----------- SCAN REPORT -----------
TimeStamp: Wed, 1 Jun 2022 06:04:56 -0400
(/usr/sbin/cxs --background --clamdsock /var/clamd --dbreport --defapache nobody --doptions Mv --exploitscan --nofallback --filemax 50000 --noforce --html --ignore /etc/cxs/cxs.ignore.manual --options mMOLfSGchexdnwZDRru --noprobability --qoptions Mv --report /home/raydofqv/scanreport-raydofqv-Jun_01_2022_06h04m.txt --sizemax 1000000 --ssl --summary --sversionscan --timemax 30 --unofficial --user raydofqv --virusscan --vmrssmax 2000000 --xtra /etc/cxs/cxs.xtra.manual)
Scanning /home/raydofqv:
'/home/raydofqv/access-logs'
# Symlink to [/etc/apache2/logs/domlogs/raydofqv]
'/home/raydofqv/.htpasswds/www.raydgetstore.com'
# Suspicious directory
'/home/raydofqv/.nc_plugin/hidden'
# World writeable directory
# Scan Timeout (30 secs) while processing:
'/home/raydofqv/.trash/wp-includes.zip'
# Scan Timeout (30 secs) while processing:
'/home/raydofqv/.trash/wp-includesbkp.zip'
'/home/raydofqv/.trash/wp-content/plugins/akismet/akismet.php'
# Script version check [OLD] [Akismet Anti-Spam v4.1.9 < v4.2.2]
'/home/raydofqv/.trash/wp-content/plugins/meta-box/meta-box.php'
# Script version check [OLD] [Meta Box v5.4.6 < v5.6.1]
'/home/raydofqv/.trash/wp-content/plugins/meta-box/inc/about/about.php'
# Universal decode regex match = [universal decoder]
'/home/raydofqv/.trash/wp-contentbkp/uploads'
# World writeable directory
'/home/raydofqv/.trash/wp-contentbkp/uploads/2021'
# World writeable directory
'/home/raydofqv/.trash/wp-contentbkp/uploads/2021/03'
# World writeable directory
'/home/raydofqv/.trash/wp-contentbkp/uploads/2021/04'
# World writeable directory
'/home/raydofqv/.trash/wp-contentbkp/uploads/2021/05'
# World writeable directory
'/home/raydofqv/.trash/wp-contentbkp/uploads/2021/06'
# World writeable directory
'/home/raydofqv/.trash/wp-contentbkp/uploads/2021/07'
# World writeable directory
'/home/raydofqv/.trash/wp-contentbkp/uploads/2021/08'
# World writeable directory
'/home/raydofqv/.trash/wp-contentbkp/uploads/2021/09'
# World writeable directory
'/home/raydofqv/.trash/wp-contentbkp/uploads/2021/10'
# World writeable directory
'/home/raydofqv/.trash/wp-contentbkp/uploads/2021/11'
# World writeable directory
'/home/raydofqv/.trash/wp-contentbkp/uploads/2021/12'
# World writeable directory
'/home/raydofqv/.trash/wp-contentbkp/uploads/2022'
# World writeable directory
'/home/raydofqv/.trash/wp-contentbkp/uploads/2022/01'
# World writeable directory
'/home/raydofqv/.trash/wp-contentbkp/uploads/2022/02'
# World writeable directory
'/home/raydofqv/.trash/wp-contentbkp/uploads/2022/03'
# World writeable directory
'/home/raydofqv/.trash/wp-contentbkp/uploads/2022/04'
# World writeable directory
'/home/raydofqv/.trash/wp-contentbkp.1/uploads'
# World writeable directory
'/home/raydofqv/ctcom.com.tw/.tmb'
# World writeable directory
'/home/raydofqv/ctcom.com.tw/wp-content/uploads'
# World writeable directory
'/home/raydofqv/ctcom.com.tw/wp-content/uploads/2022'
# World writeable directory
'/home/raydofqv/ctcom.com.tw/wp-content/uploads/2022/05'
# World writeable directory
'/home/raydofqv/ctcom.com.tw/wp-content/uploads/2022/06'
# World writeable directory
'/home/raydofqv/ctcom.com.tw/wp-content/uploads/elementor'
# World writeable directory
'/home/raydofqv/ctcom.com.tw/wp-content/uploads/elementor/css'
# World writeable directory
'/home/raydofqv/logs/ctcom.raydget.com.tw-May-2022.gz'
# ClamAV detected virus = [{HEX}php.malware.magento.585.UNOFFICIAL]
'/home/raydofqv/logs/mysw.raydget.com.tw-May-2022.gz'
# ClamAV detected virus = [{HEX}php.malware.magento.585.UNOFFICIAL]
'/home/raydofqv/logs/raydget.com.tw-May-2022.gz'
# ClamAV detected virus = [{HEX}php.malware.magento.585.UNOFFICIAL]
'/home/raydofqv/logs/raydget.com.tw-ssl_log-May-2022.gz'
# ClamAV detected virus = [{HEX}php.malware.magento.585.UNOFFICIAL]
'/home/raydofqv/logs/raydget.raydget.com.tw-May-2022.gz'
# ClamAV detected virus = [{HEX}php.malware.magento.585.UNOFFICIAL]
'/home/raydofqv/logs/raydgetstore.raydget.com.tw-May-2022.gz'
# ClamAV detected virus = [{HEX}php.malware.magento.585.UNOFFICIAL]
'/home/raydofqv/logs/raydgetstore.raydget.com.tw-ssl_log-May-2022.gz'
# ClamAV detected virus = [{HEX}php.malware.magento.585.UNOFFICIAL]
'/home/raydofqv/logs/wtfifa.raydget.com.tw-May-2022.gz'
# ClamAV detected virus = [{HEX}php.malware.magento.585.UNOFFICIAL]
'/home/raydofqv/mysw.xyz/.tmb'
# World writeable directory
'/home/raydofqv/mysw.xyz/wp-content/plugins/wp-file-manager/lib/codemirror/mode/clike/index.html'
# Suspicious file type [application/x-c]
'/home/raydofqv/public_html/coverPhoto'
# World writeable directory
'/home/raydofqv/public_html/newImg'
# World writeable directory
'/home/raydofqv/public_html/support'
# World writeable directory
'/home/raydofqv/public_html/userfiles'
# World writeable directory
'/home/raydofqv/raydget.vip/.tmb'
# World writeable directory
'/home/raydofqv/raydget.vip/wp-content/plugins/google-listings-and-ads/vendor/google/gax/src/Transport/GrpcTransport.php'
# Regular expression match = [\*[A-Za-z0-9]{12,130}\*]
'/home/raydofqv/raydget.vip/wp-content/plugins/woocommerce/vendor/maxmind-db/reader/ext/maxminddb.c'
# Suspicious file type [application/x-c]
'/home/raydofqv/raydget.vip/wp-content/plugins/wp-file-manager/lib/codemirror/mode/clike/index.html'
# Suspicious file type [application/x-c]
'/home/raydofqv/raydget.vip/wp-content/uploads'
# World writeable directory
'/home/raydofqv/raydget.vip/wp-content/uploads/2021'
# World writeable directory
'/home/raydofqv/raydget.vip/wp-content/uploads/2021/06'
# World writeable directory
'/home/raydofqv/raydget.vip/wp-content/uploads/2021/07'
# World writeable directory
'/home/raydofqv/raydget.vip/wp-content/uploads/2021/08'
# World writeable directory
'/home/raydofqv/raydget.vip/wp-content/uploads/elementor'
# World writeable directory
'/home/raydofqv/raydget.vip/wp-content/uploads/elementor/css'
# World writeable directory
'/home/raydofqv/raydget.vip/wp-content/uploads/elementor/screenshots'
# World writeable directory
'/home/raydofqv/raydget.vip/wp-content/uploads/elementor/thumbs'
# World writeable directory
'/home/raydofqv/raydget.vip/wp-content/uploads/essential-addons-elementor'
# World writeable directory
'/home/raydofqv/raydget.vip/wp-content/uploads/js_composer'
# World writeable directory
'/home/raydofqv/raydget.vip/wp-content/uploads/mailpoet'
# World writeable directory
'/home/raydofqv/raydget.vip/wp-content/uploads/mailpoet/cache'
# World writeable directory
'/home/raydofqv/raydget.vip/wp-content/uploads/template-kits'
# World writeable directory
'/home/raydofqv/raydget.vip/wp-content/uploads/template-kits/276fdf4b73521885c120e05991f5c137'
# World writeable directory
'/home/raydofqv/raydget.vip/wp-content/uploads/wc-logs'
# World writeable directory
'/home/raydofqv/raydget.vip/wp-content/uploads/woocommerce_uploads'
# World writeable directory
'/home/raydofqv/raydget.vip/wp-content/uploads/wp-file-manager-pro'
# World writeable directory
'/home/raydofqv/raydget.vip/wp-content/uploads/wp-file-manager-pro/fm_backup'
# World writeable directory
'/home/raydofqv/raydget.vip/wp-content/uploads/wpcf7_uploads'
# World writeable directory
'/home/raydofqv/tmp/awstats/awstats052022.ctcom.raydget.com.tw.txt'
# ClamAV detected virus = [{HEX}php.malware.magento.585.UNOFFICIAL]
'/home/raydofqv/tmp/awstats/awstats052022.mysw.raydget.com.tw.txt'
# ClamAV detected virus = [{HEX}php.malware.magento.585.UNOFFICIAL]
'/home/raydofqv/tmp/awstats/awstats052022.raydget.raydget.com.tw.txt'
# ClamAV detected virus = [{HEX}php.malware.magento.585.UNOFFICIAL]
'/home/raydofqv/tmp/awstats/ssl/awstats052022.raydget.com.tw.txt'
# ClamAV detected virus = [{HEX}php.malware.magento.585.UNOFFICIAL]
'/home/raydofqv/tmp/awstats/ssl/awstats052022.raydgetstore.raydget.com.tw.txt'
# ClamAV detected virus = [{HEX}php.malware.magento.585.UNOFFICIAL]
# Scan Timeout (30 secs) while processing:
'/home/raydofqv/wtfifa.com/wp-content/themes/jnews/plugins/revslider.zip'
'/home/raydofqv/wtfifa.com/wp-content/uploads'
# World writeable directory
'/home/raydofqv/wtfifa.com/wp-content/uploads/2021'
# World writeable directory
'/home/raydofqv/wtfifa.com/wp-content/uploads/2021/10'
# World writeable directory
'/home/raydofqv/wtfifa.com/wp-content/uploads/2021/11'
# World writeable directory
'/home/raydofqv/wtfifa.com/wp-content/uploads/2021/12'
# World writeable directory
'/home/raydofqv/wtfifa.com/wp-content/uploads/js_composer'
# World writeable directory
'/home/raydofqv/wtfifa.com/wp-includes/version.php'
# Script version check [OLD] [Wordpress v5.8.3 < v5.9.3]
'/home/raydofqv/www.raydgetstore.com'
# Suspicious directory
'/home/raydofqv/www.raydgetstore.com/s1.txt'
# Regular expression match = [\n(?!\s*(//|\#|\*)).*/etc/passwd]
----------- SCAN SUMMARY -----------
Scanned directories: 11700
Scanned files: 100605
Ignored items: 559
Suspicious matches: 83
Viruses found: 13
Fingerprint matches: 0
Data scanned: 5021.02 MB
Scan peak memory: 293472 kB
Scan time/item: 0.025 sec
Scan time: 2841.148 sec