 273s, found 448 files... Oct 01 2023 07:02:58 webserver maldet(29610): {scan} found clamav binary at /usr/bin/clamscan, using clamav scanner engine... Oct 01 2023 07:02:58 webserver maldet(29610): {scan} scan of (448 files) in progress... Oct 01 2023 07:03:43 webserver maldet(29610): {scan} clamscan returned an error, check /usr/local/maldetect/logs/clamscan_log for details! Oct 01 2023 07:03:44 webserver maldet(29610): {scan} scan completed on : files 448, malware hits 0, cleaned hits 0, time 319s Oct 01 2023 07:03:44 webserver maldet(29610): {scan} scan report saved, to view run: maldet --report 231001-0658.29610 Oct 02 2023 06:59:41 webserver maldet(25675): {update} checking for available updates... Oct 02 2023 06:59:41 webserver maldet(25675): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Oct 02 2023 06:59:41 webserver maldet(25675): {update} hashing install files and checking against server... Oct 02 2023 06:59:41 webserver maldet(25675): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Oct 02 2023 06:59:41 webserver maldet(25675): {update} latest version already installed. Oct 02 2023 06:59:41 webserver maldet(25811): {sigup} performing signature update check... Oct 02 2023 06:59:41 webserver maldet(25811): {sigup} local signature set is version 202309281258944 Oct 02 2023 06:59:41 webserver maldet(25811): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Oct 02 2023 06:59:41 webserver maldet(25811): {sigup} new signature set 20231001494365 available Oct 02 2023 06:59:41 webserver maldet(25811): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Oct 02 2023 06:59:41 webserver maldet(25811): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Oct 02 2023 06:59:41 webserver maldet(25811): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Oct 02 2023 06:59:41 webserver maldet(25811): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Oct 02 2023 06:59:41 webserver maldet(25811): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Oct 02 2023 06:59:41 webserver maldet(25811): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Oct 02 2023 06:59:41 webserver maldet(25811): {sigup} verified md5sum of maldet-sigpack.tgz Oct 02 2023 06:59:41 webserver maldet(25811): {sigup} unpacked and installed maldet-sigpack.tgz Oct 02 2023 06:59:41 webserver maldet(25811): {sigup} verified md5sum of maldet-clean.tgz Oct 02 2023 06:59:41 webserver maldet(25811): {sigup} unpacked and installed maldet-clean.tgz Oct 02 2023 06:59:41 webserver maldet(25811): {sigup} signature set update completed Oct 02 2023 06:59:41 webserver maldet(25811): {sigup} 17637 signatures (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Oct 02 2023 06:59:41 webserver maldet(26042): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Oct 02 2023 06:59:42 webserver maldet(26042): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Oct 02 2023 06:59:42 webserver maldet(26042): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Oct 02 2023 06:59:42 webserver maldet(26042): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Oct 02 2023 06:59:42 webserver maldet(26042): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Oct 02 2023 07:02:29 webserver maldet(26042): {scan} file list completed in 167s, found 256 files... Oct 02 2023 07:02:29 webserver maldet(26042): {scan} found clamav binary at /usr/bin/clamscan, using clamav scanner engine... Oct 02 2023 07:02:29 webserver maldet(26042): {scan} scan of (256 files) in progress... Oct 02 2023 07:03:01 webserver maldet(26042): {scan} clamscan returned an error, check /usr/local/maldetect/logs/clamscan_log for details! Oct 02 2023 07:03:01 webserver maldet(26042): {scan} scan completed on : files 256, malware hits 0, cleaned hits 0, time 200s Oct 02 2023 07:03:01 webserver maldet(26042): {scan} scan report saved, to view run: maldet --report 231002-0659.26042 Oct 03 2023 06:56:26 webserver maldet(20054): {update} checking for available updates... Oct 03 2023 06:56:26 webserver maldet(20054): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Oct 03 2023 06:56:26 webserver maldet(20054): {update} hashing install files and checking against server... Oct 03 2023 06:56:26 webserver maldet(20054): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Oct 03 2023 06:56:26 webserver maldet(20054): {update} latest version already installed. Oct 03 2023 06:56:27 webserver maldet(20190): {sigup} performing signature update check... Oct 03 2023 06:56:27 webserver maldet(20190): {sigup} local signature set is version 20231001494365 Oct 03 2023 06:56:27 webserver maldet(20190): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Oct 03 2023 06:56:27 webserver maldet(20190): {sigup} latest signature set already installed Oct 03 2023 06:56:27 webserver maldet(20305): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Oct 03 2023 06:56:27 webserver maldet(20305): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Oct 03 2023 06:56:27 webserver maldet(20305): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Oct 03 2023 06:56:27 webserver maldet(20305): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Oct 03 2023 06:56:27 webserver maldet(20305): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Oct 03 2023 06:59:05 webserver maldet(20305): {scan} file list completed in 158s, found 337 files... Oct 03 2023 06:59:05 webserver maldet(20305): {scan} found clamav binary at /usr/bin/clamscan, using clamav scanner engine... Oct 03 2023 06:59:05 webserver maldet(20305): {scan} scan of (337 files) in progress... Oct 03 2023 06:59:35 webserver maldet(20305): {scan} scan completed on : files 337, malware hits 0, cleaned hits 0, time 188s Oct 03 2023 06:59:35 webserver maldet(20305): {scan} scan report saved, to view run: maldet --report 231003-0656.20305 Oct 03 2023 19:47:53 webserver maldet(270): {mon} could not find inotifywait command, install yum package inotify-tools or download from https://github.com/rvoicilas/inotify-tools/wiki/ Oct 04 2023 06:56:01 webserver maldet(29146): {update} checking for available updates... Oct 04 2023 06:56:01 webserver maldet(29146): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Oct 04 2023 06:56:01 webserver maldet(29146): {update} hashing install files and checking against server... Oct 04 2023 06:56:01 webserver maldet(29146): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Oct 04 2023 06:56:01 webserver maldet(29146): {update} latest version already installed. Oct 04 2023 06:56:01 webserver maldet(29282): {sigup} performing signature update check... Oct 04 2023 06:56:01 webserver maldet(29282): {sigup} local signature set is version 20231001494365 Oct 04 2023 06:56:01 webserver maldet(29282): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Oct 04 2023 06:56:01 webserver maldet(29282): {sigup} latest signature set already installed Oct 04 2023 06:56:01 webserver maldet(29397): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Oct 04 2023 06:56:02 webserver maldet(29397): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Oct 04 2023 06:56:02 webserver maldet(29397): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Oct 04 2023 06:56:02 webserver maldet(29397): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Oct 04 2023 06:56:02 webserver maldet(29397): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Oct 04 2023 06:59:25 webserver maldet(29397): {scan} file list completed in 203s, found 288 files... Oct 04 2023 06:59:25 webserver maldet(29397): {scan} found clamav binary at /usr/bin/clamdscan, using clamav scanner engine... Oct 04 2023 06:59:25 webserver maldet(29397): {scan} scan of (288 files) in progress... Oct 04 2023 06:59:32 webserver maldet(29397): {scan} scan completed on : files 288, malware hits 0, cleaned hits 0, time 211s Oct 04 2023 06:59:32 webserver maldet(29397): {scan} scan report saved, to view run: maldet --report 231004-0656.29397 Oct 05 2023 06:56:25 webserver maldet(26093): {update} checking for available updates... Oct 05 2023 06:56:25 webserver maldet(26093): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Oct 05 2023 06:56:25 webserver maldet(26093): {update} hashing install files and checking against server... Oct 05 2023 06:56:25 webserver maldet(26093): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Oct 05 2023 06:56:25 webserver maldet(26093): {update} latest version already installed. Oct 05 2023 06:56:25 webserver maldet(26229): {sigup} performing signature update check... Oct 05 2023 06:56:25 webserver maldet(26229): {sigup} local signature set is version 20231001494365 Oct 05 2023 06:56:25 webserver maldet(26229): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Oct 05 2023 06:56:25 webserver maldet(26229): {sigup} new signature set 202310041199244 available Oct 05 2023 06:56:25 webserver maldet(26229): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Oct 05 2023 06:56:25 webserver maldet(26229): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Oct 05 2023 06:56:25 webserver maldet(26229): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Oct 05 2023 06:56:25 webserver maldet(26229): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Oct 05 2023 06:56:25 webserver maldet(26229): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Oct 05 2023 06:56:25 webserver maldet(26229): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Oct 05 2023 06:56:25 webserver maldet(26229): {sigup} verified md5sum of maldet-sigpack.tgz Oct 05 2023 06:56:26 webserver maldet(26229): {sigup} unpacked and installed maldet-sigpack.tgz Oct 05 2023 06:56:26 webserver maldet(26229): {sigup} verified md5sum of maldet-clean.tgz Oct 05 2023 06:56:26 webserver maldet(26229): {sigup} unpacked and installed maldet-clean.tgz Oct 05 2023 06:56:26 webserver maldet(26229): {sigup} signature set update completed Oct 05 2023 06:56:26 webserver maldet(26229): {sigup} 17637 signatures (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Oct 05 2023 06:56:26 webserver maldet(26460): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Oct 05 2023 06:56:27 webserver maldet(26460): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Oct 05 2023 06:56:27 webserver maldet(26460): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Oct 05 2023 06:56:27 webserver maldet(26460): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Oct 05 2023 06:56:27 webserver maldet(26460): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Oct 05 2023 06:58:37 webserver maldet(26460): {scan} file list completed in 130s, found 98 files... Oct 05 2023 06:58:37 webserver maldet(26460): {scan} found clamav binary at /usr/bin/clamdscan, using clamav scanner engine... Oct 05 2023 06:58:37 webserver maldet(26460): {scan} scan of (98 files) in progress... Oct 05 2023 06:58:39 webserver maldet(26460): {scan} scan completed on : files 98, malware hits 0, cleaned hits 0, time 133s Oct 05 2023 06:58:39 webserver maldet(26460): {scan} scan report saved, to view run: maldet --report 231005-0656.26460 Oct 06 2023 06:56:53 webserver maldet(22938): {update} checking for available updates... Oct 06 2023 06:56:54 webserver maldet(22938): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Oct 06 2023 06:56:54 webserver maldet(22938): {update} hashing install files and checking against server... Oct 06 2023 06:56:54 webserver maldet(22938): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Oct 06 2023 06:56:54 webserver maldet(22938): {update} latest version already installed. Oct 06 2023 06:56:54 webserver maldet(23074): {sigup} performing signature update check... Oct 06 2023 06:56:54 webserver maldet(23074): {sigup} local signature set is version 202310041199244 Oct 06 2023 06:56:54 webserver maldet(23074): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Oct 06 2023 06:56:54 webserver maldet(23074): {sigup} latest signature set already installed Oct 06 2023 06:56:54 webserver maldet(23189): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Oct 06 2023 06:56:54 webserver maldet(23189): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Oct 06 2023 06:56:54 webserver maldet(23189): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Oct 06 2023 06:56:54 webserver maldet(23189): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Oct 06 2023 06:56:54 webserver maldet(23189): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Oct 06 2023 06:56:59 webserver maldet(23189): {scan} file list completed in 5s, found 12379 files... Oct 06 2023 06:56:59 webserver maldet(23189): {scan} found clamav binary at /usr/bin/clamdscan, using clamav scanner engine... Oct 06 2023 06:56:59 webserver maldet(23189): {scan} scan of (12379 files) in progress... Oct 06 2023 06:59:41 webserver maldet(23189): {scan} scan completed on : files 12379, malware hits 0, cleaned hits 0, time 167s Oct 06 2023 06:59:41 webserver maldet(23189): {scan} scan report saved, to view run: maldet --report 231006-0656.23189 Oct 07 2023 06:56:11 webserver maldet(27964): {update} checking for available updates... Oct 07 2023 06:56:11 webserver maldet(27964): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Oct 07 2023 06:56:11 webserver maldet(27964): {update} hashing install files and checking against server... Oct 07 2023 06:56:11 webserver maldet(27964): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Oct 07 2023 06:56:11 webserver maldet(27964): {update} latest version already installed. Oct 07 2023 06:56:11 webserver maldet(28100): {sigup} performing signature update check... Oct 07 2023 06:56:11 webserver maldet(28100): {sigup} local signature set is version 202310041199244 Oct 07 2023 06:56:11 webserver maldet(28100): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Oct 07 2023 06:56:11 webserver maldet(28100): {sigup} latest signature set already installed Oct 07 2023 06:56:11 webserver maldet(28214): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Oct 07 2023 06:56:11 webserver maldet(28214): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Oct 07 2023 06:56:11 webserver maldet(28214): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Oct 07 2023 06:56:11 webserver maldet(28214): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Oct 07 2023 06:56:11 webserver maldet(28214): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Oct 07 2023 06:56:16 webserver maldet(28214): {scan} file list completed in 5s, found 278 files... Oct 07 2023 06:56:16 webserver maldet(28214): {scan} found clamav binary at /usr/bin/clamdscan, using clamav scanner engine... Oct 07 2023 06:56:16 webserver maldet(28214): {scan} scan of (278 files) in progress... Oct 07 2023 06:56:21 webserver maldet(28214): {scan} scan completed on : files 278, malware hits 0, cleaned hits 0, time 10s Oct 07 2023 06:56:21 webserver maldet(28214): {scan} scan report saved, to view run: maldet --report 231007-0656.28214 Oct 08 2023 07:04:54 webserver maldet(28807): {update} checking for available updates... Oct 08 2023 07:04:54 webserver maldet(28807): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Oct 08 2023 07:04:54 webserver maldet(28807): {update} hashing install files and checking against server... Oct 08 2023 07:04:54 webserver maldet(28807): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Oct 08 2023 07:04:54 webserver maldet(28807): {update} latest version already installed. Oct 08 2023 07:04:54 webserver maldet(28943): {sigup} performing signature update check... Oct 08 2023 07:04:54 webserver maldet(28943): {sigup} local signature set is version 202310041199244 Oct 08 2023 07:04:54 webserver maldet(28943): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Oct 08 2023 07:04:54 webserver maldet(28943): {sigup} new signature set 202310071896932 available Oct 08 2023 07:04:54 webserver maldet(28943): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Oct 08 2023 07:04:54 webserver maldet(28943): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Oct 08 2023 07:04:55 webserver maldet(28943): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Oct 08 2023 07:04:55 webserver maldet(28943): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Oct 08 2023 07:04:55 webserver maldet(28943): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Oct 08 2023 07:04:55 webserver maldet(28943): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Oct 08 2023 07:04:55 webserver maldet(28943): {sigup} verified md5sum of maldet-sigpack.tgz Oct 08 2023 07:04:55 webserver maldet(28943): {sigup} unpacked and installed maldet-sigpack.tgz Oct 08 2023 07:04:55 webserver maldet(28943): {sigup} verified md5sum of maldet-clean.tgz Oct 08 2023 07:04:55 webserver maldet(28943): {sigup} unpacked and installed maldet-clean.tgz Oct 08 2023 07:04:55 webserver maldet(28943): {sigup} signature set update completed Oct 08 2023 07:04:55 webserver maldet(28943): {sigup} 17637 signatures (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Oct 08 2023 07:04:55 webserver maldet(29175): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Oct 08 2023 07:04:55 webserver maldet(29175): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Oct 08 2023 07:04:55 webserver maldet(29175): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Oct 08 2023 07:04:55 webserver maldet(29175): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Oct 08 2023 07:04:55 webserver maldet(29175): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Oct 08 2023 07:07:04 webserver maldet(29175): {scan} file list completed in 129s, found 311 files... Oct 08 2023 07:07:04 webserver maldet(29175): {scan} found clamav binary at /usr/bin/clamdscan, using clamav scanner engine... Oct 08 2023 07:07:04 webserver maldet(29175): {scan} scan of (311 files) in progress... Oct 08 2023 07:07:09 webserver maldet(29175): {scan} scan completed on : files 311, malware hits 0, cleaned hits 0, time 134s Oct 08 2023 07:07:09 webserver maldet(29175): {scan} scan report saved, to view run: maldet --report 231008-0704.29175 Oct 09 2023 07:01:17 webserver maldet(25578): {update} checking for available updates... Oct 09 2023 07:01:17 webserver maldet(25578): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Oct 09 2023 07:01:17 webserver maldet(25578): {update} hashing install files and checking against server... Oct 09 2023 07:01:17 webserver maldet(25578): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Oct 09 2023 07:01:17 webserver maldet(25578): {update} latest version already installed. Oct 09 2023 07:01:17 webserver maldet(25714): {sigup} performing signature update check... Oct 09 2023 07:01:17 webserver maldet(25714): {sigup} local signature set is version 202310071896932 Oct 09 2023 07:01:17 webserver maldet(25714): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Oct 09 2023 07:01:18 webserver maldet(25714): {sigup} latest signature set already installed Oct 09 2023 07:01:18 webserver maldet(25829): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Oct 09 2023 07:01:44 webserver maldet(25829): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Oct 09 2023 07:01:44 webserver maldet(25829): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Oct 09 2023 07:01:44 webserver maldet(25829): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Oct 09 2023 07:01:44 webserver maldet(25829): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Oct 09 2023 07:10:54 webserver maldet(25829): {scan} file list completed in 550s, found 201 files... Oct 09 2023 07:10:54 webserver maldet(25829): {scan} found clamav binary at /usr/bin/clamdscan, using clamav scanner engine... Oct 09 2023 07:10:54 webserver maldet(25829): {scan} scan of (201 files) in progress... Oct 09 2023 07:11:02 webserver maldet(25829): {scan} clamscan returned an error, check /usr/local/maldetect/logs/clamscan_log for details! Oct 09 2023 07:11:02 webserver maldet(25829): {scan} scan completed on : files 201, malware hits 0, cleaned hits 0, time 584s Oct 09 2023 07:11:02 webserver maldet(25829): {scan} scan report saved, to view run: maldet --report 231009-0701.25829 Oct 10 2023 07:04:51 webserver maldet(25625): {update} checking for available updates... Oct 10 2023 07:04:52 webserver maldet(25625): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Oct 10 2023 07:04:52 webserver maldet(25625): {update} hashing install files and checking against server... Oct 10 2023 07:04:52 webserver maldet(25625): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Oct 10 2023 07:04:52 webserver maldet(25625): {update} latest version already installed. Oct 10 2023 07:04:52 webserver maldet(25761): {sigup} performing signature update check... Oct 10 2023 07:04:52 webserver maldet(25761): {sigup} local signature set is version 202310071896932 Oct 10 2023 07:04:52 webserver maldet(25761): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Oct 10 2023 07:04:52 webserver maldet(25761): {sigup} latest signature set already installed Oct 10 2023 07:04:52 webserver maldet(25876): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Oct 10 2023 07:04:52 webserver maldet(25876): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Oct 10 2023 07:04:52 webserver maldet(25876): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Oct 10 2023 07:04:52 webserver maldet(25876): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Oct 10 2023 07:04:52 webserver maldet(25876): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Oct 10 2023 07:07:09 webserver maldet(25876): {scan} file list completed in 137s, found 285 files... Oct 10 2023 07:07:09 webserver maldet(25876): {scan} found clamav binary at /usr/bin/clamdscan, using clamav scanner engine... Oct 10 2023 07:07:09 webserver maldet(25876): {scan} scan of (285 files) in progress... Oct 10 2023 07:07:13 webserver maldet(25876): {scan} scan completed on : files 285, malware hits 0, cleaned hits 0, time 141s Oct 10 2023 07:07:13 webserver maldet(25876): {scan} scan report saved, to view run: maldet --report 231010-0704.25876 Oct 11 2023 07:06:48 webserver maldet(23206): {update} checking for available updates... Oct 11 2023 07:06:48 webserver maldet(23206): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Oct 11 2023 07:06:48 webserver maldet(23206): {update} hashing install files and checking against server... Oct 11 2023 07:06:48 webserver maldet(23206): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Oct 11 2023 07:06:48 webserver maldet(23206): {update} latest version already installed. Oct 11 2023 07:06:48 webserver maldet(23342): {sigup} performing signature update check... Oct 11 2023 07:06:48 webserver maldet(23342): {sigup} local signature set is version 202310071896932 Oct 11 2023 07:06:49 webserver maldet(23342): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Oct 11 2023 07:06:49 webserver maldet(23342): {sigup} new signature set 202310102596891 available Oct 11 2023 07:06:49 webserver maldet(23342): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Oct 11 2023 07:06:50 webserver maldet(23342): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Oct 11 2023 07:06:50 webserver maldet(23342): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Oct 11 2023 07:06:50 webserver maldet(23342): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Oct 11 2023 07:06:50 webserver maldet(23342): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Oct 11 2023 07:06:50 webserver maldet(23342): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Oct 11 2023 07:06:50 webserver maldet(23342): {sigup} verified md5sum of maldet-sigpack.tgz Oct 11 2023 07:06:51 webserver maldet(23342): {sigup} unpacked and installed maldet-sigpack.tgz Oct 11 2023 07:06:51 webserver maldet(23342): {sigup} verified md5sum of maldet-clean.tgz Oct 11 2023 07:06:51 webserver maldet(23342): {sigup} unpacked and installed maldet-clean.tgz Oct 11 2023 07:06:51 webserver maldet(23342): {sigup} signature set update completed Oct 11 2023 07:06:51 webserver maldet(23342): {sigup} 17637 signatures (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Oct 11 2023 07:06:52 webserver maldet(23574): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Oct 11 2023 07:07:46 webserver maldet(23574): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Oct 11 2023 07:07:46 webserver maldet(23574): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Oct 11 2023 07:07:46 webserver maldet(23574): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Oct 11 2023 07:07:46 webserver maldet(23574): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Oct 11 2023 07:25:55 webserver maldet(23574): {scan} file list completed in 1089s, found 69 files... Oct 11 2023 07:25:55 webserver maldet(23574): {scan} found clamav binary at /usr/bin/clamdscan, using clamav scanner engine... Oct 11 2023 07:25:55 webserver maldet(23574): {scan} scan of (69 files) in progress... Oct 11 2023 07:26:04 webserver maldet(23574): {scan} clamscan returned an error, check /usr/local/maldetect/logs/clamscan_log for details! Oct 11 2023 07:26:04 webserver maldet(23574): {scan} scan completed on : files 69, malware hits 0, cleaned hits 0, time 1152s Oct 11 2023 07:26:04 webserver maldet(23574): {scan} scan report saved, to view run: maldet --report 231011-0706.23574 Oct 12 2023 06:56:21 webserver maldet(21183): {update} checking for available updates... Oct 12 2023 06:56:21 webserver maldet(21183): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Oct 12 2023 06:56:21 webserver maldet(21183): {update} hashing install files and checking against server... Oct 12 2023 06:56:21 webserver maldet(21183): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Oct 12 2023 06:56:21 webserver maldet(21183): {update} latest version already installed. Oct 12 2023 06:56:21 webserver maldet(21319): {sigup} performing signature update check... Oct 12 2023 06:56:21 webserver maldet(21319): {sigup} local signature set is version 202310102596891 Oct 12 2023 06:56:21 webserver maldet(21319): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Oct 12 2023 06:56:21 webserver maldet(21319): {sigup} latest signature set already installed Oct 12 2023 06:56:21 webserver maldet(21433): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Oct 12 2023 06:56:28 webserver maldet(21433): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Oct 12 2023 06:56:28 webserver maldet(21433): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Oct 12 2023 06:56:28 webserver maldet(21433): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Oct 12 2023 06:56:28 webserver maldet(21433): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Oct 12 2023 07:00:23 webserver maldet(21433): {scan} file list completed in 235s, found 313 files... Oct 12 2023 07:00:23 webserver maldet(21433): {scan} found clamav binary at /usr/bin/clamdscan, using clamav scanner engine... Oct 12 2023 07:00:23 webserver maldet(21433): {scan} scan of (313 files) in progress... Oct 12 2023 07:01:25 webserver maldet(21433): {scan} clamscan returned an error, check /usr/local/maldetect/logs/clamscan_log for details! Oct 12 2023 07:01:25 webserver maldet(21433): {scan} scan completed on : files 313, malware hits 0, cleaned hits 0, time 304s Oct 12 2023 07:01:25 webserver maldet(21433): {scan} scan report saved, to view run: maldet --report 231012-0656.21433 Oct 13 2023 07:00:57 webserver maldet(15762): {update} checking for available updates... Oct 13 2023 07:00:57 webserver maldet(15762): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Oct 13 2023 07:00:57 webserver maldet(15762): {update} hashing install files and checking against server... Oct 13 2023 07:00:57 webserver maldet(15762): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Oct 13 2023 07:00:57 webserver maldet(15762): {update} latest version already installed. Oct 13 2023 07:00:57 webserver maldet(15898): {sigup} performing signature update check... Oct 13 2023 07:00:57 webserver maldet(15898): {sigup} local signature set is version 202310102596891 Oct 13 2023 07:00:57 webserver maldet(15898): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Oct 13 2023 07:00:57 webserver maldet(15898): {sigup} latest signature set already installed Oct 13 2023 07:00:57 webserver maldet(16013): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Oct 13 2023 07:00:57 webserver maldet(16013): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Oct 13 2023 07:00:57 webserver maldet(16013): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Oct 13 2023 07:00:57 webserver maldet(16013): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Oct 13 2023 07:00:57 webserver maldet(16013): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Oct 13 2023 07:03:17 webserver maldet(16013): {scan} file list completed in 140s, found 636 files... Oct 13 2023 07:03:17 webserver maldet(16013): {scan} found clamav binary at /usr/bin/clamdscan, using clamav scanner engine... Oct 13 2023 07:03:17 webserver maldet(16013): {scan} scan of (636 files) in progress... Oct 13 2023 07:03:37 webserver maldet(16013): {scan} scan completed on : files 636, malware hits 0, cleaned hits 0, time 160s Oct 13 2023 07:03:37 webserver maldet(16013): {scan} scan report saved, to view run: maldet --report 231013-0700.16013 Oct 14 2023 06:57:29 webserver maldet(9131): {update} checking for available updates... Oct 14 2023 06:57:29 webserver maldet(9131): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Oct 14 2023 06:57:29 webserver maldet(9131): {update} hashing install files and checking against server... Oct 14 2023 06:57:29 webserver maldet(9131): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Oct 14 2023 06:57:29 webserver maldet(9131): {update} latest version already installed. Oct 14 2023 06:57:29 webserver maldet(9267): {sigup} performing signature update check... Oct 14 2023 06:57:29 webserver maldet(9267): {sigup} local signature set is version 202310102596891 Oct 14 2023 06:57:29 webserver maldet(9267): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Oct 14 2023 06:57:29 webserver maldet(9267): {sigup} new signature set 202310133295510 available Oct 14 2023 06:57:29 webserver maldet(9267): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Oct 14 2023 06:57:29 webserver maldet(9267): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Oct 14 2023 06:57:29 webserver maldet(9267): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Oct 14 2023 06:57:29 webserver maldet(9267): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Oct 14 2023 06:57:29 webserver maldet(9267): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Oct 14 2023 06:57:29 webserver maldet(9267): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Oct 14 2023 06:57:29 webserver maldet(9267): {sigup} verified md5sum of maldet-sigpack.tgz Oct 14 2023 06:57:29 webserver maldet(9267): {sigup} unpacked and installed maldet-sigpack.tgz Oct 14 2023 06:57:29 webserver maldet(9267): {sigup} verified md5sum of maldet-clean.tgz Oct 14 2023 06:57:29 webserver maldet(9267): {sigup} unpacked and installed maldet-clean.tgz Oct 14 2023 06:57:29 webserver maldet(9267): {sigup} signature set update completed Oct 14 2023 06:57:30 webserver maldet(9267): {sigup} 17637 signatures (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Oct 14 2023 06:57:30 webserver maldet(9499): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Oct 14 2023 06:57:34 webserver maldet(9499): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Oct 14 2023 06:57:34 webserver maldet(9499): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Oct 14 2023 06:57:34 webserver maldet(9499): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Oct 14 2023 06:57:34 webserver maldet(9499): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Oct 14 2023 06:59:47 webserver maldet(9499): {scan} file list completed in 133s, found 470 files... Oct 14 2023 06:59:47 webserver maldet(9499): {scan} found clamav binary at /usr/bin/clamdscan, using clamav scanner engine... Oct 14 2023 06:59:47 webserver maldet(9499): {scan} scan of (470 files) in progress... Oct 14 2023 06:59:54 webserver maldet(9499): {scan} clamscan returned an error, check /usr/local/maldetect/logs/clamscan_log for details! Oct 14 2023 06:59:54 webserver maldet(9499): {scan} scan completed on : files 470, malware hits 0, cleaned hits 0, time 144s Oct 14 2023 06:59:54 webserver maldet(9499): {scan} scan report saved, to view run: maldet --report 231014-0657.9499 Oct 15 2023 06:57:21 webserver maldet(9470): {update} checking for available updates... Oct 15 2023 06:57:21 webserver maldet(9470): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Oct 15 2023 06:57:21 webserver maldet(9470): {update} hashing install files and checking against server... Oct 15 2023 06:57:22 webserver maldet(9470): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Oct 15 2023 06:57:22 webserver maldet(9470): {update} latest version already installed. Oct 15 2023 06:57:22 webserver maldet(9606): {sigup} performing signature update check... Oct 15 2023 06:57:22 webserver maldet(9606): {sigup} local signature set is version 202310133295510 Oct 15 2023 06:57:22 webserver maldet(9606): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Oct 15 2023 06:57:22 webserver maldet(9606): {sigup} latest signature set already installed Oct 15 2023 06:57:22 webserver maldet(9721): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Oct 15 2023 06:57:23 webserver maldet(9721): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Oct 15 2023 06:57:23 webserver maldet(9721): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Oct 15 2023 06:57:23 webserver maldet(9721): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Oct 15 2023 06:57:23 webserver maldet(9721): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Oct 15 2023 07:02:12 webserver maldet(9721): {scan} file list completed in 289s, found 218 files... Oct 15 2023 07:02:12 webserver maldet(9721): {scan} found clamav binary at /usr/bin/clamdscan, using clamav scanner engine... Oct 15 2023 07:02:12 webserver maldet(9721): {scan} scan of (218 files) in progress... Oct 15 2023 07:02:20 webserver maldet(9721): {scan} clamscan returned an error, check /usr/local/maldetect/logs/clamscan_log for details! Oct 15 2023 07:02:20 webserver maldet(9721): {scan} scan completed on : files 218, malware hits 0, cleaned hits 0, time 298s Oct 15 2023 07:02:20 webserver maldet(9721): {scan} scan report saved, to view run: maldet --report 231015-0657.9721 Oct 16 2023 06:57:43 webserver maldet(5496): {update} checking for available updates... Oct 16 2023 06:57:43 webserver maldet(5496): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Oct 16 2023 06:57:43 webserver maldet(5496): {update} hashing install files and checking against server... Oct 16 2023 06:57:43 webserver maldet(5496): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Oct 16 2023 06:57:43 webserver maldet(5496): {update} latest version already installed. Oct 16 2023 06:57:43 webserver maldet(5632): {sigup} performing signature update check... Oct 16 2023 06:57:43 webserver maldet(5632): {sigup} local signature set is version 202310133295510 Oct 16 2023 06:57:43 webserver maldet(5632): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Oct 16 2023 06:57:44 webserver maldet(5632): {sigup} new signature set 20231016539229 available Oct 16 2023 06:57:44 webserver maldet(5632): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Oct 16 2023 06:57:44 webserver maldet(5632): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Oct 16 2023 06:57:44 webserver maldet(5632): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Oct 16 2023 06:57:44 webserver maldet(5632): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Oct 16 2023 06:57:44 webserver maldet(5632): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Oct 16 2023 06:57:44 webserver maldet(5632): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Oct 16 2023 06:57:44 webserver maldet(5632): {sigup} verified md5sum of maldet-sigpack.tgz Oct 16 2023 06:57:45 webserver maldet(5632): {sigup} unpacked and installed maldet-sigpack.tgz Oct 16 2023 06:57:45 webserver maldet(5632): {sigup} verified md5sum of maldet-clean.tgz Oct 16 2023 06:57:45 webserver maldet(5632): {sigup} unpacked and installed maldet-clean.tgz Oct 16 2023 06:57:45 webserver maldet(5632): {sigup} signature set update completed Oct 16 2023 06:57:45 webserver maldet(5632): {sigup} 17637 signatures (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Oct 16 2023 06:57:45 webserver maldet(5864): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Oct 16 2023 06:58:44 webserver maldet(5864): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Oct 16 2023 06:58:44 webserver maldet(5864): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Oct 16 2023 06:58:44 webserver maldet(5864): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Oct 16 2023 06:58:44 webserver maldet(5864): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Oct 16 2023 07:09:55 webserver maldet(5864): {scan} file list completed in 671s, found 183 files... Oct 16 2023 07:09:55 webserver maldet(5864): {scan} found clamav binary at /usr/bin/clamdscan, using clamav scanner engine... Oct 16 2023 07:09:55 webserver maldet(5864): {scan} scan of (183 files) in progress... Oct 16 2023 07:10:01 webserver maldet(5864): {scan} clamscan returned an error, check /usr/local/maldetect/logs/clamscan_log for details! Oct 16 2023 07:10:01 webserver maldet(5864): {scan} scan completed on : files 183, malware hits 0, cleaned hits 0, time 736s Oct 16 2023 07:10:01 webserver maldet(5864): {scan} scan report saved, to view run: maldet --report 231016-0657.5864 Oct 17 2023 06:59:25 webserver maldet(32543): {update} checking for available updates... Oct 17 2023 06:59:25 webserver maldet(32543): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Oct 17 2023 06:59:25 webserver maldet(32543): {update} hashing install files and checking against server... Oct 17 2023 06:59:26 webserver maldet(32543): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Oct 17 2023 06:59:26 webserver maldet(32543): {update} latest version already installed. Oct 17 2023 06:59:26 webserver maldet(32679): {sigup} performing signature update check... Oct 17 2023 06:59:26 webserver maldet(32679): {sigup} local signature set is version 202310133295510 Oct 17 2023 06:59:26 webserver maldet(32679): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Oct 17 2023 06:59:26 webserver maldet(32679): {sigup} new signature set 20231016539229 available Oct 17 2023 06:59:26 webserver maldet(32679): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Oct 17 2023 06:59:26 webserver maldet(32679): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Oct 17 2023 06:59:26 webserver maldet(32679): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Oct 17 2023 06:59:26 webserver maldet(32679): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Oct 17 2023 06:59:26 webserver maldet(32679): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Oct 17 2023 06:59:26 webserver maldet(32679): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Oct 17 2023 06:59:26 webserver maldet(32679): {sigup} verified md5sum of maldet-sigpack.tgz Oct 17 2023 06:59:26 webserver maldet(32679): {sigup} unpacked and installed maldet-sigpack.tgz Oct 17 2023 06:59:26 webserver maldet(32679): {sigup} verified md5sum of maldet-clean.tgz Oct 17 2023 06:59:26 webserver maldet(32679): {sigup} unpacked and installed maldet-clean.tgz Oct 17 2023 06:59:26 webserver maldet(32679): {sigup} signature set update completed Oct 17 2023 06:59:26 webserver maldet(32679): {sigup} 17637 signatures (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Oct 17 2023 06:59:26 webserver maldet(443): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Oct 17 2023 06:59:30 webserver maldet(443): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Oct 17 2023 06:59:30 webserver maldet(443): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Oct 17 2023 06:59:30 webserver maldet(443): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Oct 17 2023 06:59:30 webserver maldet(443): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Oct 17 2023 07:01:43 webserver maldet(443): {scan} file list completed in 133s, found 410 files... Oct 17 2023 07:01:43 webserver maldet(443): {scan} found clamav binary at /usr/bin/clamdscan, using clamav scanner engine... Oct 17 2023 07:01:43 webserver maldet(443): {scan} scan of (410 files) in progress... Oct 17 2023 07:01:48 webserver maldet(443): {scan} clamscan returned an error, check /usr/local/maldetect/logs/clamscan_log for details! Oct 17 2023 07:01:48 webserver maldet(443): {scan} scan completed on : files 410, malware hits 0, cleaned hits 0, time 142s Oct 17 2023 07:01:48 webserver maldet(443): {scan} scan report saved, to view run: maldet --report 231017-0659.443 Oct 18 2023 06:57:03 webserver maldet(28109): {update} checking for available updates... Oct 18 2023 06:57:03 webserver maldet(28109): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Oct 18 2023 06:57:03 webserver maldet(28109): {update} hashing install files and checking against server... Oct 18 2023 06:57:03 webserver maldet(28109): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Oct 18 2023 06:57:03 webserver maldet(28109): {update} latest version already installed. Oct 18 2023 06:57:03 webserver maldet(28245): {sigup} performing signature update check... Oct 18 2023 06:57:03 webserver maldet(28245): {sigup} local signature set is version 20231016539229 Oct 18 2023 06:57:03 webserver maldet(28245): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Oct 18 2023 06:57:03 webserver maldet(28245): {sigup} latest signature set already installed Oct 18 2023 06:57:03 webserver maldet(28360): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Oct 18 2023 06:57:03 webserver maldet(28360): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Oct 18 2023 06:57:03 webserver maldet(28360): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Oct 18 2023 06:57:04 webserver maldet(28360): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Oct 18 2023 06:57:04 webserver maldet(28360): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Oct 18 2023 06:59:15 webserver maldet(28360): {scan} file list completed in 131s, found 610 files... Oct 18 2023 06:59:15 webserver maldet(28360): {scan} found clamav binary at /usr/bin/clamdscan, using clamav scanner engine... Oct 18 2023 06:59:15 webserver maldet(28360): {scan} scan of (610 files) in progress... Oct 18 2023 06:59:24 webserver maldet(28360): {scan} scan completed on : files 610, malware hits 0, cleaned hits 0, time 141s Oct 18 2023 06:59:24 webserver maldet(28360): {scan} scan report saved, to view run: maldet --report 231018-0657.28360 Oct 19 2023 06:58:28 webserver maldet(32562): {update} checking for available updates... Oct 19 2023 06:58:28 webserver maldet(32562): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Oct 19 2023 06:58:28 webserver maldet(32562): {update} hashing install files and checking against server... Oct 19 2023 06:58:28 webserver maldet(32562): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Oct 19 2023 06:58:28 webserver maldet(32562): {update} latest version already installed. Oct 19 2023 06:58:28 webserver maldet(32698): {sigup} performing signature update check... Oct 19 2023 06:58:28 webserver maldet(32698): {sigup} local signature set is version 20231016539229 Oct 19 2023 06:58:28 webserver maldet(32698): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Oct 19 2023 06:58:28 webserver maldet(32698): {sigup} new signature set 20231019534245 available Oct 19 2023 06:58:28 webserver maldet(32698): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Oct 19 2023 06:58:28 webserver maldet(32698): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Oct 19 2023 06:58:28 webserver maldet(32698): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Oct 19 2023 06:58:28 webserver maldet(32698): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Oct 19 2023 06:58:28 webserver maldet(32698): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Oct 19 2023 06:58:28 webserver maldet(32698): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Oct 19 2023 06:58:28 webserver maldet(32698): {sigup} unable to verify md5sum of maldet-sigpack.tgz, please try again or contact proj@rfxn.com Oct 19 2023 06:58:28 webserver maldet(32698): {sigup} verified md5sum of maldet-clean.tgz Oct 19 2023 06:58:28 webserver maldet(32698): {sigup} unpacked and installed maldet-clean.tgz Oct 19 2023 06:58:28 webserver maldet(417): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Oct 19 2023 06:58:29 webserver maldet(417): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Oct 19 2023 06:58:29 webserver maldet(417): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Oct 19 2023 06:58:29 webserver maldet(417): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Oct 19 2023 06:58:29 webserver maldet(417): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Oct 19 2023 07:01:46 webserver maldet(417): {scan} file list completed in 197s, found 340 files... Oct 19 2023 07:01:46 webserver maldet(417): {scan} found clamav binary at /usr/bin/clamscan, using clamav scanner engine... Oct 19 2023 07:01:46 webserver maldet(417): {scan} scan of (340 files) in progress... Oct 19 2023 07:02:17 webserver maldet(417): {scan} scan completed on : files 340, malware hits 0, cleaned hits 0, time 229s Oct 19 2023 07:02:17 webserver maldet(417): {scan} scan report saved, to view run: maldet --report 231019-0658.417 Oct 20 2023 06:59:34 webserver maldet(31395): {update} checking for available updates... Oct 20 2023 06:59:34 webserver maldet(31395): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Oct 20 2023 06:59:34 webserver maldet(31395): {update} hashing install files and checking against server... Oct 20 2023 06:59:34 webserver maldet(31395): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Oct 20 2023 06:59:34 webserver maldet(31395): {update} latest version already installed. Oct 20 2023 06:59:34 webserver maldet(31531): {sigup} performing signature update check... Oct 20 2023 06:59:34 webserver maldet(31531): {sigup} local signature set is version 20231016539229 Oct 20 2023 06:59:34 webserver maldet(31531): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Oct 20 2023 06:59:34 webserver maldet(31531): {sigup} new signature set 20231019534245 available Oct 20 2023 06:59:34 webserver maldet(31531): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Oct 20 2023 06:59:34 webserver maldet(31531): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Oct 20 2023 06:59:34 webserver maldet(31531): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Oct 20 2023 06:59:34 webserver maldet(31531): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Oct 20 2023 06:59:34 webserver maldet(31531): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Oct 20 2023 06:59:34 webserver maldet(31531): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Oct 20 2023 06:59:34 webserver maldet(31531): {sigup} verified md5sum of maldet-sigpack.tgz Oct 20 2023 06:59:34 webserver maldet(31531): {sigup} unpacked and installed maldet-sigpack.tgz Oct 20 2023 06:59:35 webserver maldet(31531): {sigup} verified md5sum of maldet-clean.tgz Oct 20 2023 06:59:35 webserver maldet(31531): {sigup} unpacked and installed maldet-clean.tgz Oct 20 2023 06:59:35 webserver maldet(31531): {sigup} signature set update completed Oct 20 2023 06:59:35 webserver maldet(31531): {sigup} 17637 signatures (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Oct 20 2023 06:59:35 webserver maldet(31762): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Oct 20 2023 06:59:35 webserver maldet(31762): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Oct 20 2023 06:59:35 webserver maldet(31762): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Oct 20 2023 06:59:35 webserver maldet(31762): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Oct 20 2023 06:59:35 webserver maldet(31762): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Oct 20 2023 07:01:48 webserver maldet(31762): {scan} file list completed in 133s, found 388 files... Oct 20 2023 07:01:48 webserver maldet(31762): {scan} found clamav binary at /usr/bin/clamscan, using clamav scanner engine... Oct 20 2023 07:01:48 webserver maldet(31762): {scan} scan of (388 files) in progress... Oct 20 2023 07:02:14 webserver maldet(31762): {scan} scan completed on : files 388, malware hits 0, cleaned hits 0, time 159s Oct 20 2023 07:02:14 webserver maldet(31762): {scan} scan report saved, to view run: maldet --report 231020-0659.31762 Oct 21 2023 06:56:43 webserver maldet(3122): {update} checking for available updates... Oct 21 2023 06:56:43 webserver maldet(3122): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Oct 21 2023 06:56:43 webserver maldet(3122): {update} hashing install files and checking against server... Oct 21 2023 06:56:43 webserver maldet(3122): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Oct 21 2023 06:56:43 webserver maldet(3122): {update} latest version already installed. Oct 21 2023 06:56:43 webserver maldet(3258): {sigup} performing signature update check... Oct 21 2023 06:56:43 webserver maldet(3258): {sigup} local signature set is version 20231019534245 Oct 21 2023 06:56:43 webserver maldet(3258): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Oct 21 2023 06:56:43 webserver maldet(3258): {sigup} latest signature set already installed Oct 21 2023 06:56:43 webserver maldet(3373): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Oct 21 2023 06:56:44 webserver maldet(3373): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Oct 21 2023 06:56:44 webserver maldet(3373): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Oct 21 2023 06:56:44 webserver maldet(3373): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Oct 21 2023 06:56:44 webserver maldet(3373): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Oct 21 2023 07:00:25 webserver maldet(3373): {scan} file list completed in 221s, found 432 files... Oct 21 2023 07:00:25 webserver maldet(3373): {scan} found clamav binary at /usr/bin/clamscan, using clamav scanner engine... Oct 21 2023 07:00:25 webserver maldet(3373): {scan} scan of (432 files) in progress... Oct 21 2023 07:00:54 webserver maldet(3373): {scan} clamscan returned an error, check /usr/local/maldetect/logs/clamscan_log for details! Oct 21 2023 07:00:54 webserver maldet(3373): {scan} scan completed on : files 432, malware hits 0, cleaned hits 0, time 251s Oct 21 2023 07:00:54 webserver maldet(3373): {scan} scan report saved, to view run: maldet --report 231021-0656.3373 Oct 22 2023 06:59:40 webserver maldet(8079): {update} checking for available updates... Oct 22 2023 06:59:40 webserver maldet(8079): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Oct 22 2023 06:59:40 webserver maldet(8079): {update} hashing install files and checking against server... Oct 22 2023 06:59:40 webserver maldet(8079): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Oct 22 2023 06:59:40 webserver maldet(8079): {update} latest version already installed. Oct 22 2023 06:59:40 webserver maldet(8215): {sigup} performing signature update check... Oct 22 2023 06:59:40 webserver maldet(8215): {sigup} local signature set is version 20231019534245 Oct 22 2023 06:59:40 webserver maldet(8215): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Oct 22 2023 06:59:40 webserver maldet(8215): {sigup} new signature set 202310221229566 available Oct 22 2023 06:59:40 webserver maldet(8215): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Oct 22 2023 06:59:40 webserver maldet(8215): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Oct 22 2023 06:59:40 webserver maldet(8215): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Oct 22 2023 06:59:40 webserver maldet(8215): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Oct 22 2023 06:59:40 webserver maldet(8215): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Oct 22 2023 06:59:40 webserver maldet(8215): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Oct 22 2023 06:59:40 webserver maldet(8215): {sigup} verified md5sum of maldet-sigpack.tgz Oct 22 2023 06:59:40 webserver maldet(8215): {sigup} unpacked and installed maldet-sigpack.tgz Oct 22 2023 06:59:40 webserver maldet(8215): {sigup} verified md5sum of maldet-clean.tgz Oct 22 2023 06:59:40 webserver maldet(8215): {sigup} unpacked and installed maldet-clean.tgz Oct 22 2023 06:59:40 webserver maldet(8215): {sigup} signature set update completed Oct 22 2023 06:59:40 webserver maldet(8215): {sigup} 17637 signatures (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Oct 22 2023 06:59:41 webserver maldet(8446): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Oct 22 2023 06:59:41 webserver maldet(8446): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Oct 22 2023 06:59:41 webserver maldet(8446): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Oct 22 2023 06:59:41 webserver maldet(8446): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Oct 22 2023 06:59:41 webserver maldet(8446): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Oct 22 2023 07:02:25 webserver maldet(8446): {scan} file list completed in 164s, found 171 files... Oct 22 2023 07:02:25 webserver maldet(8446): {scan} found clamav binary at /usr/bin/clamscan, using clamav scanner engine... Oct 22 2023 07:02:25 webserver maldet(8446): {scan} scan of (171 files) in progress... Oct 22 2023 07:02:51 webserver maldet(8446): {scan} scan completed on : files 171, malware hits 0, cleaned hits 0, time 190s Oct 22 2023 07:02:51 webserver maldet(8446): {scan} scan report saved, to view run: maldet --report 231022-0659.8446 Oct 23 2023 07:09:59 webserver maldet(31338): {update} checking for available updates... Oct 23 2023 07:09:59 webserver maldet(31338): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Oct 23 2023 07:09:59 webserver maldet(31338): {update} hashing install files and checking against server... Oct 23 2023 07:09:59 webserver maldet(31338): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Oct 23 2023 07:09:59 webserver maldet(31338): {update} latest version already installed. Oct 23 2023 07:09:59 webserver maldet(31474): {sigup} performing signature update check... Oct 23 2023 07:09:59 webserver maldet(31474): {sigup} local signature set is version 202310221229566 Oct 23 2023 07:09:59 webserver maldet(31474): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Oct 23 2023 07:09:59 webserver maldet(31474): {sigup} latest signature set already installed Oct 23 2023 07:09:59 webserver maldet(31589): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Oct 23 2023 07:10:00 webserver maldet(31589): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Oct 23 2023 07:10:00 webserver maldet(31589): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Oct 23 2023 07:10:00 webserver maldet(31589): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Oct 23 2023 07:10:00 webserver maldet(31589): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Oct 23 2023 07:12:37 webserver maldet(31589): {scan} file list completed in 157s, found 597 files... Oct 23 2023 07:12:37 webserver maldet(31589): {scan} found clamav binary at /usr/bin/clamscan, using clamav scanner engine... Oct 23 2023 07:12:37 webserver maldet(31589): {scan} scan of (597 files) in progress... Oct 23 2023 07:13:06 webserver maldet(31589): {scan} clamscan returned an error, check /usr/local/maldetect/logs/clamscan_log for details! Oct 23 2023 07:13:06 webserver maldet(31589): {scan} scan completed on : files 597, malware hits 0, cleaned hits 0, time 187s Oct 23 2023 07:13:06 webserver maldet(31589): {scan} scan report saved, to view run: maldet --report 231023-0709.31589 Oct 24 2023 06:58:07 webserver maldet(1968): {update} checking for available updates... Oct 24 2023 06:58:08 webserver maldet(1968): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Oct 24 2023 06:58:08 webserver maldet(1968): {update} hashing install files and checking against server... Oct 24 2023 06:58:08 webserver maldet(1968): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Oct 24 2023 06:58:08 webserver maldet(1968): {update} latest version already installed. Oct 24 2023 06:58:08 webserver maldet(2104): {sigup} performing signature update check... Oct 24 2023 06:58:08 webserver maldet(2104): {sigup} local signature set is version 202310221229566 Oct 24 2023 06:58:08 webserver maldet(2104): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Oct 24 2023 06:58:08 webserver maldet(2104): {sigup} latest signature set already installed Oct 24 2023 06:58:08 webserver maldet(2220): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Oct 24 2023 06:58:08 webserver maldet(2220): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Oct 24 2023 06:58:08 webserver maldet(2220): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Oct 24 2023 06:58:08 webserver maldet(2220): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Oct 24 2023 06:58:08 webserver maldet(2220): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Oct 24 2023 06:58:13 webserver maldet(2220): {scan} file list completed in 5s, found 428 files... Oct 24 2023 06:58:13 webserver maldet(2220): {scan} found clamav binary at /usr/bin/clamscan, using clamav scanner engine... Oct 24 2023 06:58:13 webserver maldet(2220): {scan} scan of (428 files) in progress... Oct 24 2023 06:58:40 webserver maldet(2220): {scan} clamscan returned an error, check /usr/local/maldetect/logs/clamscan_log for details! Oct 24 2023 06:58:40 webserver maldet(2220): {scan} scan completed on : files 428, malware hits 0, cleaned hits 0, time 32s Oct 24 2023 06:58:40 webserver maldet(2220): {scan} scan report saved, to view run: maldet --report 231024-0658.2220 Oct 25 2023 06:58:59 webserver maldet(1712): {update} checking for available updates... Oct 25 2023 06:58:59 webserver maldet(1712): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Oct 25 2023 06:58:59 webserver maldet(1712): {update} hashing install files and checking against server... Oct 25 2023 06:58:59 webserver maldet(1712): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Oct 25 2023 06:58:59 webserver maldet(1712): {update} latest version already installed. Oct 25 2023 06:58:59 webserver maldet(1848): {sigup} performing signature update check... Oct 25 2023 06:58:59 webserver maldet(1848): {sigup} local signature set is version 202310221229566 Oct 25 2023 06:58:59 webserver maldet(1848): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Oct 25 2023 06:58:59 webserver maldet(1848): {sigup} latest signature set already installed Oct 25 2023 06:59:00 webserver maldet(1963): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Oct 25 2023 06:59:00 webserver maldet(1963): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Oct 25 2023 06:59:00 webserver maldet(1963): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Oct 25 2023 06:59:00 webserver maldet(1963): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Oct 25 2023 06:59:00 webserver maldet(1963): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Oct 25 2023 07:01:22 webserver maldet(1963): {scan} file list completed in 142s, found 378 files... Oct 25 2023 07:01:22 webserver maldet(1963): {scan} found clamav binary at /usr/bin/clamscan, using clamav scanner engine... Oct 25 2023 07:01:22 webserver maldet(1963): {scan} scan of (378 files) in progress... Oct 25 2023 07:01:47 webserver maldet(1963): {scan} scan completed on : files 378, malware hits 0, cleaned hits 0, time 167s Oct 25 2023 07:01:47 webserver maldet(1963): {scan} scan report saved, to view run: maldet --report 231025-0658.1963 Oct 26 2023 06:57:27 webserver maldet(7140): {update} checking for available updates... Oct 26 2023 06:57:27 webserver maldet(7140): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Oct 26 2023 06:57:27 webserver maldet(7140): {update} hashing install files and checking against server... Oct 26 2023 06:57:27 webserver maldet(7140): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Oct 26 2023 06:57:27 webserver maldet(7140): {update} latest version already installed. Oct 26 2023 06:57:28 webserver maldet(7276): {sigup} performing signature update check... Oct 26 2023 06:57:28 webserver maldet(7276): {sigup} local signature set is version 202310221229566 Oct 26 2023 06:57:28 webserver maldet(7276): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Oct 26 2023 06:57:28 webserver maldet(7276): {sigup} new signature set 20231025505223 available Oct 26 2023 06:57:28 webserver maldet(7276): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Oct 26 2023 06:57:28 webserver maldet(7276): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Oct 26 2023 06:57:28 webserver maldet(7276): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Oct 26 2023 06:57:28 webserver maldet(7276): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Oct 26 2023 06:57:28 webserver maldet(7276): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Oct 26 2023 06:57:28 webserver maldet(7276): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Oct 26 2023 06:57:28 webserver maldet(7276): {sigup} verified md5sum of maldet-sigpack.tgz Oct 26 2023 06:57:28 webserver maldet(7276): {sigup} unpacked and installed maldet-sigpack.tgz Oct 26 2023 06:57:28 webserver maldet(7276): {sigup} verified md5sum of maldet-clean.tgz Oct 26 2023 06:57:28 webserver maldet(7276): {sigup} unpacked and installed maldet-clean.tgz Oct 26 2023 06:57:28 webserver maldet(7276): {sigup} signature set update completed Oct 26 2023 06:57:28 webserver maldet(7276): {sigup} 17637 signatures (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Oct 26 2023 06:57:28 webserver maldet(7507): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Oct 26 2023 06:57:28 webserver maldet(7507): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Oct 26 2023 06:57:28 webserver maldet(7507): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Oct 26 2023 06:57:28 webserver maldet(7507): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Oct 26 2023 06:57:28 webserver maldet(7507): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Oct 26 2023 06:59:45 webserver maldet(7507): {scan} file list completed in 137s, found 713 files... Oct 26 2023 06:59:45 webserver maldet(7507): {scan} found clamav binary at /usr/bin/clamscan, using clamav scanner engine... Oct 26 2023 06:59:45 webserver maldet(7507): {scan} scan of (713 files) in progress... Oct 26 2023 07:00:43 webserver maldet(7507): {scan} clamscan returned an error, check /usr/local/maldetect/logs/clamscan_log for details! Oct 26 2023 07:00:43 webserver maldet(7507): {scan} scan completed on : files 713, malware hits 0, cleaned hits 0, time 195s Oct 26 2023 07:00:43 webserver maldet(7507): {scan} scan report saved, to view run: maldet --report 231026-0657.7507 Oct 27 2023 06:58:46 webserver maldet(3957): {update} checking for available updates... Oct 27 2023 06:58:46 webserver maldet(3957): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Oct 27 2023 06:58:46 webserver maldet(3957): {update} hashing install files and checking against server... Oct 27 2023 06:58:46 webserver maldet(3957): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Oct 27 2023 06:58:46 webserver maldet(3957): {update} latest version already installed. Oct 27 2023 06:58:46 webserver maldet(4093): {sigup} performing signature update check... Oct 27 2023 06:58:46 webserver maldet(4093): {sigup} local signature set is version 20231025505223 Oct 27 2023 06:58:46 webserver maldet(4093): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Oct 27 2023 06:58:46 webserver maldet(4093): {sigup} latest signature set already installed Oct 27 2023 06:58:46 webserver maldet(4208): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Oct 27 2023 06:58:47 webserver maldet(4208): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Oct 27 2023 06:58:47 webserver maldet(4208): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Oct 27 2023 06:58:47 webserver maldet(4208): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Oct 27 2023 06:58:47 webserver maldet(4208): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Oct 27 2023 07:01:23 webserver maldet(4208): {scan} file list completed in 156s, found 471 files... Oct 27 2023 07:01:23 webserver maldet(4208): {scan} found clamav binary at /usr/bin/clamscan, using clamav scanner engine... Oct 27 2023 07:01:23 webserver maldet(4208): {scan} scan of (471 files) in progress... Oct 27 2023 07:01:50 webserver maldet(4208): {scan} clamscan returned an error, check /usr/local/maldetect/logs/clamscan_log for details! Oct 27 2023 07:01:50 webserver maldet(4208): {scan} scan completed on : files 471, malware hits 0, cleaned hits 0, time 184s Oct 27 2023 07:01:50 webserver maldet(4208): {scan} scan report saved, to view run: maldet --report 231027-0658.4208 Oct 28 2023 07:03:31 webserver maldet(4325): {update} checking for available updates... Oct 28 2023 07:03:31 webserver maldet(4325): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Oct 28 2023 07:03:31 webserver maldet(4325): {update} hashing install files and checking against server... Oct 28 2023 07:03:31 webserver maldet(4325): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Oct 28 2023 07:03:31 webserver maldet(4325): {update} latest version already installed. Oct 28 2023 07:03:31 webserver maldet(4461): {sigup} performing signature update check... Oct 28 2023 07:03:31 webserver maldet(4461): {sigup} local signature set is version 20231025505223 Oct 28 2023 07:03:31 webserver maldet(4461): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Oct 28 2023 07:03:31 webserver maldet(4461): {sigup} new signature set 202310281199478 available Oct 28 2023 07:03:31 webserver maldet(4461): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Oct 28 2023 07:03:31 webserver maldet(4461): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Oct 28 2023 07:03:32 webserver maldet(4461): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Oct 28 2023 07:03:32 webserver maldet(4461): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Oct 28 2023 07:03:32 webserver maldet(4461): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Oct 28 2023 07:03:32 webserver maldet(4461): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Oct 28 2023 07:03:32 webserver maldet(4461): {sigup} verified md5sum of maldet-sigpack.tgz Oct 28 2023 07:03:32 webserver maldet(4461): {sigup} unpacked and installed maldet-sigpack.tgz Oct 28 2023 07:03:32 webserver maldet(4461): {sigup} verified md5sum of maldet-clean.tgz Oct 28 2023 07:03:32 webserver maldet(4461): {sigup} unpacked and installed maldet-clean.tgz Oct 28 2023 07:03:32 webserver maldet(4461): {sigup} signature set update completed Oct 28 2023 07:03:32 webserver maldet(4461): {sigup} 17637 signatures (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Oct 28 2023 07:03:32 webserver maldet(4692): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Oct 28 2023 07:03:32 webserver maldet(4692): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Oct 28 2023 07:03:32 webserver maldet(4692): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Oct 28 2023 07:03:32 webserver maldet(4692): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Oct 28 2023 07:03:32 webserver maldet(4692): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Oct 28 2023 07:06:12 webserver maldet(4692): {scan} file list completed in 160s, found 636 files... Oct 28 2023 07:06:12 webserver maldet(4692): {scan} found clamav binary at /usr/bin/clamscan, using clamav scanner engine... Oct 28 2023 07:06:12 webserver maldet(4692): {scan} scan of (636 files) in progress... Oct 28 2023 07:06:44 webserver maldet(4692): {scan} scan completed on : files 636, malware hits 0, cleaned hits 0, time 192s Oct 28 2023 07:06:44 webserver maldet(4692): {scan} scan report saved, to view run: maldet --report 231028-0703.4692 Oct 29 2023 06:59:18 webserver maldet(3962): {update} checking for available updates... Oct 29 2023 06:59:18 webserver maldet(3962): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Oct 29 2023 06:59:18 webserver maldet(3962): {update} hashing install files and checking against server... Oct 29 2023 06:59:18 webserver maldet(3962): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Oct 29 2023 06:59:18 webserver maldet(3962): {update} latest version already installed. Oct 29 2023 06:59:18 webserver maldet(4098): {sigup} performing signature update check... Oct 29 2023 06:59:18 webserver maldet(4098): {sigup} local signature set is version 202310281199478 Oct 29 2023 06:59:18 webserver maldet(4098): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Oct 29 2023 06:59:18 webserver maldet(4098): {sigup} latest signature set already installed Oct 29 2023 06:59:18 webserver maldet(4212): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Oct 29 2023 06:59:18 webserver maldet(4212): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Oct 29 2023 06:59:18 webserver maldet(4212): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Oct 29 2023 06:59:18 webserver maldet(4212): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Oct 29 2023 06:59:18 webserver maldet(4212): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Oct 29 2023 07:01:39 webserver maldet(4212): {scan} file list completed in 141s, found 905 files... Oct 29 2023 07:01:39 webserver maldet(4212): {scan} found clamav binary at /usr/bin/clamscan, using clamav scanner engine... Oct 29 2023 07:01:39 webserver maldet(4212): {scan} scan of (905 files) in progress... Oct 29 2023 07:02:12 webserver maldet(4212): {scan} clamscan returned an error, check /usr/local/maldetect/logs/clamscan_log for details! Oct 29 2023 07:02:12 webserver maldet(4212): {scan} scan completed on : files 905, malware hits 0, cleaned hits 0, time 174s Oct 29 2023 07:02:12 webserver maldet(4212): {scan} scan report saved, to view run: maldet --report 231029-0659.4212 Oct 30 2023 06:58:34 webserver maldet(2553): {update} checking for available updates... Oct 30 2023 06:58:34 webserver maldet(2553): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Oct 30 2023 06:58:34 webserver maldet(2553): {update} hashing install files and checking against server... Oct 30 2023 06:58:34 webserver maldet(2553): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Oct 30 2023 06:58:34 webserver maldet(2553): {update} latest version already installed. Oct 30 2023 06:58:35 webserver maldet(2689): {sigup} performing signature update check... Oct 30 2023 06:58:35 webserver maldet(2689): {sigup} local signature set is version 202310281199478 Oct 30 2023 06:58:35 webserver maldet(2689): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Oct 30 2023 06:58:35 webserver maldet(2689): {sigup} latest signature set already installed Oct 30 2023 06:58:35 webserver maldet(2804): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Oct 30 2023 06:58:35 webserver maldet(2804): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Oct 30 2023 06:58:35 webserver maldet(2804): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Oct 30 2023 06:58:35 webserver maldet(2804): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Oct 30 2023 06:58:35 webserver maldet(2804): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Oct 30 2023 07:01:25 webserver maldet(2804): {scan} file list completed in 170s, found 1159 files... Oct 30 2023 07:01:25 webserver maldet(2804): {scan} found clamav binary at /usr/bin/clamscan, using clamav scanner engine... Oct 30 2023 07:01:25 webserver maldet(2804): {scan} scan of (1159 files) in progress... Oct 30 2023 07:02:02 webserver maldet(2804): {scan} scan completed on : files 1159, malware hits 0, cleaned hits 0, time 207s Oct 30 2023 07:02:02 webserver maldet(2804): {scan} scan report saved, to view run: maldet --report 231030-0658.2804 Oct 31 2023 06:57:03 webserver maldet(17752): {update} checking for available updates... Oct 31 2023 06:57:03 webserver maldet(17752): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Oct 31 2023 06:57:03 webserver maldet(17752): {update} hashing install files and checking against server... Oct 31 2023 06:57:03 webserver maldet(17752): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Oct 31 2023 06:57:03 webserver maldet(17752): {update} latest version already installed. Oct 31 2023 06:57:03 webserver maldet(17888): {sigup} performing signature update check... Oct 31 2023 06:57:03 webserver maldet(17888): {sigup} local signature set is version 202310281199478 Oct 31 2023 06:57:03 webserver maldet(17888): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Oct 31 2023 06:57:03 webserver maldet(17888): {sigup} latest signature set already installed Oct 31 2023 06:57:03 webserver maldet(18003): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Oct 31 2023 06:57:04 webserver maldet(18003): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Oct 31 2023 06:57:04 webserver maldet(18003): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Oct 31 2023 06:57:04 webserver maldet(18003): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Oct 31 2023 06:57:04 webserver maldet(18003): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Oct 31 2023 06:59:49 webserver maldet(18003): {scan} file list completed in 165s, found 367 files... Oct 31 2023 06:59:49 webserver maldet(18003): {scan} found clamav binary at /usr/bin/clamscan, using clamav scanner engine... Oct 31 2023 06:59:49 webserver maldet(18003): {scan} scan of (367 files) in progress... Oct 31 2023 07:00:21 webserver maldet(18003): {scan} clamscan returned an error, check /usr/local/maldetect/logs/clamscan_log for details! Oct 31 2023 07:00:21 webserver maldet(18003): {scan} scan completed on : files 367, malware hits 0, cleaned hits 0, time 198s Oct 31 2023 07:00:21 webserver maldet(18003): {scan} scan report saved, to view run: maldet --report 231031-0657.18003 Nov 01 2023 06:58:20 webserver maldet(16432): {update} checking for available updates... Nov 01 2023 06:58:20 webserver maldet(16432): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Nov 01 2023 06:58:20 webserver maldet(16432): {update} hashing install files and checking against server... Nov 01 2023 06:58:21 webserver maldet(16432): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Nov 01 2023 06:58:21 webserver maldet(16432): {update} latest version already installed. Nov 01 2023 06:58:21 webserver maldet(16568): {sigup} performing signature update check... Nov 01 2023 06:58:21 webserver maldet(16568): {sigup} local signature set is version 202310281199478 Nov 01 2023 06:58:21 webserver maldet(16568): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Nov 01 2023 06:58:21 webserver maldet(16568): {sigup} new signature set 20231031515073 available Nov 01 2023 06:58:21 webserver maldet(16568): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Nov 01 2023 06:58:21 webserver maldet(16568): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Nov 01 2023 06:58:21 webserver maldet(16568): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Nov 01 2023 06:58:21 webserver maldet(16568): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Nov 01 2023 06:58:21 webserver maldet(16568): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Nov 01 2023 06:58:21 webserver maldet(16568): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Nov 01 2023 06:58:21 webserver maldet(16568): {sigup} unable to verify md5sum of maldet-sigpack.tgz, please try again or contact proj@rfxn.com Nov 01 2023 06:58:21 webserver maldet(16568): {sigup} verified md5sum of maldet-clean.tgz Nov 01 2023 06:58:21 webserver maldet(16568): {sigup} unpacked and installed maldet-clean.tgz Nov 01 2023 06:58:21 webserver maldet(16754): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Nov 01 2023 06:58:21 webserver maldet(16754): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Nov 01 2023 06:58:21 webserver maldet(16754): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Nov 01 2023 06:58:22 webserver maldet(16754): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Nov 01 2023 06:58:22 webserver maldet(16754): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Nov 01 2023 07:02:16 webserver maldet(16754): {scan} file list completed in 234s, found 516 files... Nov 01 2023 07:02:16 webserver maldet(16754): {scan} found clamav binary at /usr/bin/clamscan, using clamav scanner engine... Nov 01 2023 07:02:16 webserver maldet(16754): {scan} scan of (516 files) in progress... Nov 01 2023 07:02:46 webserver maldet(16754): {scan} scan completed on : files 516, malware hits 0, cleaned hits 0, time 265s Nov 01 2023 07:02:46 webserver maldet(16754): {scan} scan report saved, to view run: maldet --report 231101-0658.16754 Nov 02 2023 06:56:41 webserver maldet(16923): {update} checking for available updates... Nov 02 2023 06:56:41 webserver maldet(16923): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Nov 02 2023 06:56:41 webserver maldet(16923): {update} hashing install files and checking against server... Nov 02 2023 06:56:41 webserver maldet(16923): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Nov 02 2023 06:56:41 webserver maldet(16923): {update} latest version already installed. Nov 02 2023 06:56:42 webserver maldet(17059): {sigup} performing signature update check... Nov 02 2023 06:56:42 webserver maldet(17059): {sigup} local signature set is version 202310281199478 Nov 02 2023 06:56:42 webserver maldet(17059): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Nov 02 2023 06:56:42 webserver maldet(17059): {sigup} new signature set 202311011164199 available Nov 02 2023 06:56:42 webserver maldet(17059): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Nov 02 2023 06:56:42 webserver maldet(17059): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Nov 02 2023 06:56:42 webserver maldet(17059): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Nov 02 2023 06:56:42 webserver maldet(17059): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Nov 02 2023 06:56:42 webserver maldet(17059): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Nov 02 2023 06:56:42 webserver maldet(17059): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Nov 02 2023 06:56:42 webserver maldet(17059): {sigup} verified md5sum of maldet-sigpack.tgz Nov 02 2023 06:56:42 webserver maldet(17059): {sigup} unpacked and installed maldet-sigpack.tgz Nov 02 2023 06:56:42 webserver maldet(17059): {sigup} verified md5sum of maldet-clean.tgz Nov 02 2023 06:56:42 webserver maldet(17059): {sigup} unpacked and installed maldet-clean.tgz Nov 02 2023 06:56:42 webserver maldet(17059): {sigup} signature set update completed Nov 02 2023 06:56:42 webserver maldet(17059): {sigup} 17637 signatures (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Nov 02 2023 06:56:42 webserver maldet(17290): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Nov 02 2023 06:56:42 webserver maldet(17290): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Nov 02 2023 06:56:42 webserver maldet(17290): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Nov 02 2023 06:56:42 webserver maldet(17290): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Nov 02 2023 06:56:42 webserver maldet(17290): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Nov 02 2023 06:59:25 webserver maldet(17290): {scan} file list completed in 163s, found 681 files... Nov 02 2023 06:59:25 webserver maldet(17290): {scan} found clamav binary at /usr/bin/clamscan, using clamav scanner engine... Nov 02 2023 06:59:25 webserver maldet(17290): {scan} scan of (681 files) in progress... Nov 02 2023 07:00:04 webserver maldet(17290): {scan} clamscan returned an error, check /usr/local/maldetect/logs/clamscan_log for details! Nov 02 2023 07:00:04 webserver maldet(17290): {scan} scan completed on : files 681, malware hits 0, cleaned hits 0, time 202s Nov 02 2023 07:00:04 webserver maldet(17290): {scan} scan report saved, to view run: maldet --report 231102-0656.17290 Nov 03 2023 07:03:11 webserver maldet(20453): {update} checking for available updates... Nov 03 2023 07:03:11 webserver maldet(20453): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Nov 03 2023 07:03:11 webserver maldet(20453): {update} hashing install files and checking against server... Nov 03 2023 07:03:12 webserver maldet(20453): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Nov 03 2023 07:03:12 webserver maldet(20453): {update} latest version already installed. Nov 03 2023 07:03:12 webserver maldet(20589): {sigup} performing signature update check... Nov 03 2023 07:03:12 webserver maldet(20589): {sigup} local signature set is version 202311011164199 Nov 03 2023 07:03:12 webserver maldet(20589): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Nov 03 2023 07:03:12 webserver maldet(20589): {sigup} latest signature set already installed Nov 03 2023 07:03:12 webserver maldet(20703): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Nov 03 2023 07:03:12 webserver maldet(20703): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Nov 03 2023 07:03:12 webserver maldet(20703): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Nov 03 2023 07:03:12 webserver maldet(20703): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Nov 03 2023 07:03:12 webserver maldet(20703): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Nov 03 2023 07:06:34 webserver maldet(20703): {scan} file list completed in 202s, found 774 files... Nov 03 2023 07:06:34 webserver maldet(20703): {scan} found clamav binary at /usr/bin/clamscan, using clamav scanner engine... Nov 03 2023 07:06:34 webserver maldet(20703): {scan} scan of (774 files) in progress... Nov 03 2023 07:07:07 webserver maldet(20703): {scan} clamscan returned an error, check /usr/local/maldetect/logs/clamscan_log for details! Nov 03 2023 07:07:07 webserver maldet(20703): {scan} scan completed on : files 774, malware hits 0, cleaned hits 0, time 235s Nov 03 2023 07:07:07 webserver maldet(20703): {scan} scan report saved, to view run: maldet --report 231103-0703.20703 Nov 04 2023 06:59:12 webserver maldet(18828): {update} checking for available updates... Nov 04 2023 06:59:12 webserver maldet(18828): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Nov 04 2023 06:59:12 webserver maldet(18828): {update} hashing install files and checking against server... Nov 04 2023 06:59:12 webserver maldet(18828): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Nov 04 2023 06:59:13 webserver maldet(18828): {update} latest version already installed. Nov 04 2023 06:59:13 webserver maldet(18964): {sigup} performing signature update check... Nov 04 2023 06:59:13 webserver maldet(18964): {sigup} local signature set is version 202311011164199 Nov 04 2023 06:59:13 webserver maldet(18964): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Nov 04 2023 06:59:13 webserver maldet(18964): {sigup} new signature set 202311041860087 available Nov 04 2023 06:59:13 webserver maldet(18964): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Nov 04 2023 06:59:13 webserver maldet(18964): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Nov 04 2023 06:59:13 webserver maldet(18964): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Nov 04 2023 06:59:13 webserver maldet(18964): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Nov 04 2023 06:59:13 webserver maldet(18964): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Nov 04 2023 06:59:13 webserver maldet(18964): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Nov 04 2023 06:59:13 webserver maldet(18964): {sigup} unable to verify md5sum of maldet-sigpack.tgz, please try again or contact proj@rfxn.com Nov 04 2023 06:59:13 webserver maldet(18964): {sigup} verified md5sum of maldet-clean.tgz Nov 04 2023 06:59:13 webserver maldet(18964): {sigup} unpacked and installed maldet-clean.tgz Nov 04 2023 06:59:13 webserver maldet(19150): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Nov 04 2023 06:59:13 webserver maldet(19150): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Nov 04 2023 06:59:13 webserver maldet(19150): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Nov 04 2023 06:59:13 webserver maldet(19150): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Nov 04 2023 06:59:13 webserver maldet(19150): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Nov 04 2023 07:01:37 webserver maldet(19150): {scan} file list completed in 144s, found 794 files... Nov 04 2023 07:01:37 webserver maldet(19150): {scan} found clamav binary at /usr/bin/clamscan, using clamav scanner engine... Nov 04 2023 07:01:37 webserver maldet(19150): {scan} scan of (794 files) in progress... Nov 04 2023 07:02:14 webserver maldet(19150): {scan} clamscan returned an error, check /usr/local/maldetect/logs/clamscan_log for details! Nov 04 2023 07:02:14 webserver maldet(19150): {scan} scan completed on : files 794, malware hits 0, cleaned hits 0, time 181s Nov 04 2023 07:02:14 webserver maldet(19150): {scan} scan report saved, to view run: maldet --report 231104-0659.19150 Nov 05 2023 06:56:28 webserver maldet(22432): {update} checking for available updates... Nov 05 2023 06:56:28 webserver maldet(22432): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Nov 05 2023 06:56:28 webserver maldet(22432): {update} hashing install files and checking against server... Nov 05 2023 06:56:28 webserver maldet(22432): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Nov 05 2023 06:56:28 webserver maldet(22432): {update} latest version already installed. Nov 05 2023 06:56:28 webserver maldet(22568): {sigup} performing signature update check... Nov 05 2023 06:56:28 webserver maldet(22568): {sigup} local signature set is version 202311011164199 Nov 05 2023 06:56:29 webserver maldet(22568): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Nov 05 2023 06:56:29 webserver maldet(22568): {sigup} new signature set 202311041860087 available Nov 05 2023 06:56:29 webserver maldet(22568): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Nov 05 2023 06:56:29 webserver maldet(22568): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Nov 05 2023 06:56:29 webserver maldet(22568): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Nov 05 2023 06:56:29 webserver maldet(22568): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Nov 05 2023 06:56:29 webserver maldet(22568): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Nov 05 2023 06:56:29 webserver maldet(22568): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Nov 05 2023 06:56:29 webserver maldet(22568): {sigup} verified md5sum of maldet-sigpack.tgz Nov 05 2023 06:56:29 webserver maldet(22568): {sigup} unpacked and installed maldet-sigpack.tgz Nov 05 2023 06:56:29 webserver maldet(22568): {sigup} verified md5sum of maldet-clean.tgz Nov 05 2023 06:56:29 webserver maldet(22568): {sigup} unpacked and installed maldet-clean.tgz Nov 05 2023 06:56:29 webserver maldet(22568): {sigup} signature set update completed Nov 05 2023 06:56:29 webserver maldet(22568): {sigup} 17637 signatures (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Nov 05 2023 06:56:29 webserver maldet(22799): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Nov 05 2023 06:56:29 webserver maldet(22799): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Nov 05 2023 06:56:29 webserver maldet(22799): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Nov 05 2023 06:56:29 webserver maldet(22799): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Nov 05 2023 06:56:29 webserver maldet(22799): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Nov 05 2023 06:58:49 webserver maldet(22799): {scan} file list completed in 140s, found 729 files... Nov 05 2023 06:58:49 webserver maldet(22799): {scan} found clamav binary at /usr/bin/clamscan, using clamav scanner engine... Nov 05 2023 06:58:49 webserver maldet(22799): {scan} scan of (729 files) in progress... Nov 05 2023 06:59:21 webserver maldet(22799): {scan} clamscan returned an error, check /usr/local/maldetect/logs/clamscan_log for details! Nov 05 2023 06:59:21 webserver maldet(22799): {scan} scan completed on : files 729, malware hits 0, cleaned hits 0, time 172s Nov 05 2023 06:59:21 webserver maldet(22799): {scan} scan report saved, to view run: maldet --report 231105-0656.22799 Nov 06 2023 06:56:15 webserver maldet(19528): {update} checking for available updates... Nov 06 2023 06:56:15 webserver maldet(19528): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Nov 06 2023 06:56:15 webserver maldet(19528): {update} hashing install files and checking against server... Nov 06 2023 06:56:16 webserver maldet(19528): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Nov 06 2023 06:56:16 webserver maldet(19528): {update} latest version already installed. Nov 06 2023 06:56:16 webserver maldet(19664): {sigup} performing signature update check... Nov 06 2023 06:56:16 webserver maldet(19664): {sigup} local signature set is version 202311041860087 Nov 06 2023 06:56:16 webserver maldet(19664): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Nov 06 2023 06:56:16 webserver maldet(19664): {sigup} latest signature set already installed Nov 06 2023 06:56:16 webserver maldet(19778): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Nov 06 2023 06:56:16 webserver maldet(19778): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Nov 06 2023 06:56:16 webserver maldet(19778): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Nov 06 2023 06:56:16 webserver maldet(19778): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Nov 06 2023 06:56:16 webserver maldet(19778): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Nov 06 2023 07:04:44 webserver maldet(19778): {scan} file list completed in 508s, found 1541 files... Nov 06 2023 07:04:44 webserver maldet(19778): {scan} found clamav binary at /usr/bin/clamscan, using clamav scanner engine... Nov 06 2023 07:04:44 webserver maldet(19778): {scan} scan of (1541 files) in progress... Nov 06 2023 07:05:38 webserver maldet(19778): {scan} clamscan returned an error, check /usr/local/maldetect/logs/clamscan_log for details! Nov 06 2023 07:05:38 webserver maldet(19778): {scan} scan completed on : files 1541, malware hits 0, cleaned hits 0, time 562s Nov 06 2023 07:05:38 webserver maldet(19778): {scan} scan report saved, to view run: maldet --report 231106-0656.19778 Nov 07 2023 06:58:36 webserver maldet(738): {update} checking for available updates... Nov 07 2023 06:58:36 webserver maldet(738): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Nov 07 2023 06:58:36 webserver maldet(738): {update} hashing install files and checking against server... Nov 07 2023 06:58:36 webserver maldet(738): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Nov 07 2023 06:58:36 webserver maldet(738): {update} latest version already installed. Nov 07 2023 06:58:36 webserver maldet(875): {sigup} performing signature update check... Nov 07 2023 06:58:36 webserver maldet(875): {sigup} local signature set is version 202311041860087 Nov 07 2023 06:58:36 webserver maldet(875): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Nov 07 2023 06:58:36 webserver maldet(875): {sigup} latest signature set already installed Nov 07 2023 06:58:37 webserver maldet(991): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Nov 07 2023 06:58:37 webserver maldet(991): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Nov 07 2023 06:58:37 webserver maldet(991): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Nov 07 2023 06:58:37 webserver maldet(991): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Nov 07 2023 06:58:37 webserver maldet(991): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Nov 07 2023 07:02:32 webserver maldet(991): {scan} file list completed in 235s, found 565 files... Nov 07 2023 07:02:32 webserver maldet(991): {scan} found clamav binary at /usr/bin/clamscan, using clamav scanner engine... Nov 07 2023 07:02:32 webserver maldet(991): {scan} scan of (565 files) in progress... Nov 07 2023 07:03:01 webserver maldet(991): {scan} clamscan returned an error, check /usr/local/maldetect/logs/clamscan_log for details! Nov 07 2023 07:03:01 webserver maldet(991): {scan} scan completed on : files 565, malware hits 0, cleaned hits 0, time 264s Nov 07 2023 07:03:01 webserver maldet(991): {scan} scan report saved, to view run: maldet --report 231107-0658.991 Nov 08 2023 07:02:12 webserver maldet(11720): {update} checking for available updates... Nov 08 2023 07:02:12 webserver maldet(11720): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Nov 08 2023 07:02:12 webserver maldet(11720): {update} hashing install files and checking against server... Nov 08 2023 07:02:12 webserver maldet(11720): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Nov 08 2023 07:02:12 webserver maldet(11720): {update} latest version already installed. Nov 08 2023 07:02:12 webserver maldet(11858): {sigup} performing signature update check... Nov 08 2023 07:02:12 webserver maldet(11858): {sigup} local signature set is version 202311041860087 Nov 08 2023 07:02:12 webserver maldet(11858): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Nov 08 2023 07:02:12 webserver maldet(11858): {sigup} new signature set 202311072556343 available Nov 08 2023 07:02:12 webserver maldet(11858): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Nov 08 2023 07:02:13 webserver maldet(11858): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Nov 08 2023 07:02:13 webserver maldet(11858): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Nov 08 2023 07:02:13 webserver maldet(11858): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Nov 08 2023 07:02:13 webserver maldet(11858): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Nov 08 2023 07:02:13 webserver maldet(11858): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Nov 08 2023 07:02:13 webserver maldet(11858): {sigup} verified md5sum of maldet-sigpack.tgz Nov 08 2023 07:02:13 webserver maldet(11858): {sigup} unpacked and installed maldet-sigpack.tgz Nov 08 2023 07:02:13 webserver maldet(11858): {sigup} verified md5sum of maldet-clean.tgz Nov 08 2023 07:02:13 webserver maldet(11858): {sigup} unpacked and installed maldet-clean.tgz Nov 08 2023 07:02:13 webserver maldet(11858): {sigup} signature set update completed Nov 08 2023 07:02:13 webserver maldet(11858): {sigup} 17637 signatures (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Nov 08 2023 07:02:13 webserver maldet(12090): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Nov 08 2023 07:02:13 webserver maldet(12090): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Nov 08 2023 07:02:13 webserver maldet(12090): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Nov 08 2023 07:02:13 webserver maldet(12090): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Nov 08 2023 07:02:13 webserver maldet(12090): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Nov 08 2023 07:04:27 webserver maldet(12090): {scan} file list completed in 134s, found 3410 files... Nov 08 2023 07:04:27 webserver maldet(12090): {scan} found clamav binary at /usr/bin/clamscan, using clamav scanner engine... Nov 08 2023 07:04:27 webserver maldet(12090): {scan} scan of (3410 files) in progress... Nov 08 2023 07:05:31 webserver maldet(12090): {scan} clamscan returned an error, check /usr/local/maldetect/logs/clamscan_log for details! Nov 08 2023 07:05:31 webserver maldet(12090): {scan} scan completed on : files 3410, malware hits 0, cleaned hits 0, time 198s Nov 08 2023 07:05:32 webserver maldet(12090): {scan} scan report saved, to view run: maldet --report 231108-0702.12090 Nov 09 2023 07:00:50 webserver maldet(27085): {update} checking for available updates... Nov 09 2023 07:00:51 webserver maldet(27085): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Nov 09 2023 07:00:51 webserver maldet(27085): {update} hashing install files and checking against server... Nov 09 2023 07:00:51 webserver maldet(27085): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Nov 09 2023 07:00:51 webserver maldet(27085): {update} latest version already installed. Nov 09 2023 07:00:51 webserver maldet(27221): {sigup} performing signature update check... Nov 09 2023 07:00:51 webserver maldet(27221): {sigup} local signature set is version 202311072556343 Nov 09 2023 07:00:51 webserver maldet(27221): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Nov 09 2023 07:00:51 webserver maldet(27221): {sigup} latest signature set already installed Nov 09 2023 07:00:51 webserver maldet(27336): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Nov 09 2023 07:00:51 webserver maldet(27336): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Nov 09 2023 07:00:51 webserver maldet(27336): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Nov 09 2023 07:00:51 webserver maldet(27336): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Nov 09 2023 07:00:51 webserver maldet(27336): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Nov 09 2023 07:04:28 webserver maldet(27336): {scan} file list completed in 217s, found 7626 files... Nov 09 2023 07:04:28 webserver maldet(27336): {scan} found clamav binary at /usr/bin/clamscan, using clamav scanner engine... Nov 09 2023 07:04:28 webserver maldet(27336): {scan} scan of (7626 files) in progress... Nov 09 2023 07:06:58 webserver maldet(27336): {scan} clamscan returned an error, check /usr/local/maldetect/logs/clamscan_log for details! Nov 09 2023 07:06:58 webserver maldet(27336): {scan} scan completed on : files 7626, malware hits 0, cleaned hits 0, time 367s Nov 09 2023 07:06:58 webserver maldet(27336): {scan} scan report saved, to view run: maldet --report 231109-0700.27336 Nov 10 2023 06:57:07 webserver maldet(2600): {update} checking for available updates... Nov 10 2023 06:57:07 webserver maldet(2600): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Nov 10 2023 06:57:07 webserver maldet(2600): {update} hashing install files and checking against server... Nov 10 2023 06:57:07 webserver maldet(2600): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Nov 10 2023 06:57:07 webserver maldet(2600): {update} latest version already installed. Nov 10 2023 06:57:07 webserver maldet(2736): {sigup} performing signature update check... Nov 10 2023 06:57:07 webserver maldet(2736): {sigup} local signature set is version 202311072556343 Nov 10 2023 06:57:07 webserver maldet(2736): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Nov 10 2023 06:57:07 webserver maldet(2736): {sigup} latest signature set already installed Nov 10 2023 06:57:07 webserver maldet(2852): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Nov 10 2023 06:57:07 webserver maldet(2852): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Nov 10 2023 06:57:07 webserver maldet(2852): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Nov 10 2023 06:57:07 webserver maldet(2852): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Nov 10 2023 06:57:07 webserver maldet(2852): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Nov 10 2023 06:59:33 webserver maldet(2852): {scan} file list completed in 146s, found 867 files... Nov 10 2023 06:59:33 webserver maldet(2852): {scan} found clamav binary at /usr/bin/clamscan, using clamav scanner engine... Nov 10 2023 06:59:33 webserver maldet(2852): {scan} scan of (867 files) in progress... Nov 10 2023 07:00:12 webserver maldet(2852): {scan} clamscan returned an error, check /usr/local/maldetect/logs/clamscan_log for details! Nov 10 2023 07:00:12 webserver maldet(2852): {scan} scan completed on : files 867, malware hits 0, cleaned hits 0, time 185s Nov 10 2023 07:00:12 webserver maldet(2852): {scan} scan report saved, to view run: maldet --report 231110-0657.2852 Nov 11 2023 06:56:48 webserver maldet(28532): {update} checking for available updates... Nov 11 2023 06:56:48 webserver maldet(28532): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Nov 11 2023 06:56:48 webserver maldet(28532): {update} hashing install files and checking against server... Nov 11 2023 06:56:48 webserver maldet(28532): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Nov 11 2023 06:56:48 webserver maldet(28532): {update} latest version already installed. Nov 11 2023 06:56:49 webserver maldet(28668): {sigup} performing signature update check... Nov 11 2023 06:56:49 webserver maldet(28668): {sigup} local signature set is version 202311072556343 Nov 11 2023 06:56:49 webserver maldet(28668): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Nov 11 2023 06:56:49 webserver maldet(28668): {sigup} new signature set 202311103251945 available Nov 11 2023 06:56:49 webserver maldet(28668): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Nov 11 2023 06:56:49 webserver maldet(28668): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Nov 11 2023 06:56:49 webserver maldet(28668): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Nov 11 2023 06:56:49 webserver maldet(28668): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Nov 11 2023 06:56:49 webserver maldet(28668): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Nov 11 2023 06:56:49 webserver maldet(28668): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Nov 11 2023 06:56:49 webserver maldet(28668): {sigup} verified md5sum of maldet-sigpack.tgz Nov 11 2023 06:56:49 webserver maldet(28668): {sigup} unpacked and installed maldet-sigpack.tgz Nov 11 2023 06:56:49 webserver maldet(28668): {sigup} verified md5sum of maldet-clean.tgz Nov 11 2023 06:56:49 webserver maldet(28668): {sigup} unpacked and installed maldet-clean.tgz Nov 11 2023 06:56:49 webserver maldet(28668): {sigup} signature set update completed Nov 11 2023 06:56:49 webserver maldet(28668): {sigup} 17637 signatures (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Nov 11 2023 06:56:49 webserver maldet(28901): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Nov 11 2023 06:56:49 webserver maldet(28901): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Nov 11 2023 06:56:49 webserver maldet(28901): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Nov 11 2023 06:56:49 webserver maldet(28901): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Nov 11 2023 06:56:49 webserver maldet(28901): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Nov 11 2023 07:00:18 webserver maldet(28901): {scan} file list completed in 209s, found 15765 files... Nov 11 2023 07:00:18 webserver maldet(28901): {scan} found clamav binary at /usr/bin/clamscan, using clamav scanner engine... Nov 11 2023 07:00:18 webserver maldet(28901): {scan} scan of (15765 files) in progress... Nov 11 2023 07:06:13 webserver maldet(28901): {scan} clamscan returned an error, check /usr/local/maldetect/logs/clamscan_log for details! Nov 11 2023 07:06:14 webserver maldet(28901): {scan} scan completed on : files 15765, malware hits 0, cleaned hits 0, time 564s Nov 11 2023 07:06:14 webserver maldet(28901): {scan} scan report saved, to view run: maldet --report 231111-0656.28901 Nov 12 2023 06:56:10 webserver maldet(18949): {update} checking for available updates... Nov 12 2023 06:56:10 webserver maldet(18949): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Nov 12 2023 06:56:10 webserver maldet(18949): {update} hashing install files and checking against server... Nov 12 2023 06:56:10 webserver maldet(18949): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Nov 12 2023 06:56:10 webserver maldet(18949): {update} latest version already installed. Nov 12 2023 06:56:10 webserver maldet(19085): {sigup} performing signature update check... Nov 12 2023 06:56:10 webserver maldet(19085): {sigup} local signature set is version 202311103251945 Nov 12 2023 06:56:10 webserver maldet(19085): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Nov 12 2023 06:56:11 webserver maldet(19085): {sigup} latest signature set already installed Nov 12 2023 06:56:11 webserver maldet(19200): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Nov 12 2023 06:56:11 webserver maldet(19200): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Nov 12 2023 06:56:11 webserver maldet(19200): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Nov 12 2023 06:56:11 webserver maldet(19200): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Nov 12 2023 06:56:11 webserver maldet(19200): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Nov 12 2023 07:00:13 webserver maldet(19200): {scan} file list completed in 242s, found 1001 files... Nov 12 2023 07:00:13 webserver maldet(19200): {scan} found clamav binary at /usr/bin/clamscan, using clamav scanner engine... Nov 12 2023 07:00:13 webserver maldet(19200): {scan} scan of (1001 files) in progress... Nov 12 2023 07:01:01 webserver maldet(19200): {scan} clamscan returned an error, check /usr/local/maldetect/logs/clamscan_log for details! Nov 12 2023 07:01:02 webserver maldet(19200): {scan} scan completed on : files 1001, malware hits 0, cleaned hits 0, time 290s Nov 12 2023 07:01:02 webserver maldet(19200): {scan} scan report saved, to view run: maldet --report 231112-0656.19200 Nov 13 2023 06:58:28 webserver maldet(32035): {update} checking for available updates... Nov 13 2023 06:58:28 webserver maldet(32035): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Nov 13 2023 06:58:28 webserver maldet(32035): {update} hashing install files and checking against server... Nov 13 2023 06:58:28 webserver maldet(32035): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Nov 13 2023 06:58:28 webserver maldet(32035): {update} latest version already installed. Nov 13 2023 06:58:28 webserver maldet(32171): {sigup} performing signature update check... Nov 13 2023 06:58:28 webserver maldet(32171): {sigup} local signature set is version 202311103251945 Nov 13 2023 06:58:28 webserver maldet(32171): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Nov 13 2023 06:58:28 webserver maldet(32171): {sigup} new signature set 202311133949018 available Nov 13 2023 06:58:28 webserver maldet(32171): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Nov 13 2023 06:58:28 webserver maldet(32171): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Nov 13 2023 06:58:28 webserver maldet(32171): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Nov 13 2023 06:58:28 webserver maldet(32171): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Nov 13 2023 06:58:28 webserver maldet(32171): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Nov 13 2023 06:58:28 webserver maldet(32171): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Nov 13 2023 06:58:28 webserver maldet(32171): {sigup} verified md5sum of maldet-sigpack.tgz Nov 13 2023 06:58:28 webserver maldet(32171): {sigup} unpacked and installed maldet-sigpack.tgz Nov 13 2023 06:58:28 webserver maldet(32171): {sigup} verified md5sum of maldet-clean.tgz Nov 13 2023 06:58:28 webserver maldet(32171): {sigup} unpacked and installed maldet-clean.tgz Nov 13 2023 06:58:28 webserver maldet(32171): {sigup} signature set update completed Nov 13 2023 06:58:28 webserver maldet(32171): {sigup} 17637 signatures (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Nov 13 2023 06:58:28 webserver maldet(32402): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Nov 13 2023 06:58:29 webserver maldet(32402): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Nov 13 2023 06:58:29 webserver maldet(32402): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Nov 13 2023 06:58:29 webserver maldet(32402): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Nov 13 2023 06:58:29 webserver maldet(32402): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Nov 13 2023 07:05:19 webserver maldet(32402): {scan} file list completed in 410s, found 1430 files... Nov 13 2023 07:05:19 webserver maldet(32402): {scan} found clamav binary at /usr/bin/clamscan, using clamav scanner engine... Nov 13 2023 07:05:19 webserver maldet(32402): {scan} scan of (1430 files) in progress... Nov 13 2023 07:06:00 webserver maldet(32402): {scan} scan completed on : files 1430, malware hits 0, cleaned hits 0, time 452s Nov 13 2023 07:06:00 webserver maldet(32402): {scan} scan report saved, to view run: maldet --report 231113-0658.32402 Nov 14 2023 06:56:57 webserver maldet(18168): {update} checking for available updates... Nov 14 2023 06:56:57 webserver maldet(18168): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Nov 14 2023 06:56:57 webserver maldet(18168): {update} hashing install files and checking against server... Nov 14 2023 06:56:57 webserver maldet(18168): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Nov 14 2023 06:56:57 webserver maldet(18168): {update} latest version already installed. Nov 14 2023 06:56:57 webserver maldet(18306): {sigup} performing signature update check... Nov 14 2023 06:56:57 webserver maldet(18306): {sigup} local signature set is version 202311103251945 Nov 14 2023 06:56:57 webserver maldet(18306): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Nov 14 2023 06:56:57 webserver maldet(18306): {sigup} new signature set 202311133949018 available Nov 14 2023 06:56:57 webserver maldet(18306): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Nov 14 2023 06:56:57 webserver maldet(18306): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Nov 14 2023 06:56:57 webserver maldet(18306): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Nov 14 2023 06:56:57 webserver maldet(18306): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Nov 14 2023 06:56:57 webserver maldet(18306): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Nov 14 2023 06:56:57 webserver maldet(18306): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Nov 14 2023 06:56:57 webserver maldet(18306): {sigup} verified md5sum of maldet-sigpack.tgz Nov 14 2023 06:56:57 webserver maldet(18306): {sigup} unpacked and installed maldet-sigpack.tgz Nov 14 2023 06:56:57 webserver maldet(18306): {sigup} verified md5sum of maldet-clean.tgz Nov 14 2023 06:56:57 webserver maldet(18306): {sigup} unpacked and installed maldet-clean.tgz Nov 14 2023 06:56:57 webserver maldet(18306): {sigup} signature set update completed Nov 14 2023 06:56:57 webserver maldet(18306): {sigup} 17637 signatures (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Nov 14 2023 06:56:58 webserver maldet(18537): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Nov 14 2023 06:56:58 webserver maldet(18537): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Nov 14 2023 06:56:58 webserver maldet(18537): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Nov 14 2023 06:56:58 webserver maldet(18537): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Nov 14 2023 06:56:58 webserver maldet(18537): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Nov 14 2023 06:59:23 webserver maldet(18537): {scan} file list completed in 145s, found 848 files... Nov 14 2023 06:59:23 webserver maldet(18537): {scan} found clamav binary at /usr/bin/clamscan, using clamav scanner engine... Nov 14 2023 06:59:23 webserver maldet(18537): {scan} scan of (848 files) in progress... Nov 14 2023 06:59:56 webserver maldet(18537): {scan} clamscan returned an error, check /usr/local/maldetect/logs/clamscan_log for details! Nov 14 2023 06:59:56 webserver maldet(18537): {scan} scan completed on : files 848, malware hits 0, cleaned hits 0, time 178s Nov 14 2023 06:59:56 webserver maldet(18537): {scan} scan report saved, to view run: maldet --report 231114-0656.18537 Nov 15 2023 07:08:31 webserver maldet(5217): {update} checking for available updates... Nov 15 2023 07:08:31 webserver maldet(5217): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Nov 15 2023 07:08:31 webserver maldet(5217): {update} hashing install files and checking against server... Nov 15 2023 07:08:31 webserver maldet(5217): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Nov 15 2023 07:08:31 webserver maldet(5217): {update} latest version already installed. Nov 15 2023 07:08:31 webserver maldet(5353): {sigup} performing signature update check... Nov 15 2023 07:08:31 webserver maldet(5353): {sigup} local signature set is version 202311133949018 Nov 15 2023 07:08:32 webserver maldet(5353): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Nov 15 2023 07:08:32 webserver maldet(5353): {sigup} latest signature set already installed Nov 15 2023 07:08:32 webserver maldet(5468): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Nov 15 2023 07:08:34 webserver maldet(5468): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Nov 15 2023 07:08:34 webserver maldet(5468): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Nov 15 2023 07:08:34 webserver maldet(5468): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Nov 15 2023 07:08:34 webserver maldet(5468): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Nov 15 2023 07:42:13 webserver maldet(5468): {scan} file list completed in 2019s, found 724 files... Nov 15 2023 07:42:13 webserver maldet(5468): {scan} found clamav binary at /usr/bin/clamscan, using clamav scanner engine... Nov 15 2023 07:42:13 webserver maldet(5468): {scan} scan of (724 files) in progress... Nov 15 2023 07:44:22 webserver maldet(5468): {scan} clamscan returned an error, check /usr/local/maldetect/logs/clamscan_log for details! Nov 15 2023 07:44:22 webserver maldet(5468): {scan} scan completed on : files 724, malware hits 0, cleaned hits 0, time 2150s Nov 15 2023 07:44:22 webserver maldet(5468): {scan} scan report saved, to view run: maldet --report 231115-0708.5468 Nov 16 2023 07:05:16 webserver maldet(23998): {update} checking for available updates... Nov 16 2023 07:05:16 webserver maldet(23998): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Nov 16 2023 07:05:16 webserver maldet(23998): {update} hashing install files and checking against server... Nov 16 2023 07:05:16 webserver maldet(23998): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Nov 16 2023 07:05:16 webserver maldet(23998): {update} latest version already installed. Nov 16 2023 07:05:17 webserver maldet(24134): {sigup} performing signature update check... Nov 16 2023 07:05:17 webserver maldet(24134): {sigup} local signature set is version 202311133949018 Nov 16 2023 07:05:17 webserver maldet(24134): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Nov 16 2023 07:05:17 webserver maldet(24134): {sigup} latest signature set already installed Nov 16 2023 07:05:17 webserver maldet(24248): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Nov 16 2023 07:05:18 webserver maldet(24248): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Nov 16 2023 07:05:18 webserver maldet(24248): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Nov 16 2023 07:05:18 webserver maldet(24248): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Nov 16 2023 07:05:18 webserver maldet(24248): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Nov 16 2023 07:36:22 webserver maldet(24248): {scan} file list completed in 1864s, found 485 files... Nov 16 2023 07:36:22 webserver maldet(24248): {scan} found clamav binary at /usr/bin/clamscan, using clamav scanner engine... Nov 16 2023 07:36:22 webserver maldet(24248): {scan} scan of (485 files) in progress... Nov 16 2023 07:37:21 webserver maldet(24248): {scan} clamscan returned an error, check /usr/local/maldetect/logs/clamscan_log for details! Nov 16 2023 07:37:21 webserver maldet(24248): {scan} scan completed on : files 485, malware hits 0, cleaned hits 0, time 1924s Nov 16 2023 07:37:21 webserver maldet(24248): {scan} scan report saved, to view run: maldet --report 231116-0705.24248 Nov 17 2023 06:58:51 webserver maldet(2535): {update} checking for available updates... Nov 17 2023 06:58:51 webserver maldet(2535): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Nov 17 2023 06:58:51 webserver maldet(2535): {update} hashing install files and checking against server... Nov 17 2023 06:58:51 webserver maldet(2535): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Nov 17 2023 06:58:51 webserver maldet(2535): {update} latest version already installed. Nov 17 2023 06:58:52 webserver maldet(2671): {sigup} performing signature update check... Nov 17 2023 06:58:52 webserver maldet(2671): {sigup} local signature set is version 202311133949018 Nov 17 2023 06:58:52 webserver maldet(2671): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Nov 17 2023 06:58:52 webserver maldet(2671): {sigup} new signature set 20231116449705 available Nov 17 2023 06:58:52 webserver maldet(2671): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Nov 17 2023 06:58:52 webserver maldet(2671): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Nov 17 2023 06:58:52 webserver maldet(2671): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Nov 17 2023 06:58:52 webserver maldet(2671): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Nov 17 2023 06:58:52 webserver maldet(2671): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Nov 17 2023 06:58:52 webserver maldet(2671): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Nov 17 2023 06:58:52 webserver maldet(2671): {sigup} verified md5sum of maldet-sigpack.tgz Nov 17 2023 06:58:52 webserver maldet(2671): {sigup} unpacked and installed maldet-sigpack.tgz Nov 17 2023 06:58:52 webserver maldet(2671): {sigup} verified md5sum of maldet-clean.tgz Nov 17 2023 06:58:52 webserver maldet(2671): {sigup} unpacked and installed maldet-clean.tgz Nov 17 2023 06:58:52 webserver maldet(2671): {sigup} signature set update completed Nov 17 2023 06:58:52 webserver maldet(2671): {sigup} 17637 signatures (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Nov 17 2023 06:58:52 webserver maldet(2903): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Nov 17 2023 06:58:52 webserver maldet(2903): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Nov 17 2023 06:58:52 webserver maldet(2903): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Nov 17 2023 06:58:52 webserver maldet(2903): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Nov 17 2023 06:58:52 webserver maldet(2903): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Nov 17 2023 07:02:17 webserver maldet(2903): {scan} file list completed in 205s, found 1567 files... Nov 17 2023 07:02:17 webserver maldet(2903): {scan} found clamav binary at /usr/bin/clamscan, using clamav scanner engine... Nov 17 2023 07:02:17 webserver maldet(2903): {scan} scan of (1567 files) in progress... Nov 17 2023 07:03:09 webserver maldet(2903): {scan} clamscan returned an error, check /usr/local/maldetect/logs/clamscan_log for details! Nov 17 2023 07:03:09 webserver maldet(2903): {scan} scan completed on : files 1567, malware hits 0, cleaned hits 0, time 257s Nov 17 2023 07:03:09 webserver maldet(2903): {scan} scan report saved, to view run: maldet --report 231117-0658.2903 Nov 18 2023 07:04:16 webserver maldet(17311): {update} checking for available updates... Nov 18 2023 07:04:16 webserver maldet(17311): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Nov 18 2023 07:04:16 webserver maldet(17311): {update} hashing install files and checking against server... Nov 18 2023 07:04:16 webserver maldet(17311): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Nov 18 2023 07:04:16 webserver maldet(17311): {update} latest version already installed. Nov 18 2023 07:04:16 webserver maldet(17466): {sigup} performing signature update check... Nov 18 2023 07:04:17 webserver maldet(17466): {sigup} local signature set is version 20231116449705 Nov 18 2023 07:04:17 webserver maldet(17466): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Nov 18 2023 07:04:17 webserver maldet(17466): {sigup} latest signature set already installed Nov 18 2023 07:04:17 webserver maldet(17580): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Nov 18 2023 07:04:17 webserver maldet(17580): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Nov 18 2023 07:04:17 webserver maldet(17580): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Nov 18 2023 07:04:17 webserver maldet(17580): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Nov 18 2023 07:04:17 webserver maldet(17580): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Nov 18 2023 07:09:00 webserver maldet(17580): {scan} file list completed in 283s, found 709 files... Nov 18 2023 07:09:00 webserver maldet(17580): {scan} found clamav binary at /usr/bin/clamscan, using clamav scanner engine... Nov 18 2023 07:09:00 webserver maldet(17580): {scan} scan of (709 files) in progress... Nov 18 2023 07:09:40 webserver maldet(17580): {scan} clamscan returned an error, check /usr/local/maldetect/logs/clamscan_log for details! Nov 18 2023 07:09:40 webserver maldet(17580): {scan} scan completed on : files 709, malware hits 0, cleaned hits 0, time 323s Nov 18 2023 07:09:40 webserver maldet(17580): {scan} scan report saved, to view run: maldet --report 231118-0704.17580 Nov 19 2023 06:58:05 webserver maldet(7945): {update} checking for available updates... Nov 19 2023 06:58:06 webserver maldet(7945): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Nov 19 2023 06:58:06 webserver maldet(7945): {update} hashing install files and checking against server... Nov 19 2023 06:58:06 webserver maldet(7945): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Nov 19 2023 06:58:06 webserver maldet(7945): {update} latest version already installed. Nov 19 2023 06:58:06 webserver maldet(8085): {sigup} performing signature update check... Nov 19 2023 06:58:06 webserver maldet(8085): {sigup} local signature set is version 20231116449705 Nov 19 2023 06:58:06 webserver maldet(8085): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Nov 19 2023 06:58:06 webserver maldet(8085): {sigup} latest signature set already installed Nov 19 2023 06:58:06 webserver maldet(8200): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Nov 19 2023 06:58:06 webserver maldet(8200): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Nov 19 2023 06:58:06 webserver maldet(8200): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Nov 19 2023 06:58:06 webserver maldet(8200): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Nov 19 2023 06:58:06 webserver maldet(8200): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Nov 19 2023 07:05:05 webserver maldet(8200): {scan} file list completed in 419s, found 467 files... Nov 19 2023 07:05:05 webserver maldet(8200): {scan} found clamav binary at /usr/bin/clamscan, using clamav scanner engine... Nov 19 2023 07:05:05 webserver maldet(8200): {scan} scan of (467 files) in progress... Nov 19 2023 07:05:45 webserver maldet(8200): {scan} clamscan returned an error, check /usr/local/maldetect/logs/clamscan_log for details! Nov 19 2023 07:05:45 webserver maldet(8200): {scan} scan completed on : files 467, malware hits 0, cleaned hits 0, time 459s Nov 19 2023 07:05:45 webserver maldet(8200): {scan} scan report saved, to view run: maldet --report 231119-0658.8200 Nov 20 2023 06:57:01 webserver maldet(30111): {update} checking for available updates... Nov 20 2023 06:57:01 webserver maldet(30111): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Nov 20 2023 06:57:01 webserver maldet(30111): {update} hashing install files and checking against server... Nov 20 2023 06:57:01 webserver maldet(30111): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Nov 20 2023 06:57:01 webserver maldet(30111): {update} latest version already installed. Nov 20 2023 06:57:02 webserver maldet(30247): {sigup} performing signature update check... Nov 20 2023 06:57:02 webserver maldet(30247): {sigup} local signature set is version 20231116449705 Nov 20 2023 06:57:02 webserver maldet(30247): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Nov 20 2023 06:57:02 webserver maldet(30247): {sigup} new signature set 20231119537442 available Nov 20 2023 06:57:02 webserver maldet(30247): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Nov 20 2023 06:57:02 webserver maldet(30247): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Nov 20 2023 06:57:02 webserver maldet(30247): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Nov 20 2023 06:57:02 webserver maldet(30247): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Nov 20 2023 06:57:02 webserver maldet(30247): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Nov 20 2023 06:57:02 webserver maldet(30247): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Nov 20 2023 06:57:02 webserver maldet(30247): {sigup} verified md5sum of maldet-sigpack.tgz Nov 20 2023 06:57:03 webserver maldet(30247): {sigup} unpacked and installed maldet-sigpack.tgz Nov 20 2023 06:57:03 webserver maldet(30247): {sigup} verified md5sum of maldet-clean.tgz Nov 20 2023 06:57:03 webserver maldet(30247): {sigup} unpacked and installed maldet-clean.tgz Nov 20 2023 06:57:03 webserver maldet(30247): {sigup} signature set update completed Nov 20 2023 06:57:03 webserver maldet(30247): {sigup} 17637 signatures (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Nov 20 2023 06:57:03 webserver maldet(30478): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Nov 20 2023 06:57:03 webserver maldet(30478): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Nov 20 2023 06:57:03 webserver maldet(30478): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Nov 20 2023 06:57:03 webserver maldet(30478): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Nov 20 2023 06:57:03 webserver maldet(30478): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Nov 20 2023 07:06:42 webserver maldet(30478): {scan} file list completed in 579s, found 821 files... Nov 20 2023 07:06:42 webserver maldet(30478): {scan} found clamav binary at /usr/bin/clamscan, using clamav scanner engine... Nov 20 2023 07:06:42 webserver maldet(30478): {scan} scan of (821 files) in progress... Nov 20 2023 07:08:12 webserver maldet(30478): {scan} clamscan returned an error, check /usr/local/maldetect/logs/clamscan_log for details! Nov 20 2023 07:08:13 webserver maldet(30478): {scan} scan completed on : files 821, malware hits 0, cleaned hits 0, time 670s Nov 20 2023 07:08:13 webserver maldet(30478): {scan} scan report saved, to view run: maldet --report 231120-0657.30478 Nov 21 2023 06:58:26 webserver maldet(18668): {update} checking for available updates... Nov 21 2023 06:58:26 webserver maldet(18668): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Nov 21 2023 06:58:26 webserver maldet(18668): {update} hashing install files and checking against server... Nov 21 2023 06:58:26 webserver maldet(18668): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Nov 21 2023 06:58:26 webserver maldet(18668): {update} latest version already installed. Nov 21 2023 06:58:27 webserver maldet(18804): {sigup} performing signature update check... Nov 21 2023 06:58:27 webserver maldet(18804): {sigup} local signature set is version 20231119537442 Nov 21 2023 06:58:27 webserver maldet(18804): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Nov 21 2023 06:58:28 webserver maldet(18804): {sigup} latest signature set already installed Nov 21 2023 06:58:29 webserver maldet(18919): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Nov 21 2023 06:58:30 webserver maldet(18919): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Nov 21 2023 06:58:30 webserver maldet(18919): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Nov 21 2023 06:58:30 webserver maldet(18919): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Nov 21 2023 06:58:30 webserver maldet(18919): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Nov 21 2023 07:16:10 webserver maldet(18919): {scan} file list completed in 1060s, found 6971 files... Nov 21 2023 07:16:10 webserver maldet(18919): {scan} found clamav binary at /usr/bin/clamscan, using clamav scanner engine... Nov 21 2023 07:16:10 webserver maldet(18919): {scan} scan of (6971 files) in progress... Nov 21 2023 07:19:55 webserver maldet(18919): {scan} clamscan returned an error, check /usr/local/maldetect/logs/clamscan_log for details! Nov 21 2023 07:19:55 webserver maldet(18919): {scan} scan completed on : files 6971, malware hits 0, cleaned hits 0, time 1286s Nov 21 2023 07:19:55 webserver maldet(18919): {scan} scan report saved, to view run: maldet --report 231121-0658.18919 Nov 22 2023 06:56:48 webserver maldet(5879): {update} checking for available updates... Nov 22 2023 06:56:48 webserver maldet(5879): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Nov 22 2023 06:56:48 webserver maldet(5879): {update} hashing install files and checking against server... Nov 22 2023 06:56:48 webserver maldet(5879): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Nov 22 2023 06:56:48 webserver maldet(5879): {update} latest version already installed. Nov 22 2023 06:56:48 webserver maldet(6015): {sigup} performing signature update check... Nov 22 2023 06:56:48 webserver maldet(6015): {sigup} local signature set is version 20231119537442 Nov 22 2023 06:56:48 webserver maldet(6015): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Nov 22 2023 06:56:48 webserver maldet(6015): {sigup} latest signature set already installed Nov 22 2023 06:56:48 webserver maldet(6130): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Nov 22 2023 06:56:49 webserver maldet(6130): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Nov 22 2023 06:56:49 webserver maldet(6130): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Nov 22 2023 06:56:49 webserver maldet(6130): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Nov 22 2023 06:56:49 webserver maldet(6130): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Nov 22 2023 06:59:26 webserver maldet(6130): {scan} file list completed in 157s, found 3396 files... Nov 22 2023 06:59:26 webserver maldet(6130): {scan} found clamav binary at /usr/bin/clamscan, using clamav scanner engine... Nov 22 2023 06:59:26 webserver maldet(6130): {scan} scan of (3396 files) in progress... Nov 22 2023 07:02:37 webserver maldet(6130): {scan} clamscan returned an error, check /usr/local/maldetect/logs/clamscan_log for details! Nov 22 2023 07:02:37 webserver maldet(6130): {scan} scan completed on : files 3396, malware hits 0, cleaned hits 0, time 349s Nov 22 2023 07:02:37 webserver maldet(6130): {scan} scan report saved, to view run: maldet --report 231122-0656.6130 Nov 23 2023 06:59:17 webserver maldet(24930): {update} checking for available updates... Nov 23 2023 06:59:17 webserver maldet(24930): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Nov 23 2023 06:59:17 webserver maldet(24930): {update} hashing install files and checking against server... Nov 23 2023 06:59:17 webserver maldet(24930): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Nov 23 2023 06:59:17 webserver maldet(24930): {update} latest version already installed. Nov 23 2023 06:59:17 webserver maldet(25066): {sigup} performing signature update check... Nov 23 2023 06:59:17 webserver maldet(25066): {sigup} local signature set is version 20231119537442 Nov 23 2023 06:59:18 webserver maldet(25066): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Nov 23 2023 06:59:18 webserver maldet(25066): {sigup} new signature set 202311221270169 available Nov 23 2023 06:59:18 webserver maldet(25066): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Nov 23 2023 06:59:18 webserver maldet(25066): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Nov 23 2023 06:59:18 webserver maldet(25066): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Nov 23 2023 06:59:18 webserver maldet(25066): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Nov 23 2023 06:59:18 webserver maldet(25066): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Nov 23 2023 06:59:18 webserver maldet(25066): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Nov 23 2023 06:59:18 webserver maldet(25066): {sigup} verified md5sum of maldet-sigpack.tgz Nov 23 2023 06:59:19 webserver maldet(25066): {sigup} unpacked and installed maldet-sigpack.tgz Nov 23 2023 06:59:19 webserver maldet(25066): {sigup} verified md5sum of maldet-clean.tgz Nov 23 2023 06:59:19 webserver maldet(25066): {sigup} unpacked and installed maldet-clean.tgz Nov 23 2023 06:59:19 webserver maldet(25066): {sigup} signature set update completed Nov 23 2023 06:59:19 webserver maldet(25066): {sigup} 17637 signatures (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Nov 23 2023 06:59:19 webserver maldet(25296): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Nov 23 2023 06:59:20 webserver maldet(25296): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Nov 23 2023 06:59:20 webserver maldet(25296): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Nov 23 2023 06:59:20 webserver maldet(25296): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Nov 23 2023 06:59:20 webserver maldet(25296): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Nov 23 2023 07:03:25 webserver maldet(25296): {scan} file list completed in 245s, found 522 files... Nov 23 2023 07:03:25 webserver maldet(25296): {scan} found clamav binary at /usr/bin/clamscan, using clamav scanner engine... Nov 23 2023 07:03:25 webserver maldet(25296): {scan} scan of (522 files) in progress... Nov 23 2023 07:04:37 webserver maldet(25296): {scan} clamscan returned an error, check /usr/local/maldetect/logs/clamscan_log for details! Nov 23 2023 07:04:38 webserver maldet(25296): {scan} scan completed on : files 522, malware hits 0, cleaned hits 0, time 319s Nov 23 2023 07:04:38 webserver maldet(25296): {scan} scan report saved, to view run: maldet --report 231123-0659.25296 Nov 24 2023 06:59:25 webserver maldet(9961): {update} checking for available updates... Nov 24 2023 06:59:25 webserver maldet(9961): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Nov 24 2023 06:59:25 webserver maldet(9961): {update} hashing install files and checking against server... Nov 24 2023 06:59:25 webserver maldet(9961): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Nov 24 2023 06:59:25 webserver maldet(9961): {update} latest version already installed. Nov 24 2023 06:59:25 webserver maldet(10099): {sigup} performing signature update check... Nov 24 2023 06:59:25 webserver maldet(10099): {sigup} local signature set is version 202311221270169 Nov 24 2023 06:59:25 webserver maldet(10099): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Nov 24 2023 06:59:25 webserver maldet(10099): {sigup} latest signature set already installed Nov 24 2023 06:59:25 webserver maldet(10213): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Nov 24 2023 06:59:25 webserver maldet(10213): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Nov 24 2023 06:59:25 webserver maldet(10213): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Nov 24 2023 06:59:25 webserver maldet(10213): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Nov 24 2023 06:59:25 webserver maldet(10213): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Nov 24 2023 07:02:06 webserver maldet(10213): {scan} file list completed in 161s, found 463 files... Nov 24 2023 07:02:06 webserver maldet(10213): {scan} found clamav binary at /usr/bin/clamscan, using clamav scanner engine... Nov 24 2023 07:02:06 webserver maldet(10213): {scan} scan of (463 files) in progress... Nov 24 2023 07:02:46 webserver maldet(10213): {scan} clamscan returned an error, check /usr/local/maldetect/logs/clamscan_log for details! Nov 24 2023 07:02:47 webserver maldet(10213): {scan} scan completed on : files 463, malware hits 0, cleaned hits 0, time 202s Nov 24 2023 07:02:47 webserver maldet(10213): {scan} scan report saved, to view run: maldet --report 231124-0659.10213 Nov 25 2023 06:58:10 webserver maldet(28100): {update} checking for available updates... Nov 25 2023 06:58:10 webserver maldet(28100): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Nov 25 2023 06:58:10 webserver maldet(28100): {update} hashing install files and checking against server... Nov 25 2023 06:58:10 webserver maldet(28100): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Nov 25 2023 06:58:10 webserver maldet(28100): {update} latest version already installed. Nov 25 2023 06:58:10 webserver maldet(28236): {sigup} performing signature update check... Nov 25 2023 06:58:10 webserver maldet(28236): {sigup} local signature set is version 202311221270169 Nov 25 2023 06:58:10 webserver maldet(28236): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Nov 25 2023 06:58:10 webserver maldet(28236): {sigup} latest signature set already installed Nov 25 2023 06:58:10 webserver maldet(28350): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Nov 25 2023 06:58:11 webserver maldet(28350): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Nov 25 2023 06:58:11 webserver maldet(28350): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Nov 25 2023 06:58:11 webserver maldet(28350): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Nov 25 2023 06:58:11 webserver maldet(28350): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Nov 25 2023 06:59:03 webserver maldet(28350): {scan} file list completed in 52s, found 879 files... Nov 25 2023 06:59:03 webserver maldet(28350): {scan} found clamav binary at /usr/bin/clamscan, using clamav scanner engine... Nov 25 2023 06:59:03 webserver maldet(28350): {scan} scan of (879 files) in progress... Nov 25 2023 06:59:46 webserver maldet(28350): {scan} clamscan returned an error, check /usr/local/maldetect/logs/clamscan_log for details! Nov 25 2023 06:59:46 webserver maldet(28350): {scan} scan completed on : files 879, malware hits 0, cleaned hits 0, time 96s Nov 25 2023 06:59:46 webserver maldet(28350): {scan} scan report saved, to view run: maldet --report 231125-0658.28350 Nov 26 2023 06:58:30 webserver maldet(14889): {update} checking for available updates... Nov 26 2023 06:58:30 webserver maldet(14889): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Nov 26 2023 06:58:30 webserver maldet(14889): {update} hashing install files and checking against server... Nov 26 2023 06:58:30 webserver maldet(14889): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Nov 26 2023 06:58:30 webserver maldet(14889): {update} latest version already installed. Nov 26 2023 06:58:30 webserver maldet(15025): {sigup} performing signature update check... Nov 26 2023 06:58:30 webserver maldet(15025): {sigup} local signature set is version 202311221270169 Nov 26 2023 06:58:30 webserver maldet(15025): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Nov 26 2023 06:58:30 webserver maldet(15025): {sigup} new signature set 202311252050670 available Nov 26 2023 06:58:30 webserver maldet(15025): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Nov 26 2023 06:58:30 webserver maldet(15025): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Nov 26 2023 06:58:30 webserver maldet(15025): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Nov 26 2023 06:58:30 webserver maldet(15025): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Nov 26 2023 06:58:30 webserver maldet(15025): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Nov 26 2023 06:58:30 webserver maldet(15025): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Nov 26 2023 06:58:30 webserver maldet(15025): {sigup} verified md5sum of maldet-sigpack.tgz Nov 26 2023 06:58:31 webserver maldet(15025): {sigup} unpacked and installed maldet-sigpack.tgz Nov 26 2023 06:58:31 webserver maldet(15025): {sigup} verified md5sum of maldet-clean.tgz Nov 26 2023 06:58:31 webserver maldet(15025): {sigup} unpacked and installed maldet-clean.tgz Nov 26 2023 06:58:31 webserver maldet(15025): {sigup} signature set update completed Nov 26 2023 06:58:31 webserver maldet(15025): {sigup} 17637 signatures (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Nov 26 2023 06:58:31 webserver maldet(15256): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Nov 26 2023 06:58:31 webserver maldet(15256): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Nov 26 2023 06:58:31 webserver maldet(15256): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Nov 26 2023 06:58:31 webserver maldet(15256): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Nov 26 2023 06:58:31 webserver maldet(15256): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Nov 26 2023 07:01:03 webserver maldet(15256): {scan} file list completed in 152s, found 426 files... Nov 26 2023 07:01:03 webserver maldet(15256): {scan} found clamav binary at /usr/bin/clamscan, using clamav scanner engine... Nov 26 2023 07:01:03 webserver maldet(15256): {scan} scan of (426 files) in progress... Nov 26 2023 07:01:31 webserver maldet(15256): {scan} clamscan returned an error, check /usr/local/maldetect/logs/clamscan_log for details! Nov 26 2023 07:01:31 webserver maldet(15256): {scan} scan completed on : files 426, malware hits 0, cleaned hits 0, time 180s Nov 26 2023 07:01:31 webserver maldet(15256): {scan} scan report saved, to view run: maldet --report 231126-0658.15256 Nov 27 2023 06:57:25 webserver maldet(1436): {update} checking for available updates... Nov 27 2023 06:57:25 webserver maldet(1436): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Nov 27 2023 06:57:25 webserver maldet(1436): {update} hashing install files and checking against server... Nov 27 2023 06:57:25 webserver maldet(1436): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Nov 27 2023 06:57:25 webserver maldet(1436): {update} latest version already installed. Nov 27 2023 06:57:25 webserver maldet(1575): {sigup} performing signature update check... Nov 27 2023 06:57:25 webserver maldet(1575): {sigup} local signature set is version 202311252050670 Nov 27 2023 06:57:25 webserver maldet(1575): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Nov 27 2023 06:57:25 webserver maldet(1575): {sigup} latest signature set already installed Nov 27 2023 06:57:25 webserver maldet(1691): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Nov 27 2023 06:57:25 webserver maldet(1691): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Nov 27 2023 06:57:25 webserver maldet(1691): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Nov 27 2023 06:57:25 webserver maldet(1691): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Nov 27 2023 06:57:25 webserver maldet(1691): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Nov 27 2023 06:59:54 webserver maldet(1691): {scan} file list completed in 149s, found 429 files... Nov 27 2023 06:59:54 webserver maldet(1691): {scan} found clamav binary at /usr/bin/clamscan, using clamav scanner engine... Nov 27 2023 06:59:54 webserver maldet(1691): {scan} scan of (429 files) in progress... Nov 27 2023 07:00:31 webserver maldet(1691): {scan} clamscan returned an error, check /usr/local/maldetect/logs/clamscan_log for details! Nov 27 2023 07:00:31 webserver maldet(1691): {scan} scan completed on : files 429, malware hits 0, cleaned hits 0, time 186s Nov 27 2023 07:00:31 webserver maldet(1691): {scan} scan report saved, to view run: maldet --report 231127-0657.1691 Nov 28 2023 06:58:00 webserver maldet(15723): {update} checking for available updates... Nov 28 2023 06:58:00 webserver maldet(15723): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Nov 28 2023 06:58:00 webserver maldet(15723): {update} hashing install files and checking against server... Nov 28 2023 06:58:00 webserver maldet(15723): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Nov 28 2023 06:58:00 webserver maldet(15723): {update} latest version already installed. Nov 28 2023 06:58:00 webserver maldet(15859): {sigup} performing signature update check... Nov 28 2023 06:58:00 webserver maldet(15859): {sigup} local signature set is version 202311252050670 Nov 28 2023 06:58:00 webserver maldet(15859): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Nov 28 2023 06:58:00 webserver maldet(15859): {sigup} new signature set 202311282735895 available Nov 28 2023 06:58:00 webserver maldet(15859): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Nov 28 2023 06:58:00 webserver maldet(15859): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Nov 28 2023 06:58:00 webserver maldet(15859): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Nov 28 2023 06:58:00 webserver maldet(15859): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Nov 28 2023 06:58:00 webserver maldet(15859): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Nov 28 2023 06:58:00 webserver maldet(15859): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Nov 28 2023 06:58:00 webserver maldet(15859): {sigup} unable to verify md5sum of maldet-sigpack.tgz, please try again or contact proj@rfxn.com Nov 28 2023 06:58:00 webserver maldet(15859): {sigup} verified md5sum of maldet-clean.tgz Nov 28 2023 06:58:00 webserver maldet(15859): {sigup} unpacked and installed maldet-clean.tgz Nov 28 2023 06:58:00 webserver maldet(16046): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Nov 28 2023 06:58:01 webserver maldet(16046): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Nov 28 2023 06:58:01 webserver maldet(16046): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Nov 28 2023 06:58:01 webserver maldet(16046): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Nov 28 2023 06:58:01 webserver maldet(16046): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Nov 28 2023 07:06:00 webserver maldet(16046): {scan} file list completed in 479s, found 832 files... Nov 28 2023 07:06:00 webserver maldet(16046): {scan} found clamav binary at /usr/bin/clamscan, using clamav scanner engine... Nov 28 2023 07:06:00 webserver maldet(16046): {scan} scan of (832 files) in progress... Nov 28 2023 07:06:34 webserver maldet(16046): {scan} clamscan returned an error, check /usr/local/maldetect/logs/clamscan_log for details! Nov 28 2023 07:06:34 webserver maldet(16046): {scan} scan completed on : files 832, malware hits 0, cleaned hits 0, time 514s Nov 28 2023 07:06:34 webserver maldet(16046): {scan} scan report saved, to view run: maldet --report 231128-0658.16046 Nov 29 2023 07:03:41 webserver maldet(1257): {update} checking for available updates... Nov 29 2023 07:03:41 webserver maldet(1257): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Nov 29 2023 07:03:41 webserver maldet(1257): {update} hashing install files and checking against server... Nov 29 2023 07:03:41 webserver maldet(1257): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Nov 29 2023 07:03:41 webserver maldet(1257): {update} latest version already installed. Nov 29 2023 07:03:42 webserver maldet(1393): {sigup} performing signature update check... Nov 29 2023 07:03:42 webserver maldet(1393): {sigup} local signature set is version 202311252050670 Nov 29 2023 07:03:42 webserver maldet(1393): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Nov 29 2023 07:03:42 webserver maldet(1393): {sigup} new signature set 202311282735895 available Nov 29 2023 07:03:42 webserver maldet(1393): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Nov 29 2023 07:03:42 webserver maldet(1393): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Nov 29 2023 07:03:42 webserver maldet(1393): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Nov 29 2023 07:03:42 webserver maldet(1393): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Nov 29 2023 07:03:42 webserver maldet(1393): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Nov 29 2023 07:03:42 webserver maldet(1393): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Nov 29 2023 07:03:42 webserver maldet(1393): {sigup} verified md5sum of maldet-sigpack.tgz Nov 29 2023 07:03:43 webserver maldet(1393): {sigup} unpacked and installed maldet-sigpack.tgz Nov 29 2023 07:03:43 webserver maldet(1393): {sigup} verified md5sum of maldet-clean.tgz Nov 29 2023 07:03:43 webserver maldet(1393): {sigup} unpacked and installed maldet-clean.tgz Nov 29 2023 07:03:43 webserver maldet(1393): {sigup} signature set update completed Nov 29 2023 07:03:43 webserver maldet(1393): {sigup} 17637 signatures (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Nov 29 2023 07:03:43 webserver maldet(1630): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Nov 29 2023 07:03:43 webserver maldet(1630): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Nov 29 2023 07:03:43 webserver maldet(1630): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Nov 29 2023 07:03:43 webserver maldet(1630): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Nov 29 2023 07:03:43 webserver maldet(1630): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Nov 29 2023 07:06:34 webserver maldet(1630): {scan} file list completed in 171s, found 519 files... Nov 29 2023 07:06:34 webserver maldet(1630): {scan} found clamav binary at /usr/bin/clamscan, using clamav scanner engine... Nov 29 2023 07:06:34 webserver maldet(1630): {scan} scan of (519 files) in progress... Nov 29 2023 07:07:08 webserver maldet(1630): {scan} clamscan returned an error, check /usr/local/maldetect/logs/clamscan_log for details! Nov 29 2023 07:07:08 webserver maldet(1630): {scan} scan completed on : files 519, malware hits 0, cleaned hits 0, time 205s Nov 29 2023 07:07:08 webserver maldet(1630): {scan} scan report saved, to view run: maldet --report 231129-0703.1630 Nov 30 2023 06:56:13 webserver maldet(21550): {update} checking for available updates... Nov 30 2023 06:56:13 webserver maldet(21550): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Nov 30 2023 06:56:14 webserver maldet(21550): {update} hashing install files and checking against server... Nov 30 2023 06:56:14 webserver maldet(21550): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Nov 30 2023 06:56:14 webserver maldet(21550): {update} latest version already installed. Nov 30 2023 06:56:14 webserver maldet(21686): {sigup} performing signature update check... Nov 30 2023 06:56:14 webserver maldet(21686): {sigup} local signature set is version 202311282735895 Nov 30 2023 06:56:14 webserver maldet(21686): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Nov 30 2023 06:56:14 webserver maldet(21686): {sigup} latest signature set already installed Nov 30 2023 06:56:14 webserver maldet(21800): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Nov 30 2023 06:56:14 webserver maldet(21800): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Nov 30 2023 06:56:14 webserver maldet(21800): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Nov 30 2023 06:56:14 webserver maldet(21800): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Nov 30 2023 06:56:14 webserver maldet(21800): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Nov 30 2023 06:56:39 webserver maldet(21800): {scan} file list completed in 25s, found 588 files... Nov 30 2023 06:56:39 webserver maldet(21800): {scan} found clamav binary at /usr/bin/clamscan, using clamav scanner engine... Nov 30 2023 06:56:39 webserver maldet(21800): {scan} scan of (588 files) in progress... Nov 30 2023 06:57:12 webserver maldet(21800): {scan} scan completed on : files 588, malware hits 0, cleaned hits 0, time 57s Nov 30 2023 06:57:12 webserver maldet(21800): {scan} scan report saved, to view run: maldet --report 231130-0656.21800 Dec 01 2023 06:56:00 webserver maldet(9334): {update} checking for available updates... Dec 01 2023 06:56:00 webserver maldet(9334): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Dec 01 2023 06:56:00 webserver maldet(9334): {update} hashing install files and checking against server... Dec 01 2023 06:56:00 webserver maldet(9334): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Dec 01 2023 06:56:00 webserver maldet(9334): {update} latest version already installed. Dec 01 2023 06:56:00 webserver maldet(9470): {sigup} performing signature update check... Dec 01 2023 06:56:00 webserver maldet(9470): {sigup} local signature set is version 202311282735895 Dec 01 2023 06:56:00 webserver maldet(9470): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Dec 01 2023 06:56:00 webserver maldet(9470): {sigup} latest signature set already installed Dec 01 2023 06:56:01 webserver maldet(9585): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Dec 01 2023 06:56:01 webserver maldet(9585): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Dec 01 2023 06:56:01 webserver maldet(9585): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Dec 01 2023 06:56:01 webserver maldet(9585): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Dec 01 2023 06:56:01 webserver maldet(9585): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Dec 01 2023 06:58:41 webserver maldet(9585): {scan} file list completed in 160s, found 460 files... Dec 01 2023 06:58:41 webserver maldet(9585): {scan} found clamav binary at /usr/bin/clamscan, using clamav scanner engine... Dec 01 2023 06:58:41 webserver maldet(9585): {scan} scan of (460 files) in progress... Dec 01 2023 06:59:11 webserver maldet(9585): {scan} scan completed on : files 460, malware hits 0, cleaned hits 0, time 190s Dec 01 2023 06:59:11 webserver maldet(9585): {scan} scan report saved, to view run: maldet --report 231201-0656.9585 Dec 02 2023 06:56:36 webserver maldet(24894): {update} checking for available updates... Dec 02 2023 06:56:36 webserver maldet(24894): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Dec 02 2023 06:56:36 webserver maldet(24894): {update} hashing install files and checking against server... Dec 02 2023 06:56:36 webserver maldet(24894): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Dec 02 2023 06:56:36 webserver maldet(24894): {update} latest version already installed. Dec 02 2023 06:56:36 webserver maldet(25030): {sigup} performing signature update check... Dec 02 2023 06:56:36 webserver maldet(25030): {sigup} local signature set is version 202311282735895 Dec 02 2023 06:56:36 webserver maldet(25030): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Dec 02 2023 06:56:36 webserver maldet(25030): {sigup} new signature set 20231201581085 available Dec 02 2023 06:56:36 webserver maldet(25030): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Dec 02 2023 06:56:36 webserver maldet(25030): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Dec 02 2023 06:56:36 webserver maldet(25030): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Dec 02 2023 06:56:36 webserver maldet(25030): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Dec 02 2023 06:56:36 webserver maldet(25030): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Dec 02 2023 06:56:36 webserver maldet(25030): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Dec 02 2023 06:56:36 webserver maldet(25030): {sigup} verified md5sum of maldet-sigpack.tgz Dec 02 2023 06:56:36 webserver maldet(25030): {sigup} unpacked and installed maldet-sigpack.tgz Dec 02 2023 06:56:36 webserver maldet(25030): {sigup} verified md5sum of maldet-clean.tgz Dec 02 2023 06:56:37 webserver maldet(25030): {sigup} unpacked and installed maldet-clean.tgz Dec 02 2023 06:56:37 webserver maldet(25030): {sigup} signature set update completed Dec 02 2023 06:56:37 webserver maldet(25030): {sigup} 17637 signatures (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Dec 02 2023 06:56:37 webserver maldet(25261): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Dec 02 2023 06:56:37 webserver maldet(25261): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Dec 02 2023 06:56:37 webserver maldet(25261): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Dec 02 2023 06:56:37 webserver maldet(25261): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Dec 02 2023 06:56:37 webserver maldet(25261): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Dec 02 2023 06:59:26 webserver maldet(25261): {scan} file list completed in 169s, found 858 files... Dec 02 2023 06:59:26 webserver maldet(25261): {scan} found clamav binary at /usr/bin/clamscan, using clamav scanner engine... Dec 02 2023 06:59:26 webserver maldet(25261): {scan} scan of (858 files) in progress... Dec 02 2023 07:00:19 webserver maldet(25261): {scan} clamscan returned an error, check /usr/local/maldetect/logs/clamscan_log for details! Dec 02 2023 07:00:19 webserver maldet(25261): {scan} scan completed on : files 858, malware hits 0, cleaned hits 0, time 222s Dec 02 2023 07:00:19 webserver maldet(25261): {scan} scan report saved, to view run: maldet --report 231202-0656.25261 Dec 03 2023 06:56:08 webserver maldet(6383): {update} checking for available updates... Dec 03 2023 06:56:08 webserver maldet(6383): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Dec 03 2023 06:56:08 webserver maldet(6383): {update} hashing install files and checking against server... Dec 03 2023 06:56:08 webserver maldet(6383): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Dec 03 2023 06:56:08 webserver maldet(6383): {update} latest version already installed. Dec 03 2023 06:56:09 webserver maldet(6519): {sigup} performing signature update check... Dec 03 2023 06:56:09 webserver maldet(6519): {sigup} local signature set is version 20231201581085 Dec 03 2023 06:56:09 webserver maldet(6519): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Dec 03 2023 06:56:09 webserver maldet(6519): {sigup} latest signature set already installed Dec 03 2023 06:56:09 webserver maldet(6634): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Dec 03 2023 06:56:09 webserver maldet(6634): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Dec 03 2023 06:56:09 webserver maldet(6634): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Dec 03 2023 06:56:09 webserver maldet(6634): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Dec 03 2023 06:56:09 webserver maldet(6634): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Dec 03 2023 07:04:03 webserver maldet(6634): {scan} file list completed in 473s, found 625 files... Dec 03 2023 07:04:03 webserver maldet(6634): {scan} found clamav binary at /usr/bin/clamscan, using clamav scanner engine... Dec 03 2023 07:04:03 webserver maldet(6634): {scan} scan of (625 files) in progress... Dec 03 2023 07:04:55 webserver maldet(6634): {scan} clamscan returned an error, check /usr/local/maldetect/logs/clamscan_log for details! Dec 03 2023 07:04:55 webserver maldet(6634): {scan} scan completed on : files 625, malware hits 0, cleaned hits 0, time 526s Dec 03 2023 07:04:55 webserver maldet(6634): {scan} scan report saved, to view run: maldet --report 231203-0656.6634 Dec 04 2023 06:58:27 webserver maldet(29073): {update} checking for available updates... Dec 04 2023 06:58:27 webserver maldet(29073): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Dec 04 2023 06:58:27 webserver maldet(29073): {update} hashing install files and checking against server... Dec 04 2023 06:58:27 webserver maldet(29073): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Dec 04 2023 06:58:27 webserver maldet(29073): {update} latest version already installed. Dec 04 2023 06:58:27 webserver maldet(29209): {sigup} performing signature update check... Dec 04 2023 06:58:27 webserver maldet(29209): {sigup} local signature set is version 20231201581085 Dec 04 2023 06:58:27 webserver maldet(29209): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Dec 04 2023 06:58:28 webserver maldet(29209): {sigup} latest signature set already installed Dec 04 2023 06:58:28 webserver maldet(29324): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Dec 04 2023 06:58:29 webserver maldet(29324): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Dec 04 2023 06:58:29 webserver maldet(29324): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Dec 04 2023 06:58:29 webserver maldet(29324): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Dec 04 2023 06:58:29 webserver maldet(29324): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Dec 04 2023 07:07:00 webserver maldet(29324): {scan} file list completed in 511s, found 224 files... Dec 04 2023 07:07:00 webserver maldet(29324): {scan} found clamav binary at /usr/bin/clamscan, using clamav scanner engine... Dec 04 2023 07:07:00 webserver maldet(29324): {scan} scan of (224 files) in progress... Dec 04 2023 07:07:35 webserver maldet(29324): {scan} clamscan returned an error, check /usr/local/maldetect/logs/clamscan_log for details! Dec 04 2023 07:07:36 webserver maldet(29324): {scan} scan completed on : files 224, malware hits 0, cleaned hits 0, time 547s Dec 04 2023 07:07:36 webserver maldet(29324): {scan} scan report saved, to view run: maldet --report 231204-0658.29324 Dec 05 2023 06:58:10 webserver maldet(13802): {update} checking for available updates... Dec 05 2023 06:58:10 webserver maldet(13802): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Dec 05 2023 06:58:10 webserver maldet(13802): {update} hashing install files and checking against server... Dec 05 2023 06:58:10 webserver maldet(13802): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Dec 05 2023 06:58:10 webserver maldet(13802): {update} latest version already installed. Dec 05 2023 06:58:10 webserver maldet(13938): {sigup} performing signature update check... Dec 05 2023 06:58:10 webserver maldet(13938): {sigup} local signature set is version 20231201581085 Dec 05 2023 06:58:11 webserver maldet(13938): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Dec 05 2023 06:58:11 webserver maldet(13938): {sigup} new signature set 20231204555561 available Dec 05 2023 06:58:11 webserver maldet(13938): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Dec 05 2023 06:58:11 webserver maldet(13938): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Dec 05 2023 06:58:11 webserver maldet(13938): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Dec 05 2023 06:58:11 webserver maldet(13938): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Dec 05 2023 06:58:11 webserver maldet(13938): {sigup} could not download https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz, please try again later. Dec 05 2023 06:58:11 webserver maldet(13938): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Dec 05 2023 06:58:11 webserver maldet(13938): {sigup} verified md5sum of maldet-sigpack.tgz Dec 05 2023 06:58:11 webserver maldet(13938): {sigup} unpacked and installed maldet-sigpack.tgz Dec 05 2023 06:58:12 webserver maldet(13938): {sigup} unable to verify md5sum of maldet-clean.tgz, please try again or contact proj@rfxn.com Dec 05 2023 06:58:12 webserver maldet(13938): {sigup} signature set update completed Dec 05 2023 06:58:12 webserver maldet(13938): {sigup} 17637 signatures (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Dec 05 2023 06:58:12 webserver maldet(14164): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Dec 05 2023 06:58:12 webserver maldet(14164): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Dec 05 2023 06:58:12 webserver maldet(14164): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Dec 05 2023 06:58:12 webserver maldet(14164): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Dec 05 2023 06:58:12 webserver maldet(14164): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Dec 05 2023 07:08:53 webserver maldet(14164): {scan} file list completed in 641s, found 681 files... Dec 05 2023 07:08:53 webserver maldet(14164): {scan} found clamav binary at /usr/bin/clamscan, using clamav scanner engine... Dec 05 2023 07:08:53 webserver maldet(14164): {scan} scan of (681 files) in progress... Dec 05 2023 07:09:49 webserver maldet(14164): {scan} clamscan returned an error, check /usr/local/maldetect/logs/clamscan_log for details! Dec 05 2023 07:09:49 webserver maldet(14164): {scan} scan completed on : files 681, malware hits 0, cleaned hits 0, time 697s Dec 05 2023 07:09:49 webserver maldet(14164): {scan} scan report saved, to view run: maldet --report 231205-0658.14164 Dec 06 2023 06:59:25 webserver maldet(2385): {update} checking for available updates... Dec 06 2023 06:59:25 webserver maldet(2385): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Dec 06 2023 06:59:25 webserver maldet(2385): {update} hashing install files and checking against server... Dec 06 2023 06:59:25 webserver maldet(2385): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Dec 06 2023 06:59:25 webserver maldet(2385): {update} latest version already installed. Dec 06 2023 06:59:25 webserver maldet(2521): {sigup} performing signature update check... Dec 06 2023 06:59:25 webserver maldet(2521): {sigup} local signature set is version 20231204555561 Dec 06 2023 06:59:25 webserver maldet(2521): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Dec 06 2023 06:59:25 webserver maldet(2521): {sigup} latest signature set already installed Dec 06 2023 06:59:25 webserver maldet(2636): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Dec 06 2023 06:59:25 webserver maldet(2636): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Dec 06 2023 06:59:26 webserver maldet(2636): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Dec 06 2023 06:59:26 webserver maldet(2636): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Dec 06 2023 06:59:26 webserver maldet(2636): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Dec 06 2023 07:01:53 webserver maldet(2636): {scan} file list completed in 147s, found 900 files... Dec 06 2023 07:01:53 webserver maldet(2636): {scan} found clamav binary at /usr/bin/clamscan, using clamav scanner engine... Dec 06 2023 07:01:53 webserver maldet(2636): {scan} scan of (900 files) in progress... Dec 06 2023 07:02:30 webserver maldet(2636): {scan} scan completed on : files 900, malware hits 0, cleaned hits 0, time 185s Dec 06 2023 07:02:30 webserver maldet(2636): {scan} scan report saved, to view run: maldet --report 231206-0659.2636 Dec 07 2023 06:57:17 webserver maldet(25981): {update} checking for available updates... Dec 07 2023 06:57:17 webserver maldet(25981): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Dec 07 2023 06:57:17 webserver maldet(25981): {update} hashing install files and checking against server... Dec 07 2023 06:57:17 webserver maldet(25981): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Dec 07 2023 06:57:17 webserver maldet(25981): {update} latest version already installed. Dec 07 2023 06:57:18 webserver maldet(26117): {sigup} performing signature update check... Dec 07 2023 06:57:18 webserver maldet(26117): {sigup} local signature set is version 20231204555561 Dec 07 2023 06:57:18 webserver maldet(26117): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Dec 07 2023 06:57:18 webserver maldet(26117): {sigup} latest signature set already installed Dec 07 2023 06:57:18 webserver maldet(26231): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Dec 07 2023 06:57:18 webserver maldet(26231): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Dec 07 2023 06:57:18 webserver maldet(26231): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Dec 07 2023 06:57:18 webserver maldet(26231): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Dec 07 2023 06:57:18 webserver maldet(26231): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Dec 07 2023 07:00:06 webserver maldet(26231): {scan} file list completed in 168s, found 560 files... Dec 07 2023 07:00:06 webserver maldet(26231): {scan} found clamav binary at /usr/bin/clamscan, using clamav scanner engine... Dec 07 2023 07:00:06 webserver maldet(26231): {scan} scan of (560 files) in progress... Dec 07 2023 07:00:40 webserver maldet(26231): {scan} scan completed on : files 560, malware hits 0, cleaned hits 0, time 202s Dec 07 2023 07:00:40 webserver maldet(26231): {scan} scan report saved, to view run: maldet --report 231207-0657.26231 Dec 08 2023 07:10:20 webserver maldet(20097): {update} checking for available updates... Dec 08 2023 07:10:20 webserver maldet(20097): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Dec 08 2023 07:10:20 webserver maldet(20097): {update} hashing install files and checking against server... Dec 08 2023 07:10:20 webserver maldet(20097): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Dec 08 2023 07:10:20 webserver maldet(20097): {update} latest version already installed. Dec 08 2023 07:10:20 webserver maldet(20233): {sigup} performing signature update check... Dec 08 2023 07:10:20 webserver maldet(20233): {sigup} local signature set is version 20231204555561 Dec 08 2023 07:10:20 webserver maldet(20233): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Dec 08 2023 07:10:20 webserver maldet(20233): {sigup} new signature set 202312071288212 available Dec 08 2023 07:10:20 webserver maldet(20233): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Dec 08 2023 07:10:20 webserver maldet(20233): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Dec 08 2023 07:10:20 webserver maldet(20233): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Dec 08 2023 07:10:20 webserver maldet(20233): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Dec 08 2023 07:10:21 webserver maldet(20233): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Dec 08 2023 07:10:21 webserver maldet(20233): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Dec 08 2023 07:10:21 webserver maldet(20233): {sigup} verified md5sum of maldet-sigpack.tgz Dec 08 2023 07:10:21 webserver maldet(20233): {sigup} unpacked and installed maldet-sigpack.tgz Dec 08 2023 07:10:21 webserver maldet(20233): {sigup} verified md5sum of maldet-clean.tgz Dec 08 2023 07:10:21 webserver maldet(20233): {sigup} unpacked and installed maldet-clean.tgz Dec 08 2023 07:10:21 webserver maldet(20233): {sigup} signature set update completed Dec 08 2023 07:10:21 webserver maldet(20233): {sigup} 17637 signatures (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Dec 08 2023 07:10:21 webserver maldet(20463): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Dec 08 2023 07:10:21 webserver maldet(20463): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Dec 08 2023 07:10:21 webserver maldet(20463): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Dec 08 2023 07:10:21 webserver maldet(20463): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Dec 08 2023 07:10:21 webserver maldet(20463): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Dec 08 2023 07:13:16 webserver maldet(20463): {scan} file list completed in 175s, found 528 files... Dec 08 2023 07:13:16 webserver maldet(20463): {scan} found clamav binary at /usr/bin/clamscan, using clamav scanner engine... Dec 08 2023 07:13:16 webserver maldet(20463): {scan} scan of (528 files) in progress... Dec 08 2023 07:13:48 webserver maldet(20463): {scan} clamscan returned an error, check /usr/local/maldetect/logs/clamscan_log for details! Dec 08 2023 07:13:48 webserver maldet(20463): {scan} scan completed on : files 528, malware hits 0, cleaned hits 0, time 207s Dec 08 2023 07:13:48 webserver maldet(20463): {scan} scan report saved, to view run: maldet --report 231208-0710.20463 Dec 09 2023 06:57:48 webserver maldet(7541): {update} checking for available updates... Dec 09 2023 06:57:48 webserver maldet(7541): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Dec 09 2023 06:57:48 webserver maldet(7541): {update} hashing install files and checking against server... Dec 09 2023 06:57:48 webserver maldet(7541): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Dec 09 2023 06:57:48 webserver maldet(7541): {update} latest version already installed. Dec 09 2023 06:57:48 webserver maldet(7677): {sigup} performing signature update check... Dec 09 2023 06:57:48 webserver maldet(7677): {sigup} local signature set is version 202312071288212 Dec 09 2023 06:57:48 webserver maldet(7677): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Dec 09 2023 06:57:48 webserver maldet(7677): {sigup} latest signature set already installed Dec 09 2023 06:57:48 webserver maldet(7792): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Dec 09 2023 06:57:48 webserver maldet(7792): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Dec 09 2023 06:57:48 webserver maldet(7792): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Dec 09 2023 06:57:48 webserver maldet(7792): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Dec 09 2023 06:57:49 webserver maldet(7792): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Dec 09 2023 07:05:43 webserver maldet(7792): {scan} file list completed in 475s, found 1948 files... Dec 09 2023 07:05:43 webserver maldet(7792): {scan} found clamav binary at /usr/bin/clamscan, using clamav scanner engine... Dec 09 2023 07:05:43 webserver maldet(7792): {scan} scan of (1948 files) in progress... Dec 09 2023 07:06:57 webserver maldet(7792): {scan} clamscan returned an error, check /usr/local/maldetect/logs/clamscan_log for details! Dec 09 2023 07:06:57 webserver maldet(7792): {scan} scan completed on : files 1948, malware hits 0, cleaned hits 0, time 549s Dec 09 2023 07:06:57 webserver maldet(7792): {scan} scan report saved, to view run: maldet --report 231209-0657.7792 Dec 10 2023 07:05:35 webserver maldet(26403): {update} checking for available updates... Dec 10 2023 07:05:35 webserver maldet(26403): {update} could not download https://cdn.rfxn.com/downloads/maldet.current.ver, please try again later. Dec 10 2023 07:05:35 webserver maldet(26403): {update} could not download version file from server, please try again later. Dec 10 2023 07:05:35 webserver maldet(26501): {sigup} performing signature update check... Dec 10 2023 07:05:35 webserver maldet(26501): {sigup} local signature set is version 202312071288212 Dec 10 2023 07:05:35 webserver maldet(26501): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Dec 10 2023 07:05:36 webserver maldet(26501): {sigup} latest signature set already installed Dec 10 2023 07:05:36 webserver maldet(26616): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Dec 10 2023 07:05:36 webserver maldet(26616): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Dec 10 2023 07:05:36 webserver maldet(26616): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Dec 10 2023 07:05:36 webserver maldet(26616): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Dec 10 2023 07:05:36 webserver maldet(26616): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Dec 10 2023 07:16:34 webserver maldet(26616): {scan} file list completed in 658s, found 986 files... Dec 10 2023 07:16:35 webserver maldet(26616): {scan} found clamav binary at /usr/bin/clamscan, using clamav scanner engine... Dec 10 2023 07:16:35 webserver maldet(26616): {scan} scan of (986 files) in progress... Dec 10 2023 07:18:01 webserver maldet(26616): {scan} clamscan returned an error, check /usr/local/maldetect/logs/clamscan_log for details! Dec 10 2023 07:18:01 webserver maldet(26616): {scan} scan completed on : files 986, malware hits 0, cleaned hits 0, time 745s Dec 10 2023 07:18:01 webserver maldet(26616): {scan} scan report saved, to view run: maldet --report 231210-0705.26616 Dec 11 2023 06:59:29 webserver maldet(17847): {update} checking for available updates... Dec 11 2023 06:59:29 webserver maldet(17847): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Dec 11 2023 06:59:29 webserver maldet(17847): {update} hashing install files and checking against server... Dec 11 2023 06:59:29 webserver maldet(17847): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Dec 11 2023 06:59:29 webserver maldet(17847): {update} latest version already installed. Dec 11 2023 06:59:29 webserver maldet(17984): {sigup} performing signature update check... Dec 11 2023 06:59:29 webserver maldet(17984): {sigup} local signature set is version 202312071288212 Dec 11 2023 06:59:29 webserver maldet(17984): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Dec 11 2023 06:59:29 webserver maldet(17984): {sigup} new signature set 202312102111746 available Dec 11 2023 06:59:29 webserver maldet(17984): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Dec 11 2023 06:59:29 webserver maldet(17984): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Dec 11 2023 06:59:29 webserver maldet(17984): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Dec 11 2023 06:59:29 webserver maldet(17984): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Dec 11 2023 06:59:30 webserver maldet(17984): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Dec 11 2023 06:59:30 webserver maldet(17984): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Dec 11 2023 06:59:30 webserver maldet(17984): {sigup} verified md5sum of maldet-sigpack.tgz Dec 11 2023 06:59:30 webserver maldet(17984): {sigup} unpacked and installed maldet-sigpack.tgz Dec 11 2023 06:59:30 webserver maldet(17984): {sigup} verified md5sum of maldet-clean.tgz Dec 11 2023 06:59:30 webserver maldet(17984): {sigup} unpacked and installed maldet-clean.tgz Dec 11 2023 06:59:30 webserver maldet(17984): {sigup} signature set update completed Dec 11 2023 06:59:30 webserver maldet(17984): {sigup} 17637 signatures (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Dec 11 2023 06:59:30 webserver maldet(18215): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Dec 11 2023 06:59:30 webserver maldet(18215): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Dec 11 2023 06:59:30 webserver maldet(18215): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Dec 11 2023 06:59:30 webserver maldet(18215): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Dec 11 2023 06:59:30 webserver maldet(18215): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Dec 11 2023 07:03:02 webserver maldet(18215): {scan} file list completed in 212s, found 924 files... Dec 11 2023 07:03:02 webserver maldet(18215): {scan} found clamav binary at /usr/bin/clamscan, using clamav scanner engine... Dec 11 2023 07:03:02 webserver maldet(18215): {scan} scan of (924 files) in progress... Dec 11 2023 07:03:45 webserver maldet(18215): {scan} scan completed on : files 924, malware hits 0, cleaned hits 0, time 255s Dec 11 2023 07:03:45 webserver maldet(18215): {scan} scan report saved, to view run: maldet --report 231211-0659.18215 Dec 12 2023 07:05:21 webserver maldet(3692): {update} checking for available updates... Dec 12 2023 07:05:21 webserver maldet(3692): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Dec 12 2023 07:05:21 webserver maldet(3692): {update} hashing install files and checking against server... Dec 12 2023 07:05:21 webserver maldet(3692): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Dec 12 2023 07:05:21 webserver maldet(3692): {update} latest version already installed. Dec 12 2023 07:05:21 webserver maldet(3830): {sigup} performing signature update check... Dec 12 2023 07:05:21 webserver maldet(3830): {sigup} local signature set is version 202312102111746 Dec 12 2023 07:05:21 webserver maldet(3830): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Dec 12 2023 07:05:21 webserver maldet(3830): {sigup} latest signature set already installed Dec 12 2023 07:05:21 webserver maldet(3945): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Dec 12 2023 07:05:22 webserver maldet(3945): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Dec 12 2023 07:05:22 webserver maldet(3945): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Dec 12 2023 07:05:22 webserver maldet(3945): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Dec 12 2023 07:05:22 webserver maldet(3945): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Dec 12 2023 07:07:58 webserver maldet(3945): {scan} file list completed in 156s, found 521 files... Dec 12 2023 07:07:58 webserver maldet(3945): {scan} found clamav binary at /usr/bin/clamscan, using clamav scanner engine... Dec 12 2023 07:07:58 webserver maldet(3945): {scan} scan of (521 files) in progress... Dec 12 2023 07:08:30 webserver maldet(3945): {scan} clamscan returned an error, check /usr/local/maldetect/logs/clamscan_log for details! Dec 12 2023 07:08:30 webserver maldet(3945): {scan} scan completed on : files 521, malware hits 0, cleaned hits 0, time 189s Dec 12 2023 07:08:30 webserver maldet(3945): {scan} scan report saved, to view run: maldet --report 231212-0705.3945 Dec 13 2023 06:56:16 webserver maldet(31119): {update} checking for available updates... Dec 13 2023 06:56:16 webserver maldet(31119): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Dec 13 2023 06:56:16 webserver maldet(31119): {update} hashing install files and checking against server... Dec 13 2023 06:56:16 webserver maldet(31119): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Dec 13 2023 06:56:16 webserver maldet(31119): {update} latest version already installed. Dec 13 2023 06:56:16 webserver maldet(31255): {sigup} performing signature update check... Dec 13 2023 06:56:16 webserver maldet(31255): {sigup} local signature set is version 202312102111746 Dec 13 2023 06:56:16 webserver maldet(31255): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Dec 13 2023 06:56:17 webserver maldet(31255): {sigup} latest signature set already installed Dec 13 2023 06:56:17 webserver maldet(31370): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Dec 13 2023 06:56:18 webserver maldet(31370): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Dec 13 2023 06:56:18 webserver maldet(31370): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Dec 13 2023 06:56:18 webserver maldet(31370): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Dec 13 2023 06:56:18 webserver maldet(31370): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Dec 13 2023 07:08:05 webserver maldet(31370): {scan} file list completed in 706s, found 727 files... Dec 13 2023 07:08:05 webserver maldet(31370): {scan} found clamav binary at /usr/bin/clamscan, using clamav scanner engine... Dec 13 2023 07:08:05 webserver maldet(31370): {scan} scan of (727 files) in progress... Dec 13 2023 07:08:58 webserver maldet(31370): {scan} clamscan returned an error, check /usr/local/maldetect/logs/clamscan_log for details! Dec 13 2023 07:08:58 webserver maldet(31370): {scan} scan completed on : files 727, malware hits 0, cleaned hits 0, time 761s Dec 13 2023 07:08:58 webserver maldet(31370): {scan} scan report saved, to view run: maldet --report 231213-0656.31370 Dec 14 2023 07:04:21 webserver maldet(17861): {update} checking for available updates... Dec 14 2023 07:04:21 webserver maldet(17861): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Dec 14 2023 07:04:21 webserver maldet(17861): {update} hashing install files and checking against server... Dec 14 2023 07:04:21 webserver maldet(17861): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Dec 14 2023 07:04:21 webserver maldet(17861): {update} latest version already installed. Dec 14 2023 07:04:21 webserver maldet(17997): {sigup} performing signature update check... Dec 14 2023 07:04:21 webserver maldet(17997): {sigup} local signature set is version 202312102111746 Dec 14 2023 07:04:21 webserver maldet(17997): {sigup} could not download https://cdn.rfxn.com/downloads/maldet.sigs.ver, please try again later. Dec 14 2023 07:04:21 webserver maldet(17997): {sigup} could not download signature data from server, please try again later. Dec 14 2023 07:04:21 webserver maldet(18103): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Dec 14 2023 07:04:22 webserver maldet(18103): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Dec 14 2023 07:04:22 webserver maldet(18103): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Dec 14 2023 07:04:22 webserver maldet(18103): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Dec 14 2023 07:04:22 webserver maldet(18103): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Dec 14 2023 07:17:37 webserver maldet(18103): {scan} file list completed in 795s, found 666 files... Dec 14 2023 07:17:37 webserver maldet(18103): {scan} found clamav binary at /usr/bin/clamscan, using clamav scanner engine... Dec 14 2023 07:17:37 webserver maldet(18103): {scan} scan of (666 files) in progress... Dec 14 2023 07:18:28 webserver maldet(18103): {scan} clamscan returned an error, check /usr/local/maldetect/logs/clamscan_log for details! Dec 14 2023 07:18:28 webserver maldet(18103): {scan} scan completed on : files 666, malware hits 0, cleaned hits 0, time 847s Dec 14 2023 07:18:28 webserver maldet(18103): {scan} scan report saved, to view run: maldet --report 231214-0704.18103 Dec 15 2023 06:59:26 webserver maldet(6672): {update} checking for available updates... Dec 15 2023 06:59:26 webserver maldet(6672): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Dec 15 2023 06:59:27 webserver maldet(6672): {update} hashing install files and checking against server... Dec 15 2023 06:59:27 webserver maldet(6672): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Dec 15 2023 06:59:27 webserver maldet(6672): {update} latest version already installed. Dec 15 2023 06:59:27 webserver maldet(6808): {sigup} performing signature update check... Dec 15 2023 06:59:27 webserver maldet(6808): {sigup} local signature set is version 202312102111746 Dec 15 2023 06:59:27 webserver maldet(6808): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Dec 15 2023 06:59:27 webserver maldet(6808): {sigup} new signature set 202312132952236 available Dec 15 2023 06:59:27 webserver maldet(6808): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Dec 15 2023 06:59:27 webserver maldet(6808): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Dec 15 2023 06:59:27 webserver maldet(6808): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Dec 15 2023 06:59:27 webserver maldet(6808): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Dec 15 2023 06:59:27 webserver maldet(6808): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Dec 15 2023 06:59:27 webserver maldet(6808): {sigup} could not download https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5, please try again later. Dec 15 2023 06:59:27 webserver maldet(6808): {sigup} verified md5sum of maldet-sigpack.tgz Dec 15 2023 06:59:27 webserver maldet(6808): {sigup} unpacked and installed maldet-sigpack.tgz Dec 15 2023 06:59:28 webserver maldet(6808): {sigup} unable to verify md5sum of maldet-clean.tgz, please try again or contact proj@rfxn.com Dec 15 2023 06:59:28 webserver maldet(6808): {sigup} signature set update completed Dec 15 2023 06:59:28 webserver maldet(6808): {sigup} 17637 signatures (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Dec 15 2023 06:59:28 webserver maldet(7031): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Dec 15 2023 06:59:28 webserver maldet(7031): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Dec 15 2023 06:59:28 webserver maldet(7031): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Dec 15 2023 06:59:28 webserver maldet(7031): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Dec 15 2023 06:59:28 webserver maldet(7031): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Dec 15 2023 07:10:05 webserver maldet(7031): {scan} file list completed in 637s, found 10150 files... Dec 15 2023 07:10:05 webserver maldet(7031): {scan} found clamav binary at /usr/bin/clamscan, using clamav scanner engine... Dec 15 2023 07:10:05 webserver maldet(7031): {scan} scan of (10150 files) in progress... Dec 15 2023 07:16:16 webserver maldet(7031): {scan} clamscan returned an error, check /usr/local/maldetect/logs/clamscan_log for details! Dec 15 2023 07:16:16 webserver maldet(7031): {scan} scan completed on : files 10150, malware hits 0, cleaned hits 0, time 1008s Dec 15 2023 07:16:16 webserver maldet(7031): {scan} scan report saved, to view run: maldet --report 231215-0659.7031 Dec 16 2023 07:08:13 webserver maldet(25692): {update} checking for available updates... Dec 16 2023 07:08:13 webserver maldet(25692): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Dec 16 2023 07:08:13 webserver maldet(25692): {update} hashing install files and checking against server... Dec 16 2023 07:08:13 webserver maldet(25692): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Dec 16 2023 07:08:13 webserver maldet(25692): {update} latest version already installed. Dec 16 2023 07:08:13 webserver maldet(25828): {sigup} performing signature update check... Dec 16 2023 07:08:13 webserver maldet(25828): {sigup} local signature set is version 202312132952236 Dec 16 2023 07:08:13 webserver maldet(25828): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Dec 16 2023 07:08:13 webserver maldet(25828): {sigup} latest signature set already installed Dec 16 2023 07:08:13 webserver maldet(25942): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Dec 16 2023 07:08:13 webserver maldet(25942): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Dec 16 2023 07:08:13 webserver maldet(25942): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Dec 16 2023 07:08:13 webserver maldet(25942): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Dec 16 2023 07:08:13 webserver maldet(25942): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Dec 16 2023 07:10:52 webserver maldet(25942): {scan} file list completed in 159s, found 635 files... Dec 16 2023 07:10:52 webserver maldet(25942): {scan} found clamav binary at /usr/bin/clamscan, using clamav scanner engine... Dec 16 2023 07:10:52 webserver maldet(25942): {scan} scan of (635 files) in progress... Dec 16 2023 07:11:23 webserver maldet(25942): {scan} clamscan returned an error, check /usr/local/maldetect/logs/clamscan_log for details! Dec 16 2023 07:11:23 webserver maldet(25942): {scan} scan completed on : files 635, malware hits 0, cleaned hits 0, time 190s Dec 16 2023 07:11:23 webserver maldet(25942): {scan} scan report saved, to view run: maldet --report 231216-0708.25942 Dec 17 2023 06:57:29 webserver maldet(15293): {update} checking for available updates... Dec 17 2023 06:57:29 webserver maldet(15293): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Dec 17 2023 06:57:29 webserver maldet(15293): {update} hashing install files and checking against server... Dec 17 2023 06:57:29 webserver maldet(15293): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Dec 17 2023 06:57:29 webserver maldet(15293): {update} latest version already installed. Dec 17 2023 06:57:29 webserver maldet(15429): {sigup} performing signature update check... Dec 17 2023 06:57:29 webserver maldet(15429): {sigup} local signature set is version 202312132952236 Dec 17 2023 06:57:29 webserver maldet(15429): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Dec 17 2023 06:57:29 webserver maldet(15429): {sigup} new signature set 202312163771611 available Dec 17 2023 06:57:29 webserver maldet(15429): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Dec 17 2023 06:57:30 webserver maldet(15429): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Dec 17 2023 06:57:30 webserver maldet(15429): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Dec 17 2023 06:57:30 webserver maldet(15429): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Dec 17 2023 06:57:30 webserver maldet(15429): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Dec 17 2023 06:57:30 webserver maldet(15429): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Dec 17 2023 06:57:30 webserver maldet(15429): {sigup} verified md5sum of maldet-sigpack.tgz Dec 17 2023 06:57:30 webserver maldet(15429): {sigup} unpacked and installed maldet-sigpack.tgz Dec 17 2023 06:57:30 webserver maldet(15429): {sigup} verified md5sum of maldet-clean.tgz Dec 17 2023 06:57:30 webserver maldet(15429): {sigup} unpacked and installed maldet-clean.tgz Dec 17 2023 06:57:30 webserver maldet(15429): {sigup} signature set update completed Dec 17 2023 06:57:30 webserver maldet(15429): {sigup} 17637 signatures (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Dec 17 2023 06:57:30 webserver maldet(15662): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Dec 17 2023 06:57:30 webserver maldet(15662): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Dec 17 2023 06:57:30 webserver maldet(15662): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Dec 17 2023 06:57:30 webserver maldet(15662): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Dec 17 2023 06:57:30 webserver maldet(15662): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Dec 17 2023 06:58:08 webserver maldet(15662): {scan} file list completed in 38s, found 255 files... Dec 17 2023 06:58:08 webserver maldet(15662): {scan} found clamav binary at /usr/bin/clamscan, using clamav scanner engine... Dec 17 2023 06:58:08 webserver maldet(15662): {scan} scan of (255 files) in progress... Dec 17 2023 06:58:46 webserver maldet(15662): {scan} clamscan returned an error, check /usr/local/maldetect/logs/clamscan_log for details! Dec 17 2023 06:58:46 webserver maldet(15662): {scan} scan completed on : files 255, malware hits 0, cleaned hits 0, time 76s Dec 17 2023 06:58:46 webserver maldet(15662): {scan} scan report saved, to view run: maldet --report 231217-0657.15662 Dec 18 2023 06:59:32 webserver maldet(20714): {update} checking for available updates... Dec 18 2023 06:59:32 webserver maldet(20714): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Dec 18 2023 06:59:33 webserver maldet(20714): {update} hashing install files and checking against server... Dec 18 2023 06:59:33 webserver maldet(20714): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Dec 18 2023 06:59:33 webserver maldet(20714): {update} latest version already installed. Dec 18 2023 06:59:33 webserver maldet(20851): {sigup} performing signature update check... Dec 18 2023 06:59:33 webserver maldet(20851): {sigup} local signature set is version 202312163771611 Dec 18 2023 06:59:33 webserver maldet(20851): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Dec 18 2023 06:59:33 webserver maldet(20851): {sigup} latest signature set already installed Dec 18 2023 06:59:33 webserver maldet(20966): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Dec 18 2023 06:59:33 webserver maldet(20966): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Dec 18 2023 06:59:33 webserver maldet(20966): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Dec 18 2023 06:59:33 webserver maldet(20966): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Dec 18 2023 06:59:33 webserver maldet(20966): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Dec 18 2023 07:03:55 webserver maldet(20966): {scan} file list completed in 262s, found 210 files... Dec 18 2023 07:03:55 webserver maldet(20966): {scan} found clamav binary at /usr/bin/clamscan, using clamav scanner engine... Dec 18 2023 07:03:55 webserver maldet(20966): {scan} scan of (210 files) in progress... Dec 18 2023 07:04:23 webserver maldet(20966): {scan} clamscan returned an error, check /usr/local/maldetect/logs/clamscan_log for details! Dec 18 2023 07:04:23 webserver maldet(20966): {scan} scan completed on : files 210, malware hits 0, cleaned hits 0, time 290s Dec 18 2023 07:04:23 webserver maldet(20966): {scan} scan report saved, to view run: maldet --report 231218-0659.20966 Dec 19 2023 06:58:15 webserver maldet(8309): {update} checking for available updates... Dec 19 2023 06:58:15 webserver maldet(8309): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Dec 19 2023 06:58:15 webserver maldet(8309): {update} hashing install files and checking against server... Dec 19 2023 06:58:15 webserver maldet(8309): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Dec 19 2023 06:58:15 webserver maldet(8309): {update} latest version already installed. Dec 19 2023 06:58:15 webserver maldet(8445): {sigup} performing signature update check... Dec 19 2023 06:58:15 webserver maldet(8445): {sigup} local signature set is version 202312163771611 Dec 19 2023 06:58:15 webserver maldet(8445): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Dec 19 2023 06:58:15 webserver maldet(8445): {sigup} latest signature set already installed Dec 19 2023 06:58:15 webserver maldet(8559): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Dec 19 2023 06:58:15 webserver maldet(8559): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Dec 19 2023 06:58:15 webserver maldet(8559): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Dec 19 2023 06:58:15 webserver maldet(8559): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Dec 19 2023 06:58:15 webserver maldet(8559): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Dec 19 2023 06:58:27 webserver maldet(8559): {scan} file list completed in 12s, found 824 files... Dec 19 2023 06:58:27 webserver maldet(8559): {scan} found clamav binary at /usr/bin/clamscan, using clamav scanner engine... Dec 19 2023 06:58:27 webserver maldet(8559): {scan} scan of (824 files) in progress... Dec 19 2023 06:58:59 webserver maldet(8559): {scan} clamscan returned an error, check /usr/local/maldetect/logs/clamscan_log for details! Dec 19 2023 06:58:59 webserver maldet(8559): {scan} scan completed on : files 824, malware hits 0, cleaned hits 0, time 44s Dec 19 2023 06:58:59 webserver maldet(8559): {scan} scan report saved, to view run: maldet --report 231219-0658.8559 Dec 20 2023 07:02:05 webserver maldet(5196): {update} checking for available updates... Dec 20 2023 07:02:05 webserver maldet(5196): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Dec 20 2023 07:02:05 webserver maldet(5196): {update} hashing install files and checking against server... Dec 20 2023 07:02:05 webserver maldet(5196): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Dec 20 2023 07:02:05 webserver maldet(5196): {update} latest version already installed. Dec 20 2023 07:02:05 webserver maldet(5332): {sigup} performing signature update check... Dec 20 2023 07:02:05 webserver maldet(5332): {sigup} local signature set is version 202312163771611 Dec 20 2023 07:02:05 webserver maldet(5332): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Dec 20 2023 07:02:05 webserver maldet(5332): {sigup} new signature set 20231219386545 available Dec 20 2023 07:02:05 webserver maldet(5332): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Dec 20 2023 07:02:05 webserver maldet(5332): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Dec 20 2023 07:02:05 webserver maldet(5332): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Dec 20 2023 07:02:05 webserver maldet(5332): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Dec 20 2023 07:02:05 webserver maldet(5332): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Dec 20 2023 07:02:05 webserver maldet(5332): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Dec 20 2023 07:02:05 webserver maldet(5332): {sigup} verified md5sum of maldet-sigpack.tgz Dec 20 2023 07:02:06 webserver maldet(5332): {sigup} unpacked and installed maldet-sigpack.tgz Dec 20 2023 07:02:06 webserver maldet(5332): {sigup} verified md5sum of maldet-clean.tgz Dec 20 2023 07:02:06 webserver maldet(5332): {sigup} unpacked and installed maldet-clean.tgz Dec 20 2023 07:02:06 webserver maldet(5332): {sigup} signature set update completed Dec 20 2023 07:02:06 webserver maldet(5332): {sigup} 17637 signatures (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Dec 20 2023 07:02:06 webserver maldet(5565): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Dec 20 2023 07:02:06 webserver maldet(5565): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Dec 20 2023 07:02:06 webserver maldet(5565): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Dec 20 2023 07:02:06 webserver maldet(5565): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Dec 20 2023 07:02:06 webserver maldet(5565): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Dec 20 2023 07:02:23 webserver maldet(5565): {scan} file list completed in 17s, found 882 files... Dec 20 2023 07:02:23 webserver maldet(5565): {scan} found clamav binary at /usr/bin/clamscan, using clamav scanner engine... Dec 20 2023 07:02:23 webserver maldet(5565): {scan} scan of (882 files) in progress... Dec 20 2023 07:02:56 webserver maldet(5565): {scan} clamscan returned an error, check /usr/local/maldetect/logs/clamscan_log for details! Dec 20 2023 07:02:56 webserver maldet(5565): {scan} scan completed on : files 882, malware hits 0, cleaned hits 0, time 50s Dec 20 2023 07:02:56 webserver maldet(5565): {scan} scan report saved, to view run: maldet --report 231220-0702.5565 Dec 21 2023 07:00:31 webserver maldet(11327): {update} checking for available updates... Dec 21 2023 07:00:31 webserver maldet(11327): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Dec 21 2023 07:00:31 webserver maldet(11327): {update} hashing install files and checking against server... Dec 21 2023 07:00:31 webserver maldet(11327): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Dec 21 2023 07:00:31 webserver maldet(11327): {update} latest version already installed. Dec 21 2023 07:00:31 webserver maldet(11463): {sigup} performing signature update check... Dec 21 2023 07:00:31 webserver maldet(11463): {sigup} local signature set is version 20231219386545 Dec 21 2023 07:00:31 webserver maldet(11463): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Dec 21 2023 07:00:31 webserver maldet(11463): {sigup} latest signature set already installed Dec 21 2023 07:00:31 webserver maldet(11578): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Dec 21 2023 07:00:31 webserver maldet(11578): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Dec 21 2023 07:00:31 webserver maldet(11578): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Dec 21 2023 07:00:31 webserver maldet(11578): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Dec 21 2023 07:00:31 webserver maldet(11578): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Dec 21 2023 07:00:38 webserver maldet(11578): {scan} file list completed in 7s, found 36 files... Dec 21 2023 07:00:38 webserver maldet(11578): {scan} found clamav binary at /usr/bin/clamscan, using clamav scanner engine... Dec 21 2023 07:00:38 webserver maldet(11578): {scan} scan of (36 files) in progress... Dec 21 2023 07:01:15 webserver maldet(11578): {scan} clamscan returned an error, check /usr/local/maldetect/logs/clamscan_log for details! Dec 21 2023 07:01:15 webserver maldet(11578): {scan} scan completed on : files 36, malware hits 0, cleaned hits 0, time 44s Dec 21 2023 07:01:15 webserver maldet(11578): {scan} scan report saved, to view run: maldet --report 231221-0700.11578 Dec 22 2023 06:59:14 webserver maldet(983): {update} checking for available updates... Dec 22 2023 06:59:14 webserver maldet(983): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Dec 22 2023 06:59:14 webserver maldet(983): {update} hashing install files and checking against server... Dec 22 2023 06:59:14 webserver maldet(983): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Dec 22 2023 06:59:14 webserver maldet(983): {update} latest version already installed. Dec 22 2023 06:59:14 webserver maldet(1121): {sigup} performing signature update check... Dec 22 2023 06:59:14 webserver maldet(1121): {sigup} local signature set is version 20231219386545 Dec 22 2023 06:59:14 webserver maldet(1121): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Dec 22 2023 06:59:14 webserver maldet(1121): {sigup} latest signature set already installed Dec 22 2023 06:59:14 webserver maldet(1235): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Dec 22 2023 06:59:14 webserver maldet(1235): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Dec 22 2023 06:59:14 webserver maldet(1235): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Dec 22 2023 06:59:14 webserver maldet(1235): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Dec 22 2023 06:59:14 webserver maldet(1235): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Dec 22 2023 06:59:20 webserver maldet(1235): {scan} file list completed in 6s, found 178 files... Dec 22 2023 06:59:20 webserver maldet(1235): {scan} found clamav binary at /usr/bin/clamscan, using clamav scanner engine... Dec 22 2023 06:59:20 webserver maldet(1235): {scan} scan of (178 files) in progress... Dec 22 2023 06:59:50 webserver maldet(1235): {scan} clamscan returned an error, check /usr/local/maldetect/logs/clamscan_log for details! Dec 22 2023 06:59:50 webserver maldet(1235): {scan} scan completed on : files 178, malware hits 0, cleaned hits 0, time 36s Dec 22 2023 06:59:50 webserver maldet(1235): {scan} scan report saved, to view run: maldet --report 231222-0659.1235 Dec 23 2023 06:57:39 webserver maldet(9276): {update} checking for available updates... Dec 23 2023 06:57:39 webserver maldet(9276): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Dec 23 2023 06:57:39 webserver maldet(9276): {update} hashing install files and checking against server... Dec 23 2023 06:57:39 webserver maldet(9276): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Dec 23 2023 06:57:39 webserver maldet(9276): {update} latest version already installed. Dec 23 2023 06:57:39 webserver maldet(9412): {sigup} performing signature update check... Dec 23 2023 06:57:39 webserver maldet(9412): {sigup} local signature set is version 20231219386545 Dec 23 2023 06:57:40 webserver maldet(9412): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Dec 23 2023 06:57:40 webserver maldet(9412): {sigup} new signature set 202312221073407 available Dec 23 2023 06:57:40 webserver maldet(9412): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Dec 23 2023 06:57:40 webserver maldet(9412): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Dec 23 2023 06:57:40 webserver maldet(9412): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Dec 23 2023 06:57:40 webserver maldet(9412): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Dec 23 2023 06:57:40 webserver maldet(9412): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Dec 23 2023 06:57:40 webserver maldet(9412): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Dec 23 2023 06:57:40 webserver maldet(9412): {sigup} verified md5sum of maldet-sigpack.tgz Dec 23 2023 06:57:40 webserver maldet(9412): {sigup} unpacked and installed maldet-sigpack.tgz Dec 23 2023 06:57:40 webserver maldet(9412): {sigup} verified md5sum of maldet-clean.tgz Dec 23 2023 06:57:40 webserver maldet(9412): {sigup} unpacked and installed maldet-clean.tgz Dec 23 2023 06:57:40 webserver maldet(9412): {sigup} signature set update completed Dec 23 2023 06:57:40 webserver maldet(9412): {sigup} 17637 signatures (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Dec 23 2023 06:57:40 webserver maldet(9643): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Dec 23 2023 06:57:40 webserver maldet(9643): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Dec 23 2023 06:57:40 webserver maldet(9643): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Dec 23 2023 06:57:40 webserver maldet(9643): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Dec 23 2023 06:57:40 webserver maldet(9643): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Dec 23 2023 06:57:46 webserver maldet(9643): {scan} file list completed in 6s, found 298 files... Dec 23 2023 06:57:46 webserver maldet(9643): {scan} found clamav binary at /usr/bin/clamscan, using clamav scanner engine... Dec 23 2023 06:57:46 webserver maldet(9643): {scan} scan of (298 files) in progress... Dec 23 2023 06:58:18 webserver maldet(9643): {scan} clamscan returned an error, check /usr/local/maldetect/logs/clamscan_log for details! Dec 23 2023 06:58:18 webserver maldet(9643): {scan} scan completed on : files 298, malware hits 0, cleaned hits 0, time 38s Dec 23 2023 06:58:18 webserver maldet(9643): {scan} scan report saved, to view run: maldet --report 231223-0657.9643 Dec 24 2023 07:00:46 webserver maldet(30467): {update} checking for available updates... Dec 24 2023 07:00:46 webserver maldet(30467): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Dec 24 2023 07:00:46 webserver maldet(30467): {update} hashing install files and checking against server... Dec 24 2023 07:00:46 webserver maldet(30467): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Dec 24 2023 07:00:46 webserver maldet(30467): {update} latest version already installed. Dec 24 2023 07:00:46 webserver maldet(30603): {sigup} performing signature update check... Dec 24 2023 07:00:46 webserver maldet(30603): {sigup} local signature set is version 202312221073407 Dec 24 2023 07:00:47 webserver maldet(30603): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Dec 24 2023 07:00:47 webserver maldet(30603): {sigup} latest signature set already installed Dec 24 2023 07:00:47 webserver maldet(30718): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Dec 24 2023 07:00:47 webserver maldet(30718): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Dec 24 2023 07:00:47 webserver maldet(30718): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Dec 24 2023 07:00:47 webserver maldet(30718): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Dec 24 2023 07:00:47 webserver maldet(30718): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Dec 24 2023 07:01:34 webserver maldet(30718): {scan} file list completed in 47s, found 40 files... Dec 24 2023 07:01:34 webserver maldet(30718): {scan} found clamav binary at /usr/bin/clamscan, using clamav scanner engine... Dec 24 2023 07:01:34 webserver maldet(30718): {scan} scan of (40 files) in progress... Dec 24 2023 07:01:57 webserver maldet(30718): {scan} clamscan returned an error, check /usr/local/maldetect/logs/clamscan_log for details! Dec 24 2023 07:01:57 webserver maldet(30718): {scan} scan completed on : files 40, malware hits 0, cleaned hits 0, time 70s Dec 24 2023 07:01:57 webserver maldet(30718): {scan} scan report saved, to view run: maldet --report 231224-0700.30718 Dec 25 2023 07:00:04 webserver maldet(16495): {update} checking for available updates... Dec 25 2023 07:00:04 webserver maldet(16495): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Dec 25 2023 07:00:04 webserver maldet(16495): {update} hashing install files and checking against server... Dec 25 2023 07:00:04 webserver maldet(16495): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Dec 25 2023 07:00:04 webserver maldet(16495): {update} latest version already installed. Dec 25 2023 07:00:04 webserver maldet(16631): {sigup} performing signature update check... Dec 25 2023 07:00:04 webserver maldet(16631): {sigup} local signature set is version 202312221073407 Dec 25 2023 07:00:04 webserver maldet(16631): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Dec 25 2023 07:00:04 webserver maldet(16631): {sigup} latest signature set already installed Dec 25 2023 07:00:04 webserver maldet(16746): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Dec 25 2023 07:00:05 webserver maldet(16746): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Dec 25 2023 07:00:05 webserver maldet(16746): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Dec 25 2023 07:00:05 webserver maldet(16746): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Dec 25 2023 07:00:05 webserver maldet(16746): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Dec 25 2023 07:00:21 webserver maldet(16746): {scan} file list completed in 16s, found 334 files... Dec 25 2023 07:00:21 webserver maldet(16746): {scan} found clamav binary at /usr/bin/clamscan, using clamav scanner engine... Dec 25 2023 07:00:21 webserver maldet(16746): {scan} scan of (334 files) in progress... Dec 25 2023 07:01:13 webserver maldet(16746): {scan} scan completed on : files 334, malware hits 0, cleaned hits 0, time 69s Dec 25 2023 07:01:13 webserver maldet(16746): {scan} scan report saved, to view run: maldet --report 231225-0700.16746 Dec 26 2023 06:59:20 webserver maldet(5505): {update} checking for available updates... Dec 26 2023 06:59:20 webserver maldet(5505): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Dec 26 2023 06:59:20 webserver maldet(5505): {update} hashing install files and checking against server... Dec 26 2023 06:59:20 webserver maldet(5505): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Dec 26 2023 06:59:20 webserver maldet(5505): {update} latest version already installed. Dec 26 2023 06:59:20 webserver maldet(5641): {sigup} performing signature update check... Dec 26 2023 06:59:20 webserver maldet(5641): {sigup} local signature set is version 202312221073407 Dec 26 2023 06:59:20 webserver maldet(5641): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Dec 26 2023 06:59:20 webserver maldet(5641): {sigup} new signature set 202312251847353 available Dec 26 2023 06:59:20 webserver maldet(5641): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Dec 26 2023 06:59:21 webserver maldet(5641): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Dec 26 2023 06:59:21 webserver maldet(5641): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Dec 26 2023 06:59:21 webserver maldet(5641): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Dec 26 2023 06:59:21 webserver maldet(5641): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Dec 26 2023 06:59:21 webserver maldet(5641): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Dec 26 2023 06:59:21 webserver maldet(5641): {sigup} verified md5sum of maldet-sigpack.tgz Dec 26 2023 06:59:21 webserver maldet(5641): {sigup} unpacked and installed maldet-sigpack.tgz Dec 26 2023 06:59:21 webserver maldet(5641): {sigup} verified md5sum of maldet-clean.tgz Dec 26 2023 06:59:21 webserver maldet(5641): {sigup} unpacked and installed maldet-clean.tgz Dec 26 2023 06:59:21 webserver maldet(5641): {sigup} signature set update completed Dec 26 2023 06:59:21 webserver maldet(5641): {sigup} 17637 signatures (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Dec 26 2023 06:59:21 webserver maldet(5871): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Dec 26 2023 06:59:21 webserver maldet(5871): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Dec 26 2023 06:59:21 webserver maldet(5871): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Dec 26 2023 06:59:21 webserver maldet(5871): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Dec 26 2023 06:59:21 webserver maldet(5871): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Dec 26 2023 07:06:37 webserver maldet(5871): {scan} file list completed in 436s, found 185 files... Dec 26 2023 07:06:37 webserver maldet(5871): {scan} found clamav binary at /usr/bin/clamscan, using clamav scanner engine... Dec 26 2023 07:06:37 webserver maldet(5871): {scan} scan of (185 files) in progress... Dec 26 2023 07:07:04 webserver maldet(5871): {scan} clamscan returned an error, check /usr/local/maldetect/logs/clamscan_log for details! Dec 26 2023 07:07:04 webserver maldet(5871): {scan} scan completed on : files 185, malware hits 0, cleaned hits 0, time 463s Dec 26 2023 07:07:04 webserver maldet(5871): {scan} scan report saved, to view run: maldet --report 231226-0659.5871 Dec 27 2023 07:06:10 webserver maldet(24990): {update} checking for available updates... Dec 27 2023 07:06:10 webserver maldet(24990): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Dec 27 2023 07:06:10 webserver maldet(24990): {update} hashing install files and checking against server... Dec 27 2023 07:06:10 webserver maldet(24990): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Dec 27 2023 07:06:10 webserver maldet(24990): {update} latest version already installed. Dec 27 2023 07:06:10 webserver maldet(25129): {sigup} performing signature update check... Dec 27 2023 07:06:10 webserver maldet(25129): {sigup} local signature set is version 202312251847353 Dec 27 2023 07:06:10 webserver maldet(25129): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Dec 27 2023 07:06:10 webserver maldet(25129): {sigup} latest signature set already installed Dec 27 2023 07:06:10 webserver maldet(25245): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Dec 27 2023 07:06:10 webserver maldet(25245): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Dec 27 2023 07:06:10 webserver maldet(25245): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Dec 27 2023 07:06:10 webserver maldet(25245): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Dec 27 2023 07:06:10 webserver maldet(25245): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Dec 27 2023 07:09:40 webserver maldet(25245): {scan} file list completed in 210s, found 129 files... Dec 27 2023 07:09:40 webserver maldet(25245): {scan} found clamav binary at /usr/bin/clamscan, using clamav scanner engine... Dec 27 2023 07:09:40 webserver maldet(25245): {scan} scan of (129 files) in progress... Dec 27 2023 07:10:05 webserver maldet(25245): {scan} clamscan returned an error, check /usr/local/maldetect/logs/clamscan_log for details! Dec 27 2023 07:10:05 webserver maldet(25245): {scan} scan completed on : files 129, malware hits 0, cleaned hits 0, time 235s Dec 27 2023 07:10:05 webserver maldet(25245): {scan} scan report saved, to view run: maldet --report 231227-0706.25245 Dec 28 2023 06:57:06 webserver maldet(12792): {update} checking for available updates... Dec 28 2023 06:57:06 webserver maldet(12792): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Dec 28 2023 06:57:06 webserver maldet(12792): {update} hashing install files and checking against server... Dec 28 2023 06:57:06 webserver maldet(12792): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Dec 28 2023 06:57:06 webserver maldet(12792): {update} latest version already installed. Dec 28 2023 06:57:06 webserver maldet(12928): {sigup} performing signature update check... Dec 28 2023 06:57:06 webserver maldet(12928): {sigup} local signature set is version 202312251847353 Dec 28 2023 06:57:06 webserver maldet(12928): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Dec 28 2023 06:57:06 webserver maldet(12928): {sigup} latest signature set already installed Dec 28 2023 06:57:07 webserver maldet(13043): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Dec 28 2023 06:57:07 webserver maldet(13043): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Dec 28 2023 06:57:07 webserver maldet(13043): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Dec 28 2023 06:57:07 webserver maldet(13043): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Dec 28 2023 06:57:07 webserver maldet(13043): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Dec 28 2023 06:57:28 webserver maldet(13043): {scan} file list completed in 21s, found 332 files... Dec 28 2023 06:57:28 webserver maldet(13043): {scan} found clamav binary at /usr/bin/clamscan, using clamav scanner engine... Dec 28 2023 06:57:28 webserver maldet(13043): {scan} scan of (332 files) in progress... Dec 28 2023 06:58:17 webserver maldet(13043): {scan} clamscan returned an error, check /usr/local/maldetect/logs/clamscan_log for details! Dec 28 2023 06:58:17 webserver maldet(13043): {scan} scan completed on : files 332, malware hits 0, cleaned hits 0, time 70s Dec 28 2023 06:58:17 webserver maldet(13043): {scan} scan report saved, to view run: maldet --report 231228-0657.13043 Dec 29 2023 07:08:50 webserver maldet(31654): {update} checking for available updates... Dec 29 2023 07:08:50 webserver maldet(31654): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Dec 29 2023 07:08:50 webserver maldet(31654): {update} hashing install files and checking against server... Dec 29 2023 07:08:50 webserver maldet(31654): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Dec 29 2023 07:08:50 webserver maldet(31654): {update} latest version already installed. Dec 29 2023 07:08:50 webserver maldet(31790): {sigup} performing signature update check... Dec 29 2023 07:08:50 webserver maldet(31790): {sigup} local signature set is version 202312251847353 Dec 29 2023 07:08:50 webserver maldet(31790): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Dec 29 2023 07:08:51 webserver maldet(31790): {sigup} new signature set 20231228581253 available Dec 29 2023 07:08:51 webserver maldet(31790): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Dec 29 2023 07:08:51 webserver maldet(31790): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Dec 29 2023 07:08:51 webserver maldet(31790): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Dec 29 2023 07:08:51 webserver maldet(31790): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Dec 29 2023 07:08:51 webserver maldet(31790): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Dec 29 2023 07:08:51 webserver maldet(31790): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Dec 29 2023 07:08:51 webserver maldet(31790): {sigup} verified md5sum of maldet-sigpack.tgz Dec 29 2023 07:08:52 webserver maldet(31790): {sigup} unpacked and installed maldet-sigpack.tgz Dec 29 2023 07:08:52 webserver maldet(31790): {sigup} verified md5sum of maldet-clean.tgz Dec 29 2023 07:08:52 webserver maldet(31790): {sigup} unpacked and installed maldet-clean.tgz Dec 29 2023 07:08:52 webserver maldet(31790): {sigup} signature set update completed Dec 29 2023 07:08:52 webserver maldet(31790): {sigup} 17637 signatures (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Dec 29 2023 07:08:52 webserver maldet(32021): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Dec 29 2023 07:08:52 webserver maldet(32021): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Dec 29 2023 07:08:52 webserver maldet(32021): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Dec 29 2023 07:08:52 webserver maldet(32021): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Dec 29 2023 07:08:52 webserver maldet(32021): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Dec 29 2023 07:17:49 webserver maldet(32021): {scan} file list completed in 537s, found 286 files... Dec 29 2023 07:17:49 webserver maldet(32021): {scan} found clamav binary at /usr/bin/clamscan, using clamav scanner engine... Dec 29 2023 07:17:49 webserver maldet(32021): {scan} scan of (286 files) in progress... Dec 29 2023 07:18:28 webserver maldet(32021): {scan} clamscan returned an error, check /usr/local/maldetect/logs/clamscan_log for details! Dec 29 2023 07:18:28 webserver maldet(32021): {scan} scan completed on : files 286, malware hits 0, cleaned hits 0, time 576s Dec 29 2023 07:18:28 webserver maldet(32021): {scan} scan report saved, to view run: maldet --report 231229-0708.32021 Dec 30 2023 07:08:33 webserver maldet(21719): {update} checking for available updates... Dec 30 2023 07:08:33 webserver maldet(21719): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Dec 30 2023 07:08:33 webserver maldet(21719): {update} hashing install files and checking against server... Dec 30 2023 07:08:34 webserver maldet(21719): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Dec 30 2023 07:08:34 webserver maldet(21719): {update} latest version already installed. Dec 30 2023 07:08:34 webserver maldet(21855): {sigup} performing signature update check... Dec 30 2023 07:08:34 webserver maldet(21855): {sigup} local signature set is version 20231228581253 Dec 30 2023 07:08:34 webserver maldet(21855): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Dec 30 2023 07:08:34 webserver maldet(21855): {sigup} latest signature set already installed Dec 30 2023 07:08:34 webserver maldet(21970): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Dec 30 2023 07:08:34 webserver maldet(21970): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Dec 30 2023 07:08:34 webserver maldet(21970): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Dec 30 2023 07:08:34 webserver maldet(21970): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Dec 30 2023 07:08:34 webserver maldet(21970): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Dec 30 2023 07:11:00 webserver maldet(21970): {scan} file list completed in 146s, found 243 files... Dec 30 2023 07:11:00 webserver maldet(21970): {scan} found clamav binary at /usr/bin/clamscan, using clamav scanner engine... Dec 30 2023 07:11:00 webserver maldet(21970): {scan} scan of (243 files) in progress... Dec 30 2023 07:11:27 webserver maldet(21970): {scan} scan completed on : files 243, malware hits 0, cleaned hits 0, time 173s Dec 30 2023 07:11:27 webserver maldet(21970): {scan} scan report saved, to view run: maldet --report 231230-0708.21970 Dec 31 2023 06:58:02 webserver maldet(11592): {update} checking for available updates... Dec 31 2023 06:58:02 webserver maldet(11592): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Dec 31 2023 06:58:02 webserver maldet(11592): {update} hashing install files and checking against server... Dec 31 2023 06:58:02 webserver maldet(11592): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Dec 31 2023 06:58:02 webserver maldet(11592): {update} latest version already installed. Dec 31 2023 06:58:02 webserver maldet(11728): {sigup} performing signature update check... Dec 31 2023 06:58:02 webserver maldet(11728): {sigup} local signature set is version 20231228581253 Dec 31 2023 06:58:02 webserver maldet(11728): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Dec 31 2023 06:58:02 webserver maldet(11728): {sigup} latest signature set already installed Dec 31 2023 06:58:02 webserver maldet(11843): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Dec 31 2023 06:58:02 webserver maldet(11843): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Dec 31 2023 06:58:02 webserver maldet(11843): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Dec 31 2023 06:58:02 webserver maldet(11843): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Dec 31 2023 06:58:02 webserver maldet(11843): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Dec 31 2023 06:58:11 webserver maldet(11843): {scan} file list completed in 9s, found 28 files... Dec 31 2023 06:58:11 webserver maldet(11843): {scan} found clamav binary at /usr/bin/clamscan, using clamav scanner engine... Dec 31 2023 06:58:11 webserver maldet(11843): {scan} scan of (28 files) in progress... Dec 31 2023 06:58:38 webserver maldet(11843): {scan} clamscan returned an error, check /usr/local/maldetect/logs/clamscan_log for details! Dec 31 2023 06:58:38 webserver maldet(11843): {scan} scan completed on : files 28, malware hits 0, cleaned hits 0, time 36s Dec 31 2023 06:58:38 webserver maldet(11843): {scan} scan report saved, to view run: maldet --report 231231-0658.11843 Jan 01 2024 06:56:33 webserver maldet(28755): {update} checking for available updates... Jan 01 2024 06:56:33 webserver maldet(28755): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Jan 01 2024 06:56:33 webserver maldet(28755): {update} hashing install files and checking against server... Jan 01 2024 06:56:33 webserver maldet(28755): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Jan 01 2024 06:56:33 webserver maldet(28755): {update} latest version already installed. Jan 01 2024 06:56:33 webserver maldet(28891): {sigup} performing signature update check... Jan 01 2024 06:56:33 webserver maldet(28891): {sigup} local signature set is version 20231228581253 Jan 01 2024 06:56:33 webserver maldet(28891): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Jan 01 2024 06:56:33 webserver maldet(28891): {sigup} new signature set 202312311265487 available Jan 01 2024 06:56:33 webserver maldet(28891): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Jan 01 2024 06:56:33 webserver maldet(28891): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Jan 01 2024 06:56:33 webserver maldet(28891): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Jan 01 2024 06:56:33 webserver maldet(28891): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Jan 01 2024 06:56:33 webserver maldet(28891): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Jan 01 2024 06:56:33 webserver maldet(28891): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Jan 01 2024 06:56:33 webserver maldet(28891): {sigup} verified md5sum of maldet-sigpack.tgz Jan 01 2024 06:56:34 webserver maldet(28891): {sigup} unpacked and installed maldet-sigpack.tgz Jan 01 2024 06:56:34 webserver maldet(28891): {sigup} verified md5sum of maldet-clean.tgz Jan 01 2024 06:56:34 webserver maldet(28891): {sigup} unpacked and installed maldet-clean.tgz Jan 01 2024 06:56:34 webserver maldet(28891): {sigup} signature set update completed Jan 01 2024 06:56:34 webserver maldet(28891): {sigup} 17637 signatures (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Jan 01 2024 06:56:34 webserver maldet(29122): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Jan 01 2024 06:56:34 webserver maldet(29122): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Jan 01 2024 06:56:34 webserver maldet(29122): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Jan 01 2024 06:56:34 webserver maldet(29122): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Jan 01 2024 06:56:34 webserver maldet(29122): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Jan 01 2024 07:02:44 webserver maldet(29122): {scan} file list completed in 370s, found 226 files... Jan 01 2024 07:02:44 webserver maldet(29122): {scan} found clamav binary at /usr/bin/clamscan, using clamav scanner engine... Jan 01 2024 07:02:44 webserver maldet(29122): {scan} scan of (226 files) in progress... Jan 01 2024 07:03:11 webserver maldet(29122): {scan} scan completed on : files 226, malware hits 0, cleaned hits 0, time 397s Jan 01 2024 07:03:11 webserver maldet(29122): {scan} scan report saved, to view run: maldet --report 240101-0656.29122 Jan 02 2024 06:57:19 webserver maldet(14147): {update} checking for available updates... Jan 02 2024 06:57:19 webserver maldet(14147): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Jan 02 2024 06:57:19 webserver maldet(14147): {update} hashing install files and checking against server... Jan 02 2024 06:57:19 webserver maldet(14147): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Jan 02 2024 06:57:19 webserver maldet(14147): {update} latest version already installed. Jan 02 2024 06:57:19 webserver maldet(14283): {sigup} performing signature update check... Jan 02 2024 06:57:19 webserver maldet(14283): {sigup} local signature set is version 202312311265487 Jan 02 2024 06:57:19 webserver maldet(14283): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Jan 02 2024 06:57:19 webserver maldet(14283): {sigup} new signature set 202401011982402 available Jan 02 2024 06:57:19 webserver maldet(14283): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Jan 02 2024 06:57:19 webserver maldet(14283): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Jan 02 2024 06:57:19 webserver maldet(14283): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Jan 02 2024 06:57:19 webserver maldet(14283): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Jan 02 2024 06:57:19 webserver maldet(14283): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Jan 02 2024 06:57:19 webserver maldet(14283): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Jan 02 2024 06:57:19 webserver maldet(14283): {sigup} verified md5sum of maldet-sigpack.tgz Jan 02 2024 06:57:20 webserver maldet(14283): {sigup} unpacked and installed maldet-sigpack.tgz Jan 02 2024 06:57:20 webserver maldet(14283): {sigup} verified md5sum of maldet-clean.tgz Jan 02 2024 06:57:20 webserver maldet(14283): {sigup} unpacked and installed maldet-clean.tgz Jan 02 2024 06:57:20 webserver maldet(14283): {sigup} signature set update completed Jan 02 2024 06:57:20 webserver maldet(14283): {sigup} 17637 signatures (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Jan 02 2024 06:57:20 webserver maldet(14513): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Jan 02 2024 06:57:20 webserver maldet(14513): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Jan 02 2024 06:57:20 webserver maldet(14513): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Jan 02 2024 06:57:20 webserver maldet(14513): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Jan 02 2024 06:57:20 webserver maldet(14513): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Jan 02 2024 06:59:53 webserver maldet(14513): {scan} file list completed in 153s, found 430 files... Jan 02 2024 06:59:53 webserver maldet(14513): {scan} found clamav binary at /usr/bin/clamscan, using clamav scanner engine... Jan 02 2024 06:59:53 webserver maldet(14513): {scan} scan of (430 files) in progress... Jan 02 2024 07:00:24 webserver maldet(14513): {scan} clamscan returned an error, check /usr/local/maldetect/logs/clamscan_log for details! Jan 02 2024 07:00:24 webserver maldet(14513): {scan} scan completed on : files 430, malware hits 0, cleaned hits 0, time 184s Jan 02 2024 07:00:24 webserver maldet(14513): {scan} scan report saved, to view run: maldet --report 240102-0657.14513 Jan 03 2024 06:59:12 webserver maldet(2597): {update} checking for available updates... Jan 03 2024 06:59:12 webserver maldet(2597): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Jan 03 2024 06:59:12 webserver maldet(2597): {update} hashing install files and checking against server... Jan 03 2024 06:59:12 webserver maldet(2597): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Jan 03 2024 06:59:12 webserver maldet(2597): {update} latest version already installed. Jan 03 2024 06:59:12 webserver maldet(2733): {sigup} performing signature update check... Jan 03 2024 06:59:12 webserver maldet(2733): {sigup} local signature set is version 202401011982402 Jan 03 2024 06:59:12 webserver maldet(2733): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Jan 03 2024 06:59:13 webserver maldet(2733): {sigup} latest signature set already installed Jan 03 2024 06:59:13 webserver maldet(2847): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Jan 03 2024 06:59:13 webserver maldet(2847): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Jan 03 2024 06:59:13 webserver maldet(2847): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Jan 03 2024 06:59:13 webserver maldet(2847): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Jan 03 2024 06:59:13 webserver maldet(2847): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Jan 03 2024 07:01:50 webserver maldet(2847): {scan} file list completed in 157s, found 334 files... Jan 03 2024 07:01:50 webserver maldet(2847): {scan} found clamav binary at /usr/bin/clamscan, using clamav scanner engine... Jan 03 2024 07:01:50 webserver maldet(2847): {scan} scan of (334 files) in progress... Jan 03 2024 07:02:20 webserver maldet(2847): {scan} clamscan returned an error, check /usr/local/maldetect/logs/clamscan_log for details! Jan 03 2024 07:02:20 webserver maldet(2847): {scan} scan completed on : files 334, malware hits 0, cleaned hits 0, time 187s Jan 03 2024 07:02:20 webserver maldet(2847): {scan} scan report saved, to view run: maldet --report 240103-0659.2847 Jan 04 2024 06:58:12 webserver maldet(21020): {update} checking for available updates... Jan 04 2024 06:58:12 webserver maldet(21020): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Jan 04 2024 06:58:12 webserver maldet(21020): {update} hashing install files and checking against server... Jan 04 2024 06:58:12 webserver maldet(21020): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Jan 04 2024 06:58:12 webserver maldet(21020): {update} latest version already installed. Jan 04 2024 06:58:12 webserver maldet(21156): {sigup} performing signature update check... Jan 04 2024 06:58:12 webserver maldet(21156): {sigup} local signature set is version 202401011982402 Jan 04 2024 06:58:12 webserver maldet(21156): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Jan 04 2024 06:58:12 webserver maldet(21156): {sigup} latest signature set already installed Jan 04 2024 06:58:12 webserver maldet(21270): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Jan 04 2024 06:58:13 webserver maldet(21270): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Jan 04 2024 06:58:13 webserver maldet(21270): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Jan 04 2024 06:58:13 webserver maldet(21270): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Jan 04 2024 06:58:13 webserver maldet(21270): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Jan 04 2024 07:02:45 webserver maldet(21270): {scan} file list completed in 272s, found 6048 files... Jan 04 2024 07:02:45 webserver maldet(21270): {scan} found clamav binary at /usr/bin/clamscan, using clamav scanner engine... Jan 04 2024 07:02:45 webserver maldet(21270): {scan} scan of (6048 files) in progress... Jan 04 2024 07:05:22 webserver maldet(21270): {scan} clamscan returned an error, check /usr/local/maldetect/logs/clamscan_log for details! Jan 04 2024 07:05:22 webserver maldet(21270): {scan} scan completed on : files 6048, malware hits 0, cleaned hits 0, time 430s Jan 04 2024 07:05:22 webserver maldet(21270): {scan} scan report saved, to view run: maldet --report 240104-0658.21270 Jan 05 2024 06:56:26 webserver maldet(6122): {update} checking for available updates... Jan 05 2024 06:56:26 webserver maldet(6122): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Jan 05 2024 06:56:26 webserver maldet(6122): {update} hashing install files and checking against server... Jan 05 2024 06:56:26 webserver maldet(6122): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Jan 05 2024 06:56:26 webserver maldet(6122): {update} latest version already installed. Jan 05 2024 06:56:26 webserver maldet(6258): {sigup} performing signature update check... Jan 05 2024 06:56:26 webserver maldet(6258): {sigup} local signature set is version 202401011982402 Jan 05 2024 06:56:26 webserver maldet(6258): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Jan 05 2024 06:56:26 webserver maldet(6258): {sigup} new signature set 20240104550923 available Jan 05 2024 06:56:26 webserver maldet(6258): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Jan 05 2024 06:56:26 webserver maldet(6258): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Jan 05 2024 06:56:26 webserver maldet(6258): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Jan 05 2024 06:56:26 webserver maldet(6258): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Jan 05 2024 06:56:26 webserver maldet(6258): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Jan 05 2024 06:56:26 webserver maldet(6258): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Jan 05 2024 06:56:26 webserver maldet(6258): {sigup} verified md5sum of maldet-sigpack.tgz Jan 05 2024 06:56:26 webserver maldet(6258): {sigup} unpacked and installed maldet-sigpack.tgz Jan 05 2024 06:56:27 webserver maldet(6258): {sigup} verified md5sum of maldet-clean.tgz Jan 05 2024 06:56:27 webserver maldet(6258): {sigup} unpacked and installed maldet-clean.tgz Jan 05 2024 06:56:27 webserver maldet(6258): {sigup} signature set update completed Jan 05 2024 06:56:27 webserver maldet(6258): {sigup} 17637 signatures (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Jan 05 2024 06:56:27 webserver maldet(6489): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Jan 05 2024 06:56:27 webserver maldet(6489): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Jan 05 2024 06:56:27 webserver maldet(6489): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Jan 05 2024 06:56:27 webserver maldet(6489): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Jan 05 2024 06:56:27 webserver maldet(6489): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Jan 05 2024 07:02:58 webserver maldet(6489): {scan} file list completed in 391s, found 1057 files... Jan 05 2024 07:02:58 webserver maldet(6489): {scan} found clamav binary at /usr/bin/clamscan, using clamav scanner engine... Jan 05 2024 07:02:58 webserver maldet(6489): {scan} scan of (1057 files) in progress... Jan 05 2024 07:03:40 webserver maldet(6489): {scan} clamscan returned an error, check /usr/local/maldetect/logs/clamscan_log for details! Jan 05 2024 07:03:40 webserver maldet(6489): {scan} scan completed on : files 1057, malware hits 0, cleaned hits 0, time 433s Jan 05 2024 07:03:40 webserver maldet(6489): {scan} scan report saved, to view run: maldet --report 240105-0656.6489 Jan 06 2024 07:05:37 webserver maldet(27508): {update} checking for available updates... Jan 06 2024 07:05:37 webserver maldet(27508): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Jan 06 2024 07:05:37 webserver maldet(27508): {update} hashing install files and checking against server... Jan 06 2024 07:05:37 webserver maldet(27508): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Jan 06 2024 07:05:37 webserver maldet(27508): {update} latest version already installed. Jan 06 2024 07:05:37 webserver maldet(27644): {sigup} performing signature update check... Jan 06 2024 07:05:37 webserver maldet(27644): {sigup} local signature set is version 20240104550923 Jan 06 2024 07:05:37 webserver maldet(27644): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Jan 06 2024 07:05:37 webserver maldet(27644): {sigup} latest signature set already installed Jan 06 2024 07:05:37 webserver maldet(27759): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Jan 06 2024 07:05:38 webserver maldet(27759): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Jan 06 2024 07:05:38 webserver maldet(27759): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Jan 06 2024 07:05:38 webserver maldet(27759): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Jan 06 2024 07:05:38 webserver maldet(27759): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Jan 06 2024 07:10:52 webserver maldet(27759): {scan} file list completed in 314s, found 196 files... Jan 06 2024 07:10:52 webserver maldet(27759): {scan} found clamav binary at /usr/bin/clamscan, using clamav scanner engine... Jan 06 2024 07:10:52 webserver maldet(27759): {scan} scan of (196 files) in progress... Jan 06 2024 07:11:24 webserver maldet(27759): {scan} clamscan returned an error, check /usr/local/maldetect/logs/clamscan_log for details! Jan 06 2024 07:11:24 webserver maldet(27759): {scan} scan completed on : files 196, malware hits 0, cleaned hits 0, time 347s Jan 06 2024 07:11:24 webserver maldet(27759): {scan} scan report saved, to view run: maldet --report 240106-0705.27759 Jan 07 2024 06:57:40 webserver maldet(28251): {update} checking for available updates... Jan 07 2024 06:57:40 webserver maldet(28251): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Jan 07 2024 06:57:40 webserver maldet(28251): {update} hashing install files and checking against server... Jan 07 2024 06:57:40 webserver maldet(28251): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Jan 07 2024 06:57:40 webserver maldet(28251): {update} latest version already installed. Jan 07 2024 06:57:40 webserver maldet(28387): {sigup} performing signature update check... Jan 07 2024 06:57:40 webserver maldet(28387): {sigup} local signature set is version 20240104550923 Jan 07 2024 06:57:40 webserver maldet(28387): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Jan 07 2024 06:57:40 webserver maldet(28387): {sigup} latest signature set already installed Jan 07 2024 06:57:40 webserver maldet(28502): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Jan 07 2024 06:57:40 webserver maldet(28502): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Jan 07 2024 06:57:40 webserver maldet(28502): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Jan 07 2024 06:57:40 webserver maldet(28502): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Jan 07 2024 06:57:40 webserver maldet(28502): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Jan 07 2024 07:00:18 webserver maldet(28502): {scan} file list completed in 158s, found 165 files... Jan 07 2024 07:00:18 webserver maldet(28502): {scan} found clamav binary at /usr/bin/clamscan, using clamav scanner engine... Jan 07 2024 07:00:18 webserver maldet(28502): {scan} scan of (165 files) in progress... Jan 07 2024 07:00:56 webserver maldet(28502): {scan} clamscan returned an error, check /usr/local/maldetect/logs/clamscan_log for details! Jan 07 2024 07:00:56 webserver maldet(28502): {scan} scan completed on : files 165, malware hits 0, cleaned hits 0, time 196s Jan 07 2024 07:00:56 webserver maldet(28502): {scan} scan report saved, to view run: maldet --report 240107-0657.28502 Jan 08 2024 06:57:24 webserver maldet(18625): {update} checking for available updates... Jan 08 2024 06:57:24 webserver maldet(18625): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Jan 08 2024 06:57:24 webserver maldet(18625): {update} hashing install files and checking against server... Jan 08 2024 06:57:24 webserver maldet(18625): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Jan 08 2024 06:57:24 webserver maldet(18625): {update} latest version already installed. Jan 08 2024 06:57:24 webserver maldet(18761): {sigup} performing signature update check... Jan 08 2024 06:57:24 webserver maldet(18761): {sigup} local signature set is version 20240104550923 Jan 08 2024 06:57:24 webserver maldet(18761): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Jan 08 2024 06:57:24 webserver maldet(18761): {sigup} new signature set 202401071304692 available Jan 08 2024 06:57:24 webserver maldet(18761): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Jan 08 2024 06:57:25 webserver maldet(18761): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Jan 08 2024 06:57:25 webserver maldet(18761): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Jan 08 2024 06:57:25 webserver maldet(18761): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Jan 08 2024 06:57:25 webserver maldet(18761): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Jan 08 2024 06:57:25 webserver maldet(18761): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Jan 08 2024 06:57:25 webserver maldet(18761): {sigup} verified md5sum of maldet-sigpack.tgz Jan 08 2024 06:57:25 webserver maldet(18761): {sigup} unpacked and installed maldet-sigpack.tgz Jan 08 2024 06:57:25 webserver maldet(18761): {sigup} verified md5sum of maldet-clean.tgz Jan 08 2024 06:57:25 webserver maldet(18761): {sigup} unpacked and installed maldet-clean.tgz Jan 08 2024 06:57:25 webserver maldet(18761): {sigup} signature set update completed Jan 08 2024 06:57:25 webserver maldet(18761): {sigup} 17637 signatures (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Jan 08 2024 06:57:25 webserver maldet(18992): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Jan 08 2024 06:57:25 webserver maldet(18992): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Jan 08 2024 06:57:25 webserver maldet(18992): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Jan 08 2024 06:57:25 webserver maldet(18992): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Jan 08 2024 06:57:25 webserver maldet(18992): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Jan 08 2024 06:59:54 webserver maldet(18992): {scan} file list completed in 149s, found 195 files... Jan 08 2024 06:59:54 webserver maldet(18992): {scan} found clamav binary at /usr/bin/clamscan, using clamav scanner engine... Jan 08 2024 06:59:54 webserver maldet(18992): {scan} scan of (195 files) in progress... Jan 08 2024 07:00:42 webserver maldet(18992): {scan} clamscan returned an error, check /usr/local/maldetect/logs/clamscan_log for details! Jan 08 2024 07:00:42 webserver maldet(18992): {scan} scan completed on : files 195, malware hits 0, cleaned hits 0, time 197s Jan 08 2024 07:00:42 webserver maldet(18992): {scan} scan report saved, to view run: maldet --report 240108-0657.18992 Jan 09 2024 06:58:47 webserver maldet(7342): {update} checking for available updates... Jan 09 2024 06:58:47 webserver maldet(7342): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Jan 09 2024 06:58:47 webserver maldet(7342): {update} hashing install files and checking against server... Jan 09 2024 06:58:47 webserver maldet(7342): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Jan 09 2024 06:58:47 webserver maldet(7342): {update} latest version already installed. Jan 09 2024 06:58:47 webserver maldet(7478): {sigup} performing signature update check... Jan 09 2024 06:58:47 webserver maldet(7478): {sigup} local signature set is version 202401071304692 Jan 09 2024 06:58:47 webserver maldet(7478): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Jan 09 2024 06:58:47 webserver maldet(7478): {sigup} latest signature set already installed Jan 09 2024 06:58:47 webserver maldet(7593): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Jan 09 2024 06:58:47 webserver maldet(7593): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Jan 09 2024 06:58:47 webserver maldet(7593): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Jan 09 2024 06:58:47 webserver maldet(7593): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Jan 09 2024 06:58:47 webserver maldet(7593): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Jan 09 2024 07:01:18 webserver maldet(7593): {scan} file list completed in 151s, found 238 files... Jan 09 2024 07:01:18 webserver maldet(7593): {scan} found clamav binary at /usr/bin/clamscan, using clamav scanner engine... Jan 09 2024 07:01:18 webserver maldet(7593): {scan} scan of (238 files) in progress... Jan 09 2024 07:01:46 webserver maldet(7593): {scan} scan completed on : files 238, malware hits 0, cleaned hits 0, time 179s Jan 09 2024 07:01:46 webserver maldet(7593): {scan} scan report saved, to view run: maldet --report 240109-0658.7593 Jan 10 2024 06:56:53 webserver maldet(25424): {update} checking for available updates... Jan 10 2024 06:56:53 webserver maldet(25424): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Jan 10 2024 06:56:53 webserver maldet(25424): {update} hashing install files and checking against server... Jan 10 2024 06:56:53 webserver maldet(25424): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Jan 10 2024 06:56:53 webserver maldet(25424): {update} latest version already installed. Jan 10 2024 06:56:53 webserver maldet(25560): {sigup} performing signature update check... Jan 10 2024 06:56:53 webserver maldet(25560): {sigup} local signature set is version 202401071304692 Jan 10 2024 06:56:53 webserver maldet(25560): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Jan 10 2024 06:56:53 webserver maldet(25560): {sigup} latest signature set already installed Jan 10 2024 06:56:53 webserver maldet(25675): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Jan 10 2024 06:56:54 webserver maldet(25675): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Jan 10 2024 06:56:54 webserver maldet(25675): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Jan 10 2024 06:56:54 webserver maldet(25675): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Jan 10 2024 06:56:54 webserver maldet(25675): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Jan 10 2024 07:01:10 webserver maldet(25675): {scan} file list completed in 256s, found 263 files... Jan 10 2024 07:01:10 webserver maldet(25675): {scan} found clamav binary at /usr/bin/clamscan, using clamav scanner engine... Jan 10 2024 07:01:10 webserver maldet(25675): {scan} scan of (263 files) in progress... Jan 10 2024 07:01:37 webserver maldet(25675): {scan} clamscan returned an error, check /usr/local/maldetect/logs/clamscan_log for details! Jan 10 2024 07:01:37 webserver maldet(25675): {scan} scan completed on : files 263, malware hits 0, cleaned hits 0, time 284s Jan 10 2024 07:01:37 webserver maldet(25675): {scan} scan report saved, to view run: maldet --report 240110-0656.25675 Jan 11 2024 06:56:52 webserver maldet(12810): {update} checking for available updates... Jan 11 2024 06:56:52 webserver maldet(12810): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Jan 11 2024 06:56:52 webserver maldet(12810): {update} hashing install files and checking against server... Jan 11 2024 06:56:52 webserver maldet(12810): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Jan 11 2024 06:56:52 webserver maldet(12810): {update} latest version already installed. Jan 11 2024 06:56:52 webserver maldet(12948): {sigup} performing signature update check... Jan 11 2024 06:56:52 webserver maldet(12948): {sigup} local signature set is version 202401071304692 Jan 11 2024 06:56:52 webserver maldet(12948): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Jan 11 2024 06:56:52 webserver maldet(12948): {sigup} new signature set 20240110509839 available Jan 11 2024 06:56:52 webserver maldet(12948): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Jan 11 2024 06:56:52 webserver maldet(12948): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Jan 11 2024 06:56:52 webserver maldet(12948): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Jan 11 2024 06:56:52 webserver maldet(12948): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Jan 11 2024 06:56:52 webserver maldet(12948): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Jan 11 2024 06:56:52 webserver maldet(12948): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Jan 11 2024 06:56:52 webserver maldet(12948): {sigup} verified md5sum of maldet-sigpack.tgz Jan 11 2024 06:56:53 webserver maldet(12948): {sigup} unpacked and installed maldet-sigpack.tgz Jan 11 2024 06:56:53 webserver maldet(12948): {sigup} verified md5sum of maldet-clean.tgz Jan 11 2024 06:56:53 webserver maldet(12948): {sigup} unpacked and installed maldet-clean.tgz Jan 11 2024 06:56:53 webserver maldet(12948): {sigup} signature set update completed Jan 11 2024 06:56:53 webserver maldet(12948): {sigup} 17637 signatures (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Jan 11 2024 06:56:53 webserver maldet(13181): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Jan 11 2024 06:56:53 webserver maldet(13181): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Jan 11 2024 06:56:53 webserver maldet(13181): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Jan 11 2024 06:56:53 webserver maldet(13181): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Jan 11 2024 06:56:53 webserver maldet(13181): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Jan 11 2024 07:07:41 webserver maldet(13181): {scan} file list completed in 647s, found 203 files... Jan 11 2024 07:07:41 webserver maldet(13181): {scan} found clamav binary at /usr/bin/clamscan, using clamav scanner engine... Jan 11 2024 07:07:41 webserver maldet(13181): {scan} scan of (203 files) in progress... Jan 11 2024 07:08:22 webserver maldet(13181): {scan} clamscan returned an error, check /usr/local/maldetect/logs/clamscan_log for details! Jan 11 2024 07:08:22 webserver maldet(13181): {scan} scan completed on : files 203, malware hits 0, cleaned hits 0, time 689s Jan 11 2024 07:08:22 webserver maldet(13181): {scan} scan report saved, to view run: maldet --report 240111-0656.13181 Jan 12 2024 07:08:58 webserver maldet(32096): {update} checking for available updates... Jan 12 2024 07:08:58 webserver maldet(32096): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Jan 12 2024 07:08:58 webserver maldet(32096): {update} hashing install files and checking against server... Jan 12 2024 07:08:58 webserver maldet(32096): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Jan 12 2024 07:08:58 webserver maldet(32096): {update} latest version already installed. Jan 12 2024 07:08:58 webserver maldet(32232): {sigup} performing signature update check... Jan 12 2024 07:08:58 webserver maldet(32232): {sigup} local signature set is version 20240110509839 Jan 12 2024 07:08:59 webserver maldet(32232): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Jan 12 2024 07:08:59 webserver maldet(32232): {sigup} latest signature set already installed Jan 12 2024 07:08:59 webserver maldet(32347): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Jan 12 2024 07:09:00 webserver maldet(32347): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Jan 12 2024 07:09:00 webserver maldet(32347): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Jan 12 2024 07:09:00 webserver maldet(32347): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Jan 12 2024 07:09:00 webserver maldet(32347): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Jan 12 2024 07:16:27 webserver maldet(32347): {scan} file list completed in 446s, found 245 files... Jan 12 2024 07:16:27 webserver maldet(32347): {scan} found clamav binary at /usr/bin/clamscan, using clamav scanner engine... Jan 12 2024 07:16:27 webserver maldet(32347): {scan} scan of (245 files) in progress... Jan 12 2024 07:17:01 webserver maldet(32347): {scan} clamscan returned an error, check /usr/local/maldetect/logs/clamscan_log for details! Jan 12 2024 07:17:01 webserver maldet(32347): {scan} scan completed on : files 245, malware hits 0, cleaned hits 0, time 482s Jan 12 2024 07:17:01 webserver maldet(32347): {scan} scan report saved, to view run: maldet --report 240112-0708.32347 Jan 13 2024 06:57:12 webserver maldet(17594): {update} checking for available updates... Jan 13 2024 06:57:12 webserver maldet(17594): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Jan 13 2024 06:57:12 webserver maldet(17594): {update} hashing install files and checking against server... Jan 13 2024 06:57:12 webserver maldet(17594): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Jan 13 2024 06:57:12 webserver maldet(17594): {update} latest version already installed. Jan 13 2024 06:57:12 webserver maldet(17730): {sigup} performing signature update check... Jan 13 2024 06:57:12 webserver maldet(17730): {sigup} local signature set is version 20240110509839 Jan 13 2024 06:57:12 webserver maldet(17730): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Jan 13 2024 06:57:12 webserver maldet(17730): {sigup} latest signature set already installed Jan 13 2024 06:57:12 webserver maldet(17844): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Jan 13 2024 06:57:12 webserver maldet(17844): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Jan 13 2024 06:57:12 webserver maldet(17844): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Jan 13 2024 06:57:12 webserver maldet(17844): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Jan 13 2024 06:57:12 webserver maldet(17844): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Jan 13 2024 06:59:41 webserver maldet(17844): {scan} file list completed in 149s, found 298 files... Jan 13 2024 06:59:41 webserver maldet(17844): {scan} found clamav binary at /usr/bin/clamscan, using clamav scanner engine... Jan 13 2024 06:59:41 webserver maldet(17844): {scan} scan of (298 files) in progress... Jan 13 2024 07:00:21 webserver maldet(17844): {scan} clamscan returned an error, check /usr/local/maldetect/logs/clamscan_log for details! Jan 13 2024 07:00:21 webserver maldet(17844): {scan} scan completed on : files 298, malware hits 0, cleaned hits 0, time 189s Jan 13 2024 07:00:21 webserver maldet(17844): {scan} scan report saved, to view run: maldet --report 240113-0657.17844 Jan 14 2024 06:57:39 webserver maldet(4930): {update} checking for available updates... Jan 14 2024 06:57:39 webserver maldet(4930): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Jan 14 2024 06:57:39 webserver maldet(4930): {update} hashing install files and checking against server... Jan 14 2024 06:57:39 webserver maldet(4930): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Jan 14 2024 06:57:39 webserver maldet(4930): {update} latest version already installed. Jan 14 2024 06:57:39 webserver maldet(5066): {sigup} performing signature update check... Jan 14 2024 06:57:39 webserver maldet(5066): {sigup} local signature set is version 20240110509839 Jan 14 2024 06:57:39 webserver maldet(5066): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Jan 14 2024 06:57:39 webserver maldet(5066): {sigup} new signature set 202401131274233 available Jan 14 2024 06:57:39 webserver maldet(5066): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Jan 14 2024 06:57:39 webserver maldet(5066): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Jan 14 2024 06:57:39 webserver maldet(5066): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Jan 14 2024 06:57:39 webserver maldet(5066): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Jan 14 2024 06:57:39 webserver maldet(5066): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Jan 14 2024 06:57:39 webserver maldet(5066): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Jan 14 2024 06:57:39 webserver maldet(5066): {sigup} verified md5sum of maldet-sigpack.tgz Jan 14 2024 06:57:39 webserver maldet(5066): {sigup} unpacked and installed maldet-sigpack.tgz Jan 14 2024 06:57:40 webserver maldet(5066): {sigup} verified md5sum of maldet-clean.tgz Jan 14 2024 06:57:40 webserver maldet(5066): {sigup} unpacked and installed maldet-clean.tgz Jan 14 2024 06:57:40 webserver maldet(5066): {sigup} signature set update completed Jan 14 2024 06:57:40 webserver maldet(5066): {sigup} 17637 signatures (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Jan 14 2024 06:57:40 webserver maldet(5297): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Jan 14 2024 06:57:40 webserver maldet(5297): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Jan 14 2024 06:57:40 webserver maldet(5297): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Jan 14 2024 06:57:40 webserver maldet(5297): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Jan 14 2024 06:57:40 webserver maldet(5297): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Jan 14 2024 07:07:05 webserver maldet(5297): {scan} file list completed in 565s, found 477 files... Jan 14 2024 07:07:05 webserver maldet(5297): {scan} found clamav binary at /usr/bin/clamscan, using clamav scanner engine... Jan 14 2024 07:07:05 webserver maldet(5297): {scan} scan of (477 files) in progress... Jan 14 2024 07:07:41 webserver maldet(5297): {scan} clamscan returned an error, check /usr/local/maldetect/logs/clamscan_log for details! Jan 14 2024 07:07:42 webserver maldet(5297): {scan} scan completed on : files 477, malware hits 0, cleaned hits 0, time 602s Jan 14 2024 07:07:42 webserver maldet(5297): {scan} scan report saved, to view run: maldet --report 240114-0657.5297 Jan 15 2024 07:10:06 webserver maldet(29439): {update} checking for available updates... Jan 15 2024 07:10:06 webserver maldet(29439): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Jan 15 2024 07:10:06 webserver maldet(29439): {update} hashing install files and checking against server... Jan 15 2024 07:10:06 webserver maldet(29439): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Jan 15 2024 07:10:06 webserver maldet(29439): {update} latest version already installed. Jan 15 2024 07:10:06 webserver maldet(29575): {sigup} performing signature update check... Jan 15 2024 07:10:06 webserver maldet(29575): {sigup} local signature set is version 202401131274233 Jan 15 2024 07:10:06 webserver maldet(29575): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Jan 15 2024 07:10:06 webserver maldet(29575): {sigup} latest signature set already installed Jan 15 2024 07:10:07 webserver maldet(29690): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Jan 15 2024 07:10:07 webserver maldet(29690): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Jan 15 2024 07:10:07 webserver maldet(29690): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Jan 15 2024 07:10:07 webserver maldet(29690): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Jan 15 2024 07:10:07 webserver maldet(29690): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Jan 15 2024 07:12:35 webserver maldet(29690): {scan} file list completed in 148s, found 281 files... Jan 15 2024 07:12:35 webserver maldet(29690): {scan} found clamav binary at /usr/bin/clamscan, using clamav scanner engine... Jan 15 2024 07:12:35 webserver maldet(29690): {scan} scan of (281 files) in progress... Jan 15 2024 07:13:00 webserver maldet(29690): {scan} clamscan returned an error, check /usr/local/maldetect/logs/clamscan_log for details! Jan 15 2024 07:13:00 webserver maldet(29690): {scan} scan completed on : files 281, malware hits 0, cleaned hits 0, time 173s Jan 15 2024 07:13:00 webserver maldet(29690): {scan} scan report saved, to view run: maldet --report 240115-0710.29690 Jan 16 2024 06:57:12 webserver maldet(14037): {update} checking for available updates... Jan 16 2024 06:57:12 webserver maldet(14037): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Jan 16 2024 06:57:12 webserver maldet(14037): {update} hashing install files and checking against server... Jan 16 2024 06:57:12 webserver maldet(14037): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Jan 16 2024 06:57:12 webserver maldet(14037): {update} latest version already installed. Jan 16 2024 06:57:12 webserver maldet(14173): {sigup} performing signature update check... Jan 16 2024 06:57:12 webserver maldet(14173): {sigup} local signature set is version 202401131274233 Jan 16 2024 06:57:12 webserver maldet(14173): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Jan 16 2024 06:57:12 webserver maldet(14173): {sigup} latest signature set already installed Jan 16 2024 06:57:12 webserver maldet(14287): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Jan 16 2024 06:57:13 webserver maldet(14287): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Jan 16 2024 06:57:13 webserver maldet(14287): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Jan 16 2024 06:57:13 webserver maldet(14287): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Jan 16 2024 06:57:13 webserver maldet(14287): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Jan 16 2024 07:09:06 webserver maldet(14287): {scan} file list completed in 712s, found 198 files... Jan 16 2024 07:09:06 webserver maldet(14287): {scan} found clamav binary at /usr/bin/clamscan, using clamav scanner engine... Jan 16 2024 07:09:06 webserver maldet(14287): {scan} scan of (198 files) in progress... Jan 16 2024 07:09:36 webserver maldet(14287): {scan} clamscan returned an error, check /usr/local/maldetect/logs/clamscan_log for details! Jan 16 2024 07:09:36 webserver maldet(14287): {scan} scan completed on : files 198, malware hits 0, cleaned hits 0, time 744s Jan 16 2024 07:09:36 webserver maldet(14287): {scan} scan report saved, to view run: maldet --report 240116-0657.14287 Jan 17 2024 06:59:28 webserver maldet(31051): {update} checking for available updates... Jan 17 2024 06:59:28 webserver maldet(31051): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Jan 17 2024 06:59:28 webserver maldet(31051): {update} hashing install files and checking against server... Jan 17 2024 06:59:28 webserver maldet(31051): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Jan 17 2024 06:59:28 webserver maldet(31051): {update} latest version already installed. Jan 17 2024 06:59:29 webserver maldet(31188): {sigup} performing signature update check... Jan 17 2024 06:59:29 webserver maldet(31188): {sigup} local signature set is version 202401131274233 Jan 17 2024 06:59:29 webserver maldet(31188): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Jan 17 2024 06:59:29 webserver maldet(31188): {sigup} new signature set 202401162031221 available Jan 17 2024 06:59:29 webserver maldet(31188): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Jan 17 2024 06:59:29 webserver maldet(31188): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Jan 17 2024 06:59:29 webserver maldet(31188): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Jan 17 2024 06:59:29 webserver maldet(31188): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Jan 17 2024 06:59:29 webserver maldet(31188): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Jan 17 2024 06:59:29 webserver maldet(31188): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Jan 17 2024 06:59:29 webserver maldet(31188): {sigup} verified md5sum of maldet-sigpack.tgz Jan 17 2024 06:59:29 webserver maldet(31188): {sigup} unpacked and installed maldet-sigpack.tgz Jan 17 2024 06:59:29 webserver maldet(31188): {sigup} verified md5sum of maldet-clean.tgz Jan 17 2024 06:59:29 webserver maldet(31188): {sigup} unpacked and installed maldet-clean.tgz Jan 17 2024 06:59:29 webserver maldet(31188): {sigup} signature set update completed Jan 17 2024 06:59:29 webserver maldet(31188): {sigup} 17637 signatures (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Jan 17 2024 06:59:29 webserver maldet(31419): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Jan 17 2024 06:59:30 webserver maldet(31419): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Jan 17 2024 06:59:30 webserver maldet(31419): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Jan 17 2024 06:59:30 webserver maldet(31419): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Jan 17 2024 06:59:30 webserver maldet(31419): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Jan 17 2024 07:02:05 webserver maldet(31419): {scan} file list completed in 155s, found 307 files... Jan 17 2024 07:02:05 webserver maldet(31419): {scan} found clamav binary at /usr/bin/clamscan, using clamav scanner engine... Jan 17 2024 07:02:05 webserver maldet(31419): {scan} scan of (307 files) in progress... Jan 17 2024 07:02:30 webserver maldet(31419): {scan} clamscan returned an error, check /usr/local/maldetect/logs/clamscan_log for details! Jan 17 2024 07:02:30 webserver maldet(31419): {scan} scan completed on : files 307, malware hits 0, cleaned hits 0, time 181s Jan 17 2024 07:02:30 webserver maldet(31419): {scan} scan report saved, to view run: maldet --report 240117-0659.31419 Jan 18 2024 06:56:01 webserver maldet(18627): {update} checking for available updates... Jan 18 2024 06:56:01 webserver maldet(18627): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Jan 18 2024 06:56:01 webserver maldet(18627): {update} hashing install files and checking against server... Jan 18 2024 06:56:01 webserver maldet(18627): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Jan 18 2024 06:56:01 webserver maldet(18627): {update} latest version already installed. Jan 18 2024 06:56:02 webserver maldet(18763): {sigup} performing signature update check... Jan 18 2024 06:56:02 webserver maldet(18763): {sigup} local signature set is version 202401162031221 Jan 18 2024 06:56:02 webserver maldet(18763): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Jan 18 2024 06:56:02 webserver maldet(18763): {sigup} latest signature set already installed Jan 18 2024 06:56:02 webserver maldet(18878): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Jan 18 2024 06:56:02 webserver maldet(18878): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Jan 18 2024 06:56:02 webserver maldet(18878): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Jan 18 2024 06:56:02 webserver maldet(18878): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Jan 18 2024 06:56:02 webserver maldet(18878): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Jan 18 2024 06:56:19 webserver maldet(18878): {scan} file list completed in 17s, found 249 files... Jan 18 2024 06:56:19 webserver maldet(18878): {scan} found clamav binary at /usr/bin/clamscan, using clamav scanner engine... Jan 18 2024 06:56:19 webserver maldet(18878): {scan} scan of (249 files) in progress... Jan 18 2024 06:56:42 webserver maldet(18878): {scan} clamscan returned an error, check /usr/local/maldetect/logs/clamscan_log for details! Jan 18 2024 06:56:42 webserver maldet(18878): {scan} scan completed on : files 249, malware hits 0, cleaned hits 0, time 40s Jan 18 2024 06:56:42 webserver maldet(18878): {scan} scan report saved, to view run: maldet --report 240118-0656.18878 Jan 19 2024 06:57:37 webserver maldet(3596): {update} checking for available updates... Jan 19 2024 06:57:37 webserver maldet(3596): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Jan 19 2024 06:57:37 webserver maldet(3596): {update} hashing install files and checking against server... Jan 19 2024 06:57:37 webserver maldet(3596): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Jan 19 2024 06:57:37 webserver maldet(3596): {update} latest version already installed. Jan 19 2024 06:57:37 webserver maldet(3732): {sigup} performing signature update check... Jan 19 2024 06:57:37 webserver maldet(3732): {sigup} local signature set is version 202401162031221 Jan 19 2024 06:57:37 webserver maldet(3732): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Jan 19 2024 06:57:37 webserver maldet(3732): {sigup} latest signature set already installed Jan 19 2024 06:57:37 webserver maldet(3847): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Jan 19 2024 06:57:37 webserver maldet(3847): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Jan 19 2024 06:57:37 webserver maldet(3847): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Jan 19 2024 06:57:37 webserver maldet(3847): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Jan 19 2024 06:57:37 webserver maldet(3847): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Jan 19 2024 06:57:42 webserver maldet(3847): {scan} file list completed in 5s, found 195 files... Jan 19 2024 06:57:42 webserver maldet(3847): {scan} found clamav binary at /usr/bin/clamscan, using clamav scanner engine... Jan 19 2024 06:57:42 webserver maldet(3847): {scan} scan of (195 files) in progress... Jan 19 2024 06:58:05 webserver maldet(3847): {scan} scan completed on : files 195, malware hits 0, cleaned hits 0, time 28s Jan 19 2024 06:58:05 webserver maldet(3847): {scan} scan report saved, to view run: maldet --report 240119-0657.3847 Jan 20 2024 07:08:06 webserver maldet(22653): {update} checking for available updates... Jan 20 2024 07:08:06 webserver maldet(22653): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Jan 20 2024 07:08:06 webserver maldet(22653): {update} hashing install files and checking against server... Jan 20 2024 07:08:06 webserver maldet(22653): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Jan 20 2024 07:08:06 webserver maldet(22653): {update} latest version already installed. Jan 20 2024 07:08:06 webserver maldet(22789): {sigup} performing signature update check... Jan 20 2024 07:08:06 webserver maldet(22789): {sigup} local signature set is version 202401162031221 Jan 20 2024 07:08:06 webserver maldet(22789): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Jan 20 2024 07:08:06 webserver maldet(22789): {sigup} new signature set 202401192782461 available Jan 20 2024 07:08:06 webserver maldet(22789): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Jan 20 2024 07:08:06 webserver maldet(22789): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Jan 20 2024 07:08:06 webserver maldet(22789): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Jan 20 2024 07:08:06 webserver maldet(22789): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Jan 20 2024 07:08:06 webserver maldet(22789): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Jan 20 2024 07:08:06 webserver maldet(22789): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Jan 20 2024 07:08:06 webserver maldet(22789): {sigup} verified md5sum of maldet-sigpack.tgz Jan 20 2024 07:08:07 webserver maldet(22789): {sigup} unpacked and installed maldet-sigpack.tgz Jan 20 2024 07:08:07 webserver maldet(22789): {sigup} verified md5sum of maldet-clean.tgz Jan 20 2024 07:08:07 webserver maldet(22789): {sigup} unpacked and installed maldet-clean.tgz Jan 20 2024 07:08:07 webserver maldet(22789): {sigup} signature set update completed Jan 20 2024 07:08:07 webserver maldet(22789): {sigup} 17637 signatures (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Jan 20 2024 07:08:07 webserver maldet(23020): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Jan 20 2024 07:08:07 webserver maldet(23020): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Jan 20 2024 07:08:07 webserver maldet(23020): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Jan 20 2024 07:08:07 webserver maldet(23020): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Jan 20 2024 07:08:07 webserver maldet(23020): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Jan 20 2024 07:16:48 webserver maldet(23020): {scan} file list completed in 521s, found 438 files... Jan 20 2024 07:16:48 webserver maldet(23020): {scan} found clamav binary at /usr/bin/clamscan, using clamav scanner engine... Jan 20 2024 07:16:48 webserver maldet(23020): {scan} scan of (438 files) in progress... Jan 20 2024 07:17:16 webserver maldet(23020): {scan} clamscan returned an error, check /usr/local/maldetect/logs/clamscan_log for details! Jan 20 2024 07:17:16 webserver maldet(23020): {scan} scan completed on : files 438, malware hits 0, cleaned hits 0, time 549s Jan 20 2024 07:17:16 webserver maldet(23020): {scan} scan report saved, to view run: maldet --report 240120-0708.23020 Jan 21 2024 06:57:16 webserver maldet(8312): {update} checking for available updates... Jan 21 2024 06:57:16 webserver maldet(8312): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Jan 21 2024 06:57:16 webserver maldet(8312): {update} hashing install files and checking against server... Jan 21 2024 06:57:16 webserver maldet(8312): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Jan 21 2024 06:57:16 webserver maldet(8312): {update} latest version already installed. Jan 21 2024 06:57:16 webserver maldet(8448): {sigup} performing signature update check... Jan 21 2024 06:57:16 webserver maldet(8448): {sigup} local signature set is version 202401192782461 Jan 21 2024 06:57:16 webserver maldet(8448): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Jan 21 2024 06:57:16 webserver maldet(8448): {sigup} latest signature set already installed Jan 21 2024 06:57:16 webserver maldet(8563): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Jan 21 2024 06:57:16 webserver maldet(8563): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Jan 21 2024 06:57:16 webserver maldet(8563): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Jan 21 2024 06:57:16 webserver maldet(8563): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Jan 21 2024 06:57:16 webserver maldet(8563): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Jan 21 2024 06:59:44 webserver maldet(8563): {scan} file list completed in 148s, found 726 files... Jan 21 2024 06:59:44 webserver maldet(8563): {scan} found clamav binary at /usr/bin/clamscan, using clamav scanner engine... Jan 21 2024 06:59:44 webserver maldet(8563): {scan} scan of (726 files) in progress... Jan 21 2024 07:00:16 webserver maldet(8563): {scan} clamscan returned an error, check /usr/local/maldetect/logs/clamscan_log for details! Jan 21 2024 07:00:16 webserver maldet(8563): {scan} scan completed on : files 726, malware hits 0, cleaned hits 0, time 180s Jan 21 2024 07:00:16 webserver maldet(8563): {scan} scan report saved, to view run: maldet --report 240121-0657.8563 Jan 22 2024 06:56:38 webserver maldet(3475): {update} checking for available updates... Jan 22 2024 06:56:38 webserver maldet(3475): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Jan 22 2024 06:56:38 webserver maldet(3475): {update} hashing install files and checking against server... Jan 22 2024 06:56:38 webserver maldet(3475): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Jan 22 2024 06:56:38 webserver maldet(3475): {update} latest version already installed. Jan 22 2024 06:56:38 webserver maldet(3612): {sigup} performing signature update check... Jan 22 2024 06:56:38 webserver maldet(3612): {sigup} local signature set is version 202401192782461 Jan 22 2024 06:56:38 webserver maldet(3612): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Jan 22 2024 06:56:38 webserver maldet(3612): {sigup} latest signature set already installed Jan 22 2024 06:56:38 webserver maldet(3727): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Jan 22 2024 06:56:38 webserver maldet(3727): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Jan 22 2024 06:56:38 webserver maldet(3727): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Jan 22 2024 06:56:38 webserver maldet(3727): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Jan 22 2024 06:56:38 webserver maldet(3727): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Jan 22 2024 06:56:50 webserver maldet(3727): {scan} file list completed in 12s, found 618 files... Jan 22 2024 06:56:50 webserver maldet(3727): {scan} found clamav binary at /usr/bin/clamscan, using clamav scanner engine... Jan 22 2024 06:56:50 webserver maldet(3727): {scan} scan of (618 files) in progress... Jan 22 2024 06:57:16 webserver maldet(3727): {scan} scan completed on : files 618, malware hits 0, cleaned hits 0, time 38s Jan 22 2024 06:57:16 webserver maldet(3727): {scan} scan report saved, to view run: maldet --report 240122-0656.3727 Jan 23 2024 06:57:00 webserver maldet(23832): {update} checking for available updates... Jan 23 2024 06:57:01 webserver maldet(23832): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Jan 23 2024 06:57:01 webserver maldet(23832): {update} hashing install files and checking against server... Jan 23 2024 06:57:01 webserver maldet(23832): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Jan 23 2024 06:57:01 webserver maldet(23832): {update} latest version already installed. Jan 23 2024 06:57:01 webserver maldet(23968): {sigup} performing signature update check... Jan 23 2024 06:57:01 webserver maldet(23968): {sigup} local signature set is version 202401192782461 Jan 23 2024 06:57:01 webserver maldet(23968): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Jan 23 2024 06:57:01 webserver maldet(23968): {sigup} latest signature set already installed Jan 23 2024 06:57:01 webserver maldet(24083): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Jan 23 2024 06:57:02 webserver maldet(24083): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Jan 23 2024 06:57:02 webserver maldet(24083): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Jan 23 2024 06:57:02 webserver maldet(24083): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Jan 23 2024 06:57:02 webserver maldet(24083): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Jan 23 2024 07:04:41 webserver maldet(24083): {scan} file list completed in 459s, found 783 files... Jan 23 2024 07:04:41 webserver maldet(24083): {scan} found clamav binary at /usr/bin/clamscan, using clamav scanner engine... Jan 23 2024 07:04:41 webserver maldet(24083): {scan} scan of (783 files) in progress... Jan 23 2024 07:05:13 webserver maldet(24083): {scan} clamscan returned an error, check /usr/local/maldetect/logs/clamscan_log for details! Jan 23 2024 07:05:13 webserver maldet(24083): {scan} scan completed on : files 783, malware hits 0, cleaned hits 0, time 492s Jan 23 2024 07:05:13 webserver maldet(24083): {scan} scan report saved, to view run: maldet --report 240123-0657.24083 Jan 24 2024 07:08:24 webserver maldet(11251): {update} checking for available updates... Jan 24 2024 07:08:24 webserver maldet(11251): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Jan 24 2024 07:08:24 webserver maldet(11251): {update} hashing install files and checking against server... Jan 24 2024 07:08:24 webserver maldet(11251): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Jan 24 2024 07:08:24 webserver maldet(11251): {update} latest version already installed. Jan 24 2024 07:08:24 webserver maldet(11387): {sigup} performing signature update check... Jan 24 2024 07:08:24 webserver maldet(11387): {sigup} local signature set is version 202401192782461 Jan 24 2024 07:08:24 webserver maldet(11387): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Jan 24 2024 07:08:25 webserver maldet(11387): {sigup} new signature set 202401223538842 available Jan 24 2024 07:08:25 webserver maldet(11387): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Jan 24 2024 07:08:25 webserver maldet(11387): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Jan 24 2024 07:08:25 webserver maldet(11387): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Jan 24 2024 07:08:25 webserver maldet(11387): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Jan 24 2024 07:08:25 webserver maldet(11387): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Jan 24 2024 07:08:25 webserver maldet(11387): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Jan 24 2024 07:08:25 webserver maldet(11387): {sigup} verified md5sum of maldet-sigpack.tgz Jan 24 2024 07:08:25 webserver maldet(11387): {sigup} unpacked and installed maldet-sigpack.tgz Jan 24 2024 07:08:25 webserver maldet(11387): {sigup} verified md5sum of maldet-clean.tgz Jan 24 2024 07:08:25 webserver maldet(11387): {sigup} unpacked and installed maldet-clean.tgz Jan 24 2024 07:08:25 webserver maldet(11387): {sigup} signature set update completed Jan 24 2024 07:08:25 webserver maldet(11387): {sigup} 17637 signatures (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Jan 24 2024 07:08:25 webserver maldet(11617): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Jan 24 2024 07:08:25 webserver maldet(11617): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Jan 24 2024 07:08:25 webserver maldet(11617): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Jan 24 2024 07:08:25 webserver maldet(11617): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Jan 24 2024 07:08:25 webserver maldet(11617): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Jan 24 2024 07:15:53 webserver maldet(11617): {scan} file list completed in 447s, found 634 files... Jan 24 2024 07:15:53 webserver maldet(11617): {scan} found clamav binary at /usr/bin/clamscan, using clamav scanner engine... Jan 24 2024 07:15:53 webserver maldet(11617): {scan} scan of (634 files) in progress... Jan 24 2024 07:16:37 webserver maldet(11617): {scan} clamscan returned an error, check /usr/local/maldetect/logs/clamscan_log for details! Jan 24 2024 07:16:37 webserver maldet(11617): {scan} scan completed on : files 634, malware hits 0, cleaned hits 0, time 492s Jan 24 2024 07:16:37 webserver maldet(11617): {scan} scan report saved, to view run: maldet --report 240124-0708.11617 Jan 25 2024 07:06:51 webserver maldet(28238): {update} checking for available updates... Jan 25 2024 07:06:51 webserver maldet(28238): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Jan 25 2024 07:06:51 webserver maldet(28238): {update} hashing install files and checking against server... Jan 25 2024 07:06:52 webserver maldet(28238): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Jan 25 2024 07:06:52 webserver maldet(28238): {update} latest version already installed. Jan 25 2024 07:06:52 webserver maldet(28374): {sigup} performing signature update check... Jan 25 2024 07:06:52 webserver maldet(28374): {sigup} local signature set is version 202401223538842 Jan 25 2024 07:06:52 webserver maldet(28374): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Jan 25 2024 07:06:52 webserver maldet(28374): {sigup} latest signature set already installed Jan 25 2024 07:06:52 webserver maldet(28489): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Jan 25 2024 07:06:52 webserver maldet(28489): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Jan 25 2024 07:06:52 webserver maldet(28489): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Jan 25 2024 07:06:52 webserver maldet(28489): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Jan 25 2024 07:06:52 webserver maldet(28489): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Jan 25 2024 07:09:10 webserver maldet(28489): {scan} file list completed in 138s, found 1074 files... Jan 25 2024 07:09:10 webserver maldet(28489): {scan} found clamav binary at /usr/bin/clamscan, using clamav scanner engine... Jan 25 2024 07:09:10 webserver maldet(28489): {scan} scan of (1074 files) in progress... Jan 25 2024 07:09:43 webserver maldet(28489): {scan} clamscan returned an error, check /usr/local/maldetect/logs/clamscan_log for details! Jan 25 2024 07:09:43 webserver maldet(28489): {scan} scan completed on : files 1074, malware hits 0, cleaned hits 0, time 171s Jan 25 2024 07:09:43 webserver maldet(28489): {scan} scan report saved, to view run: maldet --report 240125-0706.28489 Jan 26 2024 06:57:45 webserver maldet(19789): {update} checking for available updates... Jan 26 2024 06:57:45 webserver maldet(19789): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Jan 26 2024 06:57:45 webserver maldet(19789): {update} hashing install files and checking against server... Jan 26 2024 06:57:45 webserver maldet(19789): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Jan 26 2024 06:57:45 webserver maldet(19789): {update} latest version already installed. Jan 26 2024 06:57:45 webserver maldet(19925): {sigup} performing signature update check... Jan 26 2024 06:57:45 webserver maldet(19925): {sigup} local signature set is version 202401223538842 Jan 26 2024 06:57:45 webserver maldet(19925): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Jan 26 2024 06:57:45 webserver maldet(19925): {sigup} new signature set 2024012599117 available Jan 26 2024 06:57:45 webserver maldet(19925): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Jan 26 2024 06:57:45 webserver maldet(19925): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Jan 26 2024 06:57:46 webserver maldet(19925): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Jan 26 2024 06:57:46 webserver maldet(19925): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Jan 26 2024 06:57:46 webserver maldet(19925): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Jan 26 2024 06:57:46 webserver maldet(19925): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Jan 26 2024 06:57:46 webserver maldet(19925): {sigup} verified md5sum of maldet-sigpack.tgz Jan 26 2024 06:57:46 webserver maldet(19925): {sigup} unpacked and installed maldet-sigpack.tgz Jan 26 2024 06:57:46 webserver maldet(19925): {sigup} verified md5sum of maldet-clean.tgz Jan 26 2024 06:57:46 webserver maldet(19925): {sigup} unpacked and installed maldet-clean.tgz Jan 26 2024 06:57:46 webserver maldet(19925): {sigup} signature set update completed Jan 26 2024 06:57:46 webserver maldet(19925): {sigup} 17637 signatures (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Jan 26 2024 06:57:46 webserver maldet(20156): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Jan 26 2024 06:57:46 webserver maldet(20156): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Jan 26 2024 06:57:46 webserver maldet(20156): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Jan 26 2024 06:57:46 webserver maldet(20156): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Jan 26 2024 06:57:46 webserver maldet(20156): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Jan 26 2024 06:59:31 webserver maldet(20156): {scan} file list completed in 105s, found 6217 files... Jan 26 2024 06:59:31 webserver maldet(20156): {scan} found clamav binary at /usr/bin/clamscan, using clamav scanner engine... Jan 26 2024 06:59:31 webserver maldet(20156): {scan} scan of (6217 files) in progress... Jan 26 2024 07:00:56 webserver maldet(20156): {scan} clamscan returned an error, check /usr/local/maldetect/logs/clamscan_log for details! Jan 26 2024 07:00:56 webserver maldet(20156): {scan} scan completed on : files 6217, malware hits 0, cleaned hits 0, time 190s Jan 26 2024 07:00:56 webserver maldet(20156): {scan} scan report saved, to view run: maldet --report 240126-0657.20156 Jan 27 2024 06:59:26 webserver maldet(13827): {update} checking for available updates... Jan 27 2024 06:59:26 webserver maldet(13827): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Jan 27 2024 06:59:26 webserver maldet(13827): {update} hashing install files and checking against server... Jan 27 2024 06:59:26 webserver maldet(13827): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Jan 27 2024 06:59:26 webserver maldet(13827): {update} latest version already installed. Jan 27 2024 06:59:26 webserver maldet(13963): {sigup} performing signature update check... Jan 27 2024 06:59:26 webserver maldet(13963): {sigup} local signature set is version 2024012599117 Jan 27 2024 06:59:26 webserver maldet(13963): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Jan 27 2024 06:59:26 webserver maldet(13963): {sigup} latest signature set already installed Jan 27 2024 06:59:26 webserver maldet(14078): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Jan 27 2024 06:59:26 webserver maldet(14078): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Jan 27 2024 06:59:26 webserver maldet(14078): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Jan 27 2024 06:59:26 webserver maldet(14078): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Jan 27 2024 06:59:26 webserver maldet(14078): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Jan 27 2024 06:59:36 webserver maldet(14078): {scan} file list completed in 10s, found 3113 files... Jan 27 2024 06:59:36 webserver maldet(14078): {scan} found clamav binary at /usr/bin/clamscan, using clamav scanner engine... Jan 27 2024 06:59:36 webserver maldet(14078): {scan} scan of (3113 files) in progress... Jan 27 2024 07:00:30 webserver maldet(14078): {scan} clamscan returned an error, check /usr/local/maldetect/logs/clamscan_log for details! Jan 27 2024 07:00:30 webserver maldet(14078): {scan} scan completed on : files 3113, malware hits 0, cleaned hits 0, time 64s Jan 27 2024 07:00:30 webserver maldet(14078): {scan} scan report saved, to view run: maldet --report 240127-0659.14078 Jan 28 2024 06:59:46 webserver maldet(7672): {update} checking for available updates... Jan 28 2024 06:59:46 webserver maldet(7672): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Jan 28 2024 06:59:46 webserver maldet(7672): {update} hashing install files and checking against server... Jan 28 2024 06:59:46 webserver maldet(7672): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Jan 28 2024 06:59:46 webserver maldet(7672): {update} latest version already installed. Jan 28 2024 06:59:46 webserver maldet(7808): {sigup} performing signature update check... Jan 28 2024 06:59:46 webserver maldet(7808): {sigup} local signature set is version 2024012599117 Jan 28 2024 06:59:46 webserver maldet(7808): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Jan 28 2024 06:59:46 webserver maldet(7808): {sigup} latest signature set already installed Jan 28 2024 06:59:47 webserver maldet(7923): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Jan 28 2024 06:59:47 webserver maldet(7923): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Jan 28 2024 06:59:47 webserver maldet(7923): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Jan 28 2024 06:59:47 webserver maldet(7923): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Jan 28 2024 06:59:47 webserver maldet(7923): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Jan 28 2024 07:00:05 webserver maldet(7923): {scan} file list completed in 18s, found 880 files... Jan 28 2024 07:00:05 webserver maldet(7923): {scan} found clamav binary at /usr/bin/clamscan, using clamav scanner engine... Jan 28 2024 07:00:05 webserver maldet(7923): {scan} scan of (880 files) in progress... Jan 28 2024 07:00:33 webserver maldet(7923): {scan} clamscan returned an error, check /usr/local/maldetect/logs/clamscan_log for details! Jan 28 2024 07:00:33 webserver maldet(7923): {scan} scan completed on : files 880, malware hits 0, cleaned hits 0, time 46s Jan 28 2024 07:00:33 webserver maldet(7923): {scan} scan report saved, to view run: maldet --report 240128-0659.7923 Jan 29 2024 06:56:37 webserver maldet(26915): {update} checking for available updates... Jan 29 2024 06:56:37 webserver maldet(26915): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Jan 29 2024 06:56:37 webserver maldet(26915): {update} hashing install files and checking against server... Jan 29 2024 06:56:37 webserver maldet(26915): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Jan 29 2024 06:56:37 webserver maldet(26915): {update} latest version already installed. Jan 29 2024 06:56:37 webserver maldet(27051): {sigup} performing signature update check... Jan 29 2024 06:56:37 webserver maldet(27051): {sigup} local signature set is version 2024012599117 Jan 29 2024 06:56:37 webserver maldet(27051): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Jan 29 2024 06:56:37 webserver maldet(27051): {sigup} latest signature set already installed Jan 29 2024 06:56:37 webserver maldet(27166): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Jan 29 2024 06:56:37 webserver maldet(27166): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Jan 29 2024 06:56:37 webserver maldet(27166): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Jan 29 2024 06:56:37 webserver maldet(27166): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Jan 29 2024 06:56:37 webserver maldet(27166): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Jan 29 2024 06:56:46 webserver maldet(27166): {scan} file list completed in 9s, found 1055 files... Jan 29 2024 06:56:46 webserver maldet(27166): {scan} found clamav binary at /usr/bin/clamscan, using clamav scanner engine... Jan 29 2024 06:56:46 webserver maldet(27166): {scan} scan of (1055 files) in progress... Jan 29 2024 06:57:17 webserver maldet(27166): {scan} scan completed on : files 1055, malware hits 0, cleaned hits 0, time 40s Jan 29 2024 06:57:17 webserver maldet(27166): {scan} scan report saved, to view run: maldet --report 240129-0656.27166 Jan 30 2024 06:56:17 webserver maldet(12159): {update} checking for available updates... Jan 30 2024 06:56:17 webserver maldet(12159): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Jan 30 2024 06:56:17 webserver maldet(12159): {update} hashing install files and checking against server... Jan 30 2024 06:56:17 webserver maldet(12159): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Jan 30 2024 06:56:17 webserver maldet(12159): {update} latest version already installed. Jan 30 2024 06:56:17 webserver maldet(12295): {sigup} performing signature update check... Jan 30 2024 06:56:17 webserver maldet(12295): {sigup} local signature set is version 2024012599117 Jan 30 2024 06:56:18 webserver maldet(12295): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Jan 30 2024 06:56:18 webserver maldet(12295): {sigup} latest signature set already installed Jan 30 2024 06:56:18 webserver maldet(12409): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Jan 30 2024 06:56:18 webserver maldet(12409): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Jan 30 2024 06:56:18 webserver maldet(12409): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Jan 30 2024 06:56:18 webserver maldet(12409): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Jan 30 2024 06:56:18 webserver maldet(12409): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Jan 30 2024 06:56:27 webserver maldet(12409): {scan} file list completed in 9s, found 1511 files... Jan 30 2024 06:56:27 webserver maldet(12409): {scan} found clamav binary at /usr/bin/clamscan, using clamav scanner engine... Jan 30 2024 06:56:27 webserver maldet(12409): {scan} scan of (1511 files) in progress... Jan 30 2024 06:57:04 webserver maldet(12409): {scan} clamscan returned an error, check /usr/local/maldetect/logs/clamscan_log for details! Jan 30 2024 06:57:04 webserver maldet(12409): {scan} scan completed on : files 1511, malware hits 0, cleaned hits 0, time 46s Jan 30 2024 06:57:04 webserver maldet(12409): {scan} scan report saved, to view run: maldet --report 240130-0656.12409 Jan 31 2024 06:58:13 webserver maldet(1546): {update} checking for available updates... Jan 31 2024 06:58:13 webserver maldet(1546): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Jan 31 2024 06:58:13 webserver maldet(1546): {update} hashing install files and checking against server... Jan 31 2024 06:58:13 webserver maldet(1546): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Jan 31 2024 06:58:13 webserver maldet(1546): {update} latest version already installed. Jan 31 2024 06:58:13 webserver maldet(1682): {sigup} performing signature update check... Jan 31 2024 06:58:13 webserver maldet(1682): {sigup} local signature set is version 2024012599117 Jan 31 2024 06:58:13 webserver maldet(1682): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Jan 31 2024 06:58:13 webserver maldet(1682): {sigup} latest signature set already installed Jan 31 2024 06:58:14 webserver maldet(1796): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Jan 31 2024 06:58:14 webserver maldet(1796): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Jan 31 2024 06:58:14 webserver maldet(1796): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Jan 31 2024 06:58:14 webserver maldet(1796): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Jan 31 2024 06:58:14 webserver maldet(1796): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Jan 31 2024 06:58:23 webserver maldet(1796): {scan} file list completed in 9s, found 1081 files... Jan 31 2024 06:58:23 webserver maldet(1796): {scan} found clamav binary at /usr/bin/clamscan, using clamav scanner engine... Jan 31 2024 06:58:23 webserver maldet(1796): {scan} scan of (1081 files) in progress... Jan 31 2024 06:59:03 webserver maldet(1796): {scan} clamscan returned an error, check /usr/local/maldetect/logs/clamscan_log for details! Jan 31 2024 06:59:03 webserver maldet(1796): {scan} scan completed on : files 1081, malware hits 0, cleaned hits 0, time 49s Jan 31 2024 06:59:03 webserver maldet(1796): {scan} scan report saved, to view run: maldet --report 240131-0658.1796 Feb 01 2024 07:00:55 webserver maldet(26896): {update} checking for available updates... Feb 01 2024 07:00:55 webserver maldet(26896): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Feb 01 2024 07:00:55 webserver maldet(26896): {update} hashing install files and checking against server... Feb 01 2024 07:00:55 webserver maldet(26896): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Feb 01 2024 07:00:55 webserver maldet(26896): {update} latest version already installed. Feb 01 2024 07:00:55 webserver maldet(27032): {sigup} performing signature update check... Feb 01 2024 07:00:55 webserver maldet(27032): {sigup} local signature set is version 2024012599117 Feb 01 2024 07:00:55 webserver maldet(27032): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Feb 01 2024 07:00:55 webserver maldet(27032): {sigup} new signature set 20240131576818 available Feb 01 2024 07:00:55 webserver maldet(27032): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Feb 01 2024 07:00:55 webserver maldet(27032): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Feb 01 2024 07:00:55 webserver maldet(27032): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Feb 01 2024 07:00:55 webserver maldet(27032): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Feb 01 2024 07:00:55 webserver maldet(27032): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Feb 01 2024 07:00:56 webserver maldet(27032): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Feb 01 2024 07:00:56 webserver maldet(27032): {sigup} verified md5sum of maldet-sigpack.tgz Feb 01 2024 07:00:56 webserver maldet(27032): {sigup} unpacked and installed maldet-sigpack.tgz Feb 01 2024 07:00:56 webserver maldet(27032): {sigup} verified md5sum of maldet-clean.tgz Feb 01 2024 07:00:56 webserver maldet(27032): {sigup} unpacked and installed maldet-clean.tgz Feb 01 2024 07:00:56 webserver maldet(27032): {sigup} signature set update completed Feb 01 2024 07:00:56 webserver maldet(27032): {sigup} 17637 signatures (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Feb 01 2024 07:00:56 webserver maldet(27263): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Feb 01 2024 07:00:56 webserver maldet(27263): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Feb 01 2024 07:00:56 webserver maldet(27263): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Feb 01 2024 07:00:56 webserver maldet(27263): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Feb 01 2024 07:00:56 webserver maldet(27263): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Feb 01 2024 07:01:41 webserver maldet(27263): {scan} file list completed in 45s, found 1020 files... Feb 01 2024 07:01:41 webserver maldet(27263): {scan} found clamav binary at /usr/bin/clamscan, using clamav scanner engine... Feb 01 2024 07:01:41 webserver maldet(27263): {scan} scan of (1020 files) in progress... Feb 01 2024 07:02:15 webserver maldet(27263): {scan} scan completed on : files 1020, malware hits 0, cleaned hits 0, time 79s Feb 01 2024 07:02:15 webserver maldet(27263): {scan} scan report saved, to view run: maldet --report 240201-0700.27263 Feb 02 2024 06:58:01 webserver maldet(15506): {update} checking for available updates... Feb 02 2024 06:58:01 webserver maldet(15506): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Feb 02 2024 06:58:01 webserver maldet(15506): {update} hashing install files and checking against server... Feb 02 2024 06:58:01 webserver maldet(15506): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Feb 02 2024 06:58:01 webserver maldet(15506): {update} latest version already installed. Feb 02 2024 06:58:02 webserver maldet(15642): {sigup} performing signature update check... Feb 02 2024 06:58:02 webserver maldet(15642): {sigup} local signature set is version 20240131576818 Feb 02 2024 06:58:02 webserver maldet(15642): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Feb 02 2024 06:58:02 webserver maldet(15642): {sigup} new signature set 202402011286135 available Feb 02 2024 06:58:02 webserver maldet(15642): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Feb 02 2024 06:58:02 webserver maldet(15642): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Feb 02 2024 06:58:02 webserver maldet(15642): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Feb 02 2024 06:58:02 webserver maldet(15642): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Feb 02 2024 06:58:02 webserver maldet(15642): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Feb 02 2024 06:58:02 webserver maldet(15642): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Feb 02 2024 06:58:02 webserver maldet(15642): {sigup} verified md5sum of maldet-sigpack.tgz Feb 02 2024 06:58:02 webserver maldet(15642): {sigup} unpacked and installed maldet-sigpack.tgz Feb 02 2024 06:58:02 webserver maldet(15642): {sigup} verified md5sum of maldet-clean.tgz Feb 02 2024 06:58:02 webserver maldet(15642): {sigup} unpacked and installed maldet-clean.tgz Feb 02 2024 06:58:02 webserver maldet(15642): {sigup} signature set update completed Feb 02 2024 06:58:02 webserver maldet(15642): {sigup} 17637 signatures (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Feb 02 2024 06:58:03 webserver maldet(15873): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Feb 02 2024 06:58:03 webserver maldet(15873): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Feb 02 2024 06:58:03 webserver maldet(15873): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Feb 02 2024 06:58:03 webserver maldet(15873): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Feb 02 2024 06:58:03 webserver maldet(15873): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Feb 02 2024 06:58:41 webserver maldet(15873): {scan} file list completed in 38s, found 762 files... Feb 02 2024 06:58:41 webserver maldet(15873): {scan} found clamav binary at /usr/bin/clamscan, using clamav scanner engine... Feb 02 2024 06:58:41 webserver maldet(15873): {scan} scan of (762 files) in progress... Feb 02 2024 06:59:11 webserver maldet(15873): {scan} clamscan returned an error, check /usr/local/maldetect/logs/clamscan_log for details! Feb 02 2024 06:59:11 webserver maldet(15873): {scan} scan completed on : files 762, malware hits 0, cleaned hits 0, time 68s Feb 02 2024 06:59:11 webserver maldet(15873): {scan} scan report saved, to view run: maldet --report 240202-0658.15873 Feb 03 2024 07:08:31 webserver maldet(5260): {update} checking for available updates... Feb 03 2024 07:08:31 webserver maldet(5260): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Feb 03 2024 07:08:31 webserver maldet(5260): {update} hashing install files and checking against server... Feb 03 2024 07:08:31 webserver maldet(5260): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Feb 03 2024 07:08:31 webserver maldet(5260): {update} latest version already installed. Feb 03 2024 07:08:31 webserver maldet(5396): {sigup} performing signature update check... Feb 03 2024 07:08:31 webserver maldet(5396): {sigup} local signature set is version 202402011286135 Feb 03 2024 07:08:31 webserver maldet(5396): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Feb 03 2024 07:08:31 webserver maldet(5396): {sigup} latest signature set already installed Feb 03 2024 07:08:31 webserver maldet(5511): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Feb 03 2024 07:08:32 webserver maldet(5511): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Feb 03 2024 07:08:32 webserver maldet(5511): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Feb 03 2024 07:08:32 webserver maldet(5511): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Feb 03 2024 07:08:32 webserver maldet(5511): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Feb 03 2024 07:08:54 webserver maldet(5511): {scan} file list completed in 22s, found 3231 files... Feb 03 2024 07:08:54 webserver maldet(5511): {scan} found clamav binary at /usr/bin/clamscan, using clamav scanner engine... Feb 03 2024 07:08:54 webserver maldet(5511): {scan} scan of (3231 files) in progress... Feb 03 2024 07:09:49 webserver maldet(5511): {scan} scan completed on : files 3231, malware hits 0, cleaned hits 0, time 78s Feb 03 2024 07:09:49 webserver maldet(5511): {scan} scan report saved, to view run: maldet --report 240203-0708.5511 Feb 04 2024 06:56:53 webserver maldet(28637): {update} checking for available updates... Feb 04 2024 06:56:53 webserver maldet(28637): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Feb 04 2024 06:56:53 webserver maldet(28637): {update} hashing install files and checking against server... Feb 04 2024 06:56:53 webserver maldet(28637): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Feb 04 2024 06:56:53 webserver maldet(28637): {update} latest version already installed. Feb 04 2024 06:56:53 webserver maldet(28773): {sigup} performing signature update check... Feb 04 2024 06:56:53 webserver maldet(28773): {sigup} local signature set is version 202402011286135 Feb 04 2024 06:56:53 webserver maldet(28773): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Feb 04 2024 06:56:53 webserver maldet(28773): {sigup} latest signature set already installed Feb 04 2024 06:56:53 webserver maldet(28888): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Feb 04 2024 06:56:54 webserver maldet(28888): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Feb 04 2024 06:56:54 webserver maldet(28888): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Feb 04 2024 06:56:54 webserver maldet(28888): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Feb 04 2024 06:56:54 webserver maldet(28888): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Feb 04 2024 07:12:41 webserver maldet(28888): {scan} file list completed in 947s, found 240 files... Feb 04 2024 07:12:41 webserver maldet(28888): {scan} found clamav binary at /usr/bin/clamscan, using clamav scanner engine... Feb 04 2024 07:12:41 webserver maldet(28888): {scan} scan of (240 files) in progress... Feb 04 2024 07:13:23 webserver maldet(28888): {scan} clamscan returned an error, check /usr/local/maldetect/logs/clamscan_log for details! Feb 04 2024 07:13:23 webserver maldet(28888): {scan} scan completed on : files 240, malware hits 0, cleaned hits 0, time 990s Feb 04 2024 07:13:23 webserver maldet(28888): {scan} scan report saved, to view run: maldet --report 240204-0656.28888 Feb 05 2024 06:59:17 webserver maldet(15950): {update} checking for available updates... Feb 05 2024 06:59:17 webserver maldet(15950): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Feb 05 2024 06:59:17 webserver maldet(15950): {update} hashing install files and checking against server... Feb 05 2024 06:59:18 webserver maldet(15950): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Feb 05 2024 06:59:18 webserver maldet(15950): {update} latest version already installed. Feb 05 2024 06:59:18 webserver maldet(16086): {sigup} performing signature update check... Feb 05 2024 06:59:18 webserver maldet(16086): {sigup} local signature set is version 202402011286135 Feb 05 2024 06:59:18 webserver maldet(16086): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Feb 05 2024 06:59:18 webserver maldet(16086): {sigup} new signature set 202402042043699 available Feb 05 2024 06:59:18 webserver maldet(16086): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Feb 05 2024 06:59:18 webserver maldet(16086): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Feb 05 2024 06:59:18 webserver maldet(16086): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Feb 05 2024 06:59:18 webserver maldet(16086): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Feb 05 2024 06:59:18 webserver maldet(16086): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Feb 05 2024 06:59:18 webserver maldet(16086): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Feb 05 2024 06:59:18 webserver maldet(16086): {sigup} verified md5sum of maldet-sigpack.tgz Feb 05 2024 06:59:18 webserver maldet(16086): {sigup} unpacked and installed maldet-sigpack.tgz Feb 05 2024 06:59:18 webserver maldet(16086): {sigup} verified md5sum of maldet-clean.tgz Feb 05 2024 06:59:19 webserver maldet(16086): {sigup} unpacked and installed maldet-clean.tgz Feb 05 2024 06:59:19 webserver maldet(16086): {sigup} signature set update completed Feb 05 2024 06:59:19 webserver maldet(16086): {sigup} 17637 signatures (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Feb 05 2024 06:59:19 webserver maldet(16316): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Feb 05 2024 06:59:19 webserver maldet(16316): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Feb 05 2024 06:59:19 webserver maldet(16316): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Feb 05 2024 06:59:19 webserver maldet(16316): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Feb 05 2024 06:59:19 webserver maldet(16316): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Feb 05 2024 07:18:14 webserver maldet(16316): {scan} file list completed in 1135s, found 243 files... Feb 05 2024 07:18:14 webserver maldet(16316): {scan} found clamav binary at /usr/bin/clamscan, using clamav scanner engine... Feb 05 2024 07:18:14 webserver maldet(16316): {scan} scan of (243 files) in progress... Feb 05 2024 07:19:17 webserver maldet(16316): {scan} clamscan returned an error, check /usr/local/maldetect/logs/clamscan_log for details! Feb 05 2024 07:19:17 webserver maldet(16316): {scan} scan completed on : files 243, malware hits 0, cleaned hits 0, time 1198s Feb 05 2024 07:19:17 webserver maldet(16316): {scan} scan report saved, to view run: maldet --report 240205-0659.16316 Feb 06 2024 06:57:59 webserver maldet(1327): {update} checking for available updates... Feb 06 2024 06:57:59 webserver maldet(1327): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Feb 06 2024 06:57:59 webserver maldet(1327): {update} hashing install files and checking against server... Feb 06 2024 06:57:59 webserver maldet(1327): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Feb 06 2024 06:57:59 webserver maldet(1327): {update} latest version already installed. Feb 06 2024 06:57:59 webserver maldet(1464): {sigup} performing signature update check... Feb 06 2024 06:57:59 webserver maldet(1464): {sigup} local signature set is version 202402042043699 Feb 06 2024 06:57:59 webserver maldet(1464): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Feb 06 2024 06:58:00 webserver maldet(1464): {sigup} latest signature set already installed Feb 06 2024 06:58:00 webserver maldet(1579): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Feb 06 2024 06:58:01 webserver maldet(1579): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Feb 06 2024 06:58:01 webserver maldet(1579): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Feb 06 2024 06:58:01 webserver maldet(1579): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Feb 06 2024 06:58:01 webserver maldet(1579): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Feb 06 2024 07:10:56 webserver maldet(1579): {scan} file list completed in 774s, found 494 files... Feb 06 2024 07:10:56 webserver maldet(1579): {scan} found clamav binary at /usr/bin/clamscan, using clamav scanner engine... Feb 06 2024 07:10:56 webserver maldet(1579): {scan} scan of (494 files) in progress... Feb 06 2024 07:11:31 webserver maldet(1579): {scan} clamscan returned an error, check /usr/local/maldetect/logs/clamscan_log for details! Feb 06 2024 07:11:31 webserver maldet(1579): {scan} scan completed on : files 494, malware hits 0, cleaned hits 0, time 811s Feb 06 2024 07:11:31 webserver maldet(1579): {scan} scan report saved, to view run: maldet --report 240206-0658.1579 Feb 07 2024 06:59:09 webserver maldet(18701): {update} checking for available updates... Feb 07 2024 06:59:09 webserver maldet(18701): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Feb 07 2024 06:59:09 webserver maldet(18701): {update} hashing install files and checking against server... Feb 07 2024 06:59:09 webserver maldet(18701): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Feb 07 2024 06:59:09 webserver maldet(18701): {update} latest version already installed. Feb 07 2024 06:59:09 webserver maldet(18837): {sigup} performing signature update check... Feb 07 2024 06:59:09 webserver maldet(18837): {sigup} local signature set is version 202402042043699 Feb 07 2024 06:59:09 webserver maldet(18837): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Feb 07 2024 06:59:09 webserver maldet(18837): {sigup} latest signature set already installed Feb 07 2024 06:59:10 webserver maldet(18957): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Feb 07 2024 06:59:10 webserver maldet(18957): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Feb 07 2024 06:59:10 webserver maldet(18957): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Feb 07 2024 06:59:10 webserver maldet(18957): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Feb 07 2024 06:59:10 webserver maldet(18957): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Feb 07 2024 07:08:00 webserver maldet(18957): {scan} file list completed in 530s, found 539 files... Feb 07 2024 07:08:00 webserver maldet(18957): {scan} found clamav binary at /usr/bin/clamscan, using clamav scanner engine... Feb 07 2024 07:08:00 webserver maldet(18957): {scan} scan of (539 files) in progress... Feb 07 2024 07:08:29 webserver maldet(18957): {scan} clamscan returned an error, check /usr/local/maldetect/logs/clamscan_log for details! Feb 07 2024 07:08:29 webserver maldet(18957): {scan} scan completed on : files 539, malware hits 0, cleaned hits 0, time 559s Feb 07 2024 07:08:29 webserver maldet(18957): {scan} scan report saved, to view run: maldet --report 240207-0659.18957 Feb 08 2024 06:59:00 webserver maldet(5810): {update} checking for available updates... Feb 08 2024 06:59:00 webserver maldet(5810): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Feb 08 2024 06:59:00 webserver maldet(5810): {update} hashing install files and checking against server... Feb 08 2024 06:59:00 webserver maldet(5810): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Feb 08 2024 06:59:01 webserver maldet(5810): {update} latest version already installed. Feb 08 2024 06:59:01 webserver maldet(5946): {sigup} performing signature update check... Feb 08 2024 06:59:01 webserver maldet(5946): {sigup} local signature set is version 202402042043699 Feb 08 2024 06:59:01 webserver maldet(5946): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Feb 08 2024 06:59:01 webserver maldet(5946): {sigup} new signature set 20240207571074 available Feb 08 2024 06:59:01 webserver maldet(5946): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Feb 08 2024 06:59:01 webserver maldet(5946): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Feb 08 2024 06:59:01 webserver maldet(5946): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Feb 08 2024 06:59:01 webserver maldet(5946): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Feb 08 2024 06:59:01 webserver maldet(5946): {sigup} could not download https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz, please try again later. Feb 08 2024 06:59:01 webserver maldet(5946): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Feb 08 2024 06:59:01 webserver maldet(5946): {sigup} verified md5sum of maldet-sigpack.tgz Feb 08 2024 06:59:02 webserver maldet(5946): {sigup} unpacked and installed maldet-sigpack.tgz Feb 08 2024 06:59:02 webserver maldet(5946): {sigup} unable to verify md5sum of maldet-clean.tgz, please try again or contact proj@rfxn.com Feb 08 2024 06:59:02 webserver maldet(5946): {sigup} signature set update completed Feb 08 2024 06:59:02 webserver maldet(5946): {sigup} 17637 signatures (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Feb 08 2024 06:59:02 webserver maldet(6169): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Feb 08 2024 06:59:02 webserver maldet(6169): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Feb 08 2024 06:59:02 webserver maldet(6169): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Feb 08 2024 06:59:02 webserver maldet(6169): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Feb 08 2024 06:59:02 webserver maldet(6169): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Feb 08 2024 07:06:59 webserver maldet(6169): {scan} file list completed in 477s, found 450 files... Feb 08 2024 07:06:59 webserver maldet(6169): {scan} found clamav binary at /usr/bin/clamscan, using clamav scanner engine... Feb 08 2024 07:06:59 webserver maldet(6169): {scan} scan of (450 files) in progress... Feb 08 2024 07:07:27 webserver maldet(6169): {scan} clamscan returned an error, check /usr/local/maldetect/logs/clamscan_log for details! Feb 08 2024 07:07:28 webserver maldet(6169): {scan} scan completed on : files 450, malware hits 0, cleaned hits 0, time 505s Feb 08 2024 07:07:28 webserver maldet(6169): {scan} scan report saved, to view run: maldet --report 240208-0659.6169 Feb 09 2024 06:58:32 webserver maldet(23745): {update} checking for available updates... Feb 09 2024 06:58:32 webserver maldet(23745): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Feb 09 2024 06:58:32 webserver maldet(23745): {update} hashing install files and checking against server... Feb 09 2024 06:58:32 webserver maldet(23745): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Feb 09 2024 06:58:32 webserver maldet(23745): {update} latest version already installed. Feb 09 2024 06:58:32 webserver maldet(23881): {sigup} performing signature update check... Feb 09 2024 06:58:32 webserver maldet(23881): {sigup} local signature set is version 20240207571074 Feb 09 2024 06:58:32 webserver maldet(23881): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Feb 09 2024 06:58:32 webserver maldet(23881): {sigup} latest signature set already installed Feb 09 2024 06:58:32 webserver maldet(23996): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Feb 09 2024 06:58:33 webserver maldet(23996): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Feb 09 2024 06:58:33 webserver maldet(23996): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Feb 09 2024 06:58:33 webserver maldet(23996): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Feb 09 2024 06:58:33 webserver maldet(23996): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Feb 09 2024 07:00:54 webserver maldet(23996): {scan} file list completed in 141s, found 480 files... Feb 09 2024 07:00:54 webserver maldet(23996): {scan} found clamav binary at /usr/bin/clamscan, using clamav scanner engine... Feb 09 2024 07:00:54 webserver maldet(23996): {scan} scan of (480 files) in progress... Feb 09 2024 07:01:22 webserver maldet(23996): {scan} clamscan returned an error, check /usr/local/maldetect/logs/clamscan_log for details! Feb 09 2024 07:01:22 webserver maldet(23996): {scan} scan completed on : files 480, malware hits 0, cleaned hits 0, time 170s Feb 09 2024 07:01:22 webserver maldet(23996): {scan} scan report saved, to view run: maldet --report 240209-0658.23996 Feb 10 2024 06:57:09 webserver maldet(12502): {update} checking for available updates... Feb 10 2024 06:57:09 webserver maldet(12502): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Feb 10 2024 06:57:09 webserver maldet(12502): {update} hashing install files and checking against server... Feb 10 2024 06:57:09 webserver maldet(12502): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Feb 10 2024 06:57:09 webserver maldet(12502): {update} latest version already installed. Feb 10 2024 06:57:09 webserver maldet(12638): {sigup} performing signature update check... Feb 10 2024 06:57:09 webserver maldet(12638): {sigup} local signature set is version 20240207571074 Feb 10 2024 06:57:09 webserver maldet(12638): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Feb 10 2024 06:57:09 webserver maldet(12638): {sigup} latest signature set already installed Feb 10 2024 06:57:09 webserver maldet(12752): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Feb 10 2024 06:57:10 webserver maldet(12752): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Feb 10 2024 06:57:10 webserver maldet(12752): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Feb 10 2024 06:57:10 webserver maldet(12752): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Feb 10 2024 06:57:10 webserver maldet(12752): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Feb 10 2024 06:59:29 webserver maldet(12752): {scan} file list completed in 139s, found 170 files... Feb 10 2024 06:59:29 webserver maldet(12752): {scan} found clamav binary at /usr/bin/clamscan, using clamav scanner engine... Feb 10 2024 06:59:29 webserver maldet(12752): {scan} scan of (170 files) in progress... Feb 10 2024 06:59:54 webserver maldet(12752): {scan} scan completed on : files 170, malware hits 0, cleaned hits 0, time 165s Feb 10 2024 06:59:54 webserver maldet(12752): {scan} scan report saved, to view run: maldet --report 240210-0657.12752 Feb 11 2024 06:59:40 webserver maldet(8915): {update} checking for available updates... Feb 11 2024 06:59:40 webserver maldet(8915): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Feb 11 2024 06:59:40 webserver maldet(8915): {update} hashing install files and checking against server... Feb 11 2024 06:59:40 webserver maldet(8915): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Feb 11 2024 06:59:40 webserver maldet(8915): {update} latest version already installed. Feb 11 2024 06:59:40 webserver maldet(9052): {sigup} performing signature update check... Feb 11 2024 06:59:40 webserver maldet(9052): {sigup} local signature set is version 20240207571074 Feb 11 2024 06:59:40 webserver maldet(9052): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Feb 11 2024 06:59:40 webserver maldet(9052): {sigup} new signature set 202402101326004 available Feb 11 2024 06:59:40 webserver maldet(9052): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Feb 11 2024 06:59:40 webserver maldet(9052): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Feb 11 2024 06:59:40 webserver maldet(9052): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Feb 11 2024 06:59:40 webserver maldet(9052): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Feb 11 2024 06:59:40 webserver maldet(9052): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Feb 11 2024 06:59:41 webserver maldet(9052): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Feb 11 2024 06:59:41 webserver maldet(9052): {sigup} verified md5sum of maldet-sigpack.tgz Feb 11 2024 06:59:41 webserver maldet(9052): {sigup} unpacked and installed maldet-sigpack.tgz Feb 11 2024 06:59:41 webserver maldet(9052): {sigup} verified md5sum of maldet-clean.tgz Feb 11 2024 06:59:41 webserver maldet(9052): {sigup} unpacked and installed maldet-clean.tgz Feb 11 2024 06:59:41 webserver maldet(9052): {sigup} signature set update completed Feb 11 2024 06:59:41 webserver maldet(9052): {sigup} 17637 signatures (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Feb 11 2024 06:59:41 webserver maldet(9288): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Feb 11 2024 06:59:41 webserver maldet(9288): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Feb 11 2024 06:59:41 webserver maldet(9288): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Feb 11 2024 06:59:41 webserver maldet(9288): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Feb 11 2024 06:59:41 webserver maldet(9288): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Feb 11 2024 07:01:56 webserver maldet(9288): {scan} file list completed in 135s, found 535 files... Feb 11 2024 07:01:56 webserver maldet(9288): {scan} found clamav binary at /usr/bin/clamscan, using clamav scanner engine... Feb 11 2024 07:01:56 webserver maldet(9288): {scan} scan of (535 files) in progress... Feb 11 2024 07:02:24 webserver maldet(9288): {scan} clamscan returned an error, check /usr/local/maldetect/logs/clamscan_log for details! Feb 11 2024 07:02:24 webserver maldet(9288): {scan} scan completed on : files 535, malware hits 0, cleaned hits 0, time 163s Feb 11 2024 07:02:24 webserver maldet(9288): {scan} scan report saved, to view run: maldet --report 240211-0659.9288 Feb 12 2024 07:10:38 webserver maldet(2844): {update} checking for available updates... Feb 12 2024 07:10:38 webserver maldet(2844): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Feb 12 2024 07:10:38 webserver maldet(2844): {update} hashing install files and checking against server... Feb 12 2024 07:10:38 webserver maldet(2844): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Feb 12 2024 07:10:38 webserver maldet(2844): {update} latest version already installed. Feb 12 2024 07:10:38 webserver maldet(2980): {sigup} performing signature update check... Feb 12 2024 07:10:38 webserver maldet(2980): {sigup} local signature set is version 202402101326004 Feb 12 2024 07:10:38 webserver maldet(2980): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Feb 12 2024 07:10:38 webserver maldet(2980): {sigup} latest signature set already installed Feb 12 2024 07:10:38 webserver maldet(3095): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Feb 12 2024 07:10:38 webserver maldet(3095): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Feb 12 2024 07:10:38 webserver maldet(3095): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Feb 12 2024 07:10:38 webserver maldet(3095): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Feb 12 2024 07:10:38 webserver maldet(3095): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Feb 12 2024 07:11:16 webserver maldet(3095): {scan} file list completed in 38s, found 1501 files... Feb 12 2024 07:11:16 webserver maldet(3095): {scan} found clamav binary at /usr/bin/clamscan, using clamav scanner engine... Feb 12 2024 07:11:16 webserver maldet(3095): {scan} scan of (1501 files) in progress... Feb 12 2024 07:11:51 webserver maldet(3095): {scan} clamscan returned an error, check /usr/local/maldetect/logs/clamscan_log for details! Feb 12 2024 07:11:51 webserver maldet(3095): {scan} scan completed on : files 1501, malware hits 0, cleaned hits 0, time 73s Feb 12 2024 07:11:51 webserver maldet(3095): {scan} scan report saved, to view run: maldet --report 240212-0710.3095 Feb 13 2024 06:59:15 webserver maldet(22641): {update} checking for available updates... Feb 13 2024 06:59:15 webserver maldet(22641): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Feb 13 2024 06:59:15 webserver maldet(22641): {update} hashing install files and checking against server... Feb 13 2024 06:59:15 webserver maldet(22641): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Feb 13 2024 06:59:15 webserver maldet(22641): {update} latest version already installed. Feb 13 2024 06:59:15 webserver maldet(22777): {sigup} performing signature update check... Feb 13 2024 06:59:15 webserver maldet(22777): {sigup} local signature set is version 202402101326004 Feb 13 2024 06:59:15 webserver maldet(22777): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Feb 13 2024 06:59:15 webserver maldet(22777): {sigup} latest signature set already installed Feb 13 2024 06:59:15 webserver maldet(22891): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Feb 13 2024 06:59:15 webserver maldet(22891): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Feb 13 2024 06:59:15 webserver maldet(22891): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Feb 13 2024 06:59:15 webserver maldet(22891): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Feb 13 2024 06:59:15 webserver maldet(22891): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Feb 13 2024 06:59:32 webserver maldet(22891): {scan} file list completed in 17s, found 950 files... Feb 13 2024 06:59:32 webserver maldet(22891): {scan} found clamav binary at /usr/bin/clamscan, using clamav scanner engine... Feb 13 2024 06:59:32 webserver maldet(22891): {scan} scan of (950 files) in progress... Feb 13 2024 07:00:06 webserver maldet(22891): {scan} scan completed on : files 950, malware hits 0, cleaned hits 0, time 51s Feb 13 2024 07:00:06 webserver maldet(22891): {scan} scan report saved, to view run: maldet --report 240213-0659.22891 Feb 14 2024 06:59:24 webserver maldet(18346): {update} checking for available updates... Feb 14 2024 06:59:24 webserver maldet(18346): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Feb 14 2024 06:59:24 webserver maldet(18346): {update} hashing install files and checking against server... Feb 14 2024 06:59:24 webserver maldet(18346): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Feb 14 2024 06:59:24 webserver maldet(18346): {update} latest version already installed. Feb 14 2024 06:59:24 webserver maldet(18482): {sigup} performing signature update check... Feb 14 2024 06:59:24 webserver maldet(18482): {sigup} local signature set is version 202402101326004 Feb 14 2024 06:59:24 webserver maldet(18482): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Feb 14 2024 06:59:24 webserver maldet(18482): {sigup} new signature set 202402132079322 available Feb 14 2024 06:59:24 webserver maldet(18482): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Feb 14 2024 06:59:24 webserver maldet(18482): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Feb 14 2024 06:59:24 webserver maldet(18482): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Feb 14 2024 06:59:24 webserver maldet(18482): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Feb 14 2024 06:59:24 webserver maldet(18482): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Feb 14 2024 06:59:25 webserver maldet(18482): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Feb 14 2024 06:59:25 webserver maldet(18482): {sigup} verified md5sum of maldet-sigpack.tgz Feb 14 2024 06:59:25 webserver maldet(18482): {sigup} unpacked and installed maldet-sigpack.tgz Feb 14 2024 06:59:25 webserver maldet(18482): {sigup} verified md5sum of maldet-clean.tgz Feb 14 2024 06:59:25 webserver maldet(18482): {sigup} unpacked and installed maldet-clean.tgz Feb 14 2024 06:59:25 webserver maldet(18482): {sigup} signature set update completed Feb 14 2024 06:59:25 webserver maldet(18482): {sigup} 17637 signatures (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Feb 14 2024 06:59:25 webserver maldet(18713): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Feb 14 2024 06:59:25 webserver maldet(18713): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Feb 14 2024 06:59:25 webserver maldet(18713): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Feb 14 2024 06:59:25 webserver maldet(18713): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Feb 14 2024 06:59:25 webserver maldet(18713): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Feb 14 2024 06:59:37 webserver maldet(18713): {scan} file list completed in 12s, found 556 files... Feb 14 2024 06:59:37 webserver maldet(18713): {scan} found clamav binary at /usr/bin/clamscan, using clamav scanner engine... Feb 14 2024 06:59:37 webserver maldet(18713): {scan} scan of (556 files) in progress... Feb 14 2024 07:00:08 webserver maldet(18713): {scan} clamscan returned an error, check /usr/local/maldetect/logs/clamscan_log for details! Feb 14 2024 07:00:08 webserver maldet(18713): {scan} scan completed on : files 556, malware hits 0, cleaned hits 0, time 43s Feb 14 2024 07:00:08 webserver maldet(18713): {scan} scan report saved, to view run: maldet --report 240214-0659.18713 Feb 15 2024 06:57:45 webserver maldet(17078): {update} checking for available updates... Feb 15 2024 06:57:45 webserver maldet(17078): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Feb 15 2024 06:57:45 webserver maldet(17078): {update} hashing install files and checking against server... Feb 15 2024 06:57:45 webserver maldet(17078): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Feb 15 2024 06:57:45 webserver maldet(17078): {update} latest version already installed. Feb 15 2024 06:57:46 webserver maldet(17214): {sigup} performing signature update check... Feb 15 2024 06:57:46 webserver maldet(17214): {sigup} local signature set is version 202402132079322 Feb 15 2024 06:57:46 webserver maldet(17214): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Feb 15 2024 06:57:46 webserver maldet(17214): {sigup} latest signature set already installed Feb 15 2024 06:57:46 webserver maldet(17329): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Feb 15 2024 06:57:46 webserver maldet(17329): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Feb 15 2024 06:57:46 webserver maldet(17329): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Feb 15 2024 06:57:46 webserver maldet(17329): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Feb 15 2024 06:57:46 webserver maldet(17329): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Feb 15 2024 07:04:08 webserver maldet(17329): {scan} file list completed in 382s, found 466 files... Feb 15 2024 07:04:08 webserver maldet(17329): {scan} found clamav binary at /usr/bin/clamscan, using clamav scanner engine... Feb 15 2024 07:04:08 webserver maldet(17329): {scan} scan of (466 files) in progress... Feb 15 2024 07:05:21 webserver maldet(17329): {scan} clamscan returned an error, check /usr/local/maldetect/logs/clamscan_log for details! Feb 15 2024 07:05:21 webserver maldet(17329): {scan} scan completed on : files 466, malware hits 0, cleaned hits 0, time 455s Feb 15 2024 07:05:21 webserver maldet(17329): {scan} scan report saved, to view run: maldet --report 240215-0657.17329 Feb 16 2024 07:06:56 webserver maldet(8861): {update} checking for available updates... Feb 16 2024 07:06:56 webserver maldet(8861): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Feb 16 2024 07:06:56 webserver maldet(8861): {update} hashing install files and checking against server... Feb 16 2024 07:06:56 webserver maldet(8861): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Feb 16 2024 07:06:56 webserver maldet(8861): {update} latest version already installed. Feb 16 2024 07:06:56 webserver maldet(8997): {sigup} performing signature update check... Feb 16 2024 07:06:56 webserver maldet(8997): {sigup} local signature set is version 202402132079322 Feb 16 2024 07:06:56 webserver maldet(8997): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Feb 16 2024 07:06:56 webserver maldet(8997): {sigup} latest signature set already installed Feb 16 2024 07:06:57 webserver maldet(9116): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Feb 16 2024 07:06:57 webserver maldet(9116): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Feb 16 2024 07:06:57 webserver maldet(9116): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Feb 16 2024 07:06:57 webserver maldet(9116): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Feb 16 2024 07:06:57 webserver maldet(9116): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Feb 16 2024 07:13:24 webserver maldet(9116): {scan} file list completed in 387s, found 530 files... Feb 16 2024 07:13:24 webserver maldet(9116): {scan} found clamav binary at /usr/bin/clamscan, using clamav scanner engine... Feb 16 2024 07:13:24 webserver maldet(9116): {scan} scan of (530 files) in progress... Feb 16 2024 07:13:57 webserver maldet(9116): {scan} clamscan returned an error, check /usr/local/maldetect/logs/clamscan_log for details! Feb 16 2024 07:13:57 webserver maldet(9116): {scan} scan completed on : files 530, malware hits 0, cleaned hits 0, time 420s Feb 16 2024 07:13:57 webserver maldet(9116): {scan} scan report saved, to view run: maldet --report 240216-0706.9116 Feb 17 2024 07:07:54 webserver maldet(14830): {update} checking for available updates... Feb 17 2024 07:07:54 webserver maldet(14830): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Feb 17 2024 07:07:54 webserver maldet(14830): {update} hashing install files and checking against server... Feb 17 2024 07:07:54 webserver maldet(14830): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Feb 17 2024 07:07:54 webserver maldet(14830): {update} latest version already installed. Feb 17 2024 07:07:54 webserver maldet(14966): {sigup} performing signature update check... Feb 17 2024 07:07:54 webserver maldet(14966): {sigup} local signature set is version 202402132079322 Feb 17 2024 07:07:54 webserver maldet(14966): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Feb 17 2024 07:07:54 webserver maldet(14966): {sigup} latest signature set already installed Feb 17 2024 07:07:54 webserver maldet(15081): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Feb 17 2024 07:07:54 webserver maldet(15081): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Feb 17 2024 07:07:54 webserver maldet(15081): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Feb 17 2024 07:07:54 webserver maldet(15081): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Feb 17 2024 07:07:54 webserver maldet(15081): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Feb 17 2024 07:11:16 webserver maldet(15081): {scan} file list completed in 202s, found 622 files... Feb 17 2024 07:11:16 webserver maldet(15081): {scan} found clamav binary at /usr/bin/clamscan, using clamav scanner engine... Feb 17 2024 07:11:16 webserver maldet(15081): {scan} scan of (622 files) in progress... Feb 17 2024 07:11:52 webserver maldet(15081): {scan} clamscan returned an error, check /usr/local/maldetect/logs/clamscan_log for details! Feb 17 2024 07:11:52 webserver maldet(15081): {scan} scan completed on : files 622, malware hits 0, cleaned hits 0, time 238s Feb 17 2024 07:11:52 webserver maldet(15081): {scan} scan report saved, to view run: maldet --report 240217-0707.15081 Feb 18 2024 06:57:09 webserver maldet(5783): {update} checking for available updates... Feb 18 2024 06:57:09 webserver maldet(5783): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Feb 18 2024 06:57:09 webserver maldet(5783): {update} hashing install files and checking against server... Feb 18 2024 06:57:09 webserver maldet(5783): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Feb 18 2024 06:57:09 webserver maldet(5783): {update} latest version already installed. Feb 18 2024 06:57:09 webserver maldet(5919): {sigup} performing signature update check... Feb 18 2024 06:57:09 webserver maldet(5919): {sigup} local signature set is version 202402132079322 Feb 18 2024 06:57:09 webserver maldet(5919): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Feb 18 2024 06:57:09 webserver maldet(5919): {sigup} latest signature set already installed Feb 18 2024 06:57:10 webserver maldet(6034): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Feb 18 2024 06:57:10 webserver maldet(6034): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Feb 18 2024 06:57:10 webserver maldet(6034): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Feb 18 2024 06:57:10 webserver maldet(6034): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Feb 18 2024 06:57:10 webserver maldet(6034): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Feb 18 2024 07:07:05 webserver maldet(6034): {scan} file list completed in 595s, found 687 files... Feb 18 2024 07:07:05 webserver maldet(6034): {scan} found clamav binary at /usr/bin/clamscan, using clamav scanner engine... Feb 18 2024 07:07:05 webserver maldet(6034): {scan} scan of (687 files) in progress... Feb 18 2024 07:07:53 webserver maldet(6034): {scan} clamscan returned an error, check /usr/local/maldetect/logs/clamscan_log for details! Feb 18 2024 07:07:53 webserver maldet(6034): {scan} scan completed on : files 687, malware hits 0, cleaned hits 0, time 643s Feb 18 2024 07:07:53 webserver maldet(6034): {scan} scan report saved, to view run: maldet --report 240218-0657.6034 Feb 19 2024 06:56:20 webserver maldet(28510): {update} checking for available updates... Feb 19 2024 06:56:20 webserver maldet(28510): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Feb 19 2024 06:56:20 webserver maldet(28510): {update} hashing install files and checking against server... Feb 19 2024 06:56:20 webserver maldet(28510): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Feb 19 2024 06:56:20 webserver maldet(28510): {update} latest version already installed. Feb 19 2024 06:56:20 webserver maldet(28646): {sigup} performing signature update check... Feb 19 2024 06:56:20 webserver maldet(28646): {sigup} local signature set is version 202402132079322 Feb 19 2024 06:56:20 webserver maldet(28646): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Feb 19 2024 06:56:20 webserver maldet(28646): {sigup} latest signature set already installed Feb 19 2024 06:56:21 webserver maldet(28760): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Feb 19 2024 06:56:21 webserver maldet(28760): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Feb 19 2024 06:56:21 webserver maldet(28760): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Feb 19 2024 06:56:21 webserver maldet(28760): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Feb 19 2024 06:56:21 webserver maldet(28760): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Feb 19 2024 07:14:41 webserver maldet(28760): {scan} file list completed in 1100s, found 1232 files... Feb 19 2024 07:14:41 webserver maldet(28760): {scan} found clamav binary at /usr/bin/clamscan, using clamav scanner engine... Feb 19 2024 07:14:41 webserver maldet(28760): {scan} scan of (1232 files) in progress... Feb 19 2024 07:15:54 webserver maldet(28760): {scan} clamscan returned an error, check /usr/local/maldetect/logs/clamscan_log for details! Feb 19 2024 07:15:55 webserver maldet(28760): {scan} scan completed on : files 1232, malware hits 0, cleaned hits 0, time 1173s Feb 19 2024 07:15:55 webserver maldet(28760): {scan} scan report saved, to view run: maldet --report 240219-0656.28760 Feb 20 2024 06:56:24 webserver maldet(19128): {update} checking for available updates... Feb 20 2024 06:56:24 webserver maldet(19128): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Feb 20 2024 06:56:24 webserver maldet(19128): {update} hashing install files and checking against server... Feb 20 2024 06:56:25 webserver maldet(19128): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Feb 20 2024 06:56:25 webserver maldet(19128): {update} latest version already installed. Feb 20 2024 06:56:25 webserver maldet(19264): {sigup} performing signature update check... Feb 20 2024 06:56:25 webserver maldet(19264): {sigup} local signature set is version 202402132079322 Feb 20 2024 06:56:25 webserver maldet(19264): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Feb 20 2024 06:56:25 webserver maldet(19264): {sigup} new signature set 20240219554696 available Feb 20 2024 06:56:25 webserver maldet(19264): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Feb 20 2024 06:56:25 webserver maldet(19264): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Feb 20 2024 06:56:25 webserver maldet(19264): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Feb 20 2024 06:56:25 webserver maldet(19264): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Feb 20 2024 06:56:25 webserver maldet(19264): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Feb 20 2024 06:56:25 webserver maldet(19264): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Feb 20 2024 06:56:25 webserver maldet(19264): {sigup} verified md5sum of maldet-sigpack.tgz Feb 20 2024 06:56:26 webserver maldet(19264): {sigup} unpacked and installed maldet-sigpack.tgz Feb 20 2024 06:56:27 webserver maldet(19264): {sigup} verified md5sum of maldet-clean.tgz Feb 20 2024 06:56:27 webserver maldet(19264): {sigup} unpacked and installed maldet-clean.tgz Feb 20 2024 06:56:27 webserver maldet(19264): {sigup} signature set update completed Feb 20 2024 06:56:27 webserver maldet(19264): {sigup} 17637 signatures (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Feb 20 2024 06:56:27 webserver maldet(19495): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Feb 20 2024 06:56:28 webserver maldet(19495): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Feb 20 2024 06:56:28 webserver maldet(19495): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Feb 20 2024 06:56:28 webserver maldet(19495): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Feb 20 2024 06:56:28 webserver maldet(19495): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Feb 20 2024 07:06:43 webserver maldet(19495): {scan} file list completed in 615s, found 762 files... Feb 20 2024 07:06:43 webserver maldet(19495): {scan} found clamav binary at /usr/bin/clamscan, using clamav scanner engine... Feb 20 2024 07:06:43 webserver maldet(19495): {scan} scan of (762 files) in progress... Feb 20 2024 07:07:29 webserver maldet(19495): {scan} clamscan returned an error, check /usr/local/maldetect/logs/clamscan_log for details! Feb 20 2024 07:07:29 webserver maldet(19495): {scan} scan completed on : files 762, malware hits 0, cleaned hits 0, time 662s Feb 20 2024 07:07:29 webserver maldet(19495): {scan} scan report saved, to view run: maldet --report 240220-0656.19495 Feb 21 2024 07:06:43 webserver maldet(2278): {update} checking for available updates... Feb 21 2024 07:06:43 webserver maldet(2278): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Feb 21 2024 07:06:43 webserver maldet(2278): {update} hashing install files and checking against server... Feb 21 2024 07:06:43 webserver maldet(2278): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Feb 21 2024 07:06:43 webserver maldet(2278): {update} latest version already installed. Feb 21 2024 07:06:43 webserver maldet(2414): {sigup} performing signature update check... Feb 21 2024 07:06:43 webserver maldet(2414): {sigup} local signature set is version 20240219554696 Feb 21 2024 07:06:43 webserver maldet(2414): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Feb 21 2024 07:06:43 webserver maldet(2414): {sigup} latest signature set already installed Feb 21 2024 07:06:43 webserver maldet(2529): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Feb 21 2024 07:06:43 webserver maldet(2529): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Feb 21 2024 07:06:43 webserver maldet(2529): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Feb 21 2024 07:06:43 webserver maldet(2529): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Feb 21 2024 07:06:43 webserver maldet(2529): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Feb 21 2024 07:09:14 webserver maldet(2529): {scan} file list completed in 151s, found 649 files... Feb 21 2024 07:09:15 webserver maldet(2529): {scan} found clamav binary at /usr/bin/clamscan, using clamav scanner engine... Feb 21 2024 07:09:15 webserver maldet(2529): {scan} scan of (649 files) in progress... Feb 21 2024 07:09:45 webserver maldet(2529): {scan} clamscan returned an error, check /usr/local/maldetect/logs/clamscan_log for details! Feb 21 2024 07:09:45 webserver maldet(2529): {scan} scan completed on : files 649, malware hits 0, cleaned hits 0, time 182s Feb 21 2024 07:09:45 webserver maldet(2529): {scan} scan report saved, to view run: maldet --report 240221-0706.2529 Feb 22 2024 06:59:14 webserver maldet(25446): {update} checking for available updates... Feb 22 2024 06:59:14 webserver maldet(25446): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Feb 22 2024 06:59:14 webserver maldet(25446): {update} hashing install files and checking against server... Feb 22 2024 06:59:14 webserver maldet(25446): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Feb 22 2024 06:59:14 webserver maldet(25446): {update} latest version already installed. Feb 22 2024 06:59:14 webserver maldet(25582): {sigup} performing signature update check... Feb 22 2024 06:59:14 webserver maldet(25582): {sigup} local signature set is version 20240219554696 Feb 22 2024 06:59:14 webserver maldet(25582): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Feb 22 2024 06:59:14 webserver maldet(25582): {sigup} latest signature set already installed Feb 22 2024 06:59:15 webserver maldet(25696): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Feb 22 2024 06:59:15 webserver maldet(25696): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Feb 22 2024 06:59:15 webserver maldet(25696): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Feb 22 2024 06:59:15 webserver maldet(25696): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Feb 22 2024 06:59:15 webserver maldet(25696): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Feb 22 2024 07:01:54 webserver maldet(25696): {scan} file list completed in 159s, found 360 files... Feb 22 2024 07:01:54 webserver maldet(25696): {scan} found clamav binary at /usr/bin/clamscan, using clamav scanner engine... Feb 22 2024 07:01:54 webserver maldet(25696): {scan} scan of (360 files) in progress... Feb 22 2024 07:02:48 webserver maldet(25696): {scan} clamscan returned an error, check /usr/local/maldetect/logs/clamscan_log for details! Feb 22 2024 07:02:48 webserver maldet(25696): {scan} scan completed on : files 360, malware hits 0, cleaned hits 0, time 213s Feb 22 2024 07:02:48 webserver maldet(25696): {scan} scan report saved, to view run: maldet --report 240222-0659.25696 Feb 23 2024 06:58:51 webserver maldet(18858): {update} checking for available updates... Feb 23 2024 06:58:51 webserver maldet(18858): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Feb 23 2024 06:58:51 webserver maldet(18858): {update} hashing install files and checking against server... Feb 23 2024 06:58:51 webserver maldet(18858): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Feb 23 2024 06:58:51 webserver maldet(18858): {update} latest version already installed. Feb 23 2024 06:58:51 webserver maldet(18994): {sigup} performing signature update check... Feb 23 2024 06:58:51 webserver maldet(18994): {sigup} local signature set is version 20240219554696 Feb 23 2024 06:58:51 webserver maldet(18994): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Feb 23 2024 06:58:52 webserver maldet(18994): {sigup} new signature set 202402221338720 available Feb 23 2024 06:58:52 webserver maldet(18994): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Feb 23 2024 06:58:52 webserver maldet(18994): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Feb 23 2024 06:58:52 webserver maldet(18994): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Feb 23 2024 06:58:52 webserver maldet(18994): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Feb 23 2024 06:58:52 webserver maldet(18994): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Feb 23 2024 06:58:52 webserver maldet(18994): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Feb 23 2024 06:58:52 webserver maldet(18994): {sigup} verified md5sum of maldet-sigpack.tgz Feb 23 2024 06:58:52 webserver maldet(18994): {sigup} unpacked and installed maldet-sigpack.tgz Feb 23 2024 06:58:52 webserver maldet(18994): {sigup} verified md5sum of maldet-clean.tgz Feb 23 2024 06:58:52 webserver maldet(18994): {sigup} unpacked and installed maldet-clean.tgz Feb 23 2024 06:58:52 webserver maldet(18994): {sigup} signature set update completed Feb 23 2024 06:58:52 webserver maldet(18994): {sigup} 17637 signatures (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Feb 23 2024 06:58:52 webserver maldet(19225): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Feb 23 2024 06:58:53 webserver maldet(19225): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Feb 23 2024 06:58:53 webserver maldet(19225): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Feb 23 2024 06:58:53 webserver maldet(19225): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Feb 23 2024 06:58:53 webserver maldet(19225): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Feb 23 2024 07:12:49 webserver maldet(19225): {scan} file list completed in 836s, found 370 files... Feb 23 2024 07:12:49 webserver maldet(19225): {scan} found clamav binary at /usr/bin/clamscan, using clamav scanner engine... Feb 23 2024 07:12:49 webserver maldet(19225): {scan} scan of (370 files) in progress... Feb 23 2024 07:13:35 webserver maldet(19225): {scan} clamscan returned an error, check /usr/local/maldetect/logs/clamscan_log for details! Feb 23 2024 07:13:35 webserver maldet(19225): {scan} scan completed on : files 370, malware hits 0, cleaned hits 0, time 883s Feb 23 2024 07:13:35 webserver maldet(19225): {scan} scan report saved, to view run: maldet --report 240223-0658.19225 Feb 24 2024 06:59:56 webserver maldet(10403): {update} checking for available updates... Feb 24 2024 06:59:57 webserver maldet(10403): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Feb 24 2024 06:59:57 webserver maldet(10403): {update} hashing install files and checking against server... Feb 24 2024 06:59:57 webserver maldet(10403): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Feb 24 2024 06:59:57 webserver maldet(10403): {update} latest version already installed. Feb 24 2024 06:59:57 webserver maldet(10539): {sigup} performing signature update check... Feb 24 2024 06:59:57 webserver maldet(10539): {sigup} local signature set is version 202402221338720 Feb 24 2024 06:59:57 webserver maldet(10539): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Feb 24 2024 06:59:57 webserver maldet(10539): {sigup} latest signature set already installed Feb 24 2024 06:59:57 webserver maldet(10654): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Feb 24 2024 06:59:57 webserver maldet(10654): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Feb 24 2024 06:59:57 webserver maldet(10654): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Feb 24 2024 06:59:57 webserver maldet(10654): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Feb 24 2024 06:59:57 webserver maldet(10654): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Feb 24 2024 07:03:20 webserver maldet(10654): {scan} file list completed in 203s, found 634 files... Feb 24 2024 07:03:20 webserver maldet(10654): {scan} found clamav binary at /usr/bin/clamscan, using clamav scanner engine... Feb 24 2024 07:03:20 webserver maldet(10654): {scan} scan of (634 files) in progress... Feb 24 2024 07:03:52 webserver maldet(10654): {scan} clamscan returned an error, check /usr/local/maldetect/logs/clamscan_log for details! Feb 24 2024 07:03:52 webserver maldet(10654): {scan} scan completed on : files 634, malware hits 0, cleaned hits 0, time 235s Feb 24 2024 07:03:52 webserver maldet(10654): {scan} scan report saved, to view run: maldet --report 240224-0659.10654 Feb 25 2024 06:56:08 webserver maldet(4282): {update} checking for available updates... Feb 25 2024 06:56:08 webserver maldet(4282): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Feb 25 2024 06:56:08 webserver maldet(4282): {update} hashing install files and checking against server... Feb 25 2024 06:56:08 webserver maldet(4282): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Feb 25 2024 06:56:08 webserver maldet(4282): {update} latest version already installed. Feb 25 2024 06:56:08 webserver maldet(4418): {sigup} performing signature update check... Feb 25 2024 06:56:08 webserver maldet(4418): {sigup} local signature set is version 202402221338720 Feb 25 2024 06:56:08 webserver maldet(4418): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Feb 25 2024 06:56:08 webserver maldet(4418): {sigup} latest signature set already installed Feb 25 2024 06:56:08 webserver maldet(4533): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Feb 25 2024 06:56:09 webserver maldet(4533): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Feb 25 2024 06:56:09 webserver maldet(4533): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Feb 25 2024 06:56:09 webserver maldet(4533): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Feb 25 2024 06:56:09 webserver maldet(4533): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Feb 25 2024 06:56:36 webserver maldet(4533): {scan} file list completed in 27s, found 291 files... Feb 25 2024 06:56:36 webserver maldet(4533): {scan} found clamav binary at /usr/bin/clamscan, using clamav scanner engine... Feb 25 2024 06:56:36 webserver maldet(4533): {scan} scan of (291 files) in progress... Feb 25 2024 06:57:04 webserver maldet(4533): {scan} clamscan returned an error, check /usr/local/maldetect/logs/clamscan_log for details! Feb 25 2024 06:57:05 webserver maldet(4533): {scan} scan completed on : files 291, malware hits 0, cleaned hits 0, time 56s Feb 25 2024 06:57:05 webserver maldet(4533): {scan} scan report saved, to view run: maldet --report 240225-0656.4533 Feb 26 2024 06:56:23 webserver maldet(30657): {update} checking for available updates... Feb 26 2024 06:56:23 webserver maldet(30657): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Feb 26 2024 06:56:23 webserver maldet(30657): {update} hashing install files and checking against server... Feb 26 2024 06:56:23 webserver maldet(30657): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Feb 26 2024 06:56:23 webserver maldet(30657): {update} latest version already installed. Feb 26 2024 06:56:23 webserver maldet(30793): {sigup} performing signature update check... Feb 26 2024 06:56:23 webserver maldet(30793): {sigup} local signature set is version 202402221338720 Feb 26 2024 06:56:23 webserver maldet(30793): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Feb 26 2024 06:56:23 webserver maldet(30793): {sigup} new signature set 202402252092648 available Feb 26 2024 06:56:23 webserver maldet(30793): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Feb 26 2024 06:56:23 webserver maldet(30793): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Feb 26 2024 06:56:23 webserver maldet(30793): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Feb 26 2024 06:56:23 webserver maldet(30793): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Feb 26 2024 06:56:23 webserver maldet(30793): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Feb 26 2024 06:56:24 webserver maldet(30793): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Feb 26 2024 06:56:24 webserver maldet(30793): {sigup} verified md5sum of maldet-sigpack.tgz Feb 26 2024 06:56:24 webserver maldet(30793): {sigup} unpacked and installed maldet-sigpack.tgz Feb 26 2024 06:56:24 webserver maldet(30793): {sigup} verified md5sum of maldet-clean.tgz Feb 26 2024 06:56:24 webserver maldet(30793): {sigup} unpacked and installed maldet-clean.tgz Feb 26 2024 06:56:24 webserver maldet(30793): {sigup} signature set update completed Feb 26 2024 06:56:24 webserver maldet(30793): {sigup} 17637 signatures (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Feb 26 2024 06:56:24 webserver maldet(31024): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Feb 26 2024 06:56:24 webserver maldet(31024): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Feb 26 2024 06:56:24 webserver maldet(31024): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Feb 26 2024 06:56:24 webserver maldet(31024): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Feb 26 2024 06:56:24 webserver maldet(31024): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Feb 26 2024 07:00:31 webserver maldet(31024): {scan} file list completed in 247s, found 1171 files... Feb 26 2024 07:00:31 webserver maldet(31024): {scan} found clamav binary at /usr/bin/clamscan, using clamav scanner engine... Feb 26 2024 07:00:31 webserver maldet(31024): {scan} scan of (1171 files) in progress... Feb 26 2024 07:01:09 webserver maldet(31024): {scan} clamscan returned an error, check /usr/local/maldetect/logs/clamscan_log for details! Feb 26 2024 07:01:09 webserver maldet(31024): {scan} scan completed on : files 1171, malware hits 0, cleaned hits 0, time 285s Feb 26 2024 07:01:09 webserver maldet(31024): {scan} scan report saved, to view run: maldet --report 240226-0656.31024 Feb 27 2024 06:59:16 webserver maldet(28629): {update} checking for available updates... Feb 27 2024 06:59:16 webserver maldet(28629): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Feb 27 2024 06:59:16 webserver maldet(28629): {update} hashing install files and checking against server... Feb 27 2024 06:59:16 webserver maldet(28629): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Feb 27 2024 06:59:16 webserver maldet(28629): {update} latest version already installed. Feb 27 2024 06:59:16 webserver maldet(28765): {sigup} performing signature update check... Feb 27 2024 06:59:16 webserver maldet(28765): {sigup} local signature set is version 202402252092648 Feb 27 2024 06:59:16 webserver maldet(28765): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Feb 27 2024 06:59:16 webserver maldet(28765): {sigup} latest signature set already installed Feb 27 2024 06:59:16 webserver maldet(28879): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Feb 27 2024 06:59:16 webserver maldet(28879): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Feb 27 2024 06:59:17 webserver maldet(28879): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Feb 27 2024 06:59:17 webserver maldet(28879): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Feb 27 2024 06:59:17 webserver maldet(28879): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Feb 27 2024 06:59:34 webserver maldet(28879): {scan} file list completed in 17s, found 797 files... Feb 27 2024 06:59:34 webserver maldet(28879): {scan} found clamav binary at /usr/bin/clamscan, using clamav scanner engine... Feb 27 2024 06:59:34 webserver maldet(28879): {scan} scan of (797 files) in progress... Feb 27 2024 07:00:09 webserver maldet(28879): {scan} scan completed on : files 797, malware hits 0, cleaned hits 0, time 53s Feb 27 2024 07:00:09 webserver maldet(28879): {scan} scan report saved, to view run: maldet --report 240227-0659.28879 Feb 28 2024 06:56:16 webserver maldet(25262): {update} checking for available updates... Feb 28 2024 06:56:16 webserver maldet(25262): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Feb 28 2024 06:56:16 webserver maldet(25262): {update} hashing install files and checking against server... Feb 28 2024 06:56:16 webserver maldet(25262): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Feb 28 2024 06:56:16 webserver maldet(25262): {update} latest version already installed. Feb 28 2024 06:56:16 webserver maldet(25398): {sigup} performing signature update check... Feb 28 2024 06:56:16 webserver maldet(25398): {sigup} local signature set is version 202402252092648 Feb 28 2024 06:56:16 webserver maldet(25398): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Feb 28 2024 06:56:16 webserver maldet(25398): {sigup} latest signature set already installed Feb 28 2024 06:56:16 webserver maldet(25512): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Feb 28 2024 06:56:16 webserver maldet(25512): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Feb 28 2024 06:56:16 webserver maldet(25512): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Feb 28 2024 06:56:16 webserver maldet(25512): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Feb 28 2024 06:56:16 webserver maldet(25512): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Feb 28 2024 06:56:30 webserver maldet(25512): {scan} file list completed in 14s, found 257 files... Feb 28 2024 06:56:30 webserver maldet(25512): {scan} found clamav binary at /usr/bin/clamscan, using clamav scanner engine... Feb 28 2024 06:56:30 webserver maldet(25512): {scan} scan of (257 files) in progress... Feb 28 2024 06:56:57 webserver maldet(25512): {scan} clamscan returned an error, check /usr/local/maldetect/logs/clamscan_log for details! Feb 28 2024 06:56:57 webserver maldet(25512): {scan} scan completed on : files 257, malware hits 0, cleaned hits 0, time 41s Feb 28 2024 06:56:57 webserver maldet(25512): {scan} scan report saved, to view run: maldet --report 240228-0656.25512 Feb 29 2024 06:57:29 webserver maldet(13911): {update} checking for available updates... Feb 29 2024 06:57:29 webserver maldet(13911): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Feb 29 2024 06:57:29 webserver maldet(13911): {update} hashing install files and checking against server... Feb 29 2024 06:57:30 webserver maldet(13911): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Feb 29 2024 06:57:30 webserver maldet(13911): {update} latest version already installed. Feb 29 2024 06:57:30 webserver maldet(14047): {sigup} performing signature update check... Feb 29 2024 06:57:30 webserver maldet(14047): {sigup} local signature set is version 202402252092648 Feb 29 2024 06:57:30 webserver maldet(14047): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Feb 29 2024 06:57:30 webserver maldet(14047): {sigup} new signature set 202402282845466 available Feb 29 2024 06:57:30 webserver maldet(14047): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Feb 29 2024 06:57:30 webserver maldet(14047): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Feb 29 2024 06:57:30 webserver maldet(14047): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Feb 29 2024 06:57:30 webserver maldet(14047): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Feb 29 2024 06:57:30 webserver maldet(14047): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Feb 29 2024 06:57:30 webserver maldet(14047): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Feb 29 2024 06:57:30 webserver maldet(14047): {sigup} verified md5sum of maldet-sigpack.tgz Feb 29 2024 06:57:30 webserver maldet(14047): {sigup} unpacked and installed maldet-sigpack.tgz Feb 29 2024 06:57:30 webserver maldet(14047): {sigup} verified md5sum of maldet-clean.tgz Feb 29 2024 06:57:31 webserver maldet(14047): {sigup} unpacked and installed maldet-clean.tgz Feb 29 2024 06:57:31 webserver maldet(14047): {sigup} signature set update completed Feb 29 2024 06:57:31 webserver maldet(14047): {sigup} 17637 signatures (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Feb 29 2024 06:57:31 webserver maldet(14278): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Feb 29 2024 06:57:31 webserver maldet(14278): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Feb 29 2024 06:57:31 webserver maldet(14278): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Feb 29 2024 06:57:31 webserver maldet(14278): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Feb 29 2024 06:57:31 webserver maldet(14278): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Feb 29 2024 07:02:55 webserver maldet(14278): {scan} file list completed in 324s, found 258 files... Feb 29 2024 07:02:55 webserver maldet(14278): {scan} found clamav binary at /usr/bin/clamscan, using clamav scanner engine... Feb 29 2024 07:02:55 webserver maldet(14278): {scan} scan of (258 files) in progress... Feb 29 2024 07:03:23 webserver maldet(14278): {scan} scan completed on : files 258, malware hits 0, cleaned hits 0, time 352s Feb 29 2024 07:03:23 webserver maldet(14278): {scan} scan report saved, to view run: maldet --report 240229-0657.14278 Mar 01 2024 06:56:07 webserver maldet(3624): {update} checking for available updates... Mar 01 2024 06:56:07 webserver maldet(3624): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Mar 01 2024 06:56:07 webserver maldet(3624): {update} hashing install files and checking against server... Mar 01 2024 06:56:07 webserver maldet(3624): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Mar 01 2024 06:56:07 webserver maldet(3624): {update} latest version already installed. Mar 01 2024 06:56:07 webserver maldet(3760): {sigup} performing signature update check... Mar 01 2024 06:56:07 webserver maldet(3760): {sigup} local signature set is version 202402282845466 Mar 01 2024 06:56:07 webserver maldet(3760): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Mar 01 2024 06:56:07 webserver maldet(3760): {sigup} latest signature set already installed Mar 01 2024 06:56:08 webserver maldet(3875): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Mar 01 2024 06:56:08 webserver maldet(3875): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Mar 01 2024 06:56:08 webserver maldet(3875): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Mar 01 2024 06:56:08 webserver maldet(3875): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Mar 01 2024 06:56:08 webserver maldet(3875): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Mar 01 2024 06:59:20 webserver maldet(3875): {scan} file list completed in 192s, found 438 files... Mar 01 2024 06:59:20 webserver maldet(3875): {scan} found clamav binary at /usr/bin/clamscan, using clamav scanner engine... Mar 01 2024 06:59:20 webserver maldet(3875): {scan} scan of (438 files) in progress... Mar 01 2024 06:59:50 webserver maldet(3875): {scan} clamscan returned an error, check /usr/local/maldetect/logs/clamscan_log for details! Mar 01 2024 06:59:50 webserver maldet(3875): {scan} scan completed on : files 438, malware hits 0, cleaned hits 0, time 222s Mar 01 2024 06:59:50 webserver maldet(3875): {scan} scan report saved, to view run: maldet --report 240301-0656.3875 Mar 02 2024 06:56:09 webserver maldet(27352): {update} checking for available updates... Mar 02 2024 06:56:09 webserver maldet(27352): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Mar 02 2024 06:56:09 webserver maldet(27352): {update} hashing install files and checking against server... Mar 02 2024 06:56:09 webserver maldet(27352): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Mar 02 2024 06:56:09 webserver maldet(27352): {update} latest version already installed. Mar 02 2024 06:56:09 webserver maldet(27488): {sigup} performing signature update check... Mar 02 2024 06:56:09 webserver maldet(27488): {sigup} local signature set is version 202402282845466 Mar 02 2024 06:56:09 webserver maldet(27488): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Mar 02 2024 06:56:09 webserver maldet(27488): {sigup} new signature set 202403013577493 available Mar 02 2024 06:56:09 webserver maldet(27488): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Mar 02 2024 06:56:09 webserver maldet(27488): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Mar 02 2024 06:56:09 webserver maldet(27488): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Mar 02 2024 06:56:09 webserver maldet(27488): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Mar 02 2024 06:56:09 webserver maldet(27488): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Mar 02 2024 06:56:09 webserver maldet(27488): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Mar 02 2024 06:56:09 webserver maldet(27488): {sigup} verified md5sum of maldet-sigpack.tgz Mar 02 2024 06:56:10 webserver maldet(27488): {sigup} unpacked and installed maldet-sigpack.tgz Mar 02 2024 06:56:10 webserver maldet(27488): {sigup} verified md5sum of maldet-clean.tgz Mar 02 2024 06:56:10 webserver maldet(27488): {sigup} unpacked and installed maldet-clean.tgz Mar 02 2024 06:56:10 webserver maldet(27488): {sigup} signature set update completed Mar 02 2024 06:56:10 webserver maldet(27488): {sigup} 17637 signatures (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Mar 02 2024 06:56:10 webserver maldet(27723): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Mar 02 2024 06:56:10 webserver maldet(27723): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Mar 02 2024 06:56:10 webserver maldet(27723): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Mar 02 2024 06:56:10 webserver maldet(27723): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Mar 02 2024 06:56:10 webserver maldet(27723): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Mar 02 2024 06:59:17 webserver maldet(27723): {scan} file list completed in 187s, found 751 files... Mar 02 2024 06:59:17 webserver maldet(27723): {scan} found clamav binary at /usr/bin/clamscan, using clamav scanner engine... Mar 02 2024 06:59:17 webserver maldet(27723): {scan} scan of (751 files) in progress... Mar 02 2024 06:59:52 webserver maldet(27723): {scan} clamscan returned an error, check /usr/local/maldetect/logs/clamscan_log for details! Mar 02 2024 06:59:52 webserver maldet(27723): {scan} scan completed on : files 751, malware hits 0, cleaned hits 0, time 222s Mar 02 2024 06:59:52 webserver maldet(27723): {scan} scan report saved, to view run: maldet --report 240302-0656.27723 Mar 03 2024 07:06:21 webserver maldet(25073): {update} checking for available updates... Mar 03 2024 07:06:21 webserver maldet(25073): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Mar 03 2024 07:06:21 webserver maldet(25073): {update} hashing install files and checking against server... Mar 03 2024 07:06:21 webserver maldet(25073): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Mar 03 2024 07:06:21 webserver maldet(25073): {update} latest version already installed. Mar 03 2024 07:06:21 webserver maldet(25209): {sigup} performing signature update check... Mar 03 2024 07:06:21 webserver maldet(25209): {sigup} local signature set is version 202403013577493 Mar 03 2024 07:06:21 webserver maldet(25209): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Mar 03 2024 07:06:21 webserver maldet(25209): {sigup} latest signature set already installed Mar 03 2024 07:06:21 webserver maldet(25323): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Mar 03 2024 07:06:22 webserver maldet(25323): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Mar 03 2024 07:06:22 webserver maldet(25323): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Mar 03 2024 07:06:22 webserver maldet(25323): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Mar 03 2024 07:06:22 webserver maldet(25323): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Mar 03 2024 07:09:50 webserver maldet(25323): {scan} file list completed in 208s, found 704 files... Mar 03 2024 07:09:50 webserver maldet(25323): {scan} found clamav binary at /usr/bin/clamscan, using clamav scanner engine... Mar 03 2024 07:09:50 webserver maldet(25323): {scan} scan of (704 files) in progress... Mar 03 2024 07:10:58 webserver maldet(25323): {scan} clamscan returned an error, check /usr/local/maldetect/logs/clamscan_log for details! Mar 03 2024 07:10:58 webserver maldet(25323): {scan} scan completed on : files 704, malware hits 0, cleaned hits 0, time 277s Mar 03 2024 07:10:58 webserver maldet(25323): {scan} scan report saved, to view run: maldet --report 240303-0706.25323 Mar 04 2024 06:58:51 webserver maldet(15048): {update} checking for available updates... Mar 04 2024 06:58:51 webserver maldet(15048): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Mar 04 2024 06:58:52 webserver maldet(15048): {update} hashing install files and checking against server... Mar 04 2024 06:58:52 webserver maldet(15048): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Mar 04 2024 06:58:52 webserver maldet(15048): {update} latest version already installed. Mar 04 2024 06:58:52 webserver maldet(15184): {sigup} performing signature update check... Mar 04 2024 06:58:52 webserver maldet(15184): {sigup} local signature set is version 202403013577493 Mar 04 2024 06:58:52 webserver maldet(15184): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Mar 04 2024 06:58:52 webserver maldet(15184): {sigup} latest signature set already installed Mar 04 2024 06:58:52 webserver maldet(15299): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Mar 04 2024 06:58:52 webserver maldet(15299): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Mar 04 2024 06:58:52 webserver maldet(15299): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Mar 04 2024 06:58:52 webserver maldet(15299): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Mar 04 2024 06:58:52 webserver maldet(15299): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Mar 04 2024 07:03:56 webserver maldet(15299): {scan} file list completed in 304s, found 867 files... Mar 04 2024 07:03:56 webserver maldet(15299): {scan} found clamav binary at /usr/bin/clamscan, using clamav scanner engine... Mar 04 2024 07:03:56 webserver maldet(15299): {scan} scan of (867 files) in progress... Mar 04 2024 07:04:31 webserver maldet(15299): {scan} clamscan returned an error, check /usr/local/maldetect/logs/clamscan_log for details! Mar 04 2024 07:04:31 webserver maldet(15299): {scan} scan completed on : files 867, malware hits 0, cleaned hits 0, time 339s Mar 04 2024 07:04:31 webserver maldet(15299): {scan} scan report saved, to view run: maldet --report 240304-0658.15299 Mar 05 2024 06:59:04 webserver maldet(11925): {update} checking for available updates... Mar 05 2024 06:59:04 webserver maldet(11925): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Mar 05 2024 06:59:04 webserver maldet(11925): {update} hashing install files and checking against server... Mar 05 2024 06:59:04 webserver maldet(11925): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Mar 05 2024 06:59:04 webserver maldet(11925): {update} latest version already installed. Mar 05 2024 06:59:04 webserver maldet(12061): {sigup} performing signature update check... Mar 05 2024 06:59:04 webserver maldet(12061): {sigup} local signature set is version 202403013577493 Mar 05 2024 06:59:04 webserver maldet(12061): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Mar 05 2024 06:59:04 webserver maldet(12061): {sigup} new signature set 20240304137882 available Mar 05 2024 06:59:04 webserver maldet(12061): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Mar 05 2024 06:59:04 webserver maldet(12061): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Mar 05 2024 06:59:04 webserver maldet(12061): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Mar 05 2024 06:59:04 webserver maldet(12061): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Mar 05 2024 06:59:04 webserver maldet(12061): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Mar 05 2024 06:59:04 webserver maldet(12061): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Mar 05 2024 06:59:05 webserver maldet(12061): {sigup} verified md5sum of maldet-sigpack.tgz Mar 05 2024 06:59:05 webserver maldet(12061): {sigup} unpacked and installed maldet-sigpack.tgz Mar 05 2024 06:59:05 webserver maldet(12061): {sigup} verified md5sum of maldet-clean.tgz Mar 05 2024 06:59:05 webserver maldet(12061): {sigup} unpacked and installed maldet-clean.tgz Mar 05 2024 06:59:05 webserver maldet(12061): {sigup} signature set update completed Mar 05 2024 06:59:05 webserver maldet(12061): {sigup} 17637 signatures (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Mar 05 2024 06:59:05 webserver maldet(12292): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Mar 05 2024 06:59:05 webserver maldet(12292): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Mar 05 2024 06:59:05 webserver maldet(12292): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Mar 05 2024 06:59:05 webserver maldet(12292): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Mar 05 2024 06:59:05 webserver maldet(12292): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Mar 05 2024 07:02:42 webserver maldet(12292): {scan} file list completed in 217s, found 432 files... Mar 05 2024 07:02:42 webserver maldet(12292): {scan} found clamav binary at /usr/bin/clamscan, using clamav scanner engine... Mar 05 2024 07:02:42 webserver maldet(12292): {scan} scan of (432 files) in progress... Mar 05 2024 07:03:16 webserver maldet(12292): {scan} clamscan returned an error, check /usr/local/maldetect/logs/clamscan_log for details! Mar 05 2024 07:03:16 webserver maldet(12292): {scan} scan completed on : files 432, malware hits 0, cleaned hits 0, time 251s Mar 05 2024 07:03:16 webserver maldet(12292): {scan} scan report saved, to view run: maldet --report 240305-0659.12292 Mar 06 2024 06:57:48 webserver maldet(7137): {update} checking for available updates... Mar 06 2024 06:57:48 webserver maldet(7137): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Mar 06 2024 06:57:48 webserver maldet(7137): {update} hashing install files and checking against server... Mar 06 2024 06:57:48 webserver maldet(7137): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Mar 06 2024 06:57:48 webserver maldet(7137): {update} latest version already installed. Mar 06 2024 06:57:48 webserver maldet(7273): {sigup} performing signature update check... Mar 06 2024 06:57:48 webserver maldet(7273): {sigup} local signature set is version 20240304137882 Mar 06 2024 06:57:49 webserver maldet(7273): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Mar 06 2024 06:57:49 webserver maldet(7273): {sigup} latest signature set already installed Mar 06 2024 06:57:49 webserver maldet(7390): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Mar 06 2024 06:57:49 webserver maldet(7390): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Mar 06 2024 06:57:49 webserver maldet(7390): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Mar 06 2024 06:57:49 webserver maldet(7390): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Mar 06 2024 06:57:49 webserver maldet(7390): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Mar 06 2024 07:00:59 webserver maldet(7390): {scan} file list completed in 190s, found 768 files... Mar 06 2024 07:00:59 webserver maldet(7390): {scan} found clamav binary at /usr/bin/clamscan, using clamav scanner engine... Mar 06 2024 07:00:59 webserver maldet(7390): {scan} scan of (768 files) in progress... Mar 06 2024 07:01:49 webserver maldet(7390): {scan} clamscan returned an error, check /usr/local/maldetect/logs/clamscan_log for details! Mar 06 2024 07:01:49 webserver maldet(7390): {scan} scan completed on : files 768, malware hits 0, cleaned hits 0, time 240s Mar 06 2024 07:01:49 webserver maldet(7390): {scan} scan report saved, to view run: maldet --report 240306-0657.7390 Mar 07 2024 07:01:33 webserver maldet(11225): {update} checking for available updates... Mar 07 2024 07:01:33 webserver maldet(11225): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Mar 07 2024 07:01:33 webserver maldet(11225): {update} hashing install files and checking against server... Mar 07 2024 07:01:33 webserver maldet(11225): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Mar 07 2024 07:01:33 webserver maldet(11225): {update} latest version already installed. Mar 07 2024 07:01:33 webserver maldet(11361): {sigup} performing signature update check... Mar 07 2024 07:01:33 webserver maldet(11361): {sigup} local signature set is version 20240304137882 Mar 07 2024 07:01:33 webserver maldet(11361): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Mar 07 2024 07:01:33 webserver maldet(11361): {sigup} latest signature set already installed Mar 07 2024 07:01:33 webserver maldet(11476): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Mar 07 2024 07:01:33 webserver maldet(11476): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Mar 07 2024 07:01:33 webserver maldet(11476): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Mar 07 2024 07:01:33 webserver maldet(11476): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Mar 07 2024 07:01:33 webserver maldet(11476): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Mar 07 2024 07:04:03 webserver maldet(11476): {scan} file list completed in 150s, found 290 files... Mar 07 2024 07:04:03 webserver maldet(11476): {scan} found clamav binary at /usr/bin/clamscan, using clamav scanner engine... Mar 07 2024 07:04:03 webserver maldet(11476): {scan} scan of (290 files) in progress... Mar 07 2024 07:04:37 webserver maldet(11476): {scan} clamscan returned an error, check /usr/local/maldetect/logs/clamscan_log for details! Mar 07 2024 07:04:37 webserver maldet(11476): {scan} scan completed on : files 290, malware hits 0, cleaned hits 0, time 184s Mar 07 2024 07:04:37 webserver maldet(11476): {scan} scan report saved, to view run: maldet --report 240307-0701.11476 Mar 08 2024 06:59:38 webserver maldet(31076): {update} checking for available updates... Mar 08 2024 06:59:38 webserver maldet(31076): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Mar 08 2024 06:59:38 webserver maldet(31076): {update} hashing install files and checking against server... Mar 08 2024 06:59:38 webserver maldet(31076): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Mar 08 2024 06:59:38 webserver maldet(31076): {update} latest version already installed. Mar 08 2024 06:59:38 webserver maldet(31215): {sigup} performing signature update check... Mar 08 2024 06:59:38 webserver maldet(31215): {sigup} local signature set is version 20240304137882 Mar 08 2024 06:59:38 webserver maldet(31215): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Mar 08 2024 06:59:38 webserver maldet(31215): {sigup} new signature set 20240307890851 available Mar 08 2024 06:59:38 webserver maldet(31215): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Mar 08 2024 06:59:38 webserver maldet(31215): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Mar 08 2024 06:59:38 webserver maldet(31215): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Mar 08 2024 06:59:38 webserver maldet(31215): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Mar 08 2024 06:59:38 webserver maldet(31215): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Mar 08 2024 06:59:38 webserver maldet(31215): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Mar 08 2024 06:59:38 webserver maldet(31215): {sigup} verified md5sum of maldet-sigpack.tgz Mar 08 2024 06:59:39 webserver maldet(31215): {sigup} unpacked and installed maldet-sigpack.tgz Mar 08 2024 06:59:39 webserver maldet(31215): {sigup} verified md5sum of maldet-clean.tgz Mar 08 2024 06:59:39 webserver maldet(31215): {sigup} unpacked and installed maldet-clean.tgz Mar 08 2024 06:59:39 webserver maldet(31215): {sigup} signature set update completed Mar 08 2024 06:59:39 webserver maldet(31215): {sigup} 17637 signatures (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Mar 08 2024 06:59:39 webserver maldet(31446): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Mar 08 2024 06:59:39 webserver maldet(31446): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Mar 08 2024 06:59:39 webserver maldet(31446): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Mar 08 2024 06:59:39 webserver maldet(31446): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Mar 08 2024 06:59:39 webserver maldet(31446): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Mar 08 2024 07:02:11 webserver maldet(31446): {scan} file list completed in 152s, found 218 files... Mar 08 2024 07:02:11 webserver maldet(31446): {scan} found clamav binary at /usr/bin/clamscan, using clamav scanner engine... Mar 08 2024 07:02:11 webserver maldet(31446): {scan} scan of (218 files) in progress... Mar 08 2024 07:03:17 webserver maldet(31446): {scan} clamscan returned an error, check /usr/local/maldetect/logs/clamscan_log for details! Mar 08 2024 07:03:17 webserver maldet(31446): {scan} scan completed on : files 218, malware hits 0, cleaned hits 0, time 218s Mar 08 2024 07:03:17 webserver maldet(31446): {scan} scan report saved, to view run: maldet --report 240308-0659.31446 Mar 09 2024 06:58:20 webserver maldet(28428): {update} checking for available updates... Mar 09 2024 06:58:21 webserver maldet(28428): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Mar 09 2024 06:58:21 webserver maldet(28428): {update} hashing install files and checking against server... Mar 09 2024 06:58:21 webserver maldet(28428): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Mar 09 2024 06:58:21 webserver maldet(28428): {update} latest version already installed. Mar 09 2024 06:58:21 webserver maldet(28564): {sigup} performing signature update check... Mar 09 2024 06:58:21 webserver maldet(28564): {sigup} local signature set is version 20240307890851 Mar 09 2024 06:58:21 webserver maldet(28564): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Mar 09 2024 06:58:21 webserver maldet(28564): {sigup} latest signature set already installed Mar 09 2024 06:58:21 webserver maldet(28678): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Mar 09 2024 06:58:21 webserver maldet(28678): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Mar 09 2024 06:58:21 webserver maldet(28678): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Mar 09 2024 06:58:21 webserver maldet(28678): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Mar 09 2024 06:58:21 webserver maldet(28678): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Mar 09 2024 07:01:15 webserver maldet(28678): {scan} file list completed in 174s, found 75 files... Mar 09 2024 07:01:15 webserver maldet(28678): {scan} found clamav binary at /usr/bin/clamscan, using clamav scanner engine... Mar 09 2024 07:01:15 webserver maldet(28678): {scan} scan of (75 files) in progress... Mar 09 2024 07:01:44 webserver maldet(28678): {scan} clamscan returned an error, check /usr/local/maldetect/logs/clamscan_log for details! Mar 09 2024 07:01:44 webserver maldet(28678): {scan} scan completed on : files 75, malware hits 0, cleaned hits 0, time 203s Mar 09 2024 07:01:44 webserver maldet(28678): {scan} scan report saved, to view run: maldet --report 240309-0658.28678 Mar 10 2024 07:00:05 webserver maldet(26141): {update} checking for available updates... Mar 10 2024 07:00:05 webserver maldet(26141): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Mar 10 2024 07:00:05 webserver maldet(26141): {update} hashing install files and checking against server... Mar 10 2024 07:00:06 webserver maldet(26141): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Mar 10 2024 07:00:06 webserver maldet(26141): {update} latest version already installed. Mar 10 2024 07:00:06 webserver maldet(26277): {sigup} performing signature update check... Mar 10 2024 07:00:06 webserver maldet(26277): {sigup} local signature set is version 20240307890851 Mar 10 2024 07:00:06 webserver maldet(26277): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Mar 10 2024 07:00:06 webserver maldet(26277): {sigup} latest signature set already installed Mar 10 2024 07:00:06 webserver maldet(26392): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Mar 10 2024 07:00:07 webserver maldet(26392): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Mar 10 2024 07:00:07 webserver maldet(26392): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Mar 10 2024 07:00:07 webserver maldet(26392): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Mar 10 2024 07:00:07 webserver maldet(26392): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Mar 10 2024 07:06:32 webserver maldet(26392): {scan} file list completed in 385s, found 163 files... Mar 10 2024 07:06:32 webserver maldet(26392): {scan} found clamav binary at /usr/bin/clamscan, using clamav scanner engine... Mar 10 2024 07:06:32 webserver maldet(26392): {scan} scan of (163 files) in progress... Mar 10 2024 07:07:03 webserver maldet(26392): {scan} clamscan returned an error, check /usr/local/maldetect/logs/clamscan_log for details! Mar 10 2024 07:07:03 webserver maldet(26392): {scan} scan completed on : files 163, malware hits 0, cleaned hits 0, time 417s Mar 10 2024 07:07:03 webserver maldet(26392): {scan} scan report saved, to view run: maldet --report 240310-0700.26392 Mar 11 2024 07:09:43 webserver maldet(21715): {update} checking for available updates... Mar 11 2024 07:09:43 webserver maldet(21715): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Mar 11 2024 07:09:44 webserver maldet(21715): {update} hashing install files and checking against server... Mar 11 2024 07:09:44 webserver maldet(21715): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Mar 11 2024 07:09:44 webserver maldet(21715): {update} latest version already installed. Mar 11 2024 07:09:44 webserver maldet(21851): {sigup} performing signature update check... Mar 11 2024 07:09:44 webserver maldet(21851): {sigup} local signature set is version 20240307890851 Mar 11 2024 07:09:44 webserver maldet(21851): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Mar 11 2024 07:09:44 webserver maldet(21851): {sigup} latest signature set already installed Mar 11 2024 07:09:44 webserver maldet(21966): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Mar 11 2024 07:09:45 webserver maldet(21966): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Mar 11 2024 07:09:45 webserver maldet(21966): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Mar 11 2024 07:09:45 webserver maldet(21966): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Mar 11 2024 07:09:45 webserver maldet(21966): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Mar 11 2024 07:15:16 webserver maldet(21966): {scan} file list completed in 331s, found 401 files... Mar 11 2024 07:15:16 webserver maldet(21966): {scan} found clamav binary at /usr/bin/clamscan, using clamav scanner engine... Mar 11 2024 07:15:16 webserver maldet(21966): {scan} scan of (401 files) in progress... Mar 11 2024 07:16:24 webserver maldet(21966): {scan} clamscan returned an error, check /usr/local/maldetect/logs/clamscan_log for details! Mar 11 2024 07:16:24 webserver maldet(21966): {scan} scan completed on : files 401, malware hits 0, cleaned hits 0, time 400s Mar 11 2024 07:16:24 webserver maldet(21966): {scan} scan report saved, to view run: maldet --report 240311-0709.21966 Mar 12 2024 06:59:26 webserver maldet(9782): {update} checking for available updates... Mar 12 2024 06:59:27 webserver maldet(9782): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Mar 12 2024 06:59:27 webserver maldet(9782): {update} hashing install files and checking against server... Mar 12 2024 06:59:27 webserver maldet(9782): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Mar 12 2024 06:59:27 webserver maldet(9782): {update} latest version already installed. Mar 12 2024 06:59:27 webserver maldet(9918): {sigup} performing signature update check... Mar 12 2024 06:59:27 webserver maldet(9918): {sigup} local signature set is version 20240307890851 Mar 12 2024 06:59:27 webserver maldet(9918): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Mar 12 2024 06:59:27 webserver maldet(9918): {sigup} new signature set 202403101574133 available Mar 12 2024 06:59:27 webserver maldet(9918): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Mar 12 2024 06:59:27 webserver maldet(9918): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Mar 12 2024 06:59:27 webserver maldet(9918): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Mar 12 2024 06:59:27 webserver maldet(9918): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Mar 12 2024 06:59:27 webserver maldet(9918): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Mar 12 2024 06:59:27 webserver maldet(9918): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Mar 12 2024 06:59:27 webserver maldet(9918): {sigup} verified md5sum of maldet-sigpack.tgz Mar 12 2024 06:59:29 webserver maldet(9918): {sigup} unpacked and installed maldet-sigpack.tgz Mar 12 2024 06:59:29 webserver maldet(9918): {sigup} verified md5sum of maldet-clean.tgz Mar 12 2024 06:59:29 webserver maldet(9918): {sigup} unpacked and installed maldet-clean.tgz Mar 12 2024 06:59:29 webserver maldet(9918): {sigup} signature set update completed Mar 12 2024 06:59:29 webserver maldet(9918): {sigup} 17637 signatures (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Mar 12 2024 06:59:29 webserver maldet(10149): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Mar 12 2024 06:59:30 webserver maldet(10149): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Mar 12 2024 06:59:30 webserver maldet(10149): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Mar 12 2024 06:59:30 webserver maldet(10149): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Mar 12 2024 06:59:30 webserver maldet(10149): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Mar 12 2024 07:13:58 webserver maldet(10149): {scan} file list completed in 868s, found 356 files... Mar 12 2024 07:13:58 webserver maldet(10149): {scan} found clamav binary at /usr/bin/clamscan, using clamav scanner engine... Mar 12 2024 07:13:58 webserver maldet(10149): {scan} scan of (356 files) in progress... Mar 12 2024 07:14:39 webserver maldet(10149): {scan} clamscan returned an error, check /usr/local/maldetect/logs/clamscan_log for details! Mar 12 2024 07:14:39 webserver maldet(10149): {scan} scan completed on : files 356, malware hits 0, cleaned hits 0, time 910s Mar 12 2024 07:14:39 webserver maldet(10149): {scan} scan report saved, to view run: maldet --report 240312-0659.10149 Mar 13 2024 06:59:33 webserver maldet(1790): {update} checking for available updates... Mar 13 2024 06:59:33 webserver maldet(1790): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Mar 13 2024 06:59:33 webserver maldet(1790): {update} hashing install files and checking against server... Mar 13 2024 06:59:33 webserver maldet(1790): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Mar 13 2024 06:59:33 webserver maldet(1790): {update} latest version already installed. Mar 13 2024 06:59:34 webserver maldet(1926): {sigup} performing signature update check... Mar 13 2024 06:59:34 webserver maldet(1926): {sigup} local signature set is version 202403101574133 Mar 13 2024 06:59:34 webserver maldet(1926): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Mar 13 2024 06:59:34 webserver maldet(1926): {sigup} latest signature set already installed Mar 13 2024 06:59:34 webserver maldet(2041): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Mar 13 2024 06:59:34 webserver maldet(2041): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Mar 13 2024 06:59:34 webserver maldet(2041): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Mar 13 2024 06:59:34 webserver maldet(2041): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Mar 13 2024 06:59:34 webserver maldet(2041): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Mar 13 2024 07:02:21 webserver maldet(2041): {scan} file list completed in 167s, found 218 files... Mar 13 2024 07:02:21 webserver maldet(2041): {scan} found clamav binary at /usr/bin/clamscan, using clamav scanner engine... Mar 13 2024 07:02:21 webserver maldet(2041): {scan} scan of (218 files) in progress... Mar 13 2024 07:02:46 webserver maldet(2041): {scan} clamscan returned an error, check /usr/local/maldetect/logs/clamscan_log for details! Mar 13 2024 07:02:46 webserver maldet(2041): {scan} scan completed on : files 218, malware hits 0, cleaned hits 0, time 192s Mar 13 2024 07:02:46 webserver maldet(2041): {scan} scan report saved, to view run: maldet --report 240313-0659.2041 Mar 14 2024 06:57:32 webserver maldet(24383): {update} checking for available updates... Mar 14 2024 06:57:32 webserver maldet(24383): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Mar 14 2024 06:57:32 webserver maldet(24383): {update} hashing install files and checking against server... Mar 14 2024 06:57:32 webserver maldet(24383): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Mar 14 2024 06:57:32 webserver maldet(24383): {update} latest version already installed. Mar 14 2024 06:57:32 webserver maldet(24519): {sigup} performing signature update check... Mar 14 2024 06:57:32 webserver maldet(24519): {sigup} local signature set is version 202403101574133 Mar 14 2024 06:57:32 webserver maldet(24519): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Mar 14 2024 06:57:32 webserver maldet(24519): {sigup} new signature set 20240313584523 available Mar 14 2024 06:57:32 webserver maldet(24519): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Mar 14 2024 06:57:32 webserver maldet(24519): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Mar 14 2024 06:57:32 webserver maldet(24519): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Mar 14 2024 06:57:32 webserver maldet(24519): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Mar 14 2024 06:57:32 webserver maldet(24519): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Mar 14 2024 06:57:32 webserver maldet(24519): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Mar 14 2024 06:57:32 webserver maldet(24519): {sigup} verified md5sum of maldet-sigpack.tgz Mar 14 2024 06:57:33 webserver maldet(24519): {sigup} unpacked and installed maldet-sigpack.tgz Mar 14 2024 06:57:33 webserver maldet(24519): {sigup} verified md5sum of maldet-clean.tgz Mar 14 2024 06:57:33 webserver maldet(24519): {sigup} unpacked and installed maldet-clean.tgz Mar 14 2024 06:57:33 webserver maldet(24519): {sigup} signature set update completed Mar 14 2024 06:57:33 webserver maldet(24519): {sigup} 17637 signatures (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Mar 14 2024 06:57:33 webserver maldet(24751): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Mar 14 2024 06:57:33 webserver maldet(24751): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Mar 14 2024 06:57:33 webserver maldet(24751): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Mar 14 2024 06:57:33 webserver maldet(24751): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Mar 14 2024 06:57:33 webserver maldet(24751): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Mar 14 2024 07:00:43 webserver maldet(24751): {scan} file list completed in 190s, found 169 files... Mar 14 2024 07:00:43 webserver maldet(24751): {scan} found clamav binary at /usr/bin/clamscan, using clamav scanner engine... Mar 14 2024 07:00:43 webserver maldet(24751): {scan} scan of (169 files) in progress... Mar 14 2024 07:01:47 webserver maldet(24751): {scan} clamscan returned an error, check /usr/local/maldetect/logs/clamscan_log for details! Mar 14 2024 07:01:47 webserver maldet(24751): {scan} scan completed on : files 169, malware hits 0, cleaned hits 0, time 254s Mar 14 2024 07:01:47 webserver maldet(24751): {scan} scan report saved, to view run: maldet --report 240314-0657.24751 Mar 15 2024 06:58:50 webserver maldet(16171): {update} checking for available updates... Mar 15 2024 06:58:50 webserver maldet(16171): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Mar 15 2024 06:58:50 webserver maldet(16171): {update} hashing install files and checking against server... Mar 15 2024 06:58:50 webserver maldet(16171): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Mar 15 2024 06:58:50 webserver maldet(16171): {update} latest version already installed. Mar 15 2024 06:58:50 webserver maldet(16307): {sigup} performing signature update check... Mar 15 2024 06:58:50 webserver maldet(16307): {sigup} local signature set is version 20240313584523 Mar 15 2024 06:58:50 webserver maldet(16307): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Mar 15 2024 06:58:50 webserver maldet(16307): {sigup} latest signature set already installed Mar 15 2024 06:58:50 webserver maldet(16422): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Mar 15 2024 06:58:50 webserver maldet(16422): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Mar 15 2024 06:58:50 webserver maldet(16422): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Mar 15 2024 06:58:50 webserver maldet(16422): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Mar 15 2024 06:58:50 webserver maldet(16422): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Mar 15 2024 06:59:04 webserver maldet(16422): {scan} file list completed in 14s, found 344 files... Mar 15 2024 06:59:04 webserver maldet(16422): {scan} found clamav binary at /usr/bin/clamscan, using clamav scanner engine... Mar 15 2024 06:59:04 webserver maldet(16422): {scan} scan of (344 files) in progress... Mar 15 2024 06:59:51 webserver maldet(16422): {scan} clamscan returned an error, check /usr/local/maldetect/logs/clamscan_log for details! Mar 15 2024 06:59:51 webserver maldet(16422): {scan} scan completed on : files 344, malware hits 0, cleaned hits 0, time 61s Mar 15 2024 06:59:51 webserver maldet(16422): {scan} scan report saved, to view run: maldet --report 240315-0658.16422 Mar 16 2024 06:58:30 webserver maldet(7254): {update} checking for available updates... Mar 16 2024 06:58:31 webserver maldet(7254): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Mar 16 2024 06:58:31 webserver maldet(7254): {update} hashing install files and checking against server... Mar 16 2024 06:58:31 webserver maldet(7254): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Mar 16 2024 06:58:31 webserver maldet(7254): {update} latest version already installed. Mar 16 2024 06:58:31 webserver maldet(7390): {sigup} performing signature update check... Mar 16 2024 06:58:31 webserver maldet(7390): {sigup} local signature set is version 20240313584523 Mar 16 2024 06:58:31 webserver maldet(7390): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Mar 16 2024 06:58:31 webserver maldet(7390): {sigup} latest signature set already installed Mar 16 2024 06:58:31 webserver maldet(7505): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Mar 16 2024 06:58:31 webserver maldet(7505): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Mar 16 2024 06:58:31 webserver maldet(7505): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Mar 16 2024 06:58:31 webserver maldet(7505): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Mar 16 2024 06:58:31 webserver maldet(7505): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Mar 16 2024 07:01:45 webserver maldet(7505): {scan} file list completed in 194s, found 46 files... Mar 16 2024 07:01:45 webserver maldet(7505): {scan} found clamav binary at /usr/bin/clamscan, using clamav scanner engine... Mar 16 2024 07:01:45 webserver maldet(7505): {scan} scan of (46 files) in progress... Mar 16 2024 07:02:13 webserver maldet(7505): {scan} clamscan returned an error, check /usr/local/maldetect/logs/clamscan_log for details! Mar 16 2024 07:02:13 webserver maldet(7505): {scan} scan completed on : files 46, malware hits 0, cleaned hits 0, time 222s Mar 16 2024 07:02:13 webserver maldet(7505): {scan} scan report saved, to view run: maldet --report 240316-0658.7505 Mar 17 2024 06:57:34 webserver maldet(26491): {update} checking for available updates... Mar 17 2024 06:57:34 webserver maldet(26491): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Mar 17 2024 06:57:34 webserver maldet(26491): {update} hashing install files and checking against server... Mar 17 2024 06:57:34 webserver maldet(26491): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Mar 17 2024 06:57:34 webserver maldet(26491): {update} latest version already installed. Mar 17 2024 06:57:34 webserver maldet(26627): {sigup} performing signature update check... Mar 17 2024 06:57:34 webserver maldet(26627): {sigup} local signature set is version 20240313584523 Mar 17 2024 06:57:34 webserver maldet(26627): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Mar 17 2024 06:57:34 webserver maldet(26627): {sigup} new signature set 202403161371743 available Mar 17 2024 06:57:34 webserver maldet(26627): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Mar 17 2024 06:57:35 webserver maldet(26627): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Mar 17 2024 06:57:35 webserver maldet(26627): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Mar 17 2024 06:57:35 webserver maldet(26627): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Mar 17 2024 06:57:35 webserver maldet(26627): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Mar 17 2024 06:57:35 webserver maldet(26627): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Mar 17 2024 06:57:35 webserver maldet(26627): {sigup} verified md5sum of maldet-sigpack.tgz Mar 17 2024 06:57:35 webserver maldet(26627): {sigup} unpacked and installed maldet-sigpack.tgz Mar 17 2024 06:57:35 webserver maldet(26627): {sigup} verified md5sum of maldet-clean.tgz Mar 17 2024 06:57:35 webserver maldet(26627): {sigup} unpacked and installed maldet-clean.tgz Mar 17 2024 06:57:35 webserver maldet(26627): {sigup} signature set update completed Mar 17 2024 06:57:35 webserver maldet(26627): {sigup} 17637 signatures (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Mar 17 2024 06:57:35 webserver maldet(26858): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Mar 17 2024 06:57:35 webserver maldet(26858): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Mar 17 2024 06:57:35 webserver maldet(26858): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Mar 17 2024 06:57:35 webserver maldet(26858): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Mar 17 2024 06:57:35 webserver maldet(26858): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Mar 17 2024 07:00:18 webserver maldet(26858): {scan} file list completed in 163s, found 45 files... Mar 17 2024 07:00:18 webserver maldet(26858): {scan} found clamav binary at /usr/bin/clamscan, using clamav scanner engine... Mar 17 2024 07:00:18 webserver maldet(26858): {scan} scan of (45 files) in progress... Mar 17 2024 07:00:45 webserver maldet(26858): {scan} clamscan returned an error, check /usr/local/maldetect/logs/clamscan_log for details! Mar 17 2024 07:00:45 webserver maldet(26858): {scan} scan completed on : files 45, malware hits 0, cleaned hits 0, time 190s Mar 17 2024 07:00:45 webserver maldet(26858): {scan} scan report saved, to view run: maldet --report 240317-0657.26858 Mar 18 2024 07:03:49 webserver maldet(24360): {update} checking for available updates... Mar 18 2024 07:03:49 webserver maldet(24360): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Mar 18 2024 07:03:49 webserver maldet(24360): {update} hashing install files and checking against server... Mar 18 2024 07:03:49 webserver maldet(24360): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Mar 18 2024 07:03:49 webserver maldet(24360): {update} latest version already installed. Mar 18 2024 07:03:49 webserver maldet(24496): {sigup} performing signature update check... Mar 18 2024 07:03:49 webserver maldet(24496): {sigup} local signature set is version 202403161371743 Mar 18 2024 07:03:49 webserver maldet(24496): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Mar 18 2024 07:03:49 webserver maldet(24496): {sigup} latest signature set already installed Mar 18 2024 07:03:49 webserver maldet(24611): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Mar 18 2024 07:03:50 webserver maldet(24611): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Mar 18 2024 07:03:50 webserver maldet(24611): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Mar 18 2024 07:03:50 webserver maldet(24611): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Mar 18 2024 07:03:50 webserver maldet(24611): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Mar 18 2024 07:07:19 webserver maldet(24611): {scan} file list completed in 209s, found 182 files... Mar 18 2024 07:07:19 webserver maldet(24611): {scan} found clamav binary at /usr/bin/clamscan, using clamav scanner engine... Mar 18 2024 07:07:19 webserver maldet(24611): {scan} scan of (182 files) in progress... Mar 18 2024 07:07:46 webserver maldet(24611): {scan} clamscan returned an error, check /usr/local/maldetect/logs/clamscan_log for details! Mar 18 2024 07:07:46 webserver maldet(24611): {scan} scan completed on : files 182, malware hits 0, cleaned hits 0, time 237s Mar 18 2024 07:07:46 webserver maldet(24611): {scan} scan report saved, to view run: maldet --report 240318-0703.24611 Mar 19 2024 06:56:11 webserver maldet(12080): {update} checking for available updates... Mar 19 2024 06:56:11 webserver maldet(12080): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Mar 19 2024 06:56:11 webserver maldet(12080): {update} hashing install files and checking against server... Mar 19 2024 06:56:12 webserver maldet(12080): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Mar 19 2024 06:56:12 webserver maldet(12080): {update} latest version already installed. Mar 19 2024 06:56:12 webserver maldet(12216): {sigup} performing signature update check... Mar 19 2024 06:56:12 webserver maldet(12216): {sigup} local signature set is version 202403161371743 Mar 19 2024 06:56:12 webserver maldet(12216): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Mar 19 2024 06:56:12 webserver maldet(12216): {sigup} latest signature set already installed Mar 19 2024 06:56:12 webserver maldet(12330): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Mar 19 2024 06:56:12 webserver maldet(12330): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Mar 19 2024 06:56:12 webserver maldet(12330): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Mar 19 2024 06:56:12 webserver maldet(12330): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Mar 19 2024 06:56:12 webserver maldet(12330): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Mar 19 2024 06:56:30 webserver maldet(12330): {scan} file list completed in 18s, found 270 files... Mar 19 2024 06:56:30 webserver maldet(12330): {scan} found clamav binary at /usr/bin/clamscan, using clamav scanner engine... Mar 19 2024 06:56:30 webserver maldet(12330): {scan} scan of (270 files) in progress... Mar 19 2024 06:57:30 webserver maldet(12330): {scan} clamscan returned an error, check /usr/local/maldetect/logs/clamscan_log for details! Mar 19 2024 06:57:30 webserver maldet(12330): {scan} scan completed on : files 270, malware hits 0, cleaned hits 0, time 78s Mar 19 2024 06:57:30 webserver maldet(12330): {scan} scan report saved, to view run: maldet --report 240319-0656.12330 Mar 20 2024 06:56:00 webserver maldet(5725): {update} checking for available updates... Mar 20 2024 06:56:00 webserver maldet(5725): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Mar 20 2024 06:56:00 webserver maldet(5725): {update} hashing install files and checking against server... Mar 20 2024 06:56:00 webserver maldet(5725): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Mar 20 2024 06:56:00 webserver maldet(5725): {update} latest version already installed. Mar 20 2024 06:56:00 webserver maldet(5861): {sigup} performing signature update check... Mar 20 2024 06:56:00 webserver maldet(5861): {sigup} local signature set is version 202403161371743 Mar 20 2024 06:56:00 webserver maldet(5861): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Mar 20 2024 06:56:00 webserver maldet(5861): {sigup} new signature set 202403192124750 available Mar 20 2024 06:56:00 webserver maldet(5861): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Mar 20 2024 06:56:01 webserver maldet(5861): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Mar 20 2024 06:56:01 webserver maldet(5861): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Mar 20 2024 06:56:01 webserver maldet(5861): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Mar 20 2024 06:56:01 webserver maldet(5861): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Mar 20 2024 06:56:01 webserver maldet(5861): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Mar 20 2024 06:56:01 webserver maldet(5861): {sigup} verified md5sum of maldet-sigpack.tgz Mar 20 2024 06:56:01 webserver maldet(5861): {sigup} unpacked and installed maldet-sigpack.tgz Mar 20 2024 06:56:01 webserver maldet(5861): {sigup} verified md5sum of maldet-clean.tgz Mar 20 2024 06:56:01 webserver maldet(5861): {sigup} unpacked and installed maldet-clean.tgz Mar 20 2024 06:56:01 webserver maldet(5861): {sigup} signature set update completed Mar 20 2024 06:56:01 webserver maldet(5861): {sigup} 17637 signatures (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Mar 20 2024 06:56:01 webserver maldet(6092): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Mar 20 2024 06:56:01 webserver maldet(6092): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Mar 20 2024 06:56:01 webserver maldet(6092): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Mar 20 2024 06:56:01 webserver maldet(6092): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Mar 20 2024 06:56:01 webserver maldet(6092): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Mar 20 2024 06:57:06 webserver maldet(6092): {scan} file list completed in 65s, found 313 files... Mar 20 2024 06:57:06 webserver maldet(6092): {scan} found clamav binary at /usr/bin/clamscan, using clamav scanner engine... Mar 20 2024 06:57:06 webserver maldet(6092): {scan} scan of (313 files) in progress... Mar 20 2024 06:57:37 webserver maldet(6092): {scan} clamscan returned an error, check /usr/local/maldetect/logs/clamscan_log for details! Mar 20 2024 06:57:37 webserver maldet(6092): {scan} scan completed on : files 313, malware hits 0, cleaned hits 0, time 96s Mar 20 2024 06:57:37 webserver maldet(6092): {scan} scan report saved, to view run: maldet --report 240320-0656.6092 Mar 21 2024 06:58:14 webserver maldet(15268): {update} checking for available updates... Mar 21 2024 06:58:14 webserver maldet(15268): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Mar 21 2024 06:58:14 webserver maldet(15268): {update} hashing install files and checking against server... Mar 21 2024 06:58:14 webserver maldet(15268): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Mar 21 2024 06:58:14 webserver maldet(15268): {update} latest version already installed. Mar 21 2024 06:58:14 webserver maldet(15404): {sigup} performing signature update check... Mar 21 2024 06:58:14 webserver maldet(15404): {sigup} local signature set is version 202403192124750 Mar 21 2024 06:58:14 webserver maldet(15404): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Mar 21 2024 06:58:15 webserver maldet(15404): {sigup} latest signature set already installed Mar 21 2024 06:58:15 webserver maldet(15518): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Mar 21 2024 06:58:15 webserver maldet(15518): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Mar 21 2024 06:58:15 webserver maldet(15518): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Mar 21 2024 06:58:15 webserver maldet(15518): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Mar 21 2024 06:58:15 webserver maldet(15518): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Mar 21 2024 07:17:08 webserver maldet(15518): {scan} file list completed in 1133s, found 350 files... Mar 21 2024 07:17:08 webserver maldet(15518): {scan} found clamav binary at /usr/bin/clamscan, using clamav scanner engine... Mar 21 2024 07:17:08 webserver maldet(15518): {scan} scan of (350 files) in progress... Mar 21 2024 07:17:50 webserver maldet(15518): {scan} clamscan returned an error, check /usr/local/maldetect/logs/clamscan_log for details! Mar 21 2024 07:17:50 webserver maldet(15518): {scan} scan completed on : files 350, malware hits 0, cleaned hits 0, time 1175s Mar 21 2024 07:17:50 webserver maldet(15518): {scan} scan report saved, to view run: maldet --report 240321-0658.15518 Mar 22 2024 06:58:27 webserver maldet(7629): {update} checking for available updates... Mar 22 2024 06:58:27 webserver maldet(7629): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Mar 22 2024 06:58:27 webserver maldet(7629): {update} hashing install files and checking against server... Mar 22 2024 06:58:27 webserver maldet(7629): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Mar 22 2024 06:58:27 webserver maldet(7629): {update} latest version already installed. Mar 22 2024 06:58:27 webserver maldet(7765): {sigup} performing signature update check... Mar 22 2024 06:58:27 webserver maldet(7765): {sigup} local signature set is version 202403192124750 Mar 22 2024 06:58:27 webserver maldet(7765): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Mar 22 2024 06:58:27 webserver maldet(7765): {sigup} latest signature set already installed Mar 22 2024 06:58:27 webserver maldet(7879): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Mar 22 2024 06:58:28 webserver maldet(7879): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Mar 22 2024 06:58:28 webserver maldet(7879): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Mar 22 2024 06:58:28 webserver maldet(7879): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Mar 22 2024 06:58:28 webserver maldet(7879): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Mar 22 2024 07:05:14 webserver maldet(7879): {scan} file list completed in 406s, found 434 files... Mar 22 2024 07:05:14 webserver maldet(7879): {scan} found clamav binary at /usr/bin/clamscan, using clamav scanner engine... Mar 22 2024 07:05:14 webserver maldet(7879): {scan} scan of (434 files) in progress... Mar 22 2024 07:05:44 webserver maldet(7879): {scan} clamscan returned an error, check /usr/local/maldetect/logs/clamscan_log for details! Mar 22 2024 07:05:44 webserver maldet(7879): {scan} scan completed on : files 434, malware hits 0, cleaned hits 0, time 437s Mar 22 2024 07:05:44 webserver maldet(7879): {scan} scan report saved, to view run: maldet --report 240322-0658.7879 Mar 23 2024 06:59:00 webserver maldet(30856): {update} checking for available updates... Mar 23 2024 06:59:00 webserver maldet(30856): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Mar 23 2024 06:59:00 webserver maldet(30856): {update} hashing install files and checking against server... Mar 23 2024 06:59:01 webserver maldet(30856): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Mar 23 2024 06:59:01 webserver maldet(30856): {update} latest version already installed. Mar 23 2024 06:59:01 webserver maldet(30992): {sigup} performing signature update check... Mar 23 2024 06:59:01 webserver maldet(30992): {sigup} local signature set is version 202403192124750 Mar 23 2024 06:59:01 webserver maldet(30992): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Mar 23 2024 06:59:01 webserver maldet(30992): {sigup} new signature set 20240322575435 available Mar 23 2024 06:59:01 webserver maldet(30992): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Mar 23 2024 06:59:01 webserver maldet(30992): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Mar 23 2024 06:59:01 webserver maldet(30992): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Mar 23 2024 06:59:01 webserver maldet(30992): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Mar 23 2024 06:59:01 webserver maldet(30992): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Mar 23 2024 06:59:01 webserver maldet(30992): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Mar 23 2024 06:59:01 webserver maldet(30992): {sigup} verified md5sum of maldet-sigpack.tgz Mar 23 2024 06:59:02 webserver maldet(30992): {sigup} unpacked and installed maldet-sigpack.tgz Mar 23 2024 06:59:03 webserver maldet(30992): {sigup} verified md5sum of maldet-clean.tgz Mar 23 2024 06:59:03 webserver maldet(30992): {sigup} unpacked and installed maldet-clean.tgz Mar 23 2024 06:59:03 webserver maldet(30992): {sigup} signature set update completed Mar 23 2024 06:59:03 webserver maldet(30992): {sigup} 17637 signatures (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Mar 23 2024 06:59:03 webserver maldet(31224): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Mar 23 2024 06:59:03 webserver maldet(31224): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Mar 23 2024 06:59:03 webserver maldet(31224): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Mar 23 2024 06:59:03 webserver maldet(31224): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Mar 23 2024 06:59:03 webserver maldet(31224): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Mar 23 2024 07:06:25 webserver maldet(31224): {scan} file list completed in 442s, found 205 files... Mar 23 2024 07:06:25 webserver maldet(31224): {scan} found clamav binary at /usr/bin/clamscan, using clamav scanner engine... Mar 23 2024 07:06:25 webserver maldet(31224): {scan} scan of (205 files) in progress... Mar 23 2024 07:06:52 webserver maldet(31224): {scan} clamscan returned an error, check /usr/local/maldetect/logs/clamscan_log for details! Mar 23 2024 07:06:52 webserver maldet(31224): {scan} scan completed on : files 205, malware hits 0, cleaned hits 0, time 469s Mar 23 2024 07:06:52 webserver maldet(31224): {scan} scan report saved, to view run: maldet --report 240323-0659.31224 Mar 24 2024 07:08:31 webserver maldet(22596): {update} checking for available updates... Mar 24 2024 07:08:31 webserver maldet(22596): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Mar 24 2024 07:08:31 webserver maldet(22596): {update} hashing install files and checking against server... Mar 24 2024 07:08:31 webserver maldet(22596): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Mar 24 2024 07:08:31 webserver maldet(22596): {update} latest version already installed. Mar 24 2024 07:08:31 webserver maldet(22732): {sigup} performing signature update check... Mar 24 2024 07:08:31 webserver maldet(22732): {sigup} local signature set is version 20240322575435 Mar 24 2024 07:08:31 webserver maldet(22732): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Mar 24 2024 07:08:31 webserver maldet(22732): {sigup} latest signature set already installed Mar 24 2024 07:08:32 webserver maldet(22847): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Mar 24 2024 07:08:32 webserver maldet(22847): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Mar 24 2024 07:08:32 webserver maldet(22847): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Mar 24 2024 07:08:32 webserver maldet(22847): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Mar 24 2024 07:08:32 webserver maldet(22847): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Mar 24 2024 07:17:57 webserver maldet(22847): {scan} file list completed in 565s, found 571 files... Mar 24 2024 07:17:57 webserver maldet(22847): {scan} found clamav binary at /usr/bin/clamscan, using clamav scanner engine... Mar 24 2024 07:17:57 webserver maldet(22847): {scan} scan of (571 files) in progress... Mar 24 2024 07:18:52 webserver maldet(22847): {scan} clamscan returned an error, check /usr/local/maldetect/logs/clamscan_log for details! Mar 24 2024 07:18:52 webserver maldet(22847): {scan} scan completed on : files 571, malware hits 0, cleaned hits 0, time 620s Mar 24 2024 07:18:52 webserver maldet(22847): {scan} scan report saved, to view run: maldet --report 240324-0708.22847 Mar 25 2024 06:58:39 webserver maldet(17872): {update} checking for available updates... Mar 25 2024 06:58:39 webserver maldet(17872): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Mar 25 2024 06:58:39 webserver maldet(17872): {update} hashing install files and checking against server... Mar 25 2024 06:58:40 webserver maldet(17872): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Mar 25 2024 06:58:40 webserver maldet(17872): {update} latest version already installed. Mar 25 2024 06:58:40 webserver maldet(18008): {sigup} performing signature update check... Mar 25 2024 06:58:40 webserver maldet(18008): {sigup} local signature set is version 20240322575435 Mar 25 2024 06:58:40 webserver maldet(18008): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Mar 25 2024 06:58:40 webserver maldet(18008): {sigup} latest signature set already installed Mar 25 2024 06:58:40 webserver maldet(18125): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Mar 25 2024 06:58:41 webserver maldet(18125): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Mar 25 2024 06:58:41 webserver maldet(18125): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Mar 25 2024 06:58:41 webserver maldet(18125): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Mar 25 2024 06:58:41 webserver maldet(18125): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Mar 25 2024 07:06:41 webserver maldet(18125): {scan} file list completed in 480s, found 320 files... Mar 25 2024 07:06:41 webserver maldet(18125): {scan} found clamav binary at /usr/bin/clamscan, using clamav scanner engine... Mar 25 2024 07:06:41 webserver maldet(18125): {scan} scan of (320 files) in progress... Mar 25 2024 07:07:13 webserver maldet(18125): {scan} clamscan returned an error, check /usr/local/maldetect/logs/clamscan_log for details! Mar 25 2024 07:07:13 webserver maldet(18125): {scan} scan completed on : files 320, malware hits 0, cleaned hits 0, time 513s Mar 25 2024 07:07:13 webserver maldet(18125): {scan} scan report saved, to view run: maldet --report 240325-0658.18125 Mar 26 2024 07:09:26 webserver maldet(10236): {update} checking for available updates... Mar 26 2024 07:09:26 webserver maldet(10236): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Mar 26 2024 07:09:26 webserver maldet(10236): {update} hashing install files and checking against server... Mar 26 2024 07:09:27 webserver maldet(10236): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Mar 26 2024 07:09:27 webserver maldet(10236): {update} latest version already installed. Mar 26 2024 07:09:27 webserver maldet(10372): {sigup} performing signature update check... Mar 26 2024 07:09:27 webserver maldet(10372): {sigup} local signature set is version 20240322575435 Mar 26 2024 07:09:27 webserver maldet(10372): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Mar 26 2024 07:09:27 webserver maldet(10372): {sigup} new signature set 202403251330193 available Mar 26 2024 07:09:27 webserver maldet(10372): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Mar 26 2024 07:09:27 webserver maldet(10372): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Mar 26 2024 07:09:27 webserver maldet(10372): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Mar 26 2024 07:09:27 webserver maldet(10372): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Mar 26 2024 07:09:27 webserver maldet(10372): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Mar 26 2024 07:09:27 webserver maldet(10372): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Mar 26 2024 07:09:27 webserver maldet(10372): {sigup} verified md5sum of maldet-sigpack.tgz Mar 26 2024 07:09:27 webserver maldet(10372): {sigup} unpacked and installed maldet-sigpack.tgz Mar 26 2024 07:09:27 webserver maldet(10372): {sigup} verified md5sum of maldet-clean.tgz Mar 26 2024 07:09:27 webserver maldet(10372): {sigup} unpacked and installed maldet-clean.tgz Mar 26 2024 07:09:27 webserver maldet(10372): {sigup} signature set update completed Mar 26 2024 07:09:27 webserver maldet(10372): {sigup} 17637 signatures (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Mar 26 2024 07:09:28 webserver maldet(10603): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Mar 26 2024 07:09:28 webserver maldet(10603): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Mar 26 2024 07:09:28 webserver maldet(10603): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Mar 26 2024 07:09:28 webserver maldet(10603): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Mar 26 2024 07:09:28 webserver maldet(10603): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Mar 26 2024 07:23:25 webserver maldet(10603): {scan} file list completed in 837s, found 429 files... Mar 26 2024 07:23:25 webserver maldet(10603): {scan} found clamav binary at /usr/bin/clamscan, using clamav scanner engine... Mar 26 2024 07:23:25 webserver maldet(10603): {scan} scan of (429 files) in progress... Mar 26 2024 07:23:58 webserver maldet(10603): {scan} clamscan returned an error, check /usr/local/maldetect/logs/clamscan_log for details! Mar 26 2024 07:23:58 webserver maldet(10603): {scan} scan completed on : files 429, malware hits 0, cleaned hits 0, time 870s Mar 26 2024 07:23:58 webserver maldet(10603): {scan} scan report saved, to view run: maldet --report 240326-0709.10603 Mar 27 2024 07:09:58 webserver maldet(31086): {update} checking for available updates... Mar 27 2024 07:09:58 webserver maldet(31086): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Mar 27 2024 07:09:58 webserver maldet(31086): {update} hashing install files and checking against server... Mar 27 2024 07:09:58 webserver maldet(31086): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Mar 27 2024 07:09:58 webserver maldet(31086): {update} latest version already installed. Mar 27 2024 07:09:58 webserver maldet(31222): {sigup} performing signature update check... Mar 27 2024 07:09:58 webserver maldet(31222): {sigup} local signature set is version 202403251330193 Mar 27 2024 07:09:58 webserver maldet(31222): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Mar 27 2024 07:09:58 webserver maldet(31222): {sigup} latest signature set already installed Mar 27 2024 07:09:58 webserver maldet(31337): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Mar 27 2024 07:09:59 webserver maldet(31337): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Mar 27 2024 07:09:59 webserver maldet(31337): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Mar 27 2024 07:09:59 webserver maldet(31337): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Mar 27 2024 07:09:59 webserver maldet(31337): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Mar 27 2024 07:14:08 webserver maldet(31337): {scan} file list completed in 249s, found 255 files... Mar 27 2024 07:14:08 webserver maldet(31337): {scan} found clamav binary at /usr/bin/clamscan, using clamav scanner engine... Mar 27 2024 07:14:08 webserver maldet(31337): {scan} scan of (255 files) in progress... Mar 27 2024 07:14:43 webserver maldet(31337): {scan} clamscan returned an error, check /usr/local/maldetect/logs/clamscan_log for details! Mar 27 2024 07:14:43 webserver maldet(31337): {scan} scan completed on : files 255, malware hits 0, cleaned hits 0, time 285s Mar 27 2024 07:14:43 webserver maldet(31337): {scan} scan report saved, to view run: maldet --report 240327-0709.31337 Mar 28 2024 07:02:32 webserver maldet(18609): {update} checking for available updates... Mar 28 2024 07:02:32 webserver maldet(18609): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Mar 28 2024 07:02:32 webserver maldet(18609): {update} hashing install files and checking against server... Mar 28 2024 07:02:32 webserver maldet(18609): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Mar 28 2024 07:02:32 webserver maldet(18609): {update} latest version already installed. Mar 28 2024 07:02:32 webserver maldet(18745): {sigup} performing signature update check... Mar 28 2024 07:02:32 webserver maldet(18745): {sigup} local signature set is version 202403251330193 Mar 28 2024 07:02:32 webserver maldet(18745): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Mar 28 2024 07:02:32 webserver maldet(18745): {sigup} latest signature set already installed Mar 28 2024 07:02:33 webserver maldet(18860): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Mar 28 2024 07:02:34 webserver maldet(18860): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Mar 28 2024 07:02:34 webserver maldet(18860): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Mar 28 2024 07:02:34 webserver maldet(18860): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Mar 28 2024 07:02:34 webserver maldet(18860): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Mar 28 2024 07:08:47 webserver maldet(18860): {scan} file list completed in 373s, found 327 files... Mar 28 2024 07:08:47 webserver maldet(18860): {scan} found clamav binary at /usr/bin/clamscan, using clamav scanner engine... Mar 28 2024 07:08:47 webserver maldet(18860): {scan} scan of (327 files) in progress... Mar 28 2024 07:09:19 webserver maldet(18860): {scan} clamscan returned an error, check /usr/local/maldetect/logs/clamscan_log for details! Mar 28 2024 07:09:19 webserver maldet(18860): {scan} scan completed on : files 327, malware hits 0, cleaned hits 0, time 406s Mar 28 2024 07:09:19 webserver maldet(18860): {scan} scan report saved, to view run: maldet --report 240328-0702.18860 Mar 29 2024 06:58:19 webserver maldet(346): {update} checking for available updates... Mar 29 2024 06:58:20 webserver maldet(346): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Mar 29 2024 06:58:20 webserver maldet(346): {update} hashing install files and checking against server... Mar 29 2024 06:58:20 webserver maldet(346): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Mar 29 2024 06:58:20 webserver maldet(346): {update} latest version already installed. Mar 29 2024 06:58:20 webserver maldet(482): {sigup} performing signature update check... Mar 29 2024 06:58:20 webserver maldet(482): {sigup} local signature set is version 202403251330193 Mar 29 2024 06:58:20 webserver maldet(482): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Mar 29 2024 06:58:20 webserver maldet(482): {sigup} new signature set 202403282084305 available Mar 29 2024 06:58:20 webserver maldet(482): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Mar 29 2024 06:58:20 webserver maldet(482): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Mar 29 2024 06:58:20 webserver maldet(482): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Mar 29 2024 06:58:20 webserver maldet(482): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Mar 29 2024 06:58:20 webserver maldet(482): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Mar 29 2024 06:58:20 webserver maldet(482): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Mar 29 2024 06:58:20 webserver maldet(482): {sigup} verified md5sum of maldet-sigpack.tgz Mar 29 2024 06:58:20 webserver maldet(482): {sigup} unpacked and installed maldet-sigpack.tgz Mar 29 2024 06:58:20 webserver maldet(482): {sigup} verified md5sum of maldet-clean.tgz Mar 29 2024 06:58:20 webserver maldet(482): {sigup} unpacked and installed maldet-clean.tgz Mar 29 2024 06:58:20 webserver maldet(482): {sigup} signature set update completed Mar 29 2024 06:58:20 webserver maldet(482): {sigup} 17637 signatures (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Mar 29 2024 06:58:21 webserver maldet(714): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Mar 29 2024 06:58:21 webserver maldet(714): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Mar 29 2024 06:58:21 webserver maldet(714): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Mar 29 2024 06:58:21 webserver maldet(714): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Mar 29 2024 06:58:21 webserver maldet(714): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Mar 29 2024 07:00:57 webserver maldet(714): {scan} file list completed in 156s, found 399 files... Mar 29 2024 07:00:57 webserver maldet(714): {scan} found clamav binary at /usr/bin/clamscan, using clamav scanner engine... Mar 29 2024 07:00:57 webserver maldet(714): {scan} scan of (399 files) in progress... Mar 29 2024 07:01:28 webserver maldet(714): {scan} clamscan returned an error, check /usr/local/maldetect/logs/clamscan_log for details! Mar 29 2024 07:01:28 webserver maldet(714): {scan} scan completed on : files 399, malware hits 0, cleaned hits 0, time 187s Mar 29 2024 07:01:28 webserver maldet(714): {scan} scan report saved, to view run: maldet --report 240329-0658.714 Mar 30 2024 06:57:58 webserver maldet(23867): {update} checking for available updates... Mar 30 2024 06:57:58 webserver maldet(23867): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Mar 30 2024 06:57:58 webserver maldet(23867): {update} hashing install files and checking against server... Mar 30 2024 06:57:58 webserver maldet(23867): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Mar 30 2024 06:57:58 webserver maldet(23867): {update} latest version already installed. Mar 30 2024 06:57:58 webserver maldet(24003): {sigup} performing signature update check... Mar 30 2024 06:57:58 webserver maldet(24003): {sigup} local signature set is version 202403282084305 Mar 30 2024 06:57:58 webserver maldet(24003): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Mar 30 2024 06:57:58 webserver maldet(24003): {sigup} latest signature set already installed Mar 30 2024 06:57:58 webserver maldet(24118): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Mar 30 2024 06:57:59 webserver maldet(24118): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Mar 30 2024 06:57:59 webserver maldet(24118): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Mar 30 2024 06:57:59 webserver maldet(24118): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Mar 30 2024 06:57:59 webserver maldet(24118): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Mar 30 2024 07:01:52 webserver maldet(24118): {scan} file list completed in 233s, found 282 files... Mar 30 2024 07:01:52 webserver maldet(24118): {scan} found clamav binary at /usr/bin/clamscan, using clamav scanner engine... Mar 30 2024 07:01:52 webserver maldet(24118): {scan} scan of (282 files) in progress... Mar 30 2024 07:03:39 webserver maldet(24118): {scan} clamscan returned an error, check /usr/local/maldetect/logs/clamscan_log for details! Mar 30 2024 07:03:39 webserver maldet(24118): {scan} scan completed on : files 282, malware hits 0, cleaned hits 0, time 341s Mar 30 2024 07:03:39 webserver maldet(24118): {scan} scan report saved, to view run: maldet --report 240330-0657.24118 Mar 31 2024 06:59:26 webserver maldet(14345): {update} checking for available updates... Mar 31 2024 06:59:26 webserver maldet(14345): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Mar 31 2024 06:59:26 webserver maldet(14345): {update} hashing install files and checking against server... Mar 31 2024 06:59:26 webserver maldet(14345): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Mar 31 2024 06:59:26 webserver maldet(14345): {update} latest version already installed. Mar 31 2024 06:59:26 webserver maldet(14481): {sigup} performing signature update check... Mar 31 2024 06:59:26 webserver maldet(14481): {sigup} local signature set is version 202403282084305 Mar 31 2024 06:59:26 webserver maldet(14481): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Mar 31 2024 06:59:26 webserver maldet(14481): {sigup} latest signature set already installed Mar 31 2024 06:59:26 webserver maldet(14596): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Mar 31 2024 06:59:26 webserver maldet(14596): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Mar 31 2024 06:59:26 webserver maldet(14596): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Mar 31 2024 06:59:26 webserver maldet(14596): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Mar 31 2024 06:59:26 webserver maldet(14596): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Mar 31 2024 07:02:13 webserver maldet(14596): {scan} file list completed in 167s, found 328 files... Mar 31 2024 07:02:13 webserver maldet(14596): {scan} found clamav binary at /usr/bin/clamscan, using clamav scanner engine... Mar 31 2024 07:02:13 webserver maldet(14596): {scan} scan of (328 files) in progress... Mar 31 2024 07:02:43 webserver maldet(14596): {scan} clamscan returned an error, check /usr/local/maldetect/logs/clamscan_log for details! Mar 31 2024 07:02:43 webserver maldet(14596): {scan} scan completed on : files 328, malware hits 0, cleaned hits 0, time 197s Mar 31 2024 07:02:43 webserver maldet(14596): {scan} scan report saved, to view run: maldet --report 240331-0659.14596 Apr 01 2024 07:05:25 webserver maldet(11384): {update} checking for available updates... Apr 01 2024 07:05:25 webserver maldet(11384): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Apr 01 2024 07:05:25 webserver maldet(11384): {update} hashing install files and checking against server... Apr 01 2024 07:05:25 webserver maldet(11384): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Apr 01 2024 07:05:25 webserver maldet(11384): {update} latest version already installed. Apr 01 2024 07:05:25 webserver maldet(11520): {sigup} performing signature update check... Apr 01 2024 07:05:25 webserver maldet(11520): {sigup} local signature set is version 202403282084305 Apr 01 2024 07:05:25 webserver maldet(11520): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Apr 01 2024 07:05:25 webserver maldet(11520): {sigup} new signature set 202403312839441 available Apr 01 2024 07:05:25 webserver maldet(11520): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Apr 01 2024 07:05:25 webserver maldet(11520): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Apr 01 2024 07:05:25 webserver maldet(11520): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Apr 01 2024 07:05:25 webserver maldet(11520): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Apr 01 2024 07:05:25 webserver maldet(11520): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Apr 01 2024 07:05:25 webserver maldet(11520): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Apr 01 2024 07:05:25 webserver maldet(11520): {sigup} verified md5sum of maldet-sigpack.tgz Apr 01 2024 07:05:26 webserver maldet(11520): {sigup} unpacked and installed maldet-sigpack.tgz Apr 01 2024 07:05:26 webserver maldet(11520): {sigup} verified md5sum of maldet-clean.tgz Apr 01 2024 07:05:26 webserver maldet(11520): {sigup} unpacked and installed maldet-clean.tgz Apr 01 2024 07:05:26 webserver maldet(11520): {sigup} signature set update completed Apr 01 2024 07:05:26 webserver maldet(11520): {sigup} 17637 signatures (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Apr 01 2024 07:05:26 webserver maldet(11751): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Apr 01 2024 07:05:26 webserver maldet(11751): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Apr 01 2024 07:05:26 webserver maldet(11751): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Apr 01 2024 07:05:26 webserver maldet(11751): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Apr 01 2024 07:05:26 webserver maldet(11751): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Apr 01 2024 07:10:45 webserver maldet(11751): {scan} file list completed in 319s, found 388 files... Apr 01 2024 07:10:45 webserver maldet(11751): {scan} found clamav binary at /usr/bin/clamscan, using clamav scanner engine... Apr 01 2024 07:10:46 webserver maldet(11751): {scan} scan of (388 files) in progress... Apr 01 2024 07:11:19 webserver maldet(11751): {scan} clamscan returned an error, check /usr/local/maldetect/logs/clamscan_log for details! Apr 01 2024 07:11:20 webserver maldet(11751): {scan} scan completed on : files 388, malware hits 0, cleaned hits 0, time 354s Apr 01 2024 07:11:20 webserver maldet(11751): {scan} scan report saved, to view run: maldet --report 240401-0705.11751 Apr 02 2024 06:59:35 webserver maldet(5980): {update} checking for available updates... Apr 02 2024 06:59:35 webserver maldet(5980): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Apr 02 2024 06:59:35 webserver maldet(5980): {update} hashing install files and checking against server... Apr 02 2024 06:59:35 webserver maldet(5980): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Apr 02 2024 06:59:35 webserver maldet(5980): {update} latest version already installed. Apr 02 2024 06:59:35 webserver maldet(6116): {sigup} performing signature update check... Apr 02 2024 06:59:35 webserver maldet(6116): {sigup} local signature set is version 202403312839441 Apr 02 2024 06:59:35 webserver maldet(6116): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Apr 02 2024 06:59:35 webserver maldet(6116): {sigup} new signature set 202404013548654 available Apr 02 2024 06:59:35 webserver maldet(6116): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Apr 02 2024 06:59:35 webserver maldet(6116): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Apr 02 2024 06:59:35 webserver maldet(6116): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Apr 02 2024 06:59:35 webserver maldet(6116): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Apr 02 2024 06:59:35 webserver maldet(6116): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Apr 02 2024 06:59:36 webserver maldet(6116): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Apr 02 2024 06:59:36 webserver maldet(6116): {sigup} verified md5sum of maldet-sigpack.tgz Apr 02 2024 06:59:36 webserver maldet(6116): {sigup} unpacked and installed maldet-sigpack.tgz Apr 02 2024 06:59:36 webserver maldet(6116): {sigup} verified md5sum of maldet-clean.tgz Apr 02 2024 06:59:36 webserver maldet(6116): {sigup} unpacked and installed maldet-clean.tgz Apr 02 2024 06:59:36 webserver maldet(6116): {sigup} signature set update completed Apr 02 2024 06:59:36 webserver maldet(6116): {sigup} 17637 signatures (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Apr 02 2024 06:59:36 webserver maldet(6347): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Apr 02 2024 06:59:36 webserver maldet(6347): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Apr 02 2024 06:59:36 webserver maldet(6347): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Apr 02 2024 06:59:36 webserver maldet(6347): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Apr 02 2024 06:59:36 webserver maldet(6347): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Apr 02 2024 07:00:25 webserver maldet(6347): {scan} file list completed in 49s, found 110 files... Apr 02 2024 07:00:25 webserver maldet(6347): {scan} found clamav binary at /usr/bin/clamscan, using clamav scanner engine... Apr 02 2024 07:00:25 webserver maldet(6347): {scan} scan of (110 files) in progress... Apr 02 2024 07:01:04 webserver maldet(6347): {scan} clamscan returned an error, check /usr/local/maldetect/logs/clamscan_log for details! Apr 02 2024 07:01:04 webserver maldet(6347): {scan} scan completed on : files 110, malware hits 0, cleaned hits 0, time 88s Apr 02 2024 07:01:04 webserver maldet(6347): {scan} scan report saved, to view run: maldet --report 240402-0659.6347 Apr 03 2024 06:59:18 webserver maldet(25833): {update} checking for available updates... Apr 03 2024 06:59:18 webserver maldet(25833): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Apr 03 2024 06:59:18 webserver maldet(25833): {update} hashing install files and checking against server... Apr 03 2024 06:59:18 webserver maldet(25833): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Apr 03 2024 06:59:18 webserver maldet(25833): {update} latest version already installed. Apr 03 2024 06:59:19 webserver maldet(25969): {sigup} performing signature update check... Apr 03 2024 06:59:19 webserver maldet(25969): {sigup} local signature set is version 202404013548654 Apr 03 2024 06:59:19 webserver maldet(25969): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Apr 03 2024 06:59:19 webserver maldet(25969): {sigup} latest signature set already installed Apr 03 2024 06:59:19 webserver maldet(26083): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Apr 03 2024 06:59:19 webserver maldet(26083): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Apr 03 2024 06:59:19 webserver maldet(26083): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Apr 03 2024 06:59:19 webserver maldet(26083): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Apr 03 2024 06:59:19 webserver maldet(26083): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Apr 03 2024 07:02:45 webserver maldet(26083): {scan} file list completed in 206s, found 1356 files... Apr 03 2024 07:02:45 webserver maldet(26083): {scan} found clamav binary at /usr/bin/clamscan, using clamav scanner engine... Apr 03 2024 07:02:45 webserver maldet(26083): {scan} scan of (1356 files) in progress... Apr 03 2024 07:04:14 webserver maldet(26083): {scan} clamscan returned an error, check /usr/local/maldetect/logs/clamscan_log for details! Apr 03 2024 07:04:14 webserver maldet(26083): {scan} scan completed on : files 1356, malware hits 0, cleaned hits 0, time 295s Apr 03 2024 07:04:14 webserver maldet(26083): {scan} scan report saved, to view run: maldet --report 240403-0659.26083 Apr 04 2024 06:58:55 webserver maldet(17176): {update} checking for available updates... Apr 04 2024 06:58:56 webserver maldet(17176): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Apr 04 2024 06:58:56 webserver maldet(17176): {update} hashing install files and checking against server... Apr 04 2024 06:58:56 webserver maldet(17176): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Apr 04 2024 06:58:56 webserver maldet(17176): {update} latest version already installed. Apr 04 2024 06:58:56 webserver maldet(17312): {sigup} performing signature update check... Apr 04 2024 06:58:56 webserver maldet(17312): {sigup} local signature set is version 202404013548654 Apr 04 2024 06:58:56 webserver maldet(17312): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Apr 04 2024 06:58:56 webserver maldet(17312): {sigup} latest signature set already installed Apr 04 2024 06:58:56 webserver maldet(17427): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Apr 04 2024 06:58:56 webserver maldet(17427): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Apr 04 2024 06:58:56 webserver maldet(17427): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Apr 04 2024 06:58:56 webserver maldet(17427): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Apr 04 2024 06:58:56 webserver maldet(17427): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Apr 04 2024 07:01:28 webserver maldet(17427): {scan} file list completed in 152s, found 269 files... Apr 04 2024 07:01:28 webserver maldet(17427): {scan} found clamav binary at /usr/bin/clamscan, using clamav scanner engine... Apr 04 2024 07:01:28 webserver maldet(17427): {scan} scan of (269 files) in progress... Apr 04 2024 07:01:59 webserver maldet(17427): {scan} clamscan returned an error, check /usr/local/maldetect/logs/clamscan_log for details! Apr 04 2024 07:01:59 webserver maldet(17427): {scan} scan completed on : files 269, malware hits 0, cleaned hits 0, time 183s Apr 04 2024 07:01:59 webserver maldet(17427): {scan} scan report saved, to view run: maldet --report 240404-0658.17427 Apr 05 2024 07:09:02 webserver maldet(11388): {update} checking for available updates... Apr 05 2024 07:09:03 webserver maldet(11388): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Apr 05 2024 07:09:03 webserver maldet(11388): {update} hashing install files and checking against server... Apr 05 2024 07:09:03 webserver maldet(11388): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Apr 05 2024 07:09:03 webserver maldet(11388): {update} latest version already installed. Apr 05 2024 07:09:03 webserver maldet(11524): {sigup} performing signature update check... Apr 05 2024 07:09:03 webserver maldet(11524): {sigup} local signature set is version 202404013548654 Apr 05 2024 07:09:03 webserver maldet(11524): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Apr 05 2024 07:09:03 webserver maldet(11524): {sigup} new signature set 20240404555147 available Apr 05 2024 07:09:03 webserver maldet(11524): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Apr 05 2024 07:09:03 webserver maldet(11524): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Apr 05 2024 07:09:03 webserver maldet(11524): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Apr 05 2024 07:09:03 webserver maldet(11524): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Apr 05 2024 07:09:03 webserver maldet(11524): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Apr 05 2024 07:09:03 webserver maldet(11524): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Apr 05 2024 07:09:03 webserver maldet(11524): {sigup} verified md5sum of maldet-sigpack.tgz Apr 05 2024 07:09:03 webserver maldet(11524): {sigup} unpacked and installed maldet-sigpack.tgz Apr 05 2024 07:09:03 webserver maldet(11524): {sigup} verified md5sum of maldet-clean.tgz Apr 05 2024 07:09:03 webserver maldet(11524): {sigup} unpacked and installed maldet-clean.tgz Apr 05 2024 07:09:03 webserver maldet(11524): {sigup} signature set update completed Apr 05 2024 07:09:03 webserver maldet(11524): {sigup} 17637 signatures (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Apr 05 2024 07:09:04 webserver maldet(11755): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Apr 05 2024 07:09:04 webserver maldet(11755): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Apr 05 2024 07:09:04 webserver maldet(11755): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Apr 05 2024 07:09:04 webserver maldet(11755): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Apr 05 2024 07:09:04 webserver maldet(11755): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Apr 05 2024 07:12:34 webserver maldet(11755): {scan} file list completed in 210s, found 511 files... Apr 05 2024 07:12:34 webserver maldet(11755): {scan} found clamav binary at /usr/bin/clamscan, using clamav scanner engine... Apr 05 2024 07:12:34 webserver maldet(11755): {scan} scan of (511 files) in progress... Apr 05 2024 07:13:09 webserver maldet(11755): {scan} clamscan returned an error, check /usr/local/maldetect/logs/clamscan_log for details! Apr 05 2024 07:13:09 webserver maldet(11755): {scan} scan completed on : files 511, malware hits 0, cleaned hits 0, time 245s Apr 05 2024 07:13:09 webserver maldet(11755): {scan} scan report saved, to view run: maldet --report 240405-0709.11755 Apr 06 2024 06:57:36 webserver maldet(7583): {update} checking for available updates... Apr 06 2024 06:57:37 webserver maldet(7583): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Apr 06 2024 06:57:37 webserver maldet(7583): {update} hashing install files and checking against server... Apr 06 2024 06:57:37 webserver maldet(7583): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Apr 06 2024 06:57:37 webserver maldet(7583): {update} latest version already installed. Apr 06 2024 06:57:37 webserver maldet(7719): {sigup} performing signature update check... Apr 06 2024 06:57:37 webserver maldet(7719): {sigup} local signature set is version 20240404555147 Apr 06 2024 06:57:37 webserver maldet(7719): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Apr 06 2024 06:57:37 webserver maldet(7719): {sigup} latest signature set already installed Apr 06 2024 06:57:37 webserver maldet(7834): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Apr 06 2024 06:57:37 webserver maldet(7834): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Apr 06 2024 06:57:37 webserver maldet(7834): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Apr 06 2024 06:57:37 webserver maldet(7834): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Apr 06 2024 06:57:37 webserver maldet(7834): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Apr 06 2024 07:02:48 webserver maldet(7834): {scan} file list completed in 311s, found 807 files... Apr 06 2024 07:02:48 webserver maldet(7834): {scan} found clamav binary at /usr/bin/clamscan, using clamav scanner engine... Apr 06 2024 07:02:48 webserver maldet(7834): {scan} scan of (807 files) in progress... Apr 06 2024 07:03:31 webserver maldet(7834): {scan} clamscan returned an error, check /usr/local/maldetect/logs/clamscan_log for details! Apr 06 2024 07:03:32 webserver maldet(7834): {scan} scan completed on : files 807, malware hits 0, cleaned hits 0, time 355s Apr 06 2024 07:03:32 webserver maldet(7834): {scan} scan report saved, to view run: maldet --report 240406-0657.7834 Apr 07 2024 06:59:47 webserver maldet(3883): {update} checking for available updates... Apr 07 2024 06:59:47 webserver maldet(3883): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Apr 07 2024 06:59:47 webserver maldet(3883): {update} hashing install files and checking against server... Apr 07 2024 06:59:47 webserver maldet(3883): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Apr 07 2024 06:59:47 webserver maldet(3883): {update} latest version already installed. Apr 07 2024 06:59:47 webserver maldet(4019): {sigup} performing signature update check... Apr 07 2024 06:59:47 webserver maldet(4019): {sigup} local signature set is version 20240404555147 Apr 07 2024 06:59:47 webserver maldet(4019): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Apr 07 2024 06:59:47 webserver maldet(4019): {sigup} latest signature set already installed Apr 07 2024 06:59:48 webserver maldet(4134): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Apr 07 2024 06:59:49 webserver maldet(4134): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Apr 07 2024 06:59:49 webserver maldet(4134): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Apr 07 2024 06:59:49 webserver maldet(4134): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Apr 07 2024 06:59:49 webserver maldet(4134): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Apr 07 2024 07:13:46 webserver maldet(4134): {scan} file list completed in 837s, found 462 files... Apr 07 2024 07:13:46 webserver maldet(4134): {scan} found clamav binary at /usr/bin/clamscan, using clamav scanner engine... Apr 07 2024 07:13:46 webserver maldet(4134): {scan} scan of (462 files) in progress... Apr 07 2024 07:14:21 webserver maldet(4134): {scan} clamscan returned an error, check /usr/local/maldetect/logs/clamscan_log for details! Apr 07 2024 07:14:21 webserver maldet(4134): {scan} scan completed on : files 462, malware hits 0, cleaned hits 0, time 873s Apr 07 2024 07:14:21 webserver maldet(4134): {scan} scan report saved, to view run: maldet --report 240407-0659.4134 Apr 08 2024 06:57:39 webserver maldet(26837): {update} checking for available updates... Apr 08 2024 06:57:39 webserver maldet(26837): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Apr 08 2024 06:57:39 webserver maldet(26837): {update} hashing install files and checking against server... Apr 08 2024 06:57:39 webserver maldet(26837): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Apr 08 2024 06:57:39 webserver maldet(26837): {update} latest version already installed. Apr 08 2024 06:57:39 webserver maldet(26973): {sigup} performing signature update check... Apr 08 2024 06:57:39 webserver maldet(26973): {sigup} local signature set is version 20240404555147 Apr 08 2024 06:57:39 webserver maldet(26973): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Apr 08 2024 06:57:39 webserver maldet(26973): {sigup} new signature set 202404071311303 available Apr 08 2024 06:57:39 webserver maldet(26973): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Apr 08 2024 06:57:40 webserver maldet(26973): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Apr 08 2024 06:57:40 webserver maldet(26973): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Apr 08 2024 06:57:40 webserver maldet(26973): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Apr 08 2024 06:57:40 webserver maldet(26973): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Apr 08 2024 06:57:40 webserver maldet(26973): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Apr 08 2024 06:57:40 webserver maldet(26973): {sigup} verified md5sum of maldet-sigpack.tgz Apr 08 2024 06:57:41 webserver maldet(26973): {sigup} unpacked and installed maldet-sigpack.tgz Apr 08 2024 06:57:42 webserver maldet(26973): {sigup} verified md5sum of maldet-clean.tgz Apr 08 2024 06:57:42 webserver maldet(26973): {sigup} unpacked and installed maldet-clean.tgz Apr 08 2024 06:57:42 webserver maldet(26973): {sigup} signature set update completed Apr 08 2024 06:57:42 webserver maldet(26973): {sigup} 17637 signatures (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Apr 08 2024 06:57:42 webserver maldet(27204): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Apr 08 2024 06:57:42 webserver maldet(27204): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Apr 08 2024 06:57:42 webserver maldet(27204): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Apr 08 2024 06:57:42 webserver maldet(27204): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Apr 08 2024 06:57:42 webserver maldet(27204): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Apr 08 2024 07:14:18 webserver maldet(27204): {scan} file list completed in 993s, found 1593 files... Apr 08 2024 07:14:18 webserver maldet(27204): {scan} found clamav binary at /usr/bin/clamscan, using clamav scanner engine... Apr 08 2024 07:14:18 webserver maldet(27204): {scan} scan of (1593 files) in progress... Apr 08 2024 07:16:15 webserver maldet(27204): {scan} clamscan returned an error, check /usr/local/maldetect/logs/clamscan_log for details! Apr 08 2024 07:16:15 webserver maldet(27204): {scan} scan completed on : files 1593, malware hits 0, cleaned hits 0, time 1113s Apr 08 2024 07:16:15 webserver maldet(27204): {scan} scan report saved, to view run: maldet --report 240408-0657.27204 Apr 09 2024 07:01:46 webserver maldet(23684): {update} checking for available updates... Apr 09 2024 07:01:46 webserver maldet(23684): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Apr 09 2024 07:01:46 webserver maldet(23684): {update} hashing install files and checking against server... Apr 09 2024 07:01:46 webserver maldet(23684): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Apr 09 2024 07:01:46 webserver maldet(23684): {update} latest version already installed. Apr 09 2024 07:01:46 webserver maldet(23821): {sigup} performing signature update check... Apr 09 2024 07:01:46 webserver maldet(23821): {sigup} local signature set is version 202404071311303 Apr 09 2024 07:01:46 webserver maldet(23821): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Apr 09 2024 07:01:46 webserver maldet(23821): {sigup} latest signature set already installed Apr 09 2024 07:01:46 webserver maldet(23936): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Apr 09 2024 07:01:46 webserver maldet(23936): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Apr 09 2024 07:01:46 webserver maldet(23936): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Apr 09 2024 07:01:46 webserver maldet(23936): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Apr 09 2024 07:01:46 webserver maldet(23936): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Apr 09 2024 07:03:29 webserver maldet(23936): {scan} file list completed in 103s, found 771 files... Apr 09 2024 07:03:29 webserver maldet(23936): {scan} found clamav binary at /usr/bin/clamscan, using clamav scanner engine... Apr 09 2024 07:03:29 webserver maldet(23936): {scan} scan of (771 files) in progress... Apr 09 2024 07:04:26 webserver maldet(23936): {scan} clamscan returned an error, check /usr/local/maldetect/logs/clamscan_log for details! Apr 09 2024 07:04:26 webserver maldet(23936): {scan} scan completed on : files 771, malware hits 0, cleaned hits 0, time 160s Apr 09 2024 07:04:26 webserver maldet(23936): {scan} scan report saved, to view run: maldet --report 240409-0701.23936 Apr 10 2024 07:02:39 webserver maldet(14888): {update} checking for available updates... Apr 10 2024 07:02:39 webserver maldet(14888): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Apr 10 2024 07:02:39 webserver maldet(14888): {update} hashing install files and checking against server... Apr 10 2024 07:02:39 webserver maldet(14888): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Apr 10 2024 07:02:39 webserver maldet(14888): {update} latest version already installed. Apr 10 2024 07:02:39 webserver maldet(15024): {sigup} performing signature update check... Apr 10 2024 07:02:39 webserver maldet(15024): {sigup} local signature set is version 202404071311303 Apr 10 2024 07:02:39 webserver maldet(15024): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Apr 10 2024 07:02:39 webserver maldet(15024): {sigup} latest signature set already installed Apr 10 2024 07:02:39 webserver maldet(15139): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Apr 10 2024 07:02:39 webserver maldet(15139): {scan} signatures loaded: 17637 (14801 MD5 | 2053 HEX | 783 YARA | 0 USER) Apr 10 2024 07:02:39 webserver maldet(15139): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Apr 10 2024 07:02:39 webserver maldet(15139): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Apr 10 2024 07:02:39 webserver maldet(15139): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Apr 10 2024 07:04:28 webserver maldet(15139): {scan} file list completed in 109s, found 1301 files... Apr 10 2024 07:04:28 webserver maldet(15139): {scan} found clamav binary at /usr/bin/clamscan, using clamav scanner engine... Apr 10 2024 07:04:28 webserver maldet(15139): {scan} scan of (1301 files) in progress... Apr 10 2024 07:05:24 webserver maldet(15139): {scan} clamscan returned an error, check /usr/local/maldetect/logs/clamscan_log for details! Apr 10 2024 07:05:24 webserver maldet(15139): {scan} scan completed on : files 1301, malware hits 0, cleaned hits 0, time 165s Apr 10 2024 07:05:24 webserver maldet(15139): {scan} scan report saved, to view run: maldet --report 240410-0702.15139 Apr 11 2024 07:00:15 webserver maldet(5311): {update} checking for available updates... Apr 11 2024 07:00:15 webserver maldet(5311): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Apr 11 2024 07:00:15 webserver maldet(5311): {update} hashing install files and checking against server... Apr 11 2024 07:00:15 webserver maldet(5311): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Apr 11 2024 07:00:15 webserver maldet(5311): {update} latest version already installed. Apr 11 2024 07:00:15 webserver maldet(5449): {sigup} performing signature update check... Apr 11 2024 07:00:15 webserver maldet(5449): {sigup} local signature set is version 202404071311303 Apr 11 2024 07:00:15 webserver maldet(5449): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Apr 11 2024 07:00:16 webserver maldet(5449): {sigup} new signature set 202404102805070 available Apr 11 2024 07:00:16 webserver maldet(5449): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Apr 11 2024 07:00:16 webserver maldet(5449): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Apr 11 2024 07:00:16 webserver maldet(5449): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Apr 11 2024 07:00:16 webserver maldet(5449): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Apr 11 2024 07:00:16 webserver maldet(5449): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Apr 11 2024 07:00:16 webserver maldet(5449): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Apr 11 2024 07:00:16 webserver maldet(5449): {sigup} verified md5sum of maldet-sigpack.tgz Apr 11 2024 07:00:18 webserver maldet(5449): {sigup} unpacked and installed maldet-sigpack.tgz Apr 11 2024 07:00:19 webserver maldet(5449): {sigup} verified md5sum of maldet-clean.tgz Apr 11 2024 07:00:19 webserver maldet(5449): {sigup} unpacked and installed maldet-clean.tgz Apr 11 2024 07:00:19 webserver maldet(5449): {sigup} signature set update completed Apr 11 2024 07:00:19 webserver maldet(5449): {sigup} 17638 signatures (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Apr 11 2024 07:00:19 webserver maldet(5685): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Apr 11 2024 07:00:19 webserver maldet(5685): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Apr 11 2024 07:00:19 webserver maldet(5685): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Apr 11 2024 07:00:19 webserver maldet(5685): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Apr 11 2024 07:00:19 webserver maldet(5685): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Apr 11 2024 07:12:24 webserver maldet(5685): {scan} file list completed in 725s, found 798 files... Apr 11 2024 07:12:24 webserver maldet(5685): {scan} found clamav binary at /usr/bin/clamscan, using clamav scanner engine... Apr 11 2024 07:12:24 webserver maldet(5685): {scan} scan of (798 files) in progress... Apr 11 2024 07:13:43 webserver maldet(5685): {scan} clamscan returned an error, check /usr/local/maldetect/logs/clamscan_log for details! Apr 11 2024 07:13:43 webserver maldet(5685): {scan} scan completed on : files 798, malware hits 0, cleaned hits 0, time 804s Apr 11 2024 07:13:43 webserver maldet(5685): {scan} scan report saved, to view run: maldet --report 240411-0700.5685 Apr 12 2024 06:58:51 webserver maldet(4879): {update} checking for available updates... Apr 12 2024 06:58:52 webserver maldet(4879): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Apr 12 2024 06:58:52 webserver maldet(4879): {update} hashing install files and checking against server... Apr 12 2024 06:58:52 webserver maldet(4879): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Apr 12 2024 06:58:52 webserver maldet(4879): {update} latest version already installed. Apr 12 2024 06:58:52 webserver maldet(5015): {sigup} performing signature update check... Apr 12 2024 06:58:52 webserver maldet(5015): {sigup} local signature set is version 202404102805070 Apr 12 2024 06:58:52 webserver maldet(5015): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Apr 12 2024 06:58:52 webserver maldet(5015): {sigup} latest signature set already installed Apr 12 2024 06:58:52 webserver maldet(5130): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Apr 12 2024 06:58:52 webserver maldet(5130): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Apr 12 2024 06:58:52 webserver maldet(5130): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Apr 12 2024 06:58:52 webserver maldet(5130): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Apr 12 2024 06:58:52 webserver maldet(5130): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Apr 12 2024 07:01:20 webserver maldet(5130): {scan} file list completed in 148s, found 927 files... Apr 12 2024 07:01:20 webserver maldet(5130): {scan} found clamav binary at /usr/bin/clamscan, using clamav scanner engine... Apr 12 2024 07:01:20 webserver maldet(5130): {scan} scan of (927 files) in progress... Apr 12 2024 07:01:53 webserver maldet(5130): {scan} clamscan returned an error, check /usr/local/maldetect/logs/clamscan_log for details! Apr 12 2024 07:01:54 webserver maldet(5130): {scan} scan completed on : files 927, malware hits 0, cleaned hits 0, time 181s Apr 12 2024 07:01:54 webserver maldet(5130): {scan} scan report saved, to view run: maldet --report 240412-0658.5130 Apr 13 2024 06:56:03 webserver maldet(780): {update} checking for available updates... Apr 13 2024 06:56:03 webserver maldet(780): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Apr 13 2024 06:56:03 webserver maldet(780): {update} hashing install files and checking against server... Apr 13 2024 06:56:03 webserver maldet(780): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Apr 13 2024 06:56:03 webserver maldet(780): {update} latest version already installed. Apr 13 2024 06:56:04 webserver maldet(919): {sigup} performing signature update check... Apr 13 2024 06:56:04 webserver maldet(919): {sigup} local signature set is version 202404102805070 Apr 13 2024 06:56:04 webserver maldet(919): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Apr 13 2024 06:56:04 webserver maldet(919): {sigup} new signature set 202404133479675 available Apr 13 2024 06:56:04 webserver maldet(919): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Apr 13 2024 06:56:04 webserver maldet(919): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Apr 13 2024 06:56:04 webserver maldet(919): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Apr 13 2024 06:56:04 webserver maldet(919): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Apr 13 2024 06:56:04 webserver maldet(919): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Apr 13 2024 06:56:04 webserver maldet(919): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Apr 13 2024 06:56:04 webserver maldet(919): {sigup} unable to verify md5sum of maldet-sigpack.tgz, please try again or contact proj@rfxn.com Apr 13 2024 06:56:04 webserver maldet(919): {sigup} verified md5sum of maldet-clean.tgz Apr 13 2024 06:56:04 webserver maldet(919): {sigup} unpacked and installed maldet-clean.tgz Apr 13 2024 06:56:04 webserver maldet(1106): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Apr 13 2024 06:56:04 webserver maldet(1106): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Apr 13 2024 06:56:04 webserver maldet(1106): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Apr 13 2024 06:56:04 webserver maldet(1106): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Apr 13 2024 06:56:04 webserver maldet(1106): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Apr 13 2024 06:56:26 webserver maldet(1106): {scan} file list completed in 22s, found 1424 files... Apr 13 2024 06:56:26 webserver maldet(1106): {scan} found clamav binary at /usr/bin/clamscan, using clamav scanner engine... Apr 13 2024 06:56:26 webserver maldet(1106): {scan} scan of (1424 files) in progress... Apr 13 2024 06:57:12 webserver maldet(1106): {scan} clamscan returned an error, check /usr/local/maldetect/logs/clamscan_log for details! Apr 13 2024 06:57:12 webserver maldet(1106): {scan} scan completed on : files 1424, malware hits 0, cleaned hits 0, time 68s Apr 13 2024 06:57:12 webserver maldet(1106): {scan} scan report saved, to view run: maldet --report 240413-0656.1106 Apr 14 2024 06:57:40 webserver maldet(26317): {update} checking for available updates... Apr 14 2024 06:57:40 webserver maldet(26317): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Apr 14 2024 06:57:40 webserver maldet(26317): {update} hashing install files and checking against server... Apr 14 2024 06:57:40 webserver maldet(26317): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Apr 14 2024 06:57:40 webserver maldet(26317): {update} latest version already installed. Apr 14 2024 06:57:40 webserver maldet(26453): {sigup} performing signature update check... Apr 14 2024 06:57:40 webserver maldet(26453): {sigup} local signature set is version 202404102805070 Apr 14 2024 06:57:40 webserver maldet(26453): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Apr 14 2024 06:57:40 webserver maldet(26453): {sigup} new signature set 202404133479675 available Apr 14 2024 06:57:40 webserver maldet(26453): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Apr 14 2024 06:57:41 webserver maldet(26453): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Apr 14 2024 06:57:41 webserver maldet(26453): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Apr 14 2024 06:57:41 webserver maldet(26453): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Apr 14 2024 06:57:41 webserver maldet(26453): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Apr 14 2024 06:57:41 webserver maldet(26453): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Apr 14 2024 06:57:41 webserver maldet(26453): {sigup} verified md5sum of maldet-sigpack.tgz Apr 14 2024 06:57:41 webserver maldet(26453): {sigup} unpacked and installed maldet-sigpack.tgz Apr 14 2024 06:57:41 webserver maldet(26453): {sigup} verified md5sum of maldet-clean.tgz Apr 14 2024 06:57:41 webserver maldet(26453): {sigup} unpacked and installed maldet-clean.tgz Apr 14 2024 06:57:41 webserver maldet(26453): {sigup} signature set update completed Apr 14 2024 06:57:41 webserver maldet(26453): {sigup} 17638 signatures (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Apr 14 2024 06:57:41 webserver maldet(26685): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Apr 14 2024 06:57:41 webserver maldet(26685): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Apr 14 2024 06:57:41 webserver maldet(26685): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Apr 14 2024 06:57:41 webserver maldet(26685): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Apr 14 2024 06:57:41 webserver maldet(26685): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Apr 14 2024 06:59:15 webserver maldet(26685): {scan} file list completed in 94s, found 1350 files... Apr 14 2024 06:59:15 webserver maldet(26685): {scan} found clamav binary at /usr/bin/clamscan, using clamav scanner engine... Apr 14 2024 06:59:15 webserver maldet(26685): {scan} scan of (1350 files) in progress... Apr 14 2024 06:59:56 webserver maldet(26685): {scan} clamscan returned an error, check /usr/local/maldetect/logs/clamscan_log for details! Apr 14 2024 06:59:56 webserver maldet(26685): {scan} scan completed on : files 1350, malware hits 0, cleaned hits 0, time 135s Apr 14 2024 06:59:56 webserver maldet(26685): {scan} scan report saved, to view run: maldet --report 240414-0657.26685 Apr 15 2024 06:58:42 webserver maldet(20990): {update} checking for available updates... Apr 15 2024 06:58:42 webserver maldet(20990): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Apr 15 2024 06:58:42 webserver maldet(20990): {update} hashing install files and checking against server... Apr 15 2024 06:58:42 webserver maldet(20990): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Apr 15 2024 06:58:42 webserver maldet(20990): {update} latest version already installed. Apr 15 2024 06:58:42 webserver maldet(21126): {sigup} performing signature update check... Apr 15 2024 06:58:42 webserver maldet(21126): {sigup} local signature set is version 202404133479675 Apr 15 2024 06:58:42 webserver maldet(21126): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Apr 15 2024 06:58:43 webserver maldet(21126): {sigup} latest signature set already installed Apr 15 2024 06:58:43 webserver maldet(21241): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Apr 15 2024 06:58:44 webserver maldet(21241): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Apr 15 2024 06:58:44 webserver maldet(21241): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Apr 15 2024 06:58:44 webserver maldet(21241): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Apr 15 2024 06:58:44 webserver maldet(21241): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Apr 15 2024 07:07:47 webserver maldet(21241): {scan} file list completed in 543s, found 1269 files... Apr 15 2024 07:07:47 webserver maldet(21241): {scan} found clamav binary at /usr/bin/clamscan, using clamav scanner engine... Apr 15 2024 07:07:47 webserver maldet(21241): {scan} scan of (1269 files) in progress... Apr 15 2024 07:08:28 webserver maldet(21241): {scan} clamscan returned an error, check /usr/local/maldetect/logs/clamscan_log for details! Apr 15 2024 07:08:29 webserver maldet(21241): {scan} scan completed on : files 1269, malware hits 0, cleaned hits 0, time 585s Apr 15 2024 07:08:29 webserver maldet(21241): {scan} scan report saved, to view run: maldet --report 240415-0658.21241 Apr 16 2024 07:07:57 webserver maldet(8880): {update} checking for available updates... Apr 16 2024 07:07:57 webserver maldet(8880): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Apr 16 2024 07:07:57 webserver maldet(8880): {update} hashing install files and checking against server... Apr 16 2024 07:07:57 webserver maldet(8880): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Apr 16 2024 07:07:57 webserver maldet(8880): {update} latest version already installed. Apr 16 2024 07:07:57 webserver maldet(9016): {sigup} performing signature update check... Apr 16 2024 07:07:57 webserver maldet(9016): {sigup} local signature set is version 202404133479675 Apr 16 2024 07:07:57 webserver maldet(9016): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Apr 16 2024 07:07:57 webserver maldet(9016): {sigup} latest signature set already installed Apr 16 2024 07:07:57 webserver maldet(9135): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Apr 16 2024 07:07:57 webserver maldet(9135): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Apr 16 2024 07:07:57 webserver maldet(9135): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Apr 16 2024 07:07:57 webserver maldet(9135): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Apr 16 2024 07:07:58 webserver maldet(9135): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Apr 16 2024 07:09:44 webserver maldet(9135): {scan} file list completed in 107s, found 824 files... Apr 16 2024 07:09:44 webserver maldet(9135): {scan} found clamav binary at /usr/bin/clamscan, using clamav scanner engine... Apr 16 2024 07:09:44 webserver maldet(9135): {scan} scan of (824 files) in progress... Apr 16 2024 07:10:17 webserver maldet(9135): {scan} clamscan returned an error, check /usr/local/maldetect/logs/clamscan_log for details! Apr 16 2024 07:10:17 webserver maldet(9135): {scan} scan completed on : files 824, malware hits 0, cleaned hits 0, time 140s Apr 16 2024 07:10:17 webserver maldet(9135): {scan} scan report saved, to view run: maldet --report 240416-0707.9135 Apr 17 2024 06:58:40 webserver maldet(498): {update} checking for available updates... Apr 17 2024 06:58:40 webserver maldet(498): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Apr 17 2024 06:58:40 webserver maldet(498): {update} hashing install files and checking against server... Apr 17 2024 06:58:40 webserver maldet(498): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Apr 17 2024 06:58:40 webserver maldet(498): {update} latest version already installed. Apr 17 2024 06:58:41 webserver maldet(635): {sigup} performing signature update check... Apr 17 2024 06:58:41 webserver maldet(635): {sigup} local signature set is version 202404133479675 Apr 17 2024 06:58:41 webserver maldet(635): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Apr 17 2024 06:58:41 webserver maldet(635): {sigup} new signature set 202404164184748 available Apr 17 2024 06:58:41 webserver maldet(635): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Apr 17 2024 06:58:41 webserver maldet(635): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Apr 17 2024 06:58:41 webserver maldet(635): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Apr 17 2024 06:58:41 webserver maldet(635): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Apr 17 2024 06:58:41 webserver maldet(635): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Apr 17 2024 06:58:41 webserver maldet(635): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Apr 17 2024 06:58:41 webserver maldet(635): {sigup} verified md5sum of maldet-sigpack.tgz Apr 17 2024 06:58:41 webserver maldet(635): {sigup} unpacked and installed maldet-sigpack.tgz Apr 17 2024 06:58:41 webserver maldet(635): {sigup} verified md5sum of maldet-clean.tgz Apr 17 2024 06:58:41 webserver maldet(635): {sigup} unpacked and installed maldet-clean.tgz Apr 17 2024 06:58:41 webserver maldet(635): {sigup} signature set update completed Apr 17 2024 06:58:41 webserver maldet(635): {sigup} 17638 signatures (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Apr 17 2024 06:58:41 webserver maldet(869): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Apr 17 2024 06:58:42 webserver maldet(869): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Apr 17 2024 06:58:42 webserver maldet(869): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Apr 17 2024 06:58:42 webserver maldet(869): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Apr 17 2024 06:58:42 webserver maldet(869): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Apr 17 2024 07:01:14 webserver maldet(869): {scan} file list completed in 152s, found 1334 files... Apr 17 2024 07:01:14 webserver maldet(869): {scan} found clamav binary at /usr/bin/clamscan, using clamav scanner engine... Apr 17 2024 07:01:14 webserver maldet(869): {scan} scan of (1334 files) in progress... Apr 17 2024 07:01:53 webserver maldet(869): {scan} clamscan returned an error, check /usr/local/maldetect/logs/clamscan_log for details! Apr 17 2024 07:01:53 webserver maldet(869): {scan} scan completed on : files 1334, malware hits 0, cleaned hits 0, time 192s Apr 17 2024 07:01:53 webserver maldet(869): {scan} scan report saved, to view run: maldet --report 240417-0658.869 Apr 18 2024 07:07:19 webserver maldet(26336): {update} checking for available updates... Apr 18 2024 07:07:19 webserver maldet(26336): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Apr 18 2024 07:07:19 webserver maldet(26336): {update} hashing install files and checking against server... Apr 18 2024 07:07:19 webserver maldet(26336): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Apr 18 2024 07:07:19 webserver maldet(26336): {update} latest version already installed. Apr 18 2024 07:07:19 webserver maldet(26472): {sigup} performing signature update check... Apr 18 2024 07:07:19 webserver maldet(26472): {sigup} local signature set is version 202404164184748 Apr 18 2024 07:07:19 webserver maldet(26472): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Apr 18 2024 07:07:19 webserver maldet(26472): {sigup} latest signature set already installed Apr 18 2024 07:07:20 webserver maldet(26586): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Apr 18 2024 07:07:20 webserver maldet(26586): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Apr 18 2024 07:07:20 webserver maldet(26586): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Apr 18 2024 07:07:20 webserver maldet(26586): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Apr 18 2024 07:07:20 webserver maldet(26586): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Apr 18 2024 07:09:03 webserver maldet(26586): {scan} file list completed in 103s, found 936 files... Apr 18 2024 07:09:03 webserver maldet(26586): {scan} found clamav binary at /usr/bin/clamscan, using clamav scanner engine... Apr 18 2024 07:09:03 webserver maldet(26586): {scan} scan of (936 files) in progress... Apr 18 2024 07:09:38 webserver maldet(26586): {scan} clamscan returned an error, check /usr/local/maldetect/logs/clamscan_log for details! Apr 18 2024 07:09:38 webserver maldet(26586): {scan} scan completed on : files 936, malware hits 0, cleaned hits 0, time 138s Apr 18 2024 07:09:38 webserver maldet(26586): {scan} scan report saved, to view run: maldet --report 240418-0707.26586 Apr 19 2024 06:56:39 webserver maldet(21246): {update} checking for available updates... Apr 19 2024 06:56:39 webserver maldet(21246): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Apr 19 2024 06:56:39 webserver maldet(21246): {update} hashing install files and checking against server... Apr 19 2024 06:56:39 webserver maldet(21246): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Apr 19 2024 06:56:39 webserver maldet(21246): {update} latest version already installed. Apr 19 2024 06:56:39 webserver maldet(21382): {sigup} performing signature update check... Apr 19 2024 06:56:39 webserver maldet(21382): {sigup} local signature set is version 202404164184748 Apr 19 2024 06:56:39 webserver maldet(21382): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Apr 19 2024 06:56:39 webserver maldet(21382): {sigup} latest signature set already installed Apr 19 2024 06:56:39 webserver maldet(21497): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Apr 19 2024 06:56:39 webserver maldet(21497): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Apr 19 2024 06:56:39 webserver maldet(21497): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Apr 19 2024 06:56:39 webserver maldet(21497): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Apr 19 2024 06:56:39 webserver maldet(21497): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Apr 19 2024 06:56:49 webserver maldet(21497): {scan} file list completed in 10s, found 1119 files... Apr 19 2024 06:56:49 webserver maldet(21497): {scan} found clamav binary at /usr/bin/clamscan, using clamav scanner engine... Apr 19 2024 06:56:49 webserver maldet(21497): {scan} scan of (1119 files) in progress... Apr 19 2024 06:57:25 webserver maldet(21497): {scan} clamscan returned an error, check /usr/local/maldetect/logs/clamscan_log for details! Apr 19 2024 06:57:25 webserver maldet(21497): {scan} scan completed on : files 1119, malware hits 0, cleaned hits 0, time 46s Apr 19 2024 06:57:25 webserver maldet(21497): {scan} scan report saved, to view run: maldet --report 240419-0656.21497 Apr 20 2024 06:56:30 webserver maldet(16721): {update} checking for available updates... Apr 20 2024 06:56:30 webserver maldet(16721): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Apr 20 2024 06:56:31 webserver maldet(16721): {update} hashing install files and checking against server... Apr 20 2024 06:56:31 webserver maldet(16721): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Apr 20 2024 06:56:31 webserver maldet(16721): {update} latest version already installed. Apr 20 2024 06:56:31 webserver maldet(16857): {sigup} performing signature update check... Apr 20 2024 06:56:31 webserver maldet(16857): {sigup} local signature set is version 202404164184748 Apr 20 2024 06:56:31 webserver maldet(16857): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Apr 20 2024 06:56:31 webserver maldet(16857): {sigup} new signature set 20240419705759 available Apr 20 2024 06:56:31 webserver maldet(16857): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Apr 20 2024 06:56:31 webserver maldet(16857): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Apr 20 2024 06:56:31 webserver maldet(16857): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Apr 20 2024 06:56:31 webserver maldet(16857): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Apr 20 2024 06:56:31 webserver maldet(16857): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Apr 20 2024 06:56:31 webserver maldet(16857): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Apr 20 2024 06:56:31 webserver maldet(16857): {sigup} verified md5sum of maldet-sigpack.tgz Apr 20 2024 06:56:31 webserver maldet(16857): {sigup} unpacked and installed maldet-sigpack.tgz Apr 20 2024 06:56:31 webserver maldet(16857): {sigup} verified md5sum of maldet-clean.tgz Apr 20 2024 06:56:31 webserver maldet(16857): {sigup} unpacked and installed maldet-clean.tgz Apr 20 2024 06:56:31 webserver maldet(16857): {sigup} signature set update completed Apr 20 2024 06:56:31 webserver maldet(16857): {sigup} 17638 signatures (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Apr 20 2024 06:56:32 webserver maldet(17088): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Apr 20 2024 06:56:32 webserver maldet(17088): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Apr 20 2024 06:56:32 webserver maldet(17088): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Apr 20 2024 06:56:32 webserver maldet(17088): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Apr 20 2024 06:56:32 webserver maldet(17088): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Apr 20 2024 06:59:30 webserver maldet(17088): {scan} file list completed in 178s, found 1161 files... Apr 20 2024 06:59:30 webserver maldet(17088): {scan} found clamav binary at /usr/bin/clamscan, using clamav scanner engine... Apr 20 2024 06:59:30 webserver maldet(17088): {scan} scan of (1161 files) in progress... Apr 20 2024 07:00:10 webserver maldet(17088): {scan} clamscan returned an error, check /usr/local/maldetect/logs/clamscan_log for details! Apr 20 2024 07:00:10 webserver maldet(17088): {scan} scan completed on : files 1161, malware hits 0, cleaned hits 0, time 218s Apr 20 2024 07:00:10 webserver maldet(17088): {scan} scan report saved, to view run: maldet --report 240420-0656.17088 Apr 21 2024 06:56:11 webserver maldet(9692): {update} checking for available updates... Apr 21 2024 06:56:11 webserver maldet(9692): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Apr 21 2024 06:56:11 webserver maldet(9692): {update} hashing install files and checking against server... Apr 21 2024 06:56:11 webserver maldet(9692): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Apr 21 2024 06:56:11 webserver maldet(9692): {update} latest version already installed. Apr 21 2024 06:56:11 webserver maldet(9834): {sigup} performing signature update check... Apr 21 2024 06:56:11 webserver maldet(9834): {sigup} local signature set is version 20240419705759 Apr 21 2024 06:56:11 webserver maldet(9834): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Apr 21 2024 06:56:11 webserver maldet(9834): {sigup} latest signature set already installed Apr 21 2024 06:56:11 webserver maldet(9948): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Apr 21 2024 06:56:12 webserver maldet(9948): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Apr 21 2024 06:56:12 webserver maldet(9948): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Apr 21 2024 06:56:12 webserver maldet(9948): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Apr 21 2024 06:56:12 webserver maldet(9948): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Apr 21 2024 06:58:02 webserver maldet(9948): {scan} file list completed in 110s, found 1173 files... Apr 21 2024 06:58:02 webserver maldet(9948): {scan} found clamav binary at /usr/bin/clamscan, using clamav scanner engine... Apr 21 2024 06:58:02 webserver maldet(9948): {scan} scan of (1173 files) in progress... Apr 21 2024 06:58:40 webserver maldet(9948): {scan} clamscan returned an error, check /usr/local/maldetect/logs/clamscan_log for details! Apr 21 2024 06:58:40 webserver maldet(9948): {scan} scan completed on : files 1173, malware hits 0, cleaned hits 0, time 149s Apr 21 2024 06:58:40 webserver maldet(9948): {scan} scan report saved, to view run: maldet --report 240421-0656.9948 Apr 22 2024 06:56:39 webserver maldet(27882): {update} checking for available updates... Apr 22 2024 06:56:39 webserver maldet(27882): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Apr 22 2024 06:56:39 webserver maldet(27882): {update} hashing install files and checking against server... Apr 22 2024 06:56:39 webserver maldet(27882): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Apr 22 2024 06:56:39 webserver maldet(27882): {update} latest version already installed. Apr 22 2024 06:56:39 webserver maldet(28018): {sigup} performing signature update check... Apr 22 2024 06:56:39 webserver maldet(28018): {sigup} local signature set is version 20240419705759 Apr 22 2024 06:56:39 webserver maldet(28018): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Apr 22 2024 06:56:40 webserver maldet(28018): {sigup} latest signature set already installed Apr 22 2024 06:56:40 webserver maldet(28135): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Apr 22 2024 06:56:40 webserver maldet(28135): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Apr 22 2024 06:56:40 webserver maldet(28135): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Apr 22 2024 06:56:40 webserver maldet(28135): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Apr 22 2024 06:56:40 webserver maldet(28135): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Apr 22 2024 06:59:52 webserver maldet(28135): {scan} file list completed in 192s, found 1999 files... Apr 22 2024 06:59:52 webserver maldet(28135): {scan} found clamav binary at /usr/bin/clamscan, using clamav scanner engine... Apr 22 2024 06:59:52 webserver maldet(28135): {scan} scan of (1999 files) in progress... Apr 22 2024 07:02:12 webserver maldet(28135): {scan} clamscan returned an error, check /usr/local/maldetect/logs/clamscan_log for details! Apr 22 2024 07:02:12 webserver maldet(28135): {scan} scan completed on : files 1999, malware hits 0, cleaned hits 0, time 332s Apr 22 2024 07:02:12 webserver maldet(28135): {scan} scan report saved, to view run: maldet --report 240422-0656.28135 Apr 23 2024 06:56:17 webserver maldet(14891): {update} checking for available updates... Apr 23 2024 06:56:17 webserver maldet(14891): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Apr 23 2024 06:56:17 webserver maldet(14891): {update} hashing install files and checking against server... Apr 23 2024 06:56:17 webserver maldet(14891): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Apr 23 2024 06:56:17 webserver maldet(14891): {update} latest version already installed. Apr 23 2024 06:56:17 webserver maldet(15027): {sigup} performing signature update check... Apr 23 2024 06:56:17 webserver maldet(15027): {sigup} local signature set is version 20240419705759 Apr 23 2024 06:56:17 webserver maldet(15027): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Apr 23 2024 06:56:17 webserver maldet(15027): {sigup} new signature set 202404221487421 available Apr 23 2024 06:56:17 webserver maldet(15027): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Apr 23 2024 06:56:18 webserver maldet(15027): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Apr 23 2024 06:56:18 webserver maldet(15027): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Apr 23 2024 06:56:18 webserver maldet(15027): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Apr 23 2024 06:56:18 webserver maldet(15027): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Apr 23 2024 06:56:18 webserver maldet(15027): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Apr 23 2024 06:56:18 webserver maldet(15027): {sigup} verified md5sum of maldet-sigpack.tgz Apr 23 2024 06:56:18 webserver maldet(15027): {sigup} unpacked and installed maldet-sigpack.tgz Apr 23 2024 06:56:18 webserver maldet(15027): {sigup} verified md5sum of maldet-clean.tgz Apr 23 2024 06:56:18 webserver maldet(15027): {sigup} unpacked and installed maldet-clean.tgz Apr 23 2024 06:56:18 webserver maldet(15027): {sigup} signature set update completed Apr 23 2024 06:56:18 webserver maldet(15027): {sigup} 17638 signatures (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Apr 23 2024 06:56:18 webserver maldet(15257): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Apr 23 2024 06:56:18 webserver maldet(15257): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Apr 23 2024 06:56:18 webserver maldet(15257): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Apr 23 2024 06:56:18 webserver maldet(15257): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Apr 23 2024 06:56:18 webserver maldet(15257): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Apr 23 2024 07:02:56 webserver maldet(15257): {scan} file list completed in 398s, found 671 files... Apr 23 2024 07:02:56 webserver maldet(15257): {scan} found clamav binary at /usr/bin/clamscan, using clamav scanner engine... Apr 23 2024 07:02:56 webserver maldet(15257): {scan} scan of (671 files) in progress... Apr 23 2024 07:03:30 webserver maldet(15257): {scan} clamscan returned an error, check /usr/local/maldetect/logs/clamscan_log for details! Apr 23 2024 07:03:30 webserver maldet(15257): {scan} scan completed on : files 671, malware hits 0, cleaned hits 0, time 432s Apr 23 2024 07:03:30 webserver maldet(15257): {scan} scan report saved, to view run: maldet --report 240423-0656.15257 Apr 24 2024 07:04:18 webserver maldet(8580): {update} checking for available updates... Apr 24 2024 07:04:18 webserver maldet(8580): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Apr 24 2024 07:04:19 webserver maldet(8580): {update} hashing install files and checking against server... Apr 24 2024 07:04:19 webserver maldet(8580): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Apr 24 2024 07:04:19 webserver maldet(8580): {update} latest version already installed. Apr 24 2024 07:04:19 webserver maldet(8716): {sigup} performing signature update check... Apr 24 2024 07:04:19 webserver maldet(8716): {sigup} local signature set is version 202404221487421 Apr 24 2024 07:04:19 webserver maldet(8716): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Apr 24 2024 07:04:19 webserver maldet(8716): {sigup} latest signature set already installed Apr 24 2024 07:04:19 webserver maldet(8830): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Apr 24 2024 07:04:19 webserver maldet(8830): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Apr 24 2024 07:04:19 webserver maldet(8830): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Apr 24 2024 07:04:19 webserver maldet(8830): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Apr 24 2024 07:04:19 webserver maldet(8830): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Apr 24 2024 07:06:09 webserver maldet(8830): {scan} file list completed in 110s, found 698 files... Apr 24 2024 07:06:09 webserver maldet(8830): {scan} found clamav binary at /usr/bin/clamscan, using clamav scanner engine... Apr 24 2024 07:06:09 webserver maldet(8830): {scan} scan of (698 files) in progress... Apr 24 2024 07:06:42 webserver maldet(8830): {scan} clamscan returned an error, check /usr/local/maldetect/logs/clamscan_log for details! Apr 24 2024 07:06:42 webserver maldet(8830): {scan} scan completed on : files 698, malware hits 0, cleaned hits 0, time 143s Apr 24 2024 07:06:42 webserver maldet(8830): {scan} scan report saved, to view run: maldet --report 240424-0704.8830 Apr 25 2024 06:56:06 webserver maldet(4390): {update} checking for available updates... Apr 25 2024 06:56:06 webserver maldet(4390): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Apr 25 2024 06:56:06 webserver maldet(4390): {update} hashing install files and checking against server... Apr 25 2024 06:56:06 webserver maldet(4390): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Apr 25 2024 06:56:06 webserver maldet(4390): {update} latest version already installed. Apr 25 2024 06:56:06 webserver maldet(4526): {sigup} performing signature update check... Apr 25 2024 06:56:06 webserver maldet(4526): {sigup} local signature set is version 202404221487421 Apr 25 2024 06:56:06 webserver maldet(4526): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Apr 25 2024 06:56:07 webserver maldet(4526): {sigup} latest signature set already installed Apr 25 2024 06:56:07 webserver maldet(4641): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Apr 25 2024 06:56:07 webserver maldet(4641): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Apr 25 2024 06:56:07 webserver maldet(4641): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Apr 25 2024 06:56:07 webserver maldet(4641): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Apr 25 2024 06:56:07 webserver maldet(4641): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Apr 25 2024 06:58:02 webserver maldet(4641): {scan} file list completed in 115s, found 629 files... Apr 25 2024 06:58:02 webserver maldet(4641): {scan} found clamav binary at /usr/bin/clamscan, using clamav scanner engine... Apr 25 2024 06:58:02 webserver maldet(4641): {scan} scan of (629 files) in progress... Apr 25 2024 06:58:40 webserver maldet(4641): {scan} clamscan returned an error, check /usr/local/maldetect/logs/clamscan_log for details! Apr 25 2024 06:58:40 webserver maldet(4641): {scan} scan completed on : files 629, malware hits 0, cleaned hits 0, time 153s Apr 25 2024 06:58:40 webserver maldet(4641): {scan} scan report saved, to view run: maldet --report 240425-0656.4641 Apr 26 2024 07:02:48 webserver maldet(26000): {update} checking for available updates... Apr 26 2024 07:02:48 webserver maldet(26000): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Apr 26 2024 07:02:48 webserver maldet(26000): {update} hashing install files and checking against server... Apr 26 2024 07:02:48 webserver maldet(26000): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Apr 26 2024 07:02:48 webserver maldet(26000): {update} latest version already installed. Apr 26 2024 07:02:48 webserver maldet(26136): {sigup} performing signature update check... Apr 26 2024 07:02:48 webserver maldet(26136): {sigup} local signature set is version 202404221487421 Apr 26 2024 07:02:48 webserver maldet(26136): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Apr 26 2024 07:02:49 webserver maldet(26136): {sigup} new signature set 202404252278094 available Apr 26 2024 07:02:49 webserver maldet(26136): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Apr 26 2024 07:02:49 webserver maldet(26136): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Apr 26 2024 07:02:49 webserver maldet(26136): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Apr 26 2024 07:02:49 webserver maldet(26136): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Apr 26 2024 07:02:49 webserver maldet(26136): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Apr 26 2024 07:02:49 webserver maldet(26136): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Apr 26 2024 07:02:49 webserver maldet(26136): {sigup} verified md5sum of maldet-sigpack.tgz Apr 26 2024 07:02:49 webserver maldet(26136): {sigup} unpacked and installed maldet-sigpack.tgz Apr 26 2024 07:02:49 webserver maldet(26136): {sigup} verified md5sum of maldet-clean.tgz Apr 26 2024 07:02:49 webserver maldet(26136): {sigup} unpacked and installed maldet-clean.tgz Apr 26 2024 07:02:49 webserver maldet(26136): {sigup} signature set update completed Apr 26 2024 07:02:49 webserver maldet(26136): {sigup} 17638 signatures (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Apr 26 2024 07:02:49 webserver maldet(26367): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Apr 26 2024 07:02:49 webserver maldet(26367): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Apr 26 2024 07:02:49 webserver maldet(26367): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Apr 26 2024 07:02:49 webserver maldet(26367): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Apr 26 2024 07:02:49 webserver maldet(26367): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Apr 26 2024 07:05:29 webserver maldet(26367): {scan} file list completed in 160s, found 1019 files... Apr 26 2024 07:05:29 webserver maldet(26367): {scan} found clamav binary at /usr/bin/clamscan, using clamav scanner engine... Apr 26 2024 07:05:29 webserver maldet(26367): {scan} scan of (1019 files) in progress... Apr 26 2024 07:06:07 webserver maldet(26367): {scan} clamscan returned an error, check /usr/local/maldetect/logs/clamscan_log for details! Apr 26 2024 07:06:07 webserver maldet(26367): {scan} scan completed on : files 1019, malware hits 0, cleaned hits 0, time 198s Apr 26 2024 07:06:07 webserver maldet(26367): {scan} scan report saved, to view run: maldet --report 240426-0702.26367 Apr 27 2024 06:59:16 webserver maldet(25635): {update} checking for available updates... Apr 27 2024 06:59:16 webserver maldet(25635): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Apr 27 2024 06:59:16 webserver maldet(25635): {update} hashing install files and checking against server... Apr 27 2024 06:59:16 webserver maldet(25635): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Apr 27 2024 06:59:16 webserver maldet(25635): {update} latest version already installed. Apr 27 2024 06:59:16 webserver maldet(25771): {sigup} performing signature update check... Apr 27 2024 06:59:16 webserver maldet(25771): {sigup} local signature set is version 202404252278094 Apr 27 2024 06:59:16 webserver maldet(25771): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Apr 27 2024 06:59:16 webserver maldet(25771): {sigup} latest signature set already installed Apr 27 2024 06:59:16 webserver maldet(25885): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Apr 27 2024 06:59:17 webserver maldet(25885): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Apr 27 2024 06:59:17 webserver maldet(25885): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Apr 27 2024 06:59:17 webserver maldet(25885): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Apr 27 2024 06:59:17 webserver maldet(25885): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Apr 27 2024 07:02:08 webserver maldet(25885): {scan} file list completed in 171s, found 1322 files... Apr 27 2024 07:02:08 webserver maldet(25885): {scan} found clamav binary at /usr/bin/clamscan, using clamav scanner engine... Apr 27 2024 07:02:08 webserver maldet(25885): {scan} scan of (1322 files) in progress... Apr 27 2024 07:02:49 webserver maldet(25885): {scan} clamscan returned an error, check /usr/local/maldetect/logs/clamscan_log for details! Apr 27 2024 07:02:49 webserver maldet(25885): {scan} scan completed on : files 1322, malware hits 0, cleaned hits 0, time 213s Apr 27 2024 07:02:49 webserver maldet(25885): {scan} scan report saved, to view run: maldet --report 240427-0659.25885 Apr 28 2024 07:10:27 webserver maldet(27803): {update} checking for available updates... Apr 28 2024 07:10:27 webserver maldet(27803): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Apr 28 2024 07:10:27 webserver maldet(27803): {update} hashing install files and checking against server... Apr 28 2024 07:10:28 webserver maldet(27803): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Apr 28 2024 07:10:28 webserver maldet(27803): {update} latest version already installed. Apr 28 2024 07:10:28 webserver maldet(27939): {sigup} performing signature update check... Apr 28 2024 07:10:28 webserver maldet(27939): {sigup} local signature set is version 202404252278094 Apr 28 2024 07:10:28 webserver maldet(27939): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Apr 28 2024 07:10:28 webserver maldet(27939): {sigup} latest signature set already installed Apr 28 2024 07:10:29 webserver maldet(28054): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Apr 28 2024 07:10:29 webserver maldet(28054): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Apr 28 2024 07:10:29 webserver maldet(28054): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Apr 28 2024 07:10:29 webserver maldet(28054): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Apr 28 2024 07:10:30 webserver maldet(28054): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Apr 28 2024 07:15:56 webserver maldet(28054): {scan} file list completed in 326s, found 1421 files... Apr 28 2024 07:15:56 webserver maldet(28054): {scan} found clamav binary at /usr/bin/clamscan, using clamav scanner engine... Apr 28 2024 07:15:56 webserver maldet(28054): {scan} scan of (1421 files) in progress... Apr 28 2024 07:16:46 webserver maldet(28054): {scan} clamscan returned an error, check /usr/local/maldetect/logs/clamscan_log for details! Apr 28 2024 07:16:46 webserver maldet(28054): {scan} scan completed on : files 1421, malware hits 0, cleaned hits 0, time 377s Apr 28 2024 07:16:46 webserver maldet(28054): {scan} scan report saved, to view run: maldet --report 240428-0710.28054 Apr 29 2024 07:05:40 webserver maldet(24839): {update} checking for available updates... Apr 29 2024 07:05:40 webserver maldet(24839): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Apr 29 2024 07:05:40 webserver maldet(24839): {update} hashing install files and checking against server... Apr 29 2024 07:05:40 webserver maldet(24839): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Apr 29 2024 07:05:40 webserver maldet(24839): {update} latest version already installed. Apr 29 2024 07:05:40 webserver maldet(24975): {sigup} performing signature update check... Apr 29 2024 07:05:40 webserver maldet(24975): {sigup} local signature set is version 202404252278094 Apr 29 2024 07:05:41 webserver maldet(24975): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Apr 29 2024 07:05:41 webserver maldet(24975): {sigup} new signature set 202404283053210 available Apr 29 2024 07:05:41 webserver maldet(24975): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Apr 29 2024 07:05:41 webserver maldet(24975): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Apr 29 2024 07:05:41 webserver maldet(24975): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Apr 29 2024 07:05:41 webserver maldet(24975): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Apr 29 2024 07:05:41 webserver maldet(24975): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Apr 29 2024 07:05:41 webserver maldet(24975): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Apr 29 2024 07:05:41 webserver maldet(24975): {sigup} verified md5sum of maldet-sigpack.tgz Apr 29 2024 07:05:41 webserver maldet(24975): {sigup} unpacked and installed maldet-sigpack.tgz Apr 29 2024 07:05:41 webserver maldet(24975): {sigup} verified md5sum of maldet-clean.tgz Apr 29 2024 07:05:41 webserver maldet(24975): {sigup} unpacked and installed maldet-clean.tgz Apr 29 2024 07:05:41 webserver maldet(24975): {sigup} signature set update completed Apr 29 2024 07:05:41 webserver maldet(24975): {sigup} 17638 signatures (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Apr 29 2024 07:05:42 webserver maldet(25206): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Apr 29 2024 07:05:42 webserver maldet(25206): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Apr 29 2024 07:05:42 webserver maldet(25206): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Apr 29 2024 07:05:42 webserver maldet(25206): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Apr 29 2024 07:05:42 webserver maldet(25206): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Apr 29 2024 07:09:57 webserver maldet(25206): {scan} file list completed in 255s, found 2370 files... Apr 29 2024 07:09:57 webserver maldet(25206): {scan} found clamav binary at /usr/bin/clamscan, using clamav scanner engine... Apr 29 2024 07:09:57 webserver maldet(25206): {scan} scan of (2370 files) in progress... Apr 29 2024 07:11:39 webserver maldet(25206): {scan} clamscan returned an error, check /usr/local/maldetect/logs/clamscan_log for details! Apr 29 2024 07:11:39 webserver maldet(25206): {scan} scan completed on : files 2370, malware hits 0, cleaned hits 0, time 357s Apr 29 2024 07:11:39 webserver maldet(25206): {scan} scan report saved, to view run: maldet --report 240429-0705.25206 Apr 30 2024 06:57:31 webserver maldet(14501): {update} checking for available updates... Apr 30 2024 06:57:31 webserver maldet(14501): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Apr 30 2024 06:57:31 webserver maldet(14501): {update} hashing install files and checking against server... Apr 30 2024 06:57:31 webserver maldet(14501): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Apr 30 2024 06:57:31 webserver maldet(14501): {update} latest version already installed. Apr 30 2024 06:57:31 webserver maldet(14637): {sigup} performing signature update check... Apr 30 2024 06:57:31 webserver maldet(14637): {sigup} local signature set is version 202404283053210 Apr 30 2024 06:57:31 webserver maldet(14637): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Apr 30 2024 06:57:32 webserver maldet(14637): {sigup} latest signature set already installed Apr 30 2024 06:57:32 webserver maldet(14752): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Apr 30 2024 06:57:32 webserver maldet(14752): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Apr 30 2024 06:57:32 webserver maldet(14752): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Apr 30 2024 06:57:32 webserver maldet(14752): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Apr 30 2024 06:57:32 webserver maldet(14752): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Apr 30 2024 07:00:07 webserver maldet(14752): {scan} file list completed in 154s, found 725 files... Apr 30 2024 07:00:07 webserver maldet(14752): {scan} found clamav binary at /usr/bin/clamscan, using clamav scanner engine... Apr 30 2024 07:00:07 webserver maldet(14752): {scan} scan of (725 files) in progress... Apr 30 2024 07:01:13 webserver maldet(14752): {scan} clamscan returned an error, check /usr/local/maldetect/logs/clamscan_log for details! Apr 30 2024 07:01:13 webserver maldet(14752): {scan} scan completed on : files 725, malware hits 0, cleaned hits 0, time 221s Apr 30 2024 07:01:13 webserver maldet(14752): {scan} scan report saved, to view run: maldet --report 240430-0657.14752 May 01 2024 07:01:06 webserver maldet(7012): {update} checking for available updates... May 01 2024 07:01:06 webserver maldet(7012): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver May 01 2024 07:01:06 webserver maldet(7012): {update} hashing install files and checking against server... May 01 2024 07:01:06 webserver maldet(7012): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash May 01 2024 07:01:06 webserver maldet(7012): {update} latest version already installed. May 01 2024 07:01:06 webserver maldet(7148): {sigup} performing signature update check... May 01 2024 07:01:06 webserver maldet(7148): {sigup} local signature set is version 202404283053210 May 01 2024 07:01:06 webserver maldet(7148): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver May 01 2024 07:01:06 webserver maldet(7148): {sigup} latest signature set already installed May 01 2024 07:01:06 webserver maldet(7264): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress May 01 2024 07:01:07 webserver maldet(7264): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) May 01 2024 07:01:07 webserver maldet(7264): {scan} building file list for of new/modified files from last 1 days, this might take awhile... May 01 2024 07:01:07 webserver maldet(7264): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 May 01 2024 07:01:07 webserver maldet(7264): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 May 01 2024 07:03:28 webserver maldet(7264): {scan} file list completed in 141s, found 952 files... May 01 2024 07:03:28 webserver maldet(7264): {scan} found clamav binary at /usr/bin/clamscan, using clamav scanner engine... May 01 2024 07:03:28 webserver maldet(7264): {scan} scan of (952 files) in progress... May 01 2024 07:04:39 webserver maldet(7264): {scan} clamscan returned an error, check /usr/local/maldetect/logs/clamscan_log for details! May 01 2024 07:04:39 webserver maldet(7264): {scan} scan completed on : files 952, malware hits 0, cleaned hits 0, time 213s May 01 2024 07:04:39 webserver maldet(7264): {scan} scan report saved, to view run: maldet --report 240501-0701.7264 May 02 2024 06:57:37 webserver maldet(6116): {update} checking for available updates... May 02 2024 06:57:37 webserver maldet(6116): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver May 02 2024 06:57:37 webserver maldet(6116): {update} hashing install files and checking against server... May 02 2024 06:57:37 webserver maldet(6116): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash May 02 2024 06:57:37 webserver maldet(6116): {update} latest version already installed. May 02 2024 06:57:37 webserver maldet(6252): {sigup} performing signature update check... May 02 2024 06:57:37 webserver maldet(6252): {sigup} local signature set is version 202404283053210 May 02 2024 06:57:37 webserver maldet(6252): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver May 02 2024 06:57:37 webserver maldet(6252): {sigup} new signature set 202405013823175 available May 02 2024 06:57:37 webserver maldet(6252): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz May 02 2024 06:57:37 webserver maldet(6252): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz May 02 2024 06:57:37 webserver maldet(6252): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 May 02 2024 06:57:37 webserver maldet(6252): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz May 02 2024 06:57:37 webserver maldet(6252): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz May 02 2024 06:57:37 webserver maldet(6252): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 May 02 2024 06:57:37 webserver maldet(6252): {sigup} verified md5sum of maldet-sigpack.tgz May 02 2024 06:57:38 webserver maldet(6252): {sigup} unpacked and installed maldet-sigpack.tgz May 02 2024 06:57:38 webserver maldet(6252): {sigup} verified md5sum of maldet-clean.tgz May 02 2024 06:57:38 webserver maldet(6252): {sigup} unpacked and installed maldet-clean.tgz May 02 2024 06:57:38 webserver maldet(6252): {sigup} signature set update completed May 02 2024 06:57:38 webserver maldet(6252): {sigup} 17638 signatures (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) May 02 2024 06:57:38 webserver maldet(6483): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress May 02 2024 06:57:38 webserver maldet(6483): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) May 02 2024 06:57:38 webserver maldet(6483): {scan} building file list for of new/modified files from last 1 days, this might take awhile... May 02 2024 06:57:38 webserver maldet(6483): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 May 02 2024 06:57:38 webserver maldet(6483): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 May 02 2024 06:59:42 webserver maldet(6483): {scan} file list completed in 124s, found 272 files... May 02 2024 06:59:42 webserver maldet(6483): {scan} found clamav binary at /usr/bin/clamscan, using clamav scanner engine... May 02 2024 06:59:42 webserver maldet(6483): {scan} scan of (272 files) in progress... May 02 2024 07:00:17 webserver maldet(6483): {scan} clamscan returned an error, check /usr/local/maldetect/logs/clamscan_log for details! May 02 2024 07:00:17 webserver maldet(6483): {scan} scan completed on : files 272, malware hits 0, cleaned hits 0, time 159s May 02 2024 07:00:17 webserver maldet(6483): {scan} scan report saved, to view run: maldet --report 240502-0657.6483 May 03 2024 06:57:19 webserver maldet(30525): {update} checking for available updates... May 03 2024 06:57:20 webserver maldet(30525): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver May 03 2024 06:57:20 webserver maldet(30525): {update} hashing install files and checking against server... May 03 2024 06:57:20 webserver maldet(30525): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash May 03 2024 06:57:20 webserver maldet(30525): {update} latest version already installed. May 03 2024 06:57:20 webserver maldet(30661): {sigup} performing signature update check... May 03 2024 06:57:20 webserver maldet(30661): {sigup} local signature set is version 202405013823175 May 03 2024 06:57:20 webserver maldet(30661): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver May 03 2024 06:57:20 webserver maldet(30661): {sigup} latest signature set already installed May 03 2024 06:57:20 webserver maldet(30775): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress May 03 2024 06:57:20 webserver maldet(30775): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) May 03 2024 06:57:20 webserver maldet(30775): {scan} building file list for of new/modified files from last 1 days, this might take awhile... May 03 2024 06:57:20 webserver maldet(30775): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 May 03 2024 06:57:20 webserver maldet(30775): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 May 03 2024 06:59:14 webserver maldet(30775): {scan} file list completed in 114s, found 364 files... May 03 2024 06:59:14 webserver maldet(30775): {scan} found clamav binary at /usr/bin/clamscan, using clamav scanner engine... May 03 2024 06:59:14 webserver maldet(30775): {scan} scan of (364 files) in progress... May 03 2024 06:59:48 webserver maldet(30775): {scan} clamscan returned an error, check /usr/local/maldetect/logs/clamscan_log for details! May 03 2024 06:59:48 webserver maldet(30775): {scan} scan completed on : files 364, malware hits 0, cleaned hits 0, time 148s May 03 2024 06:59:48 webserver maldet(30775): {scan} scan report saved, to view run: maldet --report 240503-0657.30775 May 04 2024 06:56:00 webserver maldet(24407): {update} checking for available updates... May 04 2024 06:56:00 webserver maldet(24407): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver May 04 2024 06:56:00 webserver maldet(24407): {update} hashing install files and checking against server... May 04 2024 06:56:00 webserver maldet(24407): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash May 04 2024 06:56:01 webserver maldet(24407): {update} latest version already installed. May 04 2024 06:56:01 webserver maldet(24543): {sigup} performing signature update check... May 04 2024 06:56:01 webserver maldet(24543): {sigup} local signature set is version 202405013823175 May 04 2024 06:56:01 webserver maldet(24543): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver May 04 2024 06:56:01 webserver maldet(24543): {sigup} latest signature set already installed May 04 2024 06:56:01 webserver maldet(24658): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress May 04 2024 06:56:02 webserver maldet(24658): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) May 04 2024 06:56:02 webserver maldet(24658): {scan} building file list for of new/modified files from last 1 days, this might take awhile... May 04 2024 06:56:02 webserver maldet(24658): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 May 04 2024 06:56:02 webserver maldet(24658): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 May 04 2024 06:58:27 webserver maldet(24658): {scan} file list completed in 145s, found 729 files... May 04 2024 06:58:27 webserver maldet(24658): {scan} found clamav binary at /usr/bin/clamscan, using clamav scanner engine... May 04 2024 06:58:27 webserver maldet(24658): {scan} scan of (729 files) in progress... May 04 2024 06:59:22 webserver maldet(24658): {scan} clamscan returned an error, check /usr/local/maldetect/logs/clamscan_log for details! May 04 2024 06:59:22 webserver maldet(24658): {scan} scan completed on : files 729, malware hits 0, cleaned hits 0, time 201s May 04 2024 06:59:22 webserver maldet(24658): {scan} scan report saved, to view run: maldet --report 240504-0656.24658 May 05 2024 06:58:24 webserver maldet(17507): {update} checking for available updates... May 05 2024 06:58:24 webserver maldet(17507): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver May 05 2024 06:58:24 webserver maldet(17507): {update} hashing install files and checking against server... May 05 2024 06:58:24 webserver maldet(17507): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash May 05 2024 06:58:24 webserver maldet(17507): {update} latest version already installed. May 05 2024 06:58:24 webserver maldet(17643): {sigup} performing signature update check... May 05 2024 06:58:24 webserver maldet(17643): {sigup} local signature set is version 202405013823175 May 05 2024 06:58:24 webserver maldet(17643): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver May 05 2024 06:58:24 webserver maldet(17643): {sigup} latest signature set already installed May 05 2024 06:58:24 webserver maldet(17757): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress May 05 2024 06:58:25 webserver maldet(17757): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) May 05 2024 06:58:25 webserver maldet(17757): {scan} building file list for of new/modified files from last 1 days, this might take awhile... May 05 2024 06:58:25 webserver maldet(17757): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 May 05 2024 06:58:25 webserver maldet(17757): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 May 05 2024 07:01:37 webserver maldet(17757): {scan} file list completed in 192s, found 559 files... May 05 2024 07:01:37 webserver maldet(17757): {scan} found clamav binary at /usr/bin/clamscan, using clamav scanner engine... May 05 2024 07:01:37 webserver maldet(17757): {scan} scan of (559 files) in progress... May 05 2024 07:03:00 webserver maldet(17757): {scan} clamscan returned an error, check /usr/local/maldetect/logs/clamscan_log for details! May 05 2024 07:03:00 webserver maldet(17757): {scan} scan completed on : files 559, malware hits 0, cleaned hits 0, time 276s May 05 2024 07:03:00 webserver maldet(17757): {scan} scan report saved, to view run: maldet --report 240505-0658.17757 May 06 2024 06:59:18 webserver maldet(4060): {update} checking for available updates... May 06 2024 06:59:18 webserver maldet(4060): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver May 06 2024 06:59:18 webserver maldet(4060): {update} hashing install files and checking against server... May 06 2024 06:59:18 webserver maldet(4060): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash May 06 2024 06:59:18 webserver maldet(4060): {update} latest version already installed. May 06 2024 06:59:18 webserver maldet(4199): {sigup} performing signature update check... May 06 2024 06:59:18 webserver maldet(4199): {sigup} local signature set is version 202405013823175 May 06 2024 06:59:18 webserver maldet(4199): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver May 06 2024 06:59:19 webserver maldet(4199): {sigup} new signature set 20240504393073 available May 06 2024 06:59:19 webserver maldet(4199): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz May 06 2024 06:59:19 webserver maldet(4199): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz May 06 2024 06:59:19 webserver maldet(4199): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 May 06 2024 06:59:19 webserver maldet(4199): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz May 06 2024 06:59:19 webserver maldet(4199): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz May 06 2024 06:59:19 webserver maldet(4199): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 May 06 2024 06:59:19 webserver maldet(4199): {sigup} verified md5sum of maldet-sigpack.tgz May 06 2024 06:59:19 webserver maldet(4199): {sigup} unpacked and installed maldet-sigpack.tgz May 06 2024 06:59:20 webserver maldet(4199): {sigup} verified md5sum of maldet-clean.tgz May 06 2024 06:59:20 webserver maldet(4199): {sigup} unpacked and installed maldet-clean.tgz May 06 2024 06:59:20 webserver maldet(4199): {sigup} signature set update completed May 06 2024 06:59:20 webserver maldet(4199): {sigup} 17638 signatures (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) May 06 2024 06:59:20 webserver maldet(4429): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress May 06 2024 06:59:20 webserver maldet(4429): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) May 06 2024 06:59:20 webserver maldet(4429): {scan} building file list for of new/modified files from last 1 days, this might take awhile... May 06 2024 06:59:20 webserver maldet(4429): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 May 06 2024 06:59:20 webserver maldet(4429): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 May 06 2024 07:02:31 webserver maldet(4429): {scan} file list completed in 191s, found 492 files... May 06 2024 07:02:31 webserver maldet(4429): {scan} found clamav binary at /usr/bin/clamscan, using clamav scanner engine... May 06 2024 07:02:31 webserver maldet(4429): {scan} scan of (492 files) in progress... May 06 2024 07:03:14 webserver maldet(4429): {scan} clamscan returned an error, check /usr/local/maldetect/logs/clamscan_log for details! May 06 2024 07:03:14 webserver maldet(4429): {scan} scan completed on : files 492, malware hits 0, cleaned hits 0, time 234s May 06 2024 07:03:14 webserver maldet(4429): {scan} scan report saved, to view run: maldet --report 240506-0659.4429 May 07 2024 07:04:48 webserver maldet(29347): {update} checking for available updates... May 07 2024 07:04:48 webserver maldet(29347): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver May 07 2024 07:04:48 webserver maldet(29347): {update} hashing install files and checking against server... May 07 2024 07:04:48 webserver maldet(29347): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash May 07 2024 07:04:48 webserver maldet(29347): {update} latest version already installed. May 07 2024 07:04:49 webserver maldet(29483): {sigup} performing signature update check... May 07 2024 07:04:49 webserver maldet(29483): {sigup} local signature set is version 20240504393073 May 07 2024 07:04:49 webserver maldet(29483): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver May 07 2024 07:04:49 webserver maldet(29483): {sigup} latest signature set already installed May 07 2024 07:04:49 webserver maldet(29598): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress May 07 2024 07:04:49 webserver maldet(29598): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) May 07 2024 07:04:49 webserver maldet(29598): {scan} building file list for of new/modified files from last 1 days, this might take awhile... May 07 2024 07:04:49 webserver maldet(29598): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 May 07 2024 07:04:49 webserver maldet(29598): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 May 07 2024 07:06:40 webserver maldet(29598): {scan} file list completed in 111s, found 218 files... May 07 2024 07:06:40 webserver maldet(29598): {scan} found clamav binary at /usr/bin/clamscan, using clamav scanner engine... May 07 2024 07:06:40 webserver maldet(29598): {scan} scan of (218 files) in progress... May 07 2024 07:07:11 webserver maldet(29598): {scan} clamscan returned an error, check /usr/local/maldetect/logs/clamscan_log for details! May 07 2024 07:07:11 webserver maldet(29598): {scan} scan completed on : files 218, malware hits 0, cleaned hits 0, time 142s May 07 2024 07:07:11 webserver maldet(29598): {scan} scan report saved, to view run: maldet --report 240507-0704.29598 May 08 2024 07:09:54 webserver maldet(21023): {update} checking for available updates... May 08 2024 07:09:54 webserver maldet(21023): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver May 08 2024 07:09:54 webserver maldet(21023): {update} hashing install files and checking against server... May 08 2024 07:09:54 webserver maldet(21023): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash May 08 2024 07:09:54 webserver maldet(21023): {update} latest version already installed. May 08 2024 07:09:55 webserver maldet(21159): {sigup} performing signature update check... May 08 2024 07:09:55 webserver maldet(21159): {sigup} local signature set is version 20240504393073 May 08 2024 07:09:55 webserver maldet(21159): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver May 08 2024 07:09:55 webserver maldet(21159): {sigup} latest signature set already installed May 08 2024 07:09:55 webserver maldet(21274): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress May 08 2024 07:09:55 webserver maldet(21274): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) May 08 2024 07:09:55 webserver maldet(21274): {scan} building file list for of new/modified files from last 1 days, this might take awhile... May 08 2024 07:09:55 webserver maldet(21274): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 May 08 2024 07:09:55 webserver maldet(21274): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 May 08 2024 07:11:51 webserver maldet(21274): {scan} file list completed in 116s, found 249 files... May 08 2024 07:11:51 webserver maldet(21274): {scan} found clamav binary at /usr/bin/clamscan, using clamav scanner engine... May 08 2024 07:11:51 webserver maldet(21274): {scan} scan of (249 files) in progress... May 08 2024 07:12:28 webserver maldet(21274): {scan} clamscan returned an error, check /usr/local/maldetect/logs/clamscan_log for details! May 08 2024 07:12:29 webserver maldet(21274): {scan} scan completed on : files 249, malware hits 0, cleaned hits 0, time 153s May 08 2024 07:12:29 webserver maldet(21274): {scan} scan report saved, to view run: maldet --report 240508-0709.21274 May 09 2024 06:57:09 webserver maldet(21476): {update} checking for available updates... May 09 2024 06:57:09 webserver maldet(21476): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver May 09 2024 06:57:09 webserver maldet(21476): {update} hashing install files and checking against server... May 09 2024 06:57:09 webserver maldet(21476): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash May 09 2024 06:57:09 webserver maldet(21476): {update} latest version already installed. May 09 2024 06:57:09 webserver maldet(21612): {sigup} performing signature update check... May 09 2024 06:57:09 webserver maldet(21612): {sigup} local signature set is version 20240504393073 May 09 2024 06:57:09 webserver maldet(21612): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver May 09 2024 06:57:10 webserver maldet(21612): {sigup} new signature set 202405071155649 available May 09 2024 06:57:10 webserver maldet(21612): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz May 09 2024 06:57:10 webserver maldet(21612): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz May 09 2024 06:57:10 webserver maldet(21612): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 May 09 2024 06:57:10 webserver maldet(21612): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz May 09 2024 06:57:10 webserver maldet(21612): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz May 09 2024 06:57:10 webserver maldet(21612): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 May 09 2024 06:57:10 webserver maldet(21612): {sigup} verified md5sum of maldet-sigpack.tgz May 09 2024 06:57:10 webserver maldet(21612): {sigup} unpacked and installed maldet-sigpack.tgz May 09 2024 06:57:10 webserver maldet(21612): {sigup} verified md5sum of maldet-clean.tgz May 09 2024 06:57:10 webserver maldet(21612): {sigup} unpacked and installed maldet-clean.tgz May 09 2024 06:57:10 webserver maldet(21612): {sigup} signature set update completed May 09 2024 06:57:10 webserver maldet(21612): {sigup} 17638 signatures (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) May 09 2024 06:57:10 webserver maldet(21846): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress May 09 2024 06:57:10 webserver maldet(21846): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) May 09 2024 06:57:10 webserver maldet(21846): {scan} building file list for of new/modified files from last 1 days, this might take awhile... May 09 2024 06:57:10 webserver maldet(21846): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 May 09 2024 06:57:11 webserver maldet(21846): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 May 09 2024 06:59:17 webserver maldet(21846): {scan} file list completed in 127s, found 321 files... May 09 2024 06:59:17 webserver maldet(21846): {scan} found clamav binary at /usr/bin/clamscan, using clamav scanner engine... May 09 2024 06:59:17 webserver maldet(21846): {scan} scan of (321 files) in progress... May 09 2024 06:59:55 webserver maldet(21846): {scan} clamscan returned an error, check /usr/local/maldetect/logs/clamscan_log for details! May 09 2024 06:59:55 webserver maldet(21846): {scan} scan completed on : files 321, malware hits 0, cleaned hits 0, time 165s May 09 2024 06:59:55 webserver maldet(21846): {scan} scan report saved, to view run: maldet --report 240509-0657.21846 May 10 2024 06:58:25 webserver maldet(30347): {update} checking for available updates... May 10 2024 06:58:25 webserver maldet(30347): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver May 10 2024 06:58:25 webserver maldet(30347): {update} hashing install files and checking against server... May 10 2024 06:58:25 webserver maldet(30347): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash May 10 2024 06:58:25 webserver maldet(30347): {update} latest version already installed. May 10 2024 06:58:25 webserver maldet(30483): {sigup} performing signature update check... May 10 2024 06:58:25 webserver maldet(30483): {sigup} local signature set is version 202405071155649 May 10 2024 06:58:25 webserver maldet(30483): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver May 10 2024 06:58:26 webserver maldet(30483): {sigup} latest signature set already installed May 10 2024 06:58:26 webserver maldet(30599): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress May 10 2024 06:58:26 webserver maldet(30599): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) May 10 2024 06:58:26 webserver maldet(30599): {scan} building file list for of new/modified files from last 1 days, this might take awhile... May 10 2024 06:58:26 webserver maldet(30599): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 May 10 2024 06:58:26 webserver maldet(30599): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 May 10 2024 07:05:10 webserver maldet(30599): {scan} file list completed in 404s, found 379 files... May 10 2024 07:05:10 webserver maldet(30599): {scan} found clamav binary at /usr/bin/clamscan, using clamav scanner engine... May 10 2024 07:05:10 webserver maldet(30599): {scan} scan of (379 files) in progress... May 10 2024 07:05:52 webserver maldet(30599): {scan} clamscan returned an error, check /usr/local/maldetect/logs/clamscan_log for details! May 10 2024 07:05:52 webserver maldet(30599): {scan} scan completed on : files 379, malware hits 0, cleaned hits 0, time 446s May 10 2024 07:05:52 webserver maldet(30599): {scan} scan report saved, to view run: maldet --report 240510-0658.30599 May 11 2024 07:07:56 webserver maldet(16506): {update} checking for available updates... May 11 2024 07:07:56 webserver maldet(16506): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver May 11 2024 07:07:56 webserver maldet(16506): {update} hashing install files and checking against server... May 11 2024 07:07:56 webserver maldet(16506): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash May 11 2024 07:07:56 webserver maldet(16506): {update} latest version already installed. May 11 2024 07:07:56 webserver maldet(16642): {sigup} performing signature update check... May 11 2024 07:07:56 webserver maldet(16642): {sigup} local signature set is version 202405071155649 May 11 2024 07:07:56 webserver maldet(16642): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver May 11 2024 07:07:56 webserver maldet(16642): {sigup} new signature set 202405101922723 available May 11 2024 07:07:56 webserver maldet(16642): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz May 11 2024 07:07:57 webserver maldet(16642): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz May 11 2024 07:07:57 webserver maldet(16642): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 May 11 2024 07:07:57 webserver maldet(16642): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz May 11 2024 07:07:57 webserver maldet(16642): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz May 11 2024 07:07:57 webserver maldet(16642): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 May 11 2024 07:07:57 webserver maldet(16642): {sigup} verified md5sum of maldet-sigpack.tgz May 11 2024 07:07:57 webserver maldet(16642): {sigup} unpacked and installed maldet-sigpack.tgz May 11 2024 07:07:57 webserver maldet(16642): {sigup} verified md5sum of maldet-clean.tgz May 11 2024 07:07:57 webserver maldet(16642): {sigup} unpacked and installed maldet-clean.tgz May 11 2024 07:07:57 webserver maldet(16642): {sigup} signature set update completed May 11 2024 07:07:57 webserver maldet(16642): {sigup} 17638 signatures (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) May 11 2024 07:07:57 webserver maldet(16873): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress May 11 2024 07:07:57 webserver maldet(16873): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) May 11 2024 07:07:57 webserver maldet(16873): {scan} building file list for of new/modified files from last 1 days, this might take awhile... May 11 2024 07:07:57 webserver maldet(16873): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 May 11 2024 07:07:57 webserver maldet(16873): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 May 11 2024 07:13:06 webserver maldet(16873): {scan} file list completed in 309s, found 431 files... May 11 2024 07:13:06 webserver maldet(16873): {scan} found clamav binary at /usr/bin/clamscan, using clamav scanner engine... May 11 2024 07:13:06 webserver maldet(16873): {scan} scan of (431 files) in progress... May 11 2024 07:13:40 webserver maldet(16873): {scan} clamscan returned an error, check /usr/local/maldetect/logs/clamscan_log for details! May 11 2024 07:13:40 webserver maldet(16873): {scan} scan completed on : files 431, malware hits 0, cleaned hits 0, time 343s May 11 2024 07:13:40 webserver maldet(16873): {scan} scan report saved, to view run: maldet --report 240511-0707.16873 May 12 2024 06:58:08 webserver maldet(4219): {update} checking for available updates... May 12 2024 06:58:08 webserver maldet(4219): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver May 12 2024 06:58:08 webserver maldet(4219): {update} hashing install files and checking against server... May 12 2024 06:58:08 webserver maldet(4219): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash May 12 2024 06:58:08 webserver maldet(4219): {update} latest version already installed. May 12 2024 06:58:09 webserver maldet(4355): {sigup} performing signature update check... May 12 2024 06:58:09 webserver maldet(4355): {sigup} local signature set is version 202405101922723 May 12 2024 06:58:09 webserver maldet(4355): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver May 12 2024 06:58:09 webserver maldet(4355): {sigup} latest signature set already installed May 12 2024 06:58:09 webserver maldet(4470): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress May 12 2024 06:58:10 webserver maldet(4470): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) May 12 2024 06:58:10 webserver maldet(4470): {scan} building file list for of new/modified files from last 1 days, this might take awhile... May 12 2024 06:58:10 webserver maldet(4470): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 May 12 2024 06:58:10 webserver maldet(4470): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 May 12 2024 07:01:53 webserver maldet(4470): {scan} file list completed in 222s, found 338 files... May 12 2024 07:01:53 webserver maldet(4470): {scan} found clamav binary at /usr/bin/clamscan, using clamav scanner engine... May 12 2024 07:01:53 webserver maldet(4470): {scan} scan of (338 files) in progress... May 12 2024 07:03:21 webserver maldet(4470): {scan} clamscan returned an error, check /usr/local/maldetect/logs/clamscan_log for details! May 12 2024 07:03:21 webserver maldet(4470): {scan} scan completed on : files 338, malware hits 0, cleaned hits 0, time 312s May 12 2024 07:03:21 webserver maldet(4470): {scan} scan report saved, to view run: maldet --report 240512-0658.4470 May 13 2024 06:57:32 webserver maldet(8554): {update} checking for available updates... May 13 2024 06:57:33 webserver maldet(8554): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver May 13 2024 06:57:33 webserver maldet(8554): {update} hashing install files and checking against server... May 13 2024 06:57:33 webserver maldet(8554): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash May 13 2024 06:57:33 webserver maldet(8554): {update} latest version already installed. May 13 2024 06:57:33 webserver maldet(8690): {sigup} performing signature update check... May 13 2024 06:57:33 webserver maldet(8690): {sigup} local signature set is version 202405101922723 May 13 2024 06:57:33 webserver maldet(8690): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver May 13 2024 06:57:33 webserver maldet(8690): {sigup} latest signature set already installed May 13 2024 06:57:33 webserver maldet(8805): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress May 13 2024 06:57:34 webserver maldet(8805): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) May 13 2024 06:57:34 webserver maldet(8805): {scan} building file list for of new/modified files from last 1 days, this might take awhile... May 13 2024 06:57:34 webserver maldet(8805): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 May 13 2024 06:57:34 webserver maldet(8805): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 May 13 2024 07:10:13 webserver maldet(8805): {scan} file list completed in 758s, found 250 files... May 13 2024 07:10:13 webserver maldet(8805): {scan} found clamav binary at /usr/bin/clamscan, using clamav scanner engine... May 13 2024 07:10:13 webserver maldet(8805): {scan} scan of (250 files) in progress... May 13 2024 07:10:56 webserver maldet(8805): {scan} clamscan returned an error, check /usr/local/maldetect/logs/clamscan_log for details! May 13 2024 07:10:56 webserver maldet(8805): {scan} scan completed on : files 250, malware hits 0, cleaned hits 0, time 803s May 13 2024 07:10:56 webserver maldet(8805): {scan} scan report saved, to view run: maldet --report 240513-0657.8805 May 14 2024 07:04:52 webserver maldet(32466): {update} checking for available updates... May 14 2024 07:04:52 webserver maldet(32466): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver May 14 2024 07:04:52 webserver maldet(32466): {update} hashing install files and checking against server... May 14 2024 07:04:52 webserver maldet(32466): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash May 14 2024 07:04:52 webserver maldet(32466): {update} latest version already installed. May 14 2024 07:04:52 webserver maldet(32604): {sigup} performing signature update check... May 14 2024 07:04:52 webserver maldet(32604): {sigup} local signature set is version 202405101922723 May 14 2024 07:04:52 webserver maldet(32604): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver May 14 2024 07:04:52 webserver maldet(32604): {sigup} new signature set 202405132693953 available May 14 2024 07:04:52 webserver maldet(32604): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz May 14 2024 07:04:52 webserver maldet(32604): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz May 14 2024 07:04:53 webserver maldet(32604): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 May 14 2024 07:04:53 webserver maldet(32604): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz May 14 2024 07:04:53 webserver maldet(32604): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz May 14 2024 07:04:53 webserver maldet(32604): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 May 14 2024 07:04:53 webserver maldet(32604): {sigup} verified md5sum of maldet-sigpack.tgz May 14 2024 07:04:54 webserver maldet(32604): {sigup} unpacked and installed maldet-sigpack.tgz May 14 2024 07:04:54 webserver maldet(32604): {sigup} verified md5sum of maldet-clean.tgz May 14 2024 07:04:54 webserver maldet(32604): {sigup} unpacked and installed maldet-clean.tgz May 14 2024 07:04:54 webserver maldet(32604): {sigup} signature set update completed May 14 2024 07:04:54 webserver maldet(32604): {sigup} 17638 signatures (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) May 14 2024 07:04:55 webserver maldet(369): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress May 14 2024 07:04:56 webserver maldet(369): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) May 14 2024 07:04:56 webserver maldet(369): {scan} building file list for of new/modified files from last 1 days, this might take awhile... May 14 2024 07:04:56 webserver maldet(369): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 May 14 2024 07:04:56 webserver maldet(369): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 May 14 2024 07:10:09 webserver maldet(369): {scan} file list completed in 313s, found 240 files... May 14 2024 07:10:09 webserver maldet(369): {scan} found clamav binary at /usr/bin/clamscan, using clamav scanner engine... May 14 2024 07:10:09 webserver maldet(369): {scan} scan of (240 files) in progress... May 14 2024 07:10:42 webserver maldet(369): {scan} clamscan returned an error, check /usr/local/maldetect/logs/clamscan_log for details! May 14 2024 07:10:42 webserver maldet(369): {scan} scan completed on : files 240, malware hits 0, cleaned hits 0, time 347s May 14 2024 07:10:42 webserver maldet(369): {scan} scan report saved, to view run: maldet --report 240514-0704.369 May 15 2024 06:58:51 webserver maldet(19579): {update} checking for available updates... May 15 2024 06:58:51 webserver maldet(19579): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver May 15 2024 06:58:51 webserver maldet(19579): {update} hashing install files and checking against server... May 15 2024 06:58:51 webserver maldet(19579): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash May 15 2024 06:58:51 webserver maldet(19579): {update} latest version already installed. May 15 2024 06:58:51 webserver maldet(19715): {sigup} performing signature update check... May 15 2024 06:58:51 webserver maldet(19715): {sigup} local signature set is version 202405132693953 May 15 2024 06:58:51 webserver maldet(19715): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver May 15 2024 06:58:52 webserver maldet(19715): {sigup} latest signature set already installed May 15 2024 06:58:52 webserver maldet(19830): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress May 15 2024 06:58:53 webserver maldet(19830): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) May 15 2024 06:58:53 webserver maldet(19830): {scan} building file list for of new/modified files from last 1 days, this might take awhile... May 15 2024 06:58:53 webserver maldet(19830): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 May 15 2024 06:58:53 webserver maldet(19830): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 May 15 2024 07:05:14 webserver maldet(19830): {scan} file list completed in 381s, found 260 files... May 15 2024 07:05:14 webserver maldet(19830): {scan} found clamav binary at /usr/bin/clamscan, using clamav scanner engine... May 15 2024 07:05:14 webserver maldet(19830): {scan} scan of (260 files) in progress... May 15 2024 07:05:45 webserver maldet(19830): {scan} clamscan returned an error, check /usr/local/maldetect/logs/clamscan_log for details! May 15 2024 07:05:46 webserver maldet(19830): {scan} scan completed on : files 260, malware hits 0, cleaned hits 0, time 413s May 15 2024 07:05:46 webserver maldet(19830): {scan} scan report saved, to view run: maldet --report 240515-0658.19830 May 16 2024 06:56:40 webserver maldet(12454): {update} checking for available updates... May 16 2024 06:56:40 webserver maldet(12454): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver May 16 2024 06:56:40 webserver maldet(12454): {update} hashing install files and checking against server... May 16 2024 06:56:40 webserver maldet(12454): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash May 16 2024 06:56:40 webserver maldet(12454): {update} latest version already installed. May 16 2024 06:56:40 webserver maldet(12590): {sigup} performing signature update check... May 16 2024 06:56:40 webserver maldet(12590): {sigup} local signature set is version 202405132693953 May 16 2024 06:56:40 webserver maldet(12590): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver May 16 2024 06:56:40 webserver maldet(12590): {sigup} latest signature set already installed May 16 2024 06:56:40 webserver maldet(12705): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress May 16 2024 06:56:40 webserver maldet(12705): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) May 16 2024 06:56:40 webserver maldet(12705): {scan} building file list for of new/modified files from last 1 days, this might take awhile... May 16 2024 06:56:40 webserver maldet(12705): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 May 16 2024 06:56:40 webserver maldet(12705): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 May 16 2024 06:58:34 webserver maldet(12705): {scan} file list completed in 114s, found 259 files... May 16 2024 06:58:34 webserver maldet(12705): {scan} found clamav binary at /usr/bin/clamscan, using clamav scanner engine... May 16 2024 06:58:34 webserver maldet(12705): {scan} scan of (259 files) in progress... May 16 2024 06:59:01 webserver maldet(12705): {scan} clamscan returned an error, check /usr/local/maldetect/logs/clamscan_log for details! May 16 2024 06:59:01 webserver maldet(12705): {scan} scan completed on : files 259, malware hits 0, cleaned hits 0, time 141s May 16 2024 06:59:01 webserver maldet(12705): {scan} scan report saved, to view run: maldet --report 240516-0656.12705 May 17 2024 06:58:56 webserver maldet(10046): {update} checking for available updates... May 17 2024 06:58:56 webserver maldet(10046): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver May 17 2024 06:58:56 webserver maldet(10046): {update} hashing install files and checking against server... May 17 2024 06:58:56 webserver maldet(10046): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash May 17 2024 06:58:56 webserver maldet(10046): {update} latest version already installed. May 17 2024 06:58:57 webserver maldet(10182): {sigup} performing signature update check... May 17 2024 06:58:57 webserver maldet(10182): {sigup} local signature set is version 202405132693953 May 17 2024 06:58:57 webserver maldet(10182): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver May 17 2024 06:58:57 webserver maldet(10182): {sigup} new signature set 202405163472817 available May 17 2024 06:58:57 webserver maldet(10182): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz May 17 2024 06:58:57 webserver maldet(10182): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz May 17 2024 06:58:57 webserver maldet(10182): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 May 17 2024 06:58:57 webserver maldet(10182): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz May 17 2024 06:58:57 webserver maldet(10182): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz May 17 2024 06:58:57 webserver maldet(10182): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 May 17 2024 06:58:57 webserver maldet(10182): {sigup} verified md5sum of maldet-sigpack.tgz May 17 2024 06:58:57 webserver maldet(10182): {sigup} unpacked and installed maldet-sigpack.tgz May 17 2024 06:58:57 webserver maldet(10182): {sigup} verified md5sum of maldet-clean.tgz May 17 2024 06:58:57 webserver maldet(10182): {sigup} unpacked and installed maldet-clean.tgz May 17 2024 06:58:57 webserver maldet(10182): {sigup} signature set update completed May 17 2024 06:58:57 webserver maldet(10182): {sigup} 17638 signatures (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) May 17 2024 06:58:57 webserver maldet(10413): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress May 17 2024 06:58:57 webserver maldet(10413): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) May 17 2024 06:58:57 webserver maldet(10413): {scan} building file list for of new/modified files from last 1 days, this might take awhile... May 17 2024 06:58:57 webserver maldet(10413): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 May 17 2024 06:58:57 webserver maldet(10413): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 May 17 2024 07:04:57 webserver maldet(10413): {scan} file list completed in 360s, found 41 files... May 17 2024 07:04:57 webserver maldet(10413): {scan} found clamav binary at /usr/bin/clamscan, using clamav scanner engine... May 17 2024 07:04:57 webserver maldet(10413): {scan} scan of (41 files) in progress... May 17 2024 07:05:30 webserver maldet(10413): {scan} clamscan returned an error, check /usr/local/maldetect/logs/clamscan_log for details! May 17 2024 07:05:30 webserver maldet(10413): {scan} scan completed on : files 41, malware hits 0, cleaned hits 0, time 393s May 17 2024 07:05:30 webserver maldet(10413): {scan} scan report saved, to view run: maldet --report 240517-0658.10413 May 18 2024 06:59:44 webserver maldet(2305): {update} checking for available updates... May 18 2024 06:59:44 webserver maldet(2305): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver May 18 2024 06:59:44 webserver maldet(2305): {update} hashing install files and checking against server... May 18 2024 06:59:44 webserver maldet(2305): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash May 18 2024 06:59:44 webserver maldet(2305): {update} latest version already installed. May 18 2024 06:59:44 webserver maldet(2441): {sigup} performing signature update check... May 18 2024 06:59:44 webserver maldet(2441): {sigup} local signature set is version 202405163472817 May 18 2024 06:59:44 webserver maldet(2441): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver May 18 2024 06:59:44 webserver maldet(2441): {sigup} latest signature set already installed May 18 2024 06:59:44 webserver maldet(2556): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress May 18 2024 06:59:45 webserver maldet(2556): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) May 18 2024 06:59:45 webserver maldet(2556): {scan} building file list for of new/modified files from last 1 days, this might take awhile... May 18 2024 06:59:45 webserver maldet(2556): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 May 18 2024 06:59:45 webserver maldet(2556): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 May 18 2024 07:02:13 webserver maldet(2556): {scan} file list completed in 148s, found 219 files... May 18 2024 07:02:13 webserver maldet(2556): {scan} found clamav binary at /usr/bin/clamscan, using clamav scanner engine... May 18 2024 07:02:13 webserver maldet(2556): {scan} scan of (219 files) in progress... May 18 2024 07:02:39 webserver maldet(2556): {scan} clamscan returned an error, check /usr/local/maldetect/logs/clamscan_log for details! May 18 2024 07:02:39 webserver maldet(2556): {scan} scan completed on : files 219, malware hits 0, cleaned hits 0, time 175s May 18 2024 07:02:39 webserver maldet(2556): {scan} scan report saved, to view run: maldet --report 240518-0659.2556 May 19 2024 06:56:21 webserver maldet(22061): {update} checking for available updates... May 19 2024 06:56:21 webserver maldet(22061): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver May 19 2024 06:56:21 webserver maldet(22061): {update} hashing install files and checking against server... May 19 2024 06:56:21 webserver maldet(22061): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash May 19 2024 06:56:21 webserver maldet(22061): {update} latest version already installed. May 19 2024 06:56:21 webserver maldet(22197): {sigup} performing signature update check... May 19 2024 06:56:21 webserver maldet(22197): {sigup} local signature set is version 202405163472817 May 19 2024 06:56:21 webserver maldet(22197): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver May 19 2024 06:56:22 webserver maldet(22197): {sigup} latest signature set already installed May 19 2024 06:56:22 webserver maldet(22311): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress May 19 2024 06:56:23 webserver maldet(22311): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) May 19 2024 06:56:23 webserver maldet(22311): {scan} building file list for of new/modified files from last 1 days, this might take awhile... May 19 2024 06:56:23 webserver maldet(22311): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 May 19 2024 06:56:23 webserver maldet(22311): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 May 19 2024 07:06:25 webserver maldet(22311): {scan} file list completed in 602s, found 217 files... May 19 2024 07:06:25 webserver maldet(22311): {scan} found clamav binary at /usr/bin/clamscan, using clamav scanner engine... May 19 2024 07:06:25 webserver maldet(22311): {scan} scan of (217 files) in progress... May 19 2024 07:06:57 webserver maldet(22311): {scan} clamscan returned an error, check /usr/local/maldetect/logs/clamscan_log for details! May 19 2024 07:06:57 webserver maldet(22311): {scan} scan completed on : files 217, malware hits 0, cleaned hits 0, time 635s May 19 2024 07:06:57 webserver maldet(22311): {scan} scan report saved, to view run: maldet --report 240519-0656.22311 May 20 2024 06:57:46 webserver maldet(15452): {update} checking for available updates... May 20 2024 06:57:46 webserver maldet(15452): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver May 20 2024 06:57:46 webserver maldet(15452): {update} hashing install files and checking against server... May 20 2024 06:57:46 webserver maldet(15452): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash May 20 2024 06:57:46 webserver maldet(15452): {update} latest version already installed. May 20 2024 06:57:47 webserver maldet(15588): {sigup} performing signature update check... May 20 2024 06:57:47 webserver maldet(15588): {sigup} local signature set is version 202405163472817 May 20 2024 06:57:47 webserver maldet(15588): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver May 20 2024 06:57:47 webserver maldet(15588): {sigup} new signature set 2024051967501 available May 20 2024 06:57:47 webserver maldet(15588): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz May 20 2024 06:57:47 webserver maldet(15588): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz May 20 2024 06:57:47 webserver maldet(15588): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 May 20 2024 06:57:47 webserver maldet(15588): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz May 20 2024 06:57:47 webserver maldet(15588): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz May 20 2024 06:57:47 webserver maldet(15588): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 May 20 2024 06:57:47 webserver maldet(15588): {sigup} verified md5sum of maldet-sigpack.tgz May 20 2024 06:57:47 webserver maldet(15588): {sigup} unpacked and installed maldet-sigpack.tgz May 20 2024 06:57:47 webserver maldet(15588): {sigup} verified md5sum of maldet-clean.tgz May 20 2024 06:57:47 webserver maldet(15588): {sigup} unpacked and installed maldet-clean.tgz May 20 2024 06:57:47 webserver maldet(15588): {sigup} signature set update completed May 20 2024 06:57:47 webserver maldet(15588): {sigup} 17638 signatures (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) May 20 2024 06:57:48 webserver maldet(15819): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress May 20 2024 06:57:48 webserver maldet(15819): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) May 20 2024 06:57:48 webserver maldet(15819): {scan} building file list for of new/modified files from last 1 days, this might take awhile... May 20 2024 06:57:48 webserver maldet(15819): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 May 20 2024 06:57:48 webserver maldet(15819): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 May 20 2024 07:01:53 webserver maldet(15819): {scan} file list completed in 245s, found 224 files... May 20 2024 07:01:53 webserver maldet(15819): {scan} found clamav binary at /usr/bin/clamscan, using clamav scanner engine... May 20 2024 07:01:53 webserver maldet(15819): {scan} scan of (224 files) in progress... May 20 2024 07:02:19 webserver maldet(15819): {scan} clamscan returned an error, check /usr/local/maldetect/logs/clamscan_log for details! May 20 2024 07:02:19 webserver maldet(15819): {scan} scan completed on : files 224, malware hits 0, cleaned hits 0, time 271s May 20 2024 07:02:19 webserver maldet(15819): {scan} scan report saved, to view run: maldet --report 240520-0657.15819 May 21 2024 06:56:17 webserver maldet(7303): {update} checking for available updates... May 21 2024 06:56:17 webserver maldet(7303): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver May 21 2024 06:56:17 webserver maldet(7303): {update} hashing install files and checking against server... May 21 2024 06:56:17 webserver maldet(7303): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash May 21 2024 06:56:17 webserver maldet(7303): {update} latest version already installed. May 21 2024 06:56:17 webserver maldet(7439): {sigup} performing signature update check... May 21 2024 06:56:17 webserver maldet(7439): {sigup} local signature set is version 2024051967501 May 21 2024 06:56:17 webserver maldet(7439): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver May 21 2024 06:56:17 webserver maldet(7439): {sigup} latest signature set already installed May 21 2024 06:56:17 webserver maldet(7553): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress May 21 2024 06:56:17 webserver maldet(7553): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) May 21 2024 06:56:17 webserver maldet(7553): {scan} building file list for of new/modified files from last 1 days, this might take awhile... May 21 2024 06:56:17 webserver maldet(7553): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 May 21 2024 06:56:17 webserver maldet(7553): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 May 21 2024 06:58:27 webserver maldet(7553): {scan} file list completed in 130s, found 212 files... May 21 2024 06:58:27 webserver maldet(7553): {scan} found clamav binary at /usr/bin/clamscan, using clamav scanner engine... May 21 2024 06:58:27 webserver maldet(7553): {scan} scan of (212 files) in progress... May 21 2024 06:58:52 webserver maldet(7553): {scan} clamscan returned an error, check /usr/local/maldetect/logs/clamscan_log for details! May 21 2024 06:58:52 webserver maldet(7553): {scan} scan completed on : files 212, malware hits 0, cleaned hits 0, time 155s May 21 2024 06:58:52 webserver maldet(7553): {scan} scan report saved, to view run: maldet --report 240521-0656.7553 May 22 2024 07:10:04 webserver maldet(26165): {update} checking for available updates... May 22 2024 07:10:04 webserver maldet(26165): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver May 22 2024 07:10:04 webserver maldet(26165): {update} hashing install files and checking against server... May 22 2024 07:10:04 webserver maldet(26165): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash May 22 2024 07:10:04 webserver maldet(26165): {update} latest version already installed. May 22 2024 07:10:04 webserver maldet(26301): {sigup} performing signature update check... May 22 2024 07:10:04 webserver maldet(26301): {sigup} local signature set is version 2024051967501 May 22 2024 07:10:04 webserver maldet(26301): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver May 22 2024 07:10:04 webserver maldet(26301): {sigup} latest signature set already installed May 22 2024 07:10:05 webserver maldet(26416): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress May 22 2024 07:10:05 webserver maldet(26416): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) May 22 2024 07:10:05 webserver maldet(26416): {scan} building file list for of new/modified files from last 1 days, this might take awhile... May 22 2024 07:10:05 webserver maldet(26416): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 May 22 2024 07:10:05 webserver maldet(26416): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 May 22 2024 07:10:18 webserver maldet(26416): {scan} file list completed in 13s, found 250 files... May 22 2024 07:10:18 webserver maldet(26416): {scan} found clamav binary at /usr/bin/clamscan, using clamav scanner engine... May 22 2024 07:10:18 webserver maldet(26416): {scan} scan of (250 files) in progress... May 22 2024 07:10:44 webserver maldet(26416): {scan} clamscan returned an error, check /usr/local/maldetect/logs/clamscan_log for details! May 22 2024 07:10:44 webserver maldet(26416): {scan} scan completed on : files 250, malware hits 0, cleaned hits 0, time 39s May 22 2024 07:10:44 webserver maldet(26416): {scan} scan report saved, to view run: maldet --report 240522-0710.26416 May 23 2024 06:56:25 webserver maldet(5820): {update} checking for available updates... May 23 2024 06:56:25 webserver maldet(5820): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver May 23 2024 06:56:25 webserver maldet(5820): {update} hashing install files and checking against server... May 23 2024 06:56:25 webserver maldet(5820): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash May 23 2024 06:56:25 webserver maldet(5820): {update} latest version already installed. May 23 2024 06:56:25 webserver maldet(5956): {sigup} performing signature update check... May 23 2024 06:56:25 webserver maldet(5956): {sigup} local signature set is version 2024051967501 May 23 2024 06:56:25 webserver maldet(5956): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver May 23 2024 06:56:25 webserver maldet(5956): {sigup} new signature set 20240522846239 available May 23 2024 06:56:25 webserver maldet(5956): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz May 23 2024 06:56:25 webserver maldet(5956): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz May 23 2024 06:56:25 webserver maldet(5956): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 May 23 2024 06:56:25 webserver maldet(5956): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz May 23 2024 06:56:25 webserver maldet(5956): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz May 23 2024 06:56:25 webserver maldet(5956): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 May 23 2024 06:56:25 webserver maldet(5956): {sigup} verified md5sum of maldet-sigpack.tgz May 23 2024 06:56:25 webserver maldet(5956): {sigup} unpacked and installed maldet-sigpack.tgz May 23 2024 06:56:25 webserver maldet(5956): {sigup} verified md5sum of maldet-clean.tgz May 23 2024 06:56:25 webserver maldet(5956): {sigup} unpacked and installed maldet-clean.tgz May 23 2024 06:56:25 webserver maldet(5956): {sigup} signature set update completed May 23 2024 06:56:25 webserver maldet(5956): {sigup} 17638 signatures (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) May 23 2024 06:56:26 webserver maldet(6187): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress May 23 2024 06:56:26 webserver maldet(6187): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) May 23 2024 06:56:26 webserver maldet(6187): {scan} building file list for of new/modified files from last 1 days, this might take awhile... May 23 2024 06:56:26 webserver maldet(6187): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 May 23 2024 06:56:26 webserver maldet(6187): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 May 23 2024 06:56:37 webserver maldet(6187): {scan} file list completed in 11s, found 148 files... May 23 2024 06:56:37 webserver maldet(6187): {scan} found clamav binary at /usr/bin/clamscan, using clamav scanner engine... May 23 2024 06:56:37 webserver maldet(6187): {scan} scan of (148 files) in progress... May 23 2024 06:57:02 webserver maldet(6187): {scan} clamscan returned an error, check /usr/local/maldetect/logs/clamscan_log for details! May 23 2024 06:57:02 webserver maldet(6187): {scan} scan completed on : files 148, malware hits 0, cleaned hits 0, time 36s May 23 2024 06:57:02 webserver maldet(6187): {scan} scan report saved, to view run: maldet --report 240523-0656.6187 May 24 2024 07:07:21 webserver maldet(27113): {update} checking for available updates... May 24 2024 07:07:21 webserver maldet(27113): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver May 24 2024 07:07:21 webserver maldet(27113): {update} hashing install files and checking against server... May 24 2024 07:07:22 webserver maldet(27113): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash May 24 2024 07:07:22 webserver maldet(27113): {update} latest version already installed. May 24 2024 07:07:22 webserver maldet(27249): {sigup} performing signature update check... May 24 2024 07:07:22 webserver maldet(27249): {sigup} local signature set is version 20240522846239 May 24 2024 07:07:22 webserver maldet(27249): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver May 24 2024 07:07:22 webserver maldet(27249): {sigup} latest signature set already installed May 24 2024 07:07:22 webserver maldet(27364): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress May 24 2024 07:07:22 webserver maldet(27364): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) May 24 2024 07:07:22 webserver maldet(27364): {scan} building file list for of new/modified files from last 1 days, this might take awhile... May 24 2024 07:07:22 webserver maldet(27364): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 May 24 2024 07:07:22 webserver maldet(27364): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 May 24 2024 07:07:33 webserver maldet(27364): {scan} file list completed in 11s, found 189 files... May 24 2024 07:07:33 webserver maldet(27364): {scan} found clamav binary at /usr/bin/clamscan, using clamav scanner engine... May 24 2024 07:07:33 webserver maldet(27364): {scan} scan of (189 files) in progress... May 24 2024 07:07:57 webserver maldet(27364): {scan} clamscan returned an error, check /usr/local/maldetect/logs/clamscan_log for details! May 24 2024 07:07:58 webserver maldet(27364): {scan} scan completed on : files 189, malware hits 0, cleaned hits 0, time 35s May 24 2024 07:07:58 webserver maldet(27364): {scan} scan report saved, to view run: maldet --report 240524-0707.27364 May 25 2024 07:07:26 webserver maldet(14107): {update} checking for available updates... May 25 2024 07:07:26 webserver maldet(14107): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver May 25 2024 07:07:26 webserver maldet(14107): {update} hashing install files and checking against server... May 25 2024 07:07:26 webserver maldet(14107): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash May 25 2024 07:07:26 webserver maldet(14107): {update} latest version already installed. May 25 2024 07:07:26 webserver maldet(14243): {sigup} performing signature update check... May 25 2024 07:07:26 webserver maldet(14243): {sigup} local signature set is version 20240522846239 May 25 2024 07:07:26 webserver maldet(14243): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver May 25 2024 07:07:26 webserver maldet(14243): {sigup} latest signature set already installed May 25 2024 07:07:26 webserver maldet(14358): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress May 25 2024 07:07:27 webserver maldet(14358): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) May 25 2024 07:07:27 webserver maldet(14358): {scan} building file list for of new/modified files from last 1 days, this might take awhile... May 25 2024 07:07:27 webserver maldet(14358): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 May 25 2024 07:07:27 webserver maldet(14358): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 May 25 2024 07:10:44 webserver maldet(14358): {scan} file list completed in 197s, found 290 files... May 25 2024 07:10:44 webserver maldet(14358): {scan} found clamav binary at /usr/bin/clamscan, using clamav scanner engine... May 25 2024 07:10:44 webserver maldet(14358): {scan} scan of (290 files) in progress... May 25 2024 07:11:14 webserver maldet(14358): {scan} clamscan returned an error, check /usr/local/maldetect/logs/clamscan_log for details! May 25 2024 07:11:14 webserver maldet(14358): {scan} scan completed on : files 290, malware hits 0, cleaned hits 0, time 228s May 25 2024 07:11:14 webserver maldet(14358): {scan} scan report saved, to view run: maldet --report 240525-0707.14358 May 26 2024 07:05:10 webserver maldet(9181): {update} checking for available updates... May 26 2024 07:05:10 webserver maldet(9181): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver May 26 2024 07:05:10 webserver maldet(9181): {update} hashing install files and checking against server... May 26 2024 07:05:10 webserver maldet(9181): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash May 26 2024 07:05:10 webserver maldet(9181): {update} latest version already installed. May 26 2024 07:05:10 webserver maldet(9317): {sigup} performing signature update check... May 26 2024 07:05:10 webserver maldet(9317): {sigup} local signature set is version 20240522846239 May 26 2024 07:05:10 webserver maldet(9317): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver May 26 2024 07:05:10 webserver maldet(9317): {sigup} new signature set 202405251633332 available May 26 2024 07:05:10 webserver maldet(9317): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz May 26 2024 07:05:10 webserver maldet(9317): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz May 26 2024 07:05:11 webserver maldet(9317): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 May 26 2024 07:05:11 webserver maldet(9317): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz May 26 2024 07:05:11 webserver maldet(9317): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz May 26 2024 07:05:11 webserver maldet(9317): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 May 26 2024 07:05:11 webserver maldet(9317): {sigup} verified md5sum of maldet-sigpack.tgz May 26 2024 07:05:11 webserver maldet(9317): {sigup} unpacked and installed maldet-sigpack.tgz May 26 2024 07:05:11 webserver maldet(9317): {sigup} verified md5sum of maldet-clean.tgz May 26 2024 07:05:11 webserver maldet(9317): {sigup} unpacked and installed maldet-clean.tgz May 26 2024 07:05:11 webserver maldet(9317): {sigup} signature set update completed May 26 2024 07:05:11 webserver maldet(9317): {sigup} 17638 signatures (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) May 26 2024 07:05:11 webserver maldet(9547): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress May 26 2024 07:05:12 webserver maldet(9547): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) May 26 2024 07:05:12 webserver maldet(9547): {scan} building file list for of new/modified files from last 1 days, this might take awhile... May 26 2024 07:05:12 webserver maldet(9547): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 May 26 2024 07:05:12 webserver maldet(9547): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 May 26 2024 07:09:08 webserver maldet(9547): {scan} file list completed in 236s, found 284 files... May 26 2024 07:09:08 webserver maldet(9547): {scan} found clamav binary at /usr/bin/clamscan, using clamav scanner engine... May 26 2024 07:09:08 webserver maldet(9547): {scan} scan of (284 files) in progress... May 26 2024 07:09:39 webserver maldet(9547): {scan} clamscan returned an error, check /usr/local/maldetect/logs/clamscan_log for details! May 26 2024 07:09:39 webserver maldet(9547): {scan} scan completed on : files 284, malware hits 0, cleaned hits 0, time 268s May 26 2024 07:09:39 webserver maldet(9547): {scan} scan report saved, to view run: maldet --report 240526-0705.9547 May 27 2024 06:58:51 webserver maldet(1386): {update} checking for available updates... May 27 2024 06:58:51 webserver maldet(1386): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver May 27 2024 06:58:51 webserver maldet(1386): {update} hashing install files and checking against server... May 27 2024 06:58:51 webserver maldet(1386): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash May 27 2024 06:58:51 webserver maldet(1386): {update} latest version already installed. May 27 2024 06:58:51 webserver maldet(1524): {sigup} performing signature update check... May 27 2024 06:58:51 webserver maldet(1524): {sigup} local signature set is version 202405251633332 May 27 2024 06:58:51 webserver maldet(1524): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver May 27 2024 06:58:51 webserver maldet(1524): {sigup} latest signature set already installed May 27 2024 06:58:52 webserver maldet(1639): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress May 27 2024 06:58:52 webserver maldet(1639): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) May 27 2024 06:58:52 webserver maldet(1639): {scan} building file list for of new/modified files from last 1 days, this might take awhile... May 27 2024 06:58:52 webserver maldet(1639): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 May 27 2024 06:58:52 webserver maldet(1639): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 May 27 2024 07:03:34 webserver maldet(1639): {scan} file list completed in 282s, found 242 files... May 27 2024 07:03:34 webserver maldet(1639): {scan} found clamav binary at /usr/bin/clamscan, using clamav scanner engine... May 27 2024 07:03:34 webserver maldet(1639): {scan} scan of (242 files) in progress... May 27 2024 07:03:59 webserver maldet(1639): {scan} clamscan returned an error, check /usr/local/maldetect/logs/clamscan_log for details! May 27 2024 07:03:59 webserver maldet(1639): {scan} scan completed on : files 242, malware hits 0, cleaned hits 0, time 307s May 27 2024 07:03:59 webserver maldet(1639): {scan} scan report saved, to view run: maldet --report 240527-0658.1639 May 28 2024 06:57:56 webserver maldet(18973): {update} checking for available updates... May 28 2024 06:57:56 webserver maldet(18973): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver May 28 2024 06:57:56 webserver maldet(18973): {update} hashing install files and checking against server... May 28 2024 06:57:56 webserver maldet(18973): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash May 28 2024 06:57:56 webserver maldet(18973): {update} latest version already installed. May 28 2024 06:57:56 webserver maldet(19109): {sigup} performing signature update check... May 28 2024 06:57:56 webserver maldet(19109): {sigup} local signature set is version 202405251633332 May 28 2024 06:57:56 webserver maldet(19109): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver May 28 2024 06:57:56 webserver maldet(19109): {sigup} latest signature set already installed May 28 2024 06:57:56 webserver maldet(19224): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress May 28 2024 06:57:56 webserver maldet(19224): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) May 28 2024 06:57:56 webserver maldet(19224): {scan} building file list for of new/modified files from last 1 days, this might take awhile... May 28 2024 06:57:56 webserver maldet(19224): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 May 28 2024 06:57:56 webserver maldet(19224): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 May 28 2024 06:59:45 webserver maldet(19224): {scan} file list completed in 109s, found 250 files... May 28 2024 06:59:45 webserver maldet(19224): {scan} found clamav binary at /usr/bin/clamscan, using clamav scanner engine... May 28 2024 06:59:45 webserver maldet(19224): {scan} scan of (250 files) in progress... May 28 2024 07:00:11 webserver maldet(19224): {scan} clamscan returned an error, check /usr/local/maldetect/logs/clamscan_log for details! May 28 2024 07:00:11 webserver maldet(19224): {scan} scan completed on : files 250, malware hits 0, cleaned hits 0, time 135s May 28 2024 07:00:11 webserver maldet(19224): {scan} scan report saved, to view run: maldet --report 240528-0657.19224 May 29 2024 06:59:35 webserver maldet(8264): {update} checking for available updates... May 29 2024 06:59:35 webserver maldet(8264): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver May 29 2024 06:59:35 webserver maldet(8264): {update} hashing install files and checking against server... May 29 2024 06:59:35 webserver maldet(8264): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash May 29 2024 06:59:35 webserver maldet(8264): {update} latest version already installed. May 29 2024 06:59:35 webserver maldet(8400): {sigup} performing signature update check... May 29 2024 06:59:35 webserver maldet(8400): {sigup} local signature set is version 202405251633332 May 29 2024 06:59:35 webserver maldet(8400): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver May 29 2024 06:59:35 webserver maldet(8400): {sigup} new signature set 202405282336561 available May 29 2024 06:59:35 webserver maldet(8400): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz May 29 2024 06:59:35 webserver maldet(8400): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz May 29 2024 06:59:35 webserver maldet(8400): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 May 29 2024 06:59:35 webserver maldet(8400): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz May 29 2024 06:59:35 webserver maldet(8400): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz May 29 2024 06:59:35 webserver maldet(8400): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 May 29 2024 06:59:35 webserver maldet(8400): {sigup} verified md5sum of maldet-sigpack.tgz May 29 2024 06:59:36 webserver maldet(8400): {sigup} unpacked and installed maldet-sigpack.tgz May 29 2024 06:59:36 webserver maldet(8400): {sigup} verified md5sum of maldet-clean.tgz May 29 2024 06:59:36 webserver maldet(8400): {sigup} unpacked and installed maldet-clean.tgz May 29 2024 06:59:36 webserver maldet(8400): {sigup} signature set update completed May 29 2024 06:59:36 webserver maldet(8400): {sigup} 17638 signatures (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) May 29 2024 06:59:36 webserver maldet(8631): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress May 29 2024 06:59:36 webserver maldet(8631): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) May 29 2024 06:59:36 webserver maldet(8631): {scan} building file list for of new/modified files from last 1 days, this might take awhile... May 29 2024 06:59:36 webserver maldet(8631): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 May 29 2024 06:59:36 webserver maldet(8631): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 May 29 2024 07:01:30 webserver maldet(8631): {scan} file list completed in 114s, found 224 files... May 29 2024 07:01:30 webserver maldet(8631): {scan} found clamav binary at /usr/bin/clamscan, using clamav scanner engine... May 29 2024 07:01:30 webserver maldet(8631): {scan} scan of (224 files) in progress... May 29 2024 07:01:54 webserver maldet(8631): {scan} clamscan returned an error, check /usr/local/maldetect/logs/clamscan_log for details! May 29 2024 07:01:54 webserver maldet(8631): {scan} scan completed on : files 224, malware hits 0, cleaned hits 0, time 138s May 29 2024 07:01:54 webserver maldet(8631): {scan} scan report saved, to view run: maldet --report 240529-0659.8631 May 30 2024 06:55:51 webserver maldet(25755): {update} checking for available updates... May 30 2024 06:55:51 webserver maldet(25755): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver May 30 2024 06:55:51 webserver maldet(25755): {update} hashing install files and checking against server... May 30 2024 06:55:51 webserver maldet(25755): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash May 30 2024 06:55:51 webserver maldet(25755): {update} latest version already installed. May 30 2024 06:55:51 webserver maldet(25891): {sigup} performing signature update check... May 30 2024 06:55:51 webserver maldet(25891): {sigup} local signature set is version 202405282336561 May 30 2024 06:55:51 webserver maldet(25891): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver May 30 2024 06:55:51 webserver maldet(25891): {sigup} latest signature set already installed May 30 2024 06:55:51 webserver maldet(26006): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress May 30 2024 06:55:51 webserver maldet(26006): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) May 30 2024 06:55:51 webserver maldet(26006): {scan} building file list for of new/modified files from last 1 days, this might take awhile... May 30 2024 06:55:51 webserver maldet(26006): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 May 30 2024 06:55:51 webserver maldet(26006): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 May 30 2024 06:57:37 webserver maldet(26006): {scan} file list completed in 106s, found 219 files... May 30 2024 06:57:37 webserver maldet(26006): {scan} found clamav binary at /usr/bin/clamscan, using clamav scanner engine... May 30 2024 06:57:37 webserver maldet(26006): {scan} scan of (219 files) in progress... May 30 2024 06:58:00 webserver maldet(26006): {scan} clamscan returned an error, check /usr/local/maldetect/logs/clamscan_log for details! May 30 2024 06:58:00 webserver maldet(26006): {scan} scan completed on : files 219, malware hits 0, cleaned hits 0, time 129s May 30 2024 06:58:00 webserver maldet(26006): {scan} scan report saved, to view run: maldet --report 240530-0655.26006 May 31 2024 06:57:21 webserver maldet(8322): {update} checking for available updates... May 31 2024 06:57:21 webserver maldet(8322): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver May 31 2024 06:57:21 webserver maldet(8322): {update} hashing install files and checking against server... May 31 2024 06:57:21 webserver maldet(8322): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash May 31 2024 06:57:21 webserver maldet(8322): {update} latest version already installed. May 31 2024 06:57:21 webserver maldet(8458): {sigup} performing signature update check... May 31 2024 06:57:21 webserver maldet(8458): {sigup} local signature set is version 202405282336561 May 31 2024 06:57:21 webserver maldet(8458): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver May 31 2024 06:57:21 webserver maldet(8458): {sigup} latest signature set already installed May 31 2024 06:57:21 webserver maldet(8572): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress May 31 2024 06:57:22 webserver maldet(8572): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) May 31 2024 06:57:22 webserver maldet(8572): {scan} building file list for of new/modified files from last 1 days, this might take awhile... May 31 2024 06:57:22 webserver maldet(8572): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 May 31 2024 06:57:22 webserver maldet(8572): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 May 31 2024 06:59:13 webserver maldet(8572): {scan} file list completed in 111s, found 236 files... May 31 2024 06:59:13 webserver maldet(8572): {scan} found clamav binary at /usr/bin/clamscan, using clamav scanner engine... May 31 2024 06:59:13 webserver maldet(8572): {scan} scan of (236 files) in progress... May 31 2024 06:59:37 webserver maldet(8572): {scan} clamscan returned an error, check /usr/local/maldetect/logs/clamscan_log for details! May 31 2024 06:59:38 webserver maldet(8572): {scan} scan completed on : files 236, malware hits 0, cleaned hits 0, time 137s May 31 2024 06:59:38 webserver maldet(8572): {scan} scan report saved, to view run: maldet --report 240531-0657.8572 Jun 01 2024 07:05:59 webserver maldet(11938): {update} checking for available updates... Jun 01 2024 07:05:59 webserver maldet(11938): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Jun 01 2024 07:05:59 webserver maldet(11938): {update} hashing install files and checking against server... Jun 01 2024 07:05:59 webserver maldet(11938): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Jun 01 2024 07:05:59 webserver maldet(11938): {update} latest version already installed. Jun 01 2024 07:05:59 webserver maldet(12074): {sigup} performing signature update check... Jun 01 2024 07:05:59 webserver maldet(12074): {sigup} local signature set is version 202405282336561 Jun 01 2024 07:05:59 webserver maldet(12074): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Jun 01 2024 07:06:00 webserver maldet(12074): {sigup} new signature set 202405313138721 available Jun 01 2024 07:06:00 webserver maldet(12074): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Jun 01 2024 07:06:00 webserver maldet(12074): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Jun 01 2024 07:06:00 webserver maldet(12074): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Jun 01 2024 07:06:00 webserver maldet(12074): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Jun 01 2024 07:06:00 webserver maldet(12074): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Jun 01 2024 07:06:00 webserver maldet(12074): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Jun 01 2024 07:06:00 webserver maldet(12074): {sigup} verified md5sum of maldet-sigpack.tgz Jun 01 2024 07:06:01 webserver maldet(12074): {sigup} unpacked and installed maldet-sigpack.tgz Jun 01 2024 07:06:01 webserver maldet(12074): {sigup} verified md5sum of maldet-clean.tgz Jun 01 2024 07:06:01 webserver maldet(12074): {sigup} unpacked and installed maldet-clean.tgz Jun 01 2024 07:06:01 webserver maldet(12074): {sigup} signature set update completed Jun 01 2024 07:06:01 webserver maldet(12074): {sigup} 17638 signatures (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Jun 01 2024 07:06:01 webserver maldet(12305): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Jun 01 2024 07:06:01 webserver maldet(12305): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Jun 01 2024 07:06:01 webserver maldet(12305): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Jun 01 2024 07:06:01 webserver maldet(12305): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Jun 01 2024 07:06:01 webserver maldet(12305): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Jun 01 2024 07:09:34 webserver maldet(12305): {scan} file list completed in 213s, found 78 files... Jun 01 2024 07:09:34 webserver maldet(12305): {scan} found clamav binary at /usr/bin/clamscan, using clamav scanner engine... Jun 01 2024 07:09:34 webserver maldet(12305): {scan} scan of (78 files) in progress... Jun 01 2024 07:10:01 webserver maldet(12305): {scan} clamscan returned an error, check /usr/local/maldetect/logs/clamscan_log for details! Jun 01 2024 07:10:01 webserver maldet(12305): {scan} scan completed on : files 78, malware hits 0, cleaned hits 0, time 240s Jun 01 2024 07:10:01 webserver maldet(12305): {scan} scan report saved, to view run: maldet --report 240601-0706.12305 Jun 02 2024 06:59:00 webserver maldet(30189): {update} checking for available updates... Jun 02 2024 06:59:01 webserver maldet(30189): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Jun 02 2024 06:59:01 webserver maldet(30189): {update} hashing install files and checking against server... Jun 02 2024 06:59:01 webserver maldet(30189): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Jun 02 2024 06:59:01 webserver maldet(30189): {update} latest version already installed. Jun 02 2024 06:59:01 webserver maldet(30328): {sigup} performing signature update check... Jun 02 2024 06:59:01 webserver maldet(30328): {sigup} local signature set is version 202405313138721 Jun 02 2024 06:59:01 webserver maldet(30328): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Jun 02 2024 06:59:01 webserver maldet(30328): {sigup} new signature set 202406011167250 available Jun 02 2024 06:59:01 webserver maldet(30328): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Jun 02 2024 06:59:01 webserver maldet(30328): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Jun 02 2024 06:59:01 webserver maldet(30328): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Jun 02 2024 06:59:01 webserver maldet(30328): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Jun 02 2024 06:59:01 webserver maldet(30328): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Jun 02 2024 06:59:01 webserver maldet(30328): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Jun 02 2024 06:59:01 webserver maldet(30328): {sigup} verified md5sum of maldet-sigpack.tgz Jun 02 2024 06:59:02 webserver maldet(30328): {sigup} unpacked and installed maldet-sigpack.tgz Jun 02 2024 06:59:03 webserver maldet(30328): {sigup} verified md5sum of maldet-clean.tgz Jun 02 2024 06:59:03 webserver maldet(30328): {sigup} unpacked and installed maldet-clean.tgz Jun 02 2024 06:59:03 webserver maldet(30328): {sigup} signature set update completed Jun 02 2024 06:59:03 webserver maldet(30328): {sigup} 17638 signatures (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Jun 02 2024 06:59:03 webserver maldet(30559): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Jun 02 2024 06:59:03 webserver maldet(30559): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Jun 02 2024 06:59:03 webserver maldet(30559): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Jun 02 2024 06:59:03 webserver maldet(30559): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Jun 02 2024 06:59:03 webserver maldet(30559): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Jun 02 2024 07:04:21 webserver maldet(30559): {scan} file list completed in 318s, found 64 files... Jun 02 2024 07:04:21 webserver maldet(30559): {scan} found clamav binary at /usr/bin/clamscan, using clamav scanner engine... Jun 02 2024 07:04:21 webserver maldet(30559): {scan} scan of (64 files) in progress... Jun 02 2024 07:04:48 webserver maldet(30559): {scan} clamscan returned an error, check /usr/local/maldetect/logs/clamscan_log for details! Jun 02 2024 07:04:48 webserver maldet(30559): {scan} scan completed on : files 64, malware hits 0, cleaned hits 0, time 345s Jun 02 2024 07:04:48 webserver maldet(30559): {scan} scan report saved, to view run: maldet --report 240602-0659.30559 Jun 03 2024 06:59:43 webserver maldet(23627): {update} checking for available updates... Jun 03 2024 06:59:43 webserver maldet(23627): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Jun 03 2024 06:59:43 webserver maldet(23627): {update} hashing install files and checking against server... Jun 03 2024 06:59:43 webserver maldet(23627): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Jun 03 2024 06:59:43 webserver maldet(23627): {update} latest version already installed. Jun 03 2024 06:59:44 webserver maldet(23763): {sigup} performing signature update check... Jun 03 2024 06:59:44 webserver maldet(23763): {sigup} local signature set is version 202406011167250 Jun 03 2024 06:59:44 webserver maldet(23763): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Jun 03 2024 06:59:44 webserver maldet(23763): {sigup} latest signature set already installed Jun 03 2024 06:59:44 webserver maldet(23878): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Jun 03 2024 06:59:45 webserver maldet(23878): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Jun 03 2024 06:59:45 webserver maldet(23878): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Jun 03 2024 06:59:45 webserver maldet(23878): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Jun 03 2024 06:59:45 webserver maldet(23878): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Jun 03 2024 07:06:17 webserver maldet(23878): {scan} file list completed in 392s, found 256 files... Jun 03 2024 07:06:17 webserver maldet(23878): {scan} found clamav binary at /usr/bin/clamscan, using clamav scanner engine... Jun 03 2024 07:06:17 webserver maldet(23878): {scan} scan of (256 files) in progress... Jun 03 2024 07:06:43 webserver maldet(23878): {scan} clamscan returned an error, check /usr/local/maldetect/logs/clamscan_log for details! Jun 03 2024 07:06:43 webserver maldet(23878): {scan} scan completed on : files 256, malware hits 0, cleaned hits 0, time 419s Jun 03 2024 07:06:43 webserver maldet(23878): {scan} scan report saved, to view run: maldet --report 240603-0659.23878 Jun 04 2024 06:58:36 webserver maldet(12405): {update} checking for available updates... Jun 04 2024 06:58:36 webserver maldet(12405): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Jun 04 2024 06:58:36 webserver maldet(12405): {update} hashing install files and checking against server... Jun 04 2024 06:58:36 webserver maldet(12405): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Jun 04 2024 06:58:36 webserver maldet(12405): {update} latest version already installed. Jun 04 2024 06:58:36 webserver maldet(12543): {sigup} performing signature update check... Jun 04 2024 06:58:36 webserver maldet(12543): {sigup} local signature set is version 202406011167250 Jun 04 2024 06:58:36 webserver maldet(12543): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Jun 04 2024 06:58:37 webserver maldet(12543): {sigup} latest signature set already installed Jun 04 2024 06:58:37 webserver maldet(12658): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Jun 04 2024 06:58:37 webserver maldet(12658): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Jun 04 2024 06:58:37 webserver maldet(12658): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Jun 04 2024 06:58:37 webserver maldet(12658): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Jun 04 2024 06:58:37 webserver maldet(12658): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Jun 04 2024 07:06:16 webserver maldet(12658): {scan} file list completed in 458s, found 219 files... Jun 04 2024 07:06:16 webserver maldet(12658): {scan} found clamav binary at /usr/bin/clamscan, using clamav scanner engine... Jun 04 2024 07:06:16 webserver maldet(12658): {scan} scan of (219 files) in progress... Jun 04 2024 07:06:41 webserver maldet(12658): {scan} clamscan returned an error, check /usr/local/maldetect/logs/clamscan_log for details! Jun 04 2024 07:06:41 webserver maldet(12658): {scan} scan completed on : files 219, malware hits 0, cleaned hits 0, time 484s Jun 04 2024 07:06:41 webserver maldet(12658): {scan} scan report saved, to view run: maldet --report 240604-0658.12658 Jun 05 2024 06:56:35 webserver maldet(7803): {update} checking for available updates... Jun 05 2024 06:56:35 webserver maldet(7803): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Jun 05 2024 06:56:35 webserver maldet(7803): {update} hashing install files and checking against server... Jun 05 2024 06:56:36 webserver maldet(7803): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Jun 05 2024 06:56:36 webserver maldet(7803): {update} latest version already installed. Jun 05 2024 06:56:36 webserver maldet(7941): {sigup} performing signature update check... Jun 05 2024 06:56:36 webserver maldet(7941): {sigup} local signature set is version 202406011167250 Jun 05 2024 06:56:36 webserver maldet(7941): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Jun 05 2024 06:56:36 webserver maldet(7941): {sigup} new signature set 202406043123752 available Jun 05 2024 06:56:36 webserver maldet(7941): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Jun 05 2024 06:56:36 webserver maldet(7941): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Jun 05 2024 06:56:36 webserver maldet(7941): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Jun 05 2024 06:56:36 webserver maldet(7941): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Jun 05 2024 06:56:36 webserver maldet(7941): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Jun 05 2024 06:56:36 webserver maldet(7941): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Jun 05 2024 06:56:36 webserver maldet(7941): {sigup} verified md5sum of maldet-sigpack.tgz Jun 05 2024 06:56:36 webserver maldet(7941): {sigup} unpacked and installed maldet-sigpack.tgz Jun 05 2024 06:56:36 webserver maldet(7941): {sigup} verified md5sum of maldet-clean.tgz Jun 05 2024 06:56:36 webserver maldet(7941): {sigup} unpacked and installed maldet-clean.tgz Jun 05 2024 06:56:36 webserver maldet(7941): {sigup} signature set update completed Jun 05 2024 06:56:36 webserver maldet(7941): {sigup} 17638 signatures (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Jun 05 2024 06:56:36 webserver maldet(8176): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Jun 05 2024 06:56:37 webserver maldet(8176): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Jun 05 2024 06:56:37 webserver maldet(8176): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Jun 05 2024 06:56:37 webserver maldet(8176): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Jun 05 2024 06:56:37 webserver maldet(8176): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Jun 05 2024 06:58:26 webserver maldet(8176): {scan} file list completed in 109s, found 233 files... Jun 05 2024 06:58:26 webserver maldet(8176): {scan} found clamav binary at /usr/bin/clamscan, using clamav scanner engine... Jun 05 2024 06:58:26 webserver maldet(8176): {scan} scan of (233 files) in progress... Jun 05 2024 06:58:51 webserver maldet(8176): {scan} clamscan returned an error, check /usr/local/maldetect/logs/clamscan_log for details! Jun 05 2024 06:58:51 webserver maldet(8176): {scan} scan completed on : files 233, malware hits 0, cleaned hits 0, time 135s Jun 05 2024 06:58:51 webserver maldet(8176): {scan} scan report saved, to view run: maldet --report 240605-0656.8176 Jun 06 2024 06:57:26 webserver maldet(5486): {update} checking for available updates... Jun 06 2024 06:57:26 webserver maldet(5486): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Jun 06 2024 06:57:26 webserver maldet(5486): {update} hashing install files and checking against server... Jun 06 2024 06:57:26 webserver maldet(5486): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Jun 06 2024 06:57:26 webserver maldet(5486): {update} latest version already installed. Jun 06 2024 06:57:26 webserver maldet(5623): {sigup} performing signature update check... Jun 06 2024 06:57:26 webserver maldet(5623): {sigup} local signature set is version 202406043123752 Jun 06 2024 06:57:26 webserver maldet(5623): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Jun 06 2024 06:57:27 webserver maldet(5623): {sigup} latest signature set already installed Jun 06 2024 06:57:27 webserver maldet(5738): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Jun 06 2024 06:57:27 webserver maldet(5738): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Jun 06 2024 06:57:27 webserver maldet(5738): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Jun 06 2024 06:57:27 webserver maldet(5738): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Jun 06 2024 06:57:27 webserver maldet(5738): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Jun 06 2024 06:59:21 webserver maldet(5738): {scan} file list completed in 114s, found 237 files... Jun 06 2024 06:59:21 webserver maldet(5738): {scan} found clamav binary at /usr/bin/clamscan, using clamav scanner engine... Jun 06 2024 06:59:21 webserver maldet(5738): {scan} scan of (237 files) in progress... Jun 06 2024 06:59:46 webserver maldet(5738): {scan} clamscan returned an error, check /usr/local/maldetect/logs/clamscan_log for details! Jun 06 2024 06:59:46 webserver maldet(5738): {scan} scan completed on : files 237, malware hits 0, cleaned hits 0, time 139s Jun 06 2024 06:59:46 webserver maldet(5738): {scan} scan report saved, to view run: maldet --report 240606-0657.5738 Jun 07 2024 06:58:19 webserver maldet(1368): {update} checking for available updates... Jun 07 2024 06:58:19 webserver maldet(1368): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Jun 07 2024 06:58:19 webserver maldet(1368): {update} hashing install files and checking against server... Jun 07 2024 06:58:19 webserver maldet(1368): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Jun 07 2024 06:58:19 webserver maldet(1368): {update} latest version already installed. Jun 07 2024 06:58:19 webserver maldet(1504): {sigup} performing signature update check... Jun 07 2024 06:58:19 webserver maldet(1504): {sigup} local signature set is version 202406043123752 Jun 07 2024 06:58:19 webserver maldet(1504): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Jun 07 2024 06:58:20 webserver maldet(1504): {sigup} latest signature set already installed Jun 07 2024 06:58:20 webserver maldet(1618): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Jun 07 2024 06:58:20 webserver maldet(1618): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Jun 07 2024 06:58:20 webserver maldet(1618): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Jun 07 2024 06:58:20 webserver maldet(1618): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Jun 07 2024 06:58:20 webserver maldet(1618): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Jun 07 2024 07:00:18 webserver maldet(1618): {scan} file list completed in 118s, found 65 files... Jun 07 2024 07:00:18 webserver maldet(1618): {scan} found clamav binary at /usr/bin/clamscan, using clamav scanner engine... Jun 07 2024 07:00:18 webserver maldet(1618): {scan} scan of (65 files) in progress... Jun 07 2024 07:00:40 webserver maldet(1618): {scan} clamscan returned an error, check /usr/local/maldetect/logs/clamscan_log for details! Jun 07 2024 07:00:40 webserver maldet(1618): {scan} scan completed on : files 65, malware hits 0, cleaned hits 0, time 140s Jun 07 2024 07:00:40 webserver maldet(1618): {scan} scan report saved, to view run: maldet --report 240607-0658.1618 Jun 08 2024 06:56:27 webserver maldet(27413): {update} checking for available updates... Jun 08 2024 06:56:27 webserver maldet(27413): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Jun 08 2024 06:56:27 webserver maldet(27413): {update} hashing install files and checking against server... Jun 08 2024 06:56:27 webserver maldet(27413): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Jun 08 2024 06:56:27 webserver maldet(27413): {update} latest version already installed. Jun 08 2024 06:56:27 webserver maldet(27551): {sigup} performing signature update check... Jun 08 2024 06:56:27 webserver maldet(27551): {sigup} local signature set is version 202406043123752 Jun 08 2024 06:56:27 webserver maldet(27551): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Jun 08 2024 06:56:27 webserver maldet(27551): {sigup} new signature set 202406072708004 available Jun 08 2024 06:56:27 webserver maldet(27551): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Jun 08 2024 06:56:27 webserver maldet(27551): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Jun 08 2024 06:56:27 webserver maldet(27551): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Jun 08 2024 06:56:27 webserver maldet(27551): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Jun 08 2024 06:56:28 webserver maldet(27551): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Jun 08 2024 06:56:28 webserver maldet(27551): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Jun 08 2024 06:56:28 webserver maldet(27551): {sigup} verified md5sum of maldet-sigpack.tgz Jun 08 2024 06:56:28 webserver maldet(27551): {sigup} unpacked and installed maldet-sigpack.tgz Jun 08 2024 06:56:29 webserver maldet(27551): {sigup} verified md5sum of maldet-clean.tgz Jun 08 2024 06:56:29 webserver maldet(27551): {sigup} unpacked and installed maldet-clean.tgz Jun 08 2024 06:56:29 webserver maldet(27551): {sigup} signature set update completed Jun 08 2024 06:56:29 webserver maldet(27551): {sigup} 17638 signatures (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Jun 08 2024 06:56:29 webserver maldet(27782): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Jun 08 2024 06:56:29 webserver maldet(27782): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Jun 08 2024 06:56:29 webserver maldet(27782): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Jun 08 2024 06:56:29 webserver maldet(27782): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Jun 08 2024 06:56:29 webserver maldet(27782): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Jun 08 2024 07:07:12 webserver maldet(27782): {scan} file list completed in 643s, found 249 files... Jun 08 2024 07:07:12 webserver maldet(27782): {scan} found clamav binary at /usr/bin/clamscan, using clamav scanner engine... Jun 08 2024 07:07:12 webserver maldet(27782): {scan} scan of (249 files) in progress... Jun 08 2024 07:07:50 webserver maldet(27782): {scan} clamscan returned an error, check /usr/local/maldetect/logs/clamscan_log for details! Jun 08 2024 07:07:50 webserver maldet(27782): {scan} scan completed on : files 249, malware hits 0, cleaned hits 0, time 681s Jun 08 2024 07:07:50 webserver maldet(27782): {scan} scan report saved, to view run: maldet --report 240608-0656.27782 Jun 09 2024 07:08:22 webserver maldet(23810): {update} checking for available updates... Jun 09 2024 07:08:22 webserver maldet(23810): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Jun 09 2024 07:08:22 webserver maldet(23810): {update} hashing install files and checking against server... Jun 09 2024 07:08:22 webserver maldet(23810): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Jun 09 2024 07:08:22 webserver maldet(23810): {update} latest version already installed. Jun 09 2024 07:08:22 webserver maldet(23946): {sigup} performing signature update check... Jun 09 2024 07:08:22 webserver maldet(23946): {sigup} local signature set is version 202406072708004 Jun 09 2024 07:08:22 webserver maldet(23946): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Jun 09 2024 07:08:23 webserver maldet(23946): {sigup} latest signature set already installed Jun 09 2024 07:08:23 webserver maldet(24061): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Jun 09 2024 07:08:23 webserver maldet(24061): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Jun 09 2024 07:08:23 webserver maldet(24061): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Jun 09 2024 07:08:23 webserver maldet(24061): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Jun 09 2024 07:08:23 webserver maldet(24061): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Jun 09 2024 07:10:25 webserver maldet(24061): {scan} file list completed in 122s, found 244 files... Jun 09 2024 07:10:25 webserver maldet(24061): {scan} found clamav binary at /usr/bin/clamscan, using clamav scanner engine... Jun 09 2024 07:10:25 webserver maldet(24061): {scan} scan of (244 files) in progress... Jun 09 2024 07:11:25 webserver maldet(24061): {scan} clamscan returned an error, check /usr/local/maldetect/logs/clamscan_log for details! Jun 09 2024 07:11:25 webserver maldet(24061): {scan} scan completed on : files 244, malware hits 0, cleaned hits 0, time 182s Jun 09 2024 07:11:25 webserver maldet(24061): {scan} scan report saved, to view run: maldet --report 240609-0708.24061 Jun 10 2024 06:59:03 webserver maldet(30439): {update} checking for available updates... Jun 10 2024 06:59:03 webserver maldet(30439): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Jun 10 2024 06:59:03 webserver maldet(30439): {update} hashing install files and checking against server... Jun 10 2024 06:59:04 webserver maldet(30439): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Jun 10 2024 06:59:04 webserver maldet(30439): {update} latest version already installed. Jun 10 2024 06:59:04 webserver maldet(30575): {sigup} performing signature update check... Jun 10 2024 06:59:04 webserver maldet(30575): {sigup} local signature set is version 202406072708004 Jun 10 2024 06:59:04 webserver maldet(30575): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Jun 10 2024 06:59:05 webserver maldet(30575): {sigup} latest signature set already installed Jun 10 2024 06:59:05 webserver maldet(30690): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Jun 10 2024 06:59:06 webserver maldet(30690): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Jun 10 2024 06:59:06 webserver maldet(30690): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Jun 10 2024 06:59:06 webserver maldet(30690): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Jun 10 2024 06:59:06 webserver maldet(30690): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Jun 10 2024 07:08:59 webserver maldet(30690): {scan} file list completed in 593s, found 204 files... Jun 10 2024 07:09:00 webserver maldet(30690): {scan} found clamav binary at /usr/bin/clamscan, using clamav scanner engine... Jun 10 2024 07:09:00 webserver maldet(30690): {scan} scan of (204 files) in progress... Jun 10 2024 07:09:48 webserver maldet(30690): {scan} clamscan returned an error, check /usr/local/maldetect/logs/clamscan_log for details! Jun 10 2024 07:09:48 webserver maldet(30690): {scan} scan completed on : files 204, malware hits 0, cleaned hits 0, time 643s Jun 10 2024 07:09:48 webserver maldet(30690): {scan} scan report saved, to view run: maldet --report 240610-0659.30690 Jun 11 2024 06:58:27 webserver maldet(27131): {update} checking for available updates... Jun 11 2024 06:58:27 webserver maldet(27131): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Jun 11 2024 06:58:27 webserver maldet(27131): {update} hashing install files and checking against server... Jun 11 2024 06:58:27 webserver maldet(27131): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Jun 11 2024 06:58:27 webserver maldet(27131): {update} latest version already installed. Jun 11 2024 06:58:27 webserver maldet(27267): {sigup} performing signature update check... Jun 11 2024 06:58:27 webserver maldet(27267): {sigup} local signature set is version 202406072708004 Jun 11 2024 06:58:27 webserver maldet(27267): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Jun 11 2024 06:58:27 webserver maldet(27267): {sigup} new signature set 202406101638544 available Jun 11 2024 06:58:27 webserver maldet(27267): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Jun 11 2024 06:58:27 webserver maldet(27267): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Jun 11 2024 06:58:27 webserver maldet(27267): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Jun 11 2024 06:58:27 webserver maldet(27267): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Jun 11 2024 06:58:27 webserver maldet(27267): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Jun 11 2024 06:58:28 webserver maldet(27267): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Jun 11 2024 06:58:28 webserver maldet(27267): {sigup} verified md5sum of maldet-sigpack.tgz Jun 11 2024 06:58:28 webserver maldet(27267): {sigup} unpacked and installed maldet-sigpack.tgz Jun 11 2024 06:58:28 webserver maldet(27267): {sigup} verified md5sum of maldet-clean.tgz Jun 11 2024 06:58:28 webserver maldet(27267): {sigup} unpacked and installed maldet-clean.tgz Jun 11 2024 06:58:28 webserver maldet(27267): {sigup} signature set update completed Jun 11 2024 06:58:28 webserver maldet(27267): {sigup} 17638 signatures (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Jun 11 2024 06:58:28 webserver maldet(27497): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Jun 11 2024 06:58:28 webserver maldet(27497): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Jun 11 2024 06:58:28 webserver maldet(27497): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Jun 11 2024 06:58:28 webserver maldet(27497): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Jun 11 2024 06:58:28 webserver maldet(27497): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Jun 11 2024 07:00:26 webserver maldet(27497): {scan} file list completed in 118s, found 44 files... Jun 11 2024 07:00:26 webserver maldet(27497): {scan} found clamav binary at /usr/bin/clamscan, using clamav scanner engine... Jun 11 2024 07:00:26 webserver maldet(27497): {scan} scan of (44 files) in progress... Jun 11 2024 07:00:50 webserver maldet(27497): {scan} clamscan returned an error, check /usr/local/maldetect/logs/clamscan_log for details! Jun 11 2024 07:00:50 webserver maldet(27497): {scan} scan completed on : files 44, malware hits 0, cleaned hits 0, time 142s Jun 11 2024 07:00:50 webserver maldet(27497): {scan} scan report saved, to view run: maldet --report 240611-0658.27497 Jun 12 2024 06:57:10 webserver maldet(27957): {update} checking for available updates... Jun 12 2024 06:57:10 webserver maldet(27957): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Jun 12 2024 06:57:10 webserver maldet(27957): {update} hashing install files and checking against server... Jun 12 2024 06:57:10 webserver maldet(27957): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Jun 12 2024 06:57:10 webserver maldet(27957): {update} latest version already installed. Jun 12 2024 06:57:11 webserver maldet(28093): {sigup} performing signature update check... Jun 12 2024 06:57:11 webserver maldet(28093): {sigup} local signature set is version 202406101638544 Jun 12 2024 06:57:11 webserver maldet(28093): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Jun 12 2024 06:57:11 webserver maldet(28093): {sigup} latest signature set already installed Jun 12 2024 06:57:11 webserver maldet(28207): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Jun 12 2024 06:57:11 webserver maldet(28207): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Jun 12 2024 06:57:11 webserver maldet(28207): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Jun 12 2024 06:57:11 webserver maldet(28207): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Jun 12 2024 06:57:11 webserver maldet(28207): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Jun 12 2024 06:59:04 webserver maldet(28207): {scan} file list completed in 113s, found 210 files... Jun 12 2024 06:59:04 webserver maldet(28207): {scan} found clamav binary at /usr/bin/clamscan, using clamav scanner engine... Jun 12 2024 06:59:04 webserver maldet(28207): {scan} scan of (210 files) in progress... Jun 12 2024 06:59:28 webserver maldet(28207): {scan} clamscan returned an error, check /usr/local/maldetect/logs/clamscan_log for details! Jun 12 2024 06:59:28 webserver maldet(28207): {scan} scan completed on : files 210, malware hits 0, cleaned hits 0, time 137s Jun 12 2024 06:59:28 webserver maldet(28207): {scan} scan report saved, to view run: maldet --report 240612-0657.28207 Jun 13 2024 06:55:58 webserver maldet(30840): {update} checking for available updates... Jun 13 2024 06:55:58 webserver maldet(30840): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Jun 13 2024 06:55:58 webserver maldet(30840): {update} hashing install files and checking against server... Jun 13 2024 06:55:58 webserver maldet(30840): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Jun 13 2024 06:55:58 webserver maldet(30840): {update} latest version already installed. Jun 13 2024 06:55:58 webserver maldet(30976): {sigup} performing signature update check... Jun 13 2024 06:55:58 webserver maldet(30976): {sigup} local signature set is version 202406101638544 Jun 13 2024 06:55:58 webserver maldet(30976): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Jun 13 2024 06:55:58 webserver maldet(30976): {sigup} latest signature set already installed Jun 13 2024 06:55:59 webserver maldet(31092): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Jun 13 2024 06:55:59 webserver maldet(31092): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Jun 13 2024 06:55:59 webserver maldet(31092): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Jun 13 2024 06:55:59 webserver maldet(31092): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Jun 13 2024 06:55:59 webserver maldet(31092): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Jun 13 2024 06:58:34 webserver maldet(31092): {scan} file list completed in 155s, found 213 files... Jun 13 2024 06:58:34 webserver maldet(31092): {scan} found clamav binary at /usr/bin/clamscan, using clamav scanner engine... Jun 13 2024 06:58:34 webserver maldet(31092): {scan} scan of (213 files) in progress... Jun 13 2024 06:59:21 webserver maldet(31092): {scan} clamscan returned an error, check /usr/local/maldetect/logs/clamscan_log for details! Jun 13 2024 06:59:21 webserver maldet(31092): {scan} scan completed on : files 213, malware hits 0, cleaned hits 0, time 202s Jun 13 2024 06:59:21 webserver maldet(31092): {scan} scan report saved, to view run: maldet --report 240613-0655.31092 Jun 14 2024 06:57:22 webserver maldet(31820): {update} checking for available updates... Jun 14 2024 06:57:22 webserver maldet(31820): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Jun 14 2024 06:57:22 webserver maldet(31820): {update} hashing install files and checking against server... Jun 14 2024 06:57:22 webserver maldet(31820): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Jun 14 2024 06:57:22 webserver maldet(31820): {update} latest version already installed. Jun 14 2024 06:57:22 webserver maldet(31956): {sigup} performing signature update check... Jun 14 2024 06:57:22 webserver maldet(31956): {sigup} local signature set is version 202406101638544 Jun 14 2024 06:57:22 webserver maldet(31956): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Jun 14 2024 06:57:23 webserver maldet(31956): {sigup} new signature set 20240613708945 available Jun 14 2024 06:57:23 webserver maldet(31956): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Jun 14 2024 06:57:23 webserver maldet(31956): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Jun 14 2024 06:57:23 webserver maldet(31956): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Jun 14 2024 06:57:23 webserver maldet(31956): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Jun 14 2024 06:57:23 webserver maldet(31956): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Jun 14 2024 06:57:23 webserver maldet(31956): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Jun 14 2024 06:57:23 webserver maldet(31956): {sigup} verified md5sum of maldet-sigpack.tgz Jun 14 2024 06:57:23 webserver maldet(31956): {sigup} unpacked and installed maldet-sigpack.tgz Jun 14 2024 06:57:23 webserver maldet(31956): {sigup} verified md5sum of maldet-clean.tgz Jun 14 2024 06:57:23 webserver maldet(31956): {sigup} unpacked and installed maldet-clean.tgz Jun 14 2024 06:57:23 webserver maldet(31956): {sigup} signature set update completed Jun 14 2024 06:57:23 webserver maldet(31956): {sigup} 17638 signatures (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Jun 14 2024 06:57:23 webserver maldet(32218): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Jun 14 2024 06:57:24 webserver maldet(32218): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Jun 14 2024 06:57:24 webserver maldet(32218): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Jun 14 2024 06:57:24 webserver maldet(32218): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Jun 14 2024 06:57:24 webserver maldet(32218): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Jun 14 2024 07:09:41 webserver maldet(32218): {scan} file list completed in 736s, found 219 files... Jun 14 2024 07:09:41 webserver maldet(32218): {scan} found clamav binary at /usr/bin/clamscan, using clamav scanner engine... Jun 14 2024 07:09:41 webserver maldet(32218): {scan} scan of (219 files) in progress... Jun 14 2024 07:10:16 webserver maldet(32218): {scan} clamscan returned an error, check /usr/local/maldetect/logs/clamscan_log for details! Jun 14 2024 07:10:16 webserver maldet(32218): {scan} scan completed on : files 219, malware hits 0, cleaned hits 0, time 773s Jun 14 2024 07:10:16 webserver maldet(32218): {scan} scan report saved, to view run: maldet --report 240614-0657.32218 Jun 15 2024 06:58:08 webserver maldet(28887): {update} checking for available updates... Jun 15 2024 06:58:08 webserver maldet(28887): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Jun 15 2024 06:58:08 webserver maldet(28887): {update} hashing install files and checking against server... Jun 15 2024 06:58:08 webserver maldet(28887): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Jun 15 2024 06:58:08 webserver maldet(28887): {update} latest version already installed. Jun 15 2024 06:58:08 webserver maldet(29023): {sigup} performing signature update check... Jun 15 2024 06:58:08 webserver maldet(29023): {sigup} local signature set is version 20240613708945 Jun 15 2024 06:58:08 webserver maldet(29023): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Jun 15 2024 06:58:08 webserver maldet(29023): {sigup} latest signature set already installed Jun 15 2024 06:58:08 webserver maldet(29138): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Jun 15 2024 06:58:09 webserver maldet(29138): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Jun 15 2024 06:58:09 webserver maldet(29138): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Jun 15 2024 06:58:09 webserver maldet(29138): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Jun 15 2024 06:58:09 webserver maldet(29138): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Jun 15 2024 07:02:04 webserver maldet(29138): {scan} file list completed in 235s, found 1816 files... Jun 15 2024 07:02:04 webserver maldet(29138): {scan} found clamav binary at /usr/bin/clamscan, using clamav scanner engine... Jun 15 2024 07:02:04 webserver maldet(29138): {scan} scan of (1816 files) in progress... Jun 15 2024 07:03:35 webserver maldet(29138): {scan} clamscan returned an error, check /usr/local/maldetect/logs/clamscan_log for details! Jun 15 2024 07:03:35 webserver maldet(29138): {scan} scan completed on : files 1816, malware hits 0, cleaned hits 0, time 327s Jun 15 2024 07:03:35 webserver maldet(29138): {scan} scan report saved, to view run: maldet --report 240615-0658.29138 Jun 16 2024 07:00:09 webserver maldet(26960): {update} checking for available updates... Jun 16 2024 07:00:09 webserver maldet(26960): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Jun 16 2024 07:00:09 webserver maldet(26960): {update} hashing install files and checking against server... Jun 16 2024 07:00:09 webserver maldet(26960): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Jun 16 2024 07:00:09 webserver maldet(26960): {update} latest version already installed. Jun 16 2024 07:00:10 webserver maldet(27096): {sigup} performing signature update check... Jun 16 2024 07:00:10 webserver maldet(27096): {sigup} local signature set is version 20240613708945 Jun 16 2024 07:00:10 webserver maldet(27096): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Jun 16 2024 07:00:10 webserver maldet(27096): {sigup} latest signature set already installed Jun 16 2024 07:00:10 webserver maldet(27211): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Jun 16 2024 07:00:10 webserver maldet(27211): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Jun 16 2024 07:00:10 webserver maldet(27211): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Jun 16 2024 07:00:10 webserver maldet(27211): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Jun 16 2024 07:00:10 webserver maldet(27211): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Jun 16 2024 07:02:33 webserver maldet(27211): {scan} file list completed in 143s, found 311 files... Jun 16 2024 07:02:33 webserver maldet(27211): {scan} found clamav binary at /usr/bin/clamscan, using clamav scanner engine... Jun 16 2024 07:02:33 webserver maldet(27211): {scan} scan of (311 files) in progress... Jun 16 2024 07:03:15 webserver maldet(27211): {scan} clamscan returned an error, check /usr/local/maldetect/logs/clamscan_log for details! Jun 16 2024 07:03:15 webserver maldet(27211): {scan} scan completed on : files 311, malware hits 0, cleaned hits 0, time 185s Jun 16 2024 07:03:15 webserver maldet(27211): {scan} scan report saved, to view run: maldet --report 240616-0700.27211 Jun 17 2024 06:57:15 webserver maldet(19662): {update} checking for available updates... Jun 17 2024 06:57:15 webserver maldet(19662): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Jun 17 2024 06:57:15 webserver maldet(19662): {update} hashing install files and checking against server... Jun 17 2024 06:57:15 webserver maldet(19662): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Jun 17 2024 06:57:15 webserver maldet(19662): {update} latest version already installed. Jun 17 2024 06:57:15 webserver maldet(19798): {sigup} performing signature update check... Jun 17 2024 06:57:15 webserver maldet(19798): {sigup} local signature set is version 20240613708945 Jun 17 2024 06:57:15 webserver maldet(19798): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Jun 17 2024 06:57:15 webserver maldet(19798): {sigup} new signature set 20240616598245 available Jun 17 2024 06:57:15 webserver maldet(19798): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Jun 17 2024 06:57:15 webserver maldet(19798): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Jun 17 2024 06:57:15 webserver maldet(19798): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Jun 17 2024 06:57:15 webserver maldet(19798): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Jun 17 2024 06:57:15 webserver maldet(19798): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Jun 17 2024 06:57:15 webserver maldet(19798): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Jun 17 2024 06:57:15 webserver maldet(19798): {sigup} verified md5sum of maldet-sigpack.tgz Jun 17 2024 06:57:15 webserver maldet(19798): {sigup} unpacked and installed maldet-sigpack.tgz Jun 17 2024 06:57:15 webserver maldet(19798): {sigup} verified md5sum of maldet-clean.tgz Jun 17 2024 06:57:15 webserver maldet(19798): {sigup} unpacked and installed maldet-clean.tgz Jun 17 2024 06:57:15 webserver maldet(19798): {sigup} signature set update completed Jun 17 2024 06:57:15 webserver maldet(19798): {sigup} 17638 signatures (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Jun 17 2024 06:57:16 webserver maldet(20028): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Jun 17 2024 06:57:16 webserver maldet(20028): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Jun 17 2024 06:57:16 webserver maldet(20028): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Jun 17 2024 06:57:16 webserver maldet(20028): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Jun 17 2024 06:57:16 webserver maldet(20028): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Jun 17 2024 07:01:59 webserver maldet(20028): {scan} file list completed in 283s, found 274 files... Jun 17 2024 07:01:59 webserver maldet(20028): {scan} found clamav binary at /usr/bin/clamscan, using clamav scanner engine... Jun 17 2024 07:01:59 webserver maldet(20028): {scan} scan of (274 files) in progress... Jun 17 2024 07:02:28 webserver maldet(20028): {scan} clamscan returned an error, check /usr/local/maldetect/logs/clamscan_log for details! Jun 17 2024 07:02:28 webserver maldet(20028): {scan} scan completed on : files 274, malware hits 0, cleaned hits 0, time 312s Jun 17 2024 07:02:28 webserver maldet(20028): {scan} scan report saved, to view run: maldet --report 240617-0657.20028 Jun 18 2024 06:57:40 webserver maldet(18663): {update} checking for available updates... Jun 18 2024 06:57:40 webserver maldet(18663): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Jun 18 2024 06:57:40 webserver maldet(18663): {update} hashing install files and checking against server... Jun 18 2024 06:57:40 webserver maldet(18663): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Jun 18 2024 06:57:40 webserver maldet(18663): {update} latest version already installed. Jun 18 2024 06:57:40 webserver maldet(18799): {sigup} performing signature update check... Jun 18 2024 06:57:40 webserver maldet(18799): {sigup} local signature set is version 20240616598245 Jun 18 2024 06:57:40 webserver maldet(18799): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Jun 18 2024 06:57:41 webserver maldet(18799): {sigup} latest signature set already installed Jun 18 2024 06:57:41 webserver maldet(18914): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Jun 18 2024 06:57:41 webserver maldet(18914): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Jun 18 2024 06:57:41 webserver maldet(18914): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Jun 18 2024 06:57:41 webserver maldet(18914): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Jun 18 2024 06:57:41 webserver maldet(18914): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Jun 18 2024 06:58:51 webserver maldet(18914): {scan} file list completed in 70s, found 88 files... Jun 18 2024 06:58:51 webserver maldet(18914): {scan} found clamav binary at /usr/bin/clamscan, using clamav scanner engine... Jun 18 2024 06:58:51 webserver maldet(18914): {scan} scan of (88 files) in progress... Jun 18 2024 06:59:30 webserver maldet(18914): {scan} clamscan returned an error, check /usr/local/maldetect/logs/clamscan_log for details! Jun 18 2024 06:59:30 webserver maldet(18914): {scan} scan completed on : files 88, malware hits 0, cleaned hits 0, time 109s Jun 18 2024 06:59:30 webserver maldet(18914): {scan} scan report saved, to view run: maldet --report 240618-0657.18914 Jun 19 2024 07:06:19 webserver maldet(13934): {update} checking for available updates... Jun 19 2024 07:06:20 webserver maldet(13934): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Jun 19 2024 07:06:20 webserver maldet(13934): {update} hashing install files and checking against server... Jun 19 2024 07:06:20 webserver maldet(13934): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Jun 19 2024 07:06:20 webserver maldet(13934): {update} latest version already installed. Jun 19 2024 07:06:20 webserver maldet(14070): {sigup} performing signature update check... Jun 19 2024 07:06:21 webserver maldet(14070): {sigup} local signature set is version 20240616598245 Jun 19 2024 07:06:21 webserver maldet(14070): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Jun 19 2024 07:06:21 webserver maldet(14070): {sigup} latest signature set already installed Jun 19 2024 07:06:22 webserver maldet(14184): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Jun 19 2024 07:06:22 webserver maldet(14184): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Jun 19 2024 07:06:23 webserver maldet(14184): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Jun 19 2024 07:06:23 webserver maldet(14184): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Jun 19 2024 07:06:23 webserver maldet(14184): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Jun 19 2024 07:16:58 webserver maldet(14184): {scan} file list completed in 635s, found 271 files... Jun 19 2024 07:16:58 webserver maldet(14184): {scan} found clamav binary at /usr/bin/clamscan, using clamav scanner engine... Jun 19 2024 07:16:58 webserver maldet(14184): {scan} scan of (271 files) in progress... Jun 19 2024 07:17:36 webserver maldet(14184): {scan} clamscan returned an error, check /usr/local/maldetect/logs/clamscan_log for details! Jun 19 2024 07:17:36 webserver maldet(14184): {scan} scan completed on : files 271, malware hits 0, cleaned hits 0, time 674s Jun 19 2024 07:17:36 webserver maldet(14184): {scan} scan report saved, to view run: maldet --report 240619-0706.14184 Jun 20 2024 06:58:06 webserver maldet(14332): {update} checking for available updates... Jun 20 2024 06:58:06 webserver maldet(14332): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Jun 20 2024 06:58:06 webserver maldet(14332): {update} hashing install files and checking against server... Jun 20 2024 06:58:06 webserver maldet(14332): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Jun 20 2024 06:58:06 webserver maldet(14332): {update} latest version already installed. Jun 20 2024 06:58:07 webserver maldet(14468): {sigup} performing signature update check... Jun 20 2024 06:58:07 webserver maldet(14468): {sigup} local signature set is version 20240616598245 Jun 20 2024 06:58:07 webserver maldet(14468): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Jun 20 2024 06:58:07 webserver maldet(14468): {sigup} new signature set 202406191945628 available Jun 20 2024 06:58:07 webserver maldet(14468): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Jun 20 2024 06:58:07 webserver maldet(14468): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Jun 20 2024 06:58:07 webserver maldet(14468): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Jun 20 2024 06:58:07 webserver maldet(14468): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Jun 20 2024 06:58:07 webserver maldet(14468): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Jun 20 2024 06:58:07 webserver maldet(14468): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Jun 20 2024 06:58:07 webserver maldet(14468): {sigup} verified md5sum of maldet-sigpack.tgz Jun 20 2024 06:58:07 webserver maldet(14468): {sigup} unpacked and installed maldet-sigpack.tgz Jun 20 2024 06:58:07 webserver maldet(14468): {sigup} verified md5sum of maldet-clean.tgz Jun 20 2024 06:58:07 webserver maldet(14468): {sigup} unpacked and installed maldet-clean.tgz Jun 20 2024 06:58:07 webserver maldet(14468): {sigup} signature set update completed Jun 20 2024 06:58:07 webserver maldet(14468): {sigup} 17638 signatures (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Jun 20 2024 06:58:07 webserver maldet(14700): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Jun 20 2024 06:58:08 webserver maldet(14700): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Jun 20 2024 06:58:08 webserver maldet(14700): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Jun 20 2024 06:58:08 webserver maldet(14700): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Jun 20 2024 06:58:08 webserver maldet(14700): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Jun 20 2024 07:02:44 webserver maldet(14700): {scan} file list completed in 276s, found 280 files... Jun 20 2024 07:02:44 webserver maldet(14700): {scan} found clamav binary at /usr/bin/clamscan, using clamav scanner engine... Jun 20 2024 07:02:44 webserver maldet(14700): {scan} scan of (280 files) in progress... Jun 20 2024 07:03:13 webserver maldet(14700): {scan} clamscan returned an error, check /usr/local/maldetect/logs/clamscan_log for details! Jun 20 2024 07:03:13 webserver maldet(14700): {scan} scan completed on : files 280, malware hits 0, cleaned hits 0, time 306s Jun 20 2024 07:03:13 webserver maldet(14700): {scan} scan report saved, to view run: maldet --report 240620-0658.14700 Jun 21 2024 06:58:30 webserver maldet(16591): {update} checking for available updates... Jun 21 2024 06:58:30 webserver maldet(16591): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Jun 21 2024 06:58:30 webserver maldet(16591): {update} hashing install files and checking against server... Jun 21 2024 06:58:30 webserver maldet(16591): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Jun 21 2024 06:58:30 webserver maldet(16591): {update} latest version already installed. Jun 21 2024 06:58:30 webserver maldet(16727): {sigup} performing signature update check... Jun 21 2024 06:58:30 webserver maldet(16727): {sigup} local signature set is version 202406191945628 Jun 21 2024 06:58:30 webserver maldet(16727): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Jun 21 2024 06:58:30 webserver maldet(16727): {sigup} latest signature set already installed Jun 21 2024 06:58:31 webserver maldet(16842): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Jun 21 2024 06:58:31 webserver maldet(16842): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Jun 21 2024 06:58:31 webserver maldet(16842): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Jun 21 2024 06:58:31 webserver maldet(16842): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Jun 21 2024 06:58:31 webserver maldet(16842): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Jun 21 2024 07:01:29 webserver maldet(16842): {scan} file list completed in 178s, found 225 files... Jun 21 2024 07:01:29 webserver maldet(16842): {scan} found clamav binary at /usr/bin/clamscan, using clamav scanner engine... Jun 21 2024 07:01:29 webserver maldet(16842): {scan} scan of (225 files) in progress... Jun 21 2024 07:01:56 webserver maldet(16842): {scan} clamscan returned an error, check /usr/local/maldetect/logs/clamscan_log for details! Jun 21 2024 07:01:56 webserver maldet(16842): {scan} scan completed on : files 225, malware hits 0, cleaned hits 0, time 205s Jun 21 2024 07:01:56 webserver maldet(16842): {scan} scan report saved, to view run: maldet --report 240621-0658.16842 Jun 22 2024 06:57:07 webserver maldet(17834): {update} checking for available updates... Jun 22 2024 06:57:07 webserver maldet(17834): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Jun 22 2024 06:57:07 webserver maldet(17834): {update} hashing install files and checking against server... Jun 22 2024 06:57:07 webserver maldet(17834): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Jun 22 2024 06:57:07 webserver maldet(17834): {update} latest version already installed. Jun 22 2024 06:57:08 webserver maldet(17970): {sigup} performing signature update check... Jun 22 2024 06:57:08 webserver maldet(17970): {sigup} local signature set is version 202406191945628 Jun 22 2024 06:57:08 webserver maldet(17970): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Jun 22 2024 06:57:08 webserver maldet(17970): {sigup} latest signature set already installed Jun 22 2024 06:57:08 webserver maldet(18086): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Jun 22 2024 06:57:09 webserver maldet(18086): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Jun 22 2024 06:57:09 webserver maldet(18086): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Jun 22 2024 06:57:09 webserver maldet(18086): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Jun 22 2024 06:57:09 webserver maldet(18086): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Jun 22 2024 07:06:19 webserver maldet(18086): {scan} file list completed in 550s, found 37 files... Jun 22 2024 07:06:19 webserver maldet(18086): {scan} found clamav binary at /usr/bin/clamscan, using clamav scanner engine... Jun 22 2024 07:06:19 webserver maldet(18086): {scan} scan of (37 files) in progress... Jun 22 2024 07:13:20 webserver maldet(18086): {scan} clamscan returned an error, check /usr/local/maldetect/logs/clamscan_log for details! Jun 22 2024 07:13:20 webserver maldet(18086): {scan} scan completed on : files 37, malware hits 0, cleaned hits 0, time 972s Jun 22 2024 07:13:20 webserver maldet(18086): {scan} scan report saved, to view run: maldet --report 240622-0657.18086 Jun 23 2024 06:56:34 webserver maldet(15636): {update} checking for available updates... Jun 23 2024 06:56:34 webserver maldet(15636): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Jun 23 2024 06:56:35 webserver maldet(15636): {update} hashing install files and checking against server... Jun 23 2024 06:56:35 webserver maldet(15636): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Jun 23 2024 06:56:35 webserver maldet(15636): {update} latest version already installed. Jun 23 2024 06:56:35 webserver maldet(15772): {sigup} performing signature update check... Jun 23 2024 06:56:35 webserver maldet(15772): {sigup} local signature set is version 202406191945628 Jun 23 2024 06:56:35 webserver maldet(15772): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Jun 23 2024 06:56:35 webserver maldet(15772): {sigup} new signature set 202406223155762 available Jun 23 2024 06:56:35 webserver maldet(15772): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Jun 23 2024 06:56:35 webserver maldet(15772): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Jun 23 2024 06:56:35 webserver maldet(15772): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Jun 23 2024 06:56:35 webserver maldet(15772): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Jun 23 2024 06:56:35 webserver maldet(15772): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Jun 23 2024 06:56:35 webserver maldet(15772): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Jun 23 2024 06:56:35 webserver maldet(15772): {sigup} verified md5sum of maldet-sigpack.tgz Jun 23 2024 06:56:35 webserver maldet(15772): {sigup} unpacked and installed maldet-sigpack.tgz Jun 23 2024 06:56:35 webserver maldet(15772): {sigup} verified md5sum of maldet-clean.tgz Jun 23 2024 06:56:35 webserver maldet(15772): {sigup} unpacked and installed maldet-clean.tgz Jun 23 2024 06:56:35 webserver maldet(15772): {sigup} signature set update completed Jun 23 2024 06:56:35 webserver maldet(15772): {sigup} 17638 signatures (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Jun 23 2024 06:56:35 webserver maldet(16003): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Jun 23 2024 06:56:36 webserver maldet(16003): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Jun 23 2024 06:56:36 webserver maldet(16003): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Jun 23 2024 06:56:36 webserver maldet(16003): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Jun 23 2024 06:56:36 webserver maldet(16003): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Jun 23 2024 06:59:38 webserver maldet(16003): {scan} file list completed in 182s, found 225 files... Jun 23 2024 06:59:38 webserver maldet(16003): {scan} found clamav binary at /usr/bin/clamscan, using clamav scanner engine... Jun 23 2024 06:59:38 webserver maldet(16003): {scan} scan of (225 files) in progress... Jun 23 2024 07:00:06 webserver maldet(16003): {scan} clamscan returned an error, check /usr/local/maldetect/logs/clamscan_log for details! Jun 23 2024 07:00:06 webserver maldet(16003): {scan} scan completed on : files 225, malware hits 0, cleaned hits 0, time 211s Jun 23 2024 07:00:06 webserver maldet(16003): {scan} scan report saved, to view run: maldet --report 240623-0656.16003 Jun 24 2024 06:59:31 webserver maldet(18180): {update} checking for available updates... Jun 24 2024 06:59:32 webserver maldet(18180): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Jun 24 2024 06:59:32 webserver maldet(18180): {update} hashing install files and checking against server... Jun 24 2024 06:59:32 webserver maldet(18180): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Jun 24 2024 06:59:32 webserver maldet(18180): {update} latest version already installed. Jun 24 2024 06:59:32 webserver maldet(18316): {sigup} performing signature update check... Jun 24 2024 06:59:32 webserver maldet(18316): {sigup} local signature set is version 202406223155762 Jun 24 2024 06:59:32 webserver maldet(18316): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Jun 24 2024 06:59:32 webserver maldet(18316): {sigup} latest signature set already installed Jun 24 2024 06:59:32 webserver maldet(18431): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Jun 24 2024 06:59:33 webserver maldet(18431): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Jun 24 2024 06:59:33 webserver maldet(18431): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Jun 24 2024 06:59:33 webserver maldet(18431): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Jun 24 2024 06:59:33 webserver maldet(18431): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Jun 24 2024 07:03:22 webserver maldet(18431): {scan} file list completed in 229s, found 77 files... Jun 24 2024 07:03:22 webserver maldet(18431): {scan} found clamav binary at /usr/bin/clamscan, using clamav scanner engine... Jun 24 2024 07:03:22 webserver maldet(18431): {scan} scan of (77 files) in progress... Jun 24 2024 07:03:49 webserver maldet(18431): {scan} clamscan returned an error, check /usr/local/maldetect/logs/clamscan_log for details! Jun 24 2024 07:03:49 webserver maldet(18431): {scan} scan completed on : files 77, malware hits 0, cleaned hits 0, time 257s Jun 24 2024 07:03:49 webserver maldet(18431): {scan} scan report saved, to view run: maldet --report 240624-0659.18431 Jun 25 2024 06:56:18 webserver maldet(19911): {update} checking for available updates... Jun 25 2024 06:56:18 webserver maldet(19911): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Jun 25 2024 06:56:18 webserver maldet(19911): {update} hashing install files and checking against server... Jun 25 2024 06:56:18 webserver maldet(19911): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Jun 25 2024 06:56:18 webserver maldet(19911): {update} latest version already installed. Jun 25 2024 06:56:19 webserver maldet(20047): {sigup} performing signature update check... Jun 25 2024 06:56:19 webserver maldet(20047): {sigup} local signature set is version 202406223155762 Jun 25 2024 06:56:19 webserver maldet(20047): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Jun 25 2024 06:56:19 webserver maldet(20047): {sigup} latest signature set already installed Jun 25 2024 06:56:20 webserver maldet(20162): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Jun 25 2024 06:56:20 webserver maldet(20162): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Jun 25 2024 06:56:21 webserver maldet(20162): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Jun 25 2024 06:56:21 webserver maldet(20162): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Jun 25 2024 06:56:21 webserver maldet(20162): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Jun 25 2024 07:03:25 webserver maldet(20162): {scan} file list completed in 424s, found 242 files... Jun 25 2024 07:03:25 webserver maldet(20162): {scan} found clamav binary at /usr/bin/clamscan, using clamav scanner engine... Jun 25 2024 07:03:25 webserver maldet(20162): {scan} scan of (242 files) in progress... Jun 25 2024 07:07:45 webserver maldet(20162): {scan} clamscan returned an error, check /usr/local/maldetect/logs/clamscan_log for details! Jun 25 2024 07:07:45 webserver maldet(20162): {scan} scan completed on : files 242, malware hits 0, cleaned hits 0, time 685s Jun 25 2024 07:07:45 webserver maldet(20162): {scan} scan report saved, to view run: maldet --report 240625-0656.20162 Jun 26 2024 06:59:03 webserver maldet(29658): {update} checking for available updates... Jun 26 2024 06:59:03 webserver maldet(29658): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Jun 26 2024 06:59:03 webserver maldet(29658): {update} hashing install files and checking against server... Jun 26 2024 06:59:03 webserver maldet(29658): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Jun 26 2024 06:59:03 webserver maldet(29658): {update} latest version already installed. Jun 26 2024 06:59:03 webserver maldet(29794): {sigup} performing signature update check... Jun 26 2024 06:59:04 webserver maldet(29794): {sigup} local signature set is version 202406223155762 Jun 26 2024 06:59:04 webserver maldet(29794): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Jun 26 2024 06:59:04 webserver maldet(29794): {sigup} new signature set 202406254122786 available Jun 26 2024 06:59:04 webserver maldet(29794): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Jun 26 2024 06:59:04 webserver maldet(29794): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Jun 26 2024 06:59:04 webserver maldet(29794): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Jun 26 2024 06:59:04 webserver maldet(29794): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Jun 26 2024 06:59:04 webserver maldet(29794): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Jun 26 2024 06:59:04 webserver maldet(29794): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Jun 26 2024 06:59:04 webserver maldet(29794): {sigup} verified md5sum of maldet-sigpack.tgz Jun 26 2024 06:59:04 webserver maldet(29794): {sigup} unpacked and installed maldet-sigpack.tgz Jun 26 2024 06:59:04 webserver maldet(29794): {sigup} verified md5sum of maldet-clean.tgz Jun 26 2024 06:59:04 webserver maldet(29794): {sigup} unpacked and installed maldet-clean.tgz Jun 26 2024 06:59:04 webserver maldet(29794): {sigup} signature set update completed Jun 26 2024 06:59:04 webserver maldet(29794): {sigup} 17638 signatures (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Jun 26 2024 06:59:05 webserver maldet(30025): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Jun 26 2024 06:59:05 webserver maldet(30025): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Jun 26 2024 06:59:05 webserver maldet(30025): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Jun 26 2024 06:59:05 webserver maldet(30025): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Jun 26 2024 06:59:05 webserver maldet(30025): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Jun 26 2024 07:01:19 webserver maldet(30025): {scan} file list completed in 134s, found 247 files... Jun 26 2024 07:01:19 webserver maldet(30025): {scan} found clamav binary at /usr/bin/clamscan, using clamav scanner engine... Jun 26 2024 07:01:19 webserver maldet(30025): {scan} scan of (247 files) in progress... Jun 26 2024 07:01:46 webserver maldet(30025): {scan} clamscan returned an error, check /usr/local/maldetect/logs/clamscan_log for details! Jun 26 2024 07:01:46 webserver maldet(30025): {scan} scan completed on : files 247, malware hits 0, cleaned hits 0, time 161s Jun 26 2024 07:01:46 webserver maldet(30025): {scan} scan report saved, to view run: maldet --report 240626-0659.30025 Jun 27 2024 06:59:37 webserver maldet(30653): {update} checking for available updates... Jun 27 2024 06:59:37 webserver maldet(30653): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Jun 27 2024 06:59:37 webserver maldet(30653): {update} hashing install files and checking against server... Jun 27 2024 06:59:37 webserver maldet(30653): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Jun 27 2024 06:59:37 webserver maldet(30653): {update} latest version already installed. Jun 27 2024 06:59:37 webserver maldet(30789): {sigup} performing signature update check... Jun 27 2024 06:59:37 webserver maldet(30789): {sigup} local signature set is version 202406254122786 Jun 27 2024 06:59:37 webserver maldet(30789): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Jun 27 2024 06:59:37 webserver maldet(30789): {sigup} latest signature set already installed Jun 27 2024 06:59:37 webserver maldet(30904): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Jun 27 2024 06:59:37 webserver maldet(30904): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Jun 27 2024 06:59:37 webserver maldet(30904): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Jun 27 2024 06:59:37 webserver maldet(30904): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Jun 27 2024 06:59:37 webserver maldet(30904): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Jun 27 2024 07:00:13 webserver maldet(30904): {scan} file list completed in 36s, found 236 files... Jun 27 2024 07:00:13 webserver maldet(30904): {scan} found clamav binary at /usr/bin/clamscan, using clamav scanner engine... Jun 27 2024 07:00:13 webserver maldet(30904): {scan} scan of (236 files) in progress... Jun 27 2024 07:00:39 webserver maldet(30904): {scan} clamscan returned an error, check /usr/local/maldetect/logs/clamscan_log for details! Jun 27 2024 07:00:39 webserver maldet(30904): {scan} scan completed on : files 236, malware hits 0, cleaned hits 0, time 62s Jun 27 2024 07:00:39 webserver maldet(30904): {scan} scan report saved, to view run: maldet --report 240627-0659.30904 Jun 28 2024 06:57:27 webserver maldet(2440): {update} checking for available updates... Jun 28 2024 06:57:27 webserver maldet(2440): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Jun 28 2024 06:57:27 webserver maldet(2440): {update} hashing install files and checking against server... Jun 28 2024 06:57:27 webserver maldet(2440): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Jun 28 2024 06:57:27 webserver maldet(2440): {update} latest version already installed. Jun 28 2024 06:57:27 webserver maldet(2576): {sigup} performing signature update check... Jun 28 2024 06:57:27 webserver maldet(2576): {sigup} local signature set is version 202406254122786 Jun 28 2024 06:57:27 webserver maldet(2576): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Jun 28 2024 06:57:27 webserver maldet(2576): {sigup} latest signature set already installed Jun 28 2024 06:57:27 webserver maldet(2691): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Jun 28 2024 06:57:28 webserver maldet(2691): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Jun 28 2024 06:57:28 webserver maldet(2691): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Jun 28 2024 06:57:28 webserver maldet(2691): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Jun 28 2024 06:57:28 webserver maldet(2691): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Jun 28 2024 07:06:34 webserver maldet(2691): {scan} file list completed in 546s, found 42 files... Jun 28 2024 07:06:34 webserver maldet(2691): {scan} found clamav binary at /usr/bin/clamscan, using clamav scanner engine... Jun 28 2024 07:06:34 webserver maldet(2691): {scan} scan of (42 files) in progress... Jun 28 2024 07:07:10 webserver maldet(2691): {scan} clamscan returned an error, check /usr/local/maldetect/logs/clamscan_log for details! Jun 28 2024 07:07:10 webserver maldet(2691): {scan} scan completed on : files 42, malware hits 0, cleaned hits 0, time 583s Jun 28 2024 07:07:10 webserver maldet(2691): {scan} scan report saved, to view run: maldet --report 240628-0657.2691 Jun 29 2024 06:56:59 webserver maldet(7166): {update} checking for available updates... Jun 29 2024 06:56:59 webserver maldet(7166): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Jun 29 2024 06:56:59 webserver maldet(7166): {update} hashing install files and checking against server... Jun 29 2024 06:57:00 webserver maldet(7166): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Jun 29 2024 06:57:00 webserver maldet(7166): {update} latest version already installed. Jun 29 2024 06:57:00 webserver maldet(7302): {sigup} performing signature update check... Jun 29 2024 06:57:00 webserver maldet(7302): {sigup} local signature set is version 202406254122786 Jun 29 2024 06:57:00 webserver maldet(7302): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Jun 29 2024 06:57:00 webserver maldet(7302): {sigup} new signature set 20240628719054 available Jun 29 2024 06:57:00 webserver maldet(7302): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Jun 29 2024 06:57:00 webserver maldet(7302): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Jun 29 2024 06:57:00 webserver maldet(7302): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Jun 29 2024 06:57:00 webserver maldet(7302): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Jun 29 2024 06:57:00 webserver maldet(7302): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Jun 29 2024 06:57:00 webserver maldet(7302): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Jun 29 2024 06:57:00 webserver maldet(7302): {sigup} verified md5sum of maldet-sigpack.tgz Jun 29 2024 06:57:01 webserver maldet(7302): {sigup} unpacked and installed maldet-sigpack.tgz Jun 29 2024 06:57:01 webserver maldet(7302): {sigup} verified md5sum of maldet-clean.tgz Jun 29 2024 06:57:01 webserver maldet(7302): {sigup} unpacked and installed maldet-clean.tgz Jun 29 2024 06:57:01 webserver maldet(7302): {sigup} signature set update completed Jun 29 2024 06:57:01 webserver maldet(7302): {sigup} 17638 signatures (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Jun 29 2024 06:57:01 webserver maldet(7533): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Jun 29 2024 06:57:02 webserver maldet(7533): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Jun 29 2024 06:57:02 webserver maldet(7533): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Jun 29 2024 06:57:02 webserver maldet(7533): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Jun 29 2024 06:57:02 webserver maldet(7533): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Jun 29 2024 07:05:08 webserver maldet(7533): {scan} file list completed in 486s, found 240 files... Jun 29 2024 07:05:08 webserver maldet(7533): {scan} found clamav binary at /usr/bin/clamscan, using clamav scanner engine... Jun 29 2024 07:05:08 webserver maldet(7533): {scan} scan of (240 files) in progress... Jun 29 2024 07:05:37 webserver maldet(7533): {scan} clamscan returned an error, check /usr/local/maldetect/logs/clamscan_log for details! Jun 29 2024 07:05:37 webserver maldet(7533): {scan} scan completed on : files 240, malware hits 0, cleaned hits 0, time 516s Jun 29 2024 07:05:37 webserver maldet(7533): {scan} scan report saved, to view run: maldet --report 240629-0657.7533 Jun 30 2024 07:04:05 webserver maldet(387): {update} checking for available updates... Jun 30 2024 07:04:05 webserver maldet(387): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Jun 30 2024 07:04:05 webserver maldet(387): {update} hashing install files and checking against server... Jun 30 2024 07:04:05 webserver maldet(387): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Jun 30 2024 07:04:05 webserver maldet(387): {update} latest version already installed. Jun 30 2024 07:04:05 webserver maldet(525): {sigup} performing signature update check... Jun 30 2024 07:04:05 webserver maldet(525): {sigup} local signature set is version 20240628719054 Jun 30 2024 07:04:05 webserver maldet(525): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Jun 30 2024 07:04:05 webserver maldet(525): {sigup} latest signature set already installed Jun 30 2024 07:04:05 webserver maldet(640): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Jun 30 2024 07:04:06 webserver maldet(640): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Jun 30 2024 07:04:06 webserver maldet(640): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Jun 30 2024 07:04:06 webserver maldet(640): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Jun 30 2024 07:04:06 webserver maldet(640): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Jun 30 2024 07:06:32 webserver maldet(640): {scan} file list completed in 146s, found 50 files... Jun 30 2024 07:06:32 webserver maldet(640): {scan} found clamav binary at /usr/bin/clamscan, using clamav scanner engine... Jun 30 2024 07:06:32 webserver maldet(640): {scan} scan of (50 files) in progress... Jun 30 2024 07:07:00 webserver maldet(640): {scan} clamscan returned an error, check /usr/local/maldetect/logs/clamscan_log for details! Jun 30 2024 07:07:00 webserver maldet(640): {scan} scan completed on : files 50, malware hits 0, cleaned hits 0, time 175s Jun 30 2024 07:07:00 webserver maldet(640): {scan} scan report saved, to view run: maldet --report 240630-0704.640 Jul 01 2024 06:58:09 webserver maldet(1983): {update} checking for available updates... Jul 01 2024 06:58:09 webserver maldet(1983): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Jul 01 2024 06:58:09 webserver maldet(1983): {update} hashing install files and checking against server... Jul 01 2024 06:58:09 webserver maldet(1983): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Jul 01 2024 06:58:09 webserver maldet(1983): {update} latest version already installed. Jul 01 2024 06:58:09 webserver maldet(2119): {sigup} performing signature update check... Jul 01 2024 06:58:09 webserver maldet(2119): {sigup} local signature set is version 20240628719054 Jul 01 2024 06:58:09 webserver maldet(2119): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Jul 01 2024 06:58:09 webserver maldet(2119): {sigup} latest signature set already installed Jul 01 2024 06:58:09 webserver maldet(2236): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Jul 01 2024 06:58:10 webserver maldet(2236): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Jul 01 2024 06:58:10 webserver maldet(2236): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Jul 01 2024 06:58:10 webserver maldet(2236): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Jul 01 2024 06:58:10 webserver maldet(2236): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Jul 01 2024 07:04:25 webserver maldet(2236): {scan} file list completed in 375s, found 231 files... Jul 01 2024 07:04:25 webserver maldet(2236): {scan} found clamav binary at /usr/bin/clamscan, using clamav scanner engine... Jul 01 2024 07:04:25 webserver maldet(2236): {scan} scan of (231 files) in progress... Jul 01 2024 07:04:59 webserver maldet(2236): {scan} clamscan returned an error, check /usr/local/maldetect/logs/clamscan_log for details! Jul 01 2024 07:04:59 webserver maldet(2236): {scan} scan completed on : files 231, malware hits 0, cleaned hits 0, time 410s Jul 01 2024 07:04:59 webserver maldet(2236): {scan} scan report saved, to view run: maldet --report 240701-0658.2236 Jul 02 2024 06:58:37 webserver maldet(30304): {update} checking for available updates... Jul 02 2024 06:58:37 webserver maldet(30304): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Jul 02 2024 06:58:37 webserver maldet(30304): {update} hashing install files and checking against server... Jul 02 2024 06:58:37 webserver maldet(30304): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Jul 02 2024 06:58:37 webserver maldet(30304): {update} latest version already installed. Jul 02 2024 06:58:38 webserver maldet(30440): {sigup} performing signature update check... Jul 02 2024 06:58:38 webserver maldet(30440): {sigup} local signature set is version 20240628719054 Jul 02 2024 06:58:38 webserver maldet(30440): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Jul 02 2024 06:58:38 webserver maldet(30440): {sigup} new signature set 202407011471467 available Jul 02 2024 06:58:38 webserver maldet(30440): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Jul 02 2024 06:58:38 webserver maldet(30440): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Jul 02 2024 06:58:38 webserver maldet(30440): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Jul 02 2024 06:58:38 webserver maldet(30440): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Jul 02 2024 06:58:38 webserver maldet(30440): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Jul 02 2024 06:58:38 webserver maldet(30440): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Jul 02 2024 06:58:38 webserver maldet(30440): {sigup} verified md5sum of maldet-sigpack.tgz Jul 02 2024 06:58:38 webserver maldet(30440): {sigup} unpacked and installed maldet-sigpack.tgz Jul 02 2024 06:58:38 webserver maldet(30440): {sigup} verified md5sum of maldet-clean.tgz Jul 02 2024 06:58:38 webserver maldet(30440): {sigup} unpacked and installed maldet-clean.tgz Jul 02 2024 06:58:38 webserver maldet(30440): {sigup} signature set update completed Jul 02 2024 06:58:38 webserver maldet(30440): {sigup} 17638 signatures (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Jul 02 2024 06:58:38 webserver maldet(30671): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Jul 02 2024 06:58:39 webserver maldet(30671): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Jul 02 2024 06:58:39 webserver maldet(30671): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Jul 02 2024 06:58:39 webserver maldet(30671): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Jul 02 2024 06:58:39 webserver maldet(30671): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Jul 02 2024 07:04:55 webserver maldet(30671): {scan} file list completed in 376s, found 73 files... Jul 02 2024 07:04:55 webserver maldet(30671): {scan} found clamav binary at /usr/bin/clamscan, using clamav scanner engine... Jul 02 2024 07:04:55 webserver maldet(30671): {scan} scan of (73 files) in progress... Jul 02 2024 07:05:24 webserver maldet(30671): {scan} clamscan returned an error, check /usr/local/maldetect/logs/clamscan_log for details! Jul 02 2024 07:05:24 webserver maldet(30671): {scan} scan completed on : files 73, malware hits 0, cleaned hits 0, time 406s Jul 02 2024 07:05:24 webserver maldet(30671): {scan} scan report saved, to view run: maldet --report 240702-0658.30671 Jul 03 2024 06:57:02 webserver maldet(894): {update} checking for available updates... Jul 03 2024 06:57:02 webserver maldet(894): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Jul 03 2024 06:57:02 webserver maldet(894): {update} hashing install files and checking against server... Jul 03 2024 06:57:02 webserver maldet(894): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Jul 03 2024 06:57:02 webserver maldet(894): {update} latest version already installed. Jul 03 2024 06:57:02 webserver maldet(1030): {sigup} performing signature update check... Jul 03 2024 06:57:02 webserver maldet(1030): {sigup} local signature set is version 202407011471467 Jul 03 2024 06:57:02 webserver maldet(1030): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Jul 03 2024 06:57:02 webserver maldet(1030): {sigup} latest signature set already installed Jul 03 2024 06:57:02 webserver maldet(1145): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Jul 03 2024 06:57:03 webserver maldet(1145): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Jul 03 2024 06:57:03 webserver maldet(1145): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Jul 03 2024 06:57:03 webserver maldet(1145): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Jul 03 2024 06:57:03 webserver maldet(1145): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Jul 03 2024 07:02:17 webserver maldet(1145): {scan} file list completed in 314s, found 270 files... Jul 03 2024 07:02:17 webserver maldet(1145): {scan} found clamav binary at /usr/bin/clamscan, using clamav scanner engine... Jul 03 2024 07:02:17 webserver maldet(1145): {scan} scan of (270 files) in progress... Jul 03 2024 07:02:45 webserver maldet(1145): {scan} clamscan returned an error, check /usr/local/maldetect/logs/clamscan_log for details! Jul 03 2024 07:02:45 webserver maldet(1145): {scan} scan completed on : files 270, malware hits 0, cleaned hits 0, time 343s Jul 03 2024 07:02:45 webserver maldet(1145): {scan} scan report saved, to view run: maldet --report 240703-0657.1145 Jul 04 2024 06:59:19 webserver maldet(31610): {update} checking for available updates... Jul 04 2024 06:59:19 webserver maldet(31610): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Jul 04 2024 06:59:19 webserver maldet(31610): {update} hashing install files and checking against server... Jul 04 2024 06:59:19 webserver maldet(31610): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Jul 04 2024 06:59:19 webserver maldet(31610): {update} latest version already installed. Jul 04 2024 06:59:19 webserver maldet(31746): {sigup} performing signature update check... Jul 04 2024 06:59:19 webserver maldet(31746): {sigup} local signature set is version 202407011471467 Jul 04 2024 06:59:19 webserver maldet(31746): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Jul 04 2024 06:59:19 webserver maldet(31746): {sigup} latest signature set already installed Jul 04 2024 06:59:19 webserver maldet(31861): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Jul 04 2024 06:59:20 webserver maldet(31861): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Jul 04 2024 06:59:20 webserver maldet(31861): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Jul 04 2024 06:59:20 webserver maldet(31861): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Jul 04 2024 06:59:20 webserver maldet(31861): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Jul 04 2024 07:03:34 webserver maldet(31861): {scan} file list completed in 253s, found 226 files... Jul 04 2024 07:03:34 webserver maldet(31861): {scan} found clamav binary at /usr/bin/clamscan, using clamav scanner engine... Jul 04 2024 07:03:34 webserver maldet(31861): {scan} scan of (226 files) in progress... Jul 04 2024 07:04:24 webserver maldet(31861): {scan} clamscan returned an error, check /usr/local/maldetect/logs/clamscan_log for details! Jul 04 2024 07:04:24 webserver maldet(31861): {scan} scan completed on : files 226, malware hits 0, cleaned hits 0, time 305s Jul 04 2024 07:04:24 webserver maldet(31861): {scan} scan report saved, to view run: maldet --report 240704-0659.31861 Jul 05 2024 06:57:23 webserver maldet(30218): {update} checking for available updates... Jul 05 2024 06:57:23 webserver maldet(30218): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Jul 05 2024 06:57:23 webserver maldet(30218): {update} hashing install files and checking against server... Jul 05 2024 06:57:23 webserver maldet(30218): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Jul 05 2024 06:57:23 webserver maldet(30218): {update} latest version already installed. Jul 05 2024 06:57:23 webserver maldet(30354): {sigup} performing signature update check... Jul 05 2024 06:57:23 webserver maldet(30354): {sigup} local signature set is version 202407011471467 Jul 05 2024 06:57:23 webserver maldet(30354): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Jul 05 2024 06:57:23 webserver maldet(30354): {sigup} new signature set 202407042224247 available Jul 05 2024 06:57:23 webserver maldet(30354): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Jul 05 2024 06:57:23 webserver maldet(30354): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Jul 05 2024 06:57:23 webserver maldet(30354): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Jul 05 2024 06:57:23 webserver maldet(30354): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Jul 05 2024 06:57:23 webserver maldet(30354): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Jul 05 2024 06:57:23 webserver maldet(30354): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Jul 05 2024 06:57:23 webserver maldet(30354): {sigup} verified md5sum of maldet-sigpack.tgz Jul 05 2024 06:57:24 webserver maldet(30354): {sigup} unpacked and installed maldet-sigpack.tgz Jul 05 2024 06:57:24 webserver maldet(30354): {sigup} verified md5sum of maldet-clean.tgz Jul 05 2024 06:57:24 webserver maldet(30354): {sigup} unpacked and installed maldet-clean.tgz Jul 05 2024 06:57:24 webserver maldet(30354): {sigup} signature set update completed Jul 05 2024 06:57:24 webserver maldet(30354): {sigup} 17638 signatures (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Jul 05 2024 06:57:24 webserver maldet(30586): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Jul 05 2024 06:57:24 webserver maldet(30586): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Jul 05 2024 06:57:24 webserver maldet(30586): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Jul 05 2024 06:57:24 webserver maldet(30586): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Jul 05 2024 06:57:24 webserver maldet(30586): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Jul 05 2024 06:59:19 webserver maldet(30586): {scan} file list completed in 115s, found 26 files... Jul 05 2024 06:59:19 webserver maldet(30586): {scan} found clamav binary at /usr/bin/clamscan, using clamav scanner engine... Jul 05 2024 06:59:19 webserver maldet(30586): {scan} scan of (26 files) in progress... Jul 05 2024 06:59:46 webserver maldet(30586): {scan} clamscan returned an error, check /usr/local/maldetect/logs/clamscan_log for details! Jul 05 2024 06:59:46 webserver maldet(30586): {scan} scan completed on : files 26, malware hits 0, cleaned hits 0, time 142s Jul 05 2024 06:59:46 webserver maldet(30586): {scan} scan report saved, to view run: maldet --report 240705-0657.30586 Jul 06 2024 06:57:52 webserver maldet(31369): {update} checking for available updates... Jul 06 2024 06:57:52 webserver maldet(31369): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Jul 06 2024 06:57:52 webserver maldet(31369): {update} hashing install files and checking against server... Jul 06 2024 06:57:52 webserver maldet(31369): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Jul 06 2024 06:57:52 webserver maldet(31369): {update} latest version already installed. Jul 06 2024 06:57:53 webserver maldet(31505): {sigup} performing signature update check... Jul 06 2024 06:57:53 webserver maldet(31505): {sigup} local signature set is version 202407042224247 Jul 06 2024 06:57:53 webserver maldet(31505): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Jul 06 2024 06:57:53 webserver maldet(31505): {sigup} latest signature set already installed Jul 06 2024 06:57:54 webserver maldet(31619): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Jul 06 2024 06:57:54 webserver maldet(31619): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Jul 06 2024 06:57:54 webserver maldet(31619): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Jul 06 2024 06:57:54 webserver maldet(31619): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Jul 06 2024 06:57:54 webserver maldet(31619): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Jul 06 2024 07:07:09 webserver maldet(31619): {scan} file list completed in 555s, found 231 files... Jul 06 2024 07:07:10 webserver maldet(31619): {scan} found clamav binary at /usr/bin/clamscan, using clamav scanner engine... Jul 06 2024 07:07:10 webserver maldet(31619): {scan} scan of (231 files) in progress... Jul 06 2024 07:17:08 webserver maldet(31619): {scan} clamscan returned an error, check /usr/local/maldetect/logs/clamscan_log for details! Jul 06 2024 07:17:09 webserver maldet(31619): {scan} scan completed on : files 231, malware hits 0, cleaned hits 0, time 1154s Jul 06 2024 07:17:09 webserver maldet(31619): {scan} scan report saved, to view run: maldet --report 240706-0657.31619 Jul 07 2024 06:59:41 webserver maldet(897): {update} checking for available updates... Jul 07 2024 06:59:42 webserver maldet(897): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Jul 07 2024 06:59:42 webserver maldet(897): {update} hashing install files and checking against server... Jul 07 2024 06:59:42 webserver maldet(897): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Jul 07 2024 06:59:42 webserver maldet(897): {update} latest version already installed. Jul 07 2024 06:59:42 webserver maldet(1033): {sigup} performing signature update check... Jul 07 2024 06:59:42 webserver maldet(1033): {sigup} local signature set is version 202407042224247 Jul 07 2024 06:59:42 webserver maldet(1033): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Jul 07 2024 06:59:42 webserver maldet(1033): {sigup} latest signature set already installed Jul 07 2024 06:59:42 webserver maldet(1148): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Jul 07 2024 06:59:43 webserver maldet(1148): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Jul 07 2024 06:59:43 webserver maldet(1148): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Jul 07 2024 06:59:43 webserver maldet(1148): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Jul 07 2024 06:59:43 webserver maldet(1148): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Jul 07 2024 07:03:50 webserver maldet(1148): {scan} file list completed in 247s, found 232 files... Jul 07 2024 07:03:50 webserver maldet(1148): {scan} found clamav binary at /usr/bin/clamscan, using clamav scanner engine... Jul 07 2024 07:03:50 webserver maldet(1148): {scan} scan of (232 files) in progress... Jul 07 2024 07:04:19 webserver maldet(1148): {scan} clamscan returned an error, check /usr/local/maldetect/logs/clamscan_log for details! Jul 07 2024 07:04:19 webserver maldet(1148): {scan} scan completed on : files 232, malware hits 0, cleaned hits 0, time 277s Jul 07 2024 07:04:19 webserver maldet(1148): {scan} scan report saved, to view run: maldet --report 240707-0659.1148 Jul 08 2024 06:58:00 webserver maldet(28486): {update} checking for available updates... Jul 08 2024 06:58:00 webserver maldet(28486): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Jul 08 2024 06:58:00 webserver maldet(28486): {update} hashing install files and checking against server... Jul 08 2024 06:58:00 webserver maldet(28486): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Jul 08 2024 06:58:00 webserver maldet(28486): {update} latest version already installed. Jul 08 2024 06:58:00 webserver maldet(28622): {sigup} performing signature update check... Jul 08 2024 06:58:00 webserver maldet(28622): {sigup} local signature set is version 202407042224247 Jul 08 2024 06:58:00 webserver maldet(28622): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Jul 08 2024 06:58:01 webserver maldet(28622): {sigup} new signature set 202407072976550 available Jul 08 2024 06:58:01 webserver maldet(28622): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Jul 08 2024 06:58:01 webserver maldet(28622): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Jul 08 2024 06:58:01 webserver maldet(28622): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Jul 08 2024 06:58:01 webserver maldet(28622): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Jul 08 2024 06:58:01 webserver maldet(28622): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Jul 08 2024 06:58:01 webserver maldet(28622): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Jul 08 2024 06:58:01 webserver maldet(28622): {sigup} verified md5sum of maldet-sigpack.tgz Jul 08 2024 06:58:02 webserver maldet(28622): {sigup} unpacked and installed maldet-sigpack.tgz Jul 08 2024 06:58:02 webserver maldet(28622): {sigup} verified md5sum of maldet-clean.tgz Jul 08 2024 06:58:02 webserver maldet(28622): {sigup} unpacked and installed maldet-clean.tgz Jul 08 2024 06:58:02 webserver maldet(28622): {sigup} signature set update completed Jul 08 2024 06:58:02 webserver maldet(28622): {sigup} 17638 signatures (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Jul 08 2024 06:58:02 webserver maldet(28853): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Jul 08 2024 06:58:02 webserver maldet(28853): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Jul 08 2024 06:58:02 webserver maldet(28853): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Jul 08 2024 06:58:02 webserver maldet(28853): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Jul 08 2024 06:58:02 webserver maldet(28853): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Jul 08 2024 07:01:27 webserver maldet(28853): {scan} file list completed in 205s, found 231 files... Jul 08 2024 07:01:27 webserver maldet(28853): {scan} found clamav binary at /usr/bin/clamscan, using clamav scanner engine... Jul 08 2024 07:01:27 webserver maldet(28853): {scan} scan of (231 files) in progress... Jul 08 2024 07:01:56 webserver maldet(28853): {scan} clamscan returned an error, check /usr/local/maldetect/logs/clamscan_log for details! Jul 08 2024 07:01:56 webserver maldet(28853): {scan} scan completed on : files 231, malware hits 0, cleaned hits 0, time 234s Jul 08 2024 07:01:56 webserver maldet(28853): {scan} scan report saved, to view run: maldet --report 240708-0658.28853 Jul 09 2024 06:56:55 webserver maldet(26181): {update} checking for available updates... Jul 09 2024 06:56:55 webserver maldet(26181): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Jul 09 2024 06:56:55 webserver maldet(26181): {update} hashing install files and checking against server... Jul 09 2024 06:56:55 webserver maldet(26181): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Jul 09 2024 06:56:55 webserver maldet(26181): {update} latest version already installed. Jul 09 2024 06:56:55 webserver maldet(26317): {sigup} performing signature update check... Jul 09 2024 06:56:55 webserver maldet(26317): {sigup} local signature set is version 202407072976550 Jul 09 2024 06:56:55 webserver maldet(26317): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Jul 09 2024 06:56:56 webserver maldet(26317): {sigup} latest signature set already installed Jul 09 2024 06:56:56 webserver maldet(26432): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Jul 09 2024 06:56:56 webserver maldet(26432): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Jul 09 2024 06:56:56 webserver maldet(26432): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Jul 09 2024 06:56:56 webserver maldet(26432): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Jul 09 2024 06:56:56 webserver maldet(26432): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Jul 09 2024 06:59:41 webserver maldet(26432): {scan} file list completed in 165s, found 308 files... Jul 09 2024 06:59:41 webserver maldet(26432): {scan} found clamav binary at /usr/bin/clamscan, using clamav scanner engine... Jul 09 2024 06:59:41 webserver maldet(26432): {scan} scan of (308 files) in progress... Jul 09 2024 07:00:16 webserver maldet(26432): {scan} clamscan returned an error, check /usr/local/maldetect/logs/clamscan_log for details! Jul 09 2024 07:00:16 webserver maldet(26432): {scan} scan completed on : files 308, malware hits 0, cleaned hits 0, time 200s Jul 09 2024 07:00:16 webserver maldet(26432): {scan} scan report saved, to view run: maldet --report 240709-0656.26432 Jul 10 2024 06:58:25 webserver maldet(23241): {update} checking for available updates... Jul 10 2024 06:58:25 webserver maldet(23241): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Jul 10 2024 06:58:25 webserver maldet(23241): {update} hashing install files and checking against server... Jul 10 2024 06:58:25 webserver maldet(23241): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Jul 10 2024 06:58:25 webserver maldet(23241): {update} latest version already installed. Jul 10 2024 06:58:26 webserver maldet(23377): {sigup} performing signature update check... Jul 10 2024 06:58:26 webserver maldet(23377): {sigup} local signature set is version 202407072976550 Jul 10 2024 06:58:26 webserver maldet(23377): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Jul 10 2024 06:58:26 webserver maldet(23377): {sigup} latest signature set already installed Jul 10 2024 06:58:26 webserver maldet(23492): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Jul 10 2024 06:58:27 webserver maldet(23492): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Jul 10 2024 06:58:27 webserver maldet(23492): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Jul 10 2024 06:58:27 webserver maldet(23492): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Jul 10 2024 06:58:27 webserver maldet(23492): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Jul 10 2024 07:10:31 webserver maldet(23492): {scan} file list completed in 724s, found 1254 files... Jul 10 2024 07:10:31 webserver maldet(23492): {scan} found clamav binary at /usr/bin/clamscan, using clamav scanner engine... Jul 10 2024 07:10:31 webserver maldet(23492): {scan} scan of (1254 files) in progress... Jul 10 2024 07:11:37 webserver maldet(23492): {scan} clamscan returned an error, check /usr/local/maldetect/logs/clamscan_log for details! Jul 10 2024 07:11:37 webserver maldet(23492): {scan} scan completed on : files 1254, malware hits 0, cleaned hits 0, time 791s Jul 10 2024 07:11:37 webserver maldet(23492): {scan} scan report saved, to view run: maldet --report 240710-0658.23492 Jul 11 2024 06:58:44 webserver maldet(21595): {update} checking for available updates... Jul 11 2024 06:58:44 webserver maldet(21595): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Jul 11 2024 06:58:44 webserver maldet(21595): {update} hashing install files and checking against server... Jul 11 2024 06:58:44 webserver maldet(21595): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Jul 11 2024 06:58:44 webserver maldet(21595): {update} latest version already installed. Jul 11 2024 06:58:44 webserver maldet(21731): {sigup} performing signature update check... Jul 11 2024 06:58:44 webserver maldet(21731): {sigup} local signature set is version 202407072976550 Jul 11 2024 06:58:44 webserver maldet(21731): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Jul 11 2024 06:58:44 webserver maldet(21731): {sigup} new signature set 202407103729275 available Jul 11 2024 06:58:44 webserver maldet(21731): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Jul 11 2024 06:58:44 webserver maldet(21731): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Jul 11 2024 06:58:45 webserver maldet(21731): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Jul 11 2024 06:58:45 webserver maldet(21731): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Jul 11 2024 06:58:45 webserver maldet(21731): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Jul 11 2024 06:58:45 webserver maldet(21731): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Jul 11 2024 06:58:45 webserver maldet(21731): {sigup} verified md5sum of maldet-sigpack.tgz Jul 11 2024 06:58:45 webserver maldet(21731): {sigup} unpacked and installed maldet-sigpack.tgz Jul 11 2024 06:58:45 webserver maldet(21731): {sigup} verified md5sum of maldet-clean.tgz Jul 11 2024 06:58:45 webserver maldet(21731): {sigup} unpacked and installed maldet-clean.tgz Jul 11 2024 06:58:45 webserver maldet(21731): {sigup} signature set update completed Jul 11 2024 06:58:45 webserver maldet(21731): {sigup} 17638 signatures (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Jul 11 2024 06:58:45 webserver maldet(21962): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Jul 11 2024 06:58:45 webserver maldet(21962): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Jul 11 2024 06:58:45 webserver maldet(21962): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Jul 11 2024 06:58:45 webserver maldet(21962): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Jul 11 2024 06:58:45 webserver maldet(21962): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Jul 11 2024 07:01:59 webserver maldet(21962): {scan} file list completed in 194s, found 278 files... Jul 11 2024 07:01:59 webserver maldet(21962): {scan} found clamav binary at /usr/bin/clamscan, using clamav scanner engine... Jul 11 2024 07:01:59 webserver maldet(21962): {scan} scan of (278 files) in progress... Jul 11 2024 07:02:43 webserver maldet(21962): {scan} clamscan returned an error, check /usr/local/maldetect/logs/clamscan_log for details! Jul 11 2024 07:02:43 webserver maldet(21962): {scan} scan completed on : files 278, malware hits 0, cleaned hits 0, time 238s Jul 11 2024 07:02:43 webserver maldet(21962): {scan} scan report saved, to view run: maldet --report 240711-0658.21962 Jul 12 2024 06:56:52 webserver maldet(752): {update} checking for available updates... Jul 12 2024 06:56:52 webserver maldet(752): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Jul 12 2024 06:56:52 webserver maldet(752): {update} hashing install files and checking against server... Jul 12 2024 06:56:53 webserver maldet(752): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Jul 12 2024 06:56:53 webserver maldet(752): {update} latest version already installed. Jul 12 2024 06:56:53 webserver maldet(891): {sigup} performing signature update check... Jul 12 2024 06:56:53 webserver maldet(891): {sigup} local signature set is version 202407103729275 Jul 12 2024 06:56:53 webserver maldet(891): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Jul 12 2024 06:56:53 webserver maldet(891): {sigup} latest signature set already installed Jul 12 2024 06:56:53 webserver maldet(1006): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Jul 12 2024 06:56:53 webserver maldet(1006): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Jul 12 2024 06:56:53 webserver maldet(1006): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Jul 12 2024 06:56:53 webserver maldet(1006): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Jul 12 2024 06:56:53 webserver maldet(1006): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Jul 12 2024 06:59:14 webserver maldet(1006): {scan} file list completed in 141s, found 616 files... Jul 12 2024 06:59:14 webserver maldet(1006): {scan} found clamav binary at /usr/bin/clamscan, using clamav scanner engine... Jul 12 2024 06:59:14 webserver maldet(1006): {scan} scan of (616 files) in progress... Jul 12 2024 06:59:48 webserver maldet(1006): {scan} clamscan returned an error, check /usr/local/maldetect/logs/clamscan_log for details! Jul 12 2024 06:59:48 webserver maldet(1006): {scan} scan completed on : files 616, malware hits 0, cleaned hits 0, time 175s Jul 12 2024 06:59:48 webserver maldet(1006): {scan} scan report saved, to view run: maldet --report 240712-0656.1006 Jul 13 2024 06:58:35 webserver maldet(30520): {update} checking for available updates... Jul 13 2024 06:58:35 webserver maldet(30520): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Jul 13 2024 06:58:35 webserver maldet(30520): {update} hashing install files and checking against server... Jul 13 2024 06:58:35 webserver maldet(30520): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Jul 13 2024 06:58:36 webserver maldet(30520): {update} latest version already installed. Jul 13 2024 06:58:36 webserver maldet(30656): {sigup} performing signature update check... Jul 13 2024 06:58:36 webserver maldet(30656): {sigup} local signature set is version 202407103729275 Jul 13 2024 06:58:36 webserver maldet(30656): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Jul 13 2024 06:58:36 webserver maldet(30656): {sigup} latest signature set already installed Jul 13 2024 06:58:36 webserver maldet(30771): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Jul 13 2024 06:58:36 webserver maldet(30771): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Jul 13 2024 06:58:36 webserver maldet(30771): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Jul 13 2024 06:58:36 webserver maldet(30771): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Jul 13 2024 06:58:36 webserver maldet(30771): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Jul 13 2024 07:00:25 webserver maldet(30771): {scan} file list completed in 109s, found 244 files... Jul 13 2024 07:00:25 webserver maldet(30771): {scan} found clamav binary at /usr/bin/clamscan, using clamav scanner engine... Jul 13 2024 07:00:25 webserver maldet(30771): {scan} scan of (244 files) in progress... Jul 13 2024 07:00:52 webserver maldet(30771): {scan} clamscan returned an error, check /usr/local/maldetect/logs/clamscan_log for details! Jul 13 2024 07:00:52 webserver maldet(30771): {scan} scan completed on : files 244, malware hits 0, cleaned hits 0, time 136s Jul 13 2024 07:00:52 webserver maldet(30771): {scan} scan report saved, to view run: maldet --report 240713-0658.30771 Jul 14 2024 07:03:03 webserver maldet(26901): {update} checking for available updates... Jul 14 2024 07:03:03 webserver maldet(26901): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Jul 14 2024 07:03:03 webserver maldet(26901): {update} hashing install files and checking against server... Jul 14 2024 07:03:03 webserver maldet(26901): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Jul 14 2024 07:03:03 webserver maldet(26901): {update} latest version already installed. Jul 14 2024 07:03:03 webserver maldet(27037): {sigup} performing signature update check... Jul 14 2024 07:03:03 webserver maldet(27037): {sigup} local signature set is version 202407103729275 Jul 14 2024 07:03:03 webserver maldet(27037): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Jul 14 2024 07:03:03 webserver maldet(27037): {sigup} latest signature set already installed Jul 14 2024 07:03:03 webserver maldet(27152): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Jul 14 2024 07:03:04 webserver maldet(27152): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Jul 14 2024 07:03:04 webserver maldet(27152): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Jul 14 2024 07:03:04 webserver maldet(27152): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Jul 14 2024 07:03:04 webserver maldet(27152): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Jul 14 2024 07:05:17 webserver maldet(27152): {scan} file list completed in 133s, found 262 files... Jul 14 2024 07:05:17 webserver maldet(27152): {scan} found clamav binary at /usr/bin/clamscan, using clamav scanner engine... Jul 14 2024 07:05:17 webserver maldet(27152): {scan} scan of (262 files) in progress... Jul 14 2024 07:05:46 webserver maldet(27152): {scan} clamscan returned an error, check /usr/local/maldetect/logs/clamscan_log for details! Jul 14 2024 07:05:46 webserver maldet(27152): {scan} scan completed on : files 262, malware hits 0, cleaned hits 0, time 163s Jul 14 2024 07:05:46 webserver maldet(27152): {scan} scan report saved, to view run: maldet --report 240714-0703.27152 Jul 15 2024 06:56:37 webserver maldet(1637): {update} checking for available updates... Jul 15 2024 06:56:37 webserver maldet(1637): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Jul 15 2024 06:56:37 webserver maldet(1637): {update} hashing install files and checking against server... Jul 15 2024 06:56:37 webserver maldet(1637): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Jul 15 2024 06:56:37 webserver maldet(1637): {update} latest version already installed. Jul 15 2024 06:56:37 webserver maldet(1774): {sigup} performing signature update check... Jul 15 2024 06:56:37 webserver maldet(1774): {sigup} local signature set is version 202407103729275 Jul 15 2024 06:56:37 webserver maldet(1774): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Jul 15 2024 06:56:37 webserver maldet(1774): {sigup} latest signature set already installed Jul 15 2024 06:56:37 webserver maldet(1890): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Jul 15 2024 06:56:38 webserver maldet(1890): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Jul 15 2024 06:56:38 webserver maldet(1890): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Jul 15 2024 06:56:38 webserver maldet(1890): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Jul 15 2024 06:56:38 webserver maldet(1890): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Jul 15 2024 06:59:57 webserver maldet(1890): {scan} file list completed in 199s, found 235 files... Jul 15 2024 06:59:57 webserver maldet(1890): {scan} found clamav binary at /usr/bin/clamscan, using clamav scanner engine... Jul 15 2024 06:59:57 webserver maldet(1890): {scan} scan of (235 files) in progress... Jul 15 2024 07:00:25 webserver maldet(1890): {scan} clamscan returned an error, check /usr/local/maldetect/logs/clamscan_log for details! Jul 15 2024 07:00:25 webserver maldet(1890): {scan} scan completed on : files 235, malware hits 0, cleaned hits 0, time 228s Jul 15 2024 07:00:25 webserver maldet(1890): {scan} scan report saved, to view run: maldet --report 240715-0656.1890 Jul 16 2024 06:58:11 webserver maldet(2009): {update} checking for available updates... Jul 16 2024 06:58:11 webserver maldet(2009): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Jul 16 2024 06:58:11 webserver maldet(2009): {update} hashing install files and checking against server... Jul 16 2024 06:58:11 webserver maldet(2009): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Jul 16 2024 06:58:11 webserver maldet(2009): {update} latest version already installed. Jul 16 2024 06:58:12 webserver maldet(2145): {sigup} performing signature update check... Jul 16 2024 06:58:12 webserver maldet(2145): {sigup} local signature set is version 202407103729275 Jul 16 2024 06:58:12 webserver maldet(2145): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Jul 16 2024 06:58:12 webserver maldet(2145): {sigup} latest signature set already installed Jul 16 2024 06:58:12 webserver maldet(2259): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Jul 16 2024 06:58:12 webserver maldet(2259): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Jul 16 2024 06:58:12 webserver maldet(2259): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Jul 16 2024 06:58:12 webserver maldet(2259): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Jul 16 2024 06:58:12 webserver maldet(2259): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Jul 16 2024 07:01:41 webserver maldet(2259): {scan} file list completed in 209s, found 254 files... Jul 16 2024 07:01:41 webserver maldet(2259): {scan} found clamav binary at /usr/bin/clamscan, using clamav scanner engine... Jul 16 2024 07:01:41 webserver maldet(2259): {scan} scan of (254 files) in progress... Jul 16 2024 07:02:14 webserver maldet(2259): {scan} clamscan returned an error, check /usr/local/maldetect/logs/clamscan_log for details! Jul 16 2024 07:02:14 webserver maldet(2259): {scan} scan completed on : files 254, malware hits 0, cleaned hits 0, time 242s Jul 16 2024 07:02:14 webserver maldet(2259): {scan} scan report saved, to view run: maldet --report 240716-0658.2259 Jul 17 2024 07:07:40 webserver maldet(5569): {update} checking for available updates... Jul 17 2024 07:07:40 webserver maldet(5569): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Jul 17 2024 07:07:40 webserver maldet(5569): {update} hashing install files and checking against server... Jul 17 2024 07:07:40 webserver maldet(5569): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Jul 17 2024 07:07:40 webserver maldet(5569): {update} latest version already installed. Jul 17 2024 07:07:41 webserver maldet(5705): {sigup} performing signature update check... Jul 17 2024 07:07:41 webserver maldet(5705): {sigup} local signature set is version 202407103729275 Jul 17 2024 07:07:41 webserver maldet(5705): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Jul 17 2024 07:07:41 webserver maldet(5705): {sigup} new signature set 20240716630849 available Jul 17 2024 07:07:41 webserver maldet(5705): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Jul 17 2024 07:07:41 webserver maldet(5705): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Jul 17 2024 07:07:41 webserver maldet(5705): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Jul 17 2024 07:07:41 webserver maldet(5705): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Jul 17 2024 07:07:41 webserver maldet(5705): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Jul 17 2024 07:07:41 webserver maldet(5705): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Jul 17 2024 07:07:41 webserver maldet(5705): {sigup} verified md5sum of maldet-sigpack.tgz Jul 17 2024 07:07:41 webserver maldet(5705): {sigup} unpacked and installed maldet-sigpack.tgz Jul 17 2024 07:07:41 webserver maldet(5705): {sigup} verified md5sum of maldet-clean.tgz Jul 17 2024 07:07:41 webserver maldet(5705): {sigup} unpacked and installed maldet-clean.tgz Jul 17 2024 07:07:41 webserver maldet(5705): {sigup} signature set update completed Jul 17 2024 07:07:41 webserver maldet(5705): {sigup} 17638 signatures (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Jul 17 2024 07:07:41 webserver maldet(5936): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Jul 17 2024 07:07:41 webserver maldet(5936): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Jul 17 2024 07:07:41 webserver maldet(5936): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Jul 17 2024 07:07:41 webserver maldet(5936): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Jul 17 2024 07:07:41 webserver maldet(5936): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Jul 17 2024 07:09:56 webserver maldet(5936): {scan} file list completed in 135s, found 1201 files... Jul 17 2024 07:09:56 webserver maldet(5936): {scan} found clamav binary at /usr/bin/clamscan, using clamav scanner engine... Jul 17 2024 07:09:56 webserver maldet(5936): {scan} scan of (1201 files) in progress... Jul 17 2024 07:10:53 webserver maldet(5936): {scan} clamscan returned an error, check /usr/local/maldetect/logs/clamscan_log for details! Jul 17 2024 07:10:53 webserver maldet(5936): {scan} scan completed on : files 1201, malware hits 0, cleaned hits 0, time 192s Jul 17 2024 07:10:53 webserver maldet(5936): {scan} scan report saved, to view run: maldet --report 240717-0707.5936 Jul 18 2024 07:09:03 webserver maldet(29578): {update} checking for available updates... Jul 18 2024 07:09:03 webserver maldet(29578): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Jul 18 2024 07:09:03 webserver maldet(29578): {update} hashing install files and checking against server... Jul 18 2024 07:09:03 webserver maldet(29578): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Jul 18 2024 07:09:03 webserver maldet(29578): {update} latest version already installed. Jul 18 2024 07:09:03 webserver maldet(29716): {sigup} performing signature update check... Jul 18 2024 07:09:03 webserver maldet(29716): {sigup} local signature set is version 20240716630849 Jul 18 2024 07:09:03 webserver maldet(29716): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Jul 18 2024 07:09:04 webserver maldet(29716): {sigup} latest signature set already installed Jul 18 2024 07:09:04 webserver maldet(29871): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Jul 18 2024 07:09:05 webserver maldet(29871): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Jul 18 2024 07:09:05 webserver maldet(29871): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Jul 18 2024 07:09:05 webserver maldet(29871): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Jul 18 2024 07:09:05 webserver maldet(29871): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Jul 18 2024 07:21:44 webserver maldet(29871): {scan} file list completed in 758s, found 50 files... Jul 18 2024 07:21:44 webserver maldet(29871): {scan} found clamav binary at /usr/bin/clamscan, using clamav scanner engine... Jul 18 2024 07:21:44 webserver maldet(29871): {scan} scan of (50 files) in progress... Jul 18 2024 07:22:09 webserver maldet(29871): {scan} clamscan returned an error, check /usr/local/maldetect/logs/clamscan_log for details! Jul 18 2024 07:22:09 webserver maldet(29871): {scan} scan completed on : files 50, malware hits 0, cleaned hits 0, time 785s Jul 18 2024 07:22:09 webserver maldet(29871): {scan} scan report saved, to view run: maldet --report 240718-0709.29871 Jul 19 2024 06:56:47 webserver maldet(6039): {update} checking for available updates... Jul 19 2024 06:56:47 webserver maldet(6039): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Jul 19 2024 06:56:47 webserver maldet(6039): {update} hashing install files and checking against server... Jul 19 2024 06:56:47 webserver maldet(6039): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Jul 19 2024 06:56:47 webserver maldet(6039): {update} latest version already installed. Jul 19 2024 06:56:47 webserver maldet(6175): {sigup} performing signature update check... Jul 19 2024 06:56:47 webserver maldet(6175): {sigup} local signature set is version 20240716630849 Jul 19 2024 06:56:47 webserver maldet(6175): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Jul 19 2024 06:56:47 webserver maldet(6175): {sigup} latest signature set already installed Jul 19 2024 06:56:48 webserver maldet(6290): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Jul 19 2024 06:56:48 webserver maldet(6290): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Jul 19 2024 06:56:48 webserver maldet(6290): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Jul 19 2024 06:56:48 webserver maldet(6290): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Jul 19 2024 06:56:48 webserver maldet(6290): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Jul 19 2024 06:59:25 webserver maldet(6290): {scan} file list completed in 157s, found 141 files... Jul 19 2024 06:59:25 webserver maldet(6290): {scan} found clamav binary at /usr/bin/clamscan, using clamav scanner engine... Jul 19 2024 06:59:25 webserver maldet(6290): {scan} scan of (141 files) in progress... Jul 19 2024 07:00:15 webserver maldet(6290): {scan} clamscan returned an error, check /usr/local/maldetect/logs/clamscan_log for details! Jul 19 2024 07:00:15 webserver maldet(6290): {scan} scan completed on : files 141, malware hits 0, cleaned hits 0, time 207s Jul 19 2024 07:00:15 webserver maldet(6290): {scan} scan report saved, to view run: maldet --report 240719-0656.6290 Jul 20 2024 07:04:27 webserver maldet(1289): {update} checking for available updates... Jul 20 2024 07:04:27 webserver maldet(1289): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Jul 20 2024 07:04:27 webserver maldet(1289): {update} hashing install files and checking against server... Jul 20 2024 07:04:27 webserver maldet(1289): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Jul 20 2024 07:04:27 webserver maldet(1289): {update} latest version already installed. Jul 20 2024 07:04:27 webserver maldet(1425): {sigup} performing signature update check... Jul 20 2024 07:04:27 webserver maldet(1425): {sigup} local signature set is version 20240716630849 Jul 20 2024 07:04:27 webserver maldet(1425): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Jul 20 2024 07:04:28 webserver maldet(1425): {sigup} new signature set 20240719566530 available Jul 20 2024 07:04:28 webserver maldet(1425): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Jul 20 2024 07:04:28 webserver maldet(1425): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Jul 20 2024 07:04:28 webserver maldet(1425): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Jul 20 2024 07:04:28 webserver maldet(1425): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Jul 20 2024 07:04:28 webserver maldet(1425): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Jul 20 2024 07:04:28 webserver maldet(1425): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Jul 20 2024 07:04:28 webserver maldet(1425): {sigup} verified md5sum of maldet-sigpack.tgz Jul 20 2024 07:04:28 webserver maldet(1425): {sigup} unpacked and installed maldet-sigpack.tgz Jul 20 2024 07:04:28 webserver maldet(1425): {sigup} verified md5sum of maldet-clean.tgz Jul 20 2024 07:04:28 webserver maldet(1425): {sigup} unpacked and installed maldet-clean.tgz Jul 20 2024 07:04:28 webserver maldet(1425): {sigup} signature set update completed Jul 20 2024 07:04:28 webserver maldet(1425): {sigup} 17638 signatures (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Jul 20 2024 07:04:28 webserver maldet(1656): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Jul 20 2024 07:04:29 webserver maldet(1656): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Jul 20 2024 07:04:29 webserver maldet(1656): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Jul 20 2024 07:04:29 webserver maldet(1656): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Jul 20 2024 07:04:29 webserver maldet(1656): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Jul 20 2024 07:07:37 webserver maldet(1656): {scan} file list completed in 188s, found 303 files... Jul 20 2024 07:07:37 webserver maldet(1656): {scan} found clamav binary at /usr/bin/clamscan, using clamav scanner engine... Jul 20 2024 07:07:37 webserver maldet(1656): {scan} scan of (303 files) in progress... Jul 20 2024 07:08:06 webserver maldet(1656): {scan} clamscan returned an error, check /usr/local/maldetect/logs/clamscan_log for details! Jul 20 2024 07:08:06 webserver maldet(1656): {scan} scan completed on : files 303, malware hits 0, cleaned hits 0, time 218s Jul 20 2024 07:08:06 webserver maldet(1656): {scan} scan report saved, to view run: maldet --report 240720-0704.1656 Jul 21 2024 06:57:28 webserver maldet(28629): {update} checking for available updates... Jul 21 2024 06:57:28 webserver maldet(28629): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Jul 21 2024 06:57:28 webserver maldet(28629): {update} hashing install files and checking against server... Jul 21 2024 06:57:28 webserver maldet(28629): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Jul 21 2024 06:57:28 webserver maldet(28629): {update} latest version already installed. Jul 21 2024 06:57:28 webserver maldet(28765): {sigup} performing signature update check... Jul 21 2024 06:57:28 webserver maldet(28765): {sigup} local signature set is version 20240719566530 Jul 21 2024 06:57:28 webserver maldet(28765): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Jul 21 2024 06:57:28 webserver maldet(28765): {sigup} latest signature set already installed Jul 21 2024 06:57:28 webserver maldet(28880): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Jul 21 2024 06:57:28 webserver maldet(28880): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Jul 21 2024 06:57:28 webserver maldet(28880): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Jul 21 2024 06:57:28 webserver maldet(28880): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Jul 21 2024 06:57:28 webserver maldet(28880): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Jul 21 2024 06:59:19 webserver maldet(28880): {scan} file list completed in 111s, found 30 files... Jul 21 2024 06:59:19 webserver maldet(28880): {scan} found clamav binary at /usr/bin/clamscan, using clamav scanner engine... Jul 21 2024 06:59:19 webserver maldet(28880): {scan} scan of (30 files) in progress... Jul 21 2024 06:59:44 webserver maldet(28880): {scan} clamscan returned an error, check /usr/local/maldetect/logs/clamscan_log for details! Jul 21 2024 06:59:45 webserver maldet(28880): {scan} scan completed on : files 30, malware hits 0, cleaned hits 0, time 136s Jul 21 2024 06:59:45 webserver maldet(28880): {scan} scan report saved, to view run: maldet --report 240721-0657.28880 Jul 22 2024 06:59:26 webserver maldet(18361): {update} checking for available updates... Jul 22 2024 06:59:27 webserver maldet(18361): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Jul 22 2024 06:59:27 webserver maldet(18361): {update} hashing install files and checking against server... Jul 22 2024 06:59:27 webserver maldet(18361): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Jul 22 2024 06:59:27 webserver maldet(18361): {update} latest version already installed. Jul 22 2024 06:59:27 webserver maldet(18497): {sigup} performing signature update check... Jul 22 2024 06:59:27 webserver maldet(18497): {sigup} local signature set is version 20240719566530 Jul 22 2024 06:59:27 webserver maldet(18497): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Jul 22 2024 06:59:27 webserver maldet(18497): {sigup} new signature set 202407221321576 available Jul 22 2024 06:59:27 webserver maldet(18497): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Jul 22 2024 06:59:27 webserver maldet(18497): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Jul 22 2024 06:59:27 webserver maldet(18497): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Jul 22 2024 06:59:27 webserver maldet(18497): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Jul 22 2024 06:59:27 webserver maldet(18497): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Jul 22 2024 06:59:27 webserver maldet(18497): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Jul 22 2024 06:59:27 webserver maldet(18497): {sigup} verified md5sum of maldet-sigpack.tgz Jul 22 2024 06:59:27 webserver maldet(18497): {sigup} unpacked and installed maldet-sigpack.tgz Jul 22 2024 06:59:27 webserver maldet(18497): {sigup} verified md5sum of maldet-clean.tgz Jul 22 2024 06:59:27 webserver maldet(18497): {sigup} unpacked and installed maldet-clean.tgz Jul 22 2024 06:59:27 webserver maldet(18497): {sigup} signature set update completed Jul 22 2024 06:59:27 webserver maldet(18497): {sigup} 17638 signatures (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Jul 22 2024 06:59:27 webserver maldet(18729): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Jul 22 2024 06:59:28 webserver maldet(18729): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Jul 22 2024 06:59:28 webserver maldet(18729): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Jul 22 2024 06:59:28 webserver maldet(18729): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Jul 22 2024 06:59:28 webserver maldet(18729): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Jul 22 2024 07:12:33 webserver maldet(18729): {scan} file list completed in 785s, found 216 files... Jul 22 2024 07:12:33 webserver maldet(18729): {scan} found clamav binary at /usr/bin/clamscan, using clamav scanner engine... Jul 22 2024 07:12:33 webserver maldet(18729): {scan} scan of (216 files) in progress... Jul 22 2024 07:13:16 webserver maldet(18729): {scan} clamscan returned an error, check /usr/local/maldetect/logs/clamscan_log for details! Jul 22 2024 07:13:17 webserver maldet(18729): {scan} scan completed on : files 216, malware hits 0, cleaned hits 0, time 830s Jul 22 2024 07:13:17 webserver maldet(18729): {scan} scan report saved, to view run: maldet --report 240722-0659.18729 Jul 23 2024 06:57:49 webserver maldet(3972): {update} checking for available updates... Jul 23 2024 06:57:49 webserver maldet(3972): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Jul 23 2024 06:57:49 webserver maldet(3972): {update} hashing install files and checking against server... Jul 23 2024 06:57:49 webserver maldet(3972): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Jul 23 2024 06:57:49 webserver maldet(3972): {update} latest version already installed. Jul 23 2024 06:57:49 webserver maldet(4108): {sigup} performing signature update check... Jul 23 2024 06:57:49 webserver maldet(4108): {sigup} local signature set is version 20240719566530 Jul 23 2024 06:57:49 webserver maldet(4108): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Jul 23 2024 06:57:49 webserver maldet(4108): {sigup} new signature set 202407221321576 available Jul 23 2024 06:57:49 webserver maldet(4108): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Jul 23 2024 06:57:49 webserver maldet(4108): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Jul 23 2024 06:57:49 webserver maldet(4108): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Jul 23 2024 06:57:49 webserver maldet(4108): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Jul 23 2024 06:57:49 webserver maldet(4108): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Jul 23 2024 06:57:49 webserver maldet(4108): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Jul 23 2024 06:57:49 webserver maldet(4108): {sigup} verified md5sum of maldet-sigpack.tgz Jul 23 2024 06:57:50 webserver maldet(4108): {sigup} unpacked and installed maldet-sigpack.tgz Jul 23 2024 06:57:50 webserver maldet(4108): {sigup} verified md5sum of maldet-clean.tgz Jul 23 2024 06:57:50 webserver maldet(4108): {sigup} unpacked and installed maldet-clean.tgz Jul 23 2024 06:57:50 webserver maldet(4108): {sigup} signature set update completed Jul 23 2024 06:57:50 webserver maldet(4108): {sigup} 17638 signatures (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Jul 23 2024 06:57:50 webserver maldet(4339): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Jul 23 2024 06:57:50 webserver maldet(4339): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Jul 23 2024 06:57:50 webserver maldet(4339): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Jul 23 2024 06:57:50 webserver maldet(4339): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Jul 23 2024 06:57:50 webserver maldet(4339): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Jul 23 2024 07:01:13 webserver maldet(4339): {scan} file list completed in 203s, found 423 files... Jul 23 2024 07:01:13 webserver maldet(4339): {scan} found clamav binary at /usr/bin/clamscan, using clamav scanner engine... Jul 23 2024 07:01:13 webserver maldet(4339): {scan} scan of (423 files) in progress... Jul 23 2024 07:01:43 webserver maldet(4339): {scan} clamscan returned an error, check /usr/local/maldetect/logs/clamscan_log for details! Jul 23 2024 07:01:43 webserver maldet(4339): {scan} scan completed on : files 423, malware hits 0, cleaned hits 0, time 233s Jul 23 2024 07:01:43 webserver maldet(4339): {scan} scan report saved, to view run: maldet --report 240723-0657.4339 Jul 24 2024 07:06:45 webserver maldet(23440): {update} checking for available updates... Jul 24 2024 07:06:45 webserver maldet(23440): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Jul 24 2024 07:06:45 webserver maldet(23440): {update} hashing install files and checking against server... Jul 24 2024 07:06:45 webserver maldet(23440): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Jul 24 2024 07:06:45 webserver maldet(23440): {update} latest version already installed. Jul 24 2024 07:06:45 webserver maldet(23576): {sigup} performing signature update check... Jul 24 2024 07:06:45 webserver maldet(23576): {sigup} local signature set is version 202407221321576 Jul 24 2024 07:06:45 webserver maldet(23576): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Jul 24 2024 07:06:45 webserver maldet(23576): {sigup} latest signature set already installed Jul 24 2024 07:06:45 webserver maldet(23691): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Jul 24 2024 07:06:46 webserver maldet(23691): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Jul 24 2024 07:06:46 webserver maldet(23691): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Jul 24 2024 07:06:46 webserver maldet(23691): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Jul 24 2024 07:06:46 webserver maldet(23691): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Jul 24 2024 07:07:29 webserver maldet(23691): {scan} file list completed in 43s, found 274 files... Jul 24 2024 07:07:29 webserver maldet(23691): {scan} found clamav binary at /usr/bin/clamscan, using clamav scanner engine... Jul 24 2024 07:07:29 webserver maldet(23691): {scan} scan of (274 files) in progress... Jul 24 2024 07:08:02 webserver maldet(23691): {scan} clamscan returned an error, check /usr/local/maldetect/logs/clamscan_log for details! Jul 24 2024 07:08:02 webserver maldet(23691): {scan} scan completed on : files 274, malware hits 0, cleaned hits 0, time 77s Jul 24 2024 07:08:02 webserver maldet(23691): {scan} scan report saved, to view run: maldet --report 240724-0706.23691 Jul 25 2024 06:55:58 webserver maldet(13408): {update} checking for available updates... Jul 25 2024 06:55:58 webserver maldet(13408): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Jul 25 2024 06:55:59 webserver maldet(13408): {update} hashing install files and checking against server... Jul 25 2024 06:55:59 webserver maldet(13408): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Jul 25 2024 06:55:59 webserver maldet(13408): {update} latest version already installed. Jul 25 2024 06:55:59 webserver maldet(13545): {sigup} performing signature update check... Jul 25 2024 06:55:59 webserver maldet(13545): {sigup} local signature set is version 202407221321576 Jul 25 2024 06:55:59 webserver maldet(13545): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Jul 25 2024 06:55:59 webserver maldet(13545): {sigup} new signature set 202407252077283 available Jul 25 2024 06:55:59 webserver maldet(13545): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Jul 25 2024 06:55:59 webserver maldet(13545): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Jul 25 2024 06:55:59 webserver maldet(13545): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Jul 25 2024 06:55:59 webserver maldet(13545): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Jul 25 2024 06:55:59 webserver maldet(13545): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Jul 25 2024 06:55:59 webserver maldet(13545): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Jul 25 2024 06:55:59 webserver maldet(13545): {sigup} verified md5sum of maldet-sigpack.tgz Jul 25 2024 06:55:59 webserver maldet(13545): {sigup} unpacked and installed maldet-sigpack.tgz Jul 25 2024 06:55:59 webserver maldet(13545): {sigup} verified md5sum of maldet-clean.tgz Jul 25 2024 06:55:59 webserver maldet(13545): {sigup} unpacked and installed maldet-clean.tgz Jul 25 2024 06:55:59 webserver maldet(13545): {sigup} signature set update completed Jul 25 2024 06:55:59 webserver maldet(13545): {sigup} 17638 signatures (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Jul 25 2024 06:55:59 webserver maldet(13776): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Jul 25 2024 06:55:59 webserver maldet(13776): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Jul 25 2024 06:55:59 webserver maldet(13776): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Jul 25 2024 06:56:00 webserver maldet(13776): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Jul 25 2024 06:56:00 webserver maldet(13776): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Jul 25 2024 06:56:20 webserver maldet(13776): {scan} file list completed in 20s, found 396 files... Jul 25 2024 06:56:20 webserver maldet(13776): {scan} found clamav binary at /usr/bin/clamscan, using clamav scanner engine... Jul 25 2024 06:56:20 webserver maldet(13776): {scan} scan of (396 files) in progress... Jul 25 2024 06:56:50 webserver maldet(13776): {scan} clamscan returned an error, check /usr/local/maldetect/logs/clamscan_log for details! Jul 25 2024 06:56:50 webserver maldet(13776): {scan} scan completed on : files 396, malware hits 0, cleaned hits 0, time 51s Jul 25 2024 06:56:50 webserver maldet(13776): {scan} scan report saved, to view run: maldet --report 240725-0655.13776 Jul 26 2024 07:00:42 webserver maldet(1982): {update} checking for available updates... Jul 26 2024 07:00:42 webserver maldet(1982): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Jul 26 2024 07:00:42 webserver maldet(1982): {update} hashing install files and checking against server... Jul 26 2024 07:00:42 webserver maldet(1982): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Jul 26 2024 07:00:42 webserver maldet(1982): {update} latest version already installed. Jul 26 2024 07:00:42 webserver maldet(2118): {sigup} performing signature update check... Jul 26 2024 07:00:42 webserver maldet(2118): {sigup} local signature set is version 202407221321576 Jul 26 2024 07:00:42 webserver maldet(2118): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Jul 26 2024 07:00:43 webserver maldet(2118): {sigup} new signature set 202407252077283 available Jul 26 2024 07:00:43 webserver maldet(2118): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Jul 26 2024 07:00:43 webserver maldet(2118): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Jul 26 2024 07:00:43 webserver maldet(2118): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Jul 26 2024 07:00:43 webserver maldet(2118): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Jul 26 2024 07:00:43 webserver maldet(2118): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Jul 26 2024 07:00:43 webserver maldet(2118): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Jul 26 2024 07:00:43 webserver maldet(2118): {sigup} verified md5sum of maldet-sigpack.tgz Jul 26 2024 07:00:43 webserver maldet(2118): {sigup} unpacked and installed maldet-sigpack.tgz Jul 26 2024 07:00:43 webserver maldet(2118): {sigup} verified md5sum of maldet-clean.tgz Jul 26 2024 07:00:43 webserver maldet(2118): {sigup} unpacked and installed maldet-clean.tgz Jul 26 2024 07:00:43 webserver maldet(2118): {sigup} signature set update completed Jul 26 2024 07:00:43 webserver maldet(2118): {sigup} 17638 signatures (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Jul 26 2024 07:00:43 webserver maldet(2350): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Jul 26 2024 07:00:43 webserver maldet(2350): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Jul 26 2024 07:00:43 webserver maldet(2350): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Jul 26 2024 07:00:43 webserver maldet(2350): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Jul 26 2024 07:00:43 webserver maldet(2350): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Jul 26 2024 07:03:56 webserver maldet(2350): {scan} file list completed in 193s, found 437 files... Jul 26 2024 07:03:56 webserver maldet(2350): {scan} found clamav binary at /usr/bin/clamscan, using clamav scanner engine... Jul 26 2024 07:03:56 webserver maldet(2350): {scan} scan of (437 files) in progress... Jul 26 2024 07:04:29 webserver maldet(2350): {scan} clamscan returned an error, check /usr/local/maldetect/logs/clamscan_log for details! Jul 26 2024 07:04:29 webserver maldet(2350): {scan} scan completed on : files 437, malware hits 0, cleaned hits 0, time 226s Jul 26 2024 07:04:29 webserver maldet(2350): {scan} scan report saved, to view run: maldet --report 240726-0700.2350 Jul 27 2024 07:04:43 webserver maldet(22364): {update} checking for available updates... Jul 27 2024 07:04:43 webserver maldet(22364): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Jul 27 2024 07:04:43 webserver maldet(22364): {update} hashing install files and checking against server... Jul 27 2024 07:04:43 webserver maldet(22364): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Jul 27 2024 07:04:43 webserver maldet(22364): {update} latest version already installed. Jul 27 2024 07:04:43 webserver maldet(22500): {sigup} performing signature update check... Jul 27 2024 07:04:43 webserver maldet(22500): {sigup} local signature set is version 202407252077283 Jul 27 2024 07:04:43 webserver maldet(22500): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Jul 27 2024 07:04:43 webserver maldet(22500): {sigup} latest signature set already installed Jul 27 2024 07:04:43 webserver maldet(22615): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Jul 27 2024 07:04:44 webserver maldet(22615): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Jul 27 2024 07:04:44 webserver maldet(22615): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Jul 27 2024 07:04:44 webserver maldet(22615): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Jul 27 2024 07:04:44 webserver maldet(22615): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Jul 27 2024 07:14:19 webserver maldet(22615): {scan} file list completed in 575s, found 330 files... Jul 27 2024 07:14:19 webserver maldet(22615): {scan} found clamav binary at /usr/bin/clamscan, using clamav scanner engine... Jul 27 2024 07:14:19 webserver maldet(22615): {scan} scan of (330 files) in progress... Jul 27 2024 07:15:03 webserver maldet(22615): {scan} clamscan returned an error, check /usr/local/maldetect/logs/clamscan_log for details! Jul 27 2024 07:15:03 webserver maldet(22615): {scan} scan completed on : files 330, malware hits 0, cleaned hits 0, time 620s Jul 27 2024 07:15:03 webserver maldet(22615): {scan} scan report saved, to view run: maldet --report 240727-0704.22615 Jul 28 2024 06:59:00 webserver maldet(13026): {update} checking for available updates... Jul 28 2024 06:59:01 webserver maldet(13026): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Jul 28 2024 06:59:01 webserver maldet(13026): {update} hashing install files and checking against server... Jul 28 2024 06:59:01 webserver maldet(13026): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Jul 28 2024 06:59:01 webserver maldet(13026): {update} latest version already installed. Jul 28 2024 06:59:01 webserver maldet(13162): {sigup} performing signature update check... Jul 28 2024 06:59:01 webserver maldet(13162): {sigup} local signature set is version 202407252077283 Jul 28 2024 06:59:01 webserver maldet(13162): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Jul 28 2024 06:59:01 webserver maldet(13162): {sigup} new signature set 20240728593846 available Jul 28 2024 06:59:01 webserver maldet(13162): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Jul 28 2024 06:59:01 webserver maldet(13162): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Jul 28 2024 06:59:01 webserver maldet(13162): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Jul 28 2024 06:59:01 webserver maldet(13162): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Jul 28 2024 06:59:01 webserver maldet(13162): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Jul 28 2024 06:59:02 webserver maldet(13162): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Jul 28 2024 06:59:02 webserver maldet(13162): {sigup} verified md5sum of maldet-sigpack.tgz Jul 28 2024 06:59:03 webserver maldet(13162): {sigup} unpacked and installed maldet-sigpack.tgz Jul 28 2024 06:59:04 webserver maldet(13162): {sigup} verified md5sum of maldet-clean.tgz Jul 28 2024 06:59:04 webserver maldet(13162): {sigup} unpacked and installed maldet-clean.tgz Jul 28 2024 06:59:04 webserver maldet(13162): {sigup} signature set update completed Jul 28 2024 06:59:04 webserver maldet(13162): {sigup} 17638 signatures (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Jul 28 2024 06:59:04 webserver maldet(13393): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Jul 28 2024 06:59:05 webserver maldet(13393): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Jul 28 2024 06:59:05 webserver maldet(13393): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Jul 28 2024 06:59:05 webserver maldet(13393): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Jul 28 2024 06:59:05 webserver maldet(13393): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Jul 28 2024 07:14:50 webserver maldet(13393): {scan} file list completed in 944s, found 119 files... Jul 28 2024 07:14:50 webserver maldet(13393): {scan} found clamav binary at /usr/bin/clamscan, using clamav scanner engine... Jul 28 2024 07:14:50 webserver maldet(13393): {scan} scan of (119 files) in progress... Jul 28 2024 07:15:26 webserver maldet(13393): {scan} clamscan returned an error, check /usr/local/maldetect/logs/clamscan_log for details! Jul 28 2024 07:15:26 webserver maldet(13393): {scan} scan completed on : files 119, malware hits 0, cleaned hits 0, time 982s Jul 28 2024 07:15:26 webserver maldet(13393): {scan} scan report saved, to view run: maldet --report 240728-0659.13393 Jul 29 2024 06:58:59 webserver maldet(8446): {update} checking for available updates... Jul 29 2024 06:59:00 webserver maldet(8446): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Jul 29 2024 06:59:00 webserver maldet(8446): {update} hashing install files and checking against server... Jul 29 2024 06:59:00 webserver maldet(8446): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Jul 29 2024 06:59:00 webserver maldet(8446): {update} latest version already installed. Jul 29 2024 06:59:00 webserver maldet(8582): {sigup} performing signature update check... Jul 29 2024 06:59:00 webserver maldet(8582): {sigup} local signature set is version 20240728593846 Jul 29 2024 06:59:00 webserver maldet(8582): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Jul 29 2024 06:59:00 webserver maldet(8582): {sigup} latest signature set already installed Jul 29 2024 06:59:00 webserver maldet(8697): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Jul 29 2024 06:59:00 webserver maldet(8697): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Jul 29 2024 06:59:00 webserver maldet(8697): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Jul 29 2024 06:59:00 webserver maldet(8697): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Jul 29 2024 06:59:00 webserver maldet(8697): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Jul 29 2024 07:03:09 webserver maldet(8697): {scan} file list completed in 249s, found 24 files... Jul 29 2024 07:03:09 webserver maldet(8697): {scan} found clamav binary at /usr/bin/clamscan, using clamav scanner engine... Jul 29 2024 07:03:09 webserver maldet(8697): {scan} scan of (24 files) in progress... Jul 29 2024 07:04:00 webserver maldet(8697): {scan} clamscan returned an error, check /usr/local/maldetect/logs/clamscan_log for details! Jul 29 2024 07:04:00 webserver maldet(8697): {scan} scan completed on : files 24, malware hits 0, cleaned hits 0, time 300s Jul 29 2024 07:04:00 webserver maldet(8697): {scan} scan report saved, to view run: maldet --report 240729-0659.8697 Jul 30 2024 06:57:47 webserver maldet(12102): {update} checking for available updates... Jul 30 2024 06:57:48 webserver maldet(12102): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Jul 30 2024 06:57:48 webserver maldet(12102): {update} hashing install files and checking against server... Jul 30 2024 06:57:48 webserver maldet(12102): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Jul 30 2024 06:57:49 webserver maldet(12102): {update} latest version already installed. Jul 30 2024 06:57:49 webserver maldet(12238): {sigup} performing signature update check... Jul 30 2024 06:57:49 webserver maldet(12238): {sigup} local signature set is version 20240728593846 Jul 30 2024 06:57:50 webserver maldet(12238): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Jul 30 2024 06:57:50 webserver maldet(12238): {sigup} latest signature set already installed Jul 30 2024 06:57:51 webserver maldet(12352): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Jul 30 2024 06:57:51 webserver maldet(12352): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Jul 30 2024 06:57:51 webserver maldet(12352): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Jul 30 2024 06:57:51 webserver maldet(12352): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Jul 30 2024 06:57:51 webserver maldet(12352): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Jul 30 2024 07:07:25 webserver maldet(12352): {scan} file list completed in 574s, found 373 files... Jul 30 2024 07:07:25 webserver maldet(12352): {scan} found clamav binary at /usr/bin/clamscan, using clamav scanner engine... Jul 30 2024 07:07:25 webserver maldet(12352): {scan} scan of (373 files) in progress... Jul 30 2024 07:16:51 webserver maldet(12352): {scan} clamscan returned an error, check /usr/local/maldetect/logs/clamscan_log for details! Jul 30 2024 07:16:51 webserver maldet(12352): {scan} scan completed on : files 373, malware hits 0, cleaned hits 0, time 1140s Jul 30 2024 07:16:51 webserver maldet(12352): {scan} scan report saved, to view run: maldet --report 240730-0657.12352 Jul 31 2024 06:58:46 webserver maldet(12079): {update} checking for available updates... Jul 31 2024 06:58:46 webserver maldet(12079): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Jul 31 2024 06:58:46 webserver maldet(12079): {update} hashing install files and checking against server... Jul 31 2024 06:58:46 webserver maldet(12079): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Jul 31 2024 06:58:46 webserver maldet(12079): {update} latest version already installed. Jul 31 2024 06:58:47 webserver maldet(12215): {sigup} performing signature update check... Jul 31 2024 06:58:47 webserver maldet(12215): {sigup} local signature set is version 20240728593846 Jul 31 2024 06:58:47 webserver maldet(12215): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Jul 31 2024 06:58:47 webserver maldet(12215): {sigup} latest signature set already installed Jul 31 2024 06:58:47 webserver maldet(12330): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Jul 31 2024 06:58:47 webserver maldet(12330): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Jul 31 2024 06:58:47 webserver maldet(12330): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Jul 31 2024 06:58:47 webserver maldet(12330): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Jul 31 2024 06:58:47 webserver maldet(12330): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Jul 31 2024 07:02:44 webserver maldet(12330): {scan} file list completed in 237s, found 285 files... Jul 31 2024 07:02:44 webserver maldet(12330): {scan} found clamav binary at /usr/bin/clamscan, using clamav scanner engine... Jul 31 2024 07:02:44 webserver maldet(12330): {scan} scan of (285 files) in progress... Jul 31 2024 07:03:15 webserver maldet(12330): {scan} clamscan returned an error, check /usr/local/maldetect/logs/clamscan_log for details! Jul 31 2024 07:03:15 webserver maldet(12330): {scan} scan completed on : files 285, malware hits 0, cleaned hits 0, time 268s Jul 31 2024 07:03:15 webserver maldet(12330): {scan} scan report saved, to view run: maldet --report 240731-0658.12330 Aug 01 2024 06:57:45 webserver maldet(7419): {update} checking for available updates... Aug 01 2024 06:57:46 webserver maldet(7419): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Aug 01 2024 06:57:46 webserver maldet(7419): {update} hashing install files and checking against server... Aug 01 2024 06:57:46 webserver maldet(7419): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Aug 01 2024 06:57:46 webserver maldet(7419): {update} latest version already installed. Aug 01 2024 06:57:46 webserver maldet(7555): {sigup} performing signature update check... Aug 01 2024 06:57:46 webserver maldet(7555): {sigup} local signature set is version 20240728593846 Aug 01 2024 06:57:46 webserver maldet(7555): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Aug 01 2024 06:57:46 webserver maldet(7555): {sigup} latest signature set already installed Aug 01 2024 06:57:47 webserver maldet(7672): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Aug 01 2024 06:57:48 webserver maldet(7672): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Aug 01 2024 06:57:48 webserver maldet(7672): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Aug 01 2024 06:57:48 webserver maldet(7672): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Aug 01 2024 06:57:48 webserver maldet(7672): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Aug 01 2024 07:06:12 webserver maldet(7672): {scan} file list completed in 504s, found 280 files... Aug 01 2024 07:06:12 webserver maldet(7672): {scan} found clamav binary at /usr/bin/clamscan, using clamav scanner engine... Aug 01 2024 07:06:12 webserver maldet(7672): {scan} scan of (280 files) in progress... Aug 01 2024 07:06:44 webserver maldet(7672): {scan} clamscan returned an error, check /usr/local/maldetect/logs/clamscan_log for details! Aug 01 2024 07:06:44 webserver maldet(7672): {scan} scan completed on : files 280, malware hits 0, cleaned hits 0, time 537s Aug 01 2024 07:06:44 webserver maldet(7672): {scan} scan report saved, to view run: maldet --report 240801-0657.7672 Aug 02 2024 07:00:01 webserver maldet(5484): {update} checking for available updates... Aug 02 2024 07:00:01 webserver maldet(5484): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Aug 02 2024 07:00:01 webserver maldet(5484): {update} hashing install files and checking against server... Aug 02 2024 07:00:01 webserver maldet(5484): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Aug 02 2024 07:00:01 webserver maldet(5484): {update} latest version already installed. Aug 02 2024 07:00:01 webserver maldet(5620): {sigup} performing signature update check... Aug 02 2024 07:00:01 webserver maldet(5620): {sigup} local signature set is version 20240728593846 Aug 02 2024 07:00:01 webserver maldet(5620): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Aug 02 2024 07:00:02 webserver maldet(5620): {sigup} latest signature set already installed Aug 02 2024 07:00:02 webserver maldet(5735): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Aug 02 2024 07:00:02 webserver maldet(5735): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Aug 02 2024 07:00:02 webserver maldet(5735): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Aug 02 2024 07:00:02 webserver maldet(5735): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Aug 02 2024 07:00:02 webserver maldet(5735): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Aug 02 2024 07:06:19 webserver maldet(5735): {scan} file list completed in 377s, found 341 files... Aug 02 2024 07:06:19 webserver maldet(5735): {scan} found clamav binary at /usr/bin/clamscan, using clamav scanner engine... Aug 02 2024 07:06:19 webserver maldet(5735): {scan} scan of (341 files) in progress... Aug 02 2024 07:06:56 webserver maldet(5735): {scan} clamscan returned an error, check /usr/local/maldetect/logs/clamscan_log for details! Aug 02 2024 07:06:56 webserver maldet(5735): {scan} scan completed on : files 341, malware hits 0, cleaned hits 0, time 414s Aug 02 2024 07:06:56 webserver maldet(5735): {scan} scan report saved, to view run: maldet --report 240802-0700.5735 Aug 03 2024 06:59:46 webserver maldet(2167): {update} checking for available updates... Aug 03 2024 06:59:46 webserver maldet(2167): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Aug 03 2024 06:59:46 webserver maldet(2167): {update} hashing install files and checking against server... Aug 03 2024 06:59:46 webserver maldet(2167): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Aug 03 2024 06:59:46 webserver maldet(2167): {update} latest version already installed. Aug 03 2024 06:59:46 webserver maldet(2303): {sigup} performing signature update check... Aug 03 2024 06:59:46 webserver maldet(2303): {sigup} local signature set is version 20240728593846 Aug 03 2024 06:59:46 webserver maldet(2303): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Aug 03 2024 06:59:46 webserver maldet(2303): {sigup} new signature set 202407311290191 available Aug 03 2024 06:59:46 webserver maldet(2303): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Aug 03 2024 06:59:46 webserver maldet(2303): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Aug 03 2024 06:59:46 webserver maldet(2303): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Aug 03 2024 06:59:46 webserver maldet(2303): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Aug 03 2024 06:59:46 webserver maldet(2303): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Aug 03 2024 06:59:46 webserver maldet(2303): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Aug 03 2024 06:59:46 webserver maldet(2303): {sigup} verified md5sum of maldet-sigpack.tgz Aug 03 2024 06:59:47 webserver maldet(2303): {sigup} unpacked and installed maldet-sigpack.tgz Aug 03 2024 06:59:47 webserver maldet(2303): {sigup} verified md5sum of maldet-clean.tgz Aug 03 2024 06:59:47 webserver maldet(2303): {sigup} unpacked and installed maldet-clean.tgz Aug 03 2024 06:59:47 webserver maldet(2303): {sigup} signature set update completed Aug 03 2024 06:59:47 webserver maldet(2303): {sigup} 17638 signatures (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Aug 03 2024 06:59:47 webserver maldet(2534): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Aug 03 2024 06:59:47 webserver maldet(2534): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Aug 03 2024 06:59:48 webserver maldet(2534): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Aug 03 2024 06:59:48 webserver maldet(2534): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Aug 03 2024 06:59:48 webserver maldet(2534): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Aug 03 2024 07:16:52 webserver maldet(2534): {scan} file list completed in 1024s, found 163 files... Aug 03 2024 07:16:52 webserver maldet(2534): {scan} found clamav binary at /usr/bin/clamscan, using clamav scanner engine... Aug 03 2024 07:16:52 webserver maldet(2534): {scan} scan of (163 files) in progress... Aug 03 2024 07:17:42 webserver maldet(2534): {scan} clamscan returned an error, check /usr/local/maldetect/logs/clamscan_log for details! Aug 03 2024 07:17:42 webserver maldet(2534): {scan} scan completed on : files 163, malware hits 0, cleaned hits 0, time 1075s Aug 03 2024 07:17:42 webserver maldet(2534): {scan} scan report saved, to view run: maldet --report 240803-0659.2534 Aug 04 2024 06:57:28 webserver maldet(29984): {update} checking for available updates... Aug 04 2024 06:57:29 webserver maldet(29984): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Aug 04 2024 06:57:29 webserver maldet(29984): {update} hashing install files and checking against server... Aug 04 2024 06:57:29 webserver maldet(29984): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Aug 04 2024 06:57:29 webserver maldet(29984): {update} latest version already installed. Aug 04 2024 06:57:30 webserver maldet(30124): {sigup} performing signature update check... Aug 04 2024 06:57:30 webserver maldet(30124): {sigup} local signature set is version 202407311290191 Aug 04 2024 06:57:30 webserver maldet(30124): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Aug 04 2024 06:57:30 webserver maldet(30124): {sigup} new signature set 20240804573718 available Aug 04 2024 06:57:30 webserver maldet(30124): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Aug 04 2024 06:57:30 webserver maldet(30124): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Aug 04 2024 06:57:30 webserver maldet(30124): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Aug 04 2024 06:57:30 webserver maldet(30124): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Aug 04 2024 06:57:31 webserver maldet(30124): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Aug 04 2024 06:57:31 webserver maldet(30124): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Aug 04 2024 06:57:31 webserver maldet(30124): {sigup} unable to verify md5sum of maldet-sigpack.tgz, please try again or contact proj@rfxn.com Aug 04 2024 06:57:31 webserver maldet(30124): {sigup} verified md5sum of maldet-clean.tgz Aug 04 2024 06:57:31 webserver maldet(30124): {sigup} unpacked and installed maldet-clean.tgz Aug 04 2024 06:57:31 webserver maldet(30312): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Aug 04 2024 06:57:32 webserver maldet(30312): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Aug 04 2024 06:57:32 webserver maldet(30312): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Aug 04 2024 06:57:32 webserver maldet(30312): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Aug 04 2024 06:57:32 webserver maldet(30312): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Aug 04 2024 07:06:20 webserver maldet(30312): {scan} file list completed in 528s, found 65 files... Aug 04 2024 07:06:20 webserver maldet(30312): {scan} found clamav binary at /usr/bin/clamscan, using clamav scanner engine... Aug 04 2024 07:06:20 webserver maldet(30312): {scan} scan of (65 files) in progress... Aug 04 2024 07:13:58 webserver maldet(30312): {scan} clamscan returned an error, check /usr/local/maldetect/logs/clamscan_log for details! Aug 04 2024 07:13:59 webserver maldet(30312): {scan} scan completed on : files 65, malware hits 0, cleaned hits 0, time 988s Aug 04 2024 07:13:59 webserver maldet(30312): {scan} scan report saved, to view run: maldet --report 240804-0657.30312 Aug 05 2024 06:59:02 webserver maldet(28305): {update} checking for available updates... Aug 05 2024 06:59:02 webserver maldet(28305): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Aug 05 2024 06:59:02 webserver maldet(28305): {update} hashing install files and checking against server... Aug 05 2024 06:59:02 webserver maldet(28305): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Aug 05 2024 06:59:02 webserver maldet(28305): {update} latest version already installed. Aug 05 2024 06:59:03 webserver maldet(28443): {sigup} performing signature update check... Aug 05 2024 06:59:03 webserver maldet(28443): {sigup} local signature set is version 202407311290191 Aug 05 2024 06:59:03 webserver maldet(28443): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Aug 05 2024 06:59:03 webserver maldet(28443): {sigup} new signature set 20240804573718 available Aug 05 2024 06:59:03 webserver maldet(28443): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Aug 05 2024 06:59:03 webserver maldet(28443): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Aug 05 2024 06:59:03 webserver maldet(28443): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Aug 05 2024 06:59:03 webserver maldet(28443): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Aug 05 2024 06:59:03 webserver maldet(28443): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Aug 05 2024 06:59:03 webserver maldet(28443): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Aug 05 2024 06:59:03 webserver maldet(28443): {sigup} verified md5sum of maldet-sigpack.tgz Aug 05 2024 06:59:03 webserver maldet(28443): {sigup} unpacked and installed maldet-sigpack.tgz Aug 05 2024 06:59:03 webserver maldet(28443): {sigup} verified md5sum of maldet-clean.tgz Aug 05 2024 06:59:03 webserver maldet(28443): {sigup} unpacked and installed maldet-clean.tgz Aug 05 2024 06:59:03 webserver maldet(28443): {sigup} signature set update completed Aug 05 2024 06:59:03 webserver maldet(28443): {sigup} 17638 signatures (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Aug 05 2024 06:59:04 webserver maldet(28674): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Aug 05 2024 06:59:04 webserver maldet(28674): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Aug 05 2024 06:59:04 webserver maldet(28674): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Aug 05 2024 06:59:04 webserver maldet(28674): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Aug 05 2024 06:59:04 webserver maldet(28674): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Aug 05 2024 07:12:52 webserver maldet(28674): {scan} file list completed in 828s, found 252 files... Aug 05 2024 07:12:52 webserver maldet(28674): {scan} found clamav binary at /usr/bin/clamscan, using clamav scanner engine... Aug 05 2024 07:12:52 webserver maldet(28674): {scan} scan of (252 files) in progress... Aug 05 2024 07:13:27 webserver maldet(28674): {scan} clamscan returned an error, check /usr/local/maldetect/logs/clamscan_log for details! Aug 05 2024 07:13:27 webserver maldet(28674): {scan} scan completed on : files 252, malware hits 0, cleaned hits 0, time 863s Aug 05 2024 07:13:27 webserver maldet(28674): {scan} scan report saved, to view run: maldet --report 240805-0659.28674 Aug 06 2024 06:57:00 webserver maldet(21909): {update} checking for available updates... Aug 06 2024 06:57:00 webserver maldet(21909): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Aug 06 2024 06:57:00 webserver maldet(21909): {update} hashing install files and checking against server... Aug 06 2024 06:57:01 webserver maldet(21909): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Aug 06 2024 06:57:01 webserver maldet(21909): {update} latest version already installed. Aug 06 2024 06:57:01 webserver maldet(22045): {sigup} performing signature update check... Aug 06 2024 06:57:01 webserver maldet(22045): {sigup} local signature set is version 20240804573718 Aug 06 2024 06:57:01 webserver maldet(22045): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Aug 06 2024 06:57:01 webserver maldet(22045): {sigup} latest signature set already installed Aug 06 2024 06:57:01 webserver maldet(22160): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Aug 06 2024 06:57:01 webserver maldet(22160): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Aug 06 2024 06:57:01 webserver maldet(22160): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Aug 06 2024 06:57:01 webserver maldet(22160): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Aug 06 2024 06:57:01 webserver maldet(22160): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Aug 06 2024 06:59:42 webserver maldet(22160): {scan} file list completed in 161s, found 727 files... Aug 06 2024 06:59:43 webserver maldet(22160): {scan} found clamav binary at /usr/bin/clamscan, using clamav scanner engine... Aug 06 2024 06:59:43 webserver maldet(22160): {scan} scan of (727 files) in progress... Aug 06 2024 07:01:51 webserver maldet(22160): {scan} clamscan returned an error, check /usr/local/maldetect/logs/clamscan_log for details! Aug 06 2024 07:01:51 webserver maldet(22160): {scan} scan completed on : files 727, malware hits 0, cleaned hits 0, time 290s Aug 06 2024 07:01:51 webserver maldet(22160): {scan} scan report saved, to view run: maldet --report 240806-0657.22160 Aug 07 2024 06:57:35 webserver maldet(13123): {update} checking for available updates... Aug 07 2024 06:57:35 webserver maldet(13123): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Aug 07 2024 06:57:35 webserver maldet(13123): {update} hashing install files and checking against server... Aug 07 2024 06:57:35 webserver maldet(13123): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Aug 07 2024 06:57:35 webserver maldet(13123): {update} latest version already installed. Aug 07 2024 06:57:35 webserver maldet(13259): {sigup} performing signature update check... Aug 07 2024 06:57:35 webserver maldet(13259): {sigup} local signature set is version 20240804573718 Aug 07 2024 06:57:35 webserver maldet(13259): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Aug 07 2024 06:57:35 webserver maldet(13259): {sigup} new signature set 202408071328483 available Aug 07 2024 06:57:35 webserver maldet(13259): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Aug 07 2024 06:57:36 webserver maldet(13259): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Aug 07 2024 06:57:36 webserver maldet(13259): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Aug 07 2024 06:57:36 webserver maldet(13259): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Aug 07 2024 06:57:36 webserver maldet(13259): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Aug 07 2024 06:57:36 webserver maldet(13259): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Aug 07 2024 06:57:36 webserver maldet(13259): {sigup} unable to verify md5sum of maldet-sigpack.tgz, please try again or contact proj@rfxn.com Aug 07 2024 06:57:36 webserver maldet(13259): {sigup} verified md5sum of maldet-clean.tgz Aug 07 2024 06:57:36 webserver maldet(13259): {sigup} unpacked and installed maldet-clean.tgz Aug 07 2024 06:57:36 webserver maldet(13446): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Aug 07 2024 06:57:37 webserver maldet(13446): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Aug 07 2024 06:57:37 webserver maldet(13446): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Aug 07 2024 06:57:37 webserver maldet(13446): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Aug 07 2024 06:57:37 webserver maldet(13446): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Aug 07 2024 07:11:02 webserver maldet(13446): {scan} file list completed in 805s, found 796 files... Aug 07 2024 07:11:02 webserver maldet(13446): {scan} found clamav binary at /usr/bin/clamscan, using clamav scanner engine... Aug 07 2024 07:11:02 webserver maldet(13446): {scan} scan of (796 files) in progress... Aug 07 2024 07:12:19 webserver maldet(13446): {scan} clamscan returned an error, check /usr/local/maldetect/logs/clamscan_log for details! Aug 07 2024 07:12:19 webserver maldet(13446): {scan} scan completed on : files 796, malware hits 0, cleaned hits 0, time 883s Aug 07 2024 07:12:19 webserver maldet(13446): {scan} scan report saved, to view run: maldet --report 240807-0657.13446 Aug 08 2024 07:08:25 webserver maldet(4305): {update} checking for available updates... Aug 08 2024 07:08:26 webserver maldet(4305): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Aug 08 2024 07:08:26 webserver maldet(4305): {update} hashing install files and checking against server... Aug 08 2024 07:08:26 webserver maldet(4305): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Aug 08 2024 07:08:26 webserver maldet(4305): {update} latest version already installed. Aug 08 2024 07:08:26 webserver maldet(4441): {sigup} performing signature update check... Aug 08 2024 07:08:26 webserver maldet(4441): {sigup} local signature set is version 20240804573718 Aug 08 2024 07:08:26 webserver maldet(4441): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Aug 08 2024 07:08:26 webserver maldet(4441): {sigup} new signature set 202408071328483 available Aug 08 2024 07:08:26 webserver maldet(4441): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Aug 08 2024 07:08:26 webserver maldet(4441): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Aug 08 2024 07:08:26 webserver maldet(4441): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Aug 08 2024 07:08:26 webserver maldet(4441): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Aug 08 2024 07:08:26 webserver maldet(4441): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Aug 08 2024 07:08:26 webserver maldet(4441): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Aug 08 2024 07:08:26 webserver maldet(4441): {sigup} verified md5sum of maldet-sigpack.tgz Aug 08 2024 07:08:26 webserver maldet(4441): {sigup} unpacked and installed maldet-sigpack.tgz Aug 08 2024 07:08:27 webserver maldet(4441): {sigup} verified md5sum of maldet-clean.tgz Aug 08 2024 07:08:27 webserver maldet(4441): {sigup} unpacked and installed maldet-clean.tgz Aug 08 2024 07:08:27 webserver maldet(4441): {sigup} signature set update completed Aug 08 2024 07:08:27 webserver maldet(4441): {sigup} 17638 signatures (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Aug 08 2024 07:08:27 webserver maldet(4671): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Aug 08 2024 07:08:27 webserver maldet(4671): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Aug 08 2024 07:08:27 webserver maldet(4671): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Aug 08 2024 07:08:27 webserver maldet(4671): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Aug 08 2024 07:08:27 webserver maldet(4671): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Aug 08 2024 07:25:12 webserver maldet(4671): {scan} file list completed in 1004s, found 827 files... Aug 08 2024 07:25:12 webserver maldet(4671): {scan} found clamav binary at /usr/bin/clamscan, using clamav scanner engine... Aug 08 2024 07:25:12 webserver maldet(4671): {scan} scan of (827 files) in progress... Aug 08 2024 07:26:35 webserver maldet(4671): {scan} clamscan returned an error, check /usr/local/maldetect/logs/clamscan_log for details! Aug 08 2024 07:26:35 webserver maldet(4671): {scan} scan completed on : files 827, malware hits 0, cleaned hits 0, time 1088s Aug 08 2024 07:26:35 webserver maldet(4671): {scan} scan report saved, to view run: maldet --report 240808-0708.4671 Aug 09 2024 06:58:08 webserver maldet(28527): {update} checking for available updates... Aug 09 2024 06:58:08 webserver maldet(28527): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Aug 09 2024 06:58:08 webserver maldet(28527): {update} hashing install files and checking against server... Aug 09 2024 06:58:08 webserver maldet(28527): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Aug 09 2024 06:58:08 webserver maldet(28527): {update} latest version already installed. Aug 09 2024 06:58:08 webserver maldet(28663): {sigup} performing signature update check... Aug 09 2024 06:58:08 webserver maldet(28663): {sigup} local signature set is version 202408071328483 Aug 09 2024 06:58:08 webserver maldet(28663): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Aug 09 2024 06:58:08 webserver maldet(28663): {sigup} latest signature set already installed Aug 09 2024 06:58:08 webserver maldet(28778): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Aug 09 2024 06:58:09 webserver maldet(28778): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Aug 09 2024 06:58:09 webserver maldet(28778): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Aug 09 2024 06:58:09 webserver maldet(28778): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Aug 09 2024 06:58:09 webserver maldet(28778): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Aug 09 2024 07:03:47 webserver maldet(28778): {scan} file list completed in 338s, found 716 files... Aug 09 2024 07:03:47 webserver maldet(28778): {scan} found clamav binary at /usr/bin/clamscan, using clamav scanner engine... Aug 09 2024 07:03:47 webserver maldet(28778): {scan} scan of (716 files) in progress... Aug 09 2024 07:04:44 webserver maldet(28778): {scan} clamscan returned an error, check /usr/local/maldetect/logs/clamscan_log for details! Aug 09 2024 07:04:45 webserver maldet(28778): {scan} scan completed on : files 716, malware hits 0, cleaned hits 0, time 396s Aug 09 2024 07:04:45 webserver maldet(28778): {scan} scan report saved, to view run: maldet --report 240809-0658.28778 Aug 10 2024 06:58:33 webserver maldet(26537): {update} checking for available updates... Aug 10 2024 06:58:33 webserver maldet(26537): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Aug 10 2024 06:58:33 webserver maldet(26537): {update} hashing install files and checking against server... Aug 10 2024 06:58:33 webserver maldet(26537): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Aug 10 2024 06:58:33 webserver maldet(26537): {update} latest version already installed. Aug 10 2024 06:58:33 webserver maldet(26673): {sigup} performing signature update check... Aug 10 2024 06:58:33 webserver maldet(26673): {sigup} local signature set is version 202408071328483 Aug 10 2024 06:58:33 webserver maldet(26673): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Aug 10 2024 06:58:33 webserver maldet(26673): {sigup} new signature set 202408102084908 available Aug 10 2024 06:58:33 webserver maldet(26673): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Aug 10 2024 06:58:33 webserver maldet(26673): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Aug 10 2024 06:58:33 webserver maldet(26673): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Aug 10 2024 06:58:33 webserver maldet(26673): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Aug 10 2024 06:58:33 webserver maldet(26673): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Aug 10 2024 06:58:34 webserver maldet(26673): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Aug 10 2024 06:58:34 webserver maldet(26673): {sigup} verified md5sum of maldet-sigpack.tgz Aug 10 2024 06:58:34 webserver maldet(26673): {sigup} unpacked and installed maldet-sigpack.tgz Aug 10 2024 06:58:34 webserver maldet(26673): {sigup} verified md5sum of maldet-clean.tgz Aug 10 2024 06:58:34 webserver maldet(26673): {sigup} unpacked and installed maldet-clean.tgz Aug 10 2024 06:58:34 webserver maldet(26673): {sigup} signature set update completed Aug 10 2024 06:58:34 webserver maldet(26673): {sigup} 17638 signatures (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Aug 10 2024 06:58:34 webserver maldet(26903): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Aug 10 2024 06:58:34 webserver maldet(26903): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Aug 10 2024 06:58:34 webserver maldet(26903): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Aug 10 2024 06:58:34 webserver maldet(26903): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Aug 10 2024 06:58:34 webserver maldet(26903): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Aug 10 2024 07:13:41 webserver maldet(26903): {scan} file list completed in 906s, found 811 files... Aug 10 2024 07:13:41 webserver maldet(26903): {scan} found clamav binary at /usr/bin/clamscan, using clamav scanner engine... Aug 10 2024 07:13:41 webserver maldet(26903): {scan} scan of (811 files) in progress... Aug 10 2024 07:25:02 webserver maldet(26903): {scan} clamscan returned an error, check /usr/local/maldetect/logs/clamscan_log for details! Aug 10 2024 07:25:02 webserver maldet(26903): {scan} scan completed on : files 811, malware hits 0, cleaned hits 0, time 1588s Aug 10 2024 07:25:03 webserver maldet(26903): {scan} scan report saved, to view run: maldet --report 240810-0658.26903 Aug 11 2024 06:57:11 webserver maldet(31063): {update} checking for available updates... Aug 11 2024 06:57:11 webserver maldet(31063): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Aug 11 2024 06:57:11 webserver maldet(31063): {update} hashing install files and checking against server... Aug 11 2024 06:57:11 webserver maldet(31063): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Aug 11 2024 06:57:11 webserver maldet(31063): {update} latest version already installed. Aug 11 2024 06:57:11 webserver maldet(31200): {sigup} performing signature update check... Aug 11 2024 06:57:11 webserver maldet(31200): {sigup} local signature set is version 202408071328483 Aug 11 2024 06:57:11 webserver maldet(31200): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Aug 11 2024 06:57:12 webserver maldet(31200): {sigup} new signature set 202408102084908 available Aug 11 2024 06:57:12 webserver maldet(31200): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Aug 11 2024 06:57:12 webserver maldet(31200): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Aug 11 2024 06:57:12 webserver maldet(31200): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Aug 11 2024 06:57:12 webserver maldet(31200): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Aug 11 2024 06:57:12 webserver maldet(31200): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Aug 11 2024 06:57:12 webserver maldet(31200): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Aug 11 2024 06:57:12 webserver maldet(31200): {sigup} verified md5sum of maldet-sigpack.tgz Aug 11 2024 06:57:12 webserver maldet(31200): {sigup} unpacked and installed maldet-sigpack.tgz Aug 11 2024 06:57:12 webserver maldet(31200): {sigup} verified md5sum of maldet-clean.tgz Aug 11 2024 06:57:12 webserver maldet(31200): {sigup} unpacked and installed maldet-clean.tgz Aug 11 2024 06:57:12 webserver maldet(31200): {sigup} signature set update completed Aug 11 2024 06:57:12 webserver maldet(31200): {sigup} 17638 signatures (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Aug 11 2024 06:57:13 webserver maldet(31431): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Aug 11 2024 06:57:13 webserver maldet(31431): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Aug 11 2024 06:57:13 webserver maldet(31431): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Aug 11 2024 06:57:13 webserver maldet(31431): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Aug 11 2024 06:57:13 webserver maldet(31431): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Aug 11 2024 07:04:20 webserver maldet(31431): {scan} file list completed in 427s, found 1570 files... Aug 11 2024 07:04:20 webserver maldet(31431): {scan} found clamav binary at /usr/bin/clamscan, using clamav scanner engine... Aug 11 2024 07:04:20 webserver maldet(31431): {scan} scan of (1570 files) in progress... Aug 11 2024 07:05:26 webserver maldet(31431): {scan} clamscan returned an error, check /usr/local/maldetect/logs/clamscan_log for details! Aug 11 2024 07:05:26 webserver maldet(31431): {scan} scan completed on : files 1570, malware hits 0, cleaned hits 0, time 493s Aug 11 2024 07:05:26 webserver maldet(31431): {scan} scan report saved, to view run: maldet --report 240811-0657.31431 Aug 11 2024 09:51:27 webserver maldet(256): {mon} could not find inotifywait command, install yum package inotify-tools or download from https://github.com/rvoicilas/inotify-tools/wiki/ Aug 12 2024 07:00:01 webserver maldet(24931): {update} checking for available updates... Aug 12 2024 07:00:02 webserver maldet(24931): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Aug 12 2024 07:00:02 webserver maldet(24931): {update} hashing install files and checking against server... Aug 12 2024 07:00:03 webserver maldet(24931): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Aug 12 2024 07:00:03 webserver maldet(24931): {update} latest version already installed. Aug 12 2024 07:00:05 webserver maldet(25132): {sigup} performing signature update check... Aug 12 2024 07:00:05 webserver maldet(25132): {sigup} local signature set is version 202408102084908 Aug 12 2024 07:00:05 webserver maldet(25132): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Aug 12 2024 07:00:06 webserver maldet(25132): {sigup} latest signature set already installed Aug 12 2024 07:00:08 webserver maldet(25267): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Aug 12 2024 07:00:10 webserver maldet(25267): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Aug 12 2024 07:00:10 webserver maldet(25267): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Aug 12 2024 07:00:10 webserver maldet(25267): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Aug 12 2024 07:00:10 webserver maldet(25267): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Aug 12 2024 08:04:16 webserver maldet(25267): {scan} file list completed in 3846s, found 2077 files... Aug 12 2024 08:04:16 webserver maldet(25267): {scan} found clamav binary at /usr/bin/clamdscan, using clamav scanner engine... Aug 12 2024 08:04:16 webserver maldet(25267): {scan} scan of (2077 files) in progress... Aug 12 2024 08:04:42 webserver maldet(25267): {scan} clamscan returned an error, check /usr/local/maldetect/logs/clamscan_log for details! Aug 12 2024 08:04:42 webserver maldet(25267): {scan} scan completed on : files 2077, malware hits 0, cleaned hits 0, time 3874s Aug 12 2024 08:04:42 webserver maldet(25267): {scan} scan report saved, to view run: maldet --report 240812-0700.25267 Aug 13 2024 06:58:24 webserver maldet(19287): {update} checking for available updates... Aug 13 2024 06:58:24 webserver maldet(19287): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Aug 13 2024 06:58:24 webserver maldet(19287): {update} hashing install files and checking against server... Aug 13 2024 06:58:24 webserver maldet(19287): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Aug 13 2024 06:58:24 webserver maldet(19287): {update} latest version already installed. Aug 13 2024 06:58:24 webserver maldet(19423): {sigup} performing signature update check... Aug 13 2024 06:58:24 webserver maldet(19423): {sigup} local signature set is version 202408102084908 Aug 13 2024 06:58:24 webserver maldet(19423): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Aug 13 2024 06:58:24 webserver maldet(19423): {sigup} latest signature set already installed Aug 13 2024 06:58:24 webserver maldet(19537): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Aug 13 2024 06:58:25 webserver maldet(19537): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Aug 13 2024 06:58:25 webserver maldet(19537): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Aug 13 2024 06:58:25 webserver maldet(19537): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Aug 13 2024 06:58:25 webserver maldet(19537): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Aug 13 2024 07:02:10 webserver maldet(19537): {scan} file list completed in 225s, found 869 files... Aug 13 2024 07:02:10 webserver maldet(19537): {scan} found clamav binary at /usr/bin/clamdscan, using clamav scanner engine... Aug 13 2024 07:02:10 webserver maldet(19537): {scan} scan of (869 files) in progress... Aug 13 2024 07:02:22 webserver maldet(19537): {scan} clamscan returned an error, check /usr/local/maldetect/logs/clamscan_log for details! Aug 13 2024 07:02:22 webserver maldet(19537): {scan} scan completed on : files 869, malware hits 0, cleaned hits 0, time 238s Aug 13 2024 07:02:22 webserver maldet(19537): {scan} scan report saved, to view run: maldet --report 240813-0658.19537 Aug 14 2024 06:58:29 webserver maldet(14792): {update} checking for available updates... Aug 14 2024 06:58:29 webserver maldet(14792): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Aug 14 2024 06:58:29 webserver maldet(14792): {update} hashing install files and checking against server... Aug 14 2024 06:58:29 webserver maldet(14792): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Aug 14 2024 06:58:29 webserver maldet(14792): {update} latest version already installed. Aug 14 2024 06:58:29 webserver maldet(14928): {sigup} performing signature update check... Aug 14 2024 06:58:29 webserver maldet(14928): {sigup} local signature set is version 202408102084908 Aug 14 2024 06:58:29 webserver maldet(14928): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Aug 14 2024 06:58:29 webserver maldet(14928): {sigup} latest signature set already installed Aug 14 2024 06:58:29 webserver maldet(15042): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Aug 14 2024 06:58:30 webserver maldet(15042): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Aug 14 2024 06:58:30 webserver maldet(15042): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Aug 14 2024 06:58:30 webserver maldet(15042): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Aug 14 2024 06:58:30 webserver maldet(15042): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Aug 14 2024 07:02:38 webserver maldet(15042): {scan} file list completed in 248s, found 856 files... Aug 14 2024 07:02:38 webserver maldet(15042): {scan} found clamav binary at /usr/bin/clamdscan, using clamav scanner engine... Aug 14 2024 07:02:38 webserver maldet(15042): {scan} scan of (856 files) in progress... Aug 14 2024 07:02:49 webserver maldet(15042): {scan} clamscan returned an error, check /usr/local/maldetect/logs/clamscan_log for details! Aug 14 2024 07:02:49 webserver maldet(15042): {scan} scan completed on : files 856, malware hits 0, cleaned hits 0, time 260s Aug 14 2024 07:02:49 webserver maldet(15042): {scan} scan report saved, to view run: maldet --report 240814-0658.15042 Aug 15 2024 06:57:49 webserver maldet(8842): {update} checking for available updates... Aug 15 2024 06:57:49 webserver maldet(8842): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Aug 15 2024 06:57:49 webserver maldet(8842): {update} hashing install files and checking against server... Aug 15 2024 06:57:49 webserver maldet(8842): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Aug 15 2024 06:57:49 webserver maldet(8842): {update} latest version already installed. Aug 15 2024 06:57:49 webserver maldet(8978): {sigup} performing signature update check... Aug 15 2024 06:57:49 webserver maldet(8978): {sigup} local signature set is version 202408102084908 Aug 15 2024 06:57:49 webserver maldet(8978): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Aug 15 2024 06:57:49 webserver maldet(8978): {sigup} latest signature set already installed Aug 15 2024 06:57:49 webserver maldet(9092): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Aug 15 2024 06:57:56 webserver maldet(9092): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Aug 15 2024 06:57:56 webserver maldet(9092): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Aug 15 2024 06:57:56 webserver maldet(9092): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Aug 15 2024 06:57:56 webserver maldet(9092): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Aug 15 2024 07:02:41 webserver maldet(9092): {scan} file list completed in 285s, found 717 files... Aug 15 2024 07:02:41 webserver maldet(9092): {scan} found clamav binary at /usr/bin/clamdscan, using clamav scanner engine... Aug 15 2024 07:02:41 webserver maldet(9092): {scan} scan of (717 files) in progress... Aug 15 2024 07:02:51 webserver maldet(9092): {scan} clamscan returned an error, check /usr/local/maldetect/logs/clamscan_log for details! Aug 15 2024 07:02:51 webserver maldet(9092): {scan} scan completed on : files 717, malware hits 0, cleaned hits 0, time 302s Aug 15 2024 07:02:51 webserver maldet(9092): {scan} scan report saved, to view run: maldet --report 240815-0657.9092 Aug 16 2024 06:59:33 webserver maldet(3490): {update} checking for available updates... Aug 16 2024 06:59:33 webserver maldet(3490): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Aug 16 2024 06:59:33 webserver maldet(3490): {update} hashing install files and checking against server... Aug 16 2024 06:59:33 webserver maldet(3490): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Aug 16 2024 06:59:33 webserver maldet(3490): {update} latest version already installed. Aug 16 2024 06:59:33 webserver maldet(3626): {sigup} performing signature update check... Aug 16 2024 06:59:33 webserver maldet(3626): {sigup} local signature set is version 202408102084908 Aug 16 2024 06:59:33 webserver maldet(3626): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Aug 16 2024 06:59:33 webserver maldet(3626): {sigup} new signature set 20240816593955 available Aug 16 2024 06:59:33 webserver maldet(3626): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Aug 16 2024 06:59:33 webserver maldet(3626): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Aug 16 2024 06:59:33 webserver maldet(3626): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Aug 16 2024 06:59:33 webserver maldet(3626): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Aug 16 2024 06:59:33 webserver maldet(3626): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Aug 16 2024 06:59:33 webserver maldet(3626): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Aug 16 2024 06:59:33 webserver maldet(3626): {sigup} unable to verify md5sum of maldet-sigpack.tgz, please try again or contact proj@rfxn.com Aug 16 2024 06:59:33 webserver maldet(3626): {sigup} verified md5sum of maldet-clean.tgz Aug 16 2024 06:59:33 webserver maldet(3626): {sigup} unpacked and installed maldet-clean.tgz Aug 16 2024 06:59:33 webserver maldet(3812): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Aug 16 2024 06:59:36 webserver maldet(3812): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Aug 16 2024 06:59:36 webserver maldet(3812): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Aug 16 2024 06:59:36 webserver maldet(3812): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Aug 16 2024 06:59:36 webserver maldet(3812): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Aug 16 2024 07:04:03 webserver maldet(3812): {scan} file list completed in 267s, found 912 files... Aug 16 2024 07:04:03 webserver maldet(3812): {scan} found clamav binary at /usr/bin/clamdscan, using clamav scanner engine... Aug 16 2024 07:04:03 webserver maldet(3812): {scan} scan of (912 files) in progress... Aug 16 2024 07:04:14 webserver maldet(3812): {scan} clamscan returned an error, check /usr/local/maldetect/logs/clamscan_log for details! Aug 16 2024 07:04:14 webserver maldet(3812): {scan} scan completed on : files 912, malware hits 0, cleaned hits 0, time 281s Aug 16 2024 07:04:14 webserver maldet(3812): {scan} scan report saved, to view run: maldet --report 240816-0659.3812 Aug 17 2024 07:01:05 webserver maldet(32001): {update} checking for available updates... Aug 17 2024 07:01:05 webserver maldet(32001): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Aug 17 2024 07:01:06 webserver maldet(32001): {update} hashing install files and checking against server... Aug 17 2024 07:01:06 webserver maldet(32001): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Aug 17 2024 07:01:06 webserver maldet(32001): {update} latest version already installed. Aug 17 2024 07:01:08 webserver maldet(32139): {sigup} performing signature update check... Aug 17 2024 07:01:08 webserver maldet(32139): {sigup} local signature set is version 202408102084908 Aug 17 2024 07:01:08 webserver maldet(32139): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Aug 17 2024 07:01:09 webserver maldet(32139): {sigup} new signature set 20240816593955 available Aug 17 2024 07:01:09 webserver maldet(32139): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Aug 17 2024 07:01:09 webserver maldet(32139): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Aug 17 2024 07:01:09 webserver maldet(32139): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Aug 17 2024 07:01:09 webserver maldet(32139): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Aug 17 2024 07:01:10 webserver maldet(32139): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Aug 17 2024 07:01:10 webserver maldet(32139): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Aug 17 2024 07:01:10 webserver maldet(32139): {sigup} verified md5sum of maldet-sigpack.tgz Aug 17 2024 07:01:11 webserver maldet(32139): {sigup} unpacked and installed maldet-sigpack.tgz Aug 17 2024 07:01:11 webserver maldet(32139): {sigup} verified md5sum of maldet-clean.tgz Aug 17 2024 07:01:12 webserver maldet(32139): {sigup} unpacked and installed maldet-clean.tgz Aug 17 2024 07:01:12 webserver maldet(32139): {sigup} signature set update completed Aug 17 2024 07:01:12 webserver maldet(32139): {sigup} 17638 signatures (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Aug 17 2024 07:01:15 webserver maldet(32373): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Aug 17 2024 07:01:22 webserver maldet(32373): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Aug 17 2024 07:01:22 webserver maldet(32373): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Aug 17 2024 07:01:22 webserver maldet(32373): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Aug 17 2024 07:01:23 webserver maldet(32373): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Aug 17 2024 07:48:54 webserver maldet(32373): {scan} file list completed in 2852s, found 1203 files... Aug 17 2024 07:48:54 webserver maldet(32373): {scan} found clamav binary at /usr/bin/clamdscan, using clamav scanner engine... Aug 17 2024 07:48:54 webserver maldet(32373): {scan} scan of (1203 files) in progress... Aug 17 2024 07:49:13 webserver maldet(32373): {scan} clamscan returned an error, check /usr/local/maldetect/logs/clamscan_log for details! Aug 17 2024 07:49:13 webserver maldet(32373): {scan} scan completed on : files 1203, malware hits 0, cleaned hits 0, time 2878s Aug 17 2024 07:49:13 webserver maldet(32373): {scan} scan report saved, to view run: maldet --report 240817-0701.32373 Aug 18 2024 06:58:04 webserver maldet(19821): {update} checking for available updates... Aug 18 2024 06:58:04 webserver maldet(19821): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Aug 18 2024 06:58:04 webserver maldet(19821): {update} hashing install files and checking against server... Aug 18 2024 06:58:04 webserver maldet(19821): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Aug 18 2024 06:58:04 webserver maldet(19821): {update} latest version already installed. Aug 18 2024 06:58:04 webserver maldet(19959): {sigup} performing signature update check... Aug 18 2024 06:58:04 webserver maldet(19959): {sigup} local signature set is version 20240816593955 Aug 18 2024 06:58:04 webserver maldet(19959): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Aug 18 2024 06:58:04 webserver maldet(19959): {sigup} latest signature set already installed Aug 18 2024 06:58:04 webserver maldet(20073): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Aug 18 2024 06:58:04 webserver maldet(20073): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Aug 18 2024 06:58:04 webserver maldet(20073): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Aug 18 2024 06:58:05 webserver maldet(20073): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Aug 18 2024 06:58:05 webserver maldet(20073): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Aug 18 2024 07:02:33 webserver maldet(20073): {scan} file list completed in 268s, found 1363 files... Aug 18 2024 07:02:33 webserver maldet(20073): {scan} found clamav binary at /usr/bin/clamdscan, using clamav scanner engine... Aug 18 2024 07:02:33 webserver maldet(20073): {scan} scan of (1363 files) in progress... Aug 18 2024 07:02:50 webserver maldet(20073): {scan} clamscan returned an error, check /usr/local/maldetect/logs/clamscan_log for details! Aug 18 2024 07:02:50 webserver maldet(20073): {scan} scan completed on : files 1363, malware hits 0, cleaned hits 0, time 286s Aug 18 2024 07:02:50 webserver maldet(20073): {scan} scan report saved, to view run: maldet --report 240818-0658.20073 Aug 19 2024 07:11:58 webserver maldet(13237): {update} checking for available updates... Aug 19 2024 07:11:58 webserver maldet(13237): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Aug 19 2024 07:11:59 webserver maldet(13237): {update} hashing install files and checking against server... Aug 19 2024 07:11:59 webserver maldet(13237): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Aug 19 2024 07:11:59 webserver maldet(13237): {update} latest version already installed. Aug 19 2024 07:12:01 webserver maldet(13374): {sigup} performing signature update check... Aug 19 2024 07:12:01 webserver maldet(13374): {sigup} local signature set is version 20240816593955 Aug 19 2024 07:12:02 webserver maldet(13374): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Aug 19 2024 07:12:02 webserver maldet(13374): {sigup} new signature set 202408191348753 available Aug 19 2024 07:12:02 webserver maldet(13374): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Aug 19 2024 07:12:02 webserver maldet(13374): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Aug 19 2024 07:12:03 webserver maldet(13374): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Aug 19 2024 07:12:03 webserver maldet(13374): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Aug 19 2024 07:12:03 webserver maldet(13374): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Aug 19 2024 07:12:03 webserver maldet(13374): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Aug 19 2024 07:12:03 webserver maldet(13374): {sigup} unable to verify md5sum of maldet-sigpack.tgz, please try again or contact proj@rfxn.com Aug 19 2024 07:12:04 webserver maldet(13374): {sigup} verified md5sum of maldet-clean.tgz Aug 19 2024 07:12:04 webserver maldet(13374): {sigup} unpacked and installed maldet-clean.tgz Aug 19 2024 07:12:05 webserver maldet(13567): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Aug 19 2024 07:12:08 webserver maldet(13567): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Aug 19 2024 07:12:08 webserver maldet(13567): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Aug 19 2024 07:12:08 webserver maldet(13567): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Aug 19 2024 07:12:08 webserver maldet(13567): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Aug 19 2024 07:42:47 webserver maldet(13567): {scan} file list completed in 1839s, found 1773 files... Aug 19 2024 07:42:47 webserver maldet(13567): {scan} found clamav binary at /usr/bin/clamdscan, using clamav scanner engine... Aug 19 2024 07:42:47 webserver maldet(13567): {scan} scan of (1773 files) in progress... Aug 19 2024 07:43:09 webserver maldet(13567): {scan} clamscan returned an error, check /usr/local/maldetect/logs/clamscan_log for details! Aug 19 2024 07:43:09 webserver maldet(13567): {scan} scan completed on : files 1773, malware hits 0, cleaned hits 0, time 1863s Aug 19 2024 07:43:09 webserver maldet(13567): {scan} scan report saved, to view run: maldet --report 240819-0712.13567 Aug 20 2024 06:56:37 webserver maldet(4756): {update} checking for available updates... Aug 20 2024 06:56:37 webserver maldet(4756): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Aug 20 2024 06:56:37 webserver maldet(4756): {update} hashing install files and checking against server... Aug 20 2024 06:56:37 webserver maldet(4756): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Aug 20 2024 06:56:37 webserver maldet(4756): {update} latest version already installed. Aug 20 2024 06:56:37 webserver maldet(4892): {sigup} performing signature update check... Aug 20 2024 06:56:37 webserver maldet(4892): {sigup} local signature set is version 20240816593955 Aug 20 2024 06:56:37 webserver maldet(4892): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Aug 20 2024 06:56:37 webserver maldet(4892): {sigup} new signature set 202408191348753 available Aug 20 2024 06:56:37 webserver maldet(4892): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Aug 20 2024 06:56:37 webserver maldet(4892): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Aug 20 2024 06:56:38 webserver maldet(4892): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Aug 20 2024 06:56:38 webserver maldet(4892): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Aug 20 2024 06:56:38 webserver maldet(4892): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Aug 20 2024 06:56:38 webserver maldet(4892): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Aug 20 2024 06:56:38 webserver maldet(4892): {sigup} verified md5sum of maldet-sigpack.tgz Aug 20 2024 06:56:38 webserver maldet(4892): {sigup} unpacked and installed maldet-sigpack.tgz Aug 20 2024 06:56:38 webserver maldet(4892): {sigup} verified md5sum of maldet-clean.tgz Aug 20 2024 06:56:38 webserver maldet(4892): {sigup} unpacked and installed maldet-clean.tgz Aug 20 2024 06:56:38 webserver maldet(4892): {sigup} signature set update completed Aug 20 2024 06:56:38 webserver maldet(4892): {sigup} 17638 signatures (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Aug 20 2024 06:56:38 webserver maldet(5123): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Aug 20 2024 06:56:38 webserver maldet(5123): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Aug 20 2024 06:56:38 webserver maldet(5123): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Aug 20 2024 06:56:38 webserver maldet(5123): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Aug 20 2024 06:56:38 webserver maldet(5123): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Aug 20 2024 06:58:48 webserver maldet(5123): {scan} file list completed in 130s, found 733 files... Aug 20 2024 06:58:48 webserver maldet(5123): {scan} found clamav binary at /usr/bin/clamdscan, using clamav scanner engine... Aug 20 2024 06:58:48 webserver maldet(5123): {scan} scan of (733 files) in progress... Aug 20 2024 06:59:06 webserver maldet(5123): {scan} clamscan returned an error, check /usr/local/maldetect/logs/clamscan_log for details! Aug 20 2024 06:59:06 webserver maldet(5123): {scan} scan completed on : files 733, malware hits 0, cleaned hits 0, time 148s Aug 20 2024 06:59:06 webserver maldet(5123): {scan} scan report saved, to view run: maldet --report 240820-0656.5123 Aug 21 2024 06:58:54 webserver maldet(31754): {update} checking for available updates... Aug 21 2024 06:58:54 webserver maldet(31754): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Aug 21 2024 06:58:55 webserver maldet(31754): {update} hashing install files and checking against server... Aug 21 2024 06:58:55 webserver maldet(31754): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Aug 21 2024 06:58:55 webserver maldet(31754): {update} latest version already installed. Aug 21 2024 06:58:57 webserver maldet(31890): {sigup} performing signature update check... Aug 21 2024 06:58:58 webserver maldet(31890): {sigup} local signature set is version 202408191348753 Aug 21 2024 06:58:58 webserver maldet(31890): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Aug 21 2024 06:58:58 webserver maldet(31890): {sigup} latest signature set already installed Aug 21 2024 06:59:00 webserver maldet(32005): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Aug 21 2024 06:59:02 webserver maldet(32005): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Aug 21 2024 06:59:03 webserver maldet(32005): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Aug 21 2024 06:59:03 webserver maldet(32005): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Aug 21 2024 06:59:03 webserver maldet(32005): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Aug 21 2024 08:17:37 webserver maldet(32005): {scan} file list completed in 4714s, found 1064 files... Aug 21 2024 08:17:37 webserver maldet(32005): {scan} found clamav binary at /usr/bin/clamdscan, using clamav scanner engine... Aug 21 2024 08:17:37 webserver maldet(32005): {scan} scan of (1064 files) in progress... Aug 21 2024 08:19:33 webserver maldet(32005): {scan} clamscan returned an error, check /usr/local/maldetect/logs/clamscan_log for details! Aug 21 2024 08:19:34 webserver maldet(32005): {scan} scan completed on : files 1064, malware hits 0, cleaned hits 0, time 4833s Aug 21 2024 08:19:34 webserver maldet(32005): {scan} scan report saved, to view run: maldet --report 240821-0658.32005 Aug 22 2024 07:08:43 webserver maldet(19625): {update} checking for available updates... Aug 22 2024 07:08:43 webserver maldet(19625): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Aug 22 2024 07:08:43 webserver maldet(19625): {update} hashing install files and checking against server... Aug 22 2024 07:08:43 webserver maldet(19625): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Aug 22 2024 07:08:43 webserver maldet(19625): {update} latest version already installed. Aug 22 2024 07:08:43 webserver maldet(19761): {sigup} performing signature update check... Aug 22 2024 07:08:44 webserver maldet(19761): {sigup} local signature set is version 202408191348753 Aug 22 2024 07:08:44 webserver maldet(19761): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Aug 22 2024 07:08:44 webserver maldet(19761): {sigup} new signature set 202408222103536 available Aug 22 2024 07:08:44 webserver maldet(19761): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Aug 22 2024 07:08:44 webserver maldet(19761): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Aug 22 2024 07:08:44 webserver maldet(19761): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Aug 22 2024 07:08:44 webserver maldet(19761): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Aug 22 2024 07:08:44 webserver maldet(19761): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Aug 22 2024 07:08:44 webserver maldet(19761): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Aug 22 2024 07:08:44 webserver maldet(19761): {sigup} unable to verify md5sum of maldet-sigpack.tgz, please try again or contact proj@rfxn.com Aug 22 2024 07:08:44 webserver maldet(19761): {sigup} verified md5sum of maldet-clean.tgz Aug 22 2024 07:08:44 webserver maldet(19761): {sigup} unpacked and installed maldet-clean.tgz Aug 22 2024 07:08:44 webserver maldet(19947): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Aug 22 2024 07:08:45 webserver maldet(19947): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Aug 22 2024 07:08:45 webserver maldet(19947): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Aug 22 2024 07:08:45 webserver maldet(19947): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Aug 22 2024 07:08:45 webserver maldet(19947): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Aug 22 2024 07:10:43 webserver maldet(19947): {scan} file list completed in 118s, found 1160 files... Aug 22 2024 07:10:43 webserver maldet(19947): {scan} found clamav binary at /usr/bin/clamdscan, using clamav scanner engine... Aug 22 2024 07:10:43 webserver maldet(19947): {scan} scan of (1160 files) in progress... Aug 22 2024 07:10:56 webserver maldet(19947): {scan} clamscan returned an error, check /usr/local/maldetect/logs/clamscan_log for details! Aug 22 2024 07:10:56 webserver maldet(19947): {scan} scan completed on : files 1160, malware hits 0, cleaned hits 0, time 132s Aug 22 2024 07:10:56 webserver maldet(19947): {scan} scan report saved, to view run: maldet --report 240822-0708.19947 Aug 23 2024 06:57:13 webserver maldet(12549): {update} checking for available updates... Aug 23 2024 06:57:13 webserver maldet(12549): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Aug 23 2024 06:57:13 webserver maldet(12549): {update} hashing install files and checking against server... Aug 23 2024 06:57:13 webserver maldet(12549): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Aug 23 2024 06:57:13 webserver maldet(12549): {update} latest version already installed. Aug 23 2024 06:57:13 webserver maldet(12685): {sigup} performing signature update check... Aug 23 2024 06:57:13 webserver maldet(12685): {sigup} local signature set is version 202408191348753 Aug 23 2024 06:57:14 webserver maldet(12685): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Aug 23 2024 06:57:14 webserver maldet(12685): {sigup} new signature set 202408222103536 available Aug 23 2024 06:57:14 webserver maldet(12685): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Aug 23 2024 06:57:14 webserver maldet(12685): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Aug 23 2024 06:57:14 webserver maldet(12685): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Aug 23 2024 06:57:14 webserver maldet(12685): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Aug 23 2024 06:57:14 webserver maldet(12685): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Aug 23 2024 06:57:14 webserver maldet(12685): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Aug 23 2024 06:57:14 webserver maldet(12685): {sigup} verified md5sum of maldet-sigpack.tgz Aug 23 2024 06:57:14 webserver maldet(12685): {sigup} unpacked and installed maldet-sigpack.tgz Aug 23 2024 06:57:14 webserver maldet(12685): {sigup} verified md5sum of maldet-clean.tgz Aug 23 2024 06:57:14 webserver maldet(12685): {sigup} unpacked and installed maldet-clean.tgz Aug 23 2024 06:57:14 webserver maldet(12685): {sigup} signature set update completed Aug 23 2024 06:57:14 webserver maldet(12685): {sigup} 17638 signatures (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Aug 23 2024 06:57:14 webserver maldet(12916): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Aug 23 2024 06:57:15 webserver maldet(12916): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Aug 23 2024 06:57:15 webserver maldet(12916): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Aug 23 2024 06:57:15 webserver maldet(12916): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Aug 23 2024 06:57:15 webserver maldet(12916): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Aug 23 2024 06:59:28 webserver maldet(12916): {scan} file list completed in 133s, found 990 files... Aug 23 2024 06:59:28 webserver maldet(12916): {scan} found clamav binary at /usr/bin/clamdscan, using clamav scanner engine... Aug 23 2024 06:59:28 webserver maldet(12916): {scan} scan of (990 files) in progress... Aug 23 2024 06:59:41 webserver maldet(12916): {scan} clamscan returned an error, check /usr/local/maldetect/logs/clamscan_log for details! Aug 23 2024 06:59:41 webserver maldet(12916): {scan} scan completed on : files 990, malware hits 0, cleaned hits 0, time 147s Aug 23 2024 06:59:41 webserver maldet(12916): {scan} scan report saved, to view run: maldet --report 240823-0657.12916 Aug 23 2024 17:11:33 webserver maldet(314): {mon} could not find inotifywait command, install yum package inotify-tools or download from https://github.com/rvoicilas/inotify-tools/wiki/ Aug 24 2024 07:02:07 webserver maldet(702): {update} checking for available updates... Aug 24 2024 07:02:08 webserver maldet(702): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Aug 24 2024 07:02:08 webserver maldet(702): {update} hashing install files and checking against server... Aug 24 2024 07:02:09 webserver maldet(702): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Aug 24 2024 07:02:09 webserver maldet(702): {update} latest version already installed. Aug 24 2024 07:02:11 webserver maldet(838): {sigup} performing signature update check... Aug 24 2024 07:02:11 webserver maldet(838): {sigup} local signature set is version 202408222103536 Aug 24 2024 07:02:12 webserver maldet(838): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Aug 24 2024 07:02:12 webserver maldet(838): {sigup} latest signature set already installed Aug 24 2024 07:02:15 webserver maldet(952): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Aug 24 2024 07:02:17 webserver maldet(952): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Aug 24 2024 07:02:17 webserver maldet(952): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Aug 24 2024 07:02:17 webserver maldet(952): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Aug 24 2024 07:02:17 webserver maldet(952): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Aug 24 2024 08:01:03 webserver maldet(952): {scan} file list completed in 3526s, found 1456 files... Aug 24 2024 08:01:03 webserver maldet(952): {scan} found clamav binary at /usr/bin/clamdscan, using clamav scanner engine... Aug 24 2024 08:01:03 webserver maldet(952): {scan} scan of (1456 files) in progress... Aug 24 2024 08:01:18 webserver maldet(952): {scan} scan completed on : files 1456, malware hits 0, cleaned hits 0, time 3543s Aug 24 2024 08:01:18 webserver maldet(952): {scan} scan report saved, to view run: maldet --report 240824-0702.952 Aug 25 2024 07:02:31 webserver maldet(2165): {update} checking for available updates... Aug 25 2024 07:02:31 webserver maldet(2165): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Aug 25 2024 07:02:31 webserver maldet(2165): {update} hashing install files and checking against server... Aug 25 2024 07:02:31 webserver maldet(2165): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Aug 25 2024 07:02:31 webserver maldet(2165): {update} latest version already installed. Aug 25 2024 07:02:31 webserver maldet(2301): {sigup} performing signature update check... Aug 25 2024 07:02:31 webserver maldet(2301): {sigup} local signature set is version 202408222103536 Aug 25 2024 07:02:31 webserver maldet(2301): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Aug 25 2024 07:02:31 webserver maldet(2301): {sigup} new signature set 202408252858527 available Aug 25 2024 07:02:31 webserver maldet(2301): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Aug 25 2024 07:02:31 webserver maldet(2301): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Aug 25 2024 07:02:31 webserver maldet(2301): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Aug 25 2024 07:02:31 webserver maldet(2301): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Aug 25 2024 07:02:31 webserver maldet(2301): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Aug 25 2024 07:02:31 webserver maldet(2301): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Aug 25 2024 07:02:31 webserver maldet(2301): {sigup} verified md5sum of maldet-sigpack.tgz Aug 25 2024 07:02:31 webserver maldet(2301): {sigup} unpacked and installed maldet-sigpack.tgz Aug 25 2024 07:02:31 webserver maldet(2301): {sigup} verified md5sum of maldet-clean.tgz Aug 25 2024 07:02:31 webserver maldet(2301): {sigup} unpacked and installed maldet-clean.tgz Aug 25 2024 07:02:31 webserver maldet(2301): {sigup} signature set update completed Aug 25 2024 07:02:31 webserver maldet(2301): {sigup} 17638 signatures (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Aug 25 2024 07:02:31 webserver maldet(2532): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Aug 25 2024 07:02:31 webserver maldet(2532): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Aug 25 2024 07:02:31 webserver maldet(2532): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Aug 25 2024 07:02:31 webserver maldet(2532): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Aug 25 2024 07:02:31 webserver maldet(2532): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Aug 25 2024 07:02:36 webserver maldet(2532): {scan} file list completed in 5s, found 1007 files... Aug 25 2024 07:02:36 webserver maldet(2532): {scan} found clamav binary at /usr/bin/clamdscan, using clamav scanner engine... Aug 25 2024 07:02:36 webserver maldet(2532): {scan} scan of (1007 files) in progress... Aug 25 2024 07:02:44 webserver maldet(2532): {scan} scan completed on : files 1007, malware hits 0, cleaned hits 0, time 13s Aug 25 2024 07:02:44 webserver maldet(2532): {scan} scan report saved, to view run: maldet --report 240825-0702.2532 Aug 26 2024 06:58:23 webserver maldet(32728): {update} checking for available updates... Aug 26 2024 06:58:23 webserver maldet(32728): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Aug 26 2024 06:58:23 webserver maldet(32728): {update} hashing install files and checking against server... Aug 26 2024 06:58:23 webserver maldet(32728): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Aug 26 2024 06:58:23 webserver maldet(32728): {update} latest version already installed. Aug 26 2024 06:58:23 webserver maldet(412): {sigup} performing signature update check... Aug 26 2024 06:58:23 webserver maldet(412): {sigup} local signature set is version 202408252858527 Aug 26 2024 06:58:24 webserver maldet(412): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Aug 26 2024 06:58:24 webserver maldet(412): {sigup} latest signature set already installed Aug 26 2024 06:58:24 webserver maldet(526): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Aug 26 2024 06:58:24 webserver maldet(526): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Aug 26 2024 06:58:24 webserver maldet(526): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Aug 26 2024 06:58:24 webserver maldet(526): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Aug 26 2024 06:58:24 webserver maldet(526): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Aug 26 2024 06:58:29 webserver maldet(526): {scan} file list completed in 5s, found 1339 files... Aug 26 2024 06:58:29 webserver maldet(526): {scan} found clamav binary at /usr/bin/clamdscan, using clamav scanner engine... Aug 26 2024 06:58:29 webserver maldet(526): {scan} scan of (1339 files) in progress... Aug 26 2024 06:58:39 webserver maldet(526): {scan} scan completed on : files 1339, malware hits 0, cleaned hits 0, time 15s Aug 26 2024 06:58:39 webserver maldet(526): {scan} scan report saved, to view run: maldet --report 240826-0658.526 Aug 27 2024 06:58:10 webserver maldet(24423): {update} checking for available updates... Aug 27 2024 06:58:10 webserver maldet(24423): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Aug 27 2024 06:58:10 webserver maldet(24423): {update} hashing install files and checking against server... Aug 27 2024 06:58:11 webserver maldet(24423): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Aug 27 2024 06:58:11 webserver maldet(24423): {update} latest version already installed. Aug 27 2024 06:58:11 webserver maldet(24559): {sigup} performing signature update check... Aug 27 2024 06:58:11 webserver maldet(24559): {sigup} local signature set is version 202408252858527 Aug 27 2024 06:58:11 webserver maldet(24559): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Aug 27 2024 06:58:11 webserver maldet(24559): {sigup} latest signature set already installed Aug 27 2024 06:58:11 webserver maldet(24673): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Aug 27 2024 06:58:11 webserver maldet(24673): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Aug 27 2024 06:58:11 webserver maldet(24673): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Aug 27 2024 06:58:11 webserver maldet(24673): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Aug 27 2024 06:58:11 webserver maldet(24673): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Aug 27 2024 06:58:16 webserver maldet(24673): {scan} file list completed in 5s, found 792 files... Aug 27 2024 06:58:16 webserver maldet(24673): {scan} found clamav binary at /usr/bin/clamdscan, using clamav scanner engine... Aug 27 2024 06:58:16 webserver maldet(24673): {scan} scan of (792 files) in progress... Aug 27 2024 06:58:22 webserver maldet(24673): {scan} clamscan returned an error, check /usr/local/maldetect/logs/clamscan_log for details! Aug 27 2024 06:58:22 webserver maldet(24673): {scan} scan completed on : files 792, malware hits 0, cleaned hits 0, time 11s Aug 27 2024 06:58:22 webserver maldet(24673): {scan} scan report saved, to view run: maldet --report 240827-0658.24673 Aug 28 2024 07:01:35 webserver maldet(17170): {update} checking for available updates... Aug 28 2024 07:01:35 webserver maldet(17170): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Aug 28 2024 07:01:35 webserver maldet(17170): {update} hashing install files and checking against server... Aug 28 2024 07:01:35 webserver maldet(17170): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Aug 28 2024 07:01:35 webserver maldet(17170): {update} latest version already installed. Aug 28 2024 07:01:35 webserver maldet(17306): {sigup} performing signature update check... Aug 28 2024 07:01:35 webserver maldet(17306): {sigup} local signature set is version 202408252858527 Aug 28 2024 07:01:35 webserver maldet(17306): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Aug 28 2024 07:01:35 webserver maldet(17306): {sigup} new signature set 202408283551914 available Aug 28 2024 07:01:35 webserver maldet(17306): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Aug 28 2024 07:01:35 webserver maldet(17306): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Aug 28 2024 07:01:35 webserver maldet(17306): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Aug 28 2024 07:01:35 webserver maldet(17306): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Aug 28 2024 07:01:35 webserver maldet(17306): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Aug 28 2024 07:01:35 webserver maldet(17306): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Aug 28 2024 07:01:35 webserver maldet(17306): {sigup} unable to verify md5sum of maldet-sigpack.tgz, please try again or contact proj@rfxn.com Aug 28 2024 07:01:35 webserver maldet(17306): {sigup} verified md5sum of maldet-clean.tgz Aug 28 2024 07:01:35 webserver maldet(17306): {sigup} unpacked and installed maldet-clean.tgz Aug 28 2024 07:01:35 webserver maldet(17492): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Aug 28 2024 07:01:35 webserver maldet(17492): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Aug 28 2024 07:01:35 webserver maldet(17492): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Aug 28 2024 07:01:35 webserver maldet(17492): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Aug 28 2024 07:01:35 webserver maldet(17492): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Aug 28 2024 07:01:40 webserver maldet(17492): {scan} file list completed in 5s, found 479 files... Aug 28 2024 07:01:40 webserver maldet(17492): {scan} found clamav binary at /usr/bin/clamdscan, using clamav scanner engine... Aug 28 2024 07:01:40 webserver maldet(17492): {scan} scan of (479 files) in progress... Aug 28 2024 07:01:44 webserver maldet(17492): {scan} scan completed on : files 479, malware hits 0, cleaned hits 0, time 9s Aug 28 2024 07:01:44 webserver maldet(17492): {scan} scan report saved, to view run: maldet --report 240828-0701.17492 Aug 29 2024 07:00:49 webserver maldet(15259): {update} checking for available updates... Aug 29 2024 07:00:50 webserver maldet(15259): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Aug 29 2024 07:00:50 webserver maldet(15259): {update} hashing install files and checking against server... Aug 29 2024 07:00:52 webserver maldet(15259): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Aug 29 2024 07:00:52 webserver maldet(15259): {update} latest version already installed. Aug 29 2024 07:00:54 webserver maldet(15415): {sigup} performing signature update check... Aug 29 2024 07:00:54 webserver maldet(15415): {sigup} local signature set is version 202408252858527 Aug 29 2024 07:00:56 webserver maldet(15415): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Aug 29 2024 07:00:56 webserver maldet(15415): {sigup} new signature set 202408283551914 available Aug 29 2024 07:00:56 webserver maldet(15415): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Aug 29 2024 07:00:57 webserver maldet(15415): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Aug 29 2024 07:00:59 webserver maldet(15415): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Aug 29 2024 07:00:59 webserver maldet(15415): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Aug 29 2024 07:00:59 webserver maldet(15415): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Aug 29 2024 07:01:00 webserver maldet(15415): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Aug 29 2024 07:01:01 webserver maldet(15415): {sigup} verified md5sum of maldet-sigpack.tgz Aug 29 2024 07:01:03 webserver maldet(15415): {sigup} unpacked and installed maldet-sigpack.tgz Aug 29 2024 07:01:03 webserver maldet(15415): {sigup} verified md5sum of maldet-clean.tgz Aug 29 2024 07:01:03 webserver maldet(15415): {sigup} unpacked and installed maldet-clean.tgz Aug 29 2024 07:01:04 webserver maldet(15415): {sigup} signature set update completed Aug 29 2024 07:01:04 webserver maldet(15415): {sigup} 17638 signatures (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Aug 29 2024 07:01:07 webserver maldet(15654): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Aug 29 2024 07:01:10 webserver maldet(15654): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Aug 29 2024 07:01:10 webserver maldet(15654): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Aug 29 2024 07:01:10 webserver maldet(15654): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Aug 29 2024 07:01:11 webserver maldet(15654): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Aug 29 2024 08:08:33 webserver maldet(15654): {scan} file list completed in 4042s, found 505 files... Aug 29 2024 08:08:33 webserver maldet(15654): {scan} found clamav binary at /usr/bin/clamdscan, using clamav scanner engine... Aug 29 2024 08:08:33 webserver maldet(15654): {scan} scan of (505 files) in progress... Aug 29 2024 08:08:42 webserver maldet(15654): {scan} scan completed on : files 505, malware hits 0, cleaned hits 0, time 4055s Aug 29 2024 08:08:42 webserver maldet(15654): {scan} scan report saved, to view run: maldet --report 240829-0701.15654 Aug 30 2024 07:03:36 webserver maldet(14313): {update} checking for available updates... Aug 30 2024 07:03:36 webserver maldet(14313): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Aug 30 2024 07:03:36 webserver maldet(14313): {update} hashing install files and checking against server... Aug 30 2024 07:03:36 webserver maldet(14313): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Aug 30 2024 07:03:36 webserver maldet(14313): {update} latest version already installed. Aug 30 2024 07:03:36 webserver maldet(14449): {sigup} performing signature update check... Aug 30 2024 07:03:36 webserver maldet(14449): {sigup} local signature set is version 202408283551914 Aug 30 2024 07:03:36 webserver maldet(14449): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Aug 30 2024 07:03:36 webserver maldet(14449): {sigup} latest signature set already installed Aug 30 2024 07:03:36 webserver maldet(14563): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Aug 30 2024 07:03:36 webserver maldet(14563): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Aug 30 2024 07:03:36 webserver maldet(14563): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Aug 30 2024 07:03:36 webserver maldet(14563): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Aug 30 2024 07:03:36 webserver maldet(14563): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Aug 30 2024 07:03:41 webserver maldet(14563): {scan} file list completed in 5s, found 478 files... Aug 30 2024 07:03:41 webserver maldet(14563): {scan} found clamav binary at /usr/bin/clamdscan, using clamav scanner engine... Aug 30 2024 07:03:41 webserver maldet(14563): {scan} scan of (478 files) in progress... Aug 30 2024 07:03:45 webserver maldet(14563): {scan} scan completed on : files 478, malware hits 0, cleaned hits 0, time 9s Aug 30 2024 07:03:45 webserver maldet(14563): {scan} scan report saved, to view run: maldet --report 240830-0703.14563 Aug 31 2024 06:55:52 webserver maldet(8258): {update} checking for available updates... Aug 31 2024 06:55:52 webserver maldet(8258): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Aug 31 2024 06:55:52 webserver maldet(8258): {update} hashing install files and checking against server... Aug 31 2024 06:55:52 webserver maldet(8258): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Aug 31 2024 06:55:52 webserver maldet(8258): {update} latest version already installed. Aug 31 2024 06:55:52 webserver maldet(8394): {sigup} performing signature update check... Aug 31 2024 06:55:52 webserver maldet(8394): {sigup} local signature set is version 202408283551914 Aug 31 2024 06:55:52 webserver maldet(8394): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Aug 31 2024 06:55:52 webserver maldet(8394): {sigup} latest signature set already installed Aug 31 2024 06:55:52 webserver maldet(8508): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Aug 31 2024 06:55:52 webserver maldet(8508): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Aug 31 2024 06:55:52 webserver maldet(8508): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Aug 31 2024 06:55:52 webserver maldet(8508): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Aug 31 2024 06:55:52 webserver maldet(8508): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Aug 31 2024 06:55:57 webserver maldet(8508): {scan} file list completed in 5s, found 344 files... Aug 31 2024 06:55:57 webserver maldet(8508): {scan} found clamav binary at /usr/bin/clamdscan, using clamav scanner engine... Aug 31 2024 06:55:57 webserver maldet(8508): {scan} scan of (344 files) in progress... Aug 31 2024 06:56:00 webserver maldet(8508): {scan} clamscan returned an error, check /usr/local/maldetect/logs/clamscan_log for details! Aug 31 2024 06:56:00 webserver maldet(8508): {scan} scan completed on : files 344, malware hits 0, cleaned hits 0, time 8s Aug 31 2024 06:56:00 webserver maldet(8508): {scan} scan report saved, to view run: maldet --report 240831-0655.8508 Sep 01 2024 06:56:34 webserver maldet(2524): {update} checking for available updates... Sep 01 2024 06:56:34 webserver maldet(2524): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Sep 01 2024 06:56:34 webserver maldet(2524): {update} hashing install files and checking against server... Sep 01 2024 06:56:35 webserver maldet(2524): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Sep 01 2024 06:56:35 webserver maldet(2524): {update} latest version already installed. Sep 01 2024 06:56:35 webserver maldet(2660): {sigup} performing signature update check... Sep 01 2024 06:56:35 webserver maldet(2660): {sigup} local signature set is version 202408283551914 Sep 01 2024 06:56:35 webserver maldet(2660): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Sep 01 2024 06:56:35 webserver maldet(2660): {sigup} new signature set 20240831113504 available Sep 01 2024 06:56:35 webserver maldet(2660): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Sep 01 2024 06:56:35 webserver maldet(2660): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Sep 01 2024 06:56:35 webserver maldet(2660): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Sep 01 2024 06:56:35 webserver maldet(2660): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Sep 01 2024 06:56:35 webserver maldet(2660): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Sep 01 2024 06:56:35 webserver maldet(2660): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Sep 01 2024 06:56:35 webserver maldet(2660): {sigup} unable to verify md5sum of maldet-sigpack.tgz, please try again or contact proj@rfxn.com Sep 01 2024 06:56:35 webserver maldet(2660): {sigup} verified md5sum of maldet-clean.tgz Sep 01 2024 06:56:35 webserver maldet(2660): {sigup} unpacked and installed maldet-clean.tgz Sep 01 2024 06:56:35 webserver maldet(2846): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Sep 01 2024 06:56:35 webserver maldet(2846): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Sep 01 2024 06:56:35 webserver maldet(2846): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Sep 01 2024 06:56:35 webserver maldet(2846): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Sep 01 2024 06:56:35 webserver maldet(2846): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Sep 01 2024 06:56:40 webserver maldet(2846): {scan} file list completed in 5s, found 482 files... Sep 01 2024 06:56:40 webserver maldet(2846): {scan} found clamav binary at /usr/bin/clamdscan, using clamav scanner engine... Sep 01 2024 06:56:40 webserver maldet(2846): {scan} scan of (482 files) in progress... Sep 01 2024 06:56:44 webserver maldet(2846): {scan} scan completed on : files 482, malware hits 0, cleaned hits 0, time 9s Sep 01 2024 06:56:44 webserver maldet(2846): {scan} scan report saved, to view run: maldet --report 240901-0656.2846 Sep 02 2024 06:58:38 webserver maldet(12916): {update} checking for available updates... Sep 02 2024 07:00:35 webserver maldet(12916): {update} could not download https://cdn.rfxn.com/downloads/maldet.current.ver, please try again later. Sep 02 2024 07:00:35 webserver maldet(12916): {update} could not download version file from server, please try again later. Sep 02 2024 07:00:56 webserver maldet(13173): {sigup} performing signature update check... Sep 02 2024 07:00:56 webserver maldet(13173): {sigup} local signature set is version 202408283551914 Sep 02 2024 07:02:53 webserver maldet(13173): {sigup} could not download https://cdn.rfxn.com/downloads/maldet.sigs.ver, please try again later. Sep 02 2024 07:02:53 webserver maldet(13173): {sigup} could not download signature data from server, please try again later. Sep 02 2024 07:03:13 webserver maldet(13310): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Sep 02 2024 07:03:13 webserver maldet(13310): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Sep 02 2024 07:03:13 webserver maldet(13310): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Sep 02 2024 07:03:13 webserver maldet(13310): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Sep 02 2024 07:03:13 webserver maldet(13310): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Sep 02 2024 07:03:18 webserver maldet(13310): {scan} file list completed in 5s, found 13 files... Sep 02 2024 07:03:18 webserver maldet(13310): {scan} found clamav binary at /usr/bin/clamdscan, using clamav scanner engine... Sep 02 2024 07:03:18 webserver maldet(13310): {scan} scan of (13 files) in progress... Sep 02 2024 07:03:18 webserver maldet(13310): {scan} scan completed on : files 13, malware hits 0, cleaned hits 0, time 5s Sep 02 2024 07:03:18 webserver maldet(13310): {scan} scan report saved, to view run: maldet --report 240902-0702.13310 Sep 03 2024 06:56:42 webserver maldet(25874): {update} checking for available updates... Sep 03 2024 06:56:42 webserver maldet(25874): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Sep 03 2024 06:56:42 webserver maldet(25874): {update} hashing install files and checking against server... Sep 03 2024 06:56:42 webserver maldet(25874): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Sep 03 2024 06:56:42 webserver maldet(25874): {update} latest version already installed. Sep 03 2024 06:56:42 webserver maldet(26010): {sigup} performing signature update check... Sep 03 2024 06:56:42 webserver maldet(26010): {sigup} local signature set is version 202408283551914 Sep 03 2024 06:56:42 webserver maldet(26010): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Sep 03 2024 06:56:42 webserver maldet(26010): {sigup} new signature set 20240901866020 available Sep 03 2024 06:56:42 webserver maldet(26010): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Sep 03 2024 06:56:42 webserver maldet(26010): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Sep 03 2024 06:56:42 webserver maldet(26010): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Sep 03 2024 06:56:42 webserver maldet(26010): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Sep 03 2024 06:56:42 webserver maldet(26010): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Sep 03 2024 06:56:42 webserver maldet(26010): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Sep 03 2024 06:56:42 webserver maldet(26010): {sigup} verified md5sum of maldet-sigpack.tgz Sep 03 2024 06:56:42 webserver maldet(26010): {sigup} unpacked and installed maldet-sigpack.tgz Sep 03 2024 06:56:42 webserver maldet(26010): {sigup} verified md5sum of maldet-clean.tgz Sep 03 2024 06:56:42 webserver maldet(26010): {sigup} unpacked and installed maldet-clean.tgz Sep 03 2024 06:56:42 webserver maldet(26010): {sigup} signature set update completed Sep 03 2024 06:56:43 webserver maldet(26010): {sigup} 17638 signatures (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Sep 03 2024 06:56:43 webserver maldet(26241): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Sep 03 2024 06:56:43 webserver maldet(26241): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Sep 03 2024 06:56:43 webserver maldet(26241): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Sep 03 2024 06:56:43 webserver maldet(26241): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Sep 03 2024 06:56:43 webserver maldet(26241): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Sep 03 2024 06:56:47 webserver maldet(26241): {scan} file list completed in 4s, found 48 files... Sep 03 2024 06:56:47 webserver maldet(26241): {scan} found clamav binary at /usr/bin/clamdscan, using clamav scanner engine... Sep 03 2024 06:56:47 webserver maldet(26241): {scan} scan of (48 files) in progress... Sep 03 2024 06:56:48 webserver maldet(26241): {scan} scan completed on : files 48, malware hits 0, cleaned hits 0, time 5s Sep 03 2024 06:56:48 webserver maldet(26241): {scan} scan report saved, to view run: maldet --report 240903-0656.26241 Sep 04 2024 06:57:35 webserver maldet(11672): {update} checking for available updates... Sep 04 2024 06:57:35 webserver maldet(11672): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Sep 04 2024 06:57:35 webserver maldet(11672): {update} hashing install files and checking against server... Sep 04 2024 06:57:35 webserver maldet(11672): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Sep 04 2024 06:57:35 webserver maldet(11672): {update} latest version already installed. Sep 04 2024 06:57:35 webserver maldet(11808): {sigup} performing signature update check... Sep 04 2024 06:57:35 webserver maldet(11808): {sigup} local signature set is version 20240901866020 Sep 04 2024 06:57:35 webserver maldet(11808): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Sep 04 2024 06:57:35 webserver maldet(11808): {sigup} latest signature set already installed Sep 04 2024 06:57:35 webserver maldet(11922): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Sep 04 2024 06:57:35 webserver maldet(11922): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Sep 04 2024 06:57:35 webserver maldet(11922): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Sep 04 2024 06:57:35 webserver maldet(11922): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Sep 04 2024 06:57:35 webserver maldet(11922): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Sep 04 2024 06:57:40 webserver maldet(11922): {scan} file list completed in 5s, found 284 files... Sep 04 2024 06:57:40 webserver maldet(11922): {scan} found clamav binary at /usr/bin/clamdscan, using clamav scanner engine... Sep 04 2024 06:57:40 webserver maldet(11922): {scan} scan of (284 files) in progress... Sep 04 2024 06:57:42 webserver maldet(11922): {scan} scan completed on : files 284, malware hits 0, cleaned hits 0, time 7s Sep 04 2024 06:57:42 webserver maldet(11922): {scan} scan report saved, to view run: maldet --report 240904-0657.11922 Sep 05 2024 07:04:51 webserver maldet(7263): {update} checking for available updates... Sep 05 2024 07:04:51 webserver maldet(7263): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Sep 05 2024 07:04:51 webserver maldet(7263): {update} hashing install files and checking against server... Sep 05 2024 07:04:51 webserver maldet(7263): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Sep 05 2024 07:04:51 webserver maldet(7263): {update} latest version already installed. Sep 05 2024 07:04:51 webserver maldet(7399): {sigup} performing signature update check... Sep 05 2024 07:04:51 webserver maldet(7399): {sigup} local signature set is version 20240901866020 Sep 05 2024 07:04:51 webserver maldet(7399): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Sep 05 2024 07:04:51 webserver maldet(7399): {sigup} new signature set 202409041575765 available Sep 05 2024 07:04:51 webserver maldet(7399): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Sep 05 2024 07:04:51 webserver maldet(7399): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Sep 05 2024 07:04:51 webserver maldet(7399): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Sep 05 2024 07:04:51 webserver maldet(7399): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Sep 05 2024 07:04:51 webserver maldet(7399): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Sep 05 2024 07:04:51 webserver maldet(7399): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Sep 05 2024 07:04:51 webserver maldet(7399): {sigup} verified md5sum of maldet-sigpack.tgz Sep 05 2024 07:04:51 webserver maldet(7399): {sigup} unpacked and installed maldet-sigpack.tgz Sep 05 2024 07:04:51 webserver maldet(7399): {sigup} verified md5sum of maldet-clean.tgz Sep 05 2024 07:04:51 webserver maldet(7399): {sigup} unpacked and installed maldet-clean.tgz Sep 05 2024 07:04:51 webserver maldet(7399): {sigup} signature set update completed Sep 05 2024 07:04:51 webserver maldet(7399): {sigup} 17638 signatures (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Sep 05 2024 07:04:52 webserver maldet(7630): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Sep 05 2024 07:04:52 webserver maldet(7630): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Sep 05 2024 07:04:52 webserver maldet(7630): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Sep 05 2024 07:04:52 webserver maldet(7630): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Sep 05 2024 07:04:52 webserver maldet(7630): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Sep 05 2024 07:04:56 webserver maldet(7630): {scan} file list completed in 4s, found 451 files... Sep 05 2024 07:04:56 webserver maldet(7630): {scan} found clamav binary at /usr/bin/clamdscan, using clamav scanner engine... Sep 05 2024 07:04:56 webserver maldet(7630): {scan} scan of (451 files) in progress... Sep 05 2024 07:05:00 webserver maldet(7630): {scan} scan completed on : files 451, malware hits 0, cleaned hits 0, time 8s Sep 05 2024 07:05:00 webserver maldet(7630): {scan} scan report saved, to view run: maldet --report 240905-0704.7630 Sep 06 2024 07:06:40 webserver maldet(25834): {update} checking for available updates... Sep 06 2024 07:06:40 webserver maldet(25834): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Sep 06 2024 07:06:40 webserver maldet(25834): {update} hashing install files and checking against server... Sep 06 2024 07:06:40 webserver maldet(25834): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Sep 06 2024 07:06:40 webserver maldet(25834): {update} latest version already installed. Sep 06 2024 07:06:40 webserver maldet(25970): {sigup} performing signature update check... Sep 06 2024 07:06:40 webserver maldet(25970): {sigup} local signature set is version 202409041575765 Sep 06 2024 07:06:41 webserver maldet(25970): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Sep 06 2024 07:06:41 webserver maldet(25970): {sigup} latest signature set already installed Sep 06 2024 07:06:41 webserver maldet(26084): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Sep 06 2024 07:06:41 webserver maldet(26084): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Sep 06 2024 07:06:41 webserver maldet(26084): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Sep 06 2024 07:06:41 webserver maldet(26084): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Sep 06 2024 07:06:41 webserver maldet(26084): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Sep 06 2024 07:06:45 webserver maldet(26084): {scan} file list completed in 4s, found 114 files... Sep 06 2024 07:06:45 webserver maldet(26084): {scan} found clamav binary at /usr/bin/clamdscan, using clamav scanner engine... Sep 06 2024 07:06:45 webserver maldet(26084): {scan} scan of (114 files) in progress... Sep 06 2024 07:06:46 webserver maldet(26084): {scan} scan completed on : files 114, malware hits 0, cleaned hits 0, time 5s Sep 06 2024 07:06:47 webserver maldet(26084): {scan} scan report saved, to view run: maldet --report 240906-0706.26084 Sep 07 2024 06:58:33 webserver maldet(14003): {update} checking for available updates... Sep 07 2024 06:58:33 webserver maldet(14003): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Sep 07 2024 06:58:33 webserver maldet(14003): {update} hashing install files and checking against server... Sep 07 2024 06:58:33 webserver maldet(14003): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Sep 07 2024 06:58:33 webserver maldet(14003): {update} latest version already installed. Sep 07 2024 06:58:34 webserver maldet(14139): {sigup} performing signature update check... Sep 07 2024 06:58:34 webserver maldet(14139): {sigup} local signature set is version 202409041575765 Sep 07 2024 06:58:34 webserver maldet(14139): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Sep 07 2024 06:58:34 webserver maldet(14139): {sigup} latest signature set already installed Sep 07 2024 06:58:34 webserver maldet(14253): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Sep 07 2024 06:58:34 webserver maldet(14253): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Sep 07 2024 06:58:34 webserver maldet(14253): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Sep 07 2024 06:58:34 webserver maldet(14253): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Sep 07 2024 06:58:34 webserver maldet(14253): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Sep 07 2024 06:58:38 webserver maldet(14253): {scan} file list completed in 4s, found 652 files... Sep 07 2024 06:58:38 webserver maldet(14253): {scan} found clamav binary at /usr/bin/clamdscan, using clamav scanner engine... Sep 07 2024 06:58:38 webserver maldet(14253): {scan} scan of (652 files) in progress... Sep 07 2024 06:58:44 webserver maldet(14253): {scan} clamscan returned an error, check /usr/local/maldetect/logs/clamscan_log for details! Sep 07 2024 06:58:44 webserver maldet(14253): {scan} scan completed on : files 652, malware hits 0, cleaned hits 0, time 10s Sep 07 2024 06:58:44 webserver maldet(14253): {scan} scan report saved, to view run: maldet --report 240907-0658.14253 Sep 08 2024 06:56:26 webserver maldet(32347): {update} checking for available updates... Sep 08 2024 06:56:26 webserver maldet(32347): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Sep 08 2024 06:56:26 webserver maldet(32347): {update} hashing install files and checking against server... Sep 08 2024 06:56:26 webserver maldet(32347): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Sep 08 2024 06:56:26 webserver maldet(32347): {update} latest version already installed. Sep 08 2024 06:56:26 webserver maldet(32483): {sigup} performing signature update check... Sep 08 2024 06:56:26 webserver maldet(32483): {sigup} local signature set is version 202409041575765 Sep 08 2024 06:56:26 webserver maldet(32483): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Sep 08 2024 06:56:26 webserver maldet(32483): {sigup} new signature set 202409072330795 available Sep 08 2024 06:56:26 webserver maldet(32483): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Sep 08 2024 06:56:26 webserver maldet(32483): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Sep 08 2024 06:56:26 webserver maldet(32483): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Sep 08 2024 06:56:26 webserver maldet(32483): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Sep 08 2024 06:56:26 webserver maldet(32483): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Sep 08 2024 06:56:26 webserver maldet(32483): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Sep 08 2024 06:56:26 webserver maldet(32483): {sigup} verified md5sum of maldet-sigpack.tgz Sep 08 2024 06:56:26 webserver maldet(32483): {sigup} unpacked and installed maldet-sigpack.tgz Sep 08 2024 06:56:26 webserver maldet(32483): {sigup} verified md5sum of maldet-clean.tgz Sep 08 2024 06:56:26 webserver maldet(32483): {sigup} unpacked and installed maldet-clean.tgz Sep 08 2024 06:56:26 webserver maldet(32483): {sigup} signature set update completed Sep 08 2024 06:56:26 webserver maldet(32483): {sigup} 17638 signatures (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Sep 08 2024 06:56:27 webserver maldet(32714): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Sep 08 2024 06:56:27 webserver maldet(32714): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Sep 08 2024 06:56:27 webserver maldet(32714): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Sep 08 2024 06:56:27 webserver maldet(32714): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Sep 08 2024 06:56:27 webserver maldet(32714): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Sep 08 2024 06:56:31 webserver maldet(32714): {scan} file list completed in 4s, found 329 files... Sep 08 2024 06:56:31 webserver maldet(32714): {scan} found clamav binary at /usr/bin/clamdscan, using clamav scanner engine... Sep 08 2024 06:56:31 webserver maldet(32714): {scan} scan of (329 files) in progress... Sep 08 2024 06:56:34 webserver maldet(32714): {scan} scan completed on : files 329, malware hits 0, cleaned hits 0, time 7s Sep 08 2024 06:56:34 webserver maldet(32714): {scan} scan report saved, to view run: maldet --report 240908-0656.32714 Sep 09 2024 06:57:28 webserver maldet(19423): {update} checking for available updates... Sep 09 2024 06:57:28 webserver maldet(19423): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Sep 09 2024 06:57:28 webserver maldet(19423): {update} hashing install files and checking against server... Sep 09 2024 06:57:28 webserver maldet(19423): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Sep 09 2024 06:57:28 webserver maldet(19423): {update} latest version already installed. Sep 09 2024 06:57:28 webserver maldet(19559): {sigup} performing signature update check... Sep 09 2024 06:57:28 webserver maldet(19559): {sigup} local signature set is version 202409072330795 Sep 09 2024 06:57:28 webserver maldet(19559): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Sep 09 2024 06:57:28 webserver maldet(19559): {sigup} latest signature set already installed Sep 09 2024 06:57:28 webserver maldet(19673): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Sep 09 2024 06:57:28 webserver maldet(19673): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Sep 09 2024 06:57:28 webserver maldet(19673): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Sep 09 2024 06:57:28 webserver maldet(19673): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Sep 09 2024 06:57:28 webserver maldet(19673): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Sep 09 2024 06:57:33 webserver maldet(19673): {scan} file list completed in 5s, found 514 files... Sep 09 2024 06:57:33 webserver maldet(19673): {scan} found clamav binary at /usr/bin/clamdscan, using clamav scanner engine... Sep 09 2024 06:57:33 webserver maldet(19673): {scan} scan of (514 files) in progress... Sep 09 2024 06:57:37 webserver maldet(19673): {scan} clamscan returned an error, check /usr/local/maldetect/logs/clamscan_log for details! Sep 09 2024 06:57:37 webserver maldet(19673): {scan} scan completed on : files 514, malware hits 0, cleaned hits 0, time 9s Sep 09 2024 06:57:37 webserver maldet(19673): {scan} scan report saved, to view run: maldet --report 240909-0657.19673 Sep 10 2024 06:58:54 webserver maldet(11270): {update} checking for available updates... Sep 10 2024 06:58:54 webserver maldet(11270): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Sep 10 2024 06:58:54 webserver maldet(11270): {update} hashing install files and checking against server... Sep 10 2024 06:58:54 webserver maldet(11270): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Sep 10 2024 06:58:54 webserver maldet(11270): {update} latest version already installed. Sep 10 2024 06:58:54 webserver maldet(11406): {sigup} performing signature update check... Sep 10 2024 06:58:54 webserver maldet(11406): {sigup} local signature set is version 202409072330795 Sep 10 2024 06:58:54 webserver maldet(11406): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Sep 10 2024 06:58:54 webserver maldet(11406): {sigup} latest signature set already installed Sep 10 2024 06:58:54 webserver maldet(11520): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Sep 10 2024 06:58:54 webserver maldet(11520): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Sep 10 2024 06:58:54 webserver maldet(11520): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Sep 10 2024 06:58:54 webserver maldet(11520): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Sep 10 2024 06:58:54 webserver maldet(11520): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Sep 10 2024 06:58:59 webserver maldet(11520): {scan} file list completed in 5s, found 573 files... Sep 10 2024 06:58:59 webserver maldet(11520): {scan} found clamav binary at /usr/bin/clamdscan, using clamav scanner engine... Sep 10 2024 06:58:59 webserver maldet(11520): {scan} scan of (573 files) in progress... Sep 10 2024 06:59:04 webserver maldet(11520): {scan} scan completed on : files 573, malware hits 0, cleaned hits 0, time 10s Sep 10 2024 06:59:04 webserver maldet(11520): {scan} scan report saved, to view run: maldet --report 240910-0658.11520 Sep 11 2024 06:56:07 webserver maldet(29798): {update} checking for available updates... Sep 11 2024 06:56:08 webserver maldet(29798): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Sep 11 2024 06:56:08 webserver maldet(29798): {update} hashing install files and checking against server... Sep 11 2024 06:56:08 webserver maldet(29798): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Sep 11 2024 06:56:08 webserver maldet(29798): {update} latest version already installed. Sep 11 2024 06:56:08 webserver maldet(29934): {sigup} performing signature update check... Sep 11 2024 06:56:08 webserver maldet(29934): {sigup} local signature set is version 202409072330795 Sep 11 2024 06:56:08 webserver maldet(29934): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Sep 11 2024 06:56:08 webserver maldet(29934): {sigup} new signature set 202409103087802 available Sep 11 2024 06:56:08 webserver maldet(29934): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Sep 11 2024 06:56:08 webserver maldet(29934): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Sep 11 2024 06:56:08 webserver maldet(29934): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Sep 11 2024 06:56:08 webserver maldet(29934): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Sep 11 2024 06:56:08 webserver maldet(29934): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Sep 11 2024 06:56:08 webserver maldet(29934): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Sep 11 2024 06:56:08 webserver maldet(29934): {sigup} verified md5sum of maldet-sigpack.tgz Sep 11 2024 06:56:08 webserver maldet(29934): {sigup} unpacked and installed maldet-sigpack.tgz Sep 11 2024 06:56:08 webserver maldet(29934): {sigup} verified md5sum of maldet-clean.tgz Sep 11 2024 06:56:08 webserver maldet(29934): {sigup} unpacked and installed maldet-clean.tgz Sep 11 2024 06:56:08 webserver maldet(29934): {sigup} signature set update completed Sep 11 2024 06:56:08 webserver maldet(29934): {sigup} 17638 signatures (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Sep 11 2024 06:56:08 webserver maldet(30169): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Sep 11 2024 06:56:08 webserver maldet(30169): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Sep 11 2024 06:56:08 webserver maldet(30169): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Sep 11 2024 06:56:08 webserver maldet(30169): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Sep 11 2024 06:56:08 webserver maldet(30169): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Sep 11 2024 06:56:13 webserver maldet(30169): {scan} file list completed in 5s, found 1161 files... Sep 11 2024 06:56:13 webserver maldet(30169): {scan} found clamav binary at /usr/bin/clamdscan, using clamav scanner engine... Sep 11 2024 06:56:13 webserver maldet(30169): {scan} scan of (1161 files) in progress... Sep 11 2024 06:56:29 webserver maldet(30169): {scan} clamscan returned an error, check /usr/local/maldetect/logs/clamscan_log for details! Sep 11 2024 06:56:29 webserver maldet(30169): {scan} scan completed on : files 1161, malware hits 0, cleaned hits 0, time 21s Sep 11 2024 06:56:29 webserver maldet(30169): {scan} scan report saved, to view run: maldet --report 240911-0656.30169 Sep 12 2024 06:56:24 webserver maldet(21448): {update} checking for available updates... Sep 12 2024 06:56:24 webserver maldet(21448): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Sep 12 2024 06:56:24 webserver maldet(21448): {update} hashing install files and checking against server... Sep 12 2024 06:56:24 webserver maldet(21448): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Sep 12 2024 06:56:24 webserver maldet(21448): {update} latest version already installed. Sep 12 2024 06:56:24 webserver maldet(21584): {sigup} performing signature update check... Sep 12 2024 06:56:24 webserver maldet(21584): {sigup} local signature set is version 202409103087802 Sep 12 2024 06:56:24 webserver maldet(21584): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Sep 12 2024 06:56:24 webserver maldet(21584): {sigup} latest signature set already installed Sep 12 2024 06:56:24 webserver maldet(21698): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Sep 12 2024 06:56:24 webserver maldet(21698): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Sep 12 2024 06:56:24 webserver maldet(21698): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Sep 12 2024 06:56:24 webserver maldet(21698): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Sep 12 2024 06:56:24 webserver maldet(21698): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Sep 12 2024 06:56:29 webserver maldet(21698): {scan} file list completed in 5s, found 768 files... Sep 12 2024 06:56:29 webserver maldet(21698): {scan} found clamav binary at /usr/bin/clamdscan, using clamav scanner engine... Sep 12 2024 06:56:29 webserver maldet(21698): {scan} scan of (768 files) in progress... Sep 12 2024 06:56:35 webserver maldet(21698): {scan} clamscan returned an error, check /usr/local/maldetect/logs/clamscan_log for details! Sep 12 2024 06:56:35 webserver maldet(21698): {scan} scan completed on : files 768, malware hits 0, cleaned hits 0, time 11s Sep 12 2024 06:56:35 webserver maldet(21698): {scan} scan report saved, to view run: maldet --report 240912-0656.21698 Sep 13 2024 06:57:30 webserver maldet(16037): {update} checking for available updates... Sep 13 2024 06:57:30 webserver maldet(16037): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Sep 13 2024 06:57:30 webserver maldet(16037): {update} hashing install files and checking against server... Sep 13 2024 06:57:30 webserver maldet(16037): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Sep 13 2024 06:57:30 webserver maldet(16037): {update} latest version already installed. Sep 13 2024 06:57:31 webserver maldet(16173): {sigup} performing signature update check... Sep 13 2024 06:57:31 webserver maldet(16173): {sigup} local signature set is version 202409103087802 Sep 13 2024 06:57:31 webserver maldet(16173): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Sep 13 2024 06:57:31 webserver maldet(16173): {sigup} latest signature set already installed Sep 13 2024 06:57:31 webserver maldet(16287): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Sep 13 2024 06:57:31 webserver maldet(16287): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Sep 13 2024 06:57:31 webserver maldet(16287): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Sep 13 2024 06:57:31 webserver maldet(16287): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Sep 13 2024 06:57:31 webserver maldet(16287): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Sep 13 2024 06:57:36 webserver maldet(16287): {scan} file list completed in 5s, found 948 files... Sep 13 2024 06:57:36 webserver maldet(16287): {scan} found clamav binary at /usr/bin/clamdscan, using clamav scanner engine... Sep 13 2024 06:57:36 webserver maldet(16287): {scan} scan of (948 files) in progress... Sep 13 2024 06:57:43 webserver maldet(16287): {scan} scan completed on : files 948, malware hits 0, cleaned hits 0, time 12s Sep 13 2024 06:57:43 webserver maldet(16287): {scan} scan report saved, to view run: maldet --report 240913-0657.16287 Sep 14 2024 06:59:06 webserver maldet(10780): {update} checking for available updates... Sep 14 2024 06:59:06 webserver maldet(10780): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Sep 14 2024 06:59:06 webserver maldet(10780): {update} hashing install files and checking against server... Sep 14 2024 06:59:06 webserver maldet(10780): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Sep 14 2024 06:59:06 webserver maldet(10780): {update} latest version already installed. Sep 14 2024 06:59:06 webserver maldet(10916): {sigup} performing signature update check... Sep 14 2024 06:59:06 webserver maldet(10916): {sigup} local signature set is version 202409103087802 Sep 14 2024 06:59:06 webserver maldet(10916): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Sep 14 2024 06:59:06 webserver maldet(10916): {sigup} new signature set 202409133842495 available Sep 14 2024 06:59:06 webserver maldet(10916): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Sep 14 2024 06:59:07 webserver maldet(10916): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Sep 14 2024 06:59:07 webserver maldet(10916): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Sep 14 2024 06:59:07 webserver maldet(10916): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Sep 14 2024 06:59:07 webserver maldet(10916): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Sep 14 2024 06:59:07 webserver maldet(10916): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Sep 14 2024 06:59:07 webserver maldet(10916): {sigup} verified md5sum of maldet-sigpack.tgz Sep 14 2024 06:59:07 webserver maldet(10916): {sigup} unpacked and installed maldet-sigpack.tgz Sep 14 2024 06:59:07 webserver maldet(10916): {sigup} verified md5sum of maldet-clean.tgz Sep 14 2024 06:59:07 webserver maldet(10916): {sigup} unpacked and installed maldet-clean.tgz Sep 14 2024 06:59:07 webserver maldet(10916): {sigup} signature set update completed Sep 14 2024 06:59:07 webserver maldet(10916): {sigup} 17638 signatures (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Sep 14 2024 06:59:07 webserver maldet(11147): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Sep 14 2024 06:59:07 webserver maldet(11147): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Sep 14 2024 06:59:07 webserver maldet(11147): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Sep 14 2024 06:59:07 webserver maldet(11147): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Sep 14 2024 06:59:07 webserver maldet(11147): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Sep 14 2024 06:59:12 webserver maldet(11147): {scan} file list completed in 5s, found 509 files... Sep 14 2024 06:59:12 webserver maldet(11147): {scan} found clamav binary at /usr/bin/clamdscan, using clamav scanner engine... Sep 14 2024 06:59:12 webserver maldet(11147): {scan} scan of (509 files) in progress... Sep 14 2024 06:59:16 webserver maldet(11147): {scan} scan completed on : files 509, malware hits 0, cleaned hits 0, time 9s Sep 14 2024 06:59:16 webserver maldet(11147): {scan} scan report saved, to view run: maldet --report 240914-0659.11147 Sep 15 2024 06:57:28 webserver maldet(1868): {update} checking for available updates... Sep 15 2024 06:57:28 webserver maldet(1868): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Sep 15 2024 06:57:28 webserver maldet(1868): {update} hashing install files and checking against server... Sep 15 2024 06:57:28 webserver maldet(1868): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Sep 15 2024 06:57:28 webserver maldet(1868): {update} latest version already installed. Sep 15 2024 06:57:28 webserver maldet(2004): {sigup} performing signature update check... Sep 15 2024 06:57:28 webserver maldet(2004): {sigup} local signature set is version 202409133842495 Sep 15 2024 06:57:28 webserver maldet(2004): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Sep 15 2024 06:57:28 webserver maldet(2004): {sigup} latest signature set already installed Sep 15 2024 06:57:28 webserver maldet(2118): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Sep 15 2024 06:57:28 webserver maldet(2118): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Sep 15 2024 06:57:28 webserver maldet(2118): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Sep 15 2024 06:57:28 webserver maldet(2118): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Sep 15 2024 06:57:28 webserver maldet(2118): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Sep 15 2024 06:57:33 webserver maldet(2118): {scan} file list completed in 5s, found 500 files... Sep 15 2024 06:57:33 webserver maldet(2118): {scan} found clamav binary at /usr/bin/clamdscan, using clamav scanner engine... Sep 15 2024 06:57:33 webserver maldet(2118): {scan} scan of (500 files) in progress... Sep 15 2024 06:57:37 webserver maldet(2118): {scan} scan completed on : files 500, malware hits 0, cleaned hits 0, time 9s Sep 15 2024 06:57:37 webserver maldet(2118): {scan} scan report saved, to view run: maldet --report 240915-0657.2118 Sep 16 2024 06:58:13 webserver maldet(26751): {update} checking for available updates... Sep 16 2024 06:58:13 webserver maldet(26751): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Sep 16 2024 06:58:13 webserver maldet(26751): {update} hashing install files and checking against server... Sep 16 2024 06:58:13 webserver maldet(26751): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Sep 16 2024 06:58:13 webserver maldet(26751): {update} latest version already installed. Sep 16 2024 06:58:13 webserver maldet(26887): {sigup} performing signature update check... Sep 16 2024 06:58:13 webserver maldet(26887): {sigup} local signature set is version 202409133842495 Sep 16 2024 06:58:13 webserver maldet(26887): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Sep 16 2024 06:58:13 webserver maldet(26887): {sigup} latest signature set already installed Sep 16 2024 06:58:13 webserver maldet(27001): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Sep 16 2024 06:58:14 webserver maldet(27001): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Sep 16 2024 06:58:14 webserver maldet(27001): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Sep 16 2024 06:58:14 webserver maldet(27001): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Sep 16 2024 06:58:14 webserver maldet(27001): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Sep 16 2024 06:58:18 webserver maldet(27001): {scan} file list completed in 4s, found 176 files... Sep 16 2024 06:58:18 webserver maldet(27001): {scan} found clamav binary at /usr/bin/clamdscan, using clamav scanner engine... Sep 16 2024 06:58:18 webserver maldet(27001): {scan} scan of (176 files) in progress... Sep 16 2024 06:58:20 webserver maldet(27001): {scan} scan completed on : files 176, malware hits 0, cleaned hits 0, time 7s Sep 16 2024 06:58:20 webserver maldet(27001): {scan} scan report saved, to view run: maldet --report 240916-0658.27001 Sep 17 2024 06:56:25 webserver maldet(26479): {update} checking for available updates... Sep 17 2024 06:56:25 webserver maldet(26479): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Sep 17 2024 06:56:25 webserver maldet(26479): {update} hashing install files and checking against server... Sep 17 2024 06:56:25 webserver maldet(26479): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Sep 17 2024 06:56:25 webserver maldet(26479): {update} latest version already installed. Sep 17 2024 06:56:25 webserver maldet(26615): {sigup} performing signature update check... Sep 17 2024 06:56:25 webserver maldet(26615): {sigup} local signature set is version 202409133842495 Sep 17 2024 06:56:25 webserver maldet(26615): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Sep 17 2024 06:56:25 webserver maldet(26615): {sigup} new signature set 20240916341534 available Sep 17 2024 06:56:25 webserver maldet(26615): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Sep 17 2024 06:56:25 webserver maldet(26615): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Sep 17 2024 06:56:25 webserver maldet(26615): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Sep 17 2024 06:56:25 webserver maldet(26615): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Sep 17 2024 06:56:25 webserver maldet(26615): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Sep 17 2024 06:56:25 webserver maldet(26615): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Sep 17 2024 06:56:25 webserver maldet(26615): {sigup} verified md5sum of maldet-sigpack.tgz Sep 17 2024 06:56:26 webserver maldet(26615): {sigup} unpacked and installed maldet-sigpack.tgz Sep 17 2024 06:56:26 webserver maldet(26615): {sigup} verified md5sum of maldet-clean.tgz Sep 17 2024 06:56:26 webserver maldet(26615): {sigup} unpacked and installed maldet-clean.tgz Sep 17 2024 06:56:26 webserver maldet(26615): {sigup} signature set update completed Sep 17 2024 06:56:26 webserver maldet(26615): {sigup} 17638 signatures (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Sep 17 2024 06:56:26 webserver maldet(26846): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Sep 17 2024 06:56:26 webserver maldet(26846): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Sep 17 2024 06:56:26 webserver maldet(26846): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Sep 17 2024 06:56:26 webserver maldet(26846): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Sep 17 2024 06:56:26 webserver maldet(26846): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Sep 17 2024 06:56:32 webserver maldet(26846): {scan} file list completed in 6s, found 394 files... Sep 17 2024 06:56:32 webserver maldet(26846): {scan} found clamav binary at /usr/bin/clamdscan, using clamav scanner engine... Sep 17 2024 06:56:32 webserver maldet(26846): {scan} scan of (394 files) in progress... Sep 17 2024 06:56:36 webserver maldet(26846): {scan} clamscan returned an error, check /usr/local/maldetect/logs/clamscan_log for details! Sep 17 2024 06:56:36 webserver maldet(26846): {scan} scan completed on : files 394, malware hits 0, cleaned hits 0, time 10s Sep 17 2024 06:56:36 webserver maldet(26846): {scan} scan report saved, to view run: maldet --report 240917-0656.26846 Sep 18 2024 06:58:03 webserver maldet(20240): {update} checking for available updates... Sep 18 2024 06:58:03 webserver maldet(20240): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Sep 18 2024 06:58:03 webserver maldet(20240): {update} hashing install files and checking against server... Sep 18 2024 06:58:03 webserver maldet(20240): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Sep 18 2024 06:58:03 webserver maldet(20240): {update} latest version already installed. Sep 18 2024 06:58:03 webserver maldet(20376): {sigup} performing signature update check... Sep 18 2024 06:58:03 webserver maldet(20376): {sigup} local signature set is version 20240916341534 Sep 18 2024 06:58:03 webserver maldet(20376): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Sep 18 2024 06:58:03 webserver maldet(20376): {sigup} latest signature set already installed Sep 18 2024 06:58:03 webserver maldet(20490): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Sep 18 2024 06:58:03 webserver maldet(20490): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Sep 18 2024 06:58:03 webserver maldet(20490): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Sep 18 2024 06:58:03 webserver maldet(20490): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Sep 18 2024 06:58:03 webserver maldet(20490): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Sep 18 2024 06:58:08 webserver maldet(20490): {scan} file list completed in 5s, found 352 files... Sep 18 2024 06:58:08 webserver maldet(20490): {scan} found clamav binary at /usr/bin/clamdscan, using clamav scanner engine... Sep 18 2024 06:58:08 webserver maldet(20490): {scan} scan of (352 files) in progress... Sep 18 2024 06:58:11 webserver maldet(20490): {scan} scan completed on : files 352, malware hits 0, cleaned hits 0, time 8s Sep 18 2024 06:58:11 webserver maldet(20490): {scan} scan report saved, to view run: maldet --report 240918-0658.20490 Sep 19 2024 07:03:59 webserver maldet(13423): {update} checking for available updates... Sep 19 2024 07:03:59 webserver maldet(13423): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Sep 19 2024 07:03:59 webserver maldet(13423): {update} hashing install files and checking against server... Sep 19 2024 07:03:59 webserver maldet(13423): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Sep 19 2024 07:03:59 webserver maldet(13423): {update} latest version already installed. Sep 19 2024 07:03:59 webserver maldet(13559): {sigup} performing signature update check... Sep 19 2024 07:03:59 webserver maldet(13559): {sigup} local signature set is version 20240916341534 Sep 19 2024 07:03:59 webserver maldet(13559): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Sep 19 2024 07:03:59 webserver maldet(13559): {sigup} latest signature set already installed Sep 19 2024 07:03:59 webserver maldet(13673): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Sep 19 2024 07:03:59 webserver maldet(13673): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Sep 19 2024 07:03:59 webserver maldet(13673): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Sep 19 2024 07:03:59 webserver maldet(13673): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Sep 19 2024 07:03:59 webserver maldet(13673): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Sep 19 2024 07:04:04 webserver maldet(13673): {scan} file list completed in 5s, found 235 files... Sep 19 2024 07:04:04 webserver maldet(13673): {scan} found clamav binary at /usr/bin/clamdscan, using clamav scanner engine... Sep 19 2024 07:04:04 webserver maldet(13673): {scan} scan of (235 files) in progress... Sep 19 2024 07:04:06 webserver maldet(13673): {scan} scan completed on : files 235, malware hits 0, cleaned hits 0, time 7s Sep 19 2024 07:04:06 webserver maldet(13673): {scan} scan report saved, to view run: maldet --report 240919-0703.13673 Sep 20 2024 06:55:49 webserver maldet(1634): {update} checking for available updates... Sep 20 2024 06:55:50 webserver maldet(1634): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Sep 20 2024 06:55:50 webserver maldet(1634): {update} hashing install files and checking against server... Sep 20 2024 06:55:50 webserver maldet(1634): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Sep 20 2024 06:55:50 webserver maldet(1634): {update} latest version already installed. Sep 20 2024 06:55:50 webserver maldet(1770): {sigup} performing signature update check... Sep 20 2024 06:55:50 webserver maldet(1770): {sigup} local signature set is version 20240916341534 Sep 20 2024 06:55:50 webserver maldet(1770): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Sep 20 2024 06:55:50 webserver maldet(1770): {sigup} new signature set 202409191126888 available Sep 20 2024 06:55:50 webserver maldet(1770): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Sep 20 2024 06:55:50 webserver maldet(1770): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Sep 20 2024 06:55:50 webserver maldet(1770): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Sep 20 2024 06:55:50 webserver maldet(1770): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Sep 20 2024 06:55:50 webserver maldet(1770): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Sep 20 2024 06:55:50 webserver maldet(1770): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Sep 20 2024 06:55:50 webserver maldet(1770): {sigup} verified md5sum of maldet-sigpack.tgz Sep 20 2024 06:55:50 webserver maldet(1770): {sigup} unpacked and installed maldet-sigpack.tgz Sep 20 2024 06:55:50 webserver maldet(1770): {sigup} verified md5sum of maldet-clean.tgz Sep 20 2024 06:55:50 webserver maldet(1770): {sigup} unpacked and installed maldet-clean.tgz Sep 20 2024 06:55:50 webserver maldet(1770): {sigup} signature set update completed Sep 20 2024 06:55:50 webserver maldet(1770): {sigup} 17638 signatures (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Sep 20 2024 06:55:50 webserver maldet(2002): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Sep 20 2024 06:55:50 webserver maldet(2002): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Sep 20 2024 06:55:50 webserver maldet(2002): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Sep 20 2024 06:55:50 webserver maldet(2002): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Sep 20 2024 06:55:50 webserver maldet(2002): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Sep 20 2024 06:55:55 webserver maldet(2002): {scan} file list completed in 5s, found 364 files... Sep 20 2024 06:55:55 webserver maldet(2002): {scan} found clamav binary at /usr/bin/clamdscan, using clamav scanner engine... Sep 20 2024 06:55:55 webserver maldet(2002): {scan} scan of (364 files) in progress... Sep 20 2024 06:55:59 webserver maldet(2002): {scan} scan completed on : files 364, malware hits 0, cleaned hits 0, time 9s Sep 20 2024 06:55:59 webserver maldet(2002): {scan} scan report saved, to view run: maldet --report 240920-0655.2002 Sep 21 2024 06:58:20 webserver maldet(21777): {update} checking for available updates... Sep 21 2024 06:58:20 webserver maldet(21777): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Sep 21 2024 06:58:20 webserver maldet(21777): {update} hashing install files and checking against server... Sep 21 2024 06:58:20 webserver maldet(21777): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Sep 21 2024 06:58:20 webserver maldet(21777): {update} latest version already installed. Sep 21 2024 06:58:20 webserver maldet(21913): {sigup} performing signature update check... Sep 21 2024 06:58:20 webserver maldet(21913): {sigup} local signature set is version 202409191126888 Sep 21 2024 06:58:20 webserver maldet(21913): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Sep 21 2024 06:58:20 webserver maldet(21913): {sigup} latest signature set already installed Sep 21 2024 06:58:20 webserver maldet(22027): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Sep 21 2024 06:58:20 webserver maldet(22027): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Sep 21 2024 06:58:20 webserver maldet(22027): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Sep 21 2024 06:58:20 webserver maldet(22027): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Sep 21 2024 06:58:20 webserver maldet(22027): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Sep 21 2024 06:58:25 webserver maldet(22027): {scan} file list completed in 5s, found 349 files... Sep 21 2024 06:58:25 webserver maldet(22027): {scan} found clamav binary at /usr/bin/clamdscan, using clamav scanner engine... Sep 21 2024 06:58:25 webserver maldet(22027): {scan} scan of (349 files) in progress... Sep 21 2024 06:58:28 webserver maldet(22027): {scan} scan completed on : files 349, malware hits 0, cleaned hits 0, time 8s Sep 21 2024 06:58:28 webserver maldet(22027): {scan} scan report saved, to view run: maldet --report 240921-0658.22027 Sep 22 2024 07:04:26 webserver maldet(23200): {update} checking for available updates... Sep 22 2024 07:04:26 webserver maldet(23200): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Sep 22 2024 07:04:26 webserver maldet(23200): {update} hashing install files and checking against server... Sep 22 2024 07:04:26 webserver maldet(23200): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Sep 22 2024 07:04:26 webserver maldet(23200): {update} latest version already installed. Sep 22 2024 07:04:26 webserver maldet(23336): {sigup} performing signature update check... Sep 22 2024 07:04:26 webserver maldet(23336): {sigup} local signature set is version 202409191126888 Sep 22 2024 07:04:26 webserver maldet(23336): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Sep 22 2024 07:04:26 webserver maldet(23336): {sigup} new signature set 20240922576214 available Sep 22 2024 07:04:26 webserver maldet(23336): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Sep 22 2024 07:04:26 webserver maldet(23336): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Sep 22 2024 07:04:26 webserver maldet(23336): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Sep 22 2024 07:04:26 webserver maldet(23336): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Sep 22 2024 07:04:26 webserver maldet(23336): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Sep 22 2024 07:04:26 webserver maldet(23336): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Sep 22 2024 07:04:26 webserver maldet(23336): {sigup} verified md5sum of maldet-sigpack.tgz Sep 22 2024 07:04:26 webserver maldet(23336): {sigup} unpacked and installed maldet-sigpack.tgz Sep 22 2024 07:04:26 webserver maldet(23336): {sigup} verified md5sum of maldet-clean.tgz Sep 22 2024 07:04:26 webserver maldet(23336): {sigup} unpacked and installed maldet-clean.tgz Sep 22 2024 07:04:26 webserver maldet(23336): {sigup} signature set update completed Sep 22 2024 07:04:26 webserver maldet(23336): {sigup} 17638 signatures (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Sep 22 2024 07:04:26 webserver maldet(23567): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Sep 22 2024 07:04:26 webserver maldet(23567): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Sep 22 2024 07:04:26 webserver maldet(23567): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Sep 22 2024 07:04:26 webserver maldet(23567): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Sep 22 2024 07:04:26 webserver maldet(23567): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Sep 22 2024 07:04:31 webserver maldet(23567): {scan} file list completed in 5s, found 239 files... Sep 22 2024 07:04:31 webserver maldet(23567): {scan} found clamav binary at /usr/bin/clamdscan, using clamav scanner engine... Sep 22 2024 07:04:31 webserver maldet(23567): {scan} scan of (239 files) in progress... Sep 22 2024 07:04:34 webserver maldet(23567): {scan} scan completed on : files 239, malware hits 0, cleaned hits 0, time 8s Sep 22 2024 07:04:34 webserver maldet(23567): {scan} scan report saved, to view run: maldet --report 240922-0704.23567 Sep 23 2024 07:00:44 webserver maldet(13888): {update} checking for available updates... Sep 23 2024 07:00:44 webserver maldet(13888): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Sep 23 2024 07:00:44 webserver maldet(13888): {update} hashing install files and checking against server... Sep 23 2024 07:00:44 webserver maldet(13888): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Sep 23 2024 07:00:44 webserver maldet(13888): {update} latest version already installed. Sep 23 2024 07:00:44 webserver maldet(14024): {sigup} performing signature update check... Sep 23 2024 07:00:44 webserver maldet(14024): {sigup} local signature set is version 20240922576214 Sep 23 2024 07:00:44 webserver maldet(14024): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Sep 23 2024 07:00:44 webserver maldet(14024): {sigup} latest signature set already installed Sep 23 2024 07:00:44 webserver maldet(14138): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Sep 23 2024 07:00:44 webserver maldet(14138): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Sep 23 2024 07:00:44 webserver maldet(14138): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Sep 23 2024 07:00:44 webserver maldet(14138): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Sep 23 2024 07:00:44 webserver maldet(14138): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Sep 23 2024 07:00:49 webserver maldet(14138): {scan} file list completed in 5s, found 86 files... Sep 23 2024 07:00:49 webserver maldet(14138): {scan} found clamav binary at /usr/bin/clamdscan, using clamav scanner engine... Sep 23 2024 07:00:49 webserver maldet(14138): {scan} scan of (86 files) in progress... Sep 23 2024 07:00:50 webserver maldet(14138): {scan} clamscan returned an error, check /usr/local/maldetect/logs/clamscan_log for details! Sep 23 2024 07:00:50 webserver maldet(14138): {scan} scan completed on : files 86, malware hits 0, cleaned hits 0, time 6s Sep 23 2024 07:00:50 webserver maldet(14138): {scan} scan report saved, to view run: maldet --report 240923-0700.14138 Sep 24 2024 07:07:32 webserver maldet(4992): {update} checking for available updates... Sep 24 2024 07:07:32 webserver maldet(4992): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Sep 24 2024 07:07:32 webserver maldet(4992): {update} hashing install files and checking against server... Sep 24 2024 07:07:32 webserver maldet(4992): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Sep 24 2024 07:07:32 webserver maldet(4992): {update} latest version already installed. Sep 24 2024 07:07:33 webserver maldet(5128): {sigup} performing signature update check... Sep 24 2024 07:07:33 webserver maldet(5128): {sigup} local signature set is version 20240922576214 Sep 24 2024 07:07:33 webserver maldet(5128): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Sep 24 2024 07:07:33 webserver maldet(5128): {sigup} latest signature set already installed Sep 24 2024 07:07:33 webserver maldet(5242): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Sep 24 2024 07:07:33 webserver maldet(5242): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Sep 24 2024 07:07:33 webserver maldet(5242): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Sep 24 2024 07:07:33 webserver maldet(5242): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Sep 24 2024 07:07:33 webserver maldet(5242): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Sep 24 2024 07:07:38 webserver maldet(5242): {scan} file list completed in 5s, found 356 files... Sep 24 2024 07:07:38 webserver maldet(5242): {scan} found clamav binary at /usr/bin/clamdscan, using clamav scanner engine... Sep 24 2024 07:07:38 webserver maldet(5242): {scan} scan of (356 files) in progress... Sep 24 2024 07:07:40 webserver maldet(5242): {scan} scan completed on : files 356, malware hits 0, cleaned hits 0, time 7s Sep 24 2024 07:07:41 webserver maldet(5242): {scan} scan report saved, to view run: maldet --report 240924-0707.5242 Sep 25 2024 06:59:26 webserver maldet(29908): {update} checking for available updates... Sep 25 2024 06:59:26 webserver maldet(29908): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Sep 25 2024 06:59:26 webserver maldet(29908): {update} hashing install files and checking against server... Sep 25 2024 06:59:26 webserver maldet(29908): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Sep 25 2024 06:59:27 webserver maldet(29908): {update} latest version already installed. Sep 25 2024 06:59:27 webserver maldet(30044): {sigup} performing signature update check... Sep 25 2024 06:59:27 webserver maldet(30044): {sigup} local signature set is version 20240922576214 Sep 25 2024 06:59:27 webserver maldet(30044): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Sep 25 2024 06:59:27 webserver maldet(30044): {sigup} new signature set 202409251332019 available Sep 25 2024 06:59:27 webserver maldet(30044): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Sep 25 2024 06:59:27 webserver maldet(30044): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Sep 25 2024 06:59:27 webserver maldet(30044): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Sep 25 2024 06:59:27 webserver maldet(30044): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Sep 25 2024 06:59:27 webserver maldet(30044): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Sep 25 2024 06:59:27 webserver maldet(30044): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Sep 25 2024 06:59:27 webserver maldet(30044): {sigup} unable to verify md5sum of maldet-sigpack.tgz, please try again or contact proj@rfxn.com Sep 25 2024 06:59:27 webserver maldet(30044): {sigup} verified md5sum of maldet-clean.tgz Sep 25 2024 06:59:27 webserver maldet(30044): {sigup} unpacked and installed maldet-clean.tgz Sep 25 2024 06:59:27 webserver maldet(30230): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Sep 25 2024 06:59:27 webserver maldet(30230): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Sep 25 2024 06:59:27 webserver maldet(30230): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Sep 25 2024 06:59:27 webserver maldet(30230): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Sep 25 2024 06:59:27 webserver maldet(30230): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Sep 25 2024 06:59:32 webserver maldet(30230): {scan} file list completed in 5s, found 402 files... Sep 25 2024 06:59:32 webserver maldet(30230): {scan} found clamav binary at /usr/bin/clamdscan, using clamav scanner engine... Sep 25 2024 06:59:32 webserver maldet(30230): {scan} scan of (402 files) in progress... Sep 25 2024 06:59:35 webserver maldet(30230): {scan} scan completed on : files 402, malware hits 0, cleaned hits 0, time 8s Sep 25 2024 06:59:35 webserver maldet(30230): {scan} scan report saved, to view run: maldet --report 240925-0659.30230 Sep 26 2024 06:56:33 webserver maldet(30164): {update} checking for available updates... Sep 26 2024 06:56:33 webserver maldet(30164): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Sep 26 2024 06:56:33 webserver maldet(30164): {update} hashing install files and checking against server... Sep 26 2024 06:56:33 webserver maldet(30164): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Sep 26 2024 06:56:33 webserver maldet(30164): {update} latest version already installed. Sep 26 2024 06:56:33 webserver maldet(30300): {sigup} performing signature update check... Sep 26 2024 06:56:33 webserver maldet(30300): {sigup} local signature set is version 20240922576214 Sep 26 2024 06:56:33 webserver maldet(30300): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Sep 26 2024 06:56:33 webserver maldet(30300): {sigup} new signature set 202409251332019 available Sep 26 2024 06:56:33 webserver maldet(30300): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Sep 26 2024 06:56:33 webserver maldet(30300): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Sep 26 2024 06:56:33 webserver maldet(30300): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Sep 26 2024 06:56:33 webserver maldet(30300): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Sep 26 2024 06:56:33 webserver maldet(30300): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Sep 26 2024 06:56:33 webserver maldet(30300): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Sep 26 2024 06:56:33 webserver maldet(30300): {sigup} verified md5sum of maldet-sigpack.tgz Sep 26 2024 06:56:33 webserver maldet(30300): {sigup} unpacked and installed maldet-sigpack.tgz Sep 26 2024 06:56:33 webserver maldet(30300): {sigup} verified md5sum of maldet-clean.tgz Sep 26 2024 06:56:33 webserver maldet(30300): {sigup} unpacked and installed maldet-clean.tgz Sep 26 2024 06:56:33 webserver maldet(30300): {sigup} signature set update completed Sep 26 2024 06:56:33 webserver maldet(30300): {sigup} 17638 signatures (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Sep 26 2024 06:56:33 webserver maldet(30531): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Sep 26 2024 06:56:33 webserver maldet(30531): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Sep 26 2024 06:56:33 webserver maldet(30531): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Sep 26 2024 06:56:33 webserver maldet(30531): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Sep 26 2024 06:56:33 webserver maldet(30531): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Sep 26 2024 06:56:38 webserver maldet(30531): {scan} file list completed in 5s, found 530 files... Sep 26 2024 06:56:38 webserver maldet(30531): {scan} found clamav binary at /usr/bin/clamdscan, using clamav scanner engine... Sep 26 2024 06:56:38 webserver maldet(30531): {scan} scan of (530 files) in progress... Sep 26 2024 06:56:43 webserver maldet(30531): {scan} scan completed on : files 530, malware hits 0, cleaned hits 0, time 10s Sep 26 2024 06:56:43 webserver maldet(30531): {scan} scan report saved, to view run: maldet --report 240926-0656.30531 Sep 27 2024 07:10:34 webserver maldet(21785): {update} checking for available updates... Sep 27 2024 07:10:34 webserver maldet(21785): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Sep 27 2024 07:10:34 webserver maldet(21785): {update} hashing install files and checking against server... Sep 27 2024 07:10:34 webserver maldet(21785): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Sep 27 2024 07:10:34 webserver maldet(21785): {update} latest version already installed. Sep 27 2024 07:10:34 webserver maldet(21921): {sigup} performing signature update check... Sep 27 2024 07:10:34 webserver maldet(21921): {sigup} local signature set is version 202409251332019 Sep 27 2024 07:10:34 webserver maldet(21921): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Sep 27 2024 07:10:34 webserver maldet(21921): {sigup} latest signature set already installed Sep 27 2024 07:10:34 webserver maldet(22035): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Sep 27 2024 07:10:34 webserver maldet(22035): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Sep 27 2024 07:10:34 webserver maldet(22035): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Sep 27 2024 07:10:34 webserver maldet(22035): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Sep 27 2024 07:10:34 webserver maldet(22035): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Sep 27 2024 07:10:52 webserver maldet(22035): {scan} file list completed in 18s, found 481 files... Sep 27 2024 07:10:52 webserver maldet(22035): {scan} found clamav binary at /usr/bin/clamdscan, using clamav scanner engine... Sep 27 2024 07:10:52 webserver maldet(22035): {scan} scan of (481 files) in progress... Sep 27 2024 07:10:56 webserver maldet(22035): {scan} scan completed on : files 481, malware hits 0, cleaned hits 0, time 22s Sep 27 2024 07:10:56 webserver maldet(22035): {scan} scan report saved, to view run: maldet --report 240927-0710.22035 Sep 28 2024 06:56:26 webserver maldet(15840): {update} checking for available updates... Sep 28 2024 06:56:26 webserver maldet(15840): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Sep 28 2024 06:56:26 webserver maldet(15840): {update} hashing install files and checking against server... Sep 28 2024 06:56:26 webserver maldet(15840): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Sep 28 2024 06:56:26 webserver maldet(15840): {update} latest version already installed. Sep 28 2024 06:56:26 webserver maldet(15976): {sigup} performing signature update check... Sep 28 2024 06:56:26 webserver maldet(15976): {sigup} local signature set is version 202409251332019 Sep 28 2024 06:56:26 webserver maldet(15976): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Sep 28 2024 06:56:26 webserver maldet(15976): {sigup} new signature set 202409282086558 available Sep 28 2024 06:56:26 webserver maldet(15976): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Sep 28 2024 06:56:26 webserver maldet(15976): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Sep 28 2024 06:56:26 webserver maldet(15976): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Sep 28 2024 06:56:26 webserver maldet(15976): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Sep 28 2024 06:56:27 webserver maldet(15976): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Sep 28 2024 06:56:27 webserver maldet(15976): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Sep 28 2024 06:56:27 webserver maldet(15976): {sigup} unable to verify md5sum of maldet-sigpack.tgz, please try again or contact proj@rfxn.com Sep 28 2024 06:56:27 webserver maldet(15976): {sigup} verified md5sum of maldet-clean.tgz Sep 28 2024 06:56:27 webserver maldet(15976): {sigup} unpacked and installed maldet-clean.tgz Sep 28 2024 06:56:27 webserver maldet(16162): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Sep 28 2024 06:56:27 webserver maldet(16162): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Sep 28 2024 06:56:27 webserver maldet(16162): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Sep 28 2024 06:56:27 webserver maldet(16162): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Sep 28 2024 06:56:27 webserver maldet(16162): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Sep 28 2024 06:56:34 webserver maldet(16162): {scan} file list completed in 7s, found 528 files... Sep 28 2024 06:56:34 webserver maldet(16162): {scan} found clamav binary at /usr/bin/clamdscan, using clamav scanner engine... Sep 28 2024 06:56:34 webserver maldet(16162): {scan} scan of (528 files) in progress... Sep 28 2024 06:56:40 webserver maldet(16162): {scan} scan completed on : files 528, malware hits 0, cleaned hits 0, time 13s Sep 28 2024 06:56:40 webserver maldet(16162): {scan} scan report saved, to view run: maldet --report 240928-0656.16162 Sep 29 2024 07:04:12 webserver maldet(8525): {update} checking for available updates... Sep 29 2024 07:04:13 webserver maldet(8525): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Sep 29 2024 07:04:13 webserver maldet(8525): {update} hashing install files and checking against server... Sep 29 2024 07:04:13 webserver maldet(8525): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Sep 29 2024 07:04:13 webserver maldet(8525): {update} latest version already installed. Sep 29 2024 07:04:13 webserver maldet(8661): {sigup} performing signature update check... Sep 29 2024 07:04:13 webserver maldet(8661): {sigup} local signature set is version 202409251332019 Sep 29 2024 07:04:13 webserver maldet(8661): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Sep 29 2024 07:04:13 webserver maldet(8661): {sigup} new signature set 202409282086558 available Sep 29 2024 07:04:13 webserver maldet(8661): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Sep 29 2024 07:04:13 webserver maldet(8661): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Sep 29 2024 07:04:13 webserver maldet(8661): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Sep 29 2024 07:04:13 webserver maldet(8661): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Sep 29 2024 07:04:13 webserver maldet(8661): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Sep 29 2024 07:04:13 webserver maldet(8661): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Sep 29 2024 07:04:13 webserver maldet(8661): {sigup} verified md5sum of maldet-sigpack.tgz Sep 29 2024 07:04:13 webserver maldet(8661): {sigup} unpacked and installed maldet-sigpack.tgz Sep 29 2024 07:04:13 webserver maldet(8661): {sigup} verified md5sum of maldet-clean.tgz Sep 29 2024 07:04:13 webserver maldet(8661): {sigup} unpacked and installed maldet-clean.tgz Sep 29 2024 07:04:13 webserver maldet(8661): {sigup} signature set update completed Sep 29 2024 07:04:13 webserver maldet(8661): {sigup} 17638 signatures (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Sep 29 2024 07:04:13 webserver maldet(8892): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Sep 29 2024 07:04:13 webserver maldet(8892): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Sep 29 2024 07:04:13 webserver maldet(8892): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Sep 29 2024 07:04:13 webserver maldet(8892): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Sep 29 2024 07:04:13 webserver maldet(8892): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Sep 29 2024 07:04:18 webserver maldet(8892): {scan} file list completed in 5s, found 257 files... Sep 29 2024 07:04:18 webserver maldet(8892): {scan} found clamav binary at /usr/bin/clamdscan, using clamav scanner engine... Sep 29 2024 07:04:18 webserver maldet(8892): {scan} scan of (257 files) in progress... Sep 29 2024 07:04:21 webserver maldet(8892): {scan} scan completed on : files 257, malware hits 0, cleaned hits 0, time 8s Sep 29 2024 07:04:21 webserver maldet(8892): {scan} scan report saved, to view run: maldet --report 240929-0704.8892 Sep 30 2024 06:56:42 webserver maldet(30751): {update} checking for available updates... Sep 30 2024 06:56:42 webserver maldet(30751): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Sep 30 2024 06:56:42 webserver maldet(30751): {update} hashing install files and checking against server... Sep 30 2024 06:56:42 webserver maldet(30751): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Sep 30 2024 06:56:42 webserver maldet(30751): {update} latest version already installed. Sep 30 2024 06:56:42 webserver maldet(30887): {sigup} performing signature update check... Sep 30 2024 06:56:42 webserver maldet(30887): {sigup} local signature set is version 202409282086558 Sep 30 2024 06:56:42 webserver maldet(30887): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Sep 30 2024 06:56:42 webserver maldet(30887): {sigup} latest signature set already installed Sep 30 2024 06:56:43 webserver maldet(31001): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Sep 30 2024 06:56:43 webserver maldet(31001): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Sep 30 2024 06:56:43 webserver maldet(31001): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Sep 30 2024 06:56:43 webserver maldet(31001): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Sep 30 2024 06:56:43 webserver maldet(31001): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Sep 30 2024 06:56:50 webserver maldet(31001): {scan} file list completed in 7s, found 14352 files... Sep 30 2024 06:56:50 webserver maldet(31001): {scan} found clamav binary at /usr/bin/clamdscan, using clamav scanner engine... Sep 30 2024 06:56:50 webserver maldet(31001): {scan} scan of (14352 files) in progress... Sep 30 2024 07:00:00 webserver maldet(31001): {scan} scan completed on : files 14352, malware hits 0, cleaned hits 0, time 197s Sep 30 2024 07:00:00 webserver maldet(31001): {scan} scan report saved, to view run: maldet --report 240930-0656.31001 Oct 01 2024 06:57:24 webserver maldet(21496): {update} checking for available updates... Oct 01 2024 06:57:24 webserver maldet(21496): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Oct 01 2024 06:57:24 webserver maldet(21496): {update} hashing install files and checking against server... Oct 01 2024 06:57:24 webserver maldet(21496): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Oct 01 2024 06:57:24 webserver maldet(21496): {update} latest version already installed. Oct 01 2024 06:57:25 webserver maldet(21634): {sigup} performing signature update check... Oct 01 2024 06:57:25 webserver maldet(21634): {sigup} local signature set is version 202409282086558 Oct 01 2024 06:57:25 webserver maldet(21634): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Oct 01 2024 06:57:25 webserver maldet(21634): {sigup} new signature set 20241001551621 available Oct 01 2024 06:57:25 webserver maldet(21634): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Oct 01 2024 06:57:25 webserver maldet(21634): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Oct 01 2024 06:57:25 webserver maldet(21634): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Oct 01 2024 06:57:25 webserver maldet(21634): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Oct 01 2024 06:57:25 webserver maldet(21634): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Oct 01 2024 06:57:25 webserver maldet(21634): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Oct 01 2024 06:57:25 webserver maldet(21634): {sigup} unable to verify md5sum of maldet-sigpack.tgz, please try again or contact proj@rfxn.com Oct 01 2024 06:57:25 webserver maldet(21634): {sigup} verified md5sum of maldet-clean.tgz Oct 01 2024 06:57:25 webserver maldet(21634): {sigup} unpacked and installed maldet-clean.tgz Oct 01 2024 06:57:25 webserver maldet(21822): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Oct 01 2024 06:57:26 webserver maldet(21822): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Oct 01 2024 06:57:26 webserver maldet(21822): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Oct 01 2024 06:57:26 webserver maldet(21822): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Oct 01 2024 06:57:26 webserver maldet(21822): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Oct 01 2024 07:00:59 webserver maldet(21822): {scan} file list completed in 212s, found 568 files... Oct 01 2024 07:00:59 webserver maldet(21822): {scan} found clamav binary at /usr/bin/clamdscan, using clamav scanner engine... Oct 01 2024 07:00:59 webserver maldet(21822): {scan} scan of (568 files) in progress... Oct 01 2024 07:01:05 webserver maldet(21822): {scan} clamscan returned an error, check /usr/local/maldetect/logs/clamscan_log for details! Oct 01 2024 07:01:05 webserver maldet(21822): {scan} scan completed on : files 568, malware hits 0, cleaned hits 0, time 220s Oct 01 2024 07:01:05 webserver maldet(21822): {scan} scan report saved, to view run: maldet --report 241001-0657.21822 Oct 02 2024 06:56:44 webserver maldet(9430): {update} checking for available updates... Oct 02 2024 06:56:44 webserver maldet(9430): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Oct 02 2024 06:56:44 webserver maldet(9430): {update} hashing install files and checking against server... Oct 02 2024 06:56:44 webserver maldet(9430): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Oct 02 2024 06:56:44 webserver maldet(9430): {update} latest version already installed. Oct 02 2024 06:56:44 webserver maldet(9566): {sigup} performing signature update check... Oct 02 2024 06:56:44 webserver maldet(9566): {sigup} local signature set is version 202409282086558 Oct 02 2024 06:56:44 webserver maldet(9566): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Oct 02 2024 06:56:44 webserver maldet(9566): {sigup} new signature set 20241001551621 available Oct 02 2024 06:56:44 webserver maldet(9566): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Oct 02 2024 06:56:44 webserver maldet(9566): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Oct 02 2024 06:56:44 webserver maldet(9566): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Oct 02 2024 06:56:44 webserver maldet(9566): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Oct 02 2024 06:56:44 webserver maldet(9566): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Oct 02 2024 06:56:44 webserver maldet(9566): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Oct 02 2024 06:56:44 webserver maldet(9566): {sigup} verified md5sum of maldet-sigpack.tgz Oct 02 2024 06:56:44 webserver maldet(9566): {sigup} unpacked and installed maldet-sigpack.tgz Oct 02 2024 06:56:44 webserver maldet(9566): {sigup} verified md5sum of maldet-clean.tgz Oct 02 2024 06:56:44 webserver maldet(9566): {sigup} unpacked and installed maldet-clean.tgz Oct 02 2024 06:56:44 webserver maldet(9566): {sigup} signature set update completed Oct 02 2024 06:56:44 webserver maldet(9566): {sigup} 17638 signatures (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Oct 02 2024 06:56:45 webserver maldet(9797): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Oct 02 2024 06:56:45 webserver maldet(9797): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Oct 02 2024 06:56:45 webserver maldet(9797): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Oct 02 2024 06:56:45 webserver maldet(9797): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Oct 02 2024 06:56:45 webserver maldet(9797): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Oct 02 2024 06:59:03 webserver maldet(9797): {scan} file list completed in 137s, found 77 files... Oct 02 2024 06:59:03 webserver maldet(9797): {scan} found clamav binary at /usr/bin/clamdscan, using clamav scanner engine... Oct 02 2024 06:59:03 webserver maldet(9797): {scan} scan of (77 files) in progress... Oct 02 2024 06:59:04 webserver maldet(9797): {scan} clamscan returned an error, check /usr/local/maldetect/logs/clamscan_log for details! Oct 02 2024 06:59:04 webserver maldet(9797): {scan} scan completed on : files 77, malware hits 0, cleaned hits 0, time 139s Oct 02 2024 06:59:04 webserver maldet(9797): {scan} scan report saved, to view run: maldet --report 241002-0656.9797 Oct 03 2024 06:57:23 webserver maldet(32558): {update} checking for available updates... Oct 03 2024 06:57:23 webserver maldet(32558): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Oct 03 2024 06:57:23 webserver maldet(32558): {update} hashing install files and checking against server... Oct 03 2024 06:57:23 webserver maldet(32558): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Oct 03 2024 06:57:23 webserver maldet(32558): {update} latest version already installed. Oct 03 2024 06:57:23 webserver maldet(32694): {sigup} performing signature update check... Oct 03 2024 06:57:23 webserver maldet(32694): {sigup} local signature set is version 20241001551621 Oct 03 2024 06:57:23 webserver maldet(32694): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Oct 03 2024 06:57:23 webserver maldet(32694): {sigup} latest signature set already installed Oct 03 2024 06:57:23 webserver maldet(356): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Oct 03 2024 06:57:24 webserver maldet(356): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Oct 03 2024 06:57:24 webserver maldet(356): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Oct 03 2024 06:57:24 webserver maldet(356): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Oct 03 2024 06:57:24 webserver maldet(356): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Oct 03 2024 06:57:49 webserver maldet(356): {scan} file list completed in 25s, found 270 files... Oct 03 2024 06:57:49 webserver maldet(356): {scan} found clamav binary at /usr/bin/clamdscan, using clamav scanner engine... Oct 03 2024 06:57:49 webserver maldet(356): {scan} scan of (270 files) in progress... Oct 03 2024 06:57:52 webserver maldet(356): {scan} scan completed on : files 270, malware hits 0, cleaned hits 0, time 29s Oct 03 2024 06:57:52 webserver maldet(356): {scan} scan report saved, to view run: maldet --report 241003-0657.356 Oct 04 2024 07:00:38 webserver maldet(20101): {update} checking for available updates... Oct 04 2024 07:00:38 webserver maldet(20101): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Oct 04 2024 07:00:38 webserver maldet(20101): {update} hashing install files and checking against server... Oct 04 2024 07:00:39 webserver maldet(20101): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Oct 04 2024 07:00:39 webserver maldet(20101): {update} latest version already installed. Oct 04 2024 07:00:39 webserver maldet(20237): {sigup} performing signature update check... Oct 04 2024 07:00:39 webserver maldet(20237): {sigup} local signature set is version 20241001551621 Oct 04 2024 07:00:39 webserver maldet(20237): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Oct 04 2024 07:00:39 webserver maldet(20237): {sigup} latest signature set already installed Oct 04 2024 07:00:39 webserver maldet(20351): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Oct 04 2024 07:00:39 webserver maldet(20351): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Oct 04 2024 07:00:39 webserver maldet(20351): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Oct 04 2024 07:00:39 webserver maldet(20351): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Oct 04 2024 07:00:39 webserver maldet(20351): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Oct 04 2024 07:00:51 webserver maldet(20351): {scan} file list completed in 12s, found 437 files... Oct 04 2024 07:00:51 webserver maldet(20351): {scan} found clamav binary at /usr/bin/clamdscan, using clamav scanner engine... Oct 04 2024 07:00:51 webserver maldet(20351): {scan} scan of (437 files) in progress... Oct 04 2024 07:00:56 webserver maldet(20351): {scan} clamscan returned an error, check /usr/local/maldetect/logs/clamscan_log for details! Oct 04 2024 07:00:56 webserver maldet(20351): {scan} scan completed on : files 437, malware hits 0, cleaned hits 0, time 17s Oct 04 2024 07:00:56 webserver maldet(20351): {scan} scan report saved, to view run: maldet --report 241004-0700.20351 Oct 05 2024 06:57:05 webserver maldet(17428): {update} checking for available updates... Oct 05 2024 06:57:05 webserver maldet(17428): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Oct 05 2024 06:57:05 webserver maldet(17428): {update} hashing install files and checking against server... Oct 05 2024 06:57:05 webserver maldet(17428): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Oct 05 2024 06:57:05 webserver maldet(17428): {update} latest version already installed. Oct 05 2024 06:57:05 webserver maldet(17564): {sigup} performing signature update check... Oct 05 2024 06:57:05 webserver maldet(17564): {sigup} local signature set is version 20241001551621 Oct 05 2024 06:57:05 webserver maldet(17564): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Oct 05 2024 06:57:06 webserver maldet(17564): {sigup} new signature set 202410041307746 available Oct 05 2024 06:57:06 webserver maldet(17564): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Oct 05 2024 06:57:06 webserver maldet(17564): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Oct 05 2024 06:57:06 webserver maldet(17564): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Oct 05 2024 06:57:06 webserver maldet(17564): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Oct 05 2024 06:57:06 webserver maldet(17564): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Oct 05 2024 06:57:06 webserver maldet(17564): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Oct 05 2024 06:57:06 webserver maldet(17564): {sigup} verified md5sum of maldet-sigpack.tgz Oct 05 2024 06:57:06 webserver maldet(17564): {sigup} unpacked and installed maldet-sigpack.tgz Oct 05 2024 06:57:06 webserver maldet(17564): {sigup} verified md5sum of maldet-clean.tgz Oct 05 2024 06:57:06 webserver maldet(17564): {sigup} unpacked and installed maldet-clean.tgz Oct 05 2024 06:57:06 webserver maldet(17564): {sigup} signature set update completed Oct 05 2024 06:57:06 webserver maldet(17564): {sigup} 17638 signatures (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Oct 05 2024 06:57:06 webserver maldet(17795): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Oct 05 2024 06:57:11 webserver maldet(17795): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Oct 05 2024 06:57:11 webserver maldet(17795): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Oct 05 2024 06:57:11 webserver maldet(17795): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Oct 05 2024 06:57:11 webserver maldet(17795): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Oct 05 2024 07:00:38 webserver maldet(17795): {scan} file list completed in 207s, found 657 files... Oct 05 2024 07:00:38 webserver maldet(17795): {scan} found clamav binary at /usr/bin/clamdscan, using clamav scanner engine... Oct 05 2024 07:00:38 webserver maldet(17795): {scan} scan of (657 files) in progress... Oct 05 2024 07:00:48 webserver maldet(17795): {scan} scan completed on : files 657, malware hits 0, cleaned hits 0, time 222s Oct 05 2024 07:00:48 webserver maldet(17795): {scan} scan report saved, to view run: maldet --report 241005-0657.17795 Oct 06 2024 06:59:36 webserver maldet(8629): {update} checking for available updates... Oct 06 2024 06:59:36 webserver maldet(8629): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Oct 06 2024 06:59:36 webserver maldet(8629): {update} hashing install files and checking against server... Oct 06 2024 06:59:36 webserver maldet(8629): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Oct 06 2024 06:59:36 webserver maldet(8629): {update} latest version already installed. Oct 06 2024 06:59:36 webserver maldet(8765): {sigup} performing signature update check... Oct 06 2024 06:59:36 webserver maldet(8765): {sigup} local signature set is version 202410041307746 Oct 06 2024 06:59:36 webserver maldet(8765): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Oct 06 2024 06:59:37 webserver maldet(8765): {sigup} latest signature set already installed Oct 06 2024 06:59:37 webserver maldet(8879): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Oct 06 2024 06:59:37 webserver maldet(8879): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Oct 06 2024 06:59:37 webserver maldet(8879): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Oct 06 2024 06:59:37 webserver maldet(8879): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Oct 06 2024 06:59:37 webserver maldet(8879): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Oct 06 2024 07:01:32 webserver maldet(8879): {scan} file list completed in 115s, found 344 files... Oct 06 2024 07:01:32 webserver maldet(8879): {scan} found clamav binary at /usr/bin/clamdscan, using clamav scanner engine... Oct 06 2024 07:01:32 webserver maldet(8879): {scan} scan of (344 files) in progress... Oct 06 2024 07:01:35 webserver maldet(8879): {scan} clamscan returned an error, check /usr/local/maldetect/logs/clamscan_log for details! Oct 06 2024 07:01:35 webserver maldet(8879): {scan} scan completed on : files 344, malware hits 0, cleaned hits 0, time 118s Oct 06 2024 07:01:35 webserver maldet(8879): {scan} scan report saved, to view run: maldet --report 241006-0659.8879 Oct 07 2024 06:57:05 webserver maldet(28972): {update} checking for available updates... Oct 07 2024 06:57:05 webserver maldet(28972): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Oct 07 2024 06:57:05 webserver maldet(28972): {update} hashing install files and checking against server... Oct 07 2024 06:57:05 webserver maldet(28972): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Oct 07 2024 06:57:05 webserver maldet(28972): {update} latest version already installed. Oct 07 2024 06:57:05 webserver maldet(29108): {sigup} performing signature update check... Oct 07 2024 06:57:05 webserver maldet(29108): {sigup} local signature set is version 202410041307746 Oct 07 2024 06:57:05 webserver maldet(29108): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Oct 07 2024 06:57:05 webserver maldet(29108): {sigup} latest signature set already installed Oct 07 2024 06:57:05 webserver maldet(29222): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Oct 07 2024 06:57:05 webserver maldet(29222): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Oct 07 2024 06:57:05 webserver maldet(29222): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Oct 07 2024 06:57:05 webserver maldet(29222): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Oct 07 2024 06:57:05 webserver maldet(29222): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Oct 07 2024 06:57:16 webserver maldet(29222): {scan} file list completed in 11s, found 342 files... Oct 07 2024 06:57:16 webserver maldet(29222): {scan} found clamav binary at /usr/bin/clamdscan, using clamav scanner engine... Oct 07 2024 06:57:16 webserver maldet(29222): {scan} scan of (342 files) in progress... Oct 07 2024 06:57:20 webserver maldet(29222): {scan} scan completed on : files 342, malware hits 0, cleaned hits 0, time 15s Oct 07 2024 06:57:20 webserver maldet(29222): {scan} scan report saved, to view run: maldet --report 241007-0657.29222 Oct 08 2024 06:56:19 webserver maldet(29800): {update} checking for available updates... Oct 08 2024 06:56:19 webserver maldet(29800): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Oct 08 2024 06:56:19 webserver maldet(29800): {update} hashing install files and checking against server... Oct 08 2024 06:56:19 webserver maldet(29800): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Oct 08 2024 06:56:19 webserver maldet(29800): {update} latest version already installed. Oct 08 2024 06:56:19 webserver maldet(29936): {sigup} performing signature update check... Oct 08 2024 06:56:19 webserver maldet(29936): {sigup} local signature set is version 202410041307746 Oct 08 2024 06:56:19 webserver maldet(29936): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Oct 08 2024 06:56:19 webserver maldet(29936): {sigup} new signature set 202410072062761 available Oct 08 2024 06:56:19 webserver maldet(29936): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Oct 08 2024 06:56:19 webserver maldet(29936): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Oct 08 2024 06:56:19 webserver maldet(29936): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Oct 08 2024 06:56:20 webserver maldet(29936): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Oct 08 2024 06:56:20 webserver maldet(29936): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Oct 08 2024 06:56:20 webserver maldet(29936): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Oct 08 2024 06:56:20 webserver maldet(29936): {sigup} verified md5sum of maldet-sigpack.tgz Oct 08 2024 06:56:20 webserver maldet(29936): {sigup} unpacked and installed maldet-sigpack.tgz Oct 08 2024 06:56:20 webserver maldet(29936): {sigup} verified md5sum of maldet-clean.tgz Oct 08 2024 06:56:20 webserver maldet(29936): {sigup} unpacked and installed maldet-clean.tgz Oct 08 2024 06:56:20 webserver maldet(29936): {sigup} signature set update completed Oct 08 2024 06:56:20 webserver maldet(29936): {sigup} 17638 signatures (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Oct 08 2024 06:56:20 webserver maldet(30167): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Oct 08 2024 06:56:20 webserver maldet(30167): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Oct 08 2024 06:56:20 webserver maldet(30167): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Oct 08 2024 06:56:20 webserver maldet(30167): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Oct 08 2024 06:56:20 webserver maldet(30167): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Oct 08 2024 06:56:37 webserver maldet(30167): {scan} file list completed in 17s, found 467 files... Oct 08 2024 06:56:37 webserver maldet(30167): {scan} found clamav binary at /usr/bin/clamdscan, using clamav scanner engine... Oct 08 2024 06:56:37 webserver maldet(30167): {scan} scan of (467 files) in progress... Oct 08 2024 06:56:47 webserver maldet(30167): {scan} clamscan returned an error, check /usr/local/maldetect/logs/clamscan_log for details! Oct 08 2024 06:56:47 webserver maldet(30167): {scan} scan completed on : files 467, malware hits 0, cleaned hits 0, time 27s Oct 08 2024 06:56:47 webserver maldet(30167): {scan} scan report saved, to view run: maldet --report 241008-0656.30167 Oct 09 2024 06:58:40 webserver maldet(25097): {update} checking for available updates... Oct 09 2024 06:58:40 webserver maldet(25097): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Oct 09 2024 06:58:40 webserver maldet(25097): {update} hashing install files and checking against server... Oct 09 2024 06:58:40 webserver maldet(25097): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Oct 09 2024 06:58:40 webserver maldet(25097): {update} latest version already installed. Oct 09 2024 06:58:40 webserver maldet(25233): {sigup} performing signature update check... Oct 09 2024 06:58:40 webserver maldet(25233): {sigup} local signature set is version 202410072062761 Oct 09 2024 06:58:40 webserver maldet(25233): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Oct 09 2024 06:58:40 webserver maldet(25233): {sigup} latest signature set already installed Oct 09 2024 06:58:40 webserver maldet(25347): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Oct 09 2024 06:58:40 webserver maldet(25347): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Oct 09 2024 06:58:40 webserver maldet(25347): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Oct 09 2024 06:58:40 webserver maldet(25347): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Oct 09 2024 06:58:40 webserver maldet(25347): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Oct 09 2024 06:58:54 webserver maldet(25347): {scan} file list completed in 14s, found 434 files... Oct 09 2024 06:58:54 webserver maldet(25347): {scan} found clamav binary at /usr/bin/clamdscan, using clamav scanner engine... Oct 09 2024 06:58:54 webserver maldet(25347): {scan} scan of (434 files) in progress... Oct 09 2024 06:59:01 webserver maldet(25347): {scan} clamscan returned an error, check /usr/local/maldetect/logs/clamscan_log for details! Oct 09 2024 06:59:01 webserver maldet(25347): {scan} scan completed on : files 434, malware hits 0, cleaned hits 0, time 21s Oct 09 2024 06:59:01 webserver maldet(25347): {scan} scan report saved, to view run: maldet --report 241009-0658.25347 Oct 10 2024 07:07:26 webserver maldet(24464): {update} checking for available updates... Oct 10 2024 07:07:26 webserver maldet(24464): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Oct 10 2024 07:07:26 webserver maldet(24464): {update} hashing install files and checking against server... Oct 10 2024 07:07:26 webserver maldet(24464): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Oct 10 2024 07:07:26 webserver maldet(24464): {update} latest version already installed. Oct 10 2024 07:07:28 webserver maldet(24600): {sigup} performing signature update check... Oct 10 2024 07:07:28 webserver maldet(24600): {sigup} local signature set is version 202410072062761 Oct 10 2024 07:07:28 webserver maldet(24600): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Oct 10 2024 07:07:28 webserver maldet(24600): {sigup} new signature set 202410102917829 available Oct 10 2024 07:07:28 webserver maldet(24600): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Oct 10 2024 07:07:29 webserver maldet(24600): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Oct 10 2024 07:07:29 webserver maldet(24600): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Oct 10 2024 07:07:29 webserver maldet(24600): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Oct 10 2024 07:07:29 webserver maldet(24600): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Oct 10 2024 07:07:30 webserver maldet(24600): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Oct 10 2024 07:07:30 webserver maldet(24600): {sigup} verified md5sum of maldet-sigpack.tgz Oct 10 2024 07:07:30 webserver maldet(24600): {sigup} unpacked and installed maldet-sigpack.tgz Oct 10 2024 07:07:31 webserver maldet(24600): {sigup} verified md5sum of maldet-clean.tgz Oct 10 2024 07:07:31 webserver maldet(24600): {sigup} unpacked and installed maldet-clean.tgz Oct 10 2024 07:07:31 webserver maldet(24600): {sigup} signature set update completed Oct 10 2024 07:07:31 webserver maldet(24600): {sigup} 17638 signatures (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Oct 10 2024 07:07:33 webserver maldet(24831): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Oct 10 2024 07:07:34 webserver maldet(24831): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Oct 10 2024 07:07:34 webserver maldet(24831): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Oct 10 2024 07:07:34 webserver maldet(24831): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Oct 10 2024 07:07:34 webserver maldet(24831): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Oct 10 2024 07:09:09 webserver maldet(24831): {scan} file list completed in 94s, found 226 files... Oct 10 2024 07:09:09 webserver maldet(24831): {scan} found clamav binary at /usr/bin/clamdscan, using clamav scanner engine... Oct 10 2024 07:09:09 webserver maldet(24831): {scan} scan of (226 files) in progress... Oct 10 2024 07:09:13 webserver maldet(24831): {scan} scan completed on : files 226, malware hits 0, cleaned hits 0, time 100s Oct 10 2024 07:09:13 webserver maldet(24831): {scan} scan report saved, to view run: maldet --report 241010-0707.24831 Oct 11 2024 06:56:45 webserver maldet(27367): {update} checking for available updates... Oct 11 2024 06:56:45 webserver maldet(27367): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Oct 11 2024 06:56:45 webserver maldet(27367): {update} hashing install files and checking against server... Oct 11 2024 06:56:45 webserver maldet(27367): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Oct 11 2024 06:56:45 webserver maldet(27367): {update} latest version already installed. Oct 11 2024 06:56:45 webserver maldet(27503): {sigup} performing signature update check... Oct 11 2024 06:56:45 webserver maldet(27503): {sigup} local signature set is version 202410072062761 Oct 11 2024 06:56:45 webserver maldet(27503): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Oct 11 2024 06:56:45 webserver maldet(27503): {sigup} new signature set 202410102917829 available Oct 11 2024 06:56:45 webserver maldet(27503): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Oct 11 2024 06:56:45 webserver maldet(27503): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Oct 11 2024 06:56:45 webserver maldet(27503): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Oct 11 2024 06:56:45 webserver maldet(27503): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Oct 11 2024 06:56:45 webserver maldet(27503): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Oct 11 2024 06:56:46 webserver maldet(27503): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Oct 11 2024 06:56:46 webserver maldet(27503): {sigup} verified md5sum of maldet-sigpack.tgz Oct 11 2024 06:56:46 webserver maldet(27503): {sigup} unpacked and installed maldet-sigpack.tgz Oct 11 2024 06:56:46 webserver maldet(27503): {sigup} verified md5sum of maldet-clean.tgz Oct 11 2024 06:56:46 webserver maldet(27503): {sigup} unpacked and installed maldet-clean.tgz Oct 11 2024 06:56:46 webserver maldet(27503): {sigup} signature set update completed Oct 11 2024 06:56:46 webserver maldet(27503): {sigup} 17638 signatures (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Oct 11 2024 06:56:46 webserver maldet(27734): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Oct 11 2024 06:56:46 webserver maldet(27734): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Oct 11 2024 06:56:46 webserver maldet(27734): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Oct 11 2024 06:56:46 webserver maldet(27734): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Oct 11 2024 06:56:46 webserver maldet(27734): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Oct 11 2024 06:57:00 webserver maldet(27734): {scan} file list completed in 14s, found 239 files... Oct 11 2024 06:57:00 webserver maldet(27734): {scan} found clamav binary at /usr/bin/clamdscan, using clamav scanner engine... Oct 11 2024 06:57:00 webserver maldet(27734): {scan} scan of (239 files) in progress... Oct 11 2024 06:57:04 webserver maldet(27734): {scan} scan completed on : files 239, malware hits 0, cleaned hits 0, time 18s Oct 11 2024 06:57:04 webserver maldet(27734): {scan} scan report saved, to view run: maldet --report 241011-0656.27734 Oct 12 2024 06:59:32 webserver maldet(29678): {update} checking for available updates... Oct 12 2024 06:59:32 webserver maldet(29678): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Oct 12 2024 06:59:32 webserver maldet(29678): {update} hashing install files and checking against server... Oct 12 2024 06:59:32 webserver maldet(29678): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Oct 12 2024 06:59:32 webserver maldet(29678): {update} latest version already installed. Oct 12 2024 06:59:32 webserver maldet(29814): {sigup} performing signature update check... Oct 12 2024 06:59:32 webserver maldet(29814): {sigup} local signature set is version 202410102917829 Oct 12 2024 06:59:33 webserver maldet(29814): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Oct 12 2024 06:59:33 webserver maldet(29814): {sigup} latest signature set already installed Oct 12 2024 06:59:33 webserver maldet(29928): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Oct 12 2024 06:59:33 webserver maldet(29928): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Oct 12 2024 06:59:33 webserver maldet(29928): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Oct 12 2024 06:59:33 webserver maldet(29928): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Oct 12 2024 06:59:33 webserver maldet(29928): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Oct 12 2024 06:59:45 webserver maldet(29928): {scan} file list completed in 12s, found 65 files... Oct 12 2024 06:59:45 webserver maldet(29928): {scan} found clamav binary at /usr/bin/clamdscan, using clamav scanner engine... Oct 12 2024 06:59:45 webserver maldet(29928): {scan} scan of (65 files) in progress... Oct 12 2024 06:59:46 webserver maldet(29928): {scan} scan completed on : files 65, malware hits 0, cleaned hits 0, time 13s Oct 12 2024 06:59:46 webserver maldet(29928): {scan} scan report saved, to view run: maldet --report 241012-0659.29928 Oct 13 2024 06:58:51 webserver maldet(26782): {update} checking for available updates... Oct 13 2024 06:58:51 webserver maldet(26782): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Oct 13 2024 06:58:51 webserver maldet(26782): {update} hashing install files and checking against server... Oct 13 2024 06:58:51 webserver maldet(26782): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Oct 13 2024 06:58:51 webserver maldet(26782): {update} latest version already installed. Oct 13 2024 06:58:51 webserver maldet(26918): {sigup} performing signature update check... Oct 13 2024 06:58:51 webserver maldet(26918): {sigup} local signature set is version 202410102917829 Oct 13 2024 06:58:51 webserver maldet(26918): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Oct 13 2024 06:58:51 webserver maldet(26918): {sigup} new signature set 202410133691617 available Oct 13 2024 06:58:51 webserver maldet(26918): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Oct 13 2024 06:58:51 webserver maldet(26918): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Oct 13 2024 06:58:51 webserver maldet(26918): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Oct 13 2024 06:58:51 webserver maldet(26918): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Oct 13 2024 06:58:51 webserver maldet(26918): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Oct 13 2024 06:58:51 webserver maldet(26918): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Oct 13 2024 06:58:51 webserver maldet(26918): {sigup} verified md5sum of maldet-sigpack.tgz Oct 13 2024 06:58:51 webserver maldet(26918): {sigup} unpacked and installed maldet-sigpack.tgz Oct 13 2024 06:58:51 webserver maldet(26918): {sigup} verified md5sum of maldet-clean.tgz Oct 13 2024 06:58:51 webserver maldet(26918): {sigup} unpacked and installed maldet-clean.tgz Oct 13 2024 06:58:51 webserver maldet(26918): {sigup} signature set update completed Oct 13 2024 06:58:51 webserver maldet(26918): {sigup} 17638 signatures (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Oct 13 2024 06:58:52 webserver maldet(27151): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Oct 13 2024 06:58:52 webserver maldet(27151): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Oct 13 2024 06:58:52 webserver maldet(27151): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Oct 13 2024 06:58:52 webserver maldet(27151): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Oct 13 2024 06:58:52 webserver maldet(27151): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Oct 13 2024 06:59:06 webserver maldet(27151): {scan} file list completed in 14s, found 253 files... Oct 13 2024 06:59:06 webserver maldet(27151): {scan} found clamav binary at /usr/bin/clamdscan, using clamav scanner engine... Oct 13 2024 06:59:06 webserver maldet(27151): {scan} scan of (253 files) in progress... Oct 13 2024 06:59:11 webserver maldet(27151): {scan} scan completed on : files 253, malware hits 0, cleaned hits 0, time 19s Oct 13 2024 06:59:11 webserver maldet(27151): {scan} scan report saved, to view run: maldet --report 241013-0658.27151 Oct 14 2024 06:57:53 webserver maldet(12857): {update} checking for available updates... Oct 14 2024 06:57:53 webserver maldet(12857): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Oct 14 2024 06:57:53 webserver maldet(12857): {update} hashing install files and checking against server... Oct 14 2024 06:57:53 webserver maldet(12857): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Oct 14 2024 06:57:53 webserver maldet(12857): {update} latest version already installed. Oct 14 2024 06:57:53 webserver maldet(12993): {sigup} performing signature update check... Oct 14 2024 06:57:53 webserver maldet(12993): {sigup} local signature set is version 202410133691617 Oct 14 2024 06:57:53 webserver maldet(12993): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Oct 14 2024 06:57:53 webserver maldet(12993): {sigup} latest signature set already installed Oct 14 2024 06:57:53 webserver maldet(13107): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Oct 14 2024 06:57:54 webserver maldet(13107): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Oct 14 2024 06:57:54 webserver maldet(13107): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Oct 14 2024 06:57:54 webserver maldet(13107): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Oct 14 2024 06:57:54 webserver maldet(13107): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Oct 14 2024 06:58:04 webserver maldet(13107): {scan} file list completed in 10s, found 6222 files... Oct 14 2024 06:58:04 webserver maldet(13107): {scan} found clamav binary at /usr/bin/clamdscan, using clamav scanner engine... Oct 14 2024 06:58:04 webserver maldet(13107): {scan} scan of (6222 files) in progress... Oct 14 2024 06:59:38 webserver maldet(13107): {scan} clamscan returned an error, check /usr/local/maldetect/logs/clamscan_log for details! Oct 14 2024 06:59:38 webserver maldet(13107): {scan} scan completed on : files 6222, malware hits 0, cleaned hits 0, time 105s Oct 14 2024 06:59:38 webserver maldet(13107): {scan} scan report saved, to view run: maldet --report 241014-0657.13107 Oct 15 2024 06:59:01 webserver maldet(4758): {update} checking for available updates... Oct 15 2024 06:59:01 webserver maldet(4758): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Oct 15 2024 06:59:01 webserver maldet(4758): {update} hashing install files and checking against server... Oct 15 2024 06:59:01 webserver maldet(4758): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Oct 15 2024 06:59:01 webserver maldet(4758): {update} latest version already installed. Oct 15 2024 06:59:01 webserver maldet(4894): {sigup} performing signature update check... Oct 15 2024 06:59:01 webserver maldet(4894): {sigup} local signature set is version 202410133691617 Oct 15 2024 06:59:02 webserver maldet(4894): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Oct 15 2024 06:59:02 webserver maldet(4894): {sigup} latest signature set already installed Oct 15 2024 06:59:02 webserver maldet(5008): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Oct 15 2024 06:59:02 webserver maldet(5008): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Oct 15 2024 06:59:02 webserver maldet(5008): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Oct 15 2024 06:59:02 webserver maldet(5008): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Oct 15 2024 06:59:02 webserver maldet(5008): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Oct 15 2024 06:59:07 webserver maldet(5008): {scan} file list completed in 5s, found 1822 files... Oct 15 2024 06:59:07 webserver maldet(5008): {scan} found clamav binary at /usr/bin/clamdscan, using clamav scanner engine... Oct 15 2024 06:59:07 webserver maldet(5008): {scan} scan of (1822 files) in progress... Oct 15 2024 06:59:30 webserver maldet(5008): {scan} clamscan returned an error, check /usr/local/maldetect/logs/clamscan_log for details! Oct 15 2024 06:59:30 webserver maldet(5008): {scan} scan completed on : files 1822, malware hits 0, cleaned hits 0, time 28s Oct 15 2024 06:59:30 webserver maldet(5008): {scan} scan report saved, to view run: maldet --report 241015-0659.5008 Oct 16 2024 06:57:45 webserver maldet(28805): {update} checking for available updates... Oct 16 2024 06:57:45 webserver maldet(28805): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Oct 16 2024 06:57:45 webserver maldet(28805): {update} hashing install files and checking against server... Oct 16 2024 06:57:45 webserver maldet(28805): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Oct 16 2024 06:57:45 webserver maldet(28805): {update} latest version already installed. Oct 16 2024 06:57:45 webserver maldet(28941): {sigup} performing signature update check... Oct 16 2024 06:57:45 webserver maldet(28941): {sigup} local signature set is version 202410133691617 Oct 16 2024 06:57:45 webserver maldet(28941): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Oct 16 2024 06:57:45 webserver maldet(28941): {sigup} new signature set 20241016273515 available Oct 16 2024 06:57:45 webserver maldet(28941): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Oct 16 2024 06:57:45 webserver maldet(28941): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Oct 16 2024 06:57:45 webserver maldet(28941): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Oct 16 2024 06:57:45 webserver maldet(28941): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Oct 16 2024 06:57:45 webserver maldet(28941): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Oct 16 2024 06:57:46 webserver maldet(28941): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Oct 16 2024 06:57:46 webserver maldet(28941): {sigup} verified md5sum of maldet-sigpack.tgz Oct 16 2024 06:57:46 webserver maldet(28941): {sigup} unpacked and installed maldet-sigpack.tgz Oct 16 2024 06:57:46 webserver maldet(28941): {sigup} verified md5sum of maldet-clean.tgz Oct 16 2024 06:57:46 webserver maldet(28941): {sigup} unpacked and installed maldet-clean.tgz Oct 16 2024 06:57:46 webserver maldet(28941): {sigup} signature set update completed Oct 16 2024 06:57:46 webserver maldet(28941): {sigup} 17638 signatures (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Oct 16 2024 06:57:46 webserver maldet(29172): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Oct 16 2024 06:57:46 webserver maldet(29172): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Oct 16 2024 06:57:46 webserver maldet(29172): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Oct 16 2024 06:57:46 webserver maldet(29172): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Oct 16 2024 06:57:46 webserver maldet(29172): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Oct 16 2024 06:57:51 webserver maldet(29172): {scan} file list completed in 5s, found 38 files... Oct 16 2024 06:57:51 webserver maldet(29172): {scan} found clamav binary at /usr/bin/clamdscan, using clamav scanner engine... Oct 16 2024 06:57:51 webserver maldet(29172): {scan} scan of (38 files) in progress... Oct 16 2024 06:57:51 webserver maldet(29172): {scan} scan completed on : files 38, malware hits 0, cleaned hits 0, time 5s Oct 16 2024 06:57:51 webserver maldet(29172): {scan} scan report saved, to view run: maldet --report 241016-0657.29172 Oct 17 2024 06:56:38 webserver maldet(14364): {update} checking for available updates... Oct 17 2024 06:56:38 webserver maldet(14364): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Oct 17 2024 06:56:38 webserver maldet(14364): {update} hashing install files and checking against server... Oct 17 2024 06:56:38 webserver maldet(14364): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Oct 17 2024 06:56:38 webserver maldet(14364): {update} latest version already installed. Oct 17 2024 06:56:38 webserver maldet(14500): {sigup} performing signature update check... Oct 17 2024 06:56:38 webserver maldet(14500): {sigup} local signature set is version 20241016273515 Oct 17 2024 06:56:38 webserver maldet(14500): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Oct 17 2024 06:56:38 webserver maldet(14500): {sigup} latest signature set already installed Oct 17 2024 06:56:38 webserver maldet(14614): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Oct 17 2024 06:56:38 webserver maldet(14614): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Oct 17 2024 06:56:38 webserver maldet(14614): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Oct 17 2024 06:56:38 webserver maldet(14614): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Oct 17 2024 06:56:39 webserver maldet(14614): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Oct 17 2024 06:56:43 webserver maldet(14614): {scan} file list completed in 5s, found 230 files... Oct 17 2024 06:56:43 webserver maldet(14614): {scan} found clamav binary at /usr/bin/clamdscan, using clamav scanner engine... Oct 17 2024 06:56:43 webserver maldet(14614): {scan} scan of (230 files) in progress... Oct 17 2024 06:56:45 webserver maldet(14614): {scan} scan completed on : files 230, malware hits 0, cleaned hits 0, time 7s Oct 17 2024 06:56:45 webserver maldet(14614): {scan} scan report saved, to view run: maldet --report 241017-0656.14614 Oct 18 2024 06:58:58 webserver maldet(32631): {update} checking for available updates... Oct 18 2024 06:58:58 webserver maldet(32631): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Oct 18 2024 06:58:58 webserver maldet(32631): {update} hashing install files and checking against server... Oct 18 2024 06:58:59 webserver maldet(32631): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Oct 18 2024 06:58:59 webserver maldet(32631): {update} latest version already installed. Oct 18 2024 06:58:59 webserver maldet(32767): {sigup} performing signature update check... Oct 18 2024 06:58:59 webserver maldet(32767): {sigup} local signature set is version 20241016273515 Oct 18 2024 06:58:59 webserver maldet(32767): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Oct 18 2024 06:58:59 webserver maldet(32767): {sigup} latest signature set already installed Oct 18 2024 06:58:59 webserver maldet(429): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Oct 18 2024 06:58:59 webserver maldet(429): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Oct 18 2024 06:58:59 webserver maldet(429): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Oct 18 2024 06:58:59 webserver maldet(429): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Oct 18 2024 06:58:59 webserver maldet(429): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Oct 18 2024 06:59:04 webserver maldet(429): {scan} file list completed in 5s, found 74 files... Oct 18 2024 06:59:04 webserver maldet(429): {scan} found clamav binary at /usr/bin/clamdscan, using clamav scanner engine... Oct 18 2024 06:59:04 webserver maldet(429): {scan} scan of (74 files) in progress... Oct 18 2024 06:59:04 webserver maldet(429): {scan} clamscan returned an error, check /usr/local/maldetect/logs/clamscan_log for details! Oct 18 2024 06:59:04 webserver maldet(429): {scan} scan completed on : files 74, malware hits 0, cleaned hits 0, time 5s Oct 18 2024 06:59:04 webserver maldet(429): {scan} scan report saved, to view run: maldet --report 241018-0658.429 Oct 19 2024 06:55:59 webserver maldet(12691): {update} checking for available updates... Oct 19 2024 06:55:59 webserver maldet(12691): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Oct 19 2024 06:55:59 webserver maldet(12691): {update} hashing install files and checking against server... Oct 19 2024 06:55:59 webserver maldet(12691): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Oct 19 2024 06:55:59 webserver maldet(12691): {update} latest version already installed. Oct 19 2024 06:55:59 webserver maldet(12827): {sigup} performing signature update check... Oct 19 2024 06:55:59 webserver maldet(12827): {sigup} local signature set is version 20241016273515 Oct 19 2024 06:55:59 webserver maldet(12827): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Oct 19 2024 06:55:59 webserver maldet(12827): {sigup} new signature set 20241019573743 available Oct 19 2024 06:55:59 webserver maldet(12827): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Oct 19 2024 06:55:59 webserver maldet(12827): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Oct 19 2024 06:55:59 webserver maldet(12827): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Oct 19 2024 06:55:59 webserver maldet(12827): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Oct 19 2024 06:55:59 webserver maldet(12827): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Oct 19 2024 06:55:59 webserver maldet(12827): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Oct 19 2024 06:55:59 webserver maldet(12827): {sigup} verified md5sum of maldet-sigpack.tgz Oct 19 2024 06:55:59 webserver maldet(12827): {sigup} unpacked and installed maldet-sigpack.tgz Oct 19 2024 06:55:59 webserver maldet(12827): {sigup} verified md5sum of maldet-clean.tgz Oct 19 2024 06:55:59 webserver maldet(12827): {sigup} unpacked and installed maldet-clean.tgz Oct 19 2024 06:55:59 webserver maldet(12827): {sigup} signature set update completed Oct 19 2024 06:55:59 webserver maldet(12827): {sigup} 17638 signatures (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Oct 19 2024 06:55:59 webserver maldet(13073): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Oct 19 2024 06:55:59 webserver maldet(13073): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Oct 19 2024 06:55:59 webserver maldet(13073): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Oct 19 2024 06:55:59 webserver maldet(13073): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Oct 19 2024 06:55:59 webserver maldet(13073): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Oct 19 2024 06:56:04 webserver maldet(13073): {scan} file list completed in 5s, found 243 files... Oct 19 2024 06:56:04 webserver maldet(13073): {scan} found clamav binary at /usr/bin/clamdscan, using clamav scanner engine... Oct 19 2024 06:56:04 webserver maldet(13073): {scan} scan of (243 files) in progress... Oct 19 2024 06:56:07 webserver maldet(13073): {scan} scan completed on : files 243, malware hits 0, cleaned hits 0, time 8s Oct 19 2024 06:56:07 webserver maldet(13073): {scan} scan report saved, to view run: maldet --report 241019-0655.13073 Oct 20 2024 06:56:57 webserver maldet(26063): {update} checking for available updates... Oct 20 2024 06:56:57 webserver maldet(26063): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Oct 20 2024 06:56:57 webserver maldet(26063): {update} hashing install files and checking against server... Oct 20 2024 06:56:57 webserver maldet(26063): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Oct 20 2024 06:56:57 webserver maldet(26063): {update} latest version already installed. Oct 20 2024 06:56:58 webserver maldet(26199): {sigup} performing signature update check... Oct 20 2024 06:56:58 webserver maldet(26199): {sigup} local signature set is version 20241016273515 Oct 20 2024 06:56:58 webserver maldet(26199): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Oct 20 2024 06:56:58 webserver maldet(26199): {sigup} new signature set 20241019573743 available Oct 20 2024 06:56:58 webserver maldet(26199): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Oct 20 2024 06:56:58 webserver maldet(26199): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Oct 20 2024 06:56:58 webserver maldet(26199): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Oct 20 2024 06:56:58 webserver maldet(26199): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Oct 20 2024 06:56:58 webserver maldet(26199): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Oct 20 2024 06:56:58 webserver maldet(26199): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Oct 20 2024 06:56:58 webserver maldet(26199): {sigup} verified md5sum of maldet-sigpack.tgz Oct 20 2024 06:56:58 webserver maldet(26199): {sigup} unpacked and installed maldet-sigpack.tgz Oct 20 2024 06:56:58 webserver maldet(26199): {sigup} verified md5sum of maldet-clean.tgz Oct 20 2024 06:56:58 webserver maldet(26199): {sigup} unpacked and installed maldet-clean.tgz Oct 20 2024 06:56:58 webserver maldet(26199): {sigup} signature set update completed Oct 20 2024 06:56:58 webserver maldet(26199): {sigup} 17638 signatures (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Oct 20 2024 06:56:58 webserver maldet(26430): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Oct 20 2024 06:56:58 webserver maldet(26430): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Oct 20 2024 06:56:58 webserver maldet(26430): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Oct 20 2024 06:56:58 webserver maldet(26430): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Oct 20 2024 06:56:58 webserver maldet(26430): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Oct 20 2024 06:57:03 webserver maldet(26430): {scan} file list completed in 5s, found 59 files... Oct 20 2024 06:57:03 webserver maldet(26430): {scan} found clamav binary at /usr/bin/clamdscan, using clamav scanner engine... Oct 20 2024 06:57:03 webserver maldet(26430): {scan} scan of (59 files) in progress... Oct 20 2024 06:57:04 webserver maldet(26430): {scan} scan completed on : files 59, malware hits 0, cleaned hits 0, time 6s Oct 20 2024 06:57:04 webserver maldet(26430): {scan} scan report saved, to view run: maldet --report 241020-0656.26430 Oct 21 2024 06:57:09 webserver maldet(9920): {update} checking for available updates... Oct 21 2024 06:57:09 webserver maldet(9920): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Oct 21 2024 06:57:09 webserver maldet(9920): {update} hashing install files and checking against server... Oct 21 2024 06:57:09 webserver maldet(9920): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Oct 21 2024 06:57:09 webserver maldet(9920): {update} latest version already installed. Oct 21 2024 06:57:09 webserver maldet(10056): {sigup} performing signature update check... Oct 21 2024 06:57:09 webserver maldet(10056): {sigup} local signature set is version 20241019573743 Oct 21 2024 06:57:09 webserver maldet(10056): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Oct 21 2024 06:57:09 webserver maldet(10056): {sigup} latest signature set already installed Oct 21 2024 06:57:09 webserver maldet(10170): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Oct 21 2024 06:57:10 webserver maldet(10170): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Oct 21 2024 06:57:10 webserver maldet(10170): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Oct 21 2024 06:57:10 webserver maldet(10170): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Oct 21 2024 06:57:10 webserver maldet(10170): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Oct 21 2024 06:58:36 webserver maldet(10170): {scan} file list completed in 85s, found 299 files... Oct 21 2024 06:58:36 webserver maldet(10170): {scan} found clamav binary at /usr/bin/clamdscan, using clamav scanner engine... Oct 21 2024 06:58:36 webserver maldet(10170): {scan} scan of (299 files) in progress... Oct 21 2024 06:58:39 webserver maldet(10170): {scan} clamscan returned an error, check /usr/local/maldetect/logs/clamscan_log for details! Oct 21 2024 06:58:39 webserver maldet(10170): {scan} scan completed on : files 299, malware hits 0, cleaned hits 0, time 90s Oct 21 2024 06:58:39 webserver maldet(10170): {scan} scan report saved, to view run: maldet --report 241021-0657.10170 Oct 21 2024 17:11:41 webserver maldet(270): {mon} could not find inotifywait command, install yum package inotify-tools or download from https://github.com/rvoicilas/inotify-tools/wiki/ Oct 22 2024 06:56:02 webserver maldet(4106): {update} checking for available updates... Oct 22 2024 06:56:02 webserver maldet(4106): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Oct 22 2024 06:56:02 webserver maldet(4106): {update} hashing install files and checking against server... Oct 22 2024 06:56:02 webserver maldet(4106): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Oct 22 2024 06:56:02 webserver maldet(4106): {update} latest version already installed. Oct 22 2024 06:56:03 webserver maldet(4242): {sigup} performing signature update check... Oct 22 2024 06:56:03 webserver maldet(4242): {sigup} local signature set is version 20241019573743 Oct 22 2024 06:56:03 webserver maldet(4242): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Oct 22 2024 06:56:03 webserver maldet(4242): {sigup} latest signature set already installed Oct 22 2024 06:56:03 webserver maldet(4356): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Oct 22 2024 06:56:03 webserver maldet(4356): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Oct 22 2024 06:56:03 webserver maldet(4356): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Oct 22 2024 06:56:03 webserver maldet(4356): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Oct 22 2024 06:56:03 webserver maldet(4356): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Oct 22 2024 06:56:07 webserver maldet(4356): {scan} file list completed in 4s, found 275 files... Oct 22 2024 06:56:07 webserver maldet(4356): {scan} found clamav binary at /usr/bin/clamdscan, using clamav scanner engine... Oct 22 2024 06:56:07 webserver maldet(4356): {scan} scan of (275 files) in progress... Oct 22 2024 06:56:11 webserver maldet(4356): {scan} clamscan returned an error, check /usr/local/maldetect/logs/clamscan_log for details! Oct 22 2024 06:56:11 webserver maldet(4356): {scan} scan completed on : files 275, malware hits 0, cleaned hits 0, time 8s Oct 22 2024 06:56:11 webserver maldet(4356): {scan} scan report saved, to view run: maldet --report 241022-0656.4356 Oct 22 2024 19:10:21 webserver maldet(268): {mon} could not find inotifywait command, install yum package inotify-tools or download from https://github.com/rvoicilas/inotify-tools/wiki/ Oct 22 2024 21:03:58 webserver maldet(272): {mon} could not find inotifywait command, install yum package inotify-tools or download from https://github.com/rvoicilas/inotify-tools/wiki/ Oct 23 2024 06:58:20 webserver maldet(19617): {update} checking for available updates... Oct 23 2024 06:58:20 webserver maldet(19617): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Oct 23 2024 06:58:20 webserver maldet(19617): {update} hashing install files and checking against server... Oct 23 2024 06:58:20 webserver maldet(19617): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Oct 23 2024 06:58:20 webserver maldet(19617): {update} latest version already installed. Oct 23 2024 06:58:20 webserver maldet(19753): {sigup} performing signature update check... Oct 23 2024 06:58:20 webserver maldet(19753): {sigup} local signature set is version 20241019573743 Oct 23 2024 06:58:20 webserver maldet(19753): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Oct 23 2024 06:58:20 webserver maldet(19753): {sigup} latest signature set already installed Oct 23 2024 06:58:20 webserver maldet(19867): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Oct 23 2024 06:58:20 webserver maldet(19867): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Oct 23 2024 06:58:20 webserver maldet(19867): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Oct 23 2024 06:58:20 webserver maldet(19867): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Oct 23 2024 06:58:20 webserver maldet(19867): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Oct 23 2024 06:58:25 webserver maldet(19867): {scan} file list completed in 5s, found 253 files... Oct 23 2024 06:58:25 webserver maldet(19867): {scan} found clamav binary at /usr/bin/clamdscan, using clamav scanner engine... Oct 23 2024 06:58:25 webserver maldet(19867): {scan} scan of (253 files) in progress... Oct 23 2024 06:58:29 webserver maldet(19867): {scan} scan completed on : files 253, malware hits 0, cleaned hits 0, time 9s Oct 23 2024 06:58:29 webserver maldet(19867): {scan} scan report saved, to view run: maldet --report 241023-0658.19867 Oct 24 2024 06:57:43 webserver maldet(4826): {update} checking for available updates... Oct 24 2024 06:57:44 webserver maldet(4826): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Oct 24 2024 06:57:44 webserver maldet(4826): {update} hashing install files and checking against server... Oct 24 2024 06:57:44 webserver maldet(4826): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Oct 24 2024 06:57:44 webserver maldet(4826): {update} latest version already installed. Oct 24 2024 06:57:44 webserver maldet(4962): {sigup} performing signature update check... Oct 24 2024 06:57:44 webserver maldet(4962): {sigup} local signature set is version 20241019573743 Oct 24 2024 06:57:44 webserver maldet(4962): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Oct 24 2024 06:57:44 webserver maldet(4962): {sigup} new signature set 202410221331455 available Oct 24 2024 06:57:44 webserver maldet(4962): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Oct 24 2024 06:57:44 webserver maldet(4962): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Oct 24 2024 06:57:44 webserver maldet(4962): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Oct 24 2024 06:57:44 webserver maldet(4962): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Oct 24 2024 06:57:44 webserver maldet(4962): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Oct 24 2024 06:57:44 webserver maldet(4962): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Oct 24 2024 06:57:44 webserver maldet(4962): {sigup} verified md5sum of maldet-sigpack.tgz Oct 24 2024 06:57:44 webserver maldet(4962): {sigup} unpacked and installed maldet-sigpack.tgz Oct 24 2024 06:57:44 webserver maldet(4962): {sigup} verified md5sum of maldet-clean.tgz Oct 24 2024 06:57:44 webserver maldet(4962): {sigup} unpacked and installed maldet-clean.tgz Oct 24 2024 06:57:44 webserver maldet(4962): {sigup} signature set update completed Oct 24 2024 06:57:44 webserver maldet(4962): {sigup} 17638 signatures (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Oct 24 2024 06:57:44 webserver maldet(5193): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Oct 24 2024 06:57:45 webserver maldet(5193): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Oct 24 2024 06:57:45 webserver maldet(5193): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Oct 24 2024 06:57:45 webserver maldet(5193): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Oct 24 2024 06:57:45 webserver maldet(5193): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Oct 24 2024 06:57:49 webserver maldet(5193): {scan} file list completed in 4s, found 12 files... Oct 24 2024 06:57:49 webserver maldet(5193): {scan} found clamav binary at /usr/bin/clamdscan, using clamav scanner engine... Oct 24 2024 06:57:49 webserver maldet(5193): {scan} scan of (12 files) in progress... Oct 24 2024 06:57:50 webserver maldet(5193): {scan} scan completed on : files 12, malware hits 0, cleaned hits 0, time 6s Oct 24 2024 06:57:50 webserver maldet(5193): {scan} scan report saved, to view run: maldet --report 241024-0657.5193 Oct 25 2024 07:07:03 webserver maldet(28423): {update} checking for available updates... Oct 25 2024 07:07:04 webserver maldet(28423): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Oct 25 2024 07:07:04 webserver maldet(28423): {update} hashing install files and checking against server... Oct 25 2024 07:07:04 webserver maldet(28423): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Oct 25 2024 07:07:04 webserver maldet(28423): {update} latest version already installed. Oct 25 2024 07:07:04 webserver maldet(28559): {sigup} performing signature update check... Oct 25 2024 07:07:04 webserver maldet(28559): {sigup} local signature set is version 202410221331455 Oct 25 2024 07:07:04 webserver maldet(28559): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Oct 25 2024 07:07:04 webserver maldet(28559): {sigup} latest signature set already installed Oct 25 2024 07:07:04 webserver maldet(28673): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Oct 25 2024 07:07:04 webserver maldet(28673): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Oct 25 2024 07:07:04 webserver maldet(28673): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Oct 25 2024 07:07:04 webserver maldet(28673): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Oct 25 2024 07:07:04 webserver maldet(28673): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Oct 25 2024 07:07:09 webserver maldet(28673): {scan} file list completed in 5s, found 31 files... Oct 25 2024 07:07:09 webserver maldet(28673): {scan} found clamav binary at /usr/bin/clamdscan, using clamav scanner engine... Oct 25 2024 07:07:09 webserver maldet(28673): {scan} scan of (31 files) in progress... Oct 25 2024 07:07:09 webserver maldet(28673): {scan} scan completed on : files 31, malware hits 0, cleaned hits 0, time 5s Oct 25 2024 07:07:09 webserver maldet(28673): {scan} scan report saved, to view run: maldet --report 241025-0707.28673 Oct 26 2024 06:56:34 webserver maldet(16866): {update} checking for available updates... Oct 26 2024 06:56:34 webserver maldet(16866): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Oct 26 2024 06:56:34 webserver maldet(16866): {update} hashing install files and checking against server... Oct 26 2024 06:56:34 webserver maldet(16866): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Oct 26 2024 06:56:34 webserver maldet(16866): {update} latest version already installed. Oct 26 2024 06:56:34 webserver maldet(17002): {sigup} performing signature update check... Oct 26 2024 06:56:34 webserver maldet(17002): {sigup} local signature set is version 202410221331455 Oct 26 2024 06:56:34 webserver maldet(17002): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Oct 26 2024 06:56:34 webserver maldet(17002): {sigup} new signature set 202410252090927 available Oct 26 2024 06:56:34 webserver maldet(17002): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Oct 26 2024 06:56:34 webserver maldet(17002): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Oct 26 2024 06:56:34 webserver maldet(17002): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Oct 26 2024 06:56:34 webserver maldet(17002): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Oct 26 2024 06:56:34 webserver maldet(17002): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Oct 26 2024 06:56:34 webserver maldet(17002): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Oct 26 2024 06:56:34 webserver maldet(17002): {sigup} verified md5sum of maldet-sigpack.tgz Oct 26 2024 06:56:34 webserver maldet(17002): {sigup} unpacked and installed maldet-sigpack.tgz Oct 26 2024 06:56:34 webserver maldet(17002): {sigup} verified md5sum of maldet-clean.tgz Oct 26 2024 06:56:34 webserver maldet(17002): {sigup} unpacked and installed maldet-clean.tgz Oct 26 2024 06:56:34 webserver maldet(17002): {sigup} signature set update completed Oct 26 2024 06:56:34 webserver maldet(17002): {sigup} 17638 signatures (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Oct 26 2024 06:56:34 webserver maldet(17233): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Oct 26 2024 06:56:35 webserver maldet(17233): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Oct 26 2024 06:56:35 webserver maldet(17233): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Oct 26 2024 06:56:35 webserver maldet(17233): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Oct 26 2024 06:56:35 webserver maldet(17233): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Oct 26 2024 06:56:39 webserver maldet(17233): {scan} file list completed in 4s, found 10 files... Oct 26 2024 06:56:39 webserver maldet(17233): {scan} found clamav binary at /usr/bin/clamdscan, using clamav scanner engine... Oct 26 2024 06:56:39 webserver maldet(17233): {scan} scan of (10 files) in progress... Oct 26 2024 06:56:40 webserver maldet(17233): {scan} clamscan returned an error, check /usr/local/maldetect/logs/clamscan_log for details! Oct 26 2024 06:56:40 webserver maldet(17233): {scan} scan completed on : files 10, malware hits 0, cleaned hits 0, time 6s Oct 26 2024 06:56:40 webserver maldet(17233): {scan} scan report saved, to view run: maldet --report 241026-0656.17233 Oct 27 2024 06:58:37 webserver maldet(7270): {update} checking for available updates... Oct 27 2024 06:58:37 webserver maldet(7270): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Oct 27 2024 06:58:37 webserver maldet(7270): {update} hashing install files and checking against server... Oct 27 2024 06:58:37 webserver maldet(7270): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Oct 27 2024 06:58:37 webserver maldet(7270): {update} latest version already installed. Oct 27 2024 06:58:37 webserver maldet(7406): {sigup} performing signature update check... Oct 27 2024 06:58:37 webserver maldet(7406): {sigup} local signature set is version 202410252090927 Oct 27 2024 06:58:37 webserver maldet(7406): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Oct 27 2024 06:58:37 webserver maldet(7406): {sigup} latest signature set already installed Oct 27 2024 06:58:38 webserver maldet(7520): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Oct 27 2024 06:58:38 webserver maldet(7520): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Oct 27 2024 06:58:38 webserver maldet(7520): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Oct 27 2024 06:58:38 webserver maldet(7520): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Oct 27 2024 06:58:38 webserver maldet(7520): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Oct 27 2024 06:58:42 webserver maldet(7520): {scan} file list completed in 4s, found 10 files... Oct 27 2024 06:58:42 webserver maldet(7520): {scan} found clamav binary at /usr/bin/clamdscan, using clamav scanner engine... Oct 27 2024 06:58:42 webserver maldet(7520): {scan} scan of (10 files) in progress... Oct 27 2024 06:58:43 webserver maldet(7520): {scan} clamscan returned an error, check /usr/local/maldetect/logs/clamscan_log for details! Oct 27 2024 06:58:43 webserver maldet(7520): {scan} scan completed on : files 10, malware hits 0, cleaned hits 0, time 5s Oct 27 2024 06:58:43 webserver maldet(7520): {scan} scan report saved, to view run: maldet --report 241027-0658.7520 Oct 28 2024 06:55:49 webserver maldet(6050): {update} checking for available updates... Oct 28 2024 06:55:49 webserver maldet(6050): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Oct 28 2024 06:55:49 webserver maldet(6050): {update} hashing install files and checking against server... Oct 28 2024 06:55:49 webserver maldet(6050): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Oct 28 2024 06:55:49 webserver maldet(6050): {update} latest version already installed. Oct 28 2024 06:55:49 webserver maldet(6186): {sigup} performing signature update check... Oct 28 2024 06:55:49 webserver maldet(6186): {sigup} local signature set is version 202410252090927 Oct 28 2024 06:55:49 webserver maldet(6186): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Oct 28 2024 06:55:49 webserver maldet(6186): {sigup} latest signature set already installed Oct 28 2024 06:55:49 webserver maldet(6300): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Oct 28 2024 06:55:49 webserver maldet(6300): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Oct 28 2024 06:55:49 webserver maldet(6300): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Oct 28 2024 06:55:49 webserver maldet(6300): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Oct 28 2024 06:55:49 webserver maldet(6300): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Oct 28 2024 06:55:54 webserver maldet(6300): {scan} file list completed in 5s, found 14 files... Oct 28 2024 06:55:54 webserver maldet(6300): {scan} found clamav binary at /usr/bin/clamdscan, using clamav scanner engine... Oct 28 2024 06:55:54 webserver maldet(6300): {scan} scan of (14 files) in progress... Oct 28 2024 06:55:54 webserver maldet(6300): {scan} scan completed on : files 14, malware hits 0, cleaned hits 0, time 5s Oct 28 2024 06:55:54 webserver maldet(6300): {scan} scan report saved, to view run: maldet --report 241028-0655.6300 Oct 29 2024 06:57:19 webserver maldet(468): {update} checking for available updates... Oct 29 2024 06:57:19 webserver maldet(468): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Oct 29 2024 06:57:19 webserver maldet(468): {update} hashing install files and checking against server... Oct 29 2024 06:57:19 webserver maldet(468): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Oct 29 2024 06:57:19 webserver maldet(468): {update} latest version already installed. Oct 29 2024 06:57:19 webserver maldet(634): {sigup} performing signature update check... Oct 29 2024 06:57:19 webserver maldet(634): {sigup} local signature set is version 202410252090927 Oct 29 2024 06:57:19 webserver maldet(634): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Oct 29 2024 06:57:19 webserver maldet(634): {sigup} new signature set 202410282846833 available Oct 29 2024 06:57:19 webserver maldet(634): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Oct 29 2024 06:57:19 webserver maldet(634): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Oct 29 2024 06:57:19 webserver maldet(634): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Oct 29 2024 06:57:19 webserver maldet(634): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Oct 29 2024 06:57:19 webserver maldet(634): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Oct 29 2024 06:57:19 webserver maldet(634): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Oct 29 2024 06:57:19 webserver maldet(634): {sigup} verified md5sum of maldet-sigpack.tgz Oct 29 2024 06:57:19 webserver maldet(634): {sigup} unpacked and installed maldet-sigpack.tgz Oct 29 2024 06:57:19 webserver maldet(634): {sigup} verified md5sum of maldet-clean.tgz Oct 29 2024 06:57:19 webserver maldet(634): {sigup} unpacked and installed maldet-clean.tgz Oct 29 2024 06:57:19 webserver maldet(634): {sigup} signature set update completed Oct 29 2024 06:57:19 webserver maldet(634): {sigup} 17638 signatures (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Oct 29 2024 06:57:20 webserver maldet(873): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Oct 29 2024 06:57:20 webserver maldet(873): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Oct 29 2024 06:57:20 webserver maldet(873): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Oct 29 2024 06:57:20 webserver maldet(873): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Oct 29 2024 06:57:20 webserver maldet(873): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Oct 29 2024 06:57:24 webserver maldet(873): {scan} file list completed in 4s, found 12 files... Oct 29 2024 06:57:24 webserver maldet(873): {scan} found clamav binary at /usr/bin/clamdscan, using clamav scanner engine... Oct 29 2024 06:57:24 webserver maldet(873): {scan} scan of (12 files) in progress... Oct 29 2024 06:57:25 webserver maldet(873): {scan} scan completed on : files 12, malware hits 0, cleaned hits 0, time 5s Oct 29 2024 06:57:25 webserver maldet(873): {scan} scan report saved, to view run: maldet --report 241029-0657.873 Oct 30 2024 06:59:34 webserver maldet(27548): {update} checking for available updates... Oct 30 2024 06:59:34 webserver maldet(27548): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Oct 30 2024 06:59:34 webserver maldet(27548): {update} hashing install files and checking against server... Oct 30 2024 06:59:34 webserver maldet(27548): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Oct 30 2024 06:59:34 webserver maldet(27548): {update} latest version already installed. Oct 30 2024 06:59:34 webserver maldet(27684): {sigup} performing signature update check... Oct 30 2024 06:59:34 webserver maldet(27684): {sigup} local signature set is version 202410282846833 Oct 30 2024 06:59:34 webserver maldet(27684): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Oct 30 2024 06:59:34 webserver maldet(27684): {sigup} latest signature set already installed Oct 30 2024 06:59:34 webserver maldet(27798): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Oct 30 2024 06:59:34 webserver maldet(27798): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Oct 30 2024 06:59:34 webserver maldet(27798): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Oct 30 2024 06:59:34 webserver maldet(27798): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Oct 30 2024 06:59:34 webserver maldet(27798): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Oct 30 2024 06:59:39 webserver maldet(27798): {scan} file list completed in 5s, found 10 files... Oct 30 2024 06:59:39 webserver maldet(27798): {scan} found clamav binary at /usr/bin/clamdscan, using clamav scanner engine... Oct 30 2024 06:59:39 webserver maldet(27798): {scan} scan of (10 files) in progress... Oct 30 2024 06:59:39 webserver maldet(27798): {scan} scan completed on : files 10, malware hits 0, cleaned hits 0, time 5s Oct 30 2024 06:59:39 webserver maldet(27798): {scan} scan report saved, to view run: maldet --report 241030-0659.27798 Oct 31 2024 07:02:10 webserver maldet(14074): {update} checking for available updates... Oct 31 2024 07:02:10 webserver maldet(14074): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Oct 31 2024 07:02:10 webserver maldet(14074): {update} hashing install files and checking against server... Oct 31 2024 07:02:10 webserver maldet(14074): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Oct 31 2024 07:02:10 webserver maldet(14074): {update} latest version already installed. Oct 31 2024 07:02:10 webserver maldet(14210): {sigup} performing signature update check... Oct 31 2024 07:02:10 webserver maldet(14210): {sigup} local signature set is version 202410282846833 Oct 31 2024 07:02:10 webserver maldet(14210): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Oct 31 2024 07:02:10 webserver maldet(14210): {sigup} latest signature set already installed Oct 31 2024 07:02:10 webserver maldet(14324): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Oct 31 2024 07:02:11 webserver maldet(14324): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Oct 31 2024 07:02:11 webserver maldet(14324): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Oct 31 2024 07:02:11 webserver maldet(14324): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Oct 31 2024 07:02:11 webserver maldet(14324): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Oct 31 2024 07:02:15 webserver maldet(14324): {scan} file list completed in 4s, found 14 files... Oct 31 2024 07:02:15 webserver maldet(14324): {scan} found clamav binary at /usr/bin/clamdscan, using clamav scanner engine... Oct 31 2024 07:02:15 webserver maldet(14324): {scan} scan of (14 files) in progress... Oct 31 2024 07:02:15 webserver maldet(14324): {scan} scan completed on : files 14, malware hits 0, cleaned hits 0, time 5s Oct 31 2024 07:02:15 webserver maldet(14324): {scan} scan report saved, to view run: maldet --report 241031-0702.14324 Nov 01 2024 06:57:01 webserver maldet(8995): {update} checking for available updates... Nov 01 2024 06:57:01 webserver maldet(8995): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Nov 01 2024 06:57:01 webserver maldet(8995): {update} hashing install files and checking against server... Nov 01 2024 06:57:01 webserver maldet(8995): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Nov 01 2024 06:57:01 webserver maldet(8995): {update} latest version already installed. Nov 01 2024 06:57:01 webserver maldet(9131): {sigup} performing signature update check... Nov 01 2024 06:57:01 webserver maldet(9131): {sigup} local signature set is version 202410282846833 Nov 01 2024 06:57:01 webserver maldet(9131): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Nov 01 2024 06:57:01 webserver maldet(9131): {sigup} new signature set 202410313602166 available Nov 01 2024 06:57:01 webserver maldet(9131): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Nov 01 2024 06:57:01 webserver maldet(9131): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Nov 01 2024 06:57:01 webserver maldet(9131): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Nov 01 2024 06:57:01 webserver maldet(9131): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Nov 01 2024 06:57:01 webserver maldet(9131): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Nov 01 2024 06:57:01 webserver maldet(9131): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Nov 01 2024 06:57:01 webserver maldet(9131): {sigup} verified md5sum of maldet-sigpack.tgz Nov 01 2024 06:57:02 webserver maldet(9131): {sigup} unpacked and installed maldet-sigpack.tgz Nov 01 2024 06:57:02 webserver maldet(9131): {sigup} verified md5sum of maldet-clean.tgz Nov 01 2024 06:57:02 webserver maldet(9131): {sigup} unpacked and installed maldet-clean.tgz Nov 01 2024 06:57:02 webserver maldet(9131): {sigup} signature set update completed Nov 01 2024 06:57:02 webserver maldet(9131): {sigup} 17638 signatures (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Nov 01 2024 06:57:02 webserver maldet(9362): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Nov 01 2024 06:57:02 webserver maldet(9362): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Nov 01 2024 06:57:02 webserver maldet(9362): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Nov 01 2024 06:57:02 webserver maldet(9362): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Nov 01 2024 06:57:02 webserver maldet(9362): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Nov 01 2024 06:57:07 webserver maldet(9362): {scan} file list completed in 5s, found 19 files... Nov 01 2024 06:57:07 webserver maldet(9362): {scan} found clamav binary at /usr/bin/clamdscan, using clamav scanner engine... Nov 01 2024 06:57:07 webserver maldet(9362): {scan} scan of (19 files) in progress... Nov 01 2024 06:57:07 webserver maldet(9362): {scan} scan completed on : files 19, malware hits 0, cleaned hits 0, time 5s Nov 01 2024 06:57:07 webserver maldet(9362): {scan} scan report saved, to view run: maldet --report 241101-0657.9362 Nov 02 2024 06:57:15 webserver maldet(30002): {update} checking for available updates... Nov 02 2024 06:57:15 webserver maldet(30002): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Nov 02 2024 06:57:15 webserver maldet(30002): {update} hashing install files and checking against server... Nov 02 2024 06:57:15 webserver maldet(30002): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Nov 02 2024 06:57:15 webserver maldet(30002): {update} latest version already installed. Nov 02 2024 06:57:15 webserver maldet(30138): {sigup} performing signature update check... Nov 02 2024 06:57:15 webserver maldet(30138): {sigup} local signature set is version 202410313602166 Nov 02 2024 06:57:15 webserver maldet(30138): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Nov 02 2024 06:57:15 webserver maldet(30138): {sigup} new signature set 20241101119716 available Nov 02 2024 06:57:15 webserver maldet(30138): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Nov 02 2024 06:57:15 webserver maldet(30138): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Nov 02 2024 06:57:15 webserver maldet(30138): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Nov 02 2024 06:57:15 webserver maldet(30138): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Nov 02 2024 06:57:15 webserver maldet(30138): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Nov 02 2024 06:57:15 webserver maldet(30138): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Nov 02 2024 06:57:15 webserver maldet(30138): {sigup} verified md5sum of maldet-sigpack.tgz Nov 02 2024 06:57:15 webserver maldet(30138): {sigup} unpacked and installed maldet-sigpack.tgz Nov 02 2024 06:57:15 webserver maldet(30138): {sigup} verified md5sum of maldet-clean.tgz Nov 02 2024 06:57:15 webserver maldet(30138): {sigup} unpacked and installed maldet-clean.tgz Nov 02 2024 06:57:15 webserver maldet(30138): {sigup} signature set update completed Nov 02 2024 06:57:15 webserver maldet(30138): {sigup} 17638 signatures (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Nov 02 2024 06:57:15 webserver maldet(30369): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Nov 02 2024 06:57:15 webserver maldet(30369): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Nov 02 2024 06:57:15 webserver maldet(30369): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Nov 02 2024 06:57:15 webserver maldet(30369): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Nov 02 2024 06:57:15 webserver maldet(30369): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Nov 02 2024 06:57:20 webserver maldet(30369): {scan} file list completed in 5s, found 16 files... Nov 02 2024 06:57:20 webserver maldet(30369): {scan} found clamav binary at /usr/bin/clamdscan, using clamav scanner engine... Nov 02 2024 06:57:20 webserver maldet(30369): {scan} scan of (16 files) in progress... Nov 02 2024 06:57:20 webserver maldet(30369): {scan} scan completed on : files 16, malware hits 0, cleaned hits 0, time 5s Nov 02 2024 06:57:20 webserver maldet(30369): {scan} scan report saved, to view run: maldet --report 241102-0657.30369 Nov 03 2024 07:04:40 webserver maldet(2230): {update} checking for available updates... Nov 03 2024 07:04:40 webserver maldet(2230): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Nov 03 2024 07:04:40 webserver maldet(2230): {update} hashing install files and checking against server... Nov 03 2024 07:04:40 webserver maldet(2230): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Nov 03 2024 07:04:40 webserver maldet(2230): {update} latest version already installed. Nov 03 2024 07:04:40 webserver maldet(2366): {sigup} performing signature update check... Nov 03 2024 07:04:40 webserver maldet(2366): {sigup} local signature set is version 20241101119716 Nov 03 2024 07:04:40 webserver maldet(2366): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Nov 03 2024 07:04:40 webserver maldet(2366): {sigup} latest signature set already installed Nov 03 2024 07:04:41 webserver maldet(2480): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Nov 03 2024 07:04:41 webserver maldet(2480): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Nov 03 2024 07:04:41 webserver maldet(2480): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Nov 03 2024 07:04:41 webserver maldet(2480): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Nov 03 2024 07:04:41 webserver maldet(2480): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Nov 03 2024 07:04:45 webserver maldet(2480): {scan} file list completed in 4s, found 12 files... Nov 03 2024 07:04:45 webserver maldet(2480): {scan} found clamav binary at /usr/bin/clamdscan, using clamav scanner engine... Nov 03 2024 07:04:45 webserver maldet(2480): {scan} scan of (12 files) in progress... Nov 03 2024 07:04:46 webserver maldet(2480): {scan} scan completed on : files 12, malware hits 0, cleaned hits 0, time 4s Nov 03 2024 07:04:46 webserver maldet(2480): {scan} scan report saved, to view run: maldet --report 241103-0704.2480 Nov 04 2024 06:57:11 webserver maldet(32533): {update} checking for available updates... Nov 04 2024 06:57:11 webserver maldet(32533): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Nov 04 2024 06:57:11 webserver maldet(32533): {update} hashing install files and checking against server... Nov 04 2024 06:57:11 webserver maldet(32533): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Nov 04 2024 06:57:11 webserver maldet(32533): {update} latest version already installed. Nov 04 2024 06:57:11 webserver maldet(32669): {sigup} performing signature update check... Nov 04 2024 06:57:11 webserver maldet(32669): {sigup} local signature set is version 20241101119716 Nov 04 2024 06:57:11 webserver maldet(32669): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Nov 04 2024 06:57:11 webserver maldet(32669): {sigup} latest signature set already installed Nov 04 2024 06:57:12 webserver maldet(315): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Nov 04 2024 06:57:12 webserver maldet(315): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Nov 04 2024 06:57:12 webserver maldet(315): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Nov 04 2024 06:57:12 webserver maldet(315): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Nov 04 2024 06:57:12 webserver maldet(315): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Nov 04 2024 06:57:16 webserver maldet(315): {scan} file list completed in 4s, found 13 files... Nov 04 2024 06:57:16 webserver maldet(315): {scan} found clamav binary at /usr/bin/clamdscan, using clamav scanner engine... Nov 04 2024 06:57:16 webserver maldet(315): {scan} scan of (13 files) in progress... Nov 04 2024 06:57:16 webserver maldet(315): {scan} scan completed on : files 13, malware hits 0, cleaned hits 0, time 4s Nov 04 2024 06:57:16 webserver maldet(315): {scan} scan report saved, to view run: maldet --report 241104-0657.315 Nov 05 2024 06:58:47 webserver maldet(3541): {update} checking for available updates... Nov 05 2024 06:58:47 webserver maldet(3541): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Nov 05 2024 06:58:47 webserver maldet(3541): {update} hashing install files and checking against server... Nov 05 2024 06:58:47 webserver maldet(3541): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Nov 05 2024 06:58:47 webserver maldet(3541): {update} latest version already installed. Nov 05 2024 06:58:48 webserver maldet(3677): {sigup} performing signature update check... Nov 05 2024 06:58:48 webserver maldet(3677): {sigup} local signature set is version 20241101119716 Nov 05 2024 06:58:48 webserver maldet(3677): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Nov 05 2024 06:58:48 webserver maldet(3677): {sigup} new signature set 20241104598085 available Nov 05 2024 06:58:48 webserver maldet(3677): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Nov 05 2024 06:58:48 webserver maldet(3677): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Nov 05 2024 06:58:48 webserver maldet(3677): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Nov 05 2024 06:58:48 webserver maldet(3677): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Nov 05 2024 06:58:48 webserver maldet(3677): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Nov 05 2024 06:58:48 webserver maldet(3677): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Nov 05 2024 06:58:48 webserver maldet(3677): {sigup} verified md5sum of maldet-sigpack.tgz Nov 05 2024 06:58:48 webserver maldet(3677): {sigup} unpacked and installed maldet-sigpack.tgz Nov 05 2024 06:58:48 webserver maldet(3677): {sigup} verified md5sum of maldet-clean.tgz Nov 05 2024 06:58:48 webserver maldet(3677): {sigup} unpacked and installed maldet-clean.tgz Nov 05 2024 06:58:48 webserver maldet(3677): {sigup} signature set update completed Nov 05 2024 06:58:48 webserver maldet(3677): {sigup} 17638 signatures (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Nov 05 2024 06:58:48 webserver maldet(3908): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Nov 05 2024 06:58:48 webserver maldet(3908): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Nov 05 2024 06:58:48 webserver maldet(3908): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Nov 05 2024 06:58:48 webserver maldet(3908): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Nov 05 2024 06:58:48 webserver maldet(3908): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Nov 05 2024 06:58:53 webserver maldet(3908): {scan} file list completed in 5s, found 9 files... Nov 05 2024 06:58:53 webserver maldet(3908): {scan} found clamav binary at /usr/bin/clamdscan, using clamav scanner engine... Nov 05 2024 06:58:53 webserver maldet(3908): {scan} scan of (9 files) in progress... Nov 05 2024 06:58:53 webserver maldet(3908): {scan} clamscan returned an error, check /usr/local/maldetect/logs/clamscan_log for details! Nov 05 2024 06:58:53 webserver maldet(3908): {scan} scan completed on : files 9, malware hits 0, cleaned hits 0, time 5s Nov 05 2024 06:58:53 webserver maldet(3908): {scan} scan report saved, to view run: maldet --report 241105-0658.3908 Nov 06 2024 06:56:24 webserver maldet(22859): {update} checking for available updates... Nov 06 2024 06:56:24 webserver maldet(22859): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Nov 06 2024 06:56:24 webserver maldet(22859): {update} hashing install files and checking against server... Nov 06 2024 06:56:24 webserver maldet(22859): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Nov 06 2024 06:56:24 webserver maldet(22859): {update} latest version already installed. Nov 06 2024 06:56:24 webserver maldet(22995): {sigup} performing signature update check... Nov 06 2024 06:56:24 webserver maldet(22995): {sigup} local signature set is version 20241104598085 Nov 06 2024 06:56:25 webserver maldet(22995): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Nov 06 2024 06:56:25 webserver maldet(22995): {sigup} latest signature set already installed Nov 06 2024 06:56:25 webserver maldet(23109): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Nov 06 2024 06:56:25 webserver maldet(23109): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Nov 06 2024 06:56:25 webserver maldet(23109): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Nov 06 2024 06:56:25 webserver maldet(23109): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Nov 06 2024 06:56:25 webserver maldet(23109): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Nov 06 2024 06:56:29 webserver maldet(23109): {scan} file list completed in 4s, found 11 files... Nov 06 2024 06:56:29 webserver maldet(23109): {scan} found clamav binary at /usr/bin/clamdscan, using clamav scanner engine... Nov 06 2024 06:56:29 webserver maldet(23109): {scan} scan of (11 files) in progress... Nov 06 2024 06:56:30 webserver maldet(23109): {scan} scan completed on : files 11, malware hits 0, cleaned hits 0, time 5s Nov 06 2024 06:56:30 webserver maldet(23109): {scan} scan report saved, to view run: maldet --report 241106-0656.23109 Nov 07 2024 06:58:19 webserver maldet(14507): {update} checking for available updates... Nov 07 2024 06:58:19 webserver maldet(14507): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Nov 07 2024 06:58:19 webserver maldet(14507): {update} hashing install files and checking against server... Nov 07 2024 06:58:19 webserver maldet(14507): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Nov 07 2024 06:58:19 webserver maldet(14507): {update} latest version already installed. Nov 07 2024 06:58:19 webserver maldet(14643): {sigup} performing signature update check... Nov 07 2024 06:58:19 webserver maldet(14643): {sigup} local signature set is version 20241104598085 Nov 07 2024 06:58:19 webserver maldet(14643): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Nov 07 2024 06:58:19 webserver maldet(14643): {sigup} latest signature set already installed Nov 07 2024 06:58:19 webserver maldet(14757): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Nov 07 2024 06:58:19 webserver maldet(14757): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Nov 07 2024 06:58:19 webserver maldet(14757): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Nov 07 2024 06:58:19 webserver maldet(14757): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Nov 07 2024 06:58:19 webserver maldet(14757): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Nov 07 2024 06:58:24 webserver maldet(14757): {scan} file list completed in 5s, found 12 files... Nov 07 2024 06:58:24 webserver maldet(14757): {scan} found clamav binary at /usr/bin/clamdscan, using clamav scanner engine... Nov 07 2024 06:58:24 webserver maldet(14757): {scan} scan of (12 files) in progress... Nov 07 2024 06:58:24 webserver maldet(14757): {scan} scan completed on : files 12, malware hits 0, cleaned hits 0, time 5s Nov 07 2024 06:58:24 webserver maldet(14757): {scan} scan report saved, to view run: maldet --report 241107-0658.14757 Nov 08 2024 06:56:10 webserver maldet(1019): {update} checking for available updates... Nov 08 2024 06:56:10 webserver maldet(1019): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Nov 08 2024 06:56:10 webserver maldet(1019): {update} hashing install files and checking against server... Nov 08 2024 06:56:10 webserver maldet(1019): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Nov 08 2024 06:56:10 webserver maldet(1019): {update} latest version already installed. Nov 08 2024 06:56:10 webserver maldet(1155): {sigup} performing signature update check... Nov 08 2024 06:56:10 webserver maldet(1155): {sigup} local signature set is version 20241104598085 Nov 08 2024 06:56:10 webserver maldet(1155): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Nov 08 2024 06:56:10 webserver maldet(1155): {sigup} new signature set 20241107590174 available Nov 08 2024 06:56:10 webserver maldet(1155): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Nov 08 2024 06:56:10 webserver maldet(1155): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Nov 08 2024 06:56:10 webserver maldet(1155): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Nov 08 2024 06:56:10 webserver maldet(1155): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Nov 08 2024 06:56:10 webserver maldet(1155): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Nov 08 2024 06:56:10 webserver maldet(1155): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Nov 08 2024 06:56:10 webserver maldet(1155): {sigup} verified md5sum of maldet-sigpack.tgz Nov 08 2024 06:56:10 webserver maldet(1155): {sigup} unpacked and installed maldet-sigpack.tgz Nov 08 2024 06:56:10 webserver maldet(1155): {sigup} verified md5sum of maldet-clean.tgz Nov 08 2024 06:56:10 webserver maldet(1155): {sigup} unpacked and installed maldet-clean.tgz Nov 08 2024 06:56:10 webserver maldet(1155): {sigup} signature set update completed Nov 08 2024 06:56:10 webserver maldet(1155): {sigup} 17638 signatures (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Nov 08 2024 06:56:10 webserver maldet(1386): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Nov 08 2024 06:56:11 webserver maldet(1386): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Nov 08 2024 06:56:11 webserver maldet(1386): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Nov 08 2024 06:56:11 webserver maldet(1386): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Nov 08 2024 06:56:11 webserver maldet(1386): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Nov 08 2024 06:56:15 webserver maldet(1386): {scan} file list completed in 4s, found 17 files... Nov 08 2024 06:56:15 webserver maldet(1386): {scan} found clamav binary at /usr/bin/clamdscan, using clamav scanner engine... Nov 08 2024 06:56:15 webserver maldet(1386): {scan} scan of (17 files) in progress... Nov 08 2024 06:56:16 webserver maldet(1386): {scan} scan completed on : files 17, malware hits 0, cleaned hits 0, time 6s Nov 08 2024 06:56:16 webserver maldet(1386): {scan} scan report saved, to view run: maldet --report 241108-0656.1386 Nov 09 2024 07:05:20 webserver maldet(23721): {update} checking for available updates... Nov 09 2024 07:05:20 webserver maldet(23721): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Nov 09 2024 07:05:20 webserver maldet(23721): {update} hashing install files and checking against server... Nov 09 2024 07:05:20 webserver maldet(23721): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Nov 09 2024 07:05:20 webserver maldet(23721): {update} latest version already installed. Nov 09 2024 07:05:20 webserver maldet(23857): {sigup} performing signature update check... Nov 09 2024 07:05:20 webserver maldet(23857): {sigup} local signature set is version 20241107590174 Nov 09 2024 07:05:20 webserver maldet(23857): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Nov 09 2024 07:05:20 webserver maldet(23857): {sigup} latest signature set already installed Nov 09 2024 07:05:20 webserver maldet(23971): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Nov 09 2024 07:05:21 webserver maldet(23971): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Nov 09 2024 07:05:21 webserver maldet(23971): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Nov 09 2024 07:05:21 webserver maldet(23971): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Nov 09 2024 07:05:21 webserver maldet(23971): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Nov 09 2024 07:05:25 webserver maldet(23971): {scan} file list completed in 4s, found 10 files... Nov 09 2024 07:05:25 webserver maldet(23971): {scan} found clamav binary at /usr/bin/clamdscan, using clamav scanner engine... Nov 09 2024 07:05:25 webserver maldet(23971): {scan} scan of (10 files) in progress... Nov 09 2024 07:05:26 webserver maldet(23971): {scan} scan completed on : files 10, malware hits 0, cleaned hits 0, time 6s Nov 09 2024 07:05:26 webserver maldet(23971): {scan} scan report saved, to view run: maldet --report 241109-0705.23971 Nov 10 2024 06:58:39 webserver maldet(14463): {update} checking for available updates... Nov 10 2024 06:58:39 webserver maldet(14463): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Nov 10 2024 06:58:39 webserver maldet(14463): {update} hashing install files and checking against server... Nov 10 2024 06:58:39 webserver maldet(14463): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Nov 10 2024 06:58:39 webserver maldet(14463): {update} latest version already installed. Nov 10 2024 06:58:39 webserver maldet(14605): {sigup} performing signature update check... Nov 10 2024 06:58:39 webserver maldet(14605): {sigup} local signature set is version 20241107590174 Nov 10 2024 06:58:39 webserver maldet(14605): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Nov 10 2024 06:58:39 webserver maldet(14605): {sigup} latest signature set already installed Nov 10 2024 06:58:40 webserver maldet(14720): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Nov 10 2024 06:58:40 webserver maldet(14720): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Nov 10 2024 06:58:40 webserver maldet(14720): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Nov 10 2024 06:58:40 webserver maldet(14720): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Nov 10 2024 06:58:40 webserver maldet(14720): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Nov 10 2024 06:58:44 webserver maldet(14720): {scan} file list completed in 4s, found 11 files... Nov 10 2024 06:58:44 webserver maldet(14720): {scan} found clamav binary at /usr/bin/clamdscan, using clamav scanner engine... Nov 10 2024 06:58:44 webserver maldet(14720): {scan} scan of (11 files) in progress... Nov 10 2024 06:58:45 webserver maldet(14720): {scan} scan completed on : files 11, malware hits 0, cleaned hits 0, time 5s Nov 10 2024 06:58:45 webserver maldet(14720): {scan} scan report saved, to view run: maldet --report 241110-0658.14720 Nov 11 2024 06:59:09 webserver maldet(1607): {update} checking for available updates... Nov 11 2024 06:59:09 webserver maldet(1607): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Nov 11 2024 06:59:09 webserver maldet(1607): {update} hashing install files and checking against server... Nov 11 2024 06:59:09 webserver maldet(1607): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Nov 11 2024 06:59:09 webserver maldet(1607): {update} latest version already installed. Nov 11 2024 06:59:09 webserver maldet(1743): {sigup} performing signature update check... Nov 11 2024 06:59:09 webserver maldet(1743): {sigup} local signature set is version 20241107590174 Nov 11 2024 06:59:09 webserver maldet(1743): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Nov 11 2024 06:59:09 webserver maldet(1743): {sigup} new signature set 202411101345636 available Nov 11 2024 06:59:09 webserver maldet(1743): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Nov 11 2024 06:59:10 webserver maldet(1743): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Nov 11 2024 06:59:10 webserver maldet(1743): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Nov 11 2024 06:59:10 webserver maldet(1743): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Nov 11 2024 06:59:10 webserver maldet(1743): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Nov 11 2024 06:59:10 webserver maldet(1743): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Nov 11 2024 06:59:10 webserver maldet(1743): {sigup} verified md5sum of maldet-sigpack.tgz Nov 11 2024 06:59:10 webserver maldet(1743): {sigup} unpacked and installed maldet-sigpack.tgz Nov 11 2024 06:59:10 webserver maldet(1743): {sigup} verified md5sum of maldet-clean.tgz Nov 11 2024 06:59:10 webserver maldet(1743): {sigup} unpacked and installed maldet-clean.tgz Nov 11 2024 06:59:10 webserver maldet(1743): {sigup} signature set update completed Nov 11 2024 06:59:10 webserver maldet(1743): {sigup} 17638 signatures (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Nov 11 2024 06:59:10 webserver maldet(1974): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Nov 11 2024 06:59:10 webserver maldet(1974): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Nov 11 2024 06:59:10 webserver maldet(1974): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Nov 11 2024 06:59:10 webserver maldet(1974): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Nov 11 2024 06:59:10 webserver maldet(1974): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Nov 11 2024 06:59:15 webserver maldet(1974): {scan} file list completed in 5s, found 11 files... Nov 11 2024 06:59:15 webserver maldet(1974): {scan} found clamav binary at /usr/bin/clamdscan, using clamav scanner engine... Nov 11 2024 06:59:15 webserver maldet(1974): {scan} scan of (11 files) in progress... Nov 11 2024 06:59:16 webserver maldet(1974): {scan} scan completed on : files 11, malware hits 0, cleaned hits 0, time 6s Nov 11 2024 06:59:16 webserver maldet(1974): {scan} scan report saved, to view run: maldet --report 241111-0659.1974 Nov 12 2024 07:06:26 webserver maldet(22579): {update} checking for available updates... Nov 12 2024 07:06:26 webserver maldet(22579): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Nov 12 2024 07:06:26 webserver maldet(22579): {update} hashing install files and checking against server... Nov 12 2024 07:06:26 webserver maldet(22579): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Nov 12 2024 07:06:26 webserver maldet(22579): {update} latest version already installed. Nov 12 2024 07:06:26 webserver maldet(22715): {sigup} performing signature update check... Nov 12 2024 07:06:26 webserver maldet(22715): {sigup} local signature set is version 202411101345636 Nov 12 2024 07:06:26 webserver maldet(22715): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Nov 12 2024 07:06:26 webserver maldet(22715): {sigup} latest signature set already installed Nov 12 2024 07:06:26 webserver maldet(22829): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Nov 12 2024 07:06:26 webserver maldet(22829): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Nov 12 2024 07:06:26 webserver maldet(22829): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Nov 12 2024 07:06:26 webserver maldet(22829): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Nov 12 2024 07:06:26 webserver maldet(22829): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Nov 12 2024 07:06:31 webserver maldet(22829): {scan} file list completed in 5s, found 9 files... Nov 12 2024 07:06:31 webserver maldet(22829): {scan} found clamav binary at /usr/bin/clamdscan, using clamav scanner engine... Nov 12 2024 07:06:31 webserver maldet(22829): {scan} scan of (9 files) in progress... Nov 12 2024 07:06:32 webserver maldet(22829): {scan} scan completed on : files 9, malware hits 0, cleaned hits 0, time 6s Nov 12 2024 07:06:32 webserver maldet(22829): {scan} scan report saved, to view run: maldet --report 241112-0706.22829 Nov 13 2024 06:56:37 webserver maldet(9642): {update} checking for available updates... Nov 13 2024 06:56:37 webserver maldet(9642): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Nov 13 2024 06:56:37 webserver maldet(9642): {update} hashing install files and checking against server... Nov 13 2024 06:56:37 webserver maldet(9642): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Nov 13 2024 06:56:37 webserver maldet(9642): {update} latest version already installed. Nov 13 2024 06:56:38 webserver maldet(9778): {sigup} performing signature update check... Nov 13 2024 06:56:38 webserver maldet(9778): {sigup} local signature set is version 202411101345636 Nov 13 2024 06:56:38 webserver maldet(9778): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Nov 13 2024 06:56:38 webserver maldet(9778): {sigup} latest signature set already installed Nov 13 2024 06:56:38 webserver maldet(9892): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Nov 13 2024 06:56:38 webserver maldet(9892): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Nov 13 2024 06:56:38 webserver maldet(9892): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Nov 13 2024 06:56:38 webserver maldet(9892): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Nov 13 2024 06:56:38 webserver maldet(9892): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Nov 13 2024 06:56:42 webserver maldet(9892): {scan} file list completed in 4s, found 11 files... Nov 13 2024 06:56:42 webserver maldet(9892): {scan} found clamav binary at /usr/bin/clamdscan, using clamav scanner engine... Nov 13 2024 06:56:42 webserver maldet(9892): {scan} scan of (11 files) in progress... Nov 13 2024 06:56:43 webserver maldet(9892): {scan} scan completed on : files 11, malware hits 0, cleaned hits 0, time 5s Nov 13 2024 06:56:43 webserver maldet(9892): {scan} scan report saved, to view run: maldet --report 241113-0656.9892 Nov 14 2024 07:07:22 webserver maldet(4451): {update} checking for available updates... Nov 14 2024 07:07:23 webserver maldet(4451): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Nov 14 2024 07:07:23 webserver maldet(4451): {update} hashing install files and checking against server... Nov 14 2024 07:07:23 webserver maldet(4451): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Nov 14 2024 07:07:23 webserver maldet(4451): {update} latest version already installed. Nov 14 2024 07:07:23 webserver maldet(4587): {sigup} performing signature update check... Nov 14 2024 07:07:23 webserver maldet(4587): {sigup} local signature set is version 202411101345636 Nov 14 2024 07:07:23 webserver maldet(4587): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Nov 14 2024 07:07:23 webserver maldet(4587): {sigup} new signature set 202411132100752 available Nov 14 2024 07:07:23 webserver maldet(4587): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Nov 14 2024 07:07:23 webserver maldet(4587): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Nov 14 2024 07:07:23 webserver maldet(4587): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Nov 14 2024 07:07:23 webserver maldet(4587): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Nov 14 2024 07:07:23 webserver maldet(4587): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Nov 14 2024 07:07:23 webserver maldet(4587): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Nov 14 2024 07:07:23 webserver maldet(4587): {sigup} verified md5sum of maldet-sigpack.tgz Nov 14 2024 07:07:23 webserver maldet(4587): {sigup} unpacked and installed maldet-sigpack.tgz Nov 14 2024 07:07:23 webserver maldet(4587): {sigup} verified md5sum of maldet-clean.tgz Nov 14 2024 07:07:23 webserver maldet(4587): {sigup} unpacked and installed maldet-clean.tgz Nov 14 2024 07:07:23 webserver maldet(4587): {sigup} signature set update completed Nov 14 2024 07:07:23 webserver maldet(4587): {sigup} 17638 signatures (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Nov 14 2024 07:07:23 webserver maldet(4819): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Nov 14 2024 07:07:24 webserver maldet(4819): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Nov 14 2024 07:07:24 webserver maldet(4819): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Nov 14 2024 07:07:24 webserver maldet(4819): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Nov 14 2024 07:07:24 webserver maldet(4819): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Nov 14 2024 07:07:28 webserver maldet(4819): {scan} file list completed in 4s, found 1176 files... Nov 14 2024 07:07:28 webserver maldet(4819): {scan} found clamav binary at /usr/bin/clamdscan, using clamav scanner engine... Nov 14 2024 07:07:28 webserver maldet(4819): {scan} scan of (1176 files) in progress... Nov 14 2024 07:08:00 webserver maldet(4819): {scan} scan completed on : files 1176, malware hits 0, cleaned hits 0, time 37s Nov 14 2024 07:08:00 webserver maldet(4819): {scan} scan report saved, to view run: maldet --report 241114-0707.4819 Nov 15 2024 06:56:41 webserver maldet(22787): {update} checking for available updates... Nov 15 2024 06:56:41 webserver maldet(22787): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Nov 15 2024 06:56:41 webserver maldet(22787): {update} hashing install files and checking against server... Nov 15 2024 06:56:41 webserver maldet(22787): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Nov 15 2024 06:56:41 webserver maldet(22787): {update} latest version already installed. Nov 15 2024 06:56:41 webserver maldet(22923): {sigup} performing signature update check... Nov 15 2024 06:56:41 webserver maldet(22923): {sigup} local signature set is version 202411132100752 Nov 15 2024 06:56:41 webserver maldet(22923): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Nov 15 2024 06:56:41 webserver maldet(22923): {sigup} latest signature set already installed Nov 15 2024 06:56:41 webserver maldet(23037): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Nov 15 2024 06:56:41 webserver maldet(23037): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Nov 15 2024 06:56:41 webserver maldet(23037): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Nov 15 2024 06:56:41 webserver maldet(23037): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Nov 15 2024 06:56:41 webserver maldet(23037): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Nov 15 2024 06:56:49 webserver maldet(23037): {scan} file list completed in 8s, found 10 files... Nov 15 2024 06:56:49 webserver maldet(23037): {scan} found clamav binary at /usr/bin/clamdscan, using clamav scanner engine... Nov 15 2024 06:56:49 webserver maldet(23037): {scan} scan of (10 files) in progress... Nov 15 2024 06:56:50 webserver maldet(23037): {scan} scan completed on : files 10, malware hits 0, cleaned hits 0, time 9s Nov 15 2024 06:56:50 webserver maldet(23037): {scan} scan report saved, to view run: maldet --report 241115-0656.23037 Nov 16 2024 07:02:53 webserver maldet(31517): {update} checking for available updates... Nov 16 2024 07:02:53 webserver maldet(31517): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Nov 16 2024 07:02:53 webserver maldet(31517): {update} hashing install files and checking against server... Nov 16 2024 07:02:53 webserver maldet(31517): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Nov 16 2024 07:02:53 webserver maldet(31517): {update} latest version already installed. Nov 16 2024 07:02:53 webserver maldet(31653): {sigup} performing signature update check... Nov 16 2024 07:02:53 webserver maldet(31653): {sigup} local signature set is version 202411132100752 Nov 16 2024 07:02:53 webserver maldet(31653): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Nov 16 2024 07:02:53 webserver maldet(31653): {sigup} latest signature set already installed Nov 16 2024 07:02:53 webserver maldet(31767): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Nov 16 2024 07:02:53 webserver maldet(31767): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Nov 16 2024 07:02:53 webserver maldet(31767): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Nov 16 2024 07:02:53 webserver maldet(31767): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Nov 16 2024 07:02:53 webserver maldet(31767): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Nov 16 2024 07:02:58 webserver maldet(31767): {scan} file list completed in 5s, found 13 files... Nov 16 2024 07:02:58 webserver maldet(31767): {scan} found clamav binary at /usr/bin/clamdscan, using clamav scanner engine... Nov 16 2024 07:02:58 webserver maldet(31767): {scan} scan of (13 files) in progress... Nov 16 2024 07:02:59 webserver maldet(31767): {scan} scan completed on : files 13, malware hits 0, cleaned hits 0, time 6s Nov 16 2024 07:02:59 webserver maldet(31767): {scan} scan report saved, to view run: maldet --report 241116-0702.31767 Nov 17 2024 06:56:26 webserver maldet(30962): {update} checking for available updates... Nov 17 2024 06:56:27 webserver maldet(30962): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Nov 17 2024 06:56:27 webserver maldet(30962): {update} hashing install files and checking against server... Nov 17 2024 06:56:27 webserver maldet(30962): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Nov 17 2024 06:56:27 webserver maldet(30962): {update} latest version already installed. Nov 17 2024 06:56:27 webserver maldet(31098): {sigup} performing signature update check... Nov 17 2024 06:56:27 webserver maldet(31098): {sigup} local signature set is version 202411132100752 Nov 17 2024 06:56:27 webserver maldet(31098): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Nov 17 2024 06:56:27 webserver maldet(31098): {sigup} new signature set 20241116556149 available Nov 17 2024 06:56:27 webserver maldet(31098): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Nov 17 2024 06:56:27 webserver maldet(31098): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Nov 17 2024 06:56:27 webserver maldet(31098): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Nov 17 2024 06:56:27 webserver maldet(31098): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Nov 17 2024 06:56:27 webserver maldet(31098): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Nov 17 2024 06:56:27 webserver maldet(31098): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Nov 17 2024 06:56:27 webserver maldet(31098): {sigup} verified md5sum of maldet-sigpack.tgz Nov 17 2024 06:56:27 webserver maldet(31098): {sigup} unpacked and installed maldet-sigpack.tgz Nov 17 2024 06:56:27 webserver maldet(31098): {sigup} verified md5sum of maldet-clean.tgz Nov 17 2024 06:56:27 webserver maldet(31098): {sigup} unpacked and installed maldet-clean.tgz Nov 17 2024 06:56:27 webserver maldet(31098): {sigup} signature set update completed Nov 17 2024 06:56:27 webserver maldet(31098): {sigup} 17638 signatures (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Nov 17 2024 06:56:28 webserver maldet(31329): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Nov 17 2024 06:56:28 webserver maldet(31329): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Nov 17 2024 06:56:28 webserver maldet(31329): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Nov 17 2024 06:56:28 webserver maldet(31329): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Nov 17 2024 06:56:28 webserver maldet(31329): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Nov 17 2024 06:56:32 webserver maldet(31329): {scan} file list completed in 4s, found 11 files... Nov 17 2024 06:56:32 webserver maldet(31329): {scan} found clamav binary at /usr/bin/clamdscan, using clamav scanner engine... Nov 17 2024 06:56:32 webserver maldet(31329): {scan} scan of (11 files) in progress... Nov 17 2024 06:56:33 webserver maldet(31329): {scan} scan completed on : files 11, malware hits 0, cleaned hits 0, time 4s Nov 17 2024 06:56:33 webserver maldet(31329): {scan} scan report saved, to view run: maldet --report 241117-0656.31329 Nov 18 2024 07:01:07 webserver maldet(24964): {update} checking for available updates... Nov 18 2024 07:01:07 webserver maldet(24964): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Nov 18 2024 07:01:07 webserver maldet(24964): {update} hashing install files and checking against server... Nov 18 2024 07:01:07 webserver maldet(24964): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Nov 18 2024 07:01:07 webserver maldet(24964): {update} latest version already installed. Nov 18 2024 07:01:08 webserver maldet(25100): {sigup} performing signature update check... Nov 18 2024 07:01:08 webserver maldet(25100): {sigup} local signature set is version 20241116556149 Nov 18 2024 07:01:08 webserver maldet(25100): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Nov 18 2024 07:01:08 webserver maldet(25100): {sigup} latest signature set already installed Nov 18 2024 07:01:08 webserver maldet(25214): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Nov 18 2024 07:01:08 webserver maldet(25214): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Nov 18 2024 07:01:08 webserver maldet(25214): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Nov 18 2024 07:01:08 webserver maldet(25214): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Nov 18 2024 07:01:08 webserver maldet(25214): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Nov 18 2024 07:01:13 webserver maldet(25214): {scan} file list completed in 5s, found 13 files... Nov 18 2024 07:01:13 webserver maldet(25214): {scan} found clamav binary at /usr/bin/clamdscan, using clamav scanner engine... Nov 18 2024 07:01:13 webserver maldet(25214): {scan} scan of (13 files) in progress... Nov 18 2024 07:01:13 webserver maldet(25214): {scan} scan completed on : files 13, malware hits 0, cleaned hits 0, time 5s Nov 18 2024 07:01:13 webserver maldet(25214): {scan} scan report saved, to view run: maldet --report 241118-0701.25214 Nov 19 2024 06:57:24 webserver maldet(9471): {update} checking for available updates... Nov 19 2024 06:57:24 webserver maldet(9471): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Nov 19 2024 06:57:24 webserver maldet(9471): {update} hashing install files and checking against server... Nov 19 2024 06:57:24 webserver maldet(9471): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Nov 19 2024 06:57:24 webserver maldet(9471): {update} latest version already installed. Nov 19 2024 06:57:25 webserver maldet(9609): {sigup} performing signature update check... Nov 19 2024 06:57:25 webserver maldet(9609): {sigup} local signature set is version 20241116556149 Nov 19 2024 06:57:25 webserver maldet(9609): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Nov 19 2024 06:57:25 webserver maldet(9609): {sigup} latest signature set already installed Nov 19 2024 06:57:25 webserver maldet(9723): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Nov 19 2024 06:57:25 webserver maldet(9723): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Nov 19 2024 06:57:25 webserver maldet(9723): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Nov 19 2024 06:57:25 webserver maldet(9723): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Nov 19 2024 06:57:25 webserver maldet(9723): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Nov 19 2024 06:57:30 webserver maldet(9723): {scan} file list completed in 5s, found 10 files... Nov 19 2024 06:57:30 webserver maldet(9723): {scan} found clamav binary at /usr/bin/clamdscan, using clamav scanner engine... Nov 19 2024 06:57:30 webserver maldet(9723): {scan} scan of (10 files) in progress... Nov 19 2024 06:57:30 webserver maldet(9723): {scan} scan completed on : files 10, malware hits 0, cleaned hits 0, time 5s Nov 19 2024 06:57:30 webserver maldet(9723): {scan} scan report saved, to view run: maldet --report 241119-0657.9723 Nov 20 2024 06:56:54 webserver maldet(24502): {update} checking for available updates... Nov 20 2024 06:56:55 webserver maldet(24502): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Nov 20 2024 06:56:55 webserver maldet(24502): {update} hashing install files and checking against server... Nov 20 2024 06:56:55 webserver maldet(24502): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Nov 20 2024 06:56:55 webserver maldet(24502): {update} latest version already installed. Nov 20 2024 06:56:55 webserver maldet(24638): {sigup} performing signature update check... Nov 20 2024 06:56:55 webserver maldet(24638): {sigup} local signature set is version 20241116556149 Nov 20 2024 06:56:55 webserver maldet(24638): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Nov 20 2024 06:56:55 webserver maldet(24638): {sigup} new signature set 202411191312395 available Nov 20 2024 06:56:55 webserver maldet(24638): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Nov 20 2024 06:56:55 webserver maldet(24638): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Nov 20 2024 06:56:55 webserver maldet(24638): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Nov 20 2024 06:56:55 webserver maldet(24638): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Nov 20 2024 06:56:55 webserver maldet(24638): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Nov 20 2024 06:56:55 webserver maldet(24638): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Nov 20 2024 06:56:55 webserver maldet(24638): {sigup} verified md5sum of maldet-sigpack.tgz Nov 20 2024 06:56:56 webserver maldet(24638): {sigup} unpacked and installed maldet-sigpack.tgz Nov 20 2024 06:56:56 webserver maldet(24638): {sigup} verified md5sum of maldet-clean.tgz Nov 20 2024 06:56:56 webserver maldet(24638): {sigup} unpacked and installed maldet-clean.tgz Nov 20 2024 06:56:56 webserver maldet(24638): {sigup} signature set update completed Nov 20 2024 06:56:56 webserver maldet(24638): {sigup} 17638 signatures (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Nov 20 2024 06:56:56 webserver maldet(24869): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Nov 20 2024 06:56:56 webserver maldet(24869): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Nov 20 2024 06:56:56 webserver maldet(24869): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Nov 20 2024 06:56:56 webserver maldet(24869): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Nov 20 2024 06:56:56 webserver maldet(24869): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Nov 20 2024 06:57:00 webserver maldet(24869): {scan} file list completed in 4s, found 13 files... Nov 20 2024 06:57:00 webserver maldet(24869): {scan} found clamav binary at /usr/bin/clamdscan, using clamav scanner engine... Nov 20 2024 06:57:00 webserver maldet(24869): {scan} scan of (13 files) in progress... Nov 20 2024 06:57:01 webserver maldet(24869): {scan} scan completed on : files 13, malware hits 0, cleaned hits 0, time 5s Nov 20 2024 06:57:01 webserver maldet(24869): {scan} scan report saved, to view run: maldet --report 241120-0656.24869 Nov 21 2024 06:59:29 webserver maldet(4531): {update} checking for available updates... Nov 21 2024 06:59:29 webserver maldet(4531): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Nov 21 2024 06:59:29 webserver maldet(4531): {update} hashing install files and checking against server... Nov 21 2024 06:59:29 webserver maldet(4531): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Nov 21 2024 06:59:29 webserver maldet(4531): {update} latest version already installed. Nov 21 2024 06:59:29 webserver maldet(4667): {sigup} performing signature update check... Nov 21 2024 06:59:29 webserver maldet(4667): {sigup} local signature set is version 202411191312395 Nov 21 2024 06:59:29 webserver maldet(4667): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Nov 21 2024 06:59:29 webserver maldet(4667): {sigup} latest signature set already installed Nov 21 2024 06:59:29 webserver maldet(4781): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Nov 21 2024 06:59:29 webserver maldet(4781): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Nov 21 2024 06:59:29 webserver maldet(4781): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Nov 21 2024 06:59:29 webserver maldet(4781): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Nov 21 2024 06:59:29 webserver maldet(4781): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Nov 21 2024 06:59:34 webserver maldet(4781): {scan} file list completed in 5s, found 12 files... Nov 21 2024 06:59:34 webserver maldet(4781): {scan} found clamav binary at /usr/bin/clamdscan, using clamav scanner engine... Nov 21 2024 06:59:34 webserver maldet(4781): {scan} scan of (12 files) in progress... Nov 21 2024 06:59:35 webserver maldet(4781): {scan} scan completed on : files 12, malware hits 0, cleaned hits 0, time 6s Nov 21 2024 06:59:35 webserver maldet(4781): {scan} scan report saved, to view run: maldet --report 241121-0659.4781 Nov 22 2024 06:56:52 webserver maldet(23531): {update} checking for available updates... Nov 22 2024 06:56:52 webserver maldet(23531): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Nov 22 2024 06:56:52 webserver maldet(23531): {update} hashing install files and checking against server... Nov 22 2024 06:56:52 webserver maldet(23531): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Nov 22 2024 06:56:52 webserver maldet(23531): {update} latest version already installed. Nov 22 2024 06:56:52 webserver maldet(23667): {sigup} performing signature update check... Nov 22 2024 06:56:52 webserver maldet(23667): {sigup} local signature set is version 202411191312395 Nov 22 2024 06:56:52 webserver maldet(23667): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Nov 22 2024 06:56:52 webserver maldet(23667): {sigup} latest signature set already installed Nov 22 2024 06:56:52 webserver maldet(23781): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Nov 22 2024 06:56:53 webserver maldet(23781): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Nov 22 2024 06:56:53 webserver maldet(23781): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Nov 22 2024 06:56:53 webserver maldet(23781): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Nov 22 2024 06:56:53 webserver maldet(23781): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Nov 22 2024 06:56:57 webserver maldet(23781): {scan} file list completed in 4s, found 46 files... Nov 22 2024 06:56:57 webserver maldet(23781): {scan} found clamav binary at /usr/bin/clamdscan, using clamav scanner engine... Nov 22 2024 06:56:57 webserver maldet(23781): {scan} scan of (46 files) in progress... Nov 22 2024 06:57:03 webserver maldet(23781): {scan} scan completed on : files 46, malware hits 0, cleaned hits 0, time 10s Nov 22 2024 06:57:03 webserver maldet(23781): {scan} scan report saved, to view run: maldet --report 241122-0656.23781 Nov 23 2024 06:56:19 webserver maldet(14732): {update} checking for available updates... Nov 23 2024 06:56:19 webserver maldet(14732): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Nov 23 2024 06:56:19 webserver maldet(14732): {update} hashing install files and checking against server... Nov 23 2024 06:56:19 webserver maldet(14732): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Nov 23 2024 06:56:19 webserver maldet(14732): {update} latest version already installed. Nov 23 2024 06:56:19 webserver maldet(14868): {sigup} performing signature update check... Nov 23 2024 06:56:19 webserver maldet(14868): {sigup} local signature set is version 202411191312395 Nov 23 2024 06:56:19 webserver maldet(14868): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Nov 23 2024 06:56:19 webserver maldet(14868): {sigup} new signature set 202411222071516 available Nov 23 2024 06:56:19 webserver maldet(14868): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Nov 23 2024 06:56:19 webserver maldet(14868): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Nov 23 2024 06:56:19 webserver maldet(14868): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Nov 23 2024 06:56:19 webserver maldet(14868): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Nov 23 2024 06:56:19 webserver maldet(14868): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Nov 23 2024 06:56:19 webserver maldet(14868): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Nov 23 2024 06:56:19 webserver maldet(14868): {sigup} verified md5sum of maldet-sigpack.tgz Nov 23 2024 06:56:19 webserver maldet(14868): {sigup} unpacked and installed maldet-sigpack.tgz Nov 23 2024 06:56:19 webserver maldet(14868): {sigup} verified md5sum of maldet-clean.tgz Nov 23 2024 06:56:19 webserver maldet(14868): {sigup} unpacked and installed maldet-clean.tgz Nov 23 2024 06:56:19 webserver maldet(14868): {sigup} signature set update completed Nov 23 2024 06:56:19 webserver maldet(14868): {sigup} 17638 signatures (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Nov 23 2024 06:56:19 webserver maldet(15099): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Nov 23 2024 06:56:19 webserver maldet(15099): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Nov 23 2024 06:56:19 webserver maldet(15099): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Nov 23 2024 06:56:19 webserver maldet(15099): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Nov 23 2024 06:56:19 webserver maldet(15099): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Nov 23 2024 06:56:24 webserver maldet(15099): {scan} file list completed in 5s, found 12 files... Nov 23 2024 06:56:24 webserver maldet(15099): {scan} found clamav binary at /usr/bin/clamdscan, using clamav scanner engine... Nov 23 2024 06:56:24 webserver maldet(15099): {scan} scan of (12 files) in progress... Nov 23 2024 06:56:24 webserver maldet(15099): {scan} scan completed on : files 12, malware hits 0, cleaned hits 0, time 5s Nov 23 2024 06:56:24 webserver maldet(15099): {scan} scan report saved, to view run: maldet --report 241123-0656.15099 Nov 24 2024 06:56:33 webserver maldet(629): {update} checking for available updates... Nov 24 2024 06:56:33 webserver maldet(629): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Nov 24 2024 06:56:33 webserver maldet(629): {update} hashing install files and checking against server... Nov 24 2024 06:56:33 webserver maldet(629): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Nov 24 2024 06:56:33 webserver maldet(629): {update} latest version already installed. Nov 24 2024 06:56:33 webserver maldet(770): {sigup} performing signature update check... Nov 24 2024 06:56:33 webserver maldet(770): {sigup} local signature set is version 202411222071516 Nov 24 2024 06:56:33 webserver maldet(770): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Nov 24 2024 06:56:33 webserver maldet(770): {sigup} latest signature set already installed Nov 24 2024 06:56:34 webserver maldet(884): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Nov 24 2024 06:56:34 webserver maldet(884): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Nov 24 2024 06:56:34 webserver maldet(884): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Nov 24 2024 06:56:34 webserver maldet(884): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Nov 24 2024 06:56:34 webserver maldet(884): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Nov 24 2024 06:56:38 webserver maldet(884): {scan} file list completed in 4s, found 9 files... Nov 24 2024 06:56:38 webserver maldet(884): {scan} found clamav binary at /usr/bin/clamdscan, using clamav scanner engine... Nov 24 2024 06:56:38 webserver maldet(884): {scan} scan of (9 files) in progress... Nov 24 2024 06:56:38 webserver maldet(884): {scan} scan completed on : files 9, malware hits 0, cleaned hits 0, time 4s Nov 24 2024 06:56:38 webserver maldet(884): {scan} scan report saved, to view run: maldet --report 241124-0656.884 Nov 25 2024 06:57:26 webserver maldet(19372): {update} checking for available updates... Nov 25 2024 06:57:26 webserver maldet(19372): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Nov 25 2024 06:57:26 webserver maldet(19372): {update} hashing install files and checking against server... Nov 25 2024 06:57:26 webserver maldet(19372): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Nov 25 2024 06:57:26 webserver maldet(19372): {update} latest version already installed. Nov 25 2024 06:57:26 webserver maldet(19508): {sigup} performing signature update check... Nov 25 2024 06:57:26 webserver maldet(19508): {sigup} local signature set is version 202411222071516 Nov 25 2024 06:57:26 webserver maldet(19508): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Nov 25 2024 06:57:26 webserver maldet(19508): {sigup} latest signature set already installed Nov 25 2024 06:57:26 webserver maldet(19622): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Nov 25 2024 06:57:26 webserver maldet(19622): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Nov 25 2024 06:57:26 webserver maldet(19622): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Nov 25 2024 06:57:26 webserver maldet(19622): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Nov 25 2024 06:57:26 webserver maldet(19622): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Nov 25 2024 06:57:31 webserver maldet(19622): {scan} file list completed in 5s, found 9 files... Nov 25 2024 06:57:31 webserver maldet(19622): {scan} found clamav binary at /usr/bin/clamdscan, using clamav scanner engine... Nov 25 2024 06:57:31 webserver maldet(19622): {scan} scan of (9 files) in progress... Nov 25 2024 06:57:31 webserver maldet(19622): {scan} scan completed on : files 9, malware hits 0, cleaned hits 0, time 5s Nov 25 2024 06:57:31 webserver maldet(19622): {scan} scan report saved, to view run: maldet --report 241125-0657.19622 Nov 26 2024 06:58:15 webserver maldet(1401): {update} checking for available updates... Nov 26 2024 06:58:15 webserver maldet(1401): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Nov 26 2024 06:58:15 webserver maldet(1401): {update} hashing install files and checking against server... Nov 26 2024 06:58:16 webserver maldet(1401): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Nov 26 2024 06:58:16 webserver maldet(1401): {update} latest version already installed. Nov 26 2024 06:58:16 webserver maldet(1537): {sigup} performing signature update check... Nov 26 2024 06:58:16 webserver maldet(1537): {sigup} local signature set is version 202411222071516 Nov 26 2024 06:58:16 webserver maldet(1537): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Nov 26 2024 06:58:16 webserver maldet(1537): {sigup} new signature set 202411252823427 available Nov 26 2024 06:58:16 webserver maldet(1537): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Nov 26 2024 06:58:16 webserver maldet(1537): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Nov 26 2024 06:58:16 webserver maldet(1537): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Nov 26 2024 06:58:16 webserver maldet(1537): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Nov 26 2024 06:58:16 webserver maldet(1537): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Nov 26 2024 06:58:16 webserver maldet(1537): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Nov 26 2024 06:58:16 webserver maldet(1537): {sigup} verified md5sum of maldet-sigpack.tgz Nov 26 2024 06:58:16 webserver maldet(1537): {sigup} unpacked and installed maldet-sigpack.tgz Nov 26 2024 06:58:16 webserver maldet(1537): {sigup} verified md5sum of maldet-clean.tgz Nov 26 2024 06:58:16 webserver maldet(1537): {sigup} unpacked and installed maldet-clean.tgz Nov 26 2024 06:58:16 webserver maldet(1537): {sigup} signature set update completed Nov 26 2024 06:58:16 webserver maldet(1537): {sigup} 17638 signatures (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Nov 26 2024 06:58:16 webserver maldet(1768): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Nov 26 2024 06:58:16 webserver maldet(1768): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Nov 26 2024 06:58:16 webserver maldet(1768): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Nov 26 2024 06:58:16 webserver maldet(1768): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Nov 26 2024 06:58:16 webserver maldet(1768): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Nov 26 2024 06:58:21 webserver maldet(1768): {scan} file list completed in 5s, found 12 files... Nov 26 2024 06:58:21 webserver maldet(1768): {scan} found clamav binary at /usr/bin/clamdscan, using clamav scanner engine... Nov 26 2024 06:58:21 webserver maldet(1768): {scan} scan of (12 files) in progress... Nov 26 2024 06:58:21 webserver maldet(1768): {scan} scan completed on : files 12, malware hits 0, cleaned hits 0, time 5s Nov 26 2024 06:58:21 webserver maldet(1768): {scan} scan report saved, to view run: maldet --report 241126-0658.1768 Nov 27 2024 06:57:29 webserver maldet(5505): {update} checking for available updates... Nov 27 2024 06:57:29 webserver maldet(5505): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Nov 27 2024 06:57:29 webserver maldet(5505): {update} hashing install files and checking against server... Nov 27 2024 06:57:29 webserver maldet(5505): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Nov 27 2024 06:57:29 webserver maldet(5505): {update} latest version already installed. Nov 27 2024 06:57:29 webserver maldet(5641): {sigup} performing signature update check... Nov 27 2024 06:57:29 webserver maldet(5641): {sigup} local signature set is version 202411252823427 Nov 27 2024 06:57:29 webserver maldet(5641): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Nov 27 2024 06:57:29 webserver maldet(5641): {sigup} latest signature set already installed Nov 27 2024 06:57:29 webserver maldet(5755): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Nov 27 2024 06:57:29 webserver maldet(5755): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Nov 27 2024 06:57:29 webserver maldet(5755): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Nov 27 2024 06:57:29 webserver maldet(5755): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Nov 27 2024 06:57:29 webserver maldet(5755): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Nov 27 2024 06:57:34 webserver maldet(5755): {scan} file list completed in 5s, found 8 files... Nov 27 2024 06:57:34 webserver maldet(5755): {scan} found clamav binary at /usr/bin/clamdscan, using clamav scanner engine... Nov 27 2024 06:57:34 webserver maldet(5755): {scan} scan of (8 files) in progress... Nov 27 2024 06:57:34 webserver maldet(5755): {scan} scan completed on : files 8, malware hits 0, cleaned hits 0, time 5s Nov 27 2024 06:57:34 webserver maldet(5755): {scan} scan report saved, to view run: maldet --report 241127-0657.5755 Nov 28 2024 06:57:23 webserver maldet(21684): {update} checking for available updates... Nov 28 2024 06:57:23 webserver maldet(21684): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Nov 28 2024 06:57:23 webserver maldet(21684): {update} hashing install files and checking against server... Nov 28 2024 06:57:23 webserver maldet(21684): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Nov 28 2024 06:57:23 webserver maldet(21684): {update} latest version already installed. Nov 28 2024 06:57:23 webserver maldet(21820): {sigup} performing signature update check... Nov 28 2024 06:57:23 webserver maldet(21820): {sigup} local signature set is version 202411252823427 Nov 28 2024 06:57:23 webserver maldet(21820): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Nov 28 2024 06:57:23 webserver maldet(21820): {sigup} latest signature set already installed Nov 28 2024 06:57:23 webserver maldet(21934): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Nov 28 2024 06:57:23 webserver maldet(21934): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Nov 28 2024 06:57:23 webserver maldet(21934): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Nov 28 2024 06:57:23 webserver maldet(21934): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Nov 28 2024 06:57:23 webserver maldet(21934): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Nov 28 2024 06:57:28 webserver maldet(21934): {scan} file list completed in 5s, found 9 files... Nov 28 2024 06:57:28 webserver maldet(21934): {scan} found clamav binary at /usr/bin/clamdscan, using clamav scanner engine... Nov 28 2024 06:57:28 webserver maldet(21934): {scan} scan of (9 files) in progress... Nov 28 2024 06:57:28 webserver maldet(21934): {scan} scan completed on : files 9, malware hits 0, cleaned hits 0, time 5s Nov 28 2024 06:57:28 webserver maldet(21934): {scan} scan report saved, to view run: maldet --report 241128-0657.21934 Nov 29 2024 07:05:27 webserver maldet(5989): {update} checking for available updates... Nov 29 2024 07:05:27 webserver maldet(5989): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Nov 29 2024 07:05:27 webserver maldet(5989): {update} hashing install files and checking against server... Nov 29 2024 07:05:27 webserver maldet(5989): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Nov 29 2024 07:05:27 webserver maldet(5989): {update} latest version already installed. Nov 29 2024 07:05:27 webserver maldet(6125): {sigup} performing signature update check... Nov 29 2024 07:05:27 webserver maldet(6125): {sigup} local signature set is version 202411252823427 Nov 29 2024 07:05:27 webserver maldet(6125): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Nov 29 2024 07:05:27 webserver maldet(6125): {sigup} new signature set 202411283582038 available Nov 29 2024 07:05:27 webserver maldet(6125): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Nov 29 2024 07:05:27 webserver maldet(6125): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Nov 29 2024 07:05:27 webserver maldet(6125): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Nov 29 2024 07:05:27 webserver maldet(6125): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Nov 29 2024 07:05:27 webserver maldet(6125): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Nov 29 2024 07:05:27 webserver maldet(6125): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Nov 29 2024 07:05:27 webserver maldet(6125): {sigup} verified md5sum of maldet-sigpack.tgz Nov 29 2024 07:05:27 webserver maldet(6125): {sigup} unpacked and installed maldet-sigpack.tgz Nov 29 2024 07:05:27 webserver maldet(6125): {sigup} verified md5sum of maldet-clean.tgz Nov 29 2024 07:05:27 webserver maldet(6125): {sigup} unpacked and installed maldet-clean.tgz Nov 29 2024 07:05:27 webserver maldet(6125): {sigup} signature set update completed Nov 29 2024 07:05:27 webserver maldet(6125): {sigup} 17638 signatures (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Nov 29 2024 07:05:28 webserver maldet(6356): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Nov 29 2024 07:05:28 webserver maldet(6356): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Nov 29 2024 07:05:28 webserver maldet(6356): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Nov 29 2024 07:05:28 webserver maldet(6356): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Nov 29 2024 07:05:28 webserver maldet(6356): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Nov 29 2024 07:05:32 webserver maldet(6356): {scan} file list completed in 4s, found 11 files... Nov 29 2024 07:05:32 webserver maldet(6356): {scan} found clamav binary at /usr/bin/clamdscan, using clamav scanner engine... Nov 29 2024 07:05:32 webserver maldet(6356): {scan} scan of (11 files) in progress... Nov 29 2024 07:05:33 webserver maldet(6356): {scan} scan completed on : files 11, malware hits 0, cleaned hits 0, time 4s Nov 29 2024 07:05:33 webserver maldet(6356): {scan} scan report saved, to view run: maldet --report 241129-0705.6356 Nov 30 2024 06:58:57 webserver maldet(23255): {update} checking for available updates... Nov 30 2024 06:58:57 webserver maldet(23255): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Nov 30 2024 06:58:57 webserver maldet(23255): {update} hashing install files and checking against server... Nov 30 2024 06:58:57 webserver maldet(23255): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Nov 30 2024 06:58:57 webserver maldet(23255): {update} latest version already installed. Nov 30 2024 06:58:57 webserver maldet(23391): {sigup} performing signature update check... Nov 30 2024 06:58:57 webserver maldet(23391): {sigup} local signature set is version 202411283582038 Nov 30 2024 06:58:57 webserver maldet(23391): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Nov 30 2024 06:58:57 webserver maldet(23391): {sigup} latest signature set already installed Nov 30 2024 06:58:57 webserver maldet(23505): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Nov 30 2024 06:58:57 webserver maldet(23505): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Nov 30 2024 06:58:57 webserver maldet(23505): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Nov 30 2024 06:58:57 webserver maldet(23505): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Nov 30 2024 06:58:57 webserver maldet(23505): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Nov 30 2024 06:59:02 webserver maldet(23505): {scan} file list completed in 5s, found 9 files... Nov 30 2024 06:59:02 webserver maldet(23505): {scan} found clamav binary at /usr/bin/clamdscan, using clamav scanner engine... Nov 30 2024 06:59:02 webserver maldet(23505): {scan} scan of (9 files) in progress... Nov 30 2024 06:59:02 webserver maldet(23505): {scan} scan completed on : files 9, malware hits 0, cleaned hits 0, time 5s Nov 30 2024 06:59:02 webserver maldet(23505): {scan} scan report saved, to view run: maldet --report 241130-0658.23505 Dec 01 2024 06:56:33 webserver maldet(10247): {update} checking for available updates... Dec 01 2024 06:56:34 webserver maldet(10247): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Dec 01 2024 06:56:34 webserver maldet(10247): {update} hashing install files and checking against server... Dec 01 2024 06:56:34 webserver maldet(10247): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Dec 01 2024 06:56:34 webserver maldet(10247): {update} latest version already installed. Dec 01 2024 06:56:34 webserver maldet(10383): {sigup} performing signature update check... Dec 01 2024 06:56:34 webserver maldet(10383): {sigup} local signature set is version 202411283582038 Dec 01 2024 06:56:34 webserver maldet(10383): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Dec 01 2024 06:56:34 webserver maldet(10383): {sigup} latest signature set already installed Dec 01 2024 06:56:34 webserver maldet(10497): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Dec 01 2024 06:56:34 webserver maldet(10497): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Dec 01 2024 06:56:34 webserver maldet(10497): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Dec 01 2024 06:56:34 webserver maldet(10497): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Dec 01 2024 06:56:34 webserver maldet(10497): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Dec 01 2024 06:56:39 webserver maldet(10497): {scan} file list completed in 5s, found 10 files... Dec 01 2024 06:56:39 webserver maldet(10497): {scan} found clamav binary at /usr/bin/clamdscan, using clamav scanner engine... Dec 01 2024 06:56:39 webserver maldet(10497): {scan} scan of (10 files) in progress... Dec 01 2024 06:56:39 webserver maldet(10497): {scan} scan completed on : files 10, malware hits 0, cleaned hits 0, time 5s Dec 01 2024 06:56:39 webserver maldet(10497): {scan} scan report saved, to view run: maldet --report 241201-0656.10497 Dec 02 2024 06:57:24 webserver maldet(833): {update} checking for available updates... Dec 02 2024 06:57:25 webserver maldet(833): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Dec 02 2024 06:57:25 webserver maldet(833): {update} hashing install files and checking against server... Dec 02 2024 06:57:25 webserver maldet(833): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Dec 02 2024 06:57:25 webserver maldet(833): {update} latest version already installed. Dec 02 2024 06:57:25 webserver maldet(969): {sigup} performing signature update check... Dec 02 2024 06:57:25 webserver maldet(969): {sigup} local signature set is version 202411283582038 Dec 02 2024 06:57:25 webserver maldet(969): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Dec 02 2024 06:57:25 webserver maldet(969): {sigup} new signature set 20241201128768 available Dec 02 2024 06:57:25 webserver maldet(969): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Dec 02 2024 06:57:25 webserver maldet(969): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Dec 02 2024 06:57:25 webserver maldet(969): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Dec 02 2024 06:57:25 webserver maldet(969): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Dec 02 2024 06:57:25 webserver maldet(969): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Dec 02 2024 06:57:25 webserver maldet(969): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Dec 02 2024 06:57:25 webserver maldet(969): {sigup} verified md5sum of maldet-sigpack.tgz Dec 02 2024 06:57:25 webserver maldet(969): {sigup} unpacked and installed maldet-sigpack.tgz Dec 02 2024 06:57:25 webserver maldet(969): {sigup} verified md5sum of maldet-clean.tgz Dec 02 2024 06:57:25 webserver maldet(969): {sigup} unpacked and installed maldet-clean.tgz Dec 02 2024 06:57:25 webserver maldet(969): {sigup} signature set update completed Dec 02 2024 06:57:25 webserver maldet(969): {sigup} 17638 signatures (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Dec 02 2024 06:57:25 webserver maldet(1200): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Dec 02 2024 06:57:25 webserver maldet(1200): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Dec 02 2024 06:57:25 webserver maldet(1200): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Dec 02 2024 06:57:25 webserver maldet(1200): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Dec 02 2024 06:57:25 webserver maldet(1200): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Dec 02 2024 06:57:30 webserver maldet(1200): {scan} file list completed in 5s, found 10 files... Dec 02 2024 06:57:30 webserver maldet(1200): {scan} found clamav binary at /usr/bin/clamdscan, using clamav scanner engine... Dec 02 2024 06:57:30 webserver maldet(1200): {scan} scan of (10 files) in progress... Dec 02 2024 06:57:30 webserver maldet(1200): {scan} scan completed on : files 10, malware hits 0, cleaned hits 0, time 5s Dec 02 2024 06:57:30 webserver maldet(1200): {scan} scan report saved, to view run: maldet --report 241202-0657.1200 Dec 03 2024 06:56:48 webserver maldet(20597): {update} checking for available updates... Dec 03 2024 06:56:48 webserver maldet(20597): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Dec 03 2024 06:56:48 webserver maldet(20597): {update} hashing install files and checking against server... Dec 03 2024 06:56:49 webserver maldet(20597): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Dec 03 2024 06:56:49 webserver maldet(20597): {update} latest version already installed. Dec 03 2024 06:56:49 webserver maldet(20733): {sigup} performing signature update check... Dec 03 2024 06:56:49 webserver maldet(20733): {sigup} local signature set is version 20241201128768 Dec 03 2024 06:56:49 webserver maldet(20733): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Dec 03 2024 06:56:49 webserver maldet(20733): {sigup} latest signature set already installed Dec 03 2024 06:56:49 webserver maldet(20847): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Dec 03 2024 06:56:49 webserver maldet(20847): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Dec 03 2024 06:56:49 webserver maldet(20847): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Dec 03 2024 06:56:49 webserver maldet(20847): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Dec 03 2024 06:56:49 webserver maldet(20847): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Dec 03 2024 06:56:53 webserver maldet(20847): {scan} file list completed in 4s, found 11 files... Dec 03 2024 06:56:53 webserver maldet(20847): {scan} found clamav binary at /usr/bin/clamdscan, using clamav scanner engine... Dec 03 2024 06:56:54 webserver maldet(20847): {scan} scan of (11 files) in progress... Dec 03 2024 06:56:54 webserver maldet(20847): {scan} scan completed on : files 11, malware hits 0, cleaned hits 0, time 5s Dec 03 2024 06:56:54 webserver maldet(20847): {scan} scan report saved, to view run: maldet --report 241203-0656.20847 Dec 04 2024 06:56:43 webserver maldet(6134): {update} checking for available updates... Dec 04 2024 06:56:43 webserver maldet(6134): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Dec 04 2024 06:56:43 webserver maldet(6134): {update} hashing install files and checking against server... Dec 04 2024 06:56:43 webserver maldet(6134): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Dec 04 2024 06:56:43 webserver maldet(6134): {update} latest version already installed. Dec 04 2024 06:56:43 webserver maldet(6270): {sigup} performing signature update check... Dec 04 2024 06:56:43 webserver maldet(6270): {sigup} local signature set is version 20241201128768 Dec 04 2024 06:56:44 webserver maldet(6270): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Dec 04 2024 06:56:44 webserver maldet(6270): {sigup} latest signature set already installed Dec 04 2024 06:56:44 webserver maldet(6384): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Dec 04 2024 06:56:44 webserver maldet(6384): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Dec 04 2024 06:56:44 webserver maldet(6384): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Dec 04 2024 06:56:44 webserver maldet(6384): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Dec 04 2024 06:56:44 webserver maldet(6384): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Dec 04 2024 06:56:48 webserver maldet(6384): {scan} file list completed in 4s, found 7 files... Dec 04 2024 06:56:48 webserver maldet(6384): {scan} found clamav binary at /usr/bin/clamdscan, using clamav scanner engine... Dec 04 2024 06:56:49 webserver maldet(6384): {scan} scan of (7 files) in progress... Dec 04 2024 06:56:49 webserver maldet(6384): {scan} scan completed on : files 7, malware hits 0, cleaned hits 0, time 5s Dec 04 2024 06:56:49 webserver maldet(6384): {scan} scan report saved, to view run: maldet --report 241204-0656.6384 Dec 05 2024 06:58:04 webserver maldet(29957): {update} checking for available updates... Dec 05 2024 06:58:04 webserver maldet(29957): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Dec 05 2024 06:58:04 webserver maldet(29957): {update} hashing install files and checking against server... Dec 05 2024 06:58:04 webserver maldet(29957): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Dec 05 2024 06:58:04 webserver maldet(29957): {update} latest version already installed. Dec 05 2024 06:58:04 webserver maldet(30093): {sigup} performing signature update check... Dec 05 2024 06:58:04 webserver maldet(30093): {sigup} local signature set is version 20241201128768 Dec 05 2024 06:58:04 webserver maldet(30093): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Dec 05 2024 06:58:04 webserver maldet(30093): {sigup} new signature set 20241204548533 available Dec 05 2024 06:58:04 webserver maldet(30093): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Dec 05 2024 06:58:05 webserver maldet(30093): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Dec 05 2024 06:58:05 webserver maldet(30093): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Dec 05 2024 06:58:05 webserver maldet(30093): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Dec 05 2024 06:58:05 webserver maldet(30093): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Dec 05 2024 06:58:05 webserver maldet(30093): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Dec 05 2024 06:58:05 webserver maldet(30093): {sigup} verified md5sum of maldet-sigpack.tgz Dec 05 2024 06:58:05 webserver maldet(30093): {sigup} unpacked and installed maldet-sigpack.tgz Dec 05 2024 06:58:05 webserver maldet(30093): {sigup} verified md5sum of maldet-clean.tgz Dec 05 2024 06:58:05 webserver maldet(30093): {sigup} unpacked and installed maldet-clean.tgz Dec 05 2024 06:58:05 webserver maldet(30093): {sigup} signature set update completed Dec 05 2024 06:58:05 webserver maldet(30093): {sigup} 17638 signatures (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Dec 05 2024 06:58:05 webserver maldet(30324): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Dec 05 2024 06:58:05 webserver maldet(30324): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Dec 05 2024 06:58:05 webserver maldet(30324): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Dec 05 2024 06:58:05 webserver maldet(30324): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Dec 05 2024 06:58:05 webserver maldet(30324): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Dec 05 2024 06:58:10 webserver maldet(30324): {scan} file list completed in 5s, found 79 files... Dec 05 2024 06:58:10 webserver maldet(30324): {scan} found clamav binary at /usr/bin/clamdscan, using clamav scanner engine... Dec 05 2024 06:58:10 webserver maldet(30324): {scan} scan of (79 files) in progress... Dec 05 2024 06:58:11 webserver maldet(30324): {scan} scan completed on : files 79, malware hits 0, cleaned hits 0, time 6s Dec 05 2024 06:58:11 webserver maldet(30324): {scan} scan report saved, to view run: maldet --report 241205-0658.30324 Dec 06 2024 06:58:30 webserver maldet(12749): {update} checking for available updates... Dec 06 2024 06:58:30 webserver maldet(12749): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Dec 06 2024 06:58:30 webserver maldet(12749): {update} hashing install files and checking against server... Dec 06 2024 06:58:30 webserver maldet(12749): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Dec 06 2024 06:58:30 webserver maldet(12749): {update} latest version already installed. Dec 06 2024 06:58:30 webserver maldet(12885): {sigup} performing signature update check... Dec 06 2024 06:58:30 webserver maldet(12885): {sigup} local signature set is version 20241204548533 Dec 06 2024 06:58:30 webserver maldet(12885): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Dec 06 2024 06:58:30 webserver maldet(12885): {sigup} latest signature set already installed Dec 06 2024 06:58:30 webserver maldet(12999): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Dec 06 2024 06:58:30 webserver maldet(12999): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Dec 06 2024 06:58:30 webserver maldet(12999): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Dec 06 2024 06:58:30 webserver maldet(12999): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Dec 06 2024 06:58:30 webserver maldet(12999): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Dec 06 2024 06:58:35 webserver maldet(12999): {scan} file list completed in 5s, found 9 files... Dec 06 2024 06:58:35 webserver maldet(12999): {scan} found clamav binary at /usr/bin/clamdscan, using clamav scanner engine... Dec 06 2024 06:58:35 webserver maldet(12999): {scan} scan of (9 files) in progress... Dec 06 2024 06:58:35 webserver maldet(12999): {scan} scan completed on : files 9, malware hits 0, cleaned hits 0, time 5s Dec 06 2024 06:58:35 webserver maldet(12999): {scan} scan report saved, to view run: maldet --report 241206-0658.12999 Dec 07 2024 07:04:05 webserver maldet(30936): {update} checking for available updates... Dec 07 2024 07:04:05 webserver maldet(30936): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Dec 07 2024 07:04:05 webserver maldet(30936): {update} hashing install files and checking against server... Dec 07 2024 07:04:05 webserver maldet(30936): {update} could not download https://cdn.rfxn.com/downloads/maldet.current.hash, please try again later. Dec 07 2024 07:04:05 webserver maldet(30936): {update} could not download upstream hash file (https://cdn.rfxn.com/downloads/maldet.current.hash), please try again later. Dec 07 2024 07:04:05 webserver maldet(31070): {sigup} performing signature update check... Dec 07 2024 07:04:05 webserver maldet(31070): {sigup} local signature set is version 20241204548533 Dec 07 2024 07:04:05 webserver maldet(31070): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Dec 07 2024 07:04:05 webserver maldet(31070): {sigup} latest signature set already installed Dec 07 2024 07:04:05 webserver maldet(31184): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Dec 07 2024 07:04:05 webserver maldet(31184): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Dec 07 2024 07:04:05 webserver maldet(31184): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Dec 07 2024 07:04:05 webserver maldet(31184): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Dec 07 2024 07:04:05 webserver maldet(31184): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Dec 07 2024 07:04:10 webserver maldet(31184): {scan} file list completed in 5s, found 7 files... Dec 07 2024 07:04:10 webserver maldet(31184): {scan} found clamav binary at /usr/bin/clamdscan, using clamav scanner engine... Dec 07 2024 07:04:10 webserver maldet(31184): {scan} scan of (7 files) in progress... Dec 07 2024 07:04:10 webserver maldet(31184): {scan} scan completed on : files 7, malware hits 0, cleaned hits 0, time 5s Dec 07 2024 07:04:10 webserver maldet(31184): {scan} scan report saved, to view run: maldet --report 241207-0704.31184 Dec 08 2024 06:58:34 webserver maldet(12794): {update} checking for available updates... Dec 08 2024 06:58:34 webserver maldet(12794): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Dec 08 2024 06:58:34 webserver maldet(12794): {update} hashing install files and checking against server... Dec 08 2024 06:58:34 webserver maldet(12794): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Dec 08 2024 06:58:34 webserver maldet(12794): {update} latest version already installed. Dec 08 2024 06:58:34 webserver maldet(12930): {sigup} performing signature update check... Dec 08 2024 06:58:34 webserver maldet(12930): {sigup} local signature set is version 20241204548533 Dec 08 2024 06:58:34 webserver maldet(12930): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Dec 08 2024 06:58:34 webserver maldet(12930): {sigup} new signature set 20241207552742 available Dec 08 2024 06:58:34 webserver maldet(12930): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Dec 08 2024 06:58:34 webserver maldet(12930): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Dec 08 2024 06:58:34 webserver maldet(12930): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Dec 08 2024 06:58:34 webserver maldet(12930): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Dec 08 2024 06:58:34 webserver maldet(12930): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Dec 08 2024 06:58:34 webserver maldet(12930): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Dec 08 2024 06:58:34 webserver maldet(12930): {sigup} verified md5sum of maldet-sigpack.tgz Dec 08 2024 06:58:34 webserver maldet(12930): {sigup} unpacked and installed maldet-sigpack.tgz Dec 08 2024 06:58:34 webserver maldet(12930): {sigup} verified md5sum of maldet-clean.tgz Dec 08 2024 06:58:34 webserver maldet(12930): {sigup} unpacked and installed maldet-clean.tgz Dec 08 2024 06:58:34 webserver maldet(12930): {sigup} signature set update completed Dec 08 2024 06:58:34 webserver maldet(12930): {sigup} 17638 signatures (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Dec 08 2024 06:58:34 webserver maldet(13161): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Dec 08 2024 06:58:35 webserver maldet(13161): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Dec 08 2024 06:58:35 webserver maldet(13161): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Dec 08 2024 06:58:35 webserver maldet(13161): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Dec 08 2024 06:58:35 webserver maldet(13161): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Dec 08 2024 06:58:39 webserver maldet(13161): {scan} file list completed in 4s, found 9 files... Dec 08 2024 06:58:39 webserver maldet(13161): {scan} found clamav binary at /usr/bin/clamdscan, using clamav scanner engine... Dec 08 2024 06:58:39 webserver maldet(13161): {scan} scan of (9 files) in progress... Dec 08 2024 06:58:39 webserver maldet(13161): {scan} scan completed on : files 9, malware hits 0, cleaned hits 0, time 5s Dec 08 2024 06:58:39 webserver maldet(13161): {scan} scan report saved, to view run: maldet --report 241208-0658.13161 Dec 09 2024 06:56:18 webserver maldet(8122): {update} checking for available updates... Dec 09 2024 06:56:19 webserver maldet(8122): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Dec 09 2024 06:56:19 webserver maldet(8122): {update} hashing install files and checking against server... Dec 09 2024 06:56:19 webserver maldet(8122): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Dec 09 2024 06:56:19 webserver maldet(8122): {update} latest version already installed. Dec 09 2024 06:56:19 webserver maldet(8258): {sigup} performing signature update check... Dec 09 2024 06:56:19 webserver maldet(8258): {sigup} local signature set is version 20241207552742 Dec 09 2024 06:56:19 webserver maldet(8258): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Dec 09 2024 06:56:19 webserver maldet(8258): {sigup} latest signature set already installed Dec 09 2024 06:56:19 webserver maldet(8372): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Dec 09 2024 06:56:19 webserver maldet(8372): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Dec 09 2024 06:56:19 webserver maldet(8372): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Dec 09 2024 06:56:19 webserver maldet(8372): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Dec 09 2024 06:56:19 webserver maldet(8372): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Dec 09 2024 06:56:24 webserver maldet(8372): {scan} file list completed in 5s, found 9 files... Dec 09 2024 06:56:24 webserver maldet(8372): {scan} found clamav binary at /usr/bin/clamdscan, using clamav scanner engine... Dec 09 2024 06:56:24 webserver maldet(8372): {scan} scan of (9 files) in progress... Dec 09 2024 06:56:24 webserver maldet(8372): {scan} scan completed on : files 9, malware hits 0, cleaned hits 0, time 5s Dec 09 2024 06:56:24 webserver maldet(8372): {scan} scan report saved, to view run: maldet --report 241209-0656.8372 Dec 10 2024 06:55:59 webserver maldet(2508): {update} checking for available updates... Dec 10 2024 06:55:59 webserver maldet(2508): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Dec 10 2024 06:55:59 webserver maldet(2508): {update} hashing install files and checking against server... Dec 10 2024 06:55:59 webserver maldet(2508): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Dec 10 2024 06:55:59 webserver maldet(2508): {update} latest version already installed. Dec 10 2024 06:55:59 webserver maldet(2644): {sigup} performing signature update check... Dec 10 2024 06:55:59 webserver maldet(2644): {sigup} local signature set is version 20241207552742 Dec 10 2024 06:55:59 webserver maldet(2644): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Dec 10 2024 06:55:59 webserver maldet(2644): {sigup} latest signature set already installed Dec 10 2024 06:55:59 webserver maldet(2758): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Dec 10 2024 06:55:59 webserver maldet(2758): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Dec 10 2024 06:55:59 webserver maldet(2758): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Dec 10 2024 06:55:59 webserver maldet(2758): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Dec 10 2024 06:55:59 webserver maldet(2758): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Dec 10 2024 06:56:04 webserver maldet(2758): {scan} file list completed in 5s, found 9 files... Dec 10 2024 06:56:04 webserver maldet(2758): {scan} found clamav binary at /usr/bin/clamdscan, using clamav scanner engine... Dec 10 2024 06:56:04 webserver maldet(2758): {scan} scan of (9 files) in progress... Dec 10 2024 06:56:04 webserver maldet(2758): {scan} scan completed on : files 9, malware hits 0, cleaned hits 0, time 5s Dec 10 2024 06:56:04 webserver maldet(2758): {scan} scan report saved, to view run: maldet --report 241210-0655.2758 Dec 11 2024 06:57:05 webserver maldet(21898): {update} checking for available updates... Dec 11 2024 06:57:05 webserver maldet(21898): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Dec 11 2024 06:57:05 webserver maldet(21898): {update} hashing install files and checking against server... Dec 11 2024 06:57:05 webserver maldet(21898): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Dec 11 2024 06:57:05 webserver maldet(21898): {update} latest version already installed. Dec 11 2024 06:57:05 webserver maldet(22034): {sigup} performing signature update check... Dec 11 2024 06:57:05 webserver maldet(22034): {sigup} local signature set is version 20241207552742 Dec 11 2024 06:57:05 webserver maldet(22034): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Dec 11 2024 06:57:05 webserver maldet(22034): {sigup} new signature set 20241210573652 available Dec 11 2024 06:57:05 webserver maldet(22034): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Dec 11 2024 06:57:05 webserver maldet(22034): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Dec 11 2024 06:57:05 webserver maldet(22034): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Dec 11 2024 06:57:05 webserver maldet(22034): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Dec 11 2024 06:57:05 webserver maldet(22034): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Dec 11 2024 06:57:05 webserver maldet(22034): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Dec 11 2024 06:57:05 webserver maldet(22034): {sigup} verified md5sum of maldet-sigpack.tgz Dec 11 2024 06:57:06 webserver maldet(22034): {sigup} unpacked and installed maldet-sigpack.tgz Dec 11 2024 06:57:06 webserver maldet(22034): {sigup} verified md5sum of maldet-clean.tgz Dec 11 2024 06:57:06 webserver maldet(22034): {sigup} unpacked and installed maldet-clean.tgz Dec 11 2024 06:57:06 webserver maldet(22034): {sigup} signature set update completed Dec 11 2024 06:57:06 webserver maldet(22034): {sigup} 17638 signatures (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Dec 11 2024 06:57:06 webserver maldet(22265): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Dec 11 2024 06:57:06 webserver maldet(22265): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Dec 11 2024 06:57:06 webserver maldet(22265): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Dec 11 2024 06:57:06 webserver maldet(22265): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Dec 11 2024 06:57:06 webserver maldet(22265): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Dec 11 2024 06:57:10 webserver maldet(22265): {scan} file list completed in 4s, found 7 files... Dec 11 2024 06:57:10 webserver maldet(22265): {scan} found clamav binary at /usr/bin/clamdscan, using clamav scanner engine... Dec 11 2024 06:57:10 webserver maldet(22265): {scan} scan of (7 files) in progress... Dec 11 2024 06:57:11 webserver maldet(22265): {scan} scan completed on : files 7, malware hits 0, cleaned hits 0, time 5s Dec 11 2024 06:57:11 webserver maldet(22265): {scan} scan report saved, to view run: maldet --report 241211-0657.22265 Dec 12 2024 06:58:23 webserver maldet(6232): {update} checking for available updates... Dec 12 2024 06:58:23 webserver maldet(6232): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Dec 12 2024 06:58:23 webserver maldet(6232): {update} hashing install files and checking against server... Dec 12 2024 06:58:23 webserver maldet(6232): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Dec 12 2024 06:58:23 webserver maldet(6232): {update} latest version already installed. Dec 12 2024 06:58:23 webserver maldet(6368): {sigup} performing signature update check... Dec 12 2024 06:58:23 webserver maldet(6368): {sigup} local signature set is version 20241210573652 Dec 12 2024 06:58:24 webserver maldet(6368): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Dec 12 2024 06:58:24 webserver maldet(6368): {sigup} latest signature set already installed Dec 12 2024 06:58:24 webserver maldet(6482): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Dec 12 2024 06:58:24 webserver maldet(6482): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Dec 12 2024 06:58:24 webserver maldet(6482): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Dec 12 2024 06:58:24 webserver maldet(6482): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Dec 12 2024 06:58:24 webserver maldet(6482): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Dec 12 2024 06:58:28 webserver maldet(6482): {scan} file list completed in 4s, found 10 files... Dec 12 2024 06:58:28 webserver maldet(6482): {scan} found clamav binary at /usr/bin/clamdscan, using clamav scanner engine... Dec 12 2024 06:58:28 webserver maldet(6482): {scan} scan of (10 files) in progress... Dec 12 2024 06:58:29 webserver maldet(6482): {scan} scan completed on : files 10, malware hits 0, cleaned hits 0, time 4s Dec 12 2024 06:58:29 webserver maldet(6482): {scan} scan report saved, to view run: maldet --report 241212-0658.6482 Dec 13 2024 07:03:29 webserver maldet(26640): {update} checking for available updates... Dec 13 2024 07:03:29 webserver maldet(26640): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Dec 13 2024 07:03:29 webserver maldet(26640): {update} hashing install files and checking against server... Dec 13 2024 07:03:29 webserver maldet(26640): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Dec 13 2024 07:03:29 webserver maldet(26640): {update} latest version already installed. Dec 13 2024 07:03:29 webserver maldet(26776): {sigup} performing signature update check... Dec 13 2024 07:03:29 webserver maldet(26776): {sigup} local signature set is version 20241210573652 Dec 13 2024 07:03:29 webserver maldet(26776): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Dec 13 2024 07:03:29 webserver maldet(26776): {sigup} latest signature set already installed Dec 13 2024 07:03:29 webserver maldet(26890): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Dec 13 2024 07:03:29 webserver maldet(26890): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Dec 13 2024 07:03:29 webserver maldet(26890): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Dec 13 2024 07:03:29 webserver maldet(26890): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Dec 13 2024 07:03:29 webserver maldet(26890): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Dec 13 2024 07:03:34 webserver maldet(26890): {scan} file list completed in 5s, found 11 files... Dec 13 2024 07:03:34 webserver maldet(26890): {scan} found clamav binary at /usr/bin/clamdscan, using clamav scanner engine... Dec 13 2024 07:03:34 webserver maldet(26890): {scan} scan of (11 files) in progress... Dec 13 2024 07:03:34 webserver maldet(26890): {scan} scan completed on : files 11, malware hits 0, cleaned hits 0, time 5s Dec 13 2024 07:03:34 webserver maldet(26890): {scan} scan report saved, to view run: maldet --report 241213-0703.26890 Dec 19 2024 13:43:00 webserver maldet(322): {mon} could not find inotifywait command, install yum package inotify-tools or download from https://github.com/rvoicilas/inotify-tools/wiki/ Dec 20 2024 06:56:08 webserver maldet(2663): {update} checking for available updates... Dec 20 2024 06:56:08 webserver maldet(2663): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Dec 20 2024 06:56:08 webserver maldet(2663): {update} hashing install files and checking against server... Dec 20 2024 06:56:08 webserver maldet(2663): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Dec 20 2024 06:56:08 webserver maldet(2663): {update} latest version already installed. Dec 20 2024 06:56:08 webserver maldet(2799): {sigup} performing signature update check... Dec 20 2024 06:56:08 webserver maldet(2799): {sigup} local signature set is version 20241210573652 Dec 20 2024 06:56:09 webserver maldet(2799): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Dec 20 2024 06:56:09 webserver maldet(2799): {sigup} new signature set 202412191297071 available Dec 20 2024 06:56:09 webserver maldet(2799): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Dec 20 2024 06:56:09 webserver maldet(2799): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Dec 20 2024 06:56:09 webserver maldet(2799): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Dec 20 2024 06:56:09 webserver maldet(2799): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Dec 20 2024 06:56:09 webserver maldet(2799): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Dec 20 2024 06:56:09 webserver maldet(2799): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Dec 20 2024 06:56:09 webserver maldet(2799): {sigup} verified md5sum of maldet-sigpack.tgz Dec 20 2024 06:56:09 webserver maldet(2799): {sigup} unpacked and installed maldet-sigpack.tgz Dec 20 2024 06:56:09 webserver maldet(2799): {sigup} verified md5sum of maldet-clean.tgz Dec 20 2024 06:56:09 webserver maldet(2799): {sigup} unpacked and installed maldet-clean.tgz Dec 20 2024 06:56:09 webserver maldet(2799): {sigup} signature set update completed Dec 20 2024 06:56:09 webserver maldet(2799): {sigup} 17638 signatures (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Dec 20 2024 06:56:09 webserver maldet(3030): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Dec 20 2024 06:56:09 webserver maldet(3030): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Dec 20 2024 06:56:09 webserver maldet(3030): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Dec 20 2024 06:56:09 webserver maldet(3030): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Dec 20 2024 06:56:09 webserver maldet(3030): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Dec 20 2024 06:56:14 webserver maldet(3030): {scan} file list completed in 5s, found 11 files... Dec 20 2024 06:56:14 webserver maldet(3030): {scan} found clamav binary at /usr/bin/clamdscan, using clamav scanner engine... Dec 20 2024 06:56:14 webserver maldet(3030): {scan} scan of (11 files) in progress... Dec 20 2024 06:56:15 webserver maldet(3030): {scan} scan completed on : files 11, malware hits 0, cleaned hits 0, time 6s Dec 20 2024 06:56:15 webserver maldet(3030): {scan} scan report saved, to view run: maldet --report 241220-0656.3030 Dec 21 2024 06:58:42 webserver maldet(20038): {update} checking for available updates... Dec 21 2024 06:58:42 webserver maldet(20038): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Dec 21 2024 06:58:42 webserver maldet(20038): {update} hashing install files and checking against server... Dec 21 2024 06:58:42 webserver maldet(20038): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Dec 21 2024 06:58:42 webserver maldet(20038): {update} latest version already installed. Dec 21 2024 06:58:42 webserver maldet(20174): {sigup} performing signature update check... Dec 21 2024 06:58:42 webserver maldet(20174): {sigup} local signature set is version 202412191297071 Dec 21 2024 06:58:42 webserver maldet(20174): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Dec 21 2024 06:58:42 webserver maldet(20174): {sigup} latest signature set already installed Dec 21 2024 06:58:42 webserver maldet(20288): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Dec 21 2024 06:58:42 webserver maldet(20288): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Dec 21 2024 06:58:42 webserver maldet(20288): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Dec 21 2024 06:58:42 webserver maldet(20288): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Dec 21 2024 06:58:42 webserver maldet(20288): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Dec 21 2024 06:58:47 webserver maldet(20288): {scan} file list completed in 5s, found 11 files... Dec 21 2024 06:58:47 webserver maldet(20288): {scan} found clamav binary at /usr/bin/clamdscan, using clamav scanner engine... Dec 21 2024 06:58:47 webserver maldet(20288): {scan} scan of (11 files) in progress... Dec 21 2024 06:58:48 webserver maldet(20288): {scan} scan completed on : files 11, malware hits 0, cleaned hits 0, time 6s Dec 21 2024 06:58:48 webserver maldet(20288): {scan} scan report saved, to view run: maldet --report 241221-0658.20288 Dec 22 2024 07:02:03 webserver maldet(12702): {update} checking for available updates... Dec 22 2024 07:02:03 webserver maldet(12702): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Dec 22 2024 07:02:03 webserver maldet(12702): {update} hashing install files and checking against server... Dec 22 2024 07:02:03 webserver maldet(12702): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Dec 22 2024 07:02:03 webserver maldet(12702): {update} latest version already installed. Dec 22 2024 07:02:03 webserver maldet(12839): {sigup} performing signature update check... Dec 22 2024 07:02:03 webserver maldet(12839): {sigup} local signature set is version 202412191297071 Dec 22 2024 07:02:04 webserver maldet(12839): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Dec 22 2024 07:02:04 webserver maldet(12839): {sigup} latest signature set already installed Dec 22 2024 07:02:04 webserver maldet(12953): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Dec 22 2024 07:02:04 webserver maldet(12953): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Dec 22 2024 07:02:04 webserver maldet(12953): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Dec 22 2024 07:02:04 webserver maldet(12953): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Dec 22 2024 07:02:04 webserver maldet(12953): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Dec 22 2024 07:02:08 webserver maldet(12953): {scan} file list completed in 4s, found 10 files... Dec 22 2024 07:02:08 webserver maldet(12953): {scan} found clamav binary at /usr/bin/clamdscan, using clamav scanner engine... Dec 22 2024 07:02:09 webserver maldet(12953): {scan} scan of (10 files) in progress... Dec 22 2024 07:02:10 webserver maldet(12953): {scan} scan completed on : files 10, malware hits 0, cleaned hits 0, time 6s Dec 22 2024 07:02:10 webserver maldet(12953): {scan} scan report saved, to view run: maldet --report 241222-0702.12953 Dec 23 2024 06:59:26 webserver maldet(30221): {update} checking for available updates... Dec 23 2024 06:59:26 webserver maldet(30221): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Dec 23 2024 06:59:26 webserver maldet(30221): {update} hashing install files and checking against server... Dec 23 2024 06:59:26 webserver maldet(30221): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Dec 23 2024 06:59:26 webserver maldet(30221): {update} latest version already installed. Dec 23 2024 06:59:26 webserver maldet(30357): {sigup} performing signature update check... Dec 23 2024 06:59:26 webserver maldet(30357): {sigup} local signature set is version 202412191297071 Dec 23 2024 06:59:26 webserver maldet(30357): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Dec 23 2024 06:59:26 webserver maldet(30357): {sigup} new signature set 20241222594668 available Dec 23 2024 06:59:26 webserver maldet(30357): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Dec 23 2024 06:59:26 webserver maldet(30357): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Dec 23 2024 06:59:27 webserver maldet(30357): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Dec 23 2024 06:59:27 webserver maldet(30357): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Dec 23 2024 06:59:27 webserver maldet(30357): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Dec 23 2024 06:59:27 webserver maldet(30357): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Dec 23 2024 06:59:27 webserver maldet(30357): {sigup} verified md5sum of maldet-sigpack.tgz Dec 23 2024 06:59:27 webserver maldet(30357): {sigup} unpacked and installed maldet-sigpack.tgz Dec 23 2024 06:59:27 webserver maldet(30357): {sigup} verified md5sum of maldet-clean.tgz Dec 23 2024 06:59:27 webserver maldet(30357): {sigup} unpacked and installed maldet-clean.tgz Dec 23 2024 06:59:27 webserver maldet(30357): {sigup} signature set update completed Dec 23 2024 06:59:27 webserver maldet(30357): {sigup} 17638 signatures (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Dec 23 2024 06:59:27 webserver maldet(30588): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Dec 23 2024 06:59:27 webserver maldet(30588): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Dec 23 2024 06:59:27 webserver maldet(30588): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Dec 23 2024 06:59:27 webserver maldet(30588): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Dec 23 2024 06:59:27 webserver maldet(30588): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Dec 23 2024 06:59:32 webserver maldet(30588): {scan} file list completed in 5s, found 10 files... Dec 23 2024 06:59:32 webserver maldet(30588): {scan} found clamav binary at /usr/bin/clamdscan, using clamav scanner engine... Dec 23 2024 06:59:32 webserver maldet(30588): {scan} scan of (10 files) in progress... Dec 23 2024 06:59:33 webserver maldet(30588): {scan} scan completed on : files 10, malware hits 0, cleaned hits 0, time 6s Dec 23 2024 06:59:33 webserver maldet(30588): {scan} scan report saved, to view run: maldet --report 241223-0659.30588 Dec 24 2024 06:59:29 webserver maldet(22200): {update} checking for available updates... Dec 24 2024 06:59:29 webserver maldet(22200): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Dec 24 2024 06:59:29 webserver maldet(22200): {update} hashing install files and checking against server... Dec 24 2024 06:59:30 webserver maldet(22200): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Dec 24 2024 06:59:30 webserver maldet(22200): {update} latest version already installed. Dec 24 2024 06:59:30 webserver maldet(22336): {sigup} performing signature update check... Dec 24 2024 06:59:30 webserver maldet(22336): {sigup} local signature set is version 20241222594668 Dec 24 2024 06:59:30 webserver maldet(22336): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Dec 24 2024 06:59:30 webserver maldet(22336): {sigup} latest signature set already installed Dec 24 2024 06:59:30 webserver maldet(22452): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Dec 24 2024 06:59:30 webserver maldet(22452): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Dec 24 2024 06:59:30 webserver maldet(22452): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Dec 24 2024 06:59:30 webserver maldet(22452): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Dec 24 2024 06:59:30 webserver maldet(22452): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Dec 24 2024 06:59:35 webserver maldet(22452): {scan} file list completed in 4s, found 10 files... Dec 24 2024 06:59:35 webserver maldet(22452): {scan} found clamav binary at /usr/bin/clamdscan, using clamav scanner engine... Dec 24 2024 06:59:35 webserver maldet(22452): {scan} scan of (10 files) in progress... Dec 24 2024 06:59:36 webserver maldet(22452): {scan} scan completed on : files 10, malware hits 0, cleaned hits 0, time 6s Dec 24 2024 06:59:36 webserver maldet(22452): {scan} scan report saved, to view run: maldet --report 241224-0659.22452 Dec 25 2024 06:59:23 webserver maldet(5944): {update} checking for available updates... Dec 25 2024 06:59:24 webserver maldet(5944): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Dec 25 2024 06:59:24 webserver maldet(5944): {update} hashing install files and checking against server... Dec 25 2024 06:59:24 webserver maldet(5944): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Dec 25 2024 06:59:24 webserver maldet(5944): {update} latest version already installed. Dec 25 2024 06:59:24 webserver maldet(6080): {sigup} performing signature update check... Dec 25 2024 06:59:24 webserver maldet(6080): {sigup} local signature set is version 20241222594668 Dec 25 2024 06:59:24 webserver maldet(6080): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Dec 25 2024 06:59:24 webserver maldet(6080): {sigup} new signature set 202412251350335 available Dec 25 2024 06:59:24 webserver maldet(6080): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Dec 25 2024 06:59:24 webserver maldet(6080): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Dec 25 2024 06:59:24 webserver maldet(6080): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Dec 25 2024 06:59:24 webserver maldet(6080): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Dec 25 2024 06:59:24 webserver maldet(6080): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Dec 25 2024 06:59:24 webserver maldet(6080): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Dec 25 2024 06:59:24 webserver maldet(6080): {sigup} verified md5sum of maldet-sigpack.tgz Dec 25 2024 06:59:24 webserver maldet(6080): {sigup} unpacked and installed maldet-sigpack.tgz Dec 25 2024 06:59:24 webserver maldet(6080): {sigup} verified md5sum of maldet-clean.tgz Dec 25 2024 06:59:24 webserver maldet(6080): {sigup} unpacked and installed maldet-clean.tgz Dec 25 2024 06:59:24 webserver maldet(6080): {sigup} signature set update completed Dec 25 2024 06:59:24 webserver maldet(6080): {sigup} 17638 signatures (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Dec 25 2024 06:59:24 webserver maldet(6311): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Dec 25 2024 06:59:24 webserver maldet(6311): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Dec 25 2024 06:59:24 webserver maldet(6311): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Dec 25 2024 06:59:24 webserver maldet(6311): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Dec 25 2024 06:59:24 webserver maldet(6311): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Dec 25 2024 06:59:29 webserver maldet(6311): {scan} file list completed in 5s, found 11 files... Dec 25 2024 06:59:29 webserver maldet(6311): {scan} found clamav binary at /usr/bin/clamdscan, using clamav scanner engine... Dec 25 2024 06:59:29 webserver maldet(6311): {scan} scan of (11 files) in progress... Dec 25 2024 06:59:30 webserver maldet(6311): {scan} scan completed on : files 11, malware hits 0, cleaned hits 0, time 6s Dec 25 2024 06:59:30 webserver maldet(6311): {scan} scan report saved, to view run: maldet --report 241225-0659.6311 Dec 26 2024 07:03:50 webserver maldet(28201): {update} checking for available updates... Dec 26 2024 07:03:50 webserver maldet(28201): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Dec 26 2024 07:03:50 webserver maldet(28201): {update} hashing install files and checking against server... Dec 26 2024 07:03:50 webserver maldet(28201): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Dec 26 2024 07:03:50 webserver maldet(28201): {update} latest version already installed. Dec 26 2024 07:03:50 webserver maldet(28337): {sigup} performing signature update check... Dec 26 2024 07:03:50 webserver maldet(28337): {sigup} local signature set is version 202412251350335 Dec 26 2024 07:03:50 webserver maldet(28337): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Dec 26 2024 07:03:50 webserver maldet(28337): {sigup} latest signature set already installed Dec 26 2024 07:03:50 webserver maldet(28451): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Dec 26 2024 07:03:50 webserver maldet(28451): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Dec 26 2024 07:03:50 webserver maldet(28451): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Dec 26 2024 07:03:50 webserver maldet(28451): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Dec 26 2024 07:03:50 webserver maldet(28451): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Dec 26 2024 07:03:55 webserver maldet(28451): {scan} file list completed in 5s, found 9 files... Dec 26 2024 07:03:55 webserver maldet(28451): {scan} found clamav binary at /usr/bin/clamdscan, using clamav scanner engine... Dec 26 2024 07:03:55 webserver maldet(28451): {scan} scan of (9 files) in progress... Dec 26 2024 07:03:55 webserver maldet(28451): {scan} scan completed on : files 9, malware hits 0, cleaned hits 0, time 5s Dec 26 2024 07:03:55 webserver maldet(28451): {scan} scan report saved, to view run: maldet --report 241226-0703.28451 Dec 27 2024 06:57:49 webserver maldet(16960): {update} checking for available updates... Dec 27 2024 06:57:49 webserver maldet(16960): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Dec 27 2024 06:57:49 webserver maldet(16960): {update} hashing install files and checking against server... Dec 27 2024 06:57:49 webserver maldet(16960): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Dec 27 2024 06:57:49 webserver maldet(16960): {update} latest version already installed. Dec 27 2024 06:57:49 webserver maldet(17096): {sigup} performing signature update check... Dec 27 2024 06:57:49 webserver maldet(17096): {sigup} local signature set is version 202412251350335 Dec 27 2024 06:57:49 webserver maldet(17096): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Dec 27 2024 06:57:49 webserver maldet(17096): {sigup} latest signature set already installed Dec 27 2024 06:57:49 webserver maldet(17210): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Dec 27 2024 06:57:49 webserver maldet(17210): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Dec 27 2024 06:57:49 webserver maldet(17210): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Dec 27 2024 06:57:49 webserver maldet(17210): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Dec 27 2024 06:57:49 webserver maldet(17210): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Dec 27 2024 06:57:54 webserver maldet(17210): {scan} file list completed in 5s, found 11 files... Dec 27 2024 06:57:54 webserver maldet(17210): {scan} found clamav binary at /usr/bin/clamdscan, using clamav scanner engine... Dec 27 2024 06:57:54 webserver maldet(17210): {scan} scan of (11 files) in progress... Dec 27 2024 06:57:54 webserver maldet(17210): {scan} scan completed on : files 11, malware hits 0, cleaned hits 0, time 5s Dec 27 2024 06:57:54 webserver maldet(17210): {scan} scan report saved, to view run: maldet --report 241227-0657.17210 Dec 28 2024 07:00:30 webserver maldet(2423): {update} checking for available updates... Dec 28 2024 07:00:30 webserver maldet(2423): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Dec 28 2024 07:00:30 webserver maldet(2423): {update} hashing install files and checking against server... Dec 28 2024 07:00:30 webserver maldet(2423): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Dec 28 2024 07:00:30 webserver maldet(2423): {update} latest version already installed. Dec 28 2024 07:00:30 webserver maldet(2559): {sigup} performing signature update check... Dec 28 2024 07:00:30 webserver maldet(2559): {sigup} local signature set is version 202412251350335 Dec 28 2024 07:00:30 webserver maldet(2559): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Dec 28 2024 07:00:30 webserver maldet(2559): {sigup} latest signature set already installed Dec 28 2024 07:00:30 webserver maldet(2673): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Dec 28 2024 07:00:30 webserver maldet(2673): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Dec 28 2024 07:00:30 webserver maldet(2673): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Dec 28 2024 07:00:30 webserver maldet(2673): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Dec 28 2024 07:00:30 webserver maldet(2673): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Dec 28 2024 07:00:35 webserver maldet(2673): {scan} file list completed in 5s, found 10 files... Dec 28 2024 07:00:35 webserver maldet(2673): {scan} found clamav binary at /usr/bin/clamdscan, using clamav scanner engine... Dec 28 2024 07:00:35 webserver maldet(2673): {scan} scan of (10 files) in progress... Dec 28 2024 07:00:35 webserver maldet(2673): {scan} scan completed on : files 10, malware hits 0, cleaned hits 0, time 5s Dec 28 2024 07:00:35 webserver maldet(2673): {scan} scan report saved, to view run: maldet --report 241228-0700.2673 Dec 29 2024 06:57:25 webserver maldet(22452): {update} checking for available updates... Dec 29 2024 06:57:25 webserver maldet(22452): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Dec 29 2024 06:57:25 webserver maldet(22452): {update} hashing install files and checking against server... Dec 29 2024 06:57:25 webserver maldet(22452): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Dec 29 2024 06:57:25 webserver maldet(22452): {update} latest version already installed. Dec 29 2024 06:57:25 webserver maldet(22588): {sigup} performing signature update check... Dec 29 2024 06:57:25 webserver maldet(22588): {sigup} local signature set is version 202412251350335 Dec 29 2024 06:57:25 webserver maldet(22588): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Dec 29 2024 06:57:25 webserver maldet(22588): {sigup} new signature set 202412282106009 available Dec 29 2024 06:57:25 webserver maldet(22588): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Dec 29 2024 06:57:25 webserver maldet(22588): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Dec 29 2024 06:57:25 webserver maldet(22588): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Dec 29 2024 06:57:25 webserver maldet(22588): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Dec 29 2024 06:57:25 webserver maldet(22588): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Dec 29 2024 06:57:25 webserver maldet(22588): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Dec 29 2024 06:57:25 webserver maldet(22588): {sigup} verified md5sum of maldet-sigpack.tgz Dec 29 2024 06:57:26 webserver maldet(22588): {sigup} unpacked and installed maldet-sigpack.tgz Dec 29 2024 06:57:26 webserver maldet(22588): {sigup} verified md5sum of maldet-clean.tgz Dec 29 2024 06:57:26 webserver maldet(22588): {sigup} unpacked and installed maldet-clean.tgz Dec 29 2024 06:57:26 webserver maldet(22588): {sigup} signature set update completed Dec 29 2024 06:57:26 webserver maldet(22588): {sigup} 17638 signatures (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Dec 29 2024 06:57:26 webserver maldet(22819): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Dec 29 2024 06:57:26 webserver maldet(22819): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Dec 29 2024 06:57:26 webserver maldet(22819): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Dec 29 2024 06:57:26 webserver maldet(22819): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Dec 29 2024 06:57:26 webserver maldet(22819): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Dec 29 2024 06:57:30 webserver maldet(22819): {scan} file list completed in 4s, found 9 files... Dec 29 2024 06:57:30 webserver maldet(22819): {scan} found clamav binary at /usr/bin/clamdscan, using clamav scanner engine... Dec 29 2024 06:57:30 webserver maldet(22819): {scan} scan of (9 files) in progress... Dec 29 2024 06:57:31 webserver maldet(22819): {scan} scan completed on : files 9, malware hits 0, cleaned hits 0, time 5s Dec 29 2024 06:57:31 webserver maldet(22819): {scan} scan report saved, to view run: maldet --report 241229-0657.22819 Dec 30 2024 06:56:35 webserver maldet(17061): {update} checking for available updates... Dec 30 2024 06:56:35 webserver maldet(17061): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Dec 30 2024 06:56:35 webserver maldet(17061): {update} hashing install files and checking against server... Dec 30 2024 06:56:35 webserver maldet(17061): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Dec 30 2024 06:56:35 webserver maldet(17061): {update} latest version already installed. Dec 30 2024 06:56:35 webserver maldet(17197): {sigup} performing signature update check... Dec 30 2024 06:56:35 webserver maldet(17197): {sigup} local signature set is version 202412282106009 Dec 30 2024 06:56:36 webserver maldet(17197): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Dec 30 2024 06:56:36 webserver maldet(17197): {sigup} latest signature set already installed Dec 30 2024 06:56:36 webserver maldet(17311): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Dec 30 2024 06:56:36 webserver maldet(17311): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Dec 30 2024 06:56:36 webserver maldet(17311): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Dec 30 2024 06:56:36 webserver maldet(17311): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Dec 30 2024 06:56:36 webserver maldet(17311): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Dec 30 2024 06:56:40 webserver maldet(17311): {scan} file list completed in 4s, found 10 files... Dec 30 2024 06:56:40 webserver maldet(17311): {scan} found clamav binary at /usr/bin/clamdscan, using clamav scanner engine... Dec 30 2024 06:56:40 webserver maldet(17311): {scan} scan of (10 files) in progress... Dec 30 2024 06:56:41 webserver maldet(17311): {scan} scan completed on : files 10, malware hits 0, cleaned hits 0, time 5s Dec 30 2024 06:56:41 webserver maldet(17311): {scan} scan report saved, to view run: maldet --report 241230-0656.17311 Dec 31 2024 06:56:35 webserver maldet(6256): {update} checking for available updates... Dec 31 2024 06:56:35 webserver maldet(6256): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Dec 31 2024 06:56:35 webserver maldet(6256): {update} hashing install files and checking against server... Dec 31 2024 06:56:35 webserver maldet(6256): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Dec 31 2024 06:56:35 webserver maldet(6256): {update} latest version already installed. Dec 31 2024 06:56:35 webserver maldet(6392): {sigup} performing signature update check... Dec 31 2024 06:56:35 webserver maldet(6392): {sigup} local signature set is version 202412282106009 Dec 31 2024 06:56:36 webserver maldet(6392): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Dec 31 2024 06:56:36 webserver maldet(6392): {sigup} latest signature set already installed Dec 31 2024 06:56:36 webserver maldet(6506): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Dec 31 2024 06:56:36 webserver maldet(6506): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Dec 31 2024 06:56:36 webserver maldet(6506): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Dec 31 2024 06:56:36 webserver maldet(6506): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Dec 31 2024 06:56:36 webserver maldet(6506): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Dec 31 2024 06:56:40 webserver maldet(6506): {scan} file list completed in 4s, found 9 files... Dec 31 2024 06:56:40 webserver maldet(6506): {scan} found clamav binary at /usr/bin/clamdscan, using clamav scanner engine... Dec 31 2024 06:56:40 webserver maldet(6506): {scan} scan of (9 files) in progress... Dec 31 2024 06:56:41 webserver maldet(6506): {scan} scan completed on : files 9, malware hits 0, cleaned hits 0, time 5s Dec 31 2024 06:56:41 webserver maldet(6506): {scan} scan report saved, to view run: maldet --report 241231-0656.6506 Jan 01 2025 06:56:24 webserver maldet(26897): {update} checking for available updates... Jan 01 2025 06:56:24 webserver maldet(26897): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Jan 01 2025 06:56:24 webserver maldet(26897): {update} hashing install files and checking against server... Jan 01 2025 06:56:24 webserver maldet(26897): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Jan 01 2025 06:56:24 webserver maldet(26897): {update} latest version already installed. Jan 01 2025 06:56:24 webserver maldet(27033): {sigup} performing signature update check... Jan 01 2025 06:56:24 webserver maldet(27033): {sigup} local signature set is version 202412282106009 Jan 01 2025 06:56:24 webserver maldet(27033): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Jan 01 2025 06:56:24 webserver maldet(27033): {sigup} new signature set 202412312825989 available Jan 01 2025 06:56:24 webserver maldet(27033): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Jan 01 2025 06:56:24 webserver maldet(27033): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Jan 01 2025 06:56:25 webserver maldet(27033): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Jan 01 2025 06:56:25 webserver maldet(27033): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Jan 01 2025 06:56:25 webserver maldet(27033): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Jan 01 2025 06:56:25 webserver maldet(27033): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Jan 01 2025 06:56:25 webserver maldet(27033): {sigup} verified md5sum of maldet-sigpack.tgz Jan 01 2025 06:56:25 webserver maldet(27033): {sigup} unpacked and installed maldet-sigpack.tgz Jan 01 2025 06:56:25 webserver maldet(27033): {sigup} verified md5sum of maldet-clean.tgz Jan 01 2025 06:56:25 webserver maldet(27033): {sigup} unpacked and installed maldet-clean.tgz Jan 01 2025 06:56:25 webserver maldet(27033): {sigup} signature set update completed Jan 01 2025 06:56:25 webserver maldet(27033): {sigup} 17638 signatures (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Jan 01 2025 06:56:25 webserver maldet(27265): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Jan 01 2025 06:56:25 webserver maldet(27265): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Jan 01 2025 06:56:25 webserver maldet(27265): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Jan 01 2025 06:56:25 webserver maldet(27265): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Jan 01 2025 06:56:25 webserver maldet(27265): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Jan 01 2025 06:56:30 webserver maldet(27265): {scan} file list completed in 5s, found 11 files... Jan 01 2025 06:56:30 webserver maldet(27265): {scan} found clamav binary at /usr/bin/clamdscan, using clamav scanner engine... Jan 01 2025 06:56:30 webserver maldet(27265): {scan} scan of (11 files) in progress... Jan 01 2025 06:56:30 webserver maldet(27265): {scan} scan completed on : files 11, malware hits 0, cleaned hits 0, time 5s Jan 01 2025 06:56:30 webserver maldet(27265): {scan} scan report saved, to view run: maldet --report 250101-0656.27265 Jan 02 2025 06:56:56 webserver maldet(14042): {update} checking for available updates... Jan 02 2025 06:56:56 webserver maldet(14042): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Jan 02 2025 06:56:56 webserver maldet(14042): {update} hashing install files and checking against server... Jan 02 2025 06:56:56 webserver maldet(14042): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Jan 02 2025 06:56:56 webserver maldet(14042): {update} latest version already installed. Jan 02 2025 06:56:56 webserver maldet(14178): {sigup} performing signature update check... Jan 02 2025 06:56:56 webserver maldet(14178): {sigup} local signature set is version 202412312825989 Jan 02 2025 06:56:56 webserver maldet(14178): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Jan 02 2025 06:56:56 webserver maldet(14178): {sigup} latest signature set already installed Jan 02 2025 06:56:56 webserver maldet(14294): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Jan 02 2025 06:56:56 webserver maldet(14294): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Jan 02 2025 06:56:56 webserver maldet(14294): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Jan 02 2025 06:56:56 webserver maldet(14294): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Jan 02 2025 06:56:56 webserver maldet(14294): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Jan 02 2025 06:57:01 webserver maldet(14294): {scan} file list completed in 5s, found 9 files... Jan 02 2025 06:57:01 webserver maldet(14294): {scan} found clamav binary at /usr/bin/clamdscan, using clamav scanner engine... Jan 02 2025 06:57:01 webserver maldet(14294): {scan} scan of (9 files) in progress... Jan 02 2025 06:57:01 webserver maldet(14294): {scan} scan completed on : files 9, malware hits 0, cleaned hits 0, time 5s Jan 02 2025 06:57:01 webserver maldet(14294): {scan} scan report saved, to view run: maldet --report 250102-0656.14294 Jan 03 2025 07:07:35 webserver maldet(3617): {update} checking for available updates... Jan 03 2025 07:07:35 webserver maldet(3617): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Jan 03 2025 07:07:35 webserver maldet(3617): {update} hashing install files and checking against server... Jan 03 2025 07:07:35 webserver maldet(3617): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Jan 03 2025 07:07:35 webserver maldet(3617): {update} latest version already installed. Jan 03 2025 07:07:35 webserver maldet(3753): {sigup} performing signature update check... Jan 03 2025 07:07:35 webserver maldet(3753): {sigup} local signature set is version 202412312825989 Jan 03 2025 07:07:36 webserver maldet(3753): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Jan 03 2025 07:07:36 webserver maldet(3753): {sigup} latest signature set already installed Jan 03 2025 07:07:36 webserver maldet(3867): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Jan 03 2025 07:07:36 webserver maldet(3867): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Jan 03 2025 07:07:36 webserver maldet(3867): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Jan 03 2025 07:07:36 webserver maldet(3867): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Jan 03 2025 07:07:36 webserver maldet(3867): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Jan 03 2025 07:07:40 webserver maldet(3867): {scan} file list completed in 4s, found 10 files... Jan 03 2025 07:07:40 webserver maldet(3867): {scan} found clamav binary at /usr/bin/clamdscan, using clamav scanner engine... Jan 03 2025 07:07:40 webserver maldet(3867): {scan} scan of (10 files) in progress... Jan 03 2025 07:07:40 webserver maldet(3867): {scan} scan completed on : files 10, malware hits 0, cleaned hits 0, time 4s Jan 03 2025 07:07:40 webserver maldet(3867): {scan} scan report saved, to view run: maldet --report 250103-0707.3867 Jan 04 2025 06:57:10 webserver maldet(22811): {update} checking for available updates... Jan 04 2025 06:57:10 webserver maldet(22811): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Jan 04 2025 06:57:10 webserver maldet(22811): {update} hashing install files and checking against server... Jan 04 2025 06:57:10 webserver maldet(22811): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Jan 04 2025 06:57:10 webserver maldet(22811): {update} latest version already installed. Jan 04 2025 06:57:10 webserver maldet(22947): {sigup} performing signature update check... Jan 04 2025 06:57:10 webserver maldet(22947): {sigup} local signature set is version 202412312825989 Jan 04 2025 06:57:10 webserver maldet(22947): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Jan 04 2025 06:57:10 webserver maldet(22947): {sigup} latest signature set already installed Jan 04 2025 06:57:11 webserver maldet(23061): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Jan 04 2025 06:57:11 webserver maldet(23061): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Jan 04 2025 06:57:11 webserver maldet(23061): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Jan 04 2025 06:57:11 webserver maldet(23061): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Jan 04 2025 06:57:11 webserver maldet(23061): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Jan 04 2025 06:57:15 webserver maldet(23061): {scan} file list completed in 4s, found 11 files... Jan 04 2025 06:57:15 webserver maldet(23061): {scan} found clamav binary at /usr/bin/clamdscan, using clamav scanner engine... Jan 04 2025 06:57:15 webserver maldet(23061): {scan} scan of (11 files) in progress... Jan 04 2025 06:57:16 webserver maldet(23061): {scan} scan completed on : files 11, malware hits 0, cleaned hits 0, time 5s Jan 04 2025 06:57:16 webserver maldet(23061): {scan} scan report saved, to view run: maldet --report 250104-0657.23061 Jan 05 2025 07:03:39 webserver maldet(9801): {update} checking for available updates... Jan 05 2025 07:03:39 webserver maldet(9801): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Jan 05 2025 07:03:39 webserver maldet(9801): {update} hashing install files and checking against server... Jan 05 2025 07:03:39 webserver maldet(9801): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Jan 05 2025 07:03:39 webserver maldet(9801): {update} latest version already installed. Jan 05 2025 07:03:39 webserver maldet(9937): {sigup} performing signature update check... Jan 05 2025 07:03:39 webserver maldet(9937): {sigup} local signature set is version 202412312825989 Jan 05 2025 07:03:39 webserver maldet(9937): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Jan 05 2025 07:03:39 webserver maldet(9937): {sigup} new signature set 20250104545340 available Jan 05 2025 07:03:39 webserver maldet(9937): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Jan 05 2025 07:03:39 webserver maldet(9937): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Jan 05 2025 07:03:39 webserver maldet(9937): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Jan 05 2025 07:03:39 webserver maldet(9937): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Jan 05 2025 07:03:39 webserver maldet(9937): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Jan 05 2025 07:03:39 webserver maldet(9937): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Jan 05 2025 07:03:39 webserver maldet(9937): {sigup} verified md5sum of maldet-sigpack.tgz Jan 05 2025 07:03:39 webserver maldet(9937): {sigup} unpacked and installed maldet-sigpack.tgz Jan 05 2025 07:03:39 webserver maldet(9937): {sigup} verified md5sum of maldet-clean.tgz Jan 05 2025 07:03:39 webserver maldet(9937): {sigup} unpacked and installed maldet-clean.tgz Jan 05 2025 07:03:39 webserver maldet(9937): {sigup} signature set update completed Jan 05 2025 07:03:39 webserver maldet(9937): {sigup} 17638 signatures (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Jan 05 2025 07:03:39 webserver maldet(10168): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Jan 05 2025 07:03:40 webserver maldet(10168): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Jan 05 2025 07:03:40 webserver maldet(10168): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Jan 05 2025 07:03:40 webserver maldet(10168): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Jan 05 2025 07:03:40 webserver maldet(10168): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Jan 05 2025 07:03:44 webserver maldet(10168): {scan} file list completed in 4s, found 9 files... Jan 05 2025 07:03:44 webserver maldet(10168): {scan} found clamav binary at /usr/bin/clamdscan, using clamav scanner engine... Jan 05 2025 07:03:44 webserver maldet(10168): {scan} scan of (9 files) in progress... Jan 05 2025 07:03:44 webserver maldet(10168): {scan} scan completed on : files 9, malware hits 0, cleaned hits 0, time 5s Jan 05 2025 07:03:44 webserver maldet(10168): {scan} scan report saved, to view run: maldet --report 250105-0703.10168 Jan 06 2025 06:56:03 webserver maldet(29155): {update} checking for available updates... Jan 06 2025 06:56:03 webserver maldet(29155): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Jan 06 2025 06:56:03 webserver maldet(29155): {update} hashing install files and checking against server... Jan 06 2025 06:56:03 webserver maldet(29155): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Jan 06 2025 06:56:03 webserver maldet(29155): {update} latest version already installed. Jan 06 2025 06:56:03 webserver maldet(29291): {sigup} performing signature update check... Jan 06 2025 06:56:03 webserver maldet(29291): {sigup} local signature set is version 20250104545340 Jan 06 2025 06:56:03 webserver maldet(29291): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Jan 06 2025 06:56:03 webserver maldet(29291): {sigup} latest signature set already installed Jan 06 2025 06:56:03 webserver maldet(29405): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Jan 06 2025 06:56:03 webserver maldet(29405): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Jan 06 2025 06:56:03 webserver maldet(29405): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Jan 06 2025 06:56:03 webserver maldet(29405): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Jan 06 2025 06:56:03 webserver maldet(29405): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Jan 06 2025 06:56:08 webserver maldet(29405): {scan} file list completed in 5s, found 10 files... Jan 06 2025 06:56:08 webserver maldet(29405): {scan} found clamav binary at /usr/bin/clamdscan, using clamav scanner engine... Jan 06 2025 06:56:08 webserver maldet(29405): {scan} scan of (10 files) in progress... Jan 06 2025 06:56:08 webserver maldet(29405): {scan} scan completed on : files 10, malware hits 0, cleaned hits 0, time 5s Jan 06 2025 06:56:08 webserver maldet(29405): {scan} scan report saved, to view run: maldet --report 250106-0656.29405 Jan 07 2025 06:59:31 webserver maldet(15201): {update} checking for available updates... Jan 07 2025 06:59:31 webserver maldet(15201): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Jan 07 2025 06:59:31 webserver maldet(15201): {update} hashing install files and checking against server... Jan 07 2025 06:59:31 webserver maldet(15201): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Jan 07 2025 06:59:31 webserver maldet(15201): {update} latest version already installed. Jan 07 2025 06:59:31 webserver maldet(15337): {sigup} performing signature update check... Jan 07 2025 06:59:31 webserver maldet(15337): {sigup} local signature set is version 20250104545340 Jan 07 2025 06:59:31 webserver maldet(15337): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Jan 07 2025 06:59:31 webserver maldet(15337): {sigup} latest signature set already installed Jan 07 2025 06:59:31 webserver maldet(15451): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Jan 07 2025 06:59:31 webserver maldet(15451): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Jan 07 2025 06:59:31 webserver maldet(15451): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Jan 07 2025 06:59:31 webserver maldet(15451): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Jan 07 2025 06:59:31 webserver maldet(15451): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Jan 07 2025 06:59:36 webserver maldet(15451): {scan} file list completed in 5s, found 10 files... Jan 07 2025 06:59:36 webserver maldet(15451): {scan} found clamav binary at /usr/bin/clamdscan, using clamav scanner engine... Jan 07 2025 06:59:36 webserver maldet(15451): {scan} scan of (10 files) in progress... Jan 07 2025 06:59:36 webserver maldet(15451): {scan} scan completed on : files 10, malware hits 0, cleaned hits 0, time 5s Jan 07 2025 06:59:36 webserver maldet(15451): {scan} scan report saved, to view run: maldet --report 250107-0659.15451 Jan 08 2025 06:58:34 webserver maldet(28800): {update} checking for available updates... Jan 08 2025 06:58:34 webserver maldet(28800): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Jan 08 2025 06:58:34 webserver maldet(28800): {update} hashing install files and checking against server... Jan 08 2025 06:58:34 webserver maldet(28800): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Jan 08 2025 06:58:34 webserver maldet(28800): {update} latest version already installed. Jan 08 2025 06:58:34 webserver maldet(28936): {sigup} performing signature update check... Jan 08 2025 06:58:34 webserver maldet(28936): {sigup} local signature set is version 20250104545340 Jan 08 2025 06:58:34 webserver maldet(28936): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Jan 08 2025 06:58:34 webserver maldet(28936): {sigup} latest signature set already installed Jan 08 2025 06:58:34 webserver maldet(29050): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Jan 08 2025 06:58:34 webserver maldet(29050): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Jan 08 2025 06:58:34 webserver maldet(29050): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Jan 08 2025 06:58:34 webserver maldet(29050): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Jan 08 2025 06:58:34 webserver maldet(29050): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Jan 08 2025 06:58:39 webserver maldet(29050): {scan} file list completed in 5s, found 11 files... Jan 08 2025 06:58:39 webserver maldet(29050): {scan} found clamav binary at /usr/bin/clamdscan, using clamav scanner engine... Jan 08 2025 06:58:39 webserver maldet(29050): {scan} scan of (11 files) in progress... Jan 08 2025 06:58:39 webserver maldet(29050): {scan} scan completed on : files 11, malware hits 0, cleaned hits 0, time 5s Jan 08 2025 06:58:39 webserver maldet(29050): {scan} scan report saved, to view run: maldet --report 250108-0658.29050 Jan 09 2025 06:57:02 webserver maldet(12780): {update} checking for available updates... Jan 09 2025 06:57:02 webserver maldet(12780): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Jan 09 2025 06:57:02 webserver maldet(12780): {update} hashing install files and checking against server... Jan 09 2025 06:57:02 webserver maldet(12780): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Jan 09 2025 06:57:02 webserver maldet(12780): {update} latest version already installed. Jan 09 2025 06:57:02 webserver maldet(12916): {sigup} performing signature update check... Jan 09 2025 06:57:02 webserver maldet(12916): {sigup} local signature set is version 20250104545340 Jan 09 2025 06:57:02 webserver maldet(12916): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Jan 09 2025 06:57:02 webserver maldet(12916): {sigup} latest signature set already installed Jan 09 2025 06:57:02 webserver maldet(13030): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Jan 09 2025 06:57:03 webserver maldet(13030): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Jan 09 2025 06:57:03 webserver maldet(13030): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Jan 09 2025 06:57:03 webserver maldet(13030): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Jan 09 2025 06:57:03 webserver maldet(13030): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Jan 09 2025 06:57:07 webserver maldet(13030): {scan} file list completed in 4s, found 9 files... Jan 09 2025 06:57:07 webserver maldet(13030): {scan} found clamav binary at /usr/bin/clamdscan, using clamav scanner engine... Jan 09 2025 06:57:07 webserver maldet(13030): {scan} scan of (9 files) in progress... Jan 09 2025 06:57:07 webserver maldet(13030): {scan} scan completed on : files 9, malware hits 0, cleaned hits 0, time 5s Jan 09 2025 06:57:07 webserver maldet(13030): {scan} scan report saved, to view run: maldet --report 250109-0657.13030 Jan 10 2025 06:57:27 webserver maldet(29906): {update} checking for available updates... Jan 10 2025 06:57:27 webserver maldet(29906): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Jan 10 2025 06:57:27 webserver maldet(29906): {update} hashing install files and checking against server... Jan 10 2025 06:57:27 webserver maldet(29906): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Jan 10 2025 06:57:27 webserver maldet(29906): {update} latest version already installed. Jan 10 2025 06:57:27 webserver maldet(30042): {sigup} performing signature update check... Jan 10 2025 06:57:27 webserver maldet(30042): {sigup} local signature set is version 20250104545340 Jan 10 2025 06:57:27 webserver maldet(30042): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Jan 10 2025 06:57:27 webserver maldet(30042): {sigup} latest signature set already installed Jan 10 2025 06:57:28 webserver maldet(30156): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Jan 10 2025 06:57:28 webserver maldet(30156): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Jan 10 2025 06:57:28 webserver maldet(30156): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Jan 10 2025 06:57:28 webserver maldet(30156): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Jan 10 2025 06:57:28 webserver maldet(30156): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Jan 10 2025 06:57:32 webserver maldet(30156): {scan} file list completed in 4s, found 8 files... Jan 10 2025 06:57:32 webserver maldet(30156): {scan} found clamav binary at /usr/bin/clamdscan, using clamav scanner engine... Jan 10 2025 06:57:32 webserver maldet(30156): {scan} scan of (8 files) in progress... Jan 10 2025 06:57:32 webserver maldet(30156): {scan} scan completed on : files 8, malware hits 0, cleaned hits 0, time 4s Jan 10 2025 06:57:32 webserver maldet(30156): {scan} scan report saved, to view run: maldet --report 250110-0657.30156 Jan 11 2025 06:58:43 webserver maldet(26947): {update} checking for available updates... Jan 11 2025 06:58:43 webserver maldet(26947): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Jan 11 2025 06:58:43 webserver maldet(26947): {update} hashing install files and checking against server... Jan 11 2025 06:58:43 webserver maldet(26947): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Jan 11 2025 06:58:43 webserver maldet(26947): {update} latest version already installed. Jan 11 2025 06:58:43 webserver maldet(27083): {sigup} performing signature update check... Jan 11 2025 06:58:43 webserver maldet(27083): {sigup} local signature set is version 20250104545340 Jan 11 2025 06:58:43 webserver maldet(27083): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Jan 11 2025 06:58:43 webserver maldet(27083): {sigup} latest signature set already installed Jan 11 2025 06:58:43 webserver maldet(27197): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Jan 11 2025 06:58:43 webserver maldet(27197): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Jan 11 2025 06:58:43 webserver maldet(27197): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Jan 11 2025 06:58:43 webserver maldet(27197): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Jan 11 2025 06:58:43 webserver maldet(27197): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Jan 11 2025 06:58:48 webserver maldet(27197): {scan} file list completed in 5s, found 10 files... Jan 11 2025 06:58:48 webserver maldet(27197): {scan} found clamav binary at /usr/bin/clamdscan, using clamav scanner engine... Jan 11 2025 06:58:48 webserver maldet(27197): {scan} scan of (10 files) in progress... Jan 11 2025 06:58:48 webserver maldet(27197): {scan} scan completed on : files 10, malware hits 0, cleaned hits 0, time 5s Jan 11 2025 06:58:48 webserver maldet(27197): {scan} scan report saved, to view run: maldet --report 250111-0658.27197 Jan 12 2025 06:58:29 webserver maldet(11798): {update} checking for available updates... Jan 12 2025 06:58:29 webserver maldet(11798): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Jan 12 2025 06:58:29 webserver maldet(11798): {update} hashing install files and checking against server... Jan 12 2025 06:58:29 webserver maldet(11798): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Jan 12 2025 06:58:29 webserver maldet(11798): {update} latest version already installed. Jan 12 2025 06:58:29 webserver maldet(11934): {sigup} performing signature update check... Jan 12 2025 06:58:29 webserver maldet(11934): {sigup} local signature set is version 20250104545340 Jan 12 2025 06:58:29 webserver maldet(11934): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Jan 12 2025 06:58:29 webserver maldet(11934): {sigup} latest signature set already installed Jan 12 2025 06:58:30 webserver maldet(12048): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Jan 12 2025 06:58:30 webserver maldet(12048): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Jan 12 2025 06:58:30 webserver maldet(12048): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Jan 12 2025 06:58:30 webserver maldet(12048): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Jan 12 2025 06:58:30 webserver maldet(12048): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Jan 12 2025 06:58:34 webserver maldet(12048): {scan} file list completed in 4s, found 11 files... Jan 12 2025 06:58:34 webserver maldet(12048): {scan} found clamav binary at /usr/bin/clamdscan, using clamav scanner engine... Jan 12 2025 06:58:34 webserver maldet(12048): {scan} scan of (11 files) in progress... Jan 12 2025 06:58:35 webserver maldet(12048): {scan} scan completed on : files 11, malware hits 0, cleaned hits 0, time 5s Jan 12 2025 06:58:35 webserver maldet(12048): {scan} scan report saved, to view run: maldet --report 250112-0658.12048 Jan 13 2025 06:59:27 webserver maldet(18190): {update} checking for available updates... Jan 13 2025 06:59:27 webserver maldet(18190): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Jan 13 2025 06:59:27 webserver maldet(18190): {update} hashing install files and checking against server... Jan 13 2025 06:59:27 webserver maldet(18190): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Jan 13 2025 06:59:27 webserver maldet(18190): {update} latest version already installed. Jan 13 2025 06:59:27 webserver maldet(18326): {sigup} performing signature update check... Jan 13 2025 06:59:27 webserver maldet(18326): {sigup} local signature set is version 20250104545340 Jan 13 2025 06:59:27 webserver maldet(18326): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Jan 13 2025 06:59:27 webserver maldet(18326): {sigup} latest signature set already installed Jan 13 2025 06:59:27 webserver maldet(18440): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Jan 13 2025 06:59:27 webserver maldet(18440): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Jan 13 2025 06:59:27 webserver maldet(18440): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Jan 13 2025 06:59:27 webserver maldet(18440): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Jan 13 2025 06:59:27 webserver maldet(18440): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Jan 13 2025 06:59:32 webserver maldet(18440): {scan} file list completed in 5s, found 10 files... Jan 13 2025 06:59:32 webserver maldet(18440): {scan} found clamav binary at /usr/bin/clamdscan, using clamav scanner engine... Jan 13 2025 06:59:32 webserver maldet(18440): {scan} scan of (10 files) in progress... Jan 13 2025 06:59:32 webserver maldet(18440): {scan} scan completed on : files 10, malware hits 0, cleaned hits 0, time 5s Jan 13 2025 06:59:32 webserver maldet(18440): {scan} scan report saved, to view run: maldet --report 250113-0659.18440 Jan 14 2025 06:56:35 webserver maldet(22738): {update} checking for available updates... Jan 14 2025 06:56:35 webserver maldet(22738): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Jan 14 2025 06:56:35 webserver maldet(22738): {update} hashing install files and checking against server... Jan 14 2025 06:56:35 webserver maldet(22738): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Jan 14 2025 06:56:35 webserver maldet(22738): {update} latest version already installed. Jan 14 2025 06:56:35 webserver maldet(22874): {sigup} performing signature update check... Jan 14 2025 06:56:35 webserver maldet(22874): {sigup} local signature set is version 20250104545340 Jan 14 2025 06:56:35 webserver maldet(22874): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Jan 14 2025 06:56:35 webserver maldet(22874): {sigup} new signature set 20250113611953 available Jan 14 2025 06:56:35 webserver maldet(22874): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Jan 14 2025 06:56:35 webserver maldet(22874): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Jan 14 2025 06:56:35 webserver maldet(22874): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Jan 14 2025 06:56:35 webserver maldet(22874): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Jan 14 2025 06:56:35 webserver maldet(22874): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Jan 14 2025 06:56:35 webserver maldet(22874): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Jan 14 2025 06:56:35 webserver maldet(22874): {sigup} verified md5sum of maldet-sigpack.tgz Jan 14 2025 06:56:35 webserver maldet(22874): {sigup} unpacked and installed maldet-sigpack.tgz Jan 14 2025 06:56:35 webserver maldet(22874): {sigup} verified md5sum of maldet-clean.tgz Jan 14 2025 06:56:35 webserver maldet(22874): {sigup} unpacked and installed maldet-clean.tgz Jan 14 2025 06:56:35 webserver maldet(22874): {sigup} signature set update completed Jan 14 2025 06:56:35 webserver maldet(22874): {sigup} 17638 signatures (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Jan 14 2025 06:56:35 webserver maldet(23105): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Jan 14 2025 06:56:35 webserver maldet(23105): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Jan 14 2025 06:56:35 webserver maldet(23105): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Jan 14 2025 06:56:35 webserver maldet(23105): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Jan 14 2025 06:56:35 webserver maldet(23105): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Jan 14 2025 06:56:40 webserver maldet(23105): {scan} file list completed in 5s, found 10 files... Jan 14 2025 06:56:40 webserver maldet(23105): {scan} found clamav binary at /usr/bin/clamdscan, using clamav scanner engine... Jan 14 2025 06:56:40 webserver maldet(23105): {scan} scan of (10 files) in progress... Jan 14 2025 06:56:40 webserver maldet(23105): {scan} scan completed on : files 10, malware hits 0, cleaned hits 0, time 5s Jan 14 2025 06:56:40 webserver maldet(23105): {scan} scan report saved, to view run: maldet --report 250114-0656.23105 Jan 15 2025 06:57:32 webserver maldet(4421): {update} checking for available updates... Jan 15 2025 06:57:32 webserver maldet(4421): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Jan 15 2025 06:57:32 webserver maldet(4421): {update} hashing install files and checking against server... Jan 15 2025 06:57:32 webserver maldet(4421): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Jan 15 2025 06:57:32 webserver maldet(4421): {update} latest version already installed. Jan 15 2025 06:57:32 webserver maldet(4557): {sigup} performing signature update check... Jan 15 2025 06:57:32 webserver maldet(4557): {sigup} local signature set is version 20250113611953 Jan 15 2025 06:57:32 webserver maldet(4557): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Jan 15 2025 06:57:32 webserver maldet(4557): {sigup} latest signature set already installed Jan 15 2025 06:57:32 webserver maldet(4671): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Jan 15 2025 06:57:32 webserver maldet(4671): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Jan 15 2025 06:57:32 webserver maldet(4671): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Jan 15 2025 06:57:32 webserver maldet(4671): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Jan 15 2025 06:57:32 webserver maldet(4671): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Jan 15 2025 06:57:37 webserver maldet(4671): {scan} file list completed in 5s, found 10 files... Jan 15 2025 06:57:37 webserver maldet(4671): {scan} found clamav binary at /usr/bin/clamdscan, using clamav scanner engine... Jan 15 2025 06:57:37 webserver maldet(4671): {scan} scan of (10 files) in progress... Jan 15 2025 06:57:37 webserver maldet(4671): {scan} scan completed on : files 10, malware hits 0, cleaned hits 0, time 5s Jan 15 2025 06:57:37 webserver maldet(4671): {scan} scan report saved, to view run: maldet --report 250115-0657.4671 Jan 16 2025 06:55:51 webserver maldet(23925): {update} checking for available updates... Jan 16 2025 06:55:51 webserver maldet(23925): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Jan 16 2025 06:55:51 webserver maldet(23925): {update} hashing install files and checking against server... Jan 16 2025 06:55:51 webserver maldet(23925): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Jan 16 2025 06:55:51 webserver maldet(23925): {update} latest version already installed. Jan 16 2025 06:55:51 webserver maldet(24061): {sigup} performing signature update check... Jan 16 2025 06:55:51 webserver maldet(24061): {sigup} local signature set is version 20250113611953 Jan 16 2025 06:55:51 webserver maldet(24061): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Jan 16 2025 06:55:51 webserver maldet(24061): {sigup} latest signature set already installed Jan 16 2025 06:55:51 webserver maldet(24175): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Jan 16 2025 06:55:51 webserver maldet(24175): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Jan 16 2025 06:55:51 webserver maldet(24175): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Jan 16 2025 06:55:51 webserver maldet(24175): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Jan 16 2025 06:55:52 webserver maldet(24175): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Jan 16 2025 06:55:56 webserver maldet(24175): {scan} file list completed in 5s, found 11 files... Jan 16 2025 06:55:56 webserver maldet(24175): {scan} found clamav binary at /usr/bin/clamdscan, using clamav scanner engine... Jan 16 2025 06:55:56 webserver maldet(24175): {scan} scan of (11 files) in progress... Jan 16 2025 06:55:56 webserver maldet(24175): {scan} scan completed on : files 11, malware hits 0, cleaned hits 0, time 5s Jan 16 2025 06:55:56 webserver maldet(24175): {scan} scan report saved, to view run: maldet --report 250116-0655.24175 Jan 17 2025 06:56:52 webserver maldet(21445): {update} checking for available updates... Jan 17 2025 06:56:52 webserver maldet(21445): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Jan 17 2025 06:56:52 webserver maldet(21445): {update} hashing install files and checking against server... Jan 17 2025 06:56:52 webserver maldet(21445): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Jan 17 2025 06:56:52 webserver maldet(21445): {update} latest version already installed. Jan 17 2025 06:56:53 webserver maldet(21581): {sigup} performing signature update check... Jan 17 2025 06:56:53 webserver maldet(21581): {sigup} local signature set is version 20250113611953 Jan 17 2025 06:56:53 webserver maldet(21581): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Jan 17 2025 06:56:53 webserver maldet(21581): {sigup} new signature set 202501161368332 available Jan 17 2025 06:56:53 webserver maldet(21581): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Jan 17 2025 06:56:53 webserver maldet(21581): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Jan 17 2025 06:56:53 webserver maldet(21581): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Jan 17 2025 06:56:53 webserver maldet(21581): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Jan 17 2025 06:56:53 webserver maldet(21581): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Jan 17 2025 06:56:53 webserver maldet(21581): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Jan 17 2025 06:56:53 webserver maldet(21581): {sigup} verified md5sum of maldet-sigpack.tgz Jan 17 2025 06:56:53 webserver maldet(21581): {sigup} unpacked and installed maldet-sigpack.tgz Jan 17 2025 06:56:53 webserver maldet(21581): {sigup} verified md5sum of maldet-clean.tgz Jan 17 2025 06:56:53 webserver maldet(21581): {sigup} unpacked and installed maldet-clean.tgz Jan 17 2025 06:56:53 webserver maldet(21581): {sigup} signature set update completed Jan 17 2025 06:56:53 webserver maldet(21581): {sigup} 17638 signatures (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Jan 17 2025 06:56:53 webserver maldet(21812): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Jan 17 2025 06:56:53 webserver maldet(21812): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Jan 17 2025 06:56:53 webserver maldet(21812): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Jan 17 2025 06:56:53 webserver maldet(21812): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Jan 17 2025 06:56:53 webserver maldet(21812): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Jan 17 2025 06:56:58 webserver maldet(21812): {scan} file list completed in 5s, found 28 files... Jan 17 2025 06:56:58 webserver maldet(21812): {scan} found clamav binary at /usr/bin/clamdscan, using clamav scanner engine... Jan 17 2025 06:56:58 webserver maldet(21812): {scan} scan of (28 files) in progress... Jan 17 2025 06:57:00 webserver maldet(21812): {scan} scan completed on : files 28, malware hits 0, cleaned hits 0, time 7s Jan 17 2025 06:57:00 webserver maldet(21812): {scan} scan report saved, to view run: maldet --report 250117-0656.21812 Jan 18 2025 06:56:28 webserver maldet(2085): {update} checking for available updates... Jan 18 2025 06:56:29 webserver maldet(2085): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Jan 18 2025 06:56:29 webserver maldet(2085): {update} hashing install files and checking against server... Jan 18 2025 06:56:29 webserver maldet(2085): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Jan 18 2025 06:56:29 webserver maldet(2085): {update} latest version already installed. Jan 18 2025 06:56:29 webserver maldet(2221): {sigup} performing signature update check... Jan 18 2025 06:56:29 webserver maldet(2221): {sigup} local signature set is version 202501161368332 Jan 18 2025 06:56:29 webserver maldet(2221): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Jan 18 2025 06:56:29 webserver maldet(2221): {sigup} latest signature set already installed Jan 18 2025 06:56:29 webserver maldet(2335): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Jan 18 2025 06:56:29 webserver maldet(2335): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Jan 18 2025 06:56:29 webserver maldet(2335): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Jan 18 2025 06:56:29 webserver maldet(2335): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Jan 18 2025 06:56:29 webserver maldet(2335): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Jan 18 2025 06:56:34 webserver maldet(2335): {scan} file list completed in 5s, found 31 files... Jan 18 2025 06:56:34 webserver maldet(2335): {scan} found clamav binary at /usr/bin/clamdscan, using clamav scanner engine... Jan 18 2025 06:56:34 webserver maldet(2335): {scan} scan of (31 files) in progress... Jan 18 2025 06:56:35 webserver maldet(2335): {scan} scan completed on : files 31, malware hits 0, cleaned hits 0, time 6s Jan 18 2025 06:56:35 webserver maldet(2335): {scan} scan report saved, to view run: maldet --report 250118-0656.2335 Jan 19 2025 07:04:13 webserver maldet(23848): {update} checking for available updates... Jan 19 2025 07:04:13 webserver maldet(23848): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Jan 19 2025 07:04:13 webserver maldet(23848): {update} hashing install files and checking against server... Jan 19 2025 07:04:13 webserver maldet(23848): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Jan 19 2025 07:04:13 webserver maldet(23848): {update} latest version already installed. Jan 19 2025 07:04:13 webserver maldet(23984): {sigup} performing signature update check... Jan 19 2025 07:04:13 webserver maldet(23984): {sigup} local signature set is version 202501161368332 Jan 19 2025 07:04:13 webserver maldet(23984): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Jan 19 2025 07:04:13 webserver maldet(23984): {sigup} latest signature set already installed Jan 19 2025 07:04:13 webserver maldet(24098): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Jan 19 2025 07:04:13 webserver maldet(24098): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Jan 19 2025 07:04:13 webserver maldet(24098): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Jan 19 2025 07:04:13 webserver maldet(24098): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Jan 19 2025 07:04:13 webserver maldet(24098): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Jan 19 2025 07:04:18 webserver maldet(24098): {scan} file list completed in 5s, found 20 files... Jan 19 2025 07:04:18 webserver maldet(24098): {scan} found clamav binary at /usr/bin/clamdscan, using clamav scanner engine... Jan 19 2025 07:04:18 webserver maldet(24098): {scan} scan of (20 files) in progress... Jan 19 2025 07:04:20 webserver maldet(24098): {scan} clamscan returned an error, check /usr/local/maldetect/logs/clamscan_log for details! Jan 19 2025 07:04:20 webserver maldet(24098): {scan} scan completed on : files 20, malware hits 0, cleaned hits 0, time 7s Jan 19 2025 07:04:20 webserver maldet(24098): {scan} scan report saved, to view run: maldet --report 250119-0704.24098 Jan 20 2025 06:57:54 webserver maldet(18386): {update} checking for available updates... Jan 20 2025 06:57:54 webserver maldet(18386): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Jan 20 2025 06:57:54 webserver maldet(18386): {update} hashing install files and checking against server... Jan 20 2025 06:57:54 webserver maldet(18386): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Jan 20 2025 06:57:54 webserver maldet(18386): {update} latest version already installed. Jan 20 2025 06:57:54 webserver maldet(18522): {sigup} performing signature update check... Jan 20 2025 06:57:54 webserver maldet(18522): {sigup} local signature set is version 202501161368332 Jan 20 2025 06:57:54 webserver maldet(18522): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Jan 20 2025 06:57:54 webserver maldet(18522): {sigup} new signature set 202501192124524 available Jan 20 2025 06:57:54 webserver maldet(18522): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Jan 20 2025 06:57:54 webserver maldet(18522): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Jan 20 2025 06:57:54 webserver maldet(18522): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Jan 20 2025 06:57:54 webserver maldet(18522): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Jan 20 2025 06:57:55 webserver maldet(18522): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Jan 20 2025 06:57:55 webserver maldet(18522): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Jan 20 2025 06:57:55 webserver maldet(18522): {sigup} verified md5sum of maldet-sigpack.tgz Jan 20 2025 06:57:55 webserver maldet(18522): {sigup} unpacked and installed maldet-sigpack.tgz Jan 20 2025 06:57:55 webserver maldet(18522): {sigup} verified md5sum of maldet-clean.tgz Jan 20 2025 06:57:55 webserver maldet(18522): {sigup} unpacked and installed maldet-clean.tgz Jan 20 2025 06:57:55 webserver maldet(18522): {sigup} signature set update completed Jan 20 2025 06:57:55 webserver maldet(18522): {sigup} 17638 signatures (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Jan 20 2025 06:57:55 webserver maldet(18753): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Jan 20 2025 06:57:55 webserver maldet(18753): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Jan 20 2025 06:57:55 webserver maldet(18753): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Jan 20 2025 06:57:55 webserver maldet(18753): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Jan 20 2025 06:57:55 webserver maldet(18753): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Jan 20 2025 06:58:00 webserver maldet(18753): {scan} file list completed in 5s, found 38 files... Jan 20 2025 06:58:00 webserver maldet(18753): {scan} found clamav binary at /usr/bin/clamdscan, using clamav scanner engine... Jan 20 2025 06:58:00 webserver maldet(18753): {scan} scan of (38 files) in progress... Jan 20 2025 06:58:00 webserver maldet(18753): {scan} scan completed on : files 38, malware hits 0, cleaned hits 0, time 5s Jan 20 2025 06:58:00 webserver maldet(18753): {scan} scan report saved, to view run: maldet --report 250120-0657.18753 Jan 21 2025 06:56:47 webserver maldet(3824): {update} checking for available updates... Jan 21 2025 06:56:47 webserver maldet(3824): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Jan 21 2025 06:56:47 webserver maldet(3824): {update} hashing install files and checking against server... Jan 21 2025 06:56:47 webserver maldet(3824): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Jan 21 2025 06:56:47 webserver maldet(3824): {update} latest version already installed. Jan 21 2025 06:56:47 webserver maldet(3960): {sigup} performing signature update check... Jan 21 2025 06:56:47 webserver maldet(3960): {sigup} local signature set is version 202501192124524 Jan 21 2025 06:56:47 webserver maldet(3960): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Jan 21 2025 06:56:47 webserver maldet(3960): {sigup} latest signature set already installed Jan 21 2025 06:56:47 webserver maldet(4074): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Jan 21 2025 06:56:47 webserver maldet(4074): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Jan 21 2025 06:56:47 webserver maldet(4074): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Jan 21 2025 06:56:47 webserver maldet(4074): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Jan 21 2025 06:56:47 webserver maldet(4074): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Jan 21 2025 06:56:52 webserver maldet(4074): {scan} file list completed in 5s, found 90 files... Jan 21 2025 06:56:52 webserver maldet(4074): {scan} found clamav binary at /usr/bin/clamdscan, using clamav scanner engine... Jan 21 2025 06:56:52 webserver maldet(4074): {scan} scan of (90 files) in progress... Jan 21 2025 06:56:54 webserver maldet(4074): {scan} clamscan returned an error, check /usr/local/maldetect/logs/clamscan_log for details! Jan 21 2025 06:56:54 webserver maldet(4074): {scan} scan completed on : files 90, malware hits 0, cleaned hits 0, time 7s Jan 21 2025 06:56:54 webserver maldet(4074): {scan} scan report saved, to view run: maldet --report 250121-0656.4074 Jan 22 2025 06:57:49 webserver maldet(13253): {update} checking for available updates... Jan 22 2025 06:57:49 webserver maldet(13253): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Jan 22 2025 06:57:49 webserver maldet(13253): {update} hashing install files and checking against server... Jan 22 2025 06:57:49 webserver maldet(13253): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Jan 22 2025 06:57:49 webserver maldet(13253): {update} latest version already installed. Jan 22 2025 06:57:49 webserver maldet(13389): {sigup} performing signature update check... Jan 22 2025 06:57:49 webserver maldet(13389): {sigup} local signature set is version 202501192124524 Jan 22 2025 06:57:49 webserver maldet(13389): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Jan 22 2025 06:57:49 webserver maldet(13389): {sigup} latest signature set already installed Jan 22 2025 06:57:49 webserver maldet(13503): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Jan 22 2025 06:57:49 webserver maldet(13503): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Jan 22 2025 06:57:49 webserver maldet(13503): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Jan 22 2025 06:57:49 webserver maldet(13503): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Jan 22 2025 06:57:49 webserver maldet(13503): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Jan 22 2025 06:57:54 webserver maldet(13503): {scan} file list completed in 5s, found 7020 files... Jan 22 2025 06:57:54 webserver maldet(13503): {scan} found clamav binary at /usr/bin/clamdscan, using clamav scanner engine... Jan 22 2025 06:57:54 webserver maldet(13503): {scan} scan of (7020 files) in progress... Jan 22 2025 07:01:08 webserver maldet(13503): {hit} malware hit {YARA}r57shell_php_php found for /var/www/ooareogundevinitiative/9tpdh5fs/index/c99-jpg-shell.php Jan 22 2025 07:01:08 webserver maldet(13503): {quar} malware quarantined from '/var/www/ooareogundevinitiative/9tpdh5fs/index/c99-jpg-shell.php' to '/usr/local/maldetect/quarantine/c99-jpg-shell.php.2854422387' Jan 22 2025 07:01:08 webserver maldet(13503): {clean} could not find clean rule for hit r57shell_php_php or file /usr/local/maldetect/quarantine/c99-jpg-shell.php.2854422387 no longer exists. Jan 22 2025 07:01:08 webserver maldet(13503): {scan} scan completed on : files 7020, malware hits 1, cleaned hits 0, time 199s Jan 22 2025 07:01:08 webserver maldet(13503): {scan} scan report saved, to view run: maldet --report 250122-0657.13503 Jan 22 2025 07:01:08 webserver maldet(13503): {alert} sent scan report to banjiadewoye@gmail.com Jan 23 2025 06:57:01 webserver maldet(26038): {update} checking for available updates... Jan 23 2025 06:57:01 webserver maldet(26038): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Jan 23 2025 06:57:01 webserver maldet(26038): {update} hashing install files and checking against server... Jan 23 2025 06:57:01 webserver maldet(26038): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Jan 23 2025 06:57:01 webserver maldet(26038): {update} latest version already installed. Jan 23 2025 06:57:01 webserver maldet(26174): {sigup} performing signature update check... Jan 23 2025 06:57:01 webserver maldet(26174): {sigup} local signature set is version 202501192124524 Jan 23 2025 06:57:01 webserver maldet(26174): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Jan 23 2025 06:57:01 webserver maldet(26174): {sigup} new signature set 202501222816618 available Jan 23 2025 06:57:01 webserver maldet(26174): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Jan 23 2025 06:57:01 webserver maldet(26174): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Jan 23 2025 06:57:01 webserver maldet(26174): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Jan 23 2025 06:57:01 webserver maldet(26174): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Jan 23 2025 06:57:01 webserver maldet(26174): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Jan 23 2025 06:57:02 webserver maldet(26174): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Jan 23 2025 06:57:02 webserver maldet(26174): {sigup} verified md5sum of maldet-sigpack.tgz Jan 23 2025 06:57:02 webserver maldet(26174): {sigup} unpacked and installed maldet-sigpack.tgz Jan 23 2025 06:57:02 webserver maldet(26174): {sigup} verified md5sum of maldet-clean.tgz Jan 23 2025 06:57:02 webserver maldet(26174): {sigup} unpacked and installed maldet-clean.tgz Jan 23 2025 06:57:02 webserver maldet(26174): {sigup} signature set update completed Jan 23 2025 06:57:02 webserver maldet(26174): {sigup} 17638 signatures (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Jan 23 2025 06:57:02 webserver maldet(26405): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Jan 23 2025 06:57:02 webserver maldet(26405): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Jan 23 2025 06:57:02 webserver maldet(26405): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Jan 23 2025 06:57:02 webserver maldet(26405): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Jan 23 2025 06:57:02 webserver maldet(26405): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Jan 23 2025 06:57:07 webserver maldet(26405): {scan} file list completed in 5s, found 2039 files... Jan 23 2025 06:57:07 webserver maldet(26405): {scan} found clamav binary at /usr/bin/clamdscan, using clamav scanner engine... Jan 23 2025 06:57:07 webserver maldet(26405): {scan} scan of (2039 files) in progress... Jan 23 2025 06:58:05 webserver maldet(26405): {hit} malware hit {YARA}r57shell_php_php found for /var/www/ooareogundevinitiative/9tpdh5fs/index/c99-jpg-shell.php Jan 23 2025 06:58:05 webserver maldet(26405): {quar} malware quarantined from '/var/www/ooareogundevinitiative/9tpdh5fs/index/c99-jpg-shell.php' to '/usr/local/maldetect/quarantine/c99-jpg-shell.php.1870130968' Jan 23 2025 06:58:05 webserver maldet(26405): {clean} could not find clean rule for hit r57shell_php_php or file /usr/local/maldetect/quarantine/c99-jpg-shell.php.1870130968 no longer exists. Jan 23 2025 06:58:05 webserver maldet(26405): {scan} scan completed on : files 2039, malware hits 1, cleaned hits 0, time 63s Jan 23 2025 06:58:05 webserver maldet(26405): {scan} scan report saved, to view run: maldet --report 250123-0657.26405 Jan 23 2025 06:58:05 webserver maldet(26405): {alert} sent scan report to banjiadewoye@gmail.com Jan 24 2025 06:56:52 webserver maldet(9515): {update} checking for available updates... Jan 24 2025 06:56:52 webserver maldet(9515): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Jan 24 2025 06:56:52 webserver maldet(9515): {update} hashing install files and checking against server... Jan 24 2025 06:56:52 webserver maldet(9515): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Jan 24 2025 06:56:52 webserver maldet(9515): {update} latest version already installed. Jan 24 2025 06:56:52 webserver maldet(9651): {sigup} performing signature update check... Jan 24 2025 06:56:52 webserver maldet(9651): {sigup} local signature set is version 202501222816618 Jan 24 2025 06:56:52 webserver maldet(9651): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Jan 24 2025 06:56:52 webserver maldet(9651): {sigup} latest signature set already installed Jan 24 2025 06:56:52 webserver maldet(9765): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Jan 24 2025 06:56:52 webserver maldet(9765): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Jan 24 2025 06:56:52 webserver maldet(9765): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Jan 24 2025 06:56:52 webserver maldet(9765): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Jan 24 2025 06:56:52 webserver maldet(9765): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Jan 24 2025 06:57:00 webserver maldet(9765): {scan} file list completed in 8s, found 38 files... Jan 24 2025 06:57:00 webserver maldet(9765): {scan} found clamav binary at /usr/bin/clamdscan, using clamav scanner engine... Jan 24 2025 06:57:00 webserver maldet(9765): {scan} scan of (38 files) in progress... Jan 24 2025 06:57:00 webserver maldet(9765): {scan} scan completed on : files 38, malware hits 0, cleaned hits 0, time 8s Jan 24 2025 06:57:00 webserver maldet(9765): {scan} scan report saved, to view run: maldet --report 250124-0656.9765 Jan 25 2025 06:56:54 webserver maldet(23552): {update} checking for available updates... Jan 25 2025 06:56:54 webserver maldet(23552): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Jan 25 2025 06:56:54 webserver maldet(23552): {update} hashing install files and checking against server... Jan 25 2025 06:56:54 webserver maldet(23552): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Jan 25 2025 06:56:54 webserver maldet(23552): {update} latest version already installed. Jan 25 2025 06:56:54 webserver maldet(23688): {sigup} performing signature update check... Jan 25 2025 06:56:54 webserver maldet(23688): {sigup} local signature set is version 202501222816618 Jan 25 2025 06:56:54 webserver maldet(23688): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Jan 25 2025 06:56:54 webserver maldet(23688): {sigup} latest signature set already installed Jan 25 2025 06:56:54 webserver maldet(23802): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Jan 25 2025 06:56:54 webserver maldet(23802): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Jan 25 2025 06:56:54 webserver maldet(23802): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Jan 25 2025 06:56:54 webserver maldet(23802): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Jan 25 2025 06:56:54 webserver maldet(23802): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Jan 25 2025 06:56:59 webserver maldet(23802): {scan} file list completed in 5s, found 52 files... Jan 25 2025 06:56:59 webserver maldet(23802): {scan} found clamav binary at /usr/bin/clamdscan, using clamav scanner engine... Jan 25 2025 06:56:59 webserver maldet(23802): {scan} scan of (52 files) in progress... Jan 25 2025 06:57:01 webserver maldet(23802): {scan} scan completed on : files 52, malware hits 0, cleaned hits 0, time 7s Jan 25 2025 06:57:01 webserver maldet(23802): {scan} scan report saved, to view run: maldet --report 250125-0656.23802 Jan 26 2025 06:56:23 webserver maldet(6704): {update} checking for available updates... Jan 26 2025 06:56:23 webserver maldet(6704): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Jan 26 2025 06:56:23 webserver maldet(6704): {update} hashing install files and checking against server... Jan 26 2025 06:56:23 webserver maldet(6704): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Jan 26 2025 06:56:23 webserver maldet(6704): {update} latest version already installed. Jan 26 2025 06:56:23 webserver maldet(6840): {sigup} performing signature update check... Jan 26 2025 06:56:23 webserver maldet(6840): {sigup} local signature set is version 202501222816618 Jan 26 2025 06:56:23 webserver maldet(6840): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Jan 26 2025 06:56:23 webserver maldet(6840): {sigup} new signature set 202501253509456 available Jan 26 2025 06:56:23 webserver maldet(6840): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Jan 26 2025 06:56:23 webserver maldet(6840): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Jan 26 2025 06:56:23 webserver maldet(6840): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Jan 26 2025 06:56:23 webserver maldet(6840): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Jan 26 2025 06:56:23 webserver maldet(6840): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Jan 26 2025 06:56:23 webserver maldet(6840): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Jan 26 2025 06:56:23 webserver maldet(6840): {sigup} verified md5sum of maldet-sigpack.tgz Jan 26 2025 06:56:23 webserver maldet(6840): {sigup} unpacked and installed maldet-sigpack.tgz Jan 26 2025 06:56:23 webserver maldet(6840): {sigup} verified md5sum of maldet-clean.tgz Jan 26 2025 06:56:23 webserver maldet(6840): {sigup} unpacked and installed maldet-clean.tgz Jan 26 2025 06:56:23 webserver maldet(6840): {sigup} signature set update completed Jan 26 2025 06:56:23 webserver maldet(6840): {sigup} 17638 signatures (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Jan 26 2025 06:56:23 webserver maldet(7072): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Jan 26 2025 06:56:24 webserver maldet(7072): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Jan 26 2025 06:56:24 webserver maldet(7072): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Jan 26 2025 06:56:24 webserver maldet(7072): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Jan 26 2025 06:56:24 webserver maldet(7072): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Jan 26 2025 06:56:28 webserver maldet(7072): {scan} file list completed in 4s, found 27 files... Jan 26 2025 06:56:28 webserver maldet(7072): {scan} found clamav binary at /usr/bin/clamdscan, using clamav scanner engine... Jan 26 2025 06:56:28 webserver maldet(7072): {scan} scan of (27 files) in progress... Jan 26 2025 06:56:29 webserver maldet(7072): {hit} malware hit {YARA}r57shell_php_php found for /var/www/ooareogundevinitiative/9tpdh5fs/index/c99-jpg-shell.php Jan 26 2025 06:56:29 webserver maldet(7072): {quar} malware quarantined from '/var/www/ooareogundevinitiative/9tpdh5fs/index/c99-jpg-shell.php' to '/usr/local/maldetect/quarantine/c99-jpg-shell.php.2445223601' Jan 26 2025 06:56:29 webserver maldet(7072): {clean} could not find clean rule for hit r57shell_php_php or file /usr/local/maldetect/quarantine/c99-jpg-shell.php.2445223601 no longer exists. Jan 26 2025 06:56:29 webserver maldet(7072): {scan} scan completed on : files 27, malware hits 1, cleaned hits 0, time 6s Jan 26 2025 06:56:29 webserver maldet(7072): {scan} scan report saved, to view run: maldet --report 250126-0656.7072 Jan 26 2025 06:56:29 webserver maldet(7072): {alert} sent scan report to banjiadewoye@gmail.com Jan 27 2025 06:58:59 webserver maldet(22673): {update} checking for available updates... Jan 27 2025 06:58:59 webserver maldet(22673): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Jan 27 2025 06:58:59 webserver maldet(22673): {update} hashing install files and checking against server... Jan 27 2025 06:58:59 webserver maldet(22673): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Jan 27 2025 06:58:59 webserver maldet(22673): {update} latest version already installed. Jan 27 2025 06:58:59 webserver maldet(22809): {sigup} performing signature update check... Jan 27 2025 06:58:59 webserver maldet(22809): {sigup} local signature set is version 202501253509456 Jan 27 2025 06:58:59 webserver maldet(22809): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Jan 27 2025 06:58:59 webserver maldet(22809): {sigup} latest signature set already installed Jan 27 2025 06:58:59 webserver maldet(22923): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Jan 27 2025 06:58:59 webserver maldet(22923): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Jan 27 2025 06:58:59 webserver maldet(22923): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Jan 27 2025 06:58:59 webserver maldet(22923): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Jan 27 2025 06:58:59 webserver maldet(22923): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Jan 27 2025 06:59:04 webserver maldet(22923): {scan} file list completed in 5s, found 44 files... Jan 27 2025 06:59:04 webserver maldet(22923): {scan} found clamav binary at /usr/bin/clamdscan, using clamav scanner engine... Jan 27 2025 06:59:04 webserver maldet(22923): {scan} scan of (44 files) in progress... Jan 27 2025 06:59:05 webserver maldet(22923): {scan} scan completed on : files 44, malware hits 0, cleaned hits 0, time 6s Jan 27 2025 06:59:05 webserver maldet(22923): {scan} scan report saved, to view run: maldet --report 250127-0658.22923 Jan 28 2025 06:57:28 webserver maldet(6395): {update} checking for available updates... Jan 28 2025 06:57:28 webserver maldet(6395): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Jan 28 2025 06:57:28 webserver maldet(6395): {update} hashing install files and checking against server... Jan 28 2025 06:57:28 webserver maldet(6395): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Jan 28 2025 06:57:28 webserver maldet(6395): {update} latest version already installed. Jan 28 2025 06:57:28 webserver maldet(6531): {sigup} performing signature update check... Jan 28 2025 06:57:28 webserver maldet(6531): {sigup} local signature set is version 202501253509456 Jan 28 2025 06:57:28 webserver maldet(6531): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Jan 28 2025 06:57:28 webserver maldet(6531): {sigup} latest signature set already installed Jan 28 2025 06:57:28 webserver maldet(6645): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Jan 28 2025 06:57:28 webserver maldet(6645): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Jan 28 2025 06:57:28 webserver maldet(6645): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Jan 28 2025 06:57:28 webserver maldet(6645): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Jan 28 2025 06:57:28 webserver maldet(6645): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Jan 28 2025 06:57:33 webserver maldet(6645): {scan} file list completed in 5s, found 43 files... Jan 28 2025 06:57:33 webserver maldet(6645): {scan} found clamav binary at /usr/bin/clamdscan, using clamav scanner engine... Jan 28 2025 06:57:33 webserver maldet(6645): {scan} scan of (43 files) in progress... Jan 28 2025 06:57:35 webserver maldet(6645): {scan} scan completed on : files 43, malware hits 0, cleaned hits 0, time 7s Jan 28 2025 06:57:35 webserver maldet(6645): {scan} scan report saved, to view run: maldet --report 250128-0657.6645 Jan 29 2025 06:58:27 webserver maldet(28437): {update} checking for available updates... Jan 29 2025 06:58:27 webserver maldet(28437): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Jan 29 2025 06:58:27 webserver maldet(28437): {update} hashing install files and checking against server... Jan 29 2025 06:58:27 webserver maldet(28437): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Jan 29 2025 06:58:27 webserver maldet(28437): {update} latest version already installed. Jan 29 2025 06:58:27 webserver maldet(28573): {sigup} performing signature update check... Jan 29 2025 06:58:27 webserver maldet(28573): {sigup} local signature set is version 202501253509456 Jan 29 2025 06:58:27 webserver maldet(28573): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Jan 29 2025 06:58:27 webserver maldet(28573): {sigup} new signature set 202501287825 available Jan 29 2025 06:58:27 webserver maldet(28573): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Jan 29 2025 06:58:27 webserver maldet(28573): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Jan 29 2025 06:58:28 webserver maldet(28573): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Jan 29 2025 06:58:28 webserver maldet(28573): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Jan 29 2025 06:58:28 webserver maldet(28573): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Jan 29 2025 06:58:28 webserver maldet(28573): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Jan 29 2025 06:58:28 webserver maldet(28573): {sigup} verified md5sum of maldet-sigpack.tgz Jan 29 2025 06:58:28 webserver maldet(28573): {sigup} unpacked and installed maldet-sigpack.tgz Jan 29 2025 06:58:28 webserver maldet(28573): {sigup} verified md5sum of maldet-clean.tgz Jan 29 2025 06:58:28 webserver maldet(28573): {sigup} unpacked and installed maldet-clean.tgz Jan 29 2025 06:58:28 webserver maldet(28573): {sigup} signature set update completed Jan 29 2025 06:58:28 webserver maldet(28573): {sigup} 17638 signatures (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Jan 29 2025 06:58:28 webserver maldet(28804): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Jan 29 2025 06:58:28 webserver maldet(28804): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Jan 29 2025 06:58:28 webserver maldet(28804): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Jan 29 2025 06:58:28 webserver maldet(28804): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Jan 29 2025 06:58:28 webserver maldet(28804): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Jan 29 2025 06:58:33 webserver maldet(28804): {scan} file list completed in 5s, found 41 files... Jan 29 2025 06:58:33 webserver maldet(28804): {scan} found clamav binary at /usr/bin/clamdscan, using clamav scanner engine... Jan 29 2025 06:58:33 webserver maldet(28804): {scan} scan of (41 files) in progress... Jan 29 2025 06:58:33 webserver maldet(28804): {hit} malware hit {YARA}r57shell_php_php found for /var/www/ooareogundevinitiative/9tpdh5fs/index/c99-jpg-shell.php Jan 29 2025 06:58:33 webserver maldet(28804): {quar} malware quarantined from '/var/www/ooareogundevinitiative/9tpdh5fs/index/c99-jpg-shell.php' to '/usr/local/maldetect/quarantine/c99-jpg-shell.php.15885828' Jan 29 2025 06:58:33 webserver maldet(28804): {clean} could not find clean rule for hit r57shell_php_php or file /usr/local/maldetect/quarantine/c99-jpg-shell.php.15885828 no longer exists. Jan 29 2025 06:58:33 webserver maldet(28804): {scan} scan completed on : files 41, malware hits 1, cleaned hits 0, time 5s Jan 29 2025 06:58:33 webserver maldet(28804): {scan} scan report saved, to view run: maldet --report 250129-0658.28804 Jan 29 2025 06:58:33 webserver maldet(28804): {alert} sent scan report to banjiadewoye@gmail.com Jan 30 2025 07:07:28 webserver maldet(22075): {update} checking for available updates... Jan 30 2025 07:07:28 webserver maldet(22075): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Jan 30 2025 07:07:28 webserver maldet(22075): {update} hashing install files and checking against server... Jan 30 2025 07:07:28 webserver maldet(22075): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Jan 30 2025 07:07:28 webserver maldet(22075): {update} latest version already installed. Jan 30 2025 07:07:28 webserver maldet(22211): {sigup} performing signature update check... Jan 30 2025 07:07:28 webserver maldet(22211): {sigup} local signature set is version 202501287825 Jan 30 2025 07:07:28 webserver maldet(22211): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Jan 30 2025 07:07:28 webserver maldet(22211): {sigup} latest signature set already installed Jan 30 2025 07:07:28 webserver maldet(22326): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Jan 30 2025 07:07:28 webserver maldet(22326): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Jan 30 2025 07:07:28 webserver maldet(22326): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Jan 30 2025 07:07:28 webserver maldet(22326): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Jan 30 2025 07:07:28 webserver maldet(22326): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Jan 30 2025 07:07:33 webserver maldet(22326): {scan} file list completed in 5s, found 36 files... Jan 30 2025 07:07:33 webserver maldet(22326): {scan} found clamav binary at /usr/bin/clamdscan, using clamav scanner engine... Jan 30 2025 07:07:33 webserver maldet(22326): {scan} scan of (36 files) in progress... Jan 30 2025 07:07:34 webserver maldet(22326): {scan} scan completed on : files 36, malware hits 0, cleaned hits 0, time 6s Jan 30 2025 07:07:34 webserver maldet(22326): {scan} scan report saved, to view run: maldet --report 250130-0707.22326 Jan 31 2025 06:58:34 webserver maldet(7935): {update} checking for available updates... Jan 31 2025 06:58:34 webserver maldet(7935): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Jan 31 2025 06:58:34 webserver maldet(7935): {update} hashing install files and checking against server... Jan 31 2025 06:58:34 webserver maldet(7935): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Jan 31 2025 06:58:34 webserver maldet(7935): {update} latest version already installed. Jan 31 2025 06:58:34 webserver maldet(8071): {sigup} performing signature update check... Jan 31 2025 06:58:34 webserver maldet(8071): {sigup} local signature set is version 202501287825 Jan 31 2025 06:58:34 webserver maldet(8071): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Jan 31 2025 06:58:34 webserver maldet(8071): {sigup} latest signature set already installed Jan 31 2025 06:58:34 webserver maldet(8185): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Jan 31 2025 06:58:34 webserver maldet(8185): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Jan 31 2025 06:58:34 webserver maldet(8185): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Jan 31 2025 06:58:34 webserver maldet(8185): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Jan 31 2025 06:58:34 webserver maldet(8185): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Jan 31 2025 06:58:39 webserver maldet(8185): {scan} file list completed in 5s, found 13 files... Jan 31 2025 06:58:39 webserver maldet(8185): {scan} found clamav binary at /usr/bin/clamdscan, using clamav scanner engine... Jan 31 2025 06:58:39 webserver maldet(8185): {scan} scan of (13 files) in progress... Jan 31 2025 06:58:39 webserver maldet(8185): {scan} clamscan returned an error, check /usr/local/maldetect/logs/clamscan_log for details! Jan 31 2025 06:58:39 webserver maldet(8185): {scan} scan completed on : files 13, malware hits 0, cleaned hits 0, time 5s Jan 31 2025 06:58:39 webserver maldet(8185): {scan} scan report saved, to view run: maldet --report 250131-0658.8185 Feb 01 2025 06:59:03 webserver maldet(32023): {update} checking for available updates... Feb 01 2025 06:59:03 webserver maldet(32023): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Feb 01 2025 06:59:03 webserver maldet(32023): {update} hashing install files and checking against server... Feb 01 2025 06:59:03 webserver maldet(32023): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Feb 01 2025 06:59:03 webserver maldet(32023): {update} latest version already installed. Feb 01 2025 06:59:03 webserver maldet(32159): {sigup} performing signature update check... Feb 01 2025 06:59:03 webserver maldet(32159): {sigup} local signature set is version 202501287825 Feb 01 2025 06:59:03 webserver maldet(32159): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Feb 01 2025 06:59:03 webserver maldet(32159): {sigup} new signature set 20250131488045 available Feb 01 2025 06:59:03 webserver maldet(32159): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Feb 01 2025 06:59:04 webserver maldet(32159): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Feb 01 2025 06:59:04 webserver maldet(32159): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Feb 01 2025 06:59:04 webserver maldet(32159): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Feb 01 2025 06:59:04 webserver maldet(32159): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Feb 01 2025 06:59:04 webserver maldet(32159): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Feb 01 2025 06:59:04 webserver maldet(32159): {sigup} verified md5sum of maldet-sigpack.tgz Feb 01 2025 06:59:04 webserver maldet(32159): {sigup} unpacked and installed maldet-sigpack.tgz Feb 01 2025 06:59:04 webserver maldet(32159): {sigup} verified md5sum of maldet-clean.tgz Feb 01 2025 06:59:04 webserver maldet(32159): {sigup} unpacked and installed maldet-clean.tgz Feb 01 2025 06:59:04 webserver maldet(32159): {sigup} signature set update completed Feb 01 2025 06:59:04 webserver maldet(32159): {sigup} 17638 signatures (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Feb 01 2025 06:59:04 webserver maldet(32390): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Feb 01 2025 06:59:04 webserver maldet(32390): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Feb 01 2025 06:59:04 webserver maldet(32390): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Feb 01 2025 06:59:04 webserver maldet(32390): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Feb 01 2025 06:59:04 webserver maldet(32390): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Feb 01 2025 06:59:09 webserver maldet(32390): {scan} file list completed in 5s, found 20 files... Feb 01 2025 06:59:09 webserver maldet(32390): {scan} found clamav binary at /usr/bin/clamdscan, using clamav scanner engine... Feb 01 2025 06:59:09 webserver maldet(32390): {scan} scan of (20 files) in progress... Feb 01 2025 06:59:10 webserver maldet(32390): {scan} scan completed on : files 20, malware hits 0, cleaned hits 0, time 6s Feb 01 2025 06:59:10 webserver maldet(32390): {scan} scan report saved, to view run: maldet --report 250201-0659.32390 Feb 02 2025 06:59:21 webserver maldet(18950): {update} checking for available updates... Feb 02 2025 06:59:21 webserver maldet(18950): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Feb 02 2025 06:59:21 webserver maldet(18950): {update} hashing install files and checking against server... Feb 02 2025 06:59:21 webserver maldet(18950): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Feb 02 2025 06:59:21 webserver maldet(18950): {update} latest version already installed. Feb 02 2025 06:59:21 webserver maldet(19086): {sigup} performing signature update check... Feb 02 2025 06:59:21 webserver maldet(19086): {sigup} local signature set is version 20250131488045 Feb 02 2025 06:59:21 webserver maldet(19086): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Feb 02 2025 06:59:21 webserver maldet(19086): {sigup} new signature set 202502011136909 available Feb 02 2025 06:59:21 webserver maldet(19086): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Feb 02 2025 06:59:21 webserver maldet(19086): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Feb 02 2025 06:59:21 webserver maldet(19086): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Feb 02 2025 06:59:21 webserver maldet(19086): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Feb 02 2025 06:59:21 webserver maldet(19086): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Feb 02 2025 06:59:21 webserver maldet(19086): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Feb 02 2025 06:59:21 webserver maldet(19086): {sigup} verified md5sum of maldet-sigpack.tgz Feb 02 2025 06:59:21 webserver maldet(19086): {sigup} unpacked and installed maldet-sigpack.tgz Feb 02 2025 06:59:21 webserver maldet(19086): {sigup} verified md5sum of maldet-clean.tgz Feb 02 2025 06:59:21 webserver maldet(19086): {sigup} unpacked and installed maldet-clean.tgz Feb 02 2025 06:59:21 webserver maldet(19086): {sigup} signature set update completed Feb 02 2025 06:59:21 webserver maldet(19086): {sigup} 17638 signatures (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Feb 02 2025 06:59:21 webserver maldet(19317): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Feb 02 2025 06:59:22 webserver maldet(19317): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Feb 02 2025 06:59:22 webserver maldet(19317): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Feb 02 2025 06:59:22 webserver maldet(19317): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Feb 02 2025 06:59:22 webserver maldet(19317): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Feb 02 2025 06:59:26 webserver maldet(19317): {scan} file list completed in 4s, found 46 files... Feb 02 2025 06:59:26 webserver maldet(19317): {scan} found clamav binary at /usr/bin/clamdscan, using clamav scanner engine... Feb 02 2025 06:59:26 webserver maldet(19317): {scan} scan of (46 files) in progress... Feb 02 2025 06:59:28 webserver maldet(19317): {scan} scan completed on : files 46, malware hits 0, cleaned hits 0, time 7s Feb 02 2025 06:59:28 webserver maldet(19317): {scan} scan report saved, to view run: maldet --report 250202-0659.19317 Feb 03 2025 07:04:25 webserver maldet(9743): {update} checking for available updates... Feb 03 2025 07:04:25 webserver maldet(9743): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Feb 03 2025 07:04:25 webserver maldet(9743): {update} hashing install files and checking against server... Feb 03 2025 07:04:25 webserver maldet(9743): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Feb 03 2025 07:04:25 webserver maldet(9743): {update} latest version already installed. Feb 03 2025 07:04:25 webserver maldet(9879): {sigup} performing signature update check... Feb 03 2025 07:04:25 webserver maldet(9879): {sigup} local signature set is version 202502011136909 Feb 03 2025 07:04:25 webserver maldet(9879): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Feb 03 2025 07:04:25 webserver maldet(9879): {sigup} latest signature set already installed Feb 03 2025 07:04:25 webserver maldet(9993): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Feb 03 2025 07:04:25 webserver maldet(9993): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Feb 03 2025 07:04:25 webserver maldet(9993): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Feb 03 2025 07:04:25 webserver maldet(9993): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Feb 03 2025 07:04:25 webserver maldet(9993): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Feb 03 2025 07:04:30 webserver maldet(9993): {scan} file list completed in 5s, found 43 files... Feb 03 2025 07:04:30 webserver maldet(9993): {scan} found clamav binary at /usr/bin/clamdscan, using clamav scanner engine... Feb 03 2025 07:04:30 webserver maldet(9993): {scan} scan of (43 files) in progress... Feb 03 2025 07:04:33 webserver maldet(9993): {scan} scan completed on : files 43, malware hits 0, cleaned hits 0, time 8s Feb 03 2025 07:04:33 webserver maldet(9993): {scan} scan report saved, to view run: maldet --report 250203-0704.9993 Feb 04 2025 07:10:34 webserver maldet(2579): {update} checking for available updates... Feb 04 2025 07:10:34 webserver maldet(2579): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Feb 04 2025 07:10:34 webserver maldet(2579): {update} hashing install files and checking against server... Feb 04 2025 07:10:34 webserver maldet(2579): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Feb 04 2025 07:10:34 webserver maldet(2579): {update} latest version already installed. Feb 04 2025 07:10:34 webserver maldet(2715): {sigup} performing signature update check... Feb 04 2025 07:10:34 webserver maldet(2715): {sigup} local signature set is version 202502011136909 Feb 04 2025 07:10:34 webserver maldet(2715): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Feb 04 2025 07:10:34 webserver maldet(2715): {sigup} new signature set 20250204487606 available Feb 04 2025 07:10:34 webserver maldet(2715): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Feb 04 2025 07:10:34 webserver maldet(2715): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Feb 04 2025 07:10:34 webserver maldet(2715): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Feb 04 2025 07:10:34 webserver maldet(2715): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Feb 04 2025 07:10:34 webserver maldet(2715): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Feb 04 2025 07:10:35 webserver maldet(2715): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Feb 04 2025 07:10:35 webserver maldet(2715): {sigup} unable to verify md5sum of maldet-sigpack.tgz, please try again or contact proj@rfxn.com Feb 04 2025 07:10:35 webserver maldet(2715): {sigup} verified md5sum of maldet-clean.tgz Feb 04 2025 07:10:35 webserver maldet(2715): {sigup} unpacked and installed maldet-clean.tgz Feb 04 2025 07:10:35 webserver maldet(2901): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Feb 04 2025 07:10:35 webserver maldet(2901): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Feb 04 2025 07:10:35 webserver maldet(2901): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Feb 04 2025 07:10:35 webserver maldet(2901): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Feb 04 2025 07:10:35 webserver maldet(2901): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Feb 04 2025 07:10:42 webserver maldet(2901): {scan} file list completed in 7s, found 39 files... Feb 04 2025 07:10:42 webserver maldet(2901): {scan} found clamav binary at /usr/bin/clamdscan, using clamav scanner engine... Feb 04 2025 07:10:42 webserver maldet(2901): {scan} scan of (39 files) in progress... Feb 04 2025 07:10:45 webserver maldet(2901): {scan} scan completed on : files 39, malware hits 0, cleaned hits 0, time 10s Feb 04 2025 07:10:45 webserver maldet(2901): {scan} scan report saved, to view run: maldet --report 250204-0710.2901 Feb 05 2025 06:58:40 webserver maldet(4410): {update} checking for available updates... Feb 05 2025 06:58:40 webserver maldet(4410): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Feb 05 2025 06:58:40 webserver maldet(4410): {update} hashing install files and checking against server... Feb 05 2025 06:58:40 webserver maldet(4410): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Feb 05 2025 06:58:40 webserver maldet(4410): {update} latest version already installed. Feb 05 2025 06:58:40 webserver maldet(4546): {sigup} performing signature update check... Feb 05 2025 06:58:40 webserver maldet(4546): {sigup} local signature set is version 202502011136909 Feb 05 2025 06:58:41 webserver maldet(4546): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Feb 05 2025 06:58:41 webserver maldet(4546): {sigup} new signature set 20250204487606 available Feb 05 2025 06:58:41 webserver maldet(4546): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Feb 05 2025 06:58:41 webserver maldet(4546): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Feb 05 2025 06:58:41 webserver maldet(4546): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Feb 05 2025 06:58:41 webserver maldet(4546): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Feb 05 2025 06:58:41 webserver maldet(4546): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Feb 05 2025 06:58:41 webserver maldet(4546): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Feb 05 2025 06:58:41 webserver maldet(4546): {sigup} verified md5sum of maldet-sigpack.tgz Feb 05 2025 06:58:41 webserver maldet(4546): {sigup} unpacked and installed maldet-sigpack.tgz Feb 05 2025 06:58:41 webserver maldet(4546): {sigup} verified md5sum of maldet-clean.tgz Feb 05 2025 06:58:41 webserver maldet(4546): {sigup} unpacked and installed maldet-clean.tgz Feb 05 2025 06:58:41 webserver maldet(4546): {sigup} signature set update completed Feb 05 2025 06:58:41 webserver maldet(4546): {sigup} 17638 signatures (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Feb 05 2025 06:58:41 webserver maldet(4777): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Feb 05 2025 06:58:41 webserver maldet(4777): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Feb 05 2025 06:58:41 webserver maldet(4777): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Feb 05 2025 06:58:41 webserver maldet(4777): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Feb 05 2025 06:58:41 webserver maldet(4777): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Feb 05 2025 06:58:46 webserver maldet(4777): {scan} file list completed in 5s, found 46 files... Feb 05 2025 06:58:46 webserver maldet(4777): {scan} found clamav binary at /usr/bin/clamdscan, using clamav scanner engine... Feb 05 2025 06:58:46 webserver maldet(4777): {scan} scan of (46 files) in progress... Feb 05 2025 06:58:47 webserver maldet(4777): {scan} scan completed on : files 46, malware hits 0, cleaned hits 0, time 6s Feb 05 2025 06:58:47 webserver maldet(4777): {scan} scan report saved, to view run: maldet --report 250205-0658.4777 Feb 06 2025 06:56:15 webserver maldet(26926): {update} checking for available updates... Feb 06 2025 06:56:15 webserver maldet(26926): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Feb 06 2025 06:56:15 webserver maldet(26926): {update} hashing install files and checking against server... Feb 06 2025 06:56:15 webserver maldet(26926): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Feb 06 2025 06:56:15 webserver maldet(26926): {update} latest version already installed. Feb 06 2025 06:56:15 webserver maldet(27062): {sigup} performing signature update check... Feb 06 2025 06:56:15 webserver maldet(27062): {sigup} local signature set is version 20250204487606 Feb 06 2025 06:56:15 webserver maldet(27062): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Feb 06 2025 06:56:15 webserver maldet(27062): {sigup} latest signature set already installed Feb 06 2025 06:56:15 webserver maldet(27176): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Feb 06 2025 06:56:15 webserver maldet(27176): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Feb 06 2025 06:56:15 webserver maldet(27176): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Feb 06 2025 06:56:15 webserver maldet(27176): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Feb 06 2025 06:56:15 webserver maldet(27176): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Feb 06 2025 06:56:20 webserver maldet(27176): {scan} file list completed in 5s, found 21 files... Feb 06 2025 06:56:20 webserver maldet(27176): {scan} found clamav binary at /usr/bin/clamdscan, using clamav scanner engine... Feb 06 2025 06:56:20 webserver maldet(27176): {scan} scan of (21 files) in progress... Feb 06 2025 06:56:21 webserver maldet(27176): {scan} scan completed on : files 21, malware hits 0, cleaned hits 0, time 6s Feb 06 2025 06:56:21 webserver maldet(27176): {scan} scan report saved, to view run: maldet --report 250206-0656.27176 Feb 07 2025 06:57:52 webserver maldet(14083): {update} checking for available updates... Feb 07 2025 06:57:52 webserver maldet(14083): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Feb 07 2025 06:57:52 webserver maldet(14083): {update} hashing install files and checking against server... Feb 07 2025 06:57:52 webserver maldet(14083): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Feb 07 2025 06:57:52 webserver maldet(14083): {update} latest version already installed. Feb 07 2025 06:57:52 webserver maldet(14219): {sigup} performing signature update check... Feb 07 2025 06:57:52 webserver maldet(14219): {sigup} local signature set is version 20250204487606 Feb 07 2025 06:57:52 webserver maldet(14219): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Feb 07 2025 06:57:52 webserver maldet(14219): {sigup} new signature set 202502071181419 available Feb 07 2025 06:57:52 webserver maldet(14219): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Feb 07 2025 06:57:52 webserver maldet(14219): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Feb 07 2025 06:57:52 webserver maldet(14219): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Feb 07 2025 06:57:52 webserver maldet(14219): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Feb 07 2025 06:57:52 webserver maldet(14219): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Feb 07 2025 06:57:52 webserver maldet(14219): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Feb 07 2025 06:57:52 webserver maldet(14219): {sigup} verified md5sum of maldet-sigpack.tgz Feb 07 2025 06:57:52 webserver maldet(14219): {sigup} unpacked and installed maldet-sigpack.tgz Feb 07 2025 06:57:52 webserver maldet(14219): {sigup} verified md5sum of maldet-clean.tgz Feb 07 2025 06:57:52 webserver maldet(14219): {sigup} unpacked and installed maldet-clean.tgz Feb 07 2025 06:57:52 webserver maldet(14219): {sigup} signature set update completed Feb 07 2025 06:57:52 webserver maldet(14219): {sigup} 17638 signatures (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Feb 07 2025 06:57:53 webserver maldet(14450): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Feb 07 2025 06:57:53 webserver maldet(14450): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Feb 07 2025 06:57:53 webserver maldet(14450): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Feb 07 2025 06:57:53 webserver maldet(14450): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Feb 07 2025 06:57:53 webserver maldet(14450): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Feb 07 2025 06:57:57 webserver maldet(14450): {scan} file list completed in 4s, found 50 files... Feb 07 2025 06:57:57 webserver maldet(14450): {scan} found clamav binary at /usr/bin/clamdscan, using clamav scanner engine... Feb 07 2025 06:57:57 webserver maldet(14450): {scan} scan of (50 files) in progress... Feb 07 2025 06:57:59 webserver maldet(14450): {scan} scan completed on : files 50, malware hits 0, cleaned hits 0, time 6s Feb 07 2025 06:57:59 webserver maldet(14450): {scan} scan report saved, to view run: maldet --report 250207-0657.14450 Feb 08 2025 06:56:21 webserver maldet(22223): {update} checking for available updates... Feb 08 2025 06:56:21 webserver maldet(22223): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Feb 08 2025 06:56:21 webserver maldet(22223): {update} hashing install files and checking against server... Feb 08 2025 06:56:21 webserver maldet(22223): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Feb 08 2025 06:56:21 webserver maldet(22223): {update} latest version already installed. Feb 08 2025 06:56:21 webserver maldet(22359): {sigup} performing signature update check... Feb 08 2025 06:56:21 webserver maldet(22359): {sigup} local signature set is version 202502071181419 Feb 08 2025 06:56:21 webserver maldet(22359): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Feb 08 2025 06:56:21 webserver maldet(22359): {sigup} latest signature set already installed Feb 08 2025 06:56:22 webserver maldet(22473): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Feb 08 2025 06:56:22 webserver maldet(22473): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Feb 08 2025 06:56:22 webserver maldet(22473): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Feb 08 2025 06:56:22 webserver maldet(22473): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Feb 08 2025 06:56:22 webserver maldet(22473): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Feb 08 2025 06:56:26 webserver maldet(22473): {scan} file list completed in 4s, found 55 files... Feb 08 2025 06:56:26 webserver maldet(22473): {scan} found clamav binary at /usr/bin/clamdscan, using clamav scanner engine... Feb 08 2025 06:56:26 webserver maldet(22473): {scan} scan of (55 files) in progress... Feb 08 2025 06:56:29 webserver maldet(22473): {scan} scan completed on : files 55, malware hits 0, cleaned hits 0, time 7s Feb 08 2025 06:56:29 webserver maldet(22473): {scan} scan report saved, to view run: maldet --report 250208-0656.22473 Feb 09 2025 06:56:56 webserver maldet(5386): {update} checking for available updates... Feb 09 2025 06:56:56 webserver maldet(5386): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Feb 09 2025 06:56:56 webserver maldet(5386): {update} hashing install files and checking against server... Feb 09 2025 06:56:56 webserver maldet(5386): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Feb 09 2025 06:56:56 webserver maldet(5386): {update} latest version already installed. Feb 09 2025 06:56:56 webserver maldet(5522): {sigup} performing signature update check... Feb 09 2025 06:56:56 webserver maldet(5522): {sigup} local signature set is version 202502071181419 Feb 09 2025 06:56:57 webserver maldet(5522): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Feb 09 2025 06:56:57 webserver maldet(5522): {sigup} latest signature set already installed Feb 09 2025 06:56:57 webserver maldet(5636): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Feb 09 2025 06:56:57 webserver maldet(5636): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Feb 09 2025 06:56:57 webserver maldet(5636): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Feb 09 2025 06:56:57 webserver maldet(5636): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Feb 09 2025 06:56:57 webserver maldet(5636): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Feb 09 2025 06:57:01 webserver maldet(5636): {scan} file list completed in 4s, found 103 files... Feb 09 2025 06:57:01 webserver maldet(5636): {scan} found clamav binary at /usr/bin/clamdscan, using clamav scanner engine... Feb 09 2025 06:57:01 webserver maldet(5636): {scan} scan of (103 files) in progress... Feb 09 2025 06:57:06 webserver maldet(5636): {scan} scan completed on : files 103, malware hits 0, cleaned hits 0, time 9s Feb 09 2025 06:57:06 webserver maldet(5636): {scan} scan report saved, to view run: maldet --report 250209-0656.5636 Feb 10 2025 06:59:12 webserver maldet(21872): {update} checking for available updates... Feb 10 2025 06:59:12 webserver maldet(21872): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Feb 10 2025 06:59:12 webserver maldet(21872): {update} hashing install files and checking against server... Feb 10 2025 06:59:12 webserver maldet(21872): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Feb 10 2025 06:59:12 webserver maldet(21872): {update} latest version already installed. Feb 10 2025 06:59:12 webserver maldet(22008): {sigup} performing signature update check... Feb 10 2025 06:59:12 webserver maldet(22008): {sigup} local signature set is version 202502071181419 Feb 10 2025 06:59:12 webserver maldet(22008): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Feb 10 2025 06:59:12 webserver maldet(22008): {sigup} latest signature set already installed Feb 10 2025 06:59:12 webserver maldet(22122): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Feb 10 2025 06:59:12 webserver maldet(22122): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Feb 10 2025 06:59:12 webserver maldet(22122): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Feb 10 2025 06:59:12 webserver maldet(22122): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Feb 10 2025 06:59:12 webserver maldet(22122): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Feb 10 2025 06:59:19 webserver maldet(22122): {scan} file list completed in 7s, found 58 files... Feb 10 2025 06:59:19 webserver maldet(22122): {scan} found clamav binary at /usr/bin/clamdscan, using clamav scanner engine... Feb 10 2025 06:59:19 webserver maldet(22122): {scan} scan of (58 files) in progress... Feb 10 2025 06:59:24 webserver maldet(22122): {scan} scan completed on : files 58, malware hits 0, cleaned hits 0, time 12s Feb 10 2025 06:59:24 webserver maldet(22122): {scan} scan report saved, to view run: maldet --report 250210-0659.22122 Feb 11 2025 06:57:27 webserver maldet(23813): {update} checking for available updates... Feb 11 2025 06:57:27 webserver maldet(23813): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Feb 11 2025 06:57:27 webserver maldet(23813): {update} hashing install files and checking against server... Feb 11 2025 06:57:28 webserver maldet(23813): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.hash Feb 11 2025 06:57:28 webserver maldet(23813): {update} latest version already installed. Feb 11 2025 06:57:28 webserver maldet(23949): {sigup} performing signature update check... Feb 11 2025 06:57:28 webserver maldet(23949): {sigup} local signature set is version 202502071181419 Feb 11 2025 06:57:28 webserver maldet(23949): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet.sigs.ver Feb 11 2025 06:57:28 webserver maldet(23949): {sigup} new signature set 202502101887208 available Feb 11 2025 06:57:28 webserver maldet(23949): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Feb 11 2025 06:57:28 webserver maldet(23949): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz Feb 11 2025 06:57:28 webserver maldet(23949): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-sigpack.tgz.md5 Feb 11 2025 06:57:28 webserver maldet(23949): {sigup} downloading https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Feb 11 2025 06:57:28 webserver maldet(23949): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz Feb 11 2025 06:57:28 webserver maldet(23949): {sigup} downloaded https://cdn.rfxn.com/downloads/maldet-cleanv2.tgz.md5 Feb 11 2025 06:57:28 webserver maldet(23949): {sigup} verified md5sum of maldet-sigpack.tgz Feb 11 2025 06:57:28 webserver maldet(23949): {sigup} unpacked and installed maldet-sigpack.tgz Feb 11 2025 06:57:28 webserver maldet(23949): {sigup} verified md5sum of maldet-clean.tgz Feb 11 2025 06:57:28 webserver maldet(23949): {sigup} unpacked and installed maldet-clean.tgz Feb 11 2025 06:57:28 webserver maldet(23949): {sigup} signature set update completed Feb 11 2025 06:57:28 webserver maldet(23949): {sigup} 17638 signatures (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Feb 11 2025 06:57:28 webserver maldet(24180): {scan} launching scan of /home?/?/public_html/,/var/www/,/usr/local/apache/htdocs/ changes in last 1d to background, see /usr/local/maldetect/logs/event_log for progress Feb 11 2025 06:57:28 webserver maldet(24180): {scan} signatures loaded: 17638 (14801 MD5 | 2054 HEX | 783 YARA | 0 USER) Feb 11 2025 06:57:28 webserver maldet(24180): {scan} building file list for of new/modified files from last 1 days, this might take awhile... Feb 11 2025 06:57:28 webserver maldet(24180): {scan} setting nice scheduler priorities for all operations: cpunice 19 , ionice 6 Feb 11 2025 06:57:28 webserver maldet(24180): {scan} executed eval /usr/bin/nice -n 19 /usr/bin/ionice -c2 -n 6 /usr/bin/find "/home\*/\*/public_html/" "/var/www/" "/usr/local/apache/htdocs/" /tmp /var/tmp /dev/shm -maxdepth 15 -regextype posix-egrep -type f \( -mtime -1 -o -ctime -1 \) -size +24c -size -6947618c -not -perm 000 -not -uid 0 -not -gid 0 Feb 11 2025 06:57:33 webserver maldet(24180): {scan} file list completed in 5s, found 11 files... Feb 11 2025 06:57:33 webserver maldet(24180): {scan} found clamav binary at /usr/bin/clamdscan, using clamav scanner engine... Feb 11 2025 06:57:33 webserver maldet(24180): {scan} scan of (11 files) in progress... Feb 11 2025 06:57:33 webserver maldet(24180): {scan} scan completed on : files 11, malware hits 0, cleaned hits 0, time 5s Feb 11 2025 06:57:33 webserver maldet(24180): {scan} scan report saved, to view run: maldet --report 250211-0657.24180 Apr 08 2025 22:05:01 webserver maldet(257): {mon} could not find inotifywait command, install yum package inotify-tools or download from https://github.com/rvoicilas/inotify-tools/wiki/ Apr 09 2025 06:57:29 webserver maldet(18449): {update} checking for available updates... Apr 09 2025 06:57:30 webserver maldet(18449): {update} downloaded https://cdn.rfxn.com/downloads/maldet.current.ver Apr 09 2025 06:57:30 webserver maldet(18449): {update} new version 1.6.6 found, updating... Apr 09 2025 06:57:30 webserver maldet(18449): {update} downloaded https://cdn.rfxn.com/downloads/maldetect-current.tar.gz Apr 09 2025 06:57:30 webserver maldet(18449): {update} downloaded https://cdn.rfxn.com/downloads/maldetect-current.tar.gz.md5 Apr 09 2025 06:57:30 webserver maldet(18449): {update} verified md5sum of maldetect-current.tar.gz