ÿØÿà JFIF ÿÛ „ ( %!1!%*+...983,7(-.-
File manager
File manager - Edit - /home/tokomrjk/scanreport-tokomrjk-Apr_12_2026_23h30m.txt
Back
----------- SCAN REPORT ----------- TimeStamp: Sun, 12 Apr 2026 23:30:36 -0400 (/usr/sbin/cxs --background --clamdsock /var/clamd --dbreport --defapache nobody --doptions Mv --exploitscan --nofallback --filemax 50000 --noforce --html --ignore /etc/cxs/cxs.ignore.manual --options mMOLfSGchexdnwZDRru --noprobability --qoptions Mv --report /home/tokomrjk/scanreport-tokomrjk-Apr_12_2026_23h30m.txt --sizemax 1000000 --ssl --summary --sversionscan --timemax 30 --unofficial --user tokomrjk --virusscan --vmrssmax 2000000 --waitscan 0 --xtra /etc/cxs/cxs.xtra.manual) Scanning /home/tokomrjk: '/home/tokomrjk/admin.php' # Universal decode regex match = [universal decoder] # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/index.php' # ClamAV detected virus = [{HEX}php.generic.malware.501.UNOFFICIAL] '/home/tokomrjk/.caldav/file61.php' # (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/.cl.selector/admin.php' # Universal decode regex match = [universal decoder] # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/.cl.selector/index.php' # ClamAV detected virus = [{HEX}php.generic.malware.501.UNOFFICIAL] '/home/tokomrjk/.config/htop/defunct' # Linux Binary/Executable [application/x-sharedlib] '/home/tokomrjk/.cpanel/file61.php' # (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/.htpasswds/admin.php' # Universal decode regex match = [universal decoder] # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/.htpasswds/index.php' # ClamAV detected virus = [{HEX}php.generic.malware.501.UNOFFICIAL] '/home/tokomrjk/.htpasswds/asikgeng.com/admin.php' # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/.htpasswds/asikgeng.com/index.php' # ClamAV detected virus = [{HEX}php.generic.malware.501.UNOFFICIAL] '/home/tokomrjk/.htpasswds/orkuti1.josfaction.com/admin.php' # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/.htpasswds/orkuti1.josfaction.com/index.php' # ClamAV detected virus = [{HEX}php.generic.malware.501.UNOFFICIAL] '/home/tokomrjk/.nc_plugin/hidden' # World writeable directory '/home/tokomrjk/.trash/file61.php' # (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/aceh.asikgeng.com/file61.php' # (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/aceh1.asikgeng.com/aceh1.asikgeng.com:80.php' # Universal decode regex match = [universal decoder] '/home/tokomrjk/aceh1.asikgeng.com/admin.php' # Universal decode regex match = [universal decoder] # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/aceh1.asikgeng.com/file61.php' # (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/advintageplus.com/file61.php' # (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/advintageplus.com/cgi-bin/cgi-bin/m3u8_69d99a74e0068.zip' # (compressed file: b_69d99a74e0068.tmp [depth: 1]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P2189]] '/home/tokomrjk/advintageplus.com/images/images/images/EWPInSvMay.jpeg' # Suspicious image file (hidden script file) '/home/tokomrjk/aimfitnessnetwork.com/admin.php' # Universal decode regex match = [universal decoder] # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/aimfitnessnetwork.com/file61.php' # (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/akaiho.com/admin.php' # Universal decode regex match = [universal decoder] # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/akaiho.com/file61.php' # (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/akaiho.com/.well-known/admin.php' # Universal decode regex match = [universal decoder] # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/akaiho.com/indexx_files/indexx_files/png_69d99a7964f79.zip' # (compressed file: b_69d99a7964f79.tmp [depth: 1]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P2189]] '/home/tokomrjk/akaiho.com/indexx_files/indexx_files/indexx_files/m4v_69d99a7b999a4.zip' # (compressed file: b_69d99a7b999a4.tmp [depth: 1]) Known exploit = [Fingerprint Match (fp)] [PHP Exploit [P2195]] '/home/tokomrjk/aleshamusic.com/admin.php' # Universal decode regex match = [universal decoder] # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/aleshamusic.com/file61.php' # (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/aleshamusic.com/.well-known/flatpak-builder-build' # Linux Binary/Executable [application/x-sharedlib] '/home/tokomrjk/aleshamusic.com/.well-known/pki-validation/flatpak-builder-build' # Linux Binary/Executable [application/x-sharedlib] '/home/tokomrjk/aleshamusic.com/cgi-bin/flatpak-builder-build' # Linux Binary/Executable [application/x-sharedlib] '/home/tokomrjk/aleshamusic.com/cgi-bin/jack_server' # Linux Binary/Executable [application/x-sharedlib] '/home/tokomrjk/andhrabuzz.com/admin.php' # Universal decode regex match = [universal decoder] # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/andhrabuzz.com/andhrabuzz.com:80.php' # Universal decode regex match = [universal decoder] '/home/tokomrjk/andhrabuzz.com/file61.php' # (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/andhrabuzz.com/index.php' # ClamAV detected virus = [{HEX}php.generic.malware.501.UNOFFICIAL] '/home/tokomrjk/andhrabuzz.com/test/test.php' # Universal decode regex match = [universal decoder] '/home/tokomrjk/artspotmiami.com/file61.php' # (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/asik.polaasik.xyz/file61.php' # (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/asik1.polaasik.xyz/file61.php' # (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/asik2.polaasik.xyz/file61.php' # (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/asik2.polaasik.xyz/boosterscript/boosterscript.css' # Universal decode regex match = [universal decoder] '/home/tokomrjk/asik2.polaasik.xyz/nc_assets/nc_assets.css' # Universal decode regex match = [universal decoder] '/home/tokomrjk/asik2.polaasik.xyz/nc_assets/img/featured/featured.css' # Universal decode regex match = [universal decoder] '/home/tokomrjk/asik2.polaasik.xyz/nc_assets/img/featured/600/600.css' # Universal decode regex match = [universal decoder] '/home/tokomrjk/asik2.polaasik.xyz/nc_assets/img/icons/icons.css' # Universal decode regex match = [universal decoder] '/home/tokomrjk/asik2.polaasik.xyz/nc_assets/img/pictograms/150/150.css' # Universal decode regex match = [universal decoder] '/home/tokomrjk/asik3.polaasik.xyz/admin.php' # Universal decode regex match = [universal decoder] # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/asik3.polaasik.xyz/file61.php' # (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/asikgeng.com/admin.php' # Universal decode regex match = [universal decoder] # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/asikgeng.com/file61.php' # (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/asikgeng.com/video/video.php' # Universal decode regex match = [universal decoder] '/home/tokomrjk/asikrtp.xyz/admin.php' # Universal decode regex match = [universal decoder] # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/asikrtp.xyz/file61.php' # (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/asikrtp.xyz/cgi-bin/admin.php' # Universal decode regex match = [universal decoder] # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/asikrtp.xyz/cgi-bin/cgi-bin/cgi-bin/cgi-bin/whi.jpeg' # Suspicious image file (hidden script file) '/home/tokomrjk/asikrtp.xyz/images/admin.php' # Universal decode regex match = [universal decoder] # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/asikrtp.xyz/images/images/images/AJFviq.jpeg' # Suspicious image file (hidden script file) '/home/tokomrjk/asphalt9.site/file61.php' # (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/avenuesnepal.com/admin.php' # Universal decode regex match = [universal decoder] # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/avenuesnepal.com/file61.php' # (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/avenuesnepal.com/images/images/fUExeCBqrtsnYcFZv.tiff' # Suspicious image file (hidden script file) '/home/tokomrjk/avenuesnepal.com/indexx_files/indexx_files/indexx_files/pnVlmsxjLKbIJZcw.tiff' # Suspicious image file (hidden script file) '/home/tokomrjk/ayamgoreng.online/file61.php' # (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/ayamgoreng.online/lp/admin.php' # Universal decode regex match = [universal decoder] # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/ayamgoreng.online/lp/lp.php' # Universal decode regex match = [universal decoder] '/home/tokomrjk/baghdadchamber.com/admin.php' # Universal decode regex match = [universal decoder] # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/baghdadchamber.com/file61.php' # (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/baghdadchamber.com/.well-known/admin.php' # Universal decode regex match = [universal decoder] # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/baghdadchamber.com/cgi-bin/admin.php' # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/banten.kasvalid.com/admin.php' # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/banten.kasvalid.com/banten.kasvalid.com:80.php' # Universal decode regex match = [universal decoder] '/home/tokomrjk/banten.kasvalid.com/file61.php' # (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/banten.kasvalid.com/.well-known/admin.php' # Universal decode regex match = [universal decoder] # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/banten.kasvalid.com/cgi-bin/admin.php' # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/banten1.kasvalid.com/admin.php' # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/banten1.kasvalid.com/file61.php' # (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/banten1.kasvalid.com/.well-known/admin.php' # Universal decode regex match = [universal decoder] # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/banten1.kasvalid.com/cgi-bin/admin.php' # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/barttersite.org/admin.php' # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/barttersite.org/file61.php' # (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/bawahtanahteam.com/8znju.php' # Universal decode regex match = [universal decoder] # (decoded file [advanced decoder: 14 (depth: 9)]) ClamAV detected virus = [{HEX}php.inject.base64.532.UNOFFICIAL] '/home/tokomrjk/bawahtanahteam.com/admin.php' # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/bawahtanahteam.com/file61.php' # (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/bawahtanahteam.com/backup_1/admin.php' # Universal decode regex match = [universal decoder] # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/bawahtanahteam.com/cgi-bin/admin.php' # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/bawahtanahteam.com/clairvoyancy/admin.php' # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/bawahtanahteam.com/palpite-certo/admin.php' # Universal decode regex match = [universal decoder] # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/bawahtanahteam.com/pre-footer/admin.php' # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/bawahtanahteam.com/pre-footer/hx7d16l.php' # (decoded file [advanced decoder: 14 (depth: 14)]) ClamAV detected virus = [TO-42521.WEBSHEL.nc_home1_nocomment_php.MD5-481f367bab1530af3fae24543f01029e.size-7919.UNOFFICIAL] # Scan Timeout (30 secs) while processing: '/home/tokomrjk/bawahtanahteam.com/pre-footer/pre-footer.php' '/home/tokomrjk/bawahtanahteam.com/sitepad-data/admin.php' # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/bawahtanahteam.xyz/admin.php' # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/bawahtanahteam.xyz/file61.php' # (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/bawahtanahteam.xyz/.well-known/admin.php' # Universal decode regex match = [universal decoder] # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/bawahtanahteam.xyz/cgi-bin/admin.php' # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/bawahtanahteam.xyz/lp/admin.php' # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/benazirbhutto.org/admin.php' # Universal decode regex match = [universal decoder] # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/benazirbhutto.org/benazirbhutto.org:80.php' # Universal decode regex match = [universal decoder] '/home/tokomrjk/benazirbhutto.org/file61.php' # (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/berkahbaut.xyz/admin.php' # Universal decode regex match = [universal decoder] # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/berkahbaut.xyz/file61.php' # (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/besiperkasa.xyz/admin.php' # Universal decode regex match = [universal decoder] # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/besiperkasa.xyz/besiperkasa.xyz:80.php' # Universal decode regex match = [universal decoder] '/home/tokomrjk/besiperkasa.xyz/file61.php' # (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/besiperkasa.xyz/.well-known/admin.php' # Universal decode regex match = [universal decoder] # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/besiperkasa.xyz/cgi-bin/admin.php' # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/bfgcon.com/admin.php' # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/bfgcon.com/alsa_delay_server' # Linux Binary/Executable [application/x-sharedlib] '/home/tokomrjk/bfgcon.com/alsa_delay_stream' # Linux Binary/Executable [application/x-sharedlib] '/home/tokomrjk/bfgcon.com/alsa_downmix' # Linux Binary/Executable [application/x-sharedlib] '/home/tokomrjk/bfgcon.com/alsa_mididev' # Linux Binary/Executable [application/x-sharedlib] '/home/tokomrjk/bfgcon.com/anacron' # Linux Binary/Executable [application/x-sharedlib] '/home/tokomrjk/bfgcon.com/bluetooth-sendto' # Linux Binary/Executable [application/x-sharedlib] '/home/tokomrjk/bfgcon.com/btcomm' # Linux Binary/Executable [application/x-sharedlib] '/home/tokomrjk/bfgcon.com/file61.php' # (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/bfgcon.com/flatpak-build-finish' # Linux Binary/Executable [application/x-sharedlib] '/home/tokomrjk/bfgcon.com/flatpak-builder-build-finish' # Linux Binary/Executable [application/x-sharedlib] '/home/tokomrjk/bfgcon.com/flatpak-builder-build-init' # Linux Binary/Executable [application/x-sharedlib] '/home/tokomrjk/bfgcon.com/flatpak-builder-tools' # Linux Binary/Executable [application/x-sharedlib] '/home/tokomrjk/bfgcon.com/flatpak-builder-tools-build-init' # Linux Binary/Executable [application/x-sharedlib] '/home/tokomrjk/bfgcon.com/flatpak-builder-tools-build-sign' # Linux Binary/Executable [application/x-sharedlib] '/home/tokomrjk/bfgcon.com/flatpak-builder-tools-install' # Linux Binary/Executable [application/x-sharedlib] '/home/tokomrjk/bfgcon.com/flatpak-builder-tools-run' # Linux Binary/Executable [application/x-sharedlib] '/home/tokomrjk/bfgcon.com/flatpak-builder-tools-tools' # Linux Binary/Executable [application/x-sharedlib] '/home/tokomrjk/bfgcon.com/flatpak-builder-tools-tools-build-finish' # Linux Binary/Executable [application/x-sharedlib] '/home/tokomrjk/bfgcon.com/ip' # Linux Binary/Executable [application/x-sharedlib] '/home/tokomrjk/bfgcon.com/jack_port_latency' # Linux Binary/Executable [application/x-sharedlib] '/home/tokomrjk/bfgcon.com/jack_release_timebase' # Linux Binary/Executable [application/x-sharedlib] '/home/tokomrjk/bfgcon.com/route' # Linux Binary/Executable [application/x-sharedlib] '/home/tokomrjk/bfgcon.com/.well-known/admin.php' # Universal decode regex match = [universal decoder] # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/bfgcon.com/.well-known/alsa_control' # Linux Binary/Executable [application/x-sharedlib] '/home/tokomrjk/bfgcon.com/.well-known/alsa_delay_stream' # Linux Binary/Executable [application/x-sharedlib] '/home/tokomrjk/bfgcon.com/.well-known/alsa_downmix' # Linux Binary/Executable [application/x-sharedlib] '/home/tokomrjk/bfgcon.com/.well-known/alsa_in' # Linux Binary/Executable [application/x-sharedlib] '/home/tokomrjk/bfgcon.com/.well-known/alsa_monitor' # Linux Binary/Executable [application/x-sharedlib] '/home/tokomrjk/bfgcon.com/.well-known/alsa_pcm' # Linux Binary/Executable [application/x-sharedlib] '/home/tokomrjk/bfgcon.com/.well-known/alsa_rawmidi' # Linux Binary/Executable [application/x-sharedlib] '/home/tokomrjk/bfgcon.com/.well-known/bluetooth-sendto' # Linux Binary/Executable [application/x-sharedlib] '/home/tokomrjk/bfgcon.com/.well-known/bt-agent' # Linux Binary/Executable [application/x-sharedlib] '/home/tokomrjk/bfgcon.com/.well-known/btmon' # Linux Binary/Executable [application/x-sharedlib] '/home/tokomrjk/bfgcon.com/.well-known/flatpak-build-finish' # Linux Binary/Executable [application/x-sharedlib] '/home/tokomrjk/bfgcon.com/.well-known/flatpak-builder-build-finish' # Linux Binary/Executable [application/x-sharedlib] '/home/tokomrjk/bfgcon.com/.well-known/flatpak-builder-build-init' # Linux Binary/Executable [application/x-sharedlib] '/home/tokomrjk/bfgcon.com/.well-known/flatpak-builder-tools' # Linux Binary/Executable [application/x-sharedlib] '/home/tokomrjk/bfgcon.com/.well-known/flatpak-builder-tools-build-init' # Linux Binary/Executable [application/x-sharedlib] '/home/tokomrjk/bfgcon.com/.well-known/flatpak-builder-tools-build-sign' # Linux Binary/Executable [application/x-sharedlib] '/home/tokomrjk/bfgcon.com/.well-known/flatpak-builder-tools-install' # Linux Binary/Executable [application/x-sharedlib] '/home/tokomrjk/bfgcon.com/.well-known/flatpak-builder-tools-push' # Linux Binary/Executable [application/x-sharedlib] '/home/tokomrjk/bfgcon.com/.well-known/flatpak-builder-tools-run' # Linux Binary/Executable [application/x-sharedlib] '/home/tokomrjk/bfgcon.com/.well-known/flatpak-builder-tools-tools' # Linux Binary/Executable [application/x-sharedlib] '/home/tokomrjk/bfgcon.com/.well-known/flatpak-builder-tools-tools-build-finish' # Linux Binary/Executable [application/x-sharedlib] '/home/tokomrjk/bfgcon.com/.well-known/jack_alias' # Linux Binary/Executable [application/x-sharedlib] '/home/tokomrjk/bfgcon.com/.well-known/jack_bufsize' # Linux Binary/Executable [application/x-sharedlib] '/home/tokomrjk/bfgcon.com/.well-known/jack_play' # Linux Binary/Executable [application/x-sharedlib] '/home/tokomrjk/bfgcon.com/.well-known/jack_port_latency' # Linux Binary/Executable [application/x-sharedlib] '/home/tokomrjk/bfgcon.com/.well-known/jack_record' # Linux Binary/Executable [application/x-sharedlib] '/home/tokomrjk/bfgcon.com/.well-known/jack_release_timebase' # Linux Binary/Executable [application/x-sharedlib] '/home/tokomrjk/bfgcon.com/.well-known/rfcomm' # Linux Binary/Executable [application/x-sharedlib] '/home/tokomrjk/bfgcon.com/.well-known/pki-validation/alsa_bridge' # Linux Binary/Executable [application/x-sharedlib] '/home/tokomrjk/bfgcon.com/.well-known/pki-validation/alsa_control' # Linux Binary/Executable [application/x-sharedlib] '/home/tokomrjk/bfgcon.com/.well-known/pki-validation/alsa_delay_stream' # Linux Binary/Executable [application/x-sharedlib] '/home/tokomrjk/bfgcon.com/.well-known/pki-validation/alsa_device' # Linux Binary/Executable [application/x-sharedlib] '/home/tokomrjk/bfgcon.com/.well-known/pki-validation/alsa_downmix' # Linux Binary/Executable [application/x-sharedlib] '/home/tokomrjk/bfgcon.com/.well-known/pki-validation/alsa_example' # Linux Binary/Executable [application/x-sharedlib] '/home/tokomrjk/bfgcon.com/.well-known/pki-validation/alsa_info' # Linux Binary/Executable [application/x-sharedlib] '/home/tokomrjk/bfgcon.com/.well-known/pki-validation/bluetooth-sendto' # Linux Binary/Executable [application/x-sharedlib] '/home/tokomrjk/bfgcon.com/.well-known/pki-validation/bt-adapter' # Linux Binary/Executable [application/x-sharedlib] '/home/tokomrjk/bfgcon.com/.well-known/pki-validation/bt-obex' # Linux Binary/Executable [application/x-sharedlib] '/home/tokomrjk/bfgcon.com/.well-known/pki-validation/flatpak-build-finish' # Linux Binary/Executable [application/x-sharedlib] '/home/tokomrjk/bfgcon.com/.well-known/pki-validation/flatpak-builder-build-finish' # Linux Binary/Executable [application/x-sharedlib] '/home/tokomrjk/bfgcon.com/.well-known/pki-validation/flatpak-builder-build-init' # Linux Binary/Executable [application/x-sharedlib] '/home/tokomrjk/bfgcon.com/.well-known/pki-validation/flatpak-builder-tools' # Linux Binary/Executable [application/x-sharedlib] '/home/tokomrjk/bfgcon.com/.well-known/pki-validation/flatpak-builder-tools-build-init' # Linux Binary/Executable [application/x-sharedlib] '/home/tokomrjk/bfgcon.com/.well-known/pki-validation/flatpak-builder-tools-build-sign' # Linux Binary/Executable [application/x-sharedlib] '/home/tokomrjk/bfgcon.com/.well-known/pki-validation/flatpak-builder-tools-install' # Linux Binary/Executable [application/x-sharedlib] '/home/tokomrjk/bfgcon.com/.well-known/pki-validation/flatpak-builder-tools-push' # Linux Binary/Executable [application/x-sharedlib] '/home/tokomrjk/bfgcon.com/.well-known/pki-validation/flatpak-builder-tools-run' # Linux Binary/Executable [application/x-sharedlib] '/home/tokomrjk/bfgcon.com/.well-known/pki-validation/flatpak-builder-tools-tools' # Linux Binary/Executable [application/x-sharedlib] '/home/tokomrjk/bfgcon.com/.well-known/pki-validation/flatpak-builder-tools-tools-build-finish' # Linux Binary/Executable [application/x-sharedlib] '/home/tokomrjk/bfgcon.com/.well-known/pki-validation/flatpak-install' # Linux Binary/Executable [application/x-sharedlib] '/home/tokomrjk/bfgcon.com/.well-known/pki-validation/jack_port_latency' # Linux Binary/Executable [application/x-sharedlib] '/home/tokomrjk/bfgcon.com/.well-known/pki-validation/jack_release_timebase' # Linux Binary/Executable [application/x-sharedlib] '/home/tokomrjk/bfgcon.com/.well-known/pki-validation/jack_wait' # Linux Binary/Executable [application/x-sharedlib] '/home/tokomrjk/bfgcon.com/cgi-bin/admin.php' # Universal decode regex match = [universal decoder] # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/bfgcon.com/cgi-bin/alsa_clocks' # Linux Binary/Executable [application/x-sharedlib] '/home/tokomrjk/bfgcon.com/cgi-bin/alsa_conf' # Linux Binary/Executable [application/x-sharedlib] '/home/tokomrjk/bfgcon.com/cgi-bin/alsa_delay_stream' # Linux Binary/Executable [application/x-sharedlib] '/home/tokomrjk/bfgcon.com/cgi-bin/alsa_downmix' # Linux Binary/Executable [application/x-sharedlib] '/home/tokomrjk/bfgcon.com/cgi-bin/alsa_jack' # Linux Binary/Executable [application/x-sharedlib] '/home/tokomrjk/bfgcon.com/cgi-bin/alsa_law' # Linux Binary/Executable [application/x-sharedlib] '/home/tokomrjk/bfgcon.com/cgi-bin/alsa_monitor' # Linux Binary/Executable [application/x-sharedlib] '/home/tokomrjk/bfgcon.com/cgi-bin/alsa_patch' # Linux Binary/Executable [application/x-sharedlib] '/home/tokomrjk/bfgcon.com/cgi-bin/alsa_seq' # Linux Binary/Executable [application/x-sharedlib] '/home/tokomrjk/bfgcon.com/cgi-bin/bluetooth-sendto' # Linux Binary/Executable [application/x-sharedlib] '/home/tokomrjk/bfgcon.com/cgi-bin/btmon' # Linux Binary/Executable [application/x-sharedlib] '/home/tokomrjk/bfgcon.com/cgi-bin/flatpak-build-finish' # Linux Binary/Executable [application/x-sharedlib] '/home/tokomrjk/bfgcon.com/cgi-bin/flatpak-builder-build-finish' # Linux Binary/Executable [application/x-sharedlib] '/home/tokomrjk/bfgcon.com/cgi-bin/flatpak-builder-build-init' # Linux Binary/Executable [application/x-sharedlib] '/home/tokomrjk/bfgcon.com/cgi-bin/flatpak-builder-tools' # Linux Binary/Executable [application/x-sharedlib] '/home/tokomrjk/bfgcon.com/cgi-bin/flatpak-builder-tools-build-init' # Linux Binary/Executable [application/x-sharedlib] '/home/tokomrjk/bfgcon.com/cgi-bin/flatpak-builder-tools-build-sign' # Linux Binary/Executable [application/x-sharedlib] '/home/tokomrjk/bfgcon.com/cgi-bin/flatpak-builder-tools-install' # Linux Binary/Executable [application/x-sharedlib] '/home/tokomrjk/bfgcon.com/cgi-bin/flatpak-builder-tools-push' # Linux Binary/Executable [application/x-sharedlib] '/home/tokomrjk/bfgcon.com/cgi-bin/flatpak-builder-tools-run' # Linux Binary/Executable [application/x-sharedlib] '/home/tokomrjk/bfgcon.com/cgi-bin/flatpak-builder-tools-tools' # Linux Binary/Executable [application/x-sharedlib] '/home/tokomrjk/bfgcon.com/cgi-bin/flatpak-builder-tools-tools-build-finish' # Linux Binary/Executable [application/x-sharedlib] '/home/tokomrjk/bfgcon.com/cgi-bin/flatpak-install' # Linux Binary/Executable [application/x-sharedlib] '/home/tokomrjk/bfgcon.com/cgi-bin/jack_cpu_load' # Linux Binary/Executable [application/x-sharedlib] '/home/tokomrjk/bfgcon.com/cgi-bin/jack_disconnect' # Linux Binary/Executable [application/x-sharedlib] '/home/tokomrjk/bfgcon.com/cgi-bin/jack_port_latency' # Linux Binary/Executable [application/x-sharedlib] '/home/tokomrjk/bfgcon.com/cgi-bin/jack_release_timebase' # Linux Binary/Executable [application/x-sharedlib] '/home/tokomrjk/bfgcon.com/cgi-bin/jack_unalias' # Linux Binary/Executable [application/x-sharedlib] '/home/tokomrjk/bfgcon.com/cgi-bin/jack_unload' # Linux Binary/Executable [application/x-sharedlib] '/home/tokomrjk/bfgcon.com/cgi-bin/jack_wait' # Linux Binary/Executable [application/x-sharedlib] '/home/tokomrjk/bfgcon.com/cgi-bin/nmap' # Linux Binary/Executable [application/x-sharedlib] '/home/tokomrjk/bfgcon.com/cgi-bin/rfcomm' # Linux Binary/Executable [application/x-sharedlib] '/home/tokomrjk/bfgcon.com/cgi-bin/smemcap' # Linux Binary/Executable [application/x-sharedlib] '/home/tokomrjk/bfgcon.com/cgi-bin/speaker-test' # Linux Binary/Executable [application/x-sharedlib] '/home/tokomrjk/bfgcon.com/cgi-bin/cgi-bin/flatpak-builder-tools-tools-build-sign' # Linux Binary/Executable [application/x-sharedlib] '/home/tokomrjk/bfgcon.com/cgi-bin/cgi-bin/cgi-bin/QEvyuNKZ.jpg' # Suspicious image file (hidden script file) '/home/tokomrjk/bfgcon.com/cgi-bin/cgi-bin/cgi-bin/alsa_monitor' # Linux Binary/Executable [application/x-sharedlib] '/home/tokomrjk/bfgcon.com/cgi-bin/cgi-bin/cgi-bin/flatpak-builder-tools-tools-build-sign' # Linux Binary/Executable [application/x-sharedlib] '/home/tokomrjk/bfgcon.com/cgi-bin/cgi-bin/cgi-bin/sZeCrbu.jpeg' # Suspicious image file (hidden script file) '/home/tokomrjk/bfgcon.com/data/admin.php' # Universal decode regex match = [universal decoder] # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/bfgcon.com/data/alsa_control' # Linux Binary/Executable [application/x-sharedlib] '/home/tokomrjk/bfgcon.com/data/alsa_delay_stream' # Linux Binary/Executable [application/x-sharedlib] '/home/tokomrjk/bfgcon.com/data/alsa_downmix' # Linux Binary/Executable [application/x-sharedlib] '/home/tokomrjk/bfgcon.com/data/alsa_midi' # Linux Binary/Executable [application/x-sharedlib] '/home/tokomrjk/bfgcon.com/data/anacron' # Linux Binary/Executable [application/x-sharedlib] '/home/tokomrjk/bfgcon.com/data/bluetooth-sendto' # Linux Binary/Executable [application/x-sharedlib] '/home/tokomrjk/bfgcon.com/data/flatpak-build-finish' # Linux Binary/Executable [application/x-sharedlib] '/home/tokomrjk/bfgcon.com/data/flatpak-builder-build-finish' # Linux Binary/Executable [application/x-sharedlib] '/home/tokomrjk/bfgcon.com/data/flatpak-builder-build-init' # Linux Binary/Executable [application/x-sharedlib] '/home/tokomrjk/bfgcon.com/data/flatpak-builder-tools' # Linux Binary/Executable [application/x-sharedlib] '/home/tokomrjk/bfgcon.com/data/flatpak-builder-tools-build-init' # Linux Binary/Executable [application/x-sharedlib] '/home/tokomrjk/bfgcon.com/data/flatpak-builder-tools-build-sign' # Linux Binary/Executable [application/x-sharedlib] '/home/tokomrjk/bfgcon.com/data/flatpak-builder-tools-install' # Linux Binary/Executable [application/x-sharedlib] '/home/tokomrjk/bfgcon.com/data/flatpak-builder-tools-push' # Linux Binary/Executable [application/x-sharedlib] '/home/tokomrjk/bfgcon.com/data/flatpak-builder-tools-run' # Linux Binary/Executable [application/x-sharedlib] '/home/tokomrjk/bfgcon.com/data/flatpak-builder-tools-tools' # Linux Binary/Executable [application/x-sharedlib] '/home/tokomrjk/bfgcon.com/data/flatpak-builder-tools-tools-build-finish' # Linux Binary/Executable [application/x-sharedlib] '/home/tokomrjk/bfgcon.com/data/flatpak-search' # Linux Binary/Executable [application/x-sharedlib] '/home/tokomrjk/bfgcon.com/data/jack_disconnect' # Linux Binary/Executable [application/x-sharedlib] '/home/tokomrjk/bfgcon.com/data/jack_freewheel' # Linux Binary/Executable [application/x-sharedlib] '/home/tokomrjk/bfgcon.com/data/jack_netsink' # Linux Binary/Executable [application/x-sharedlib] '/home/tokomrjk/bfgcon.com/data/jack_port_latency' # Linux Binary/Executable [application/x-sharedlib] '/home/tokomrjk/bfgcon.com/data/jack_release_timebase' # Linux Binary/Executable [application/x-sharedlib] '/home/tokomrjk/bfgcon.com/data/jack_zombify' # Linux Binary/Executable [application/x-sharedlib] '/home/tokomrjk/bfgcon.com/data/pavucontrol' # Linux Binary/Executable [application/x-sharedlib] '/home/tokomrjk/bfgcon.com/data/rfcomm' # Linux Binary/Executable [application/x-sharedlib] '/home/tokomrjk/bfgcon.com/data/data/flatpak-builder-tools-tools-build-sign' # Linux Binary/Executable [application/x-sharedlib] '/home/tokomrjk/bfgcon.com/data/data/data/flatpak-builder-tools-tools-build-sign' # Linux Binary/Executable [application/x-sharedlib] '/home/tokomrjk/bfgcon.com/data/data/data/data/flatpak-builder-tools-tools-build-sign' # Linux Binary/Executable [application/x-sharedlib] '/home/tokomrjk/bfgcon.com/data/data/data/data/data/flatpak-builder-tools-tools-build-sign' # Linux Binary/Executable [application/x-sharedlib] '/home/tokomrjk/bfgcon.com/data/data/data/data/data/png_69d99a7a01e99.zip' # (compressed file: b_69d99a7a01e99.tmp [depth: 1]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P2189]] '/home/tokomrjk/bfgcon.com/images/admin.php' # Universal decode regex match = [universal decoder] # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/bfgcon.com/images/flatpak-builder-tools-tools-build-sign' # Linux Binary/Executable [application/x-sharedlib] '/home/tokomrjk/bfgcon.com/images/images/flatpak-builder-tools-tools-build-sign' # Linux Binary/Executable [application/x-sharedlib] '/home/tokomrjk/bonekaunik.xyz/file61.php' # (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/bonekaunik.xyz/cgi-bin/alsa_bridge' # Linux Binary/Executable [application/x-sharedlib] '/home/tokomrjk/bookslibland.com/admin.php' # Universal decode regex match = [universal decoder] # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/bookslibland.com/file61.php' # (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/bounceclassic.xyz/admin.php' # Universal decode regex match = [universal decoder] # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/bounceclassic.xyz/file61.php' # (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/butterfly-houses.com/admin.php' # Universal decode regex match = [universal decoder] # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/butterfly-houses.com/file61.php' # (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/butterfly-houses.com/cgi-bin/cgi-bin/cgi-bin/cgi-bin/l.png' # Suspicious image file (hidden script file) '/home/tokomrjk/butterfly-houses.com/images/images/images/images/WNsCY.tiff' # Suspicious image file (hidden script file) '/home/tokomrjk/cafeland.site/admin.php' # Universal decode regex match = [universal decoder] # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/cafeland.site/file61.php' # (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/cafeland.site/.well-known/admin.php' # Universal decode regex match = [universal decoder] # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/cafeland.site/cgi-bin/admin.php' # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/cannonbusters.com/admin.php' # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/cannonbusters.com/file61.php' # (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/cannonbusters.com/www.cannonbusters.com.php' # Universal decode regex match = [universal decoder] '/home/tokomrjk/cannonbusters.com/.well-known/admin.php' # Universal decode regex match = [universal decoder] # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/cannonbusters.com/assets/admin.php' # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/cannonbusters.com/img/admin.php' # Universal decode regex match = [universal decoder] # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/cannonbusters.com/mu-plugins/admin.php' # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/caverncollection.com/admin.php' # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/caverncollection.com/file61.php' # (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/cdokay.com/admin.php' # Universal decode regex match = [universal decoder] # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/cdokay.com/file61.php' # (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/cebuexperience.com/admin.php' # Universal decode regex match = [universal decoder] # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/cebuexperience.com/file61.php' # (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/cebuexperience.com/cgi-bin/cgi-bin/jpx_69d99a6a687ab.zip' # (compressed file: b_69d99a6a687ab.tmp [depth: 1]) Known exploit = [Fingerprint Match (fp)] [PHP Exploit [P2195]] '/home/tokomrjk/cebuexperience.com/cgi-bin/cgi-bin/cgi-bin/cgi-bin/cgi-bin/IemQxisGMv.jpg' # Suspicious image file (hidden script file) '/home/tokomrjk/cebuexperience.com/images/images/images/ClUbNsfRjuAMW.tif' # Suspicious image file (hidden script file) '/home/tokomrjk/centraldallasministries.org/.caldav.tar' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/centraldallasministries.org/.caldav.tar.gz' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/centraldallasministries.org/.caldav.zip' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/centraldallasministries.org/.trash.tar' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/centraldallasministries.org/.trash.tar.gz' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/centraldallasministries.org/admin.php' # Universal decode regex match = [universal decoder] # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/centraldallasministries.org/banten1.kasvalid.com.zip' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/centraldallasministries.org/butterfly-houses.com.zip' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/centraldallasministries.org/cafeland.site.tar' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/centraldallasministries.org/cafeland.site.tar.gz' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/centraldallasministries.org/cannonbusters.com.tar' # (compressed file: www.cannonbusters.com.php [depth: 1]) Universal decode regex match = [universal decoder] # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/centraldallasministries.org/cannonbusters.com.tar.gz' # (compressed file: www.cannonbusters.com.php [depth: 1]) Universal decode regex match = [universal decoder] # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/centraldallasministries.org/caverncollection.com.tar' # (compressed file: caverncollection.com:80.php [depth: 1]) Universal decode regex match = [universal decoder] # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/centraldallasministries.org/caverncollection.com.tar.gz' # (compressed file: caverncollection.com:80.php [depth: 1]) Universal decode regex match = [universal decoder] # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/centraldallasministries.org/cdokay.com.tar' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/centraldallasministries.org/cdokay.com.tar.gz' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/centraldallasministries.org/cebuexperience.com.tar' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/centraldallasministries.org/cebuexperience.com.tar.gz' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/centraldallasministries.org/daftarpaus4d.co.in.zip' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/centraldallasministries.org/file61.php' # (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/centraldallasministries.org/file61.php.php.tar.gz' # (compressed file: home/tokomrjk/centraldallasministries.org/file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/centraldallasministries.org/file61.php.tar' # (compressed file: home/tokomrjk/centraldallasministries.org/file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/centraldallasministries.org/fogarsdelaselva.org.tar' # (compressed file: file61.php [depth: 2]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/centraldallasministries.org/fogarsdelaselva.org.tar.gz' # (compressed file: file61.php [depth: 2]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/centraldallasministries.org/fruitninja.info.zip' # (compressed file: 889/889.php [depth: 1]) Universal decode regex match = [universal decoder] # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/centraldallasministries.org/galagawars.site.zip' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] # (compressed file: galagawars.site.php [depth: 1]) Universal decode regex match = [universal decoder] '/home/tokomrjk/centraldallasministries.org/gardenscapes.store.zip' # (compressed file: gardenscapes.store.php [depth: 1]) Universal decode regex match = [universal decoder] # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/centraldallasministries.org/happylaundry.xyz.zip' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/centraldallasministries.org/hotelbonacabol.com.zip' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/centraldallasministries.org/joeynegro.com.zip' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/centraldallasministries.org/jos4.polajos.xyz.zip' # (compressed file: nc_assets/img/pictograms/150/150.css [depth: 1]) Universal decode regex match = [universal decoder] # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] # (compressed file: files/image/HB/HB.css [depth: 1]) Universal decode regex match = [universal decoder] '/home/tokomrjk/centraldallasministries.org/josartis.co.in.zip' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/centraldallasministries.org/kalingga.xrial.com.zip' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] # (compressed file: kalingga.xrial.com.php [depth: 1]) Universal decode regex match = [universal decoder] '/home/tokomrjk/centraldallasministries.org/kas1.polakas.xyz.zip' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/centraldallasministries.org/kas3.polakas.xyz.zip' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/centraldallasministries.org/kas4.polakas.xyz.zip' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/centraldallasministries.org/kas8.polakas.xyz.zip' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/centraldallasministries.org/kutai.josfaction.com.zip' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/centraldallasministries.org/laundrykita.xyz.zip' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/centraldallasministries.org/loginjajantogel.com.zip' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/centraldallasministries.org/mataram1.isogoo.com.zip' # (compressed file: mataram1.isogoo.com:80.php [depth: 1]) Universal decode regex match = [universal decoder] # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/centraldallasministries.org/misterinusantara.com.zip' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/centraldallasministries.org/mitrabangunan.xyz.zip' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/centraldallasministries.org/orkuti.josfaction.com.zip' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/centraldallasministries.org/orkuti1.josfaction.com.zip' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] # (compressed file: orkuti1.josfaction.com:80.php [depth: 1]) Universal decode regex match = [universal decoder] # (compressed file: orkuti1.josfaction.com.php [depth: 1]) Universal decode regex match = [universal decoder] '/home/tokomrjk/centraldallasministries.org/padjajaran.josfaction.com.zip' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/centraldallasministries.org/padjajaran1.josfaction.com.zip' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/centraldallasministries.org/pajang.paussea.com.zip' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/centraldallasministries.org/palu.kasvalid.com.tar' # (compressed file: file61.php [depth: 2]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/centraldallasministries.org/palu.kasvalid.com.tar.gz' # (compressed file: file61.php [depth: 2]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/centraldallasministries.org/pasai.isogoo.com.tar' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] # (compressed file: pasai.isogoo.com.php [depth: 1]) Universal decode regex match = [universal decoder] '/home/tokomrjk/centraldallasministries.org/pasai.isogoo.com.tar.gz' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] # (compressed file: pasai.isogoo.com.php [depth: 1]) Universal decode regex match = [universal decoder] '/home/tokomrjk/centraldallasministries.org/pasai1.isogoo.com.tar' # (compressed file: pasai1.isogoo.com:80.php [depth: 1]) Universal decode regex match = [universal decoder] # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/centraldallasministries.org/pasai1.isogoo.com.tar.gz' # (compressed file: pasai1.isogoo.com:80.php [depth: 1]) Universal decode regex match = [universal decoder] # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/centraldallasministries.org/pinehearstresearch.com.tar' # (compressed file: pinehearstresearch.com.php [depth: 1]) Universal decode regex match = [universal decoder] # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/centraldallasministries.org/pinehearstresearch.com.tar.gz' # (compressed file: pinehearstresearch.com.php [depth: 1]) Universal decode regex match = [universal decoder] # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/centraldallasministries.org/pioneerwinetrail.com.tar.gz' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] # (compressed file: www.pioneerwinetrail.com.php [depth: 1]) Universal decode regex match = [universal decoder] '/home/tokomrjk/centraldallasministries.org/plum.sweetvictory.xyz.tar' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/centraldallasministries.org/plum.sweetvictory.xyz.tar.gz' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/centraldallasministries.org/polaasik.xyz.tar' # (compressed file: polaasik.xyz:80.php [depth: 1]) Universal decode regex match = [universal decoder] # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/centraldallasministries.org/polaasik.xyz.tar.gz' # (compressed file: polaasik.xyz:80.php [depth: 1]) Universal decode regex match = [universal decoder] # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/centraldallasministries.org/queenlatifahmusic.com.tar' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/centraldallasministries.org/queenlatifahmusic.com.tar.gz' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/centraldallasministries.org/queenlatifahmusic.com.zip' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/centraldallasministries.org/red.sweetvictory.xyz.tar' # (compressed file: file61.php [depth: 2]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/centraldallasministries.org/red.sweetvictory.xyz.tar.gz' # (compressed file: file61.php [depth: 2]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/centraldallasministries.org/red.sweetvictory.xyz.zip' # (compressed file: file61.php [depth: 2]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/centraldallasministries.org/redpuentes.org.tar' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/centraldallasministries.org/redpuentes.org.tar.gz' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/centraldallasministries.org/ronmiles.org.tar' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/centraldallasministries.org/ronmiles.org.tar.gz' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/centraldallasministries.org/rtp.jajanpola.xyz.tar' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/centraldallasministries.org/rtp.jajanpola.xyz.tar.gz' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/centraldallasministries.org/rtp.jajanpola.xyz.zip' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/centraldallasministries.org/rtp.josmart.in.tar.gz' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/centraldallasministries.org/rtp.selerakas.site.tar' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/centraldallasministries.org/rtp.selerakas.site.tar.gz' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/centraldallasministries.org/rtp1.jajanpola.xyz.tar' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/centraldallasministries.org/rtp1.jajanpola.xyz.tar.gz' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/centraldallasministries.org/rtp1.josmart.in.tar' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/centraldallasministries.org/rtp1.josmart.in.tar.gz' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/centraldallasministries.org/rtp2.jajanpola.xyz.tar' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/centraldallasministries.org/rtp2.jajanpola.xyz.tar.gz' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/centraldallasministries.org/rtp2.josmart.in.tar' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/centraldallasministries.org/rtp2.josmart.in.tar.gz' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/centraldallasministries.org/rtp2.selerakas.site.tar' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/centraldallasministries.org/rtp2.selerakas.site.tar.gz' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/centraldallasministries.org/rtp2.selerakas.site.zip' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/centraldallasministries.org/rtp3.jajanpola.xyz.tar' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/centraldallasministries.org/rtp3.jajanpola.xyz.tar.gz' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/centraldallasministries.org/rtp3.josmart.in.tar' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/centraldallasministries.org/rtp3.josmart.in.tar.gz' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/centraldallasministries.org/rtp4.selerakas.site.tar' # (compressed file: rtpbooster/rtpbooster.css [depth: 1]) Universal decode regex match = [universal decoder] # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/centraldallasministries.org/rtp4.selerakas.site.tar.gz' # (compressed file: rtpbooster/rtpbooster.css [depth: 1]) Universal decode regex match = [universal decoder] # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/centraldallasministries.org/rtp4.selerakas.site.zip' # (compressed file: rtpbooster/rtpbooster.css [depth: 1]) Universal decode regex match = [universal decoder] # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/centraldallasministries.org/rtp5.josmart.in.tar.gz' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/centraldallasministries.org/rtp5.selerakas.site.zip' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/centraldallasministries.org/rtpjos.live.tar' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/centraldallasministries.org/rtpjos.live.tar.gz' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/centraldallasministries.org/rtpjos.live.zip' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/centraldallasministries.org/scriptjajan.xyz.zip' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/centraldallasministries.org/singasari2.asikgeng.com.zip' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/centraldallasministries.org/solo.isogoo.com.zip' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] # (compressed file: solo.isogoo.com:80.php [depth: 1]) Universal decode regex match = [universal decoder] '/home/tokomrjk/centraldallasministries.org/taiyotoryo.com.tar' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/centraldallasministries.org/taiyotoryo.com.tar.gz' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/centraldallasministries.org/tarumanegara.asikgeng.com.tar' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] # (compressed file: tarumanegara.asikgeng.com.php [depth: 1]) Universal decode regex match = [universal decoder] '/home/tokomrjk/centraldallasministries.org/tarumanegara.asikgeng.com.tar.gz' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] # (compressed file: tarumanegara.asikgeng.com.php [depth: 1]) Universal decode regex match = [universal decoder] '/home/tokomrjk/centraldallasministries.org/tarumanegara1.asikgeng.com.tar' # (compressed file: tarumanegara1.asikgeng.com.php [depth: 1]) Universal decode regex match = [universal decoder] # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/centraldallasministries.org/tarumanegara1.asikgeng.com.tar.gz' # (compressed file: tarumanegara1.asikgeng.com.php [depth: 1]) Universal decode regex match = [universal decoder] # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/centraldallasministries.org/taxiplasm.net.tar' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/centraldallasministries.org/taxiplasm.net.tar.gz' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/centraldallasministries.org/templerun.pro.tar.gz' # (compressed file: trampoliner/trampoliner.css [depth: 2]) Universal decode regex match = [universal decoder] # (compressed file: file61.php [depth: 2]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/centraldallasministries.org/ternate.sjcinema.com.tar' # (compressed file: ternate.sjcinema.com.php [depth: 1]) Universal decode regex match = [universal decoder] # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/centraldallasministries.org/ternate.sjcinema.com.tar.gz' # (compressed file: ternate.sjcinema.com.php [depth: 1]) Universal decode regex match = [universal decoder] # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/centraldallasministries.org/ternate1.sjcinema.com.tar' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/centraldallasministries.org/ternate1.sjcinema.com.tar.gz' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/centraldallasministries.org/ternate2.sjcinema.com.tar' # (compressed file: ternate2.sjcinema.com:80.php [depth: 1]) Universal decode regex match = [universal decoder] # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/centraldallasministries.org/ternate2.sjcinema.com.tar.gz' # (compressed file: ternate2.sjcinema.com:80.php [depth: 1]) Universal decode regex match = [universal decoder] # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/centraldallasministries.org/ternate2.sjcinema.com.zip' # (compressed file: ternate2.sjcinema.com:80.php [depth: 1]) Universal decode regex match = [universal decoder] # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/centraldallasministries.org/thecamphuntsville.com.tar' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/centraldallasministries.org/thecamphuntsville.com.tar.gz' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/centraldallasministries.org/thecamphuntsville.com.zip' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/centraldallasministries.org/theelms.net.tar' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/centraldallasministries.org/theelms.net.tar.gz' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/centraldallasministries.org/theendofmyaddiction.org.tar' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/centraldallasministries.org/theendofmyaddiction.org.tar.gz' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/centraldallasministries.org/theneongroup.org.tar' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/centraldallasministries.org/theneongroup.org.tar.gz' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/centraldallasministries.org/thewhitewallsessions.com.tar' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/centraldallasministries.org/thewhitewallsessions.com.tar.gz' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/centraldallasministries.org/tidore.jbchampions.com.tar' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/centraldallasministries.org/tidore.jbchampions.com.tar.gz' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/centraldallasministries.org/tidore1.jbchampions.com.tar' # (compressed file: tidore1.jbchampions.com.php [depth: 1]) Universal decode regex match = [universal decoder] # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] # (compressed file: tidore1.jbchampions.com:80.php [depth: 1]) Universal decode regex match = [universal decoder] '/home/tokomrjk/centraldallasministries.org/tidore1.jbchampions.com.tar.gz' # (compressed file: tidore1.jbchampions.com.php [depth: 1]) Universal decode regex match = [universal decoder] # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] # (compressed file: tidore1.jbchampions.com:80.php [depth: 1]) Universal decode regex match = [universal decoder] '/home/tokomrjk/centraldallasministries.org/tokoalatlistrik.xyz.tar' # (compressed file: cgi-bin/items.png [depth: 1]) Suspicious image file (hidden script file) # (compressed file: cgi-bin/associate.png [depth: 1]) Suspicious image file (hidden script file) # (compressed file: cgi-bin/cma.png [depth: 1]) Suspicious image file (hidden script file) # (compressed file: cgi-bin/FieldProfiles.png [depth: 1]) Suspicious image file (hidden script file) # (compressed file: cgi-bin/db.png [depth: 1]) Suspicious image file (hidden script file) # (compressed file: cgi-bin/cma_m_myaccount.png [depth: 1]) Suspicious image file (hidden script file) # (compressed file: cgi-bin/simplecrypt.png [depth: 1]) Suspicious image file (hidden script file) # (compressed file: cgi-bin/xinha.png [depth: 1]) Suspicious image file (hidden script file) # (compressed file: tokoalatlistrik.xyz:80.php [depth: 1]) Universal decode regex match = [universal decoder] # (compressed file: tokoalatlistrik.xyz.php [depth: 1]) Universal decode regex match = [universal decoder] # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/centraldallasministries.org/tokoalatlistrik.xyz.tar.gz' # (compressed file: cgi-bin/items.png [depth: 1]) Suspicious image file (hidden script file) # (compressed file: cgi-bin/associate.png [depth: 1]) Suspicious image file (hidden script file) # (compressed file: cgi-bin/cma.png [depth: 1]) Suspicious image file (hidden script file) # (compressed file: cgi-bin/FieldProfiles.png [depth: 1]) Suspicious image file (hidden script file) # (compressed file: cgi-bin/db.png [depth: 1]) Suspicious image file (hidden script file) # (compressed file: cgi-bin/cma_m_myaccount.png [depth: 1]) Suspicious image file (hidden script file) # (compressed file: cgi-bin/simplecrypt.png [depth: 1]) Suspicious image file (hidden script file) # (compressed file: cgi-bin/xinha.png [depth: 1]) Suspicious image file (hidden script file) # (compressed file: tokoalatlistrik.xyz:80.php [depth: 1]) Universal decode regex match = [universal decoder] # (compressed file: tokoalatlistrik.xyz.php [depth: 1]) Universal decode regex match = [universal decoder] # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/centraldallasministries.org/tokoelektronik.xyz.tar.gz' # (compressed file: cgi-bin/danish.lng.png [depth: 1]) Suspicious image file (hidden script file) # (compressed file: cgi-bin/busi_report06.png [depth: 1]) Suspicious image file (hidden script file) # (compressed file: cgi-bin/function_name.png [depth: 1]) Suspicious image file (hidden script file) # (compressed file: cgi-bin/tbl_common.png [depth: 1]) Suspicious image file (hidden script file) # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/centraldallasministries.org/trastosdeguerra.com.tar' # (compressed file: trastosdeguerra.com:80.php [depth: 1]) Universal decode regex match = [universal decoder] # (compressed file: trastosdeguerra.com.php [depth: 1]) Universal decode regex match = [universal decoder] # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/centraldallasministries.org/trastosdeguerra.com.tar.gz' # (compressed file: trastosdeguerra.com:80.php [depth: 1]) Universal decode regex match = [universal decoder] # (compressed file: trastosdeguerra.com.php [depth: 1]) Universal decode regex match = [universal decoder] # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/centraldallasministries.org/truewinner.xyz.tar' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] # (compressed file: truewinner.xyz:80.php [depth: 1]) Universal decode regex match = [universal decoder] '/home/tokomrjk/centraldallasministries.org/truewinner.xyz.tar.gz' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] # (compressed file: truewinner.xyz:80.php [depth: 1]) Universal decode regex match = [universal decoder] '/home/tokomrjk/centraldallasministries.org/valeriecarpentier.com.tar.gz' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/centraldallasministries.org/vancouvershinpo.com.tar' # (compressed file: vancouvershinpo.com:80.php [depth: 1]) Universal decode regex match = [universal decoder] # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/centraldallasministries.org/vancouvershinpo.com.tar.gz' # (compressed file: vancouvershinpo.com:80.php [depth: 1]) Universal decode regex match = [universal decoder] # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/centraldallasministries.org/vipsltgcr.site.tar' # (compressed file: vipsltgcr.site.php [depth: 1]) Universal decode regex match = [universal decoder] # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/centraldallasministries.org/vipsltgcr.site.tar.gz' # (compressed file: vipsltgcr.site.php [depth: 1]) Universal decode regex match = [universal decoder] # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/centraldallasministries.org/viraltelecast.com.tar' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/centraldallasministries.org/viraltelecast.com.tar.gz' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/centraldallasministries.org/websitepolice.in.tar' # (compressed file: situs-blacklist/situs-blacklist.css [depth: 1]) Universal decode regex match = [universal decoder] # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] # (compressed file: website-aman/website-aman.php [depth: 1]) Universal decode regex match = [universal decoder] # (compressed file: website-tidak-aman/website-tidak-aman.css [depth: 1]) Universal decode regex match = [universal decoder] '/home/tokomrjk/centraldallasministries.org/websitepolice.in.tar.gz' # (compressed file: situs-blacklist/situs-blacklist.css [depth: 1]) Universal decode regex match = [universal decoder] # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] # (compressed file: website-aman/website-aman.php [depth: 1]) Universal decode regex match = [universal decoder] # (compressed file: website-tidak-aman/website-tidak-aman.css [depth: 1]) Universal decode regex match = [universal decoder] '/home/tokomrjk/centraldallasministries.org/worlddayofsocialjustice.com.tar' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/centraldallasministries.org/worlddayofsocialjustice.com.tar.gz' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/centraldallasministries.org/www.tar.gz' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/centraldallasministries.org/xrial.com.tar' # (compressed file: xrial.com.php [depth: 1]) Universal decode regex match = [universal decoder] # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] # (compressed file: xrial.com:80.php [depth: 1]) Universal decode regex match = [universal decoder] '/home/tokomrjk/centraldallasministries.org/xrial.com.tar.gz' # (compressed file: xrial.com.php [depth: 1]) Universal decode regex match = [universal decoder] # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] # (compressed file: xrial.com:80.php [depth: 1]) Universal decode regex match = [universal decoder] '/home/tokomrjk/centraldallasministries.org/images/admin.php' # Universal decode regex match = [universal decoder] # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/centraldallasministries.org/images/images/images/WwshFZMifXxNkaR.gif' # Suspicious image file (hidden script file) '/home/tokomrjk/chateaudejussy.com/admin.php' # Universal decode regex match = [universal decoder] # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/chateaudejussy.com/alsa_midi' # Linux Binary/Executable [application/x-sharedlib] '/home/tokomrjk/chateaudejussy.com/file61.php' # (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/chateaudejussy.com/flatpak-builder-sign' # Linux Binary/Executable [application/x-sharedlib] '/home/tokomrjk/chateaudejussy.com/flatpak-builder-tools-clean' # Linux Binary/Executable [application/x-sharedlib] '/home/tokomrjk/chateaudejussy.com/flatpak-builder-tools-tools-build-export' # Linux Binary/Executable [application/x-sharedlib] '/home/tokomrjk/chateaudejussy.com/jack_transport_ctl' # Linux Binary/Executable [application/x-sharedlib] '/home/tokomrjk/chateaudejussy.com/.well-known/admin.php' # Universal decode regex match = [universal decoder] # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/chateaudejussy.com/.well-known/bt-adapter' # Linux Binary/Executable [application/x-sharedlib] '/home/tokomrjk/chateaudejussy.com/.well-known/flatpak-builder-sign' # Linux Binary/Executable [application/x-sharedlib] '/home/tokomrjk/chateaudejussy.com/.well-known/flatpak-builder-tools-clean' # Linux Binary/Executable [application/x-sharedlib] '/home/tokomrjk/chateaudejussy.com/.well-known/flatpak-builder-tools-tools-build-export' # Linux Binary/Executable [application/x-sharedlib] '/home/tokomrjk/chateaudejussy.com/.well-known/jack_cpu_load' # Linux Binary/Executable [application/x-sharedlib] '/home/tokomrjk/chateaudejussy.com/.well-known/jack_netsource' # Linux Binary/Executable [application/x-sharedlib] '/home/tokomrjk/chateaudejussy.com/.well-known/jack_transport_ctl' # Linux Binary/Executable [application/x-sharedlib] '/home/tokomrjk/chateaudejussy.com/.well-known/jackd' # Linux Binary/Executable [application/x-sharedlib] '/home/tokomrjk/chateaudejussy.com/.well-known/pki-validation/alsa_merge' # Linux Binary/Executable [application/x-sharedlib] '/home/tokomrjk/chateaudejussy.com/.well-known/pki-validation/flatpak-builder-sign' # Linux Binary/Executable [application/x-sharedlib] '/home/tokomrjk/chateaudejussy.com/.well-known/pki-validation/flatpak-builder-tools-clean' # Linux Binary/Executable [application/x-sharedlib] '/home/tokomrjk/chateaudejussy.com/.well-known/pki-validation/flatpak-builder-tools-tools-build-export' # Linux Binary/Executable [application/x-sharedlib] '/home/tokomrjk/chateaudejussy.com/.well-known/pki-validation/jack_bufsize' # Linux Binary/Executable [application/x-sharedlib] '/home/tokomrjk/chateaudejussy.com/.well-known/pki-validation/jack_transport_ctl' # Linux Binary/Executable [application/x-sharedlib] '/home/tokomrjk/chateaudejussy.com/cgi-bin/admin.php' # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/chateaudejussy.com/cgi-bin/alsa_midi' # Linux Binary/Executable [application/x-sharedlib] '/home/tokomrjk/chateaudejussy.com/cgi-bin/flatpak-builder-sign' # Linux Binary/Executable [application/x-sharedlib] '/home/tokomrjk/chateaudejussy.com/cgi-bin/flatpak-builder-tools-clean' # Linux Binary/Executable [application/x-sharedlib] '/home/tokomrjk/chateaudejussy.com/cgi-bin/flatpak-builder-tools-tools-build-export' # Linux Binary/Executable [application/x-sharedlib] '/home/tokomrjk/chateaudejussy.com/cgi-bin/hciconfig' # Linux Binary/Executable [application/x-sharedlib] '/home/tokomrjk/chateaudejussy.com/cgi-bin/jack_samplerate' # Linux Binary/Executable [application/x-sharedlib] '/home/tokomrjk/chateaudejussy.com/cgi-bin/jack_transport_ctl' # Linux Binary/Executable [application/x-sharedlib] '/home/tokomrjk/citrustreesonline.com/admin.php' # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/citrustreesonline.com/file61.php' # (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/citrustreesonline.com/images/images/FmweLVUJlEqWzXjxfa.gif' # Suspicious image file (hidden script file) '/home/tokomrjk/citrustreesonline.com/images/images/images/images/XuTexPCgImlpRUV.png' # Suspicious image file (hidden script file) '/home/tokomrjk/citrustreesonline.com/images/images/images/images/images/jpx_69d99a7503225.zip' # (compressed file: b_69d99a7503225.tmp [depth: 1]) Known exploit = [Fingerprint Match (fp)] [PHP Exploit [P2195]] '/home/tokomrjk/cldwestern.com/file61.php' # (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/cuttherope.xyz/admin.php' # Universal decode regex match = [universal decoder] # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/cuttherope.xyz/file61.php' # (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/daftarpaus4d.co.in/admin.php' # Universal decode regex match = [universal decoder] # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/daftarpaus4d.co.in/file61.php' # (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/daftarpaus4d.co.in/.well-known/admin.php' # Universal decode regex match = [universal decoder] # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/daftarpaus4d.co.in/cgi-bin/admin.php' # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/darlingtenniscenter.net/file61.php' # (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/demak.jgvictory.xyz/file61.php' # (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/demak1.jgvictory.xyz/admin.php' # Universal decode regex match = [universal decoder] # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/demak1.jgvictory.xyz/file61.php' # (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/dialoguepoetry.org/alsa_rawmidi__dd42ad7' # Linux Binary/Executable [application/x-sharedlib] '/home/tokomrjk/dialoguepoetry.org/flatpak-build-export__dd42ad7' # Linux Binary/Executable [application/x-sharedlib] '/home/tokomrjk/dialoguepoetry.org/flatpak-builder-tools-install__dd42ad7' # Linux Binary/Executable [application/x-sharedlib] '/home/tokomrjk/dialoguepoetry.org/flatpak-builder-tools-run__dd42ad7' # Linux Binary/Executable [application/x-sharedlib] '/home/tokomrjk/dialoguepoetry.org/flatpak-run__dd42ad7' # Linux Binary/Executable [application/x-sharedlib] '/home/tokomrjk/dialoguepoetry.org/host__dd42ad7' # Linux Binary/Executable [application/x-sharedlib] '/home/tokomrjk/dialoguepoetry.org/jack_metro__dd42ad7' # Linux Binary/Executable [application/x-sharedlib] '/home/tokomrjk/dialoguepoetry.org/jack_monitor_client__dd42ad7' # Linux Binary/Executable [application/x-sharedlib] '/home/tokomrjk/dialoguepoetry.org/.well-known__dd42ad7/alsa_law' # Linux Binary/Executable [application/x-sharedlib] '/home/tokomrjk/dialoguepoetry.org/.well-known__dd42ad7/flatpak-build-export' # Linux Binary/Executable [application/x-sharedlib] '/home/tokomrjk/dialoguepoetry.org/.well-known__dd42ad7/flatpak-builder-tools-install' # Linux Binary/Executable [application/x-sharedlib] '/home/tokomrjk/dialoguepoetry.org/.well-known__dd42ad7/flatpak-builder-tools-run' # Linux Binary/Executable [application/x-sharedlib] '/home/tokomrjk/dialoguepoetry.org/.well-known__dd42ad7/jack_monitor_client' # Linux Binary/Executable [application/x-sharedlib] '/home/tokomrjk/dialoguepoetry.org/.well-known__dd42ad7/pki-validation/flatpak-builder-tools-run' # Linux Binary/Executable [application/x-sharedlib] '/home/tokomrjk/dialoguepoetry.org/.well-known__dd42ad7/pki-validation/jack_monitor_client' # Linux Binary/Executable [application/x-sharedlib] '/home/tokomrjk/dialoguepoetry.org/cgi-bin__dd42ad7/alsa_out' # Linux Binary/Executable [application/x-sharedlib] '/home/tokomrjk/dialoguepoetry.org/cgi-bin__dd42ad7/alsa_seq_dump' # Linux Binary/Executable [application/x-sharedlib] '/home/tokomrjk/dialoguepoetry.org/cgi-bin__dd42ad7/flatpak-build-export' # Linux Binary/Executable [application/x-sharedlib] '/home/tokomrjk/dialoguepoetry.org/cgi-bin__dd42ad7/flatpak-builder-tools-install' # Linux Binary/Executable [application/x-sharedlib] '/home/tokomrjk/dialoguepoetry.org/cgi-bin__dd42ad7/flatpak-builder-tools-run' # Linux Binary/Executable [application/x-sharedlib] '/home/tokomrjk/dialoguepoetry.org/cgi-bin__dd42ad7/flatpak-builder-tools-sign' # Linux Binary/Executable [application/x-sharedlib] '/home/tokomrjk/dialoguepoetry.org/cgi-bin__dd42ad7/flatpak-remote' # Linux Binary/Executable [application/x-sharedlib] '/home/tokomrjk/dialoguepoetry.org/cgi-bin__dd42ad7/jack_monitor_client' # Linux Binary/Executable [application/x-sharedlib] '/home/tokomrjk/dialoguepoetry.org/cgi-bin__dd42ad7/cgi-bin/flatpak-builder-tools-build-commit' # Linux Binary/Executable [application/x-sharedlib] '/home/tokomrjk/dialoguepoetry.org/cgi-bin__dd42ad7/cgi-bin/cgi-bin/flatpak-builder-tools-build-commit' # Linux Binary/Executable [application/x-sharedlib] '/home/tokomrjk/dialoguepoetry.org/cgi-bin__dd42ad7/cgi-bin/cgi-bin/cgi-bin/flatpak-builder-tools-build-commit' # Linux Binary/Executable [application/x-sharedlib] '/home/tokomrjk/dialoguepoetry.org/images__dd42ad7/flatpak-builder-tools-build-commit' # Linux Binary/Executable [application/x-sharedlib] '/home/tokomrjk/dialoguepoetry.org/images__dd42ad7/images/flatpak-builder-tools-build-commit' # Linux Binary/Executable [application/x-sharedlib] '/home/tokomrjk/dialoguepoetry.org/images__dd42ad7/images/images/flatpak-builder-tools-build-commit' # Linux Binary/Executable [application/x-sharedlib] '/home/tokomrjk/dialoguepoetry.org/images__dd42ad7/images/images/gSrcXfwi.gif' # Suspicious image file (hidden script file) '/home/tokomrjk/dialoguepoetry.org/images__dd42ad7/images/images/images/flatpak-builder-tools-build-commit' # Linux Binary/Executable [application/x-sharedlib] '/home/tokomrjk/dialoguepoetry.org/images__dd42ad7/images/images/images/images/YfWQp.gif' # Suspicious image file (hidden script file) '/home/tokomrjk/dialoguepoetry.org/images__dd42ad7/images/images/images/images/flatpak-builder-tools-build-commit' # Linux Binary/Executable [application/x-sharedlib] '/home/tokomrjk/dnapro-academy.id/admin.php' # Universal decode regex match = [universal decoder] # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/dnapro-academy.id/file61.php' # (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/dnapro-academy.id/cgi-bin/cgi-bin/cgi-bin/jpeg_69d99c1e4630f.zip' # (compressed file: b_69d99c1e4630f.tmp [depth: 1]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P2189]] '/home/tokomrjk/dnapro-academy.id/cgi-bin/cgi-bin/cgi-bin/ogm_69d99bee3b4ff.zip' # (compressed file: b_69d99bee3b4ff.tmp [depth: 1]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P2189]] '/home/tokomrjk/dnapro-academy.id/images/images/images/images/nNZMSBmiCgz.jpeg' # Suspicious image file (hidden script file) '/home/tokomrjk/e-turchia.com/admin.php' # Universal decode regex match = [universal decoder] # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/e-turchia.com/file61.php' # (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/e-turchia.com/.well-known/admin.php' # Universal decode regex match = [universal decoder] # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/e-turchia.com/cgi-bin/admin.php' # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/e-turchia.com/cgi-bin/cgi-bin/cgi-bin/cgi-bin/ico_69d99c2ac9a3f.zip' # (compressed file: b_69d99c2ac9a3f.tmp [depth: 1]) Known exploit = [Fingerprint Match (fp)] [PHP Exploit [P2195]] '/home/tokomrjk/e-turchia.com/images/admin.php' # Universal decode regex match = [universal decoder] # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/e-turchia.com/images/images/images/expukjAmQIaTKCUy.jpeg' # Suspicious image file (hidden script file) '/home/tokomrjk/e-turchia.com/images/images/images/qP.jpeg' # Suspicious image file (hidden script file) '/home/tokomrjk/eforyatocha.com/admin.php' # Universal decode regex match = [universal decoder] # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/eforyatocha.com/file61.php' # (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/eforyatocha.com/cgi-bin/cgi-bin/cgi-bin/cgi-bin/cgi-bin/cgi-bin/ZLN.png' # Suspicious image file (hidden script file) '/home/tokomrjk/eforyatocha.com/images/images/images/images/bmp_69d99a7620b9a.zip' # (compressed file: b_69d99a7620b9a.tmp [depth: 1]) Known exploit = [Fingerprint Match (fp)] [PHP Exploit [P2195]] '/home/tokomrjk/eiffelinseoul.com/admin.php' # Universal decode regex match = [universal decoder] # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/eiffelinseoul.com/file61.php' # (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/eiffelinseoul.com/images/images/images/GZlzunWLCxhjRTk.tiff' # Suspicious image file (hidden script file) '/home/tokomrjk/entrefans.com/file61.php' # (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/entrefans.com/cgi-bin/htmlword.png' # Suspicious image file (hidden script file) '/home/tokomrjk/filezy.net/admin.php' # Universal decode regex match = [universal decoder] # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/filezy.net/file61.php' # (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/filezy.net/.well-known/admin.php' # Universal decode regex match = [universal decoder] # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/filezy.net/cgi-bin/admin.php' # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/fjb.templerun.pro/admin.php' # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/fjb.templerun.pro/file61.php' # (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/fjb.templerun.pro/.well-known/admin.php' # Universal decode regex match = [universal decoder] # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/fjb.templerun.pro/cgi-bin/admin.php' # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/fogarsdelaselva.org/admin.php' # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/fogarsdelaselva.org/file61.php' # (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/fogarsdelaselva.org/wp-mail.php' # Known exploit = [Fingerprint Match (fp)] [PHP RFI Exploit [P2060]] '/home/tokomrjk/fogarsdelaselva.org/.well-known/admin.php' # Universal decode regex match = [universal decoder] # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/fogarsdelaselva.org/OpenCart/admin.php' # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/fogarsdelaselva.org/cgi-bin/admin.php' # Universal decode regex match = [universal decoder] # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/fogarsdelaselva.org/cgi-bin/wordpres/widgets/widgets/widgets/fhmlQXVpAu.tif' # Suspicious image file (hidden script file) '/home/tokomrjk/fogarsdelaselva.org/forum/admin.php' # Universal decode regex match = [universal decoder] # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/fogarsdelaselva.org/images/admin.php' # Universal decode regex match = [universal decoder] # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/fogarsdelaselva.org/manger/admin.php' # Universal decode regex match = [universal decoder] # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/fogarsdelaselva.org/widgets/admin.php' # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/fogarsdelaselva.org/wordpres/admin.php' # Universal decode regex match = [universal decoder] # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/fogarsdelaselva.org/wordpres/OpenCart/OpenCart/OpenCart/OpenCart/yzQEIheslkiVrwFMBP.jpg' # Suspicious image file (hidden script file) '/home/tokomrjk/fortressfury.com/file61.php' # (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/fortressfury.sweetvictory.xyz/admin.php' # Universal decode regex match = [universal decoder] # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/fortressfury.sweetvictory.xyz/file61.php' # (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/fortressfury.sweetvictory.xyz/.well-known/admin.php' # Universal decode regex match = [universal decoder] # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/fortressfury.sweetvictory.xyz/cgi-bin/admin.php' # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/forumeter.com/admin.php' # Universal decode regex match = [universal decoder] # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/forumeter.com/file61.php' # (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/forumeter.com/forumeter.com.php' # Universal decode regex match = [universal decoder] '/home/tokomrjk/foursquarerum.com/admin.php' # Universal decode regex match = [universal decoder] # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/foursquarerum.com/file61.php' # (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/foursquarerum.com/.well-known/admin.php' # Universal decode regex match = [universal decoder] # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/foursquarerum.com/cgi-bin/admin.php' # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/foursquarerum.com/cgi-bin/cgi-bin/cgi-bin/cgi-bin/cgi-bin/png_69d99bf6de076.zip' # (compressed file: b_69d99bf6de076.tmp [depth: 1]) Known exploit = [Fingerprint Match (fp)] [PHP Exploit [P2195]] '/home/tokomrjk/foursquarerum.com/images/admin.php' # Universal decode regex match = [universal decoder] # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/foursquarerum.com/images/images/images/EwhkYQzKb.gif' # Suspicious image file (hidden script file) '/home/tokomrjk/foursquarerum.com/images/images/images/images/jpx_69d99bf16cd78.zip' # (compressed file: b_69d99bf16cd78.tmp [depth: 1]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P2189]] '/home/tokomrjk/fruitninja.info/admin.php' # Universal decode regex match = [universal decoder] # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/fruitninja.info/file61.php' # (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/fruitninja.info/.well-known/admin.php' # Universal decode regex match = [universal decoder] # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/fruitninja.info/889/admin.php' # Universal decode regex match = [universal decoder] # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/fruitninja.info/cgi-bin/admin.php' # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/galagawars.site/admin.php' # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/galagawars.site/file61.php' # (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/galagawars.site/galagawars.site.php' # Universal decode regex match = [universal decoder] '/home/tokomrjk/gardenscapes.store/admin.php' # Universal decode regex match = [universal decoder] # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/gardenscapes.store/file61.php' # (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/gardenscapes.store/gardenscapes.store.php' # Universal decode regex match = [universal decoder] '/home/tokomrjk/goodbyemozart.com/admin.php' # Universal decode regex match = [universal decoder] # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/goodbyemozart.com/file61.php' # (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/goodbyemozart.com/flatpak-builder-init' # Linux Binary/Executable [application/x-sharedlib] '/home/tokomrjk/goodbyemozart.com/flatpak-builder-tools-build' # Linux Binary/Executable [application/x-sharedlib] '/home/tokomrjk/goodbyemozart.com/.well-known/flatpak-builder-init' # Linux Binary/Executable [application/x-sharedlib] '/home/tokomrjk/goodbyemozart.com/.well-known/flatpak-builder-tools-build' # Linux Binary/Executable [application/x-sharedlib] '/home/tokomrjk/goodbyemozart.com/cgi-bin/flatpak-builder-init' # Linux Binary/Executable [application/x-sharedlib] '/home/tokomrjk/goodbyemozart.com/cgi-bin/flatpak-builder-tools-build' # Linux Binary/Executable [application/x-sharedlib] '/home/tokomrjk/goodbyemozart.com/cgi-bin/cgi-bin/cgi-bin/wimueHEXtGbAFZvplhjg.jpeg' # Suspicious image file (hidden script file) '/home/tokomrjk/goodbyemozart.com/images/images/images/images/images/images/wbxZXLr.jpg' # Suspicious image file (hidden script file) '/home/tokomrjk/gowatallo.kasvalid.com/admin.php' # Universal decode regex match = [universal decoder] # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/gowatallo.kasvalid.com/file61.php' # (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/gowatallo.kasvalid.com/gowatallo.kasvalid.com:80.php' # Universal decode regex match = [universal decoder] '/home/tokomrjk/gowatallo.kasvalid.com/.well-known/admin.php' # Universal decode regex match = [universal decoder] # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/gowatallo.kasvalid.com/cgi-bin/admin.php' # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/gowatallo1.kasvalid.com/admin.php' # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/gowatallo1.kasvalid.com/file61.php' # (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/gowatallo1.kasvalid.com/gowatallo1.kasvalid.com.php' # Universal decode regex match = [universal decoder] '/home/tokomrjk/gowatallo1.kasvalid.com/cgi-bin/algebra.png' # Suspicious image file (hidden script file) '/home/tokomrjk/gowatallo1.kasvalid.com/cgi-bin/pack.png' # Suspicious image file (hidden script file) '/home/tokomrjk/grantwydeven.com/alsa_monitor' # Linux Binary/Executable [application/x-sharedlib] '/home/tokomrjk/grantwydeven.com/file61.php' # (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/grantwydeven.com/cgi-bin/alsa_delay' # Linux Binary/Executable [application/x-sharedlib] '/home/tokomrjk/gray.truewinner.xyz/admin.php' # Universal decode regex match = [universal decoder] # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/gray.truewinner.xyz/file61.php' # (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/gray.truewinner.xyz/gray.truewinner.xyz:80.php' # Universal decode regex match = [universal decoder] '/home/tokomrjk/gray.truewinner.xyz/.well-known/admin.php' # Universal decode regex match = [universal decoder] # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/gray.truewinner.xyz/cgi-bin/admin.php' # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/grindhardonline.com/admin.php' # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/grindhardonline.com/file61.php' # (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/grindhardonline.com/grindhardonline.com.php' # Universal decode regex match = [universal decoder] '/home/tokomrjk/grindhardonline.com/.well-known/admin.php' # Universal decode regex match = [universal decoder] # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/grindhardonline.com/cgi-bin/admin.php' # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/gurjaanitv.com/file61.php' # (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/halloffire.org/admin.php' # Universal decode regex match = [universal decoder] # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/halloffire.org/file61.php' # (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/halloffire.org/.well-known/admin.php' # Universal decode regex match = [universal decoder] # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/halloffire.org/cgi-bin/admin.php' # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/happylaundry.xyz/file61.php' # (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/harveybenge.com/file61.php' # (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/headsoccer.site/admin.php' # Universal decode regex match = [universal decoder] # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/headsoccer.site/file61.php' # (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/hijabtrendz.com/.caldav.zip' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/hijabtrendz.com/.trash.tar' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/hijabtrendz.com/.trash.tar.gz' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/hijabtrendz.com/.trash.zip' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/hijabtrendz.com/HB.tar.gz' # (compressed file: HB.css [depth: 1]) Universal decode regex match = [universal decoder] '/home/tokomrjk/hijabtrendz.com/Links.png.png.tar.gz' # (compressed file: home/tokomrjk/jayabangunan.xyz/cgi-bin/Links.png [depth: 1]) Suspicious image file (hidden script file) '/home/tokomrjk/hijabtrendz.com/Links.png.tar' # (compressed file: home/tokomrjk/jayabangunan.xyz/cgi-bin/Links.png [depth: 1]) Suspicious image file (hidden script file) '/home/tokomrjk/hijabtrendz.com/Wiz12.png.png.tar.gz' # (compressed file: home/tokomrjk/jayabangunan.xyz/cgi-bin/Wiz12.png [depth: 1]) Suspicious image file (hidden script file) '/home/tokomrjk/hijabtrendz.com/Wiz12.png.tar' # (compressed file: home/tokomrjk/jayabangunan.xyz/cgi-bin/Wiz12.png [depth: 1]) Suspicious image file (hidden script file) '/home/tokomrjk/hijabtrendz.com/aceh1.asikgeng.com.tar' # (compressed file: aceh1.asikgeng.com:80.php [depth: 1]) Universal decode regex match = [universal decoder] # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/hijabtrendz.com/aceh1.asikgeng.com.tar.gz' # (compressed file: aceh1.asikgeng.com:80.php [depth: 1]) Universal decode regex match = [universal decoder] # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/hijabtrendz.com/aceh1.asikgeng.com.zip' # (compressed file: aceh1.asikgeng.com:80.php [depth: 1]) Universal decode regex match = [universal decoder] # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/hijabtrendz.com/advintageplus.com.zip' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/hijabtrendz.com/akaiho.com.tar' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] # (compressed file: 3000/3000.php [depth: 1]) Universal decode regex match = [universal decoder] '/home/tokomrjk/hijabtrendz.com/akaiho.com.tar.gz' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] # (compressed file: 3000/3000.php [depth: 1]) Universal decode regex match = [universal decoder] '/home/tokomrjk/hijabtrendz.com/algebra.png.png.tar.gz' # (compressed file: home/tokomrjk/gowatallo1.kasvalid.com/cgi-bin/algebra.png [depth: 1]) Suspicious image file (hidden script file) '/home/tokomrjk/hijabtrendz.com/algebra.png.tar' # (compressed file: home/tokomrjk/gowatallo1.kasvalid.com/cgi-bin/algebra.png [depth: 1]) Suspicious image file (hidden script file) '/home/tokomrjk/hijabtrendz.com/andhrabuzz.com.tar.gz' # (compressed file: test/test.php [depth: 1]) Universal decode regex match = [universal decoder] # (compressed file: andhrabuzz.com.php [depth: 1]) Universal decode regex match = [universal decoder] # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] # (compressed file: andhrabuzz.com:80.php [depth: 1]) Universal decode regex match = [universal decoder] '/home/tokomrjk/hijabtrendz.com/asik.polaasik.xyz.tar' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/hijabtrendz.com/asik.polaasik.xyz.tar.gz' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/hijabtrendz.com/asik.polaasik.xyz.zip' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/hijabtrendz.com/asik1.polaasik.xyz.tar' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/hijabtrendz.com/asik1.polaasik.xyz.tar.gz' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/hijabtrendz.com/asikrtp.xyz.zip' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/hijabtrendz.com/asphalt9.site.tar' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/hijabtrendz.com/asphalt9.site.tar.gz' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/hijabtrendz.com/asphalt9.site.zip' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/hijabtrendz.com/banten.kasvalid.com.tar' # (compressed file: banten.kasvalid.com:80.php [depth: 1]) Universal decode regex match = [universal decoder] # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/hijabtrendz.com/banten.kasvalid.com.tar.gz' # (compressed file: banten.kasvalid.com:80.php [depth: 1]) Universal decode regex match = [universal decoder] # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/hijabtrendz.com/banten.kasvalid.com.zip' # (compressed file: banten.kasvalid.com:80.php [depth: 1]) Universal decode regex match = [universal decoder] # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/hijabtrendz.com/banten1.kasvalid.com.tar' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/hijabtrendz.com/banten1.kasvalid.com.tar.gz' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/hijabtrendz.com/barttersite.org.tar' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/hijabtrendz.com/barttersite.org.tar.gz' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/hijabtrendz.com/berkahbaut.xyz.tar' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/hijabtrendz.com/berkahbaut.xyz.tar.gz' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/hijabtrendz.com/berkahbaut.xyz.zip' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/hijabtrendz.com/besiperkasa.xyz.zip' # (compressed file: besiperkasa.xyz:80.php [depth: 1]) Universal decode regex match = [universal decoder] # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] # (compressed file: besiperkasa.xyz.php [depth: 1]) Universal decode regex match = [universal decoder] '/home/tokomrjk/hijabtrendz.com/boosterscript.tar' # (compressed file: boosterscript.css [depth: 1]) Universal decode regex match = [universal decoder] '/home/tokomrjk/hijabtrendz.com/boosterscript.tar.gz' # (compressed file: boosterscript.css [depth: 1]) Universal decode regex match = [universal decoder] '/home/tokomrjk/hijabtrendz.com/boosterscript.zip' # (compressed file: boosterscript.css [depth: 1]) Universal decode regex match = [universal decoder] '/home/tokomrjk/hijabtrendz.com/butterfly-houses.com.tar' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/hijabtrendz.com/butterfly-houses.com.tar.gz' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/hijabtrendz.com/butterfly-houses.com.zip' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/hijabtrendz.com/cafeland.site.tar' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/hijabtrendz.com/cafeland.site.tar.gz' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/hijabtrendz.com/cafeland.site.zip' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/hijabtrendz.com/cannonbusters.com.tar' # (compressed file: www.cannonbusters.com.php [depth: 1]) Universal decode regex match = [universal decoder] # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/hijabtrendz.com/cannonbusters.com.tar.gz' # (compressed file: www.cannonbusters.com.php [depth: 1]) Universal decode regex match = [universal decoder] # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/hijabtrendz.com/caverncollection.com:80.php.com:80.php.tar.gz' # (compressed file: home/tokomrjk/caverncollection.com/caverncollection.com:80.php [depth: 1]) Universal decode regex match = [universal decoder] '/home/tokomrjk/hijabtrendz.com/caverncollection.com:80.php.tar' # (compressed file: home/tokomrjk/caverncollection.com/caverncollection.com:80.php [depth: 1]) Universal decode regex match = [universal decoder] '/home/tokomrjk/hijabtrendz.com/cdokay.com.tar' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/hijabtrendz.com/cdokay.com.tar.gz' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/hijabtrendz.com/cdokay.com.zip' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/hijabtrendz.com/cebuexperience.com.tar' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/hijabtrendz.com/cebuexperience.com.tar.gz' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/hijabtrendz.com/cebuexperience.com.zip' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/hijabtrendz.com/cgi-bin.tar' # (compressed file: COPYRIGHT.png [depth: 1]) Suspicious image file (hidden script file) # (compressed file: turista_pdf.png [depth: 1]) Suspicious image file (hidden script file) # (compressed file: News.module.png [depth: 1]) Suspicious image file (hidden script file) # (compressed file: Links.png [depth: 1]) Suspicious image file (hidden script file) # (compressed file: News.png [depth: 1]) Suspicious image file (hidden script file) # (compressed file: shSec.png [depth: 1]) Suspicious image file (hidden script file) # (compressed file: ckeditor_php4.png [depth: 1]) Suspicious image file (hidden script file) # (compressed file: Wiz12.png [depth: 1]) Suspicious image file (hidden script file) # (compressed file: usergroup_1.png [depth: 1]) Suspicious image file (hidden script file) # (compressed file: control.tpl.png [depth: 1]) Suspicious image file (hidden script file) # (compressed file: deletecss.png [depth: 1]) Suspicious image file (hidden script file) # (compressed file: pmd_general.png [depth: 1]) Suspicious image file (hidden script file) '/home/tokomrjk/hijabtrendz.com/citrustreesonline.com.tar' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/hijabtrendz.com/citrustreesonline.com.tar.gz' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/hijabtrendz.com/citrustreesonline.com.zip' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/hijabtrendz.com/cldwestern.com.tar' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/hijabtrendz.com/cldwestern.com.tar.gz' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/hijabtrendz.com/cldwestern.com.zip' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/hijabtrendz.com/cuttherope.xyz.tar' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] # (compressed file: cuttherope.xyz.php [depth: 1]) Universal decode regex match = [universal decoder] '/home/tokomrjk/hijabtrendz.com/cuttherope.xyz.tar.gz' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] # (compressed file: cuttherope.xyz.php [depth: 1]) Universal decode regex match = [universal decoder] '/home/tokomrjk/hijabtrendz.com/cuttherope.xyz.zip' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] # (compressed file: cuttherope.xyz.php [depth: 1]) Universal decode regex match = [universal decoder] '/home/tokomrjk/hijabtrendz.com/daftarpaus4d.co.in.zip' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/hijabtrendz.com/danish.lng.png.lng.png.tar.gz' # (compressed file: home/tokomrjk/tokoelektronik.xyz/cgi-bin/danish.lng.png [depth: 1]) Suspicious image file (hidden script file) '/home/tokomrjk/hijabtrendz.com/danish.lng.png.tar' # (compressed file: home/tokomrjk/tokoelektronik.xyz/cgi-bin/danish.lng.png [depth: 1]) Suspicious image file (hidden script file) '/home/tokomrjk/hijabtrendz.com/darlingtenniscenter.net.tar' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/hijabtrendz.com/darlingtenniscenter.net.tar.gz' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/hijabtrendz.com/deletecss.png.png.tar.gz' # (compressed file: home/tokomrjk/jayabangunan.xyz/cgi-bin/deletecss.png [depth: 1]) Suspicious image file (hidden script file) '/home/tokomrjk/hijabtrendz.com/deletecss.png.tar' # (compressed file: home/tokomrjk/jayabangunan.xyz/cgi-bin/deletecss.png [depth: 1]) Suspicious image file (hidden script file) '/home/tokomrjk/hijabtrendz.com/demak.jgvictory.xyz.tar' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/hijabtrendz.com/demak.jgvictory.xyz.tar.gz' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/hijabtrendz.com/demak1.jgvictory.xyz.tar' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/hijabtrendz.com/demak1.jgvictory.xyz.tar.gz' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/hijabtrendz.com/dw-jajan.zip' # (compressed file: dw-jajan.php [depth: 1]) Universal decode regex match = [universal decoder] '/home/tokomrjk/hijabtrendz.com/e-turchia.com.tar' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/hijabtrendz.com/e-turchia.com.tar.gz' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/hijabtrendz.com/eiffelinseoul.com.tar' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/hijabtrendz.com/eiffelinseoul.com.tar.gz' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/hijabtrendz.com/entrefans.com.tar' # (compressed file: cgi-bin/htmlword.png [depth: 1]) Suspicious image file (hidden script file) # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/hijabtrendz.com/entrefans.com.tar.gz' # (compressed file: cgi-bin/htmlword.png [depth: 1]) Suspicious image file (hidden script file) # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/hijabtrendz.com/file61.php' # (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/hijabtrendz.com/file61.php.php.tar.gz' # (compressed file: home/tokomrjk/rtp1.selerakas.site/file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/hijabtrendz.com/files.tar.gz' # (compressed file: image/HB/HB.css [depth: 1]) Universal decode regex match = [universal decoder] '/home/tokomrjk/hijabtrendz.com/filezy.net.tar' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/hijabtrendz.com/filezy.net.tar.gz' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/hijabtrendz.com/filezy.net.zip' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/hijabtrendz.com/fjb.templerun.pro.zip' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/hijabtrendz.com/fogarsdelaselva.org.tar' # (compressed file: file61.php [depth: 2]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/hijabtrendz.com/fogarsdelaselva.org.tar.gz' # (compressed file: file61.php [depth: 2]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/hijabtrendz.com/fortressfury.sweetvictory.xyz.tar' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/hijabtrendz.com/fortressfury.sweetvictory.xyz.tar.gz' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/hijabtrendz.com/fortressfury.sweetvictory.xyz.zip' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/hijabtrendz.com/forumeter.com.tar.gz' # (compressed file: .well-known/pki-validation/.1757581394 [depth: 1]) Known exploit = [Fingerprint Match (fp)] [PHP HEADERS Exploit [P2118]] # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] # (compressed file: forumeter.com.php [depth: 1]) Universal decode regex match = [universal decoder] '/home/tokomrjk/hijabtrendz.com/foursquarerum.com.zip' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/hijabtrendz.com/fruitninja.info.tar' # (compressed file: 889/889.php [depth: 1]) Universal decode regex match = [universal decoder] # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/hijabtrendz.com/fruitninja.info.tar.gz' # (compressed file: 889/889.php [depth: 1]) Universal decode regex match = [universal decoder] # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/hijabtrendz.com/galagawars.site.tar' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] # (compressed file: galagawars.site.php [depth: 1]) Universal decode regex match = [universal decoder] '/home/tokomrjk/hijabtrendz.com/galagawars.site.tar.gz' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] # (compressed file: galagawars.site.php [depth: 1]) Universal decode regex match = [universal decoder] '/home/tokomrjk/hijabtrendz.com/galagawars.site.zip' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] # (compressed file: galagawars.site.php [depth: 1]) Universal decode regex match = [universal decoder] '/home/tokomrjk/hijabtrendz.com/gardenscapes.store.tar' # (compressed file: gardenscapes.store.php [depth: 1]) Universal decode regex match = [universal decoder] # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/hijabtrendz.com/gardenscapes.store.tar.gz' # (compressed file: gardenscapes.store.php [depth: 1]) Universal decode regex match = [universal decoder] # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/hijabtrendz.com/gowatallo.kasvalid.com.tar' # (compressed file: gowatallo.kasvalid.com:80.php [depth: 1]) Universal decode regex match = [universal decoder] # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/hijabtrendz.com/gowatallo.kasvalid.com.tar.gz' # (compressed file: gowatallo.kasvalid.com:80.php [depth: 1]) Universal decode regex match = [universal decoder] # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/hijabtrendz.com/gowatallo.kasvalid.com:80.php.kasvalid.com:80.php.tar.gz' # (compressed file: home/tokomrjk/gowatallo.kasvalid.com/gowatallo.kasvalid.com:80.php [depth: 1]) Universal decode regex match = [universal decoder] '/home/tokomrjk/hijabtrendz.com/gowatallo.kasvalid.com:80.php.tar' # (compressed file: home/tokomrjk/gowatallo.kasvalid.com/gowatallo.kasvalid.com:80.php [depth: 1]) Universal decode regex match = [universal decoder] '/home/tokomrjk/hijabtrendz.com/gowatallo1.kasvalid.com.php.kasvalid.com.php.tar.gz' # (compressed file: home/tokomrjk/gowatallo1.kasvalid.com/gowatallo1.kasvalid.com.php [depth: 1]) Universal decode regex match = [universal decoder] '/home/tokomrjk/hijabtrendz.com/gowatallo1.kasvalid.com.php.tar' # (compressed file: home/tokomrjk/gowatallo1.kasvalid.com/gowatallo1.kasvalid.com.php [depth: 1]) Universal decode regex match = [universal decoder] '/home/tokomrjk/hijabtrendz.com/grindhardonline.com.tar' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] # (compressed file: grindhardonline.com.php [depth: 1]) Universal decode regex match = [universal decoder] '/home/tokomrjk/hijabtrendz.com/grindhardonline.com.tar.gz' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] # (compressed file: grindhardonline.com.php [depth: 1]) Universal decode regex match = [universal decoder] '/home/tokomrjk/hijabtrendz.com/grindhardonline.com.zip' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] # (compressed file: grindhardonline.com.php [depth: 1]) Universal decode regex match = [universal decoder] '/home/tokomrjk/hijabtrendz.com/gurjaanitv.com.zip' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/hijabtrendz.com/halloffire.org.zip' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/hijabtrendz.com/happylaundry.xyz.tar' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/hijabtrendz.com/happylaundry.xyz.tar.gz' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/hijabtrendz.com/harveybenge.com.tar' # (compressed file: .well-known/pki-validation/.1758620727 [depth: 1]) Known exploit = [Fingerprint Match (fp)] [PHP HEADERS Exploit [P2118]] # (compressed file: .well-known/pki-validation/typography.php [depth: 1]) Known exploit = [Fingerprint Match (fp)] [PHP HEADERS Exploit [P2118]] # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/hijabtrendz.com/harveybenge.com.tar.gz' # (compressed file: .well-known/pki-validation/.1758620727 [depth: 1]) Known exploit = [Fingerprint Match (fp)] [PHP HEADERS Exploit [P2118]] # (compressed file: .well-known/pki-validation/typography.php [depth: 1]) Known exploit = [Fingerprint Match (fp)] [PHP HEADERS Exploit [P2118]] # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/hijabtrendz.com/headsoccer.site.tar' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/hijabtrendz.com/headsoccer.site.tar.gz' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/hijabtrendz.com/hotelbonacabol.com.tar' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/hijabtrendz.com/hotelbonacabol.com.tar.gz' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/hijabtrendz.com/iamkarachi.org.tar' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/hijabtrendz.com/iamkarachi.org.tar.gz' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/hijabtrendz.com/iamkarachi.org.zip' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/hijabtrendz.com/ikanhias.xyz.tar' # (compressed file: cgi-bin/weekly.png [depth: 1]) Suspicious image file (hidden script file) # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/hijabtrendz.com/ikanhias.xyz.tar.gz' # (compressed file: cgi-bin/weekly.png [depth: 1]) Suspicious image file (hidden script file) # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/hijabtrendz.com/ikanhias.xyz.zip' # (compressed file: cgi-bin/weekly.png [depth: 1]) Suspicious image file (hidden script file) # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/hijabtrendz.com/isodaftar.co.in.tar' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] # (compressed file: indexseo.php [depth: 1]) Universal decode regex match = [universal decoder] '/home/tokomrjk/hijabtrendz.com/isodaftar.co.in.tar.gz' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] # (compressed file: indexseo.php [depth: 1]) Universal decode regex match = [universal decoder] '/home/tokomrjk/hijabtrendz.com/isodaftar.co.in.zip' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] # (compressed file: indexseo.php [depth: 1]) Universal decode regex match = [universal decoder] '/home/tokomrjk/hijabtrendz.com/isogoo.com.zip' # (compressed file: isogoo.com.php [depth: 1]) Universal decode regex match = [universal decoder] # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] # (compressed file: isogoo.com:80.php [depth: 1]) Universal decode regex match = [universal decoder] '/home/tokomrjk/hijabtrendz.com/isoloundry.xyz.tar' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/hijabtrendz.com/isoloundry.xyz.tar.gz' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/hijabtrendz.com/isoloundry.xyz.zip' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/hijabtrendz.com/isotenan.xyz.tar' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/hijabtrendz.com/isotenan.xyz.tar.gz' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/hijabtrendz.com/jajanpola.xyz.tar' # (compressed file: jajanpola.xyz:80.php [depth: 2]) Universal decode regex match = [universal decoder] # (compressed file: file61.php [depth: 3]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/hijabtrendz.com/jajanpola.xyz.tar.gz' # (compressed file: jajanpola.xyz:80.php [depth: 2]) Universal decode regex match = [universal decoder] # (compressed file: file61.php [depth: 3]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/hijabtrendz.com/jajanpola.xyz.zip' # (compressed file: jajanpola.xyz:80.php [depth: 2]) Universal decode regex match = [universal decoder] # (compressed file: file61.php [depth: 3]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/hijabtrendz.com/jajanpretzel.com.tar' # (compressed file: vip/vip.php [depth: 1]) Universal decode regex match = [universal decoder] # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] # (compressed file: jajanpretzel.com:80.php [depth: 1]) Universal decode regex match = [universal decoder] '/home/tokomrjk/hijabtrendz.com/jajanpretzel.com.tar.gz' # (compressed file: vip/vip.php [depth: 1]) Universal decode regex match = [universal decoder] # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] # (compressed file: jajanpretzel.com:80.php [depth: 1]) Universal decode regex match = [universal decoder] '/home/tokomrjk/hijabtrendz.com/jbchampions.com.zip' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/hijabtrendz.com/jennamcwilliams.com.tar' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/hijabtrendz.com/jennamcwilliams.com.tar.gz' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/hijabtrendz.com/jennamcwilliams.com.zip' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/hijabtrendz.com/jgvictory.xyz.tar' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/hijabtrendz.com/jgvictory.xyz.tar.gz' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/hijabtrendz.com/jgvictory.xyz.zip' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/hijabtrendz.com/joeynegro.com.tar' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/hijabtrendz.com/joeynegro.com.tar.gz' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/hijabtrendz.com/joeynegro.com.zip' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/hijabtrendz.com/jogja.jbchampions.com.tar' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/hijabtrendz.com/jogja.jbchampions.com.tar.gz' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/hijabtrendz.com/jogja1.jbchampions.com.tar' # (compressed file: jogja1.jbchampions.com:80.php [depth: 1]) Universal decode regex match = [universal decoder] # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/hijabtrendz.com/jogja1.jbchampions.com.tar.gz' # (compressed file: jogja1.jbchampions.com:80.php [depth: 1]) Universal decode regex match = [universal decoder] # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/hijabtrendz.com/jogja2.jbchampions.com.tar' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/hijabtrendz.com/jogja2.jbchampions.com.tar.gz' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/hijabtrendz.com/jos.livedrawjos.com.zip' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/hijabtrendz.com/jos3.polajos.xyz.zip' # (compressed file: nc_assets/img/featured/600/600.css [depth: 1]) Universal decode regex match = [universal decoder] # (compressed file: nc_assets/img/pictograms/150/150.css [depth: 1]) Universal decode regex match = [universal decoder] # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/hijabtrendz.com/jos4.polajos.xyz.tar' # (compressed file: nc_assets/img/pictograms/150/150.css [depth: 1]) Universal decode regex match = [universal decoder] # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] # (compressed file: files/image/HB/HB.css [depth: 1]) Universal decode regex match = [universal decoder] '/home/tokomrjk/hijabtrendz.com/jos4.polajos.xyz.tar.gz' # (compressed file: nc_assets/img/pictograms/150/150.css [depth: 1]) Universal decode regex match = [universal decoder] # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] # (compressed file: files/image/HB/HB.css [depth: 1]) Universal decode regex match = [universal decoder] '/home/tokomrjk/hijabtrendz.com/jos4.polajos.xyz.zip' # (compressed file: nc_assets/img/pictograms/150/150.css [depth: 1]) Universal decode regex match = [universal decoder] # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] # (compressed file: files/image/HB/HB.css [depth: 1]) Universal decode regex match = [universal decoder] '/home/tokomrjk/hijabtrendz.com/josartis.co.in.zip' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/hijabtrendz.com/josid.sweetvictory.xyz.tar' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/hijabtrendz.com/josid.sweetvictory.xyz.tar.gz' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/hijabtrendz.com/jostoto.it.com.tar.gz' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/hijabtrendz.com/kaktovik.com.tar.gz' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/hijabtrendz.com/kalingga.xrial.com.zip' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] # (compressed file: kalingga.xrial.com.php [depth: 1]) Universal decode regex match = [universal decoder] '/home/tokomrjk/hijabtrendz.com/kas.polakas.xyz.zip' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/hijabtrendz.com/kas3.polakas.xyz.zip' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/hijabtrendz.com/kas4.polakas.xyz.zip' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/hijabtrendz.com/kas5.polakas.xyz.tar' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/hijabtrendz.com/kas5.polakas.xyz.tar.gz' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/hijabtrendz.com/kas8.polakas.xyz.zip' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/hijabtrendz.com/kasvalid.com.tar' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/hijabtrendz.com/kasvalid.com.tar.gz' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/hijabtrendz.com/kasvalid.com.zip' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/hijabtrendz.com/kediri.asikgeng.com.tar' # (compressed file: kediri.asikgeng.com.php [depth: 1]) Universal decode regex match = [universal decoder] # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] # (compressed file: kediri.asikgeng.com:80.php [depth: 1]) Universal decode regex match = [universal decoder] '/home/tokomrjk/hijabtrendz.com/kediri.asikgeng.com.tar.gz' # (compressed file: kediri.asikgeng.com.php [depth: 1]) Universal decode regex match = [universal decoder] # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] # (compressed file: kediri.asikgeng.com:80.php [depth: 1]) Universal decode regex match = [universal decoder] '/home/tokomrjk/hijabtrendz.com/kediri.asikgeng.com.zip' # (compressed file: kediri.asikgeng.com.php [depth: 1]) Universal decode regex match = [universal decoder] # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] # (compressed file: kediri.asikgeng.com:80.php [depth: 1]) Universal decode regex match = [universal decoder] '/home/tokomrjk/hijabtrendz.com/kediri1.asikgeng.com.zip' # (compressed file: kediri1.asikgeng.com:80.php [depth: 1]) Universal decode regex match = [universal decoder] # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/hijabtrendz.com/kippei.net.tar' # (compressed file: kippei.net.php [depth: 1]) Universal decode regex match = [universal decoder] # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/hijabtrendz.com/kippei.net.tar.gz' # (compressed file: kippei.net.php [depth: 1]) Universal decode regex match = [universal decoder] # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/hijabtrendz.com/kisahseru.com.tar' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/hijabtrendz.com/kisahseru.com.tar.gz' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/hijabtrendz.com/kisahseru.com.zip' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/hijabtrendz.com/kutai.josfaction.com.tar' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/hijabtrendz.com/kutai.josfaction.com.tar.gz' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/hijabtrendz.com/kutai.josfaction.com.zip' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/hijabtrendz.com/laundryasik.xyz.tar' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/hijabtrendz.com/laundryasik.xyz.tar.gz' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/hijabtrendz.com/laundryasik.xyz.zip' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/hijabtrendz.com/laundryhebat.xyz.tar' # (compressed file: laundryhebat.xyz.php [depth: 1]) Universal decode regex match = [universal decoder] # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] # (compressed file: laundryhebat.xyz:80.php [depth: 1]) Universal decode regex match = [universal decoder] '/home/tokomrjk/hijabtrendz.com/laundryhebat.xyz.tar.gz' # (compressed file: laundryhebat.xyz.php [depth: 1]) Universal decode regex match = [universal decoder] # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] # (compressed file: laundryhebat.xyz:80.php [depth: 1]) Universal decode regex match = [universal decoder] '/home/tokomrjk/hijabtrendz.com/laundrykita.xyz.zip' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/hijabtrendz.com/laundrytbk.xyz.zip' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/hijabtrendz.com/ld.livedrawjos889.xyz.tar.gz' # (compressed file: wp-json/wp/engine.php [depth: 1]) Universal decode regex match = [universal decoder] # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/hijabtrendz.com/lp.fruitninja.info.zip' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/hijabtrendz.com/lp.xrial.com.tar' # (compressed file: lp.xrial.com.php [depth: 1]) Universal decode regex match = [universal decoder] # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] # (compressed file: lp.xrial.com:80.php [depth: 1]) Universal decode regex match = [universal decoder] '/home/tokomrjk/hijabtrendz.com/lp.xrial.com.tar.gz' # (compressed file: lp.xrial.com.php [depth: 1]) Universal decode regex match = [universal decoder] # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] # (compressed file: lp.xrial.com:80.php [depth: 1]) Universal decode regex match = [universal decoder] '/home/tokomrjk/hijabtrendz.com/lp.xrial.com.zip' # (compressed file: lp.xrial.com.php [depth: 1]) Universal decode regex match = [universal decoder] # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] # (compressed file: lp.xrial.com:80.php [depth: 1]) Universal decode regex match = [universal decoder] '/home/tokomrjk/hijabtrendz.com/lp.xrial.com:80.php.tar' # (compressed file: home/tokomrjk/lp.xrial.com/lp.xrial.com:80.php [depth: 1]) Universal decode regex match = [universal decoder] '/home/tokomrjk/hijabtrendz.com/lp.xrial.com:80.php.xrial.com:80.php.tar.gz' # (compressed file: home/tokomrjk/lp.xrial.com/lp.xrial.com:80.php [depth: 1]) Universal decode regex match = [universal decoder] '/home/tokomrjk/hijabtrendz.com/madjoelancar.xyz.tar' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/hijabtrendz.com/madjoelancar.xyz.tar.gz' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/hijabtrendz.com/magelang.josfaction.com:80.php.tar' # (compressed file: home/tokomrjk/magelang.josfaction.com/magelang.josfaction.com:80.php [depth: 1]) Universal decode regex match = [universal decoder] '/home/tokomrjk/hijabtrendz.com/majapahit1.josfaction.com.zip' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] # (compressed file: majapahit1.josfaction.com.php [depth: 1]) Universal decode regex match = [universal decoder] '/home/tokomrjk/hijabtrendz.com/malang.sjcinema.com.tar' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/hijabtrendz.com/malang.sjcinema.com.tar.gz' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/hijabtrendz.com/mataram.isogoo.com.tar' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/hijabtrendz.com/mataram.isogoo.com.tar.gz' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/hijabtrendz.com/mataram1.isogoo.com:80.php.isogoo.com:80.php.tar.gz' # (compressed file: home/tokomrjk/mataram1.isogoo.com/mataram1.isogoo.com:80.php [depth: 1]) Universal decode regex match = [universal decoder] '/home/tokomrjk/hijabtrendz.com/mataram1.isogoo.com:80.php.tar' # (compressed file: home/tokomrjk/mataram1.isogoo.com/mataram1.isogoo.com:80.php [depth: 1]) Universal decode regex match = [universal decoder] '/home/tokomrjk/hijabtrendz.com/medang.paussea.com.tar' # (compressed file: medang.paussea.com:80.php [depth: 1]) Universal decode regex match = [universal decoder] # (compressed file: medang.paussea.com.php [depth: 1]) Universal decode regex match = [universal decoder] # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/hijabtrendz.com/medang.paussea.com.tar.gz' # (compressed file: medang.paussea.com:80.php [depth: 1]) Universal decode regex match = [universal decoder] # (compressed file: medang.paussea.com.php [depth: 1]) Universal decode regex match = [universal decoder] # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/hijabtrendz.com/medang.paussea.com.zip' # (compressed file: medang.paussea.com:80.php [depth: 1]) Universal decode regex match = [universal decoder] # (compressed file: medang.paussea.com.php [depth: 1]) Universal decode regex match = [universal decoder] # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/hijabtrendz.com/medang1.paussea.com.zip' # (compressed file: medang1.paussea.com:80.php [depth: 1]) Universal decode regex match = [universal decoder] # (compressed file: medang1.paussea.com.php [depth: 1]) Universal decode regex match = [universal decoder] # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/hijabtrendz.com/misterinusantara.com.zip' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/hijabtrendz.com/mitrabangunan.xyz.tar' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/hijabtrendz.com/mitrabangunan.xyz.tar.gz' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/hijabtrendz.com/more.png.png.tar.gz' # (compressed file: home/tokomrjk/josmart.in/cgi-bin/more.png [depth: 1]) Suspicious image file (hidden script file) '/home/tokomrjk/hijabtrendz.com/more.png.tar' # (compressed file: home/tokomrjk/josmart.in/cgi-bin/more.png [depth: 1]) Suspicious image file (hidden script file) '/home/tokomrjk/hijabtrendz.com/more_links.png.png.tar.gz' # (compressed file: home/tokomrjk/josmart.in/cgi-bin/more_links.png [depth: 1]) Suspicious image file (hidden script file) '/home/tokomrjk/hijabtrendz.com/more_links.png.tar' # (compressed file: home/tokomrjk/josmart.in/cgi-bin/more_links.png [depth: 1]) Suspicious image file (hidden script file) '/home/tokomrjk/hijabtrendz.com/musixclan.com.tar' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/hijabtrendz.com/musixclan.com.tar.gz' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/hijabtrendz.com/musixclan.com.zip' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/hijabtrendz.com/nc_assets.tar' # (compressed file: nc_assets.css [depth: 1]) Universal decode regex match = [universal decoder] # (compressed file: img/icons/icons.css [depth: 1]) Universal decode regex match = [universal decoder] # (compressed file: img/featured/featured.css [depth: 1]) Universal decode regex match = [universal decoder] # (compressed file: img/featured/600/600.css [depth: 1]) Universal decode regex match = [universal decoder] # (compressed file: img/pictograms/150/150.css [depth: 1]) Universal decode regex match = [universal decoder] '/home/tokomrjk/hijabtrendz.com/nc_assets.tar.gz' # (compressed file: nc_assets.css [depth: 1]) Universal decode regex match = [universal decoder] # (compressed file: img/icons/icons.css [depth: 1]) Universal decode regex match = [universal decoder] # (compressed file: img/featured/featured.css [depth: 1]) Universal decode regex match = [universal decoder] # (compressed file: img/featured/600/600.css [depth: 1]) Universal decode regex match = [universal decoder] # (compressed file: img/pictograms/150/150.css [depth: 1]) Universal decode regex match = [universal decoder] '/home/tokomrjk/hijabtrendz.com/newplayerstheatre.com.tar' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/hijabtrendz.com/newplayerstheatre.com.tar.gz' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/hijabtrendz.com/newplayerstheatre.com.zip' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/hijabtrendz.com/ngopibareng.xyz.php.tar' # (compressed file: home/tokomrjk/ngopibareng.xyz/ngopibareng.xyz.php [depth: 1]) Universal decode regex match = [universal decoder] '/home/tokomrjk/hijabtrendz.com/ngopibareng.xyz.php.xyz.php.tar.gz' # (compressed file: home/tokomrjk/ngopibareng.xyz/ngopibareng.xyz.php [depth: 1]) Universal decode regex match = [universal decoder] '/home/tokomrjk/hijabtrendz.com/ngopibareng.xyz.zip' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] # (compressed file: ngopibareng.xyz.php [depth: 1]) Universal decode regex match = [universal decoder] '/home/tokomrjk/hijabtrendz.com/noobow.com.php.com.php.tar.gz' # (compressed file: home/tokomrjk/noobow.com/noobow.com.php [depth: 1]) Universal decode regex match = [universal decoder] '/home/tokomrjk/hijabtrendz.com/noobow.com.php.tar' # (compressed file: home/tokomrjk/noobow.com/noobow.com.php [depth: 1]) Universal decode regex match = [universal decoder] '/home/tokomrjk/hijabtrendz.com/omgsuse.com.tar' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/hijabtrendz.com/omgsuse.com.tar.gz' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/hijabtrendz.com/omgsuse.com.zip' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/hijabtrendz.com/opentheoceans.com.zip' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/hijabtrendz.com/orkuti.josfaction.com.tar' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/hijabtrendz.com/orkuti.josfaction.com.tar.gz' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/hijabtrendz.com/orkuti.net.tar.gz' # (compressed file: cgi-bin/cma_currencies_scheduled.png [depth: 1]) Suspicious image file (hidden script file) # (compressed file: cgi-bin/postsidebar_events_inc.png [depth: 1]) Suspicious image file (hidden script file) # (compressed file: cgi-bin/senduseremail.png [depth: 1]) Suspicious image file (hidden script file) # (compressed file: cgi-bin/cma_m_scheduled.png [depth: 1]) Suspicious image file (hidden script file) # (compressed file: cgi-bin/table.currencies.png [depth: 1]) Suspicious image file (hidden script file) # (compressed file: cgi-bin/layout.css.png [depth: 1]) Suspicious image file (hidden script file) # (compressed file: cgi-bin/handlevirus.png [depth: 1]) Suspicious image file (hidden script file) # (compressed file: .well-known/pki-validation/phocalongtext.png [depth: 1]) Suspicious image file (hidden script file) # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/hijabtrendz.com/orkuti1.josfaction.com.zip' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] # (compressed file: orkuti1.josfaction.com:80.php [depth: 1]) Universal decode regex match = [universal decoder] # (compressed file: orkuti1.josfaction.com.php [depth: 1]) Universal decode regex match = [universal decoder] '/home/tokomrjk/hijabtrendz.com/padjajaran.josfaction.com.tar' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/hijabtrendz.com/padjajaran.josfaction.com.tar.gz' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/hijabtrendz.com/padjajaran.josfaction.com.zip' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/hijabtrendz.com/padjajaran1.josfaction.com.zip' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/hijabtrendz.com/pajang3.paussea.com.tar' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/hijabtrendz.com/pajang3.paussea.com.tar.gz' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/hijabtrendz.com/pasai.isogoo.com.zip' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] # (compressed file: pasai.isogoo.com.php [depth: 1]) Universal decode regex match = [universal decoder] '/home/tokomrjk/hijabtrendz.com/pasai1.isogoo.com.tar' # (compressed file: pasai1.isogoo.com:80.php [depth: 1]) Universal decode regex match = [universal decoder] # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/hijabtrendz.com/pasai1.isogoo.com.tar.gz' # (compressed file: pasai1.isogoo.com:80.php [depth: 1]) Universal decode regex match = [universal decoder] # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/hijabtrendz.com/pasai1.isogoo.com.zip' # (compressed file: pasai1.isogoo.com:80.php [depth: 1]) Universal decode regex match = [universal decoder] # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/hijabtrendz.com/paus4dlink.com.tar' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/hijabtrendz.com/paus4dlink.com.tar.gz' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/hijabtrendz.com/paussea.com.tar' # (compressed file: paussea.com:80.php [depth: 1]) Universal decode regex match = [universal decoder] # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/hijabtrendz.com/paussea.com.tar.gz' # (compressed file: paussea.com:80.php [depth: 1]) Universal decode regex match = [universal decoder] # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/hijabtrendz.com/paussea.com.zip' # (compressed file: paussea.com:80.php [depth: 1]) Universal decode regex match = [universal decoder] # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/hijabtrendz.com/picmgr.png.png.tar.gz' # (compressed file: home/tokomrjk/josmart.in/cgi-bin/picmgr.png [depth: 1]) Suspicious image file (hidden script file) '/home/tokomrjk/hijabtrendz.com/picmgr.png.tar' # (compressed file: home/tokomrjk/josmart.in/cgi-bin/picmgr.png [depth: 1]) Suspicious image file (hidden script file) '/home/tokomrjk/hijabtrendz.com/pimpmyexcel.com.tar.gz' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/hijabtrendz.com/pinehearstresearch.com.tar' # (compressed file: pinehearstresearch.com.php [depth: 1]) Universal decode regex match = [universal decoder] # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/hijabtrendz.com/pinehearstresearch.com.tar.gz' # (compressed file: pinehearstresearch.com.php [depth: 1]) Universal decode regex match = [universal decoder] # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/hijabtrendz.com/pinehearstresearch.com.zip' # (compressed file: pinehearstresearch.com.php [depth: 1]) Universal decode regex match = [universal decoder] # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/hijabtrendz.com/pioneerwinetrail.com.tar.gz' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] # (compressed file: www.pioneerwinetrail.com.php [depth: 1]) Universal decode regex match = [universal decoder] '/home/tokomrjk/hijabtrendz.com/plantvszombies.xyz.tar' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/hijabtrendz.com/plantvszombies.xyz.tar.gz' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/hijabtrendz.com/plum.sweetvictory.xyz.zip' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/hijabtrendz.com/pola1.rtpasik.live:80.php.rtpasik.live:80.php.tar.gz' # (compressed file: home/tokomrjk/pola1.rtpasik.live/pola1.rtpasik.live:80.php [depth: 1]) Universal decode regex match = [universal decoder] '/home/tokomrjk/hijabtrendz.com/pola1.rtpasik.live:80.php.tar' # (compressed file: home/tokomrjk/pola1.rtpasik.live/pola1.rtpasik.live:80.php [depth: 1]) Universal decode regex match = [universal decoder] '/home/tokomrjk/hijabtrendz.com/polaasik.xyz.tar' # (compressed file: polaasik.xyz:80.php [depth: 1]) Universal decode regex match = [universal decoder] # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/hijabtrendz.com/polaasik.xyz.tar.gz' # (compressed file: polaasik.xyz:80.php [depth: 1]) Universal decode regex match = [universal decoder] # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/hijabtrendz.com/polaasik.xyz.zip' # (compressed file: polaasik.xyz:80.php [depth: 1]) Universal decode regex match = [universal decoder] # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/hijabtrendz.com/polaasik.xyz:80.php.tar' # (compressed file: home/tokomrjk/polaasik.xyz/polaasik.xyz:80.php [depth: 1]) Universal decode regex match = [universal decoder] '/home/tokomrjk/hijabtrendz.com/polaasik.xyz:80.php.xyz:80.php.tar.gz' # (compressed file: home/tokomrjk/polaasik.xyz/polaasik.xyz:80.php [depth: 1]) Universal decode regex match = [universal decoder] '/home/tokomrjk/hijabtrendz.com/polajosgcr.xyz.tar' # (compressed file: polajosgcr.xyz:80.php [depth: 1]) Universal decode regex match = [universal decoder] # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] # (compressed file: polajosgcr.xyz.php [depth: 1]) Universal decode regex match = [universal decoder] '/home/tokomrjk/hijabtrendz.com/polajosgcr.xyz.tar.gz' # (compressed file: polajosgcr.xyz:80.php [depth: 1]) Universal decode regex match = [universal decoder] # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] # (compressed file: polajosgcr.xyz.php [depth: 1]) Universal decode regex match = [universal decoder] '/home/tokomrjk/hijabtrendz.com/polajosgcr.xyz.zip' # (compressed file: polajosgcr.xyz:80.php [depth: 1]) Universal decode regex match = [universal decoder] # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] # (compressed file: polajosgcr.xyz.php [depth: 1]) Universal decode regex match = [universal decoder] '/home/tokomrjk/hijabtrendz.com/polaslotjos.xyz.zip' # (compressed file: file61.php [depth: 3]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/hijabtrendz.com/queenlatifahmusic.com.tar' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/hijabtrendz.com/queenlatifahmusic.com.tar.gz' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/hijabtrendz.com/queenlatifahmusic.com.zip' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/hijabtrendz.com/red.sweetvictory.xyz.tar' # (compressed file: file61.php [depth: 2]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/hijabtrendz.com/red.sweetvictory.xyz.tar.gz' # (compressed file: file61.php [depth: 2]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/hijabtrendz.com/ronmiles.org.tar' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/hijabtrendz.com/ronmiles.org.tar.gz' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/hijabtrendz.com/ronmiles.org.zip' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/hijabtrendz.com/rtp.selerakas.site.tar' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/hijabtrendz.com/rtp.selerakas.site.tar.gz' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/hijabtrendz.com/rtp.selerakas.site.zip' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/hijabtrendz.com/rtp1.josmart.in.zip' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/hijabtrendz.com/rtp2.jajanpola.xyz.zip' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/hijabtrendz.com/rtp2.selerakas.site.zip' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/hijabtrendz.com/rtp3.josmart.in.tar' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/hijabtrendz.com/rtp3.josmart.in.tar.gz' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/hijabtrendz.com/rtp4.selerakas.site.tar' # (compressed file: rtpbooster/rtpbooster.css [depth: 1]) Universal decode regex match = [universal decoder] # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/hijabtrendz.com/rtp4.selerakas.site.tar.gz' # (compressed file: rtpbooster/rtpbooster.css [depth: 1]) Universal decode regex match = [universal decoder] # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/hijabtrendz.com/rtp6.josmart.in.tar.gz' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/hijabtrendz.com/rtpjos.live.zip' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/hijabtrendz.com/saddmussoc.org.zip' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/hijabtrendz.com/scriptasik.xyz.tar' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] # (compressed file: dw-asik/dw-asik.php [depth: 1]) Universal decode regex match = [universal decoder] '/home/tokomrjk/hijabtrendz.com/scriptasik.xyz.tar.gz' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] # (compressed file: dw-asik/dw-asik.php [depth: 1]) Universal decode regex match = [universal decoder] '/home/tokomrjk/hijabtrendz.com/scriptasik.xyz.zip' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] # (compressed file: dw-asik/dw-asik.php [depth: 1]) Universal decode regex match = [universal decoder] '/home/tokomrjk/hijabtrendz.com/scriptjos.xyz.tar' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/hijabtrendz.com/scriptjos.xyz.tar.gz' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/hijabtrendz.com/scriptjos.xyz.zip' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/hijabtrendz.com/scriptkas.xyz.tar' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/hijabtrendz.com/scriptkas.xyz.tar.gz' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/hijabtrendz.com/scriptkas.xyz.zip' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/hijabtrendz.com/sdwatersmartcip.com.tar' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/hijabtrendz.com/sdwatersmartcip.com.tar.gz' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/hijabtrendz.com/sdwatersmartcip.com.zip' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/hijabtrendz.com/selerakas.site.tar' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/hijabtrendz.com/selerakas.site.tar.gz' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/hijabtrendz.com/selerakas.site.zip' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/hijabtrendz.com/shSec.png.png.tar.gz' # (compressed file: home/tokomrjk/jayabangunan.xyz/cgi-bin/shSec.png [depth: 1]) Suspicious image file (hidden script file) '/home/tokomrjk/hijabtrendz.com/shSec.png.tar' # (compressed file: home/tokomrjk/jayabangunan.xyz/cgi-bin/shSec.png [depth: 1]) Suspicious image file (hidden script file) '/home/tokomrjk/hijabtrendz.com/shikidrop.com.tar.gz' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/hijabtrendz.com/singasari1.asikgeng.com.tar' # (compressed file: singasari1.asikgeng.com:80.php [depth: 1]) Universal decode regex match = [universal decoder] # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/hijabtrendz.com/singasari1.asikgeng.com.tar.gz' # (compressed file: singasari1.asikgeng.com:80.php [depth: 1]) Universal decode regex match = [universal decoder] # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/hijabtrendz.com/singasari2.asikgeng.com.tar' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/hijabtrendz.com/singasari2.asikgeng.com.tar.gz' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/hijabtrendz.com/sjcinema.com.tar' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] # (compressed file: sjcinema.com.php [depth: 1]) Universal decode regex match = [universal decoder] '/home/tokomrjk/hijabtrendz.com/sjcinema.com.tar.gz' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] # (compressed file: sjcinema.com.php [depth: 1]) Universal decode regex match = [universal decoder] '/home/tokomrjk/hijabtrendz.com/sjcinema.com.zip' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] # (compressed file: sjcinema.com.php [depth: 1]) Universal decode regex match = [universal decoder] '/home/tokomrjk/hijabtrendz.com/solidarionoticias.com.tar' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/hijabtrendz.com/solidarionoticias.com.tar.gz' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/hijabtrendz.com/solidarionoticias.com.zip' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/hijabtrendz.com/solo.isogoo.com.tar' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] # (compressed file: solo.isogoo.com:80.php [depth: 1]) Universal decode regex match = [universal decoder] '/home/tokomrjk/hijabtrendz.com/solo.isogoo.com.tar.gz' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] # (compressed file: solo.isogoo.com:80.php [depth: 1]) Universal decode regex match = [universal decoder] '/home/tokomrjk/hijabtrendz.com/solo.isogoo.com:80.php.isogoo.com:80.php.tar.gz' # (compressed file: home/tokomrjk/solo.isogoo.com/solo.isogoo.com:80.php [depth: 1]) Universal decode regex match = [universal decoder] '/home/tokomrjk/hijabtrendz.com/solo.isogoo.com:80.php.tar' # (compressed file: home/tokomrjk/solo.isogoo.com/solo.isogoo.com:80.php [depth: 1]) Universal decode regex match = [universal decoder] '/home/tokomrjk/hijabtrendz.com/soulfullvibes.net.zip' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/hijabtrendz.com/sriwijaya.kasvalid.com.tar' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/hijabtrendz.com/sriwijaya.kasvalid.com.tar.gz' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/hijabtrendz.com/sriwijaya1.kasvalid.com.tar' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] # (compressed file: sriwijaya1.kasvalid.com:80.php [depth: 1]) Universal decode regex match = [universal decoder] '/home/tokomrjk/hijabtrendz.com/sriwijaya1.kasvalid.com.tar.gz' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] # (compressed file: sriwijaya1.kasvalid.com:80.php [depth: 1]) Universal decode regex match = [universal decoder] '/home/tokomrjk/hijabtrendz.com/sulfurlamp.com.tar' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/hijabtrendz.com/sulfurlamp.com.tar.gz' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/hijabtrendz.com/sulfurlamp.com.zip' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/hijabtrendz.com/taiyotoryo.com.zip' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/hijabtrendz.com/tarumanegara.asikgeng.com.tar' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] # (compressed file: tarumanegara.asikgeng.com.php [depth: 1]) Universal decode regex match = [universal decoder] '/home/tokomrjk/hijabtrendz.com/tarumanegara.asikgeng.com.tar.gz' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] # (compressed file: tarumanegara.asikgeng.com.php [depth: 1]) Universal decode regex match = [universal decoder] '/home/tokomrjk/hijabtrendz.com/tarumanegara.asikgeng.com.zip' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] # (compressed file: tarumanegara.asikgeng.com.php [depth: 1]) Universal decode regex match = [universal decoder] '/home/tokomrjk/hijabtrendz.com/tarumanegara1.asikgeng.com.tar' # (compressed file: tarumanegara1.asikgeng.com.php [depth: 1]) Universal decode regex match = [universal decoder] # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/hijabtrendz.com/tarumanegara1.asikgeng.com.tar.gz' # (compressed file: tarumanegara1.asikgeng.com.php [depth: 1]) Universal decode regex match = [universal decoder] # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/hijabtrendz.com/tarumanegara1.asikgeng.com.zip' # (compressed file: tarumanegara1.asikgeng.com.php [depth: 1]) Universal decode regex match = [universal decoder] # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/hijabtrendz.com/taxiplasm.net.tar' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/hijabtrendz.com/taxiplasm.net.tar.gz' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/hijabtrendz.com/taxiplasm.net.zip' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/hijabtrendz.com/tbl_common.png.png.tar.gz' # (compressed file: home/tokomrjk/tokoelektronik.xyz/cgi-bin/tbl_common.png [depth: 1]) Suspicious image file (hidden script file) '/home/tokomrjk/hijabtrendz.com/tbl_common.png.tar' # (compressed file: home/tokomrjk/tokoelektronik.xyz/cgi-bin/tbl_common.png [depth: 1]) Suspicious image file (hidden script file) '/home/tokomrjk/hijabtrendz.com/templerun.pro.tar.gz' # (compressed file: trampoliner/trampoliner.css [depth: 2]) Universal decode regex match = [universal decoder] # (compressed file: file61.php [depth: 2]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/hijabtrendz.com/ternate.sjcinema.com.tar' # (compressed file: ternate.sjcinema.com.php [depth: 1]) Universal decode regex match = [universal decoder] # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/hijabtrendz.com/ternate.sjcinema.com.tar.gz' # (compressed file: ternate.sjcinema.com.php [depth: 1]) Universal decode regex match = [universal decoder] # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/hijabtrendz.com/ternate1.sjcinema.com.tar' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/hijabtrendz.com/ternate1.sjcinema.com.tar.gz' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/hijabtrendz.com/ternate1.sjcinema.com.zip' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/hijabtrendz.com/thecamphuntsville.com.tar' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/hijabtrendz.com/thecamphuntsville.com.tar.gz' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/hijabtrendz.com/thecamphuntsville.com.zip' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/hijabtrendz.com/theelms.net.tar' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/hijabtrendz.com/theelms.net.tar.gz' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/hijabtrendz.com/theendofmyaddiction.org.tar' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/hijabtrendz.com/theendofmyaddiction.org.tar.gz' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/hijabtrendz.com/theendofmyaddiction.org.zip' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/hijabtrendz.com/theneongroup.org.tar' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/hijabtrendz.com/theneongroup.org.tar.gz' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/hijabtrendz.com/thewhitewallsessions.com.zip' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/hijabtrendz.com/tidore.jbchampions.com.tar' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/hijabtrendz.com/tidore.jbchampions.com.tar.gz' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/hijabtrendz.com/tidore.jbchampions.com.zip' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/hijabtrendz.com/tidore1.jbchampions.com.tar' # (compressed file: tidore1.jbchampions.com.php [depth: 1]) Universal decode regex match = [universal decoder] # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] # (compressed file: tidore1.jbchampions.com:80.php [depth: 1]) Universal decode regex match = [universal decoder] '/home/tokomrjk/hijabtrendz.com/tidore1.jbchampions.com.tar.gz' # (compressed file: tidore1.jbchampions.com.php [depth: 1]) Universal decode regex match = [universal decoder] # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] # (compressed file: tidore1.jbchampions.com:80.php [depth: 1]) Universal decode regex match = [universal decoder] '/home/tokomrjk/hijabtrendz.com/tokoalatlistrik.xyz:80.php.tar' # (compressed file: home/tokomrjk/tokoalatlistrik.xyz/tokoalatlistrik.xyz:80.php [depth: 1]) Universal decode regex match = [universal decoder] '/home/tokomrjk/hijabtrendz.com/tokoalatlistrik.xyz:80.php.xyz:80.php.tar.gz' # (compressed file: home/tokomrjk/tokoalatlistrik.xyz/tokoalatlistrik.xyz:80.php [depth: 1]) Universal decode regex match = [universal decoder] '/home/tokomrjk/hijabtrendz.com/trastosdeguerra.com.tar' # (compressed file: trastosdeguerra.com:80.php [depth: 1]) Universal decode regex match = [universal decoder] # (compressed file: trastosdeguerra.com.php [depth: 1]) Universal decode regex match = [universal decoder] # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/hijabtrendz.com/trastosdeguerra.com.tar.gz' # (compressed file: trastosdeguerra.com:80.php [depth: 1]) Universal decode regex match = [universal decoder] # (compressed file: trastosdeguerra.com.php [depth: 1]) Universal decode regex match = [universal decoder] # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/hijabtrendz.com/truewinner.xyz.tar' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] # (compressed file: truewinner.xyz:80.php [depth: 1]) Universal decode regex match = [universal decoder] '/home/tokomrjk/hijabtrendz.com/truewinner.xyz.tar.gz' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] # (compressed file: truewinner.xyz:80.php [depth: 1]) Universal decode regex match = [universal decoder] '/home/tokomrjk/hijabtrendz.com/vancouvershinpo.com.zip' # (compressed file: vancouvershinpo.com:80.php [depth: 1]) Universal decode regex match = [universal decoder] # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/hijabtrendz.com/vancouvershinpo.com:80.php.com:80.php.tar.gz' # (compressed file: home/tokomrjk/vancouvershinpo.com/vancouvershinpo.com:80.php [depth: 1]) Universal decode regex match = [universal decoder] '/home/tokomrjk/hijabtrendz.com/vancouvershinpo.com:80.php.tar' # (compressed file: home/tokomrjk/vancouvershinpo.com/vancouvershinpo.com:80.php [depth: 1]) Universal decode regex match = [universal decoder] '/home/tokomrjk/hijabtrendz.com/vip.tar' # (compressed file: vip.php [depth: 1]) Universal decode regex match = [universal decoder] '/home/tokomrjk/hijabtrendz.com/vip.tar.gz' # (compressed file: vip.php [depth: 1]) Universal decode regex match = [universal decoder] '/home/tokomrjk/hijabtrendz.com/vipsltgcr.site.zip' # (compressed file: vipsltgcr.site.php [depth: 1]) Universal decode regex match = [universal decoder] # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/hijabtrendz.com/worlddayofsocialjustice.com.zip' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/hijabtrendz.com/wp-content.zip' # (compressed file: plugins/mundus-ai/mundus-ai.css [depth: 1]) Universal decode regex match = [universal decoder] '/home/tokomrjk/hijabtrendz.com/www.tar.gz' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/hijabtrendz.com/xrial.com.zip' # (compressed file: xrial.com.php [depth: 1]) Universal decode regex match = [universal decoder] # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] # (compressed file: xrial.com:80.php [depth: 1]) Universal decode regex match = [universal decoder] '/home/tokomrjk/hijabtrendz.com/xrial.com:80.php.com:80.php.tar.gz' # (compressed file: home/tokomrjk/xrial.com/xrial.com:80.php [depth: 1]) Universal decode regex match = [universal decoder] '/home/tokomrjk/hijabtrendz.com/xrial.com:80.php.tar' # (compressed file: home/tokomrjk/xrial.com/xrial.com:80.php [depth: 1]) Universal decode regex match = [universal decoder] '/home/tokomrjk/hotelbonacabol.com/admin.php' # Universal decode regex match = [universal decoder] # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/hotelbonacabol.com/file61.php' # (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/hotelbonacabol.com/.well-known/admin.php' # Universal decode regex match = [universal decoder] # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/hotelbonacabol.com/assets/admin.php' # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/hotelbonacabol.com/cgi-bin/admin.php' # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/hotelbonacabol.com/images/admin.php' # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/hotelbonacabol.com/img/admin.php' # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/hotelbonacabol.com/mu-plugins/admin.php' # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/iamkarachi.org/admin.php' # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/iamkarachi.org/file61.php' # (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/iamkarachi.org/cgi-bin/cgi-bin/cgi-bin/cgi-bin/bmp_69d99c2266847.zip' # (compressed file: b_69d99c2266847.tmp [depth: 1]) Known exploit = [Fingerprint Match (fp)] [PHP Exploit [P2202]] '/home/tokomrjk/ikanhias.xyz/admin.php' # Universal decode regex match = [universal decoder] # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/ikanhias.xyz/file61.php' # (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/ikanhias.xyz/cgi-bin/weekly.png' # Suspicious image file (hidden script file) '/home/tokomrjk/internodoors.com/admin.php' # Universal decode regex match = [universal decoder] # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/internodoors.com/file61.php' # (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/internodoors.com/.well-known/admin.php' # Universal decode regex match = [universal decoder] # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/internodoors.com/assets/admin.php' # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/internodoors.com/cgi-bin/admin.php' # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/internodoors.com/images/admin.php' # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/internodoors.com/img/admin.php' # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/internodoors.com/mu-plugins/admin.php' # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/internodoors.com/wp-content' # World writeable directory '/home/tokomrjk/internodoors.com/wp-content/plugins/mundus-ai/mundus-ai.css' # Universal decode regex match = [universal decoder] '/home/tokomrjk/isodaftar.co.in/admin.php' # Universal decode regex match = [universal decoder] # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/isodaftar.co.in/file61.php' # (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/isodaftar.co.in/indexseo.php' # Universal decode regex match = [universal decoder] '/home/tokomrjk/isogoo.com/admin.php' # Universal decode regex match = [universal decoder] # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/isogoo.com/file61.php' # (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/isogoo.com/isogoo.com.php' # Universal decode regex match = [universal decoder] '/home/tokomrjk/isogoo.com/isogoo.com:80.php' # Universal decode regex match = [universal decoder] '/home/tokomrjk/isoloundry.xyz/file61.php' # (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/isotenan.xyz/admin.php' # Universal decode regex match = [universal decoder] # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/isotenan.xyz/file61.php' # (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/jajanpola.xyz/admin.php' # Universal decode regex match = [universal decoder] # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/jajanpola.xyz/file61.php' # (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/jajanpola.xyz/jajanpola.xyz:80.php' # Universal decode regex match = [universal decoder] '/home/tokomrjk/jajanpola.xyz/.well-known/admin.php' # Universal decode regex match = [universal decoder] # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/jajanpola.xyz/assets/admin.php' # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/jajanpola.xyz/cgi-bin/admin.php' # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/jajanpola.xyz/images/admin.php' # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/jajanpola.xyz/img/admin.php' # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/jajanpola.xyz/mu-plugins/admin.php' # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/jajanpretzel.com/admin.php' # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/jajanpretzel.com/file61.php' # (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/jajanpretzel.com/jajanpretzel.com:80.php' # Universal decode regex match = [universal decoder] '/home/tokomrjk/jajanpretzel.com/.well-known/admin.php' # Universal decode regex match = [universal decoder] # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/jajanpretzel.com/cgi-bin/admin.php' # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/jajanpretzel.com/vip/admin.php' # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/jajanscript.xyz/admin.php' # Universal decode regex match = [universal decoder] # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/jajanscript.xyz/file61.php' # (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/jajanscript.xyz/.well-known/admin.php' # Universal decode regex match = [universal decoder] # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/jajanscript.xyz/cgi-bin/admin.php' # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/jajanscript.xyz/dw-jajan/admin.php' # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/jajanscript.xyz/layanan-jajan/layanan-jajan.css' # Universal decode regex match = [universal decoder] '/home/tokomrjk/jajanscript.xyz/lonos/admin.php' # Universal decode regex match = [universal decoder] # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/jajanscript.xyz/scriptmobilejajan/admin.php' # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/jayabangunan.xyz/admin.php' # Universal decode regex match = [universal decoder] # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/jayabangunan.xyz/file61.php' # (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/jayabangunan.xyz/.well-known/bbcode.png' # Suspicious image file (hidden script file) '/home/tokomrjk/jayabangunan.xyz/cgi-bin/COPYRIGHT.png' # Suspicious image file (hidden script file) '/home/tokomrjk/jayabangunan.xyz/cgi-bin/Links.png' # Suspicious image file (hidden script file) '/home/tokomrjk/jayabangunan.xyz/cgi-bin/News.module.png' # Suspicious image file (hidden script file) '/home/tokomrjk/jayabangunan.xyz/cgi-bin/News.png' # Suspicious image file (hidden script file) '/home/tokomrjk/jayabangunan.xyz/cgi-bin/Wiz12.png' # Suspicious image file (hidden script file) '/home/tokomrjk/jayabangunan.xyz/cgi-bin/ckeditor_php4.png' # Suspicious image file (hidden script file) '/home/tokomrjk/jayabangunan.xyz/cgi-bin/control.tpl.png' # Suspicious image file (hidden script file) '/home/tokomrjk/jayabangunan.xyz/cgi-bin/deletecss.png' # Suspicious image file (hidden script file) '/home/tokomrjk/jayabangunan.xyz/cgi-bin/pmd_general.png' # Suspicious image file (hidden script file) '/home/tokomrjk/jayabangunan.xyz/cgi-bin/shSec.png' # Suspicious image file (hidden script file) '/home/tokomrjk/jayabangunan.xyz/cgi-bin/turista_pdf.png' # Suspicious image file (hidden script file) '/home/tokomrjk/jayabangunan.xyz/cgi-bin/usergroup_1.png' # Suspicious image file (hidden script file) '/home/tokomrjk/jbchampions.com/admin.php' # Universal decode regex match = [universal decoder] # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/jbchampions.com/file61.php' # (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/jennamcwilliams.com/file61.php' # (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/jg.polajosgcr.xyz/admin.php' # Universal decode regex match = [universal decoder] # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/jg.polajosgcr.xyz/file61.php' # (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/jg.polajosgcr.xyz/files/image/HB/HB.css' # Universal decode regex match = [universal decoder] '/home/tokomrjk/jg.polajosgcr.xyz/nc_assets/img/pictograms/150/150.css' # Universal decode regex match = [universal decoder] '/home/tokomrjk/jgvictory.xyz/admin.php' # Universal decode regex match = [universal decoder] # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/jgvictory.xyz/file61.php' # (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/joeynegro.com/file61.php' # (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/jogja.jbchampions.com/file61.php' # (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/jogja1.jbchampions.com/admin.php' # Universal decode regex match = [universal decoder] # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/jogja1.jbchampions.com/file61.php' # (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/jogja1.jbchampions.com/jogja1.jbchampions.com:80.php' # Universal decode regex match = [universal decoder] '/home/tokomrjk/jogja2.jbchampions.com/admin.php' # Universal decode regex match = [universal decoder] # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/jogja2.jbchampions.com/file61.php' # (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/jogja2.jbchampions.com/.well-known/admin.php' # Universal decode regex match = [universal decoder] # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/jogja2.jbchampions.com/cgi-bin/admin.php' # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/jos.livedrawjos.com/admin.php' # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/jos.livedrawjos.com/file61.php' # (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/jos.polajos.xyz/file61.php' # (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/jos1.polajos.xyz/file61.php' # (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/jos1.polajos.xyz/boosterscript/boosterscript.css' # Universal decode regex match = [universal decoder] '/home/tokomrjk/jos1.polajos.xyz/nc_assets/img/featured/600/600.css' # Universal decode regex match = [universal decoder] '/home/tokomrjk/jos1.polajos.xyz/nc_assets/img/pictograms/150/150.css' # Universal decode regex match = [universal decoder] '/home/tokomrjk/jos2.polajos.xyz/admin.php' # Universal decode regex match = [universal decoder] # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/jos2.polajos.xyz/file61.php' # (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/jos3.polajos.xyz/file61.php' # (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/jos3.polajos.xyz/nc_assets/img/featured/600/600.css' # Universal decode regex match = [universal decoder] '/home/tokomrjk/jos3.polajos.xyz/nc_assets/img/pictograms/150/150.css' # Universal decode regex match = [universal decoder] '/home/tokomrjk/jos4.polajos.xyz/file61.php' # (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/jos4.polajos.xyz/files/image/HB/HB.css' # Universal decode regex match = [universal decoder] '/home/tokomrjk/jos4.polajos.xyz/nc_assets/img/pictograms/150/150.css' # Universal decode regex match = [universal decoder] '/home/tokomrjk/josartis.co.in/admin.php' # Universal decode regex match = [universal decoder] # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/josartis.co.in/file61.php' # (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/josartis.co.in/.well-known/admin.php' # Universal decode regex match = [universal decoder] # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/josartis.co.in/cgi-bin/admin.php' # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/josfaction.com/admin.php' # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/josfaction.com/file61.php' # (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/josfaction.com/josfaction.com.php' # Universal decode regex match = [universal decoder] '/home/tokomrjk/josid.sweetvictory.xyz/admin.php' # Universal decode regex match = [universal decoder] # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/josid.sweetvictory.xyz/file61.php' # (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/josmart.in/admin.php' # Universal decode regex match = [universal decoder] # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/josmart.in/file61.php' # (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/josmart.in/.well-known/admin.php' # Universal decode regex match = [universal decoder] # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/josmart.in/assets/admin.php' # Universal decode regex match = [universal decoder] # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/josmart.in/cgi-bin/admin.php' # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/josmart.in/cgi-bin/corp.png' # Suspicious image file (hidden script file) '/home/tokomrjk/josmart.in/cgi-bin/filetypes.inc.png' # Suspicious image file (hidden script file) '/home/tokomrjk/josmart.in/cgi-bin/filetypes.png' # Suspicious image file (hidden script file) '/home/tokomrjk/josmart.in/cgi-bin/frontpage.png' # Suspicious image file (hidden script file) '/home/tokomrjk/josmart.in/cgi-bin/mod.png' # Suspicious image file (hidden script file) '/home/tokomrjk/josmart.in/cgi-bin/more.png' # Suspicious image file (hidden script file) '/home/tokomrjk/josmart.in/cgi-bin/more_links.png' # Suspicious image file (hidden script file) '/home/tokomrjk/josmart.in/cgi-bin/newbb.png' # Suspicious image file (hidden script file) '/home/tokomrjk/josmart.in/cgi-bin/picmgr.png' # Suspicious image file (hidden script file) '/home/tokomrjk/josmart.in/cgi-bin/showVacancies.png' # Suspicious image file (hidden script file) '/home/tokomrjk/josmart.in/cgi-bin/xss.png' # Suspicious image file (hidden script file) '/home/tokomrjk/josmart.in/images/admin.php' # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/josmart.in/img/admin.php' # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/josmart.in/mu-plugins/admin.php' # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/josrtp.store/admin.php' # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/josrtp.store/file61.php' # (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/josrtp.store/.well-known/admin.php' # Universal decode regex match = [universal decoder] # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/josrtp.store/boosterscript/admin.php' # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/josrtp.store/buktijp/admin.php' # Universal decode regex match = [universal decoder] # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/josrtp.store/cgi-bin/admin.php' # Universal decode regex match = [universal decoder] # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/josrtp.store/cgi-bin/modifier.cat.png' # Suspicious image file (hidden script file) '/home/tokomrjk/josrtp.store/cgi-bin/sedi.png' # Suspicious image file (hidden script file) '/home/tokomrjk/josrtp.store/files/admin.php' # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/josrtp.store/files/image/pl.png' # Suspicious image file (hidden script file) '/home/tokomrjk/josrtp.store/files/image/HB/HB.css' # Universal decode regex match = [universal decoder] '/home/tokomrjk/josrtp.store/files/image/ISB/addsblockedit.png' # Suspicious image file (hidden script file) '/home/tokomrjk/josrtp.store/files/image/ISB/jatypo.png' # Suspicious image file (hidden script file) '/home/tokomrjk/josrtp.store/files/image/ISB/whats_new.png' # Suspicious image file (hidden script file) '/home/tokomrjk/josrtp.store/files/image/PP/magics.inc.png' # Suspicious image file (hidden script file) '/home/tokomrjk/josrtp.store/files/image/TTG/CSRF.png' # Suspicious image file (hidden script file) '/home/tokomrjk/josrtp.store/images/admin.php' # Universal decode regex match = [universal decoder] # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/josrtp.store/js/admin.php' # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/josrtp.store/nc_assets/admin.php' # Universal decode regex match = [universal decoder] # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/josrtp.store/nc_assets/img/pictograms/purchase.png' # Suspicious image file (hidden script file) '/home/tokomrjk/josrtp.store/nc_assets/img/pictograms/150/150.css' # Universal decode regex match = [universal decoder] '/home/tokomrjk/josrtp.store/style/admin.php' # Universal decode regex match = [universal decoder] # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/jostoto.it.com/admin.php' # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/jostoto.it.com/file61.php' # (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/jostoto.it.com/cgi-bin/admin.php' # Universal decode regex match = [universal decoder] # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/jostoto.it.com/fonts/admin.php' # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/jostoto.it.com/images/admin.php' # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/jostoto.it.com/img/admin.php' # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/jostoto.it.com/mu-plugins/admin.php' # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/jostotosdy.net/file61.php' # (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/jostotosgp.com/file61.php' # (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/kahuripan.jajanpretzel.com/admin.php' # Universal decode regex match = [universal decoder] # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/kahuripan.jajanpretzel.com/file61.php' # (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/kahuripan1.jajanpretzel.com/admin.php' # Universal decode regex match = [universal decoder] # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/kahuripan1.jajanpretzel.com/file61.php' # (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/kahuripan1.jajanpretzel.com/kahuripan1.jajanpretzel.com.php' # Universal decode regex match = [universal decoder] '/home/tokomrjk/kahuripan1.jajanpretzel.com/kahuripan1.jajanpretzel.com:80.php' # Universal decode regex match = [universal decoder] '/home/tokomrjk/kaktovik.com/file61.php' # (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/kalingga.xrial.com/admin.php' # Universal decode regex match = [universal decoder] # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/kalingga.xrial.com/file61.php' # (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/kalingga.xrial.com/kalingga.xrial.com.php' # Universal decode regex match = [universal decoder] '/home/tokomrjk/kalingga.xrial.com/.well-known/admin.php' # Universal decode regex match = [universal decoder] # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/kalingga.xrial.com/cgi-bin/admin.php' # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/kas.polakas.xyz/file61.php' # (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/kas1.polakas.xyz/admin.php' # Universal decode regex match = [universal decoder] # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/kas1.polakas.xyz/file61.php' # (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/kas2.polakas.xyz/file61.php' # (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/kas3.polakas.xyz/file61.php' # (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/kas4.polakas.xyz/admin.php' # Universal decode regex match = [universal decoder] # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/kas4.polakas.xyz/file61.php' # (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/kas5.polakas.xyz/file61.php' # (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/kas6.polakas.xyz/admin.php' # Universal decode regex match = [universal decoder] # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/kas6.polakas.xyz/file61.php' # (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/kas7.polakas.xyz/file61.php' # (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/kas8.polakas.xyz/admin.php' # Universal decode regex match = [universal decoder] # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/kas8.polakas.xyz/file61.php' # (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/kas8.polakas.xyz/.well-known/admin.php' # Universal decode regex match = [universal decoder] # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/kas8.polakas.xyz/cgi-bin/admin.php' # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/kas8.polakas.xyz/css/admin.php' # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/kas8.polakas.xyz/files/admin.php' # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/kasvalid.com/admin.php' # Universal decode regex match = [universal decoder] # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/kasvalid.com/file61.php' # (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/kedaibunga.xyz/admin.php' # Universal decode regex match = [universal decoder] # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/kedaibunga.xyz/file61.php' # (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/kedaibunga.xyz/kedaibunga.xyz:80.php' # Universal decode regex match = [universal decoder] '/home/tokomrjk/kedaibunga.xyz/.well-known/admin.php' # Universal decode regex match = [universal decoder] # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/kedaibunga.xyz/cgi-bin/admin.php' # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/kedaisepeda.xyz/admin.php' # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/kedaisepeda.xyz/file61.php' # (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/kedaisepeda.xyz/kedaisepeda.xyz:80.php' # Universal decode regex match = [universal decoder] '/home/tokomrjk/kediri.asikgeng.com/admin.php' # Universal decode regex match = [universal decoder] # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/kediri.asikgeng.com/file61.php' # (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/kediri.asikgeng.com/kediri.asikgeng.com.php' # Universal decode regex match = [universal decoder] '/home/tokomrjk/kediri.asikgeng.com/kediri.asikgeng.com:80.php' # Universal decode regex match = [universal decoder] '/home/tokomrjk/kediri.asikgeng.com/.well-known/admin.php' # Universal decode regex match = [universal decoder] # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/kediri.asikgeng.com/cgi-bin/admin.php' # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/kediri1.asikgeng.com/admin.php' # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/kediri1.asikgeng.com/file61.php' # (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/kediri1.asikgeng.com/kediri1.asikgeng.com:80.php' # Universal decode regex match = [universal decoder] '/home/tokomrjk/kippei.net/admin.php' # Universal decode regex match = [universal decoder] # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/kippei.net/file61.php' # (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/kippei.net/kippei.net.php' # Universal decode regex match = [universal decoder] '/home/tokomrjk/kippei.net/.well-known/admin.php' # Universal decode regex match = [universal decoder] # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/kippei.net/assets/admin.php' # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/kippei.net/cgi-bin/admin.php' # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/kippei.net/images/admin.php' # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/kippei.net/img/admin.php' # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/kippei.net/mu-plugins/admin.php' # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/kisahseru.com/admin.php' # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/kisahseru.com/file61.php' # (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/kutai.josfaction.com/file61.php' # (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/kutai1.josfaction.com/file61.php' # (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/kutai1.josfaction.com/kutai1.josfaction.com.php' # Universal decode regex match = [universal decoder] '/home/tokomrjk/laundryasik.xyz/file61.php' # (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/laundryhebat.xyz/file61.php' # (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/laundryhebat.xyz/laundryhebat.xyz.php' # Universal decode regex match = [universal decoder] '/home/tokomrjk/laundryhebat.xyz/laundryhebat.xyz:80.php' # Universal decode regex match = [universal decoder] '/home/tokomrjk/laundrykita.xyz/admin.php' # Universal decode regex match = [universal decoder] # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/laundrykita.xyz/file61.php' # (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/laundrytbk.xyz/admin.php' # Universal decode regex match = [universal decoder] # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/laundrytbk.xyz/file61.php' # (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/laundryterjos.xyz/file61.php' # (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/laundryviral.xyz/file61.php' # (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/ld.livedrawjos889.xyz/admin.php' # Universal decode regex match = [universal decoder] # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/ld.livedrawjos889.xyz/file61.php' # (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/ld.livedrawjos889.xyz/wp-json/wp/engine.php' # Universal decode regex match = [universal decoder] '/home/tokomrjk/legendvote.com/admin.php' # Universal decode regex match = [universal decoder] # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/legendvote.com/file61.php' # (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/legendvote.com/.well-known/admin.php' # Universal decode regex match = [universal decoder] # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/legendvote.com/.well-known/alsa_rawmidi' # Linux Binary/Executable [application/x-sharedlib] '/home/tokomrjk/legendvote.com/.well-known/pki-validation/jack_release_timebase' # Linux Binary/Executable [application/x-sharedlib] '/home/tokomrjk/legendvote.com/cgi-bin/admin.php' # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/liferesearchacademy.com/admin.php' # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/liferesearchacademy.com/file61.php' # (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/liferesearchacademy.com/liferesearchacademy.com:80.php' # Universal decode regex match = [universal decoder] '/home/tokomrjk/liferesearchacademy.com/.well-known/admin.php' # Universal decode regex match = [universal decoder] # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/liferesearchacademy.com/assets/admin.php' # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/liferesearchacademy.com/cgi-bin/admin.php' # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/liferesearchacademy.com/cgi-bin/class.xmlschema.png' # Suspicious image file (hidden script file) '/home/tokomrjk/liferesearchacademy.com/cgi-bin/default_graph.png' # Suspicious image file (hidden script file) '/home/tokomrjk/liferesearchacademy.com/cgi-bin/head.png' # Suspicious image file (hidden script file) '/home/tokomrjk/liferesearchacademy.com/cgi-bin/inbox.png' # Suspicious image file (hidden script file) '/home/tokomrjk/liferesearchacademy.com/fonts/admin.php' # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/liferesearchacademy.com/images/admin.php' # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/liferesearchacademy.com/img/admin.php' # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/liferesearchacademy.com/mu-plugins/admin.php' # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/livedrawjos.com/.caldav.tar' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/livedrawjos.com/.caldav.tar.gz' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/livedrawjos.com/.caldav.zip' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/livedrawjos.com/.trash.tar' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/livedrawjos.com/.trash.tar.gz' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/livedrawjos.com/.trash.zip' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/livedrawjos.com/.well-known.tar' # (compressed file: pki-validation/phocalongtext.png [depth: 1]) Suspicious image file (hidden script file) '/home/tokomrjk/livedrawjos.com/.well-known.tar.gz' # (compressed file: pki-validation/phocalongtext.png [depth: 1]) Suspicious image file (hidden script file) '/home/tokomrjk/livedrawjos.com/.well-known.zip' # (compressed file: pki-validation/phocalongtext.png [depth: 1]) Suspicious image file (hidden script file) '/home/tokomrjk/livedrawjos.com/aceh.asikgeng.com.tar' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/livedrawjos.com/aceh.asikgeng.com.tar.gz' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/livedrawjos.com/aceh.asikgeng.com.zip' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/livedrawjos.com/advintageplus.com.tar' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/livedrawjos.com/advintageplus.com.tar.gz' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/livedrawjos.com/advintageplus.com.zip' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/livedrawjos.com/akaiho.com.tar' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] # (compressed file: 3000/3000.php [depth: 1]) Universal decode regex match = [universal decoder] '/home/tokomrjk/livedrawjos.com/akaiho.com.tar.gz' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] # (compressed file: 3000/3000.php [depth: 1]) Universal decode regex match = [universal decoder] '/home/tokomrjk/livedrawjos.com/akaiho.com.zip' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] # (compressed file: 3000/3000.php [depth: 1]) Universal decode regex match = [universal decoder] '/home/tokomrjk/livedrawjos.com/andhrabuzz.com.tar.gz' # (compressed file: test/test.php [depth: 1]) Universal decode regex match = [universal decoder] # (compressed file: andhrabuzz.com.php [depth: 1]) Universal decode regex match = [universal decoder] # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] # (compressed file: andhrabuzz.com:80.php [depth: 1]) Universal decode regex match = [universal decoder] '/home/tokomrjk/livedrawjos.com/asikrtp.xyz.tar' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/livedrawjos.com/asikrtp.xyz.tar.gz' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/livedrawjos.com/asikrtp.xyz.zip' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/livedrawjos.com/asphalt9.site.tar' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/livedrawjos.com/asphalt9.site.tar.gz' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/livedrawjos.com/asphalt9.site.zip' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/livedrawjos.com/avenuesnepal.com.tar.gz' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/livedrawjos.com/ayamgoreng.online.tar.gz' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] # (compressed file: lp/lp.php [depth: 1]) Universal decode regex match = [universal decoder] # (compressed file: lp/lp.css [depth: 1]) Universal decode regex match = [universal decoder] '/home/tokomrjk/livedrawjos.com/banten.kasvalid.com.tar' # (compressed file: banten.kasvalid.com:80.php [depth: 1]) Universal decode regex match = [universal decoder] # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/livedrawjos.com/banten.kasvalid.com.tar.gz' # (compressed file: banten.kasvalid.com:80.php [depth: 1]) Universal decode regex match = [universal decoder] # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/livedrawjos.com/banten.kasvalid.com.zip' # (compressed file: banten.kasvalid.com:80.php [depth: 1]) Universal decode regex match = [universal decoder] # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/livedrawjos.com/banten1.kasvalid.com.tar' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/livedrawjos.com/banten1.kasvalid.com.tar.gz' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/livedrawjos.com/berkahbaut.xyz.tar' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/livedrawjos.com/berkahbaut.xyz.tar.gz' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/livedrawjos.com/berkahbaut.xyz.zip' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/livedrawjos.com/butterfly-houses.com.tar' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/livedrawjos.com/butterfly-houses.com.tar.gz' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/livedrawjos.com/cafeland.site.tar' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/livedrawjos.com/cafeland.site.tar.gz' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/livedrawjos.com/cafeland.site.zip' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/livedrawjos.com/cannonbusters.com.tar' # (compressed file: www.cannonbusters.com.php [depth: 1]) Universal decode regex match = [universal decoder] # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/livedrawjos.com/cannonbusters.com.tar.gz' # (compressed file: www.cannonbusters.com.php [depth: 1]) Universal decode regex match = [universal decoder] # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/livedrawjos.com/cannonbusters.com.zip' # (compressed file: www.cannonbusters.com.php [depth: 1]) Universal decode regex match = [universal decoder] # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/livedrawjos.com/caverncollection.com.tar' # (compressed file: caverncollection.com:80.php [depth: 1]) Universal decode regex match = [universal decoder] # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/livedrawjos.com/caverncollection.com.tar.gz' # (compressed file: caverncollection.com:80.php [depth: 1]) Universal decode regex match = [universal decoder] # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/livedrawjos.com/cdokay.com.tar' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/livedrawjos.com/cdokay.com.tar.gz' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/livedrawjos.com/cdokay.com.zip' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/livedrawjos.com/cldwestern.com.tar' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/livedrawjos.com/cldwestern.com.tar.gz' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/livedrawjos.com/cldwestern.com.zip' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/livedrawjos.com/cpp.tar.gz' # (compressed file: usr/lib/cpp [depth: 1]) Linux Binary/Executable [application/x-sharedlib] '/home/tokomrjk/livedrawjos.com/cuttherope.xyz.tar' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] # (compressed file: cuttherope.xyz.php [depth: 1]) Universal decode regex match = [universal decoder] '/home/tokomrjk/livedrawjos.com/cuttherope.xyz.tar.gz' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] # (compressed file: cuttherope.xyz.php [depth: 1]) Universal decode regex match = [universal decoder] '/home/tokomrjk/livedrawjos.com/cuttherope.xyz.zip' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] # (compressed file: cuttherope.xyz.php [depth: 1]) Universal decode regex match = [universal decoder] '/home/tokomrjk/livedrawjos.com/demak.jgvictory.xyz.tar' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/livedrawjos.com/demak.jgvictory.xyz.tar.gz' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/livedrawjos.com/demak.jgvictory.xyz.zip' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/livedrawjos.com/demak1.jgvictory.xyz.tar' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/livedrawjos.com/demak1.jgvictory.xyz.tar.gz' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/livedrawjos.com/dnapro-academy.id.tar.gz' # (compressed file: file61.php [depth: 2]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/livedrawjos.com/dracut.tar' # (compressed file: dracut-install [depth: 1]) Linux Binary/Executable [application/x-sharedlib] # (compressed file: skipcpio [depth: 1]) Linux Binary/Executable [application/x-sharedlib] '/home/tokomrjk/livedrawjos.com/dracut.tar.gz' # (compressed file: dracut-install [depth: 1]) Linux Binary/Executable [application/x-sharedlib] # (compressed file: skipcpio [depth: 1]) Linux Binary/Executable [application/x-sharedlib] '/home/tokomrjk/livedrawjos.com/dracut.zip' # (compressed file: dracut-install [depth: 1]) Linux Binary/Executable [application/x-sharedlib] # (compressed file: skipcpio [depth: 1]) Linux Binary/Executable [application/x-sharedlib] '/home/tokomrjk/livedrawjos.com/e-turchia.com.tar' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/livedrawjos.com/e-turchia.com.tar.gz' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/livedrawjos.com/e-turchia.com.zip' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/livedrawjos.com/eiffelinseoul.com.tar' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/livedrawjos.com/eiffelinseoul.com.tar.gz' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/livedrawjos.com/eiffelinseoul.com.zip' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/livedrawjos.com/entrefans.com.tar' # (compressed file: cgi-bin/htmlword.png [depth: 1]) Suspicious image file (hidden script file) # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/livedrawjos.com/entrefans.com.tar.gz' # (compressed file: cgi-bin/htmlword.png [depth: 1]) Suspicious image file (hidden script file) # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/livedrawjos.com/entrefans.com.zip' # (compressed file: cgi-bin/htmlword.png [depth: 1]) Suspicious image file (hidden script file) # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/livedrawjos.com/file61.php' # (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/livedrawjos.com/file61.php.php.tar.gz' # (compressed file: home/tokomrjk/livedrawjos.com/file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/livedrawjos.com/file61.php.tar' # (compressed file: home/tokomrjk/livedrawjos.com/file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] # (compressed file: home/tokomrjk/theelms.net/file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] # (compressed file: home/tokomrjk/jostotosdy.net/file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/livedrawjos.com/filezy.net.tar' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/livedrawjos.com/filezy.net.tar.gz' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/livedrawjos.com/filezy.net.zip' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/livedrawjos.com/fjb.templerun.pro.tar' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/livedrawjos.com/fjb.templerun.pro.tar.gz' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/livedrawjos.com/fjb.templerun.pro.zip' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/livedrawjos.com/fogarsdelaselva.org.tar' # (compressed file: file61.php [depth: 2]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/livedrawjos.com/fogarsdelaselva.org.tar.gz' # (compressed file: file61.php [depth: 2]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/livedrawjos.com/fogarsdelaselva.org.zip' # (compressed file: file61.php [depth: 2]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/livedrawjos.com/forumeter.com.tar.gz' # (compressed file: .well-known/pki-validation/.1757581394 [depth: 1]) Known exploit = [Fingerprint Match (fp)] [PHP HEADERS Exploit [P2118]] # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] # (compressed file: forumeter.com.php [depth: 1]) Universal decode regex match = [universal decoder] '/home/tokomrjk/livedrawjos.com/foursquarerum.com.tar' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/livedrawjos.com/foursquarerum.com.tar.gz' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/livedrawjos.com/foursquarerum.com.zip' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/livedrawjos.com/gowatallo.kasvalid.com.tar' # (compressed file: gowatallo.kasvalid.com:80.php [depth: 1]) Universal decode regex match = [universal decoder] # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/livedrawjos.com/gowatallo.kasvalid.com.tar.gz' # (compressed file: gowatallo.kasvalid.com:80.php [depth: 1]) Universal decode regex match = [universal decoder] # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/livedrawjos.com/gowatallo.kasvalid.com.zip' # (compressed file: gowatallo.kasvalid.com:80.php [depth: 1]) Universal decode regex match = [universal decoder] # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/livedrawjos.com/gray.truewinner.xyz.tar' # (compressed file: gray.truewinner.xyz:80.php [depth: 1]) Universal decode regex match = [universal decoder] # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/livedrawjos.com/gray.truewinner.xyz.tar.gz' # (compressed file: gray.truewinner.xyz:80.php [depth: 1]) Universal decode regex match = [universal decoder] # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/livedrawjos.com/gray.truewinner.xyz.zip' # (compressed file: gray.truewinner.xyz:80.php [depth: 1]) Universal decode regex match = [universal decoder] # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/livedrawjos.com/grindhardonline.com.tar' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] # (compressed file: grindhardonline.com.php [depth: 1]) Universal decode regex match = [universal decoder] '/home/tokomrjk/livedrawjos.com/grindhardonline.com.tar.gz' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] # (compressed file: grindhardonline.com.php [depth: 1]) Universal decode regex match = [universal decoder] '/home/tokomrjk/livedrawjos.com/grindhardonline.com.zip' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] # (compressed file: grindhardonline.com.php [depth: 1]) Universal decode regex match = [universal decoder] '/home/tokomrjk/livedrawjos.com/gurjaanitv.com.tar' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/livedrawjos.com/gurjaanitv.com.tar.gz' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/livedrawjos.com/gurjaanitv.com.zip' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/livedrawjos.com/happylaundry.xyz.tar' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/livedrawjos.com/happylaundry.xyz.tar.gz' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/livedrawjos.com/happylaundry.xyz.zip' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/livedrawjos.com/hotelbonacabol.com.tar' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/livedrawjos.com/hotelbonacabol.com.tar.gz' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/livedrawjos.com/iamkarachi.org.tar' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/livedrawjos.com/iamkarachi.org.tar.gz' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/livedrawjos.com/iamkarachi.org.zip' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/livedrawjos.com/ikanhias.xyz.tar' # (compressed file: cgi-bin/weekly.png [depth: 1]) Suspicious image file (hidden script file) # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/livedrawjos.com/ikanhias.xyz.tar.gz' # (compressed file: cgi-bin/weekly.png [depth: 1]) Suspicious image file (hidden script file) # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/livedrawjos.com/internodoors.com.tar.gz' # (compressed file: wp-content/plugins/mundus-ai/mundus-ai.css [depth: 1]) Universal decode regex match = [universal decoder] # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/livedrawjos.com/isogoo.com.tar' # (compressed file: isogoo.com.php [depth: 1]) Universal decode regex match = [universal decoder] # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] # (compressed file: isogoo.com:80.php [depth: 1]) Universal decode regex match = [universal decoder] '/home/tokomrjk/livedrawjos.com/isogoo.com.tar.gz' # (compressed file: isogoo.com.php [depth: 1]) Universal decode regex match = [universal decoder] # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] # (compressed file: isogoo.com:80.php [depth: 1]) Universal decode regex match = [universal decoder] '/home/tokomrjk/livedrawjos.com/isogoo.com.zip' # (compressed file: isogoo.com.php [depth: 1]) Universal decode regex match = [universal decoder] # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] # (compressed file: isogoo.com:80.php [depth: 1]) Universal decode regex match = [universal decoder] '/home/tokomrjk/livedrawjos.com/isoloundry.xyz.tar' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/livedrawjos.com/isoloundry.xyz.tar.gz' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/livedrawjos.com/isoloundry.xyz.zip' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/livedrawjos.com/isotenan.xyz.tar' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/livedrawjos.com/isotenan.xyz.tar.gz' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/livedrawjos.com/jajanpola.xyz.tar' # (compressed file: jajanpola.xyz:80.php [depth: 2]) Universal decode regex match = [universal decoder] # (compressed file: file61.php [depth: 3]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/livedrawjos.com/jajanpola.xyz.tar.gz' # (compressed file: jajanpola.xyz:80.php [depth: 2]) Universal decode regex match = [universal decoder] # (compressed file: file61.php [depth: 3]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/livedrawjos.com/jajanpola.xyz.zip' # (compressed file: jajanpola.xyz:80.php [depth: 2]) Universal decode regex match = [universal decoder] # (compressed file: file61.php [depth: 3]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/livedrawjos.com/jajanpretzel.com.tar' # (compressed file: vip/vip.php [depth: 1]) Universal decode regex match = [universal decoder] # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] # (compressed file: jajanpretzel.com:80.php [depth: 1]) Universal decode regex match = [universal decoder] '/home/tokomrjk/livedrawjos.com/jajanpretzel.com.tar.gz' # (compressed file: vip/vip.php [depth: 1]) Universal decode regex match = [universal decoder] # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] # (compressed file: jajanpretzel.com:80.php [depth: 1]) Universal decode regex match = [universal decoder] '/home/tokomrjk/livedrawjos.com/jajanpretzel.com.zip' # (compressed file: vip/vip.php [depth: 1]) Universal decode regex match = [universal decoder] # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] # (compressed file: jajanpretzel.com:80.php [depth: 1]) Universal decode regex match = [universal decoder] '/home/tokomrjk/livedrawjos.com/jayabangunan.xyz.tar' # (compressed file: cgi-bin/COPYRIGHT.png [depth: 1]) Suspicious image file (hidden script file) # (compressed file: cgi-bin/turista_pdf.png [depth: 1]) Suspicious image file (hidden script file) # (compressed file: cgi-bin/News.module.png [depth: 1]) Suspicious image file (hidden script file) # (compressed file: cgi-bin/Links.png [depth: 1]) Suspicious image file (hidden script file) # (compressed file: cgi-bin/News.png [depth: 1]) Suspicious image file (hidden script file) # (compressed file: cgi-bin/shSec.png [depth: 1]) Suspicious image file (hidden script file) # (compressed file: cgi-bin/ckeditor_php4.png [depth: 1]) Suspicious image file (hidden script file) # (compressed file: cgi-bin/Wiz12.png [depth: 1]) Suspicious image file (hidden script file) # (compressed file: cgi-bin/usergroup_1.png [depth: 1]) Suspicious image file (hidden script file) # (compressed file: cgi-bin/control.tpl.png [depth: 1]) Suspicious image file (hidden script file) # (compressed file: cgi-bin/deletecss.png [depth: 1]) Suspicious image file (hidden script file) # (compressed file: cgi-bin/pmd_general.png [depth: 1]) Suspicious image file (hidden script file) # (compressed file: .well-known/bbcode.png [depth: 1]) Suspicious image file (hidden script file) # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/livedrawjos.com/jayabangunan.xyz.tar.gz' # (compressed file: cgi-bin/COPYRIGHT.png [depth: 1]) Suspicious image file (hidden script file) # (compressed file: cgi-bin/turista_pdf.png [depth: 1]) Suspicious image file (hidden script file) # (compressed file: cgi-bin/News.module.png [depth: 1]) Suspicious image file (hidden script file) # (compressed file: cgi-bin/Links.png [depth: 1]) Suspicious image file (hidden script file) # (compressed file: cgi-bin/News.png [depth: 1]) Suspicious image file (hidden script file) # (compressed file: cgi-bin/shSec.png [depth: 1]) Suspicious image file (hidden script file) # (compressed file: cgi-bin/ckeditor_php4.png [depth: 1]) Suspicious image file (hidden script file) # (compressed file: cgi-bin/Wiz12.png [depth: 1]) Suspicious image file (hidden script file) # (compressed file: cgi-bin/usergroup_1.png [depth: 1]) Suspicious image file (hidden script file) # (compressed file: cgi-bin/control.tpl.png [depth: 1]) Suspicious image file (hidden script file) # (compressed file: cgi-bin/deletecss.png [depth: 1]) Suspicious image file (hidden script file) # (compressed file: cgi-bin/pmd_general.png [depth: 1]) Suspicious image file (hidden script file) # (compressed file: .well-known/bbcode.png [depth: 1]) Suspicious image file (hidden script file) # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/livedrawjos.com/jayabangunan.xyz.zip' # (compressed file: cgi-bin/COPYRIGHT.png [depth: 1]) Suspicious image file (hidden script file) # (compressed file: cgi-bin/turista_pdf.png [depth: 1]) Suspicious image file (hidden script file) # (compressed file: cgi-bin/News.module.png [depth: 1]) Suspicious image file (hidden script file) # (compressed file: cgi-bin/Links.png [depth: 1]) Suspicious image file (hidden script file) # (compressed file: cgi-bin/News.png [depth: 1]) Suspicious image file (hidden script file) # (compressed file: cgi-bin/shSec.png [depth: 1]) Suspicious image file (hidden script file) # (compressed file: cgi-bin/ckeditor_php4.png [depth: 1]) Suspicious image file (hidden script file) # (compressed file: cgi-bin/Wiz12.png [depth: 1]) Suspicious image file (hidden script file) # (compressed file: cgi-bin/usergroup_1.png [depth: 1]) Suspicious image file (hidden script file) # (compressed file: cgi-bin/control.tpl.png [depth: 1]) Suspicious image file (hidden script file) # (compressed file: cgi-bin/deletecss.png [depth: 1]) Suspicious image file (hidden script file) # (compressed file: cgi-bin/pmd_general.png [depth: 1]) Suspicious image file (hidden script file) # (compressed file: .well-known/bbcode.png [depth: 1]) Suspicious image file (hidden script file) # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/livedrawjos.com/jennamcwilliams.com.tar' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/livedrawjos.com/jennamcwilliams.com.tar.gz' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/livedrawjos.com/jennamcwilliams.com.zip' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/livedrawjos.com/jgvictory.xyz.tar' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/livedrawjos.com/jgvictory.xyz.tar.gz' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/livedrawjos.com/jgvictory.xyz.zip' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/livedrawjos.com/joeynegro.com.tar' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/livedrawjos.com/joeynegro.com.tar.gz' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/livedrawjos.com/joeynegro.com.zip' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/livedrawjos.com/jogja1.jbchampions.com.tar' # (compressed file: jogja1.jbchampions.com:80.php [depth: 1]) Universal decode regex match = [universal decoder] # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/livedrawjos.com/jogja1.jbchampions.com.tar.gz' # (compressed file: jogja1.jbchampions.com:80.php [depth: 1]) Universal decode regex match = [universal decoder] # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/livedrawjos.com/jogja1.jbchampions.com.zip' # (compressed file: jogja1.jbchampions.com:80.php [depth: 1]) Universal decode regex match = [universal decoder] # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/livedrawjos.com/jogja2.jbchampions.com.tar' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/livedrawjos.com/jogja2.jbchampions.com.tar.gz' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/livedrawjos.com/jogja2.jbchampions.com.zip' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/livedrawjos.com/jos1.polajos.xyz.tar' # (compressed file: nc_assets/img/featured/600/600.css [depth: 1]) Universal decode regex match = [universal decoder] # (compressed file: nc_assets/img/pictograms/150/150.css [depth: 1]) Universal decode regex match = [universal decoder] # (compressed file: boosterscript/boosterscript.css [depth: 1]) Universal decode regex match = [universal decoder] # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/livedrawjos.com/jos1.polajos.xyz.tar.gz' # (compressed file: nc_assets/img/featured/600/600.css [depth: 1]) Universal decode regex match = [universal decoder] # (compressed file: nc_assets/img/pictograms/150/150.css [depth: 1]) Universal decode regex match = [universal decoder] # (compressed file: boosterscript/boosterscript.css [depth: 1]) Universal decode regex match = [universal decoder] # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/livedrawjos.com/jos1.polajos.xyz.zip' # (compressed file: nc_assets/img/featured/600/600.css [depth: 1]) Universal decode regex match = [universal decoder] # (compressed file: nc_assets/img/pictograms/150/150.css [depth: 1]) Universal decode regex match = [universal decoder] # (compressed file: boosterscript/boosterscript.css [depth: 1]) Universal decode regex match = [universal decoder] # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/livedrawjos.com/jos2.polajos.xyz.tar' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/livedrawjos.com/jos2.polajos.xyz.tar.gz' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/livedrawjos.com/jos2.polajos.xyz.zip' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/livedrawjos.com/jos3.polajos.xyz.tar' # (compressed file: nc_assets/img/featured/600/600.css [depth: 1]) Universal decode regex match = [universal decoder] # (compressed file: nc_assets/img/pictograms/150/150.css [depth: 1]) Universal decode regex match = [universal decoder] # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/livedrawjos.com/jos3.polajos.xyz.tar.gz' # (compressed file: nc_assets/img/featured/600/600.css [depth: 1]) Universal decode regex match = [universal decoder] # (compressed file: nc_assets/img/pictograms/150/150.css [depth: 1]) Universal decode regex match = [universal decoder] # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/livedrawjos.com/jos3.polajos.xyz.zip' # (compressed file: nc_assets/img/featured/600/600.css [depth: 1]) Universal decode regex match = [universal decoder] # (compressed file: nc_assets/img/pictograms/150/150.css [depth: 1]) Universal decode regex match = [universal decoder] # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/livedrawjos.com/jos4.polajos.xyz.tar' # (compressed file: nc_assets/img/pictograms/150/150.css [depth: 1]) Universal decode regex match = [universal decoder] # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] # (compressed file: files/image/HB/HB.css [depth: 1]) Universal decode regex match = [universal decoder] '/home/tokomrjk/livedrawjos.com/jos4.polajos.xyz.tar.gz' # (compressed file: nc_assets/img/pictograms/150/150.css [depth: 1]) Universal decode regex match = [universal decoder] # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] # (compressed file: files/image/HB/HB.css [depth: 1]) Universal decode regex match = [universal decoder] '/home/tokomrjk/livedrawjos.com/jos4.polajos.xyz.zip' # (compressed file: nc_assets/img/pictograms/150/150.css [depth: 1]) Universal decode regex match = [universal decoder] # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] # (compressed file: files/image/HB/HB.css [depth: 1]) Universal decode regex match = [universal decoder] '/home/tokomrjk/livedrawjos.com/josartis.co.in.tar' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/livedrawjos.com/josartis.co.in.tar.gz' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/livedrawjos.com/josid.sweetvictory.xyz.tar' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/livedrawjos.com/josid.sweetvictory.xyz.tar.gz' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/livedrawjos.com/josid.sweetvictory.xyz.zip' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/livedrawjos.com/josmart.in.tar.gz' # (compressed file: cgi-bin/filetypes.png [depth: 1]) Suspicious image file (hidden script file) # (compressed file: cgi-bin/xss.png [depth: 1]) Suspicious image file (hidden script file) # (compressed file: cgi-bin/frontpage.png [depth: 1]) Suspicious image file (hidden script file) # (compressed file: cgi-bin/filetypes.inc.png [depth: 1]) Suspicious image file (hidden script file) # (compressed file: cgi-bin/mod.png [depth: 1]) Suspicious image file (hidden script file) # (compressed file: cgi-bin/newbb.png [depth: 1]) Suspicious image file (hidden script file) # (compressed file: cgi-bin/picmgr.png [depth: 1]) Suspicious image file (hidden script file) # (compressed file: cgi-bin/showVacancies.png [depth: 1]) Suspicious image file (hidden script file) # (compressed file: cgi-bin/more_links.png [depth: 1]) Suspicious image file (hidden script file) # (compressed file: cgi-bin/corp.png [depth: 1]) Suspicious image file (hidden script file) # (compressed file: cgi-bin/more.png [depth: 1]) Suspicious image file (hidden script file) # (compressed file: file61.php [depth: 2]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/livedrawjos.com/jostoto.it.com.tar.gz' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/livedrawjos.com/jostotosdy.net.tar' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/livedrawjos.com/jostotosdy.net.tar.gz' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/livedrawjos.com/jostotosgp.com.tar' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/livedrawjos.com/jostotosgp.com.tar.gz' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/livedrawjos.com/jostotosgp.com.zip' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/livedrawjos.com/kaktovik.com.tar.gz' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/livedrawjos.com/kas1.polakas.xyz.tar' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/livedrawjos.com/kas1.polakas.xyz.tar.gz' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/livedrawjos.com/kas1.polakas.xyz.zip' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/livedrawjos.com/kas2.polakas.xyz.tar' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/livedrawjos.com/kas2.polakas.xyz.tar.gz' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/livedrawjos.com/kas2.polakas.xyz.zip' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/livedrawjos.com/kas3.polakas.xyz.tar' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/livedrawjos.com/kas3.polakas.xyz.tar.gz' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/livedrawjos.com/kas3.polakas.xyz.zip' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/livedrawjos.com/kas4.polakas.xyz.tar' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/livedrawjos.com/kas4.polakas.xyz.tar.gz' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/livedrawjos.com/kas4.polakas.xyz.zip' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/livedrawjos.com/kas5.polakas.xyz.tar' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/livedrawjos.com/kas5.polakas.xyz.tar.gz' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/livedrawjos.com/kas5.polakas.xyz.zip' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/livedrawjos.com/kas6.polakas.xyz.tar' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/livedrawjos.com/kas6.polakas.xyz.tar.gz' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/livedrawjos.com/kas6.polakas.xyz.zip' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/livedrawjos.com/kas7.polakas.xyz.tar' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/livedrawjos.com/kas7.polakas.xyz.tar.gz' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/livedrawjos.com/kas7.polakas.xyz.zip' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/livedrawjos.com/kas8.polakas.xyz.tar' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/livedrawjos.com/kas8.polakas.xyz.tar.gz' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/livedrawjos.com/kas8.polakas.xyz.zip' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/livedrawjos.com/kasvalid.com.tar' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/livedrawjos.com/kasvalid.com.tar.gz' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/livedrawjos.com/kcare.tar' # (compressed file: libcare-plugin.so [depth: 2]) Linux Binary/Executable [application/x-sharedlib] '/home/tokomrjk/livedrawjos.com/kcare.zip' # (compressed file: libcare-plugin.so [depth: 2]) Linux Binary/Executable [application/x-sharedlib] '/home/tokomrjk/livedrawjos.com/kediri.asikgeng.com.tar' # (compressed file: kediri.asikgeng.com.php [depth: 1]) Universal decode regex match = [universal decoder] # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] # (compressed file: kediri.asikgeng.com:80.php [depth: 1]) Universal decode regex match = [universal decoder] '/home/tokomrjk/livedrawjos.com/kediri.asikgeng.com.tar.gz' # (compressed file: kediri.asikgeng.com.php [depth: 1]) Universal decode regex match = [universal decoder] # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] # (compressed file: kediri.asikgeng.com:80.php [depth: 1]) Universal decode regex match = [universal decoder] '/home/tokomrjk/livedrawjos.com/kediri.asikgeng.com.zip' # (compressed file: kediri.asikgeng.com.php [depth: 1]) Universal decode regex match = [universal decoder] # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] # (compressed file: kediri.asikgeng.com:80.php [depth: 1]) Universal decode regex match = [universal decoder] '/home/tokomrjk/livedrawjos.com/kediri1.asikgeng.com.tar' # (compressed file: kediri1.asikgeng.com:80.php [depth: 1]) Universal decode regex match = [universal decoder] # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/livedrawjos.com/kediri1.asikgeng.com.tar.gz' # (compressed file: kediri1.asikgeng.com:80.php [depth: 1]) Universal decode regex match = [universal decoder] # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/livedrawjos.com/kippei.net.php.net.php.tar.gz' # (compressed file: home/tokomrjk/kippei.net/kippei.net.php [depth: 1]) Universal decode regex match = [universal decoder] '/home/tokomrjk/livedrawjos.com/kippei.net.php.tar' # (compressed file: home/tokomrjk/kippei.net/kippei.net.php [depth: 1]) Universal decode regex match = [universal decoder] '/home/tokomrjk/livedrawjos.com/kippei.net.tar' # (compressed file: kippei.net.php [depth: 1]) Universal decode regex match = [universal decoder] # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/livedrawjos.com/kippei.net.tar.gz' # (compressed file: kippei.net.php [depth: 1]) Universal decode regex match = [universal decoder] # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/livedrawjos.com/kippei.net.zip' # (compressed file: kippei.net.php [depth: 1]) Universal decode regex match = [universal decoder] # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/livedrawjos.com/kisahseru.com.tar' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/livedrawjos.com/kisahseru.com.tar.gz' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/livedrawjos.com/kisahseru.com.zip' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/livedrawjos.com/kutai.josfaction.com.tar' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/livedrawjos.com/kutai.josfaction.com.tar.gz' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/livedrawjos.com/laundryhebat.xyz.tar' # (compressed file: laundryhebat.xyz.php [depth: 1]) Universal decode regex match = [universal decoder] # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] # (compressed file: laundryhebat.xyz:80.php [depth: 1]) Universal decode regex match = [universal decoder] '/home/tokomrjk/livedrawjos.com/laundryhebat.xyz.tar.gz' # (compressed file: laundryhebat.xyz.php [depth: 1]) Universal decode regex match = [universal decoder] # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] # (compressed file: laundryhebat.xyz:80.php [depth: 1]) Universal decode regex match = [universal decoder] '/home/tokomrjk/livedrawjos.com/laundryhebat.xyz.zip' # (compressed file: laundryhebat.xyz.php [depth: 1]) Universal decode regex match = [universal decoder] # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] # (compressed file: laundryhebat.xyz:80.php [depth: 1]) Universal decode regex match = [universal decoder] '/home/tokomrjk/livedrawjos.com/laundrytbk.xyz.tar' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/livedrawjos.com/laundrytbk.xyz.tar.gz' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/livedrawjos.com/laundrytbk.xyz.zip' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/livedrawjos.com/laundryterjos.xyz.tar' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/livedrawjos.com/laundryterjos.xyz.tar.gz' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/livedrawjos.com/laundryterjos.xyz.zip' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/livedrawjos.com/laundryviral.xyz.tar' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/livedrawjos.com/laundryviral.xyz.tar.gz' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/livedrawjos.com/laundryviral.xyz.zip' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/livedrawjos.com/liblve.tar' # (compressed file: libsecureio.so.0.9.0 [depth: 1]) Linux Binary/Executable [application/x-sharedlib] # (compressed file: liblve.so.0.9.0 [depth: 1]) Linux Binary/Executable [application/x-sharedlib] '/home/tokomrjk/livedrawjos.com/liblve.tar.gz' # (compressed file: libsecureio.so.0.9.0 [depth: 1]) Linux Binary/Executable [application/x-sharedlib] # (compressed file: liblve.so.0.9.0 [depth: 1]) Linux Binary/Executable [application/x-sharedlib] '/home/tokomrjk/livedrawjos.com/liblve.zip' # (compressed file: libsecureio.so.0.9.0 [depth: 1]) Linux Binary/Executable [application/x-sharedlib] # (compressed file: liblve.so.0.9.0 [depth: 1]) Linux Binary/Executable [application/x-sharedlib] '/home/tokomrjk/livedrawjos.com/loginjajantogel.com.tar' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/livedrawjos.com/loginjajantogel.com.tar.gz' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/livedrawjos.com/loginjajantogel.com.zip' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/livedrawjos.com/lp.xrial.com.tar' # (compressed file: lp.xrial.com.php [depth: 1]) Universal decode regex match = [universal decoder] # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] # (compressed file: lp.xrial.com:80.php [depth: 1]) Universal decode regex match = [universal decoder] '/home/tokomrjk/livedrawjos.com/lp.xrial.com.tar.gz' # (compressed file: lp.xrial.com.php [depth: 1]) Universal decode regex match = [universal decoder] # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] # (compressed file: lp.xrial.com:80.php [depth: 1]) Universal decode regex match = [universal decoder] '/home/tokomrjk/livedrawjos.com/madjoelancar.xyz.tar' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/livedrawjos.com/madjoelancar.xyz.tar.gz' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/livedrawjos.com/madjoelancar.xyz.zip' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/livedrawjos.com/magelang.josfaction.com.tar' # (compressed file: magelang.josfaction.com:80.php [depth: 1]) Universal decode regex match = [universal decoder] # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/livedrawjos.com/magelang.josfaction.com.tar.gz' # (compressed file: magelang.josfaction.com:80.php [depth: 1]) Universal decode regex match = [universal decoder] # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/livedrawjos.com/majapahit1.josfaction.com.tar' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] # (compressed file: majapahit1.josfaction.com.php [depth: 1]) Universal decode regex match = [universal decoder] '/home/tokomrjk/livedrawjos.com/majapahit1.josfaction.com.tar.gz' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] # (compressed file: majapahit1.josfaction.com.php [depth: 1]) Universal decode regex match = [universal decoder] '/home/tokomrjk/livedrawjos.com/majapahit1.josfaction.com.zip' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] # (compressed file: majapahit1.josfaction.com.php [depth: 1]) Universal decode regex match = [universal decoder] '/home/tokomrjk/livedrawjos.com/malang.sjcinema.com.tar' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/livedrawjos.com/malang.sjcinema.com.tar.gz' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/livedrawjos.com/malang.sjcinema.com.zip' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/livedrawjos.com/mataram.isogoo.com.tar' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/livedrawjos.com/mataram.isogoo.com.tar.gz' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/livedrawjos.com/mataram1.isogoo.com.tar' # (compressed file: mataram1.isogoo.com:80.php [depth: 1]) Universal decode regex match = [universal decoder] # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/livedrawjos.com/mataram1.isogoo.com.tar.gz' # (compressed file: mataram1.isogoo.com:80.php [depth: 1]) Universal decode regex match = [universal decoder] # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/livedrawjos.com/mataram1.isogoo.com.zip' # (compressed file: mataram1.isogoo.com:80.php [depth: 1]) Universal decode regex match = [universal decoder] # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/livedrawjos.com/medang1.paussea.com.tar' # (compressed file: medang1.paussea.com:80.php [depth: 1]) Universal decode regex match = [universal decoder] # (compressed file: medang1.paussea.com.php [depth: 1]) Universal decode regex match = [universal decoder] # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/livedrawjos.com/medang1.paussea.com.tar.gz' # (compressed file: medang1.paussea.com:80.php [depth: 1]) Universal decode regex match = [universal decoder] # (compressed file: medang1.paussea.com.php [depth: 1]) Universal decode regex match = [universal decoder] # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/livedrawjos.com/medang1.paussea.com.zip' # (compressed file: medang1.paussea.com:80.php [depth: 1]) Universal decode regex match = [universal decoder] # (compressed file: medang1.paussea.com.php [depth: 1]) Universal decode regex match = [universal decoder] # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/livedrawjos.com/misterinusantara.com.tar' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/livedrawjos.com/misterinusantara.com.tar.gz' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/livedrawjos.com/misterinusantara.com.zip' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/livedrawjos.com/mitrabangunan.xyz.tar' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/livedrawjos.com/mitrabangunan.xyz.tar.gz' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/livedrawjos.com/mitrabangunan.xyz.zip' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/livedrawjos.com/musixclan.com.tar' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/livedrawjos.com/musixclan.com.tar.gz' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/livedrawjos.com/musixclan.com.zip' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/livedrawjos.com/nashvillemuse.com.tar.gz' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/livedrawjos.com/omgsuse.com.tar' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/livedrawjos.com/omgsuse.com.tar.gz' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/livedrawjos.com/omgsuse.com.zip' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/livedrawjos.com/opentheoceans.com.tar' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/livedrawjos.com/opentheoceans.com.tar.gz' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/livedrawjos.com/opentheoceans.com.zip' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/livedrawjos.com/orkuti.net.tar.gz' # (compressed file: cgi-bin/cma_currencies_scheduled.png [depth: 1]) Suspicious image file (hidden script file) # (compressed file: cgi-bin/postsidebar_events_inc.png [depth: 1]) Suspicious image file (hidden script file) # (compressed file: cgi-bin/senduseremail.png [depth: 1]) Suspicious image file (hidden script file) # (compressed file: cgi-bin/cma_m_scheduled.png [depth: 1]) Suspicious image file (hidden script file) # (compressed file: cgi-bin/table.currencies.png [depth: 1]) Suspicious image file (hidden script file) # (compressed file: cgi-bin/layout.css.png [depth: 1]) Suspicious image file (hidden script file) # (compressed file: cgi-bin/handlevirus.png [depth: 1]) Suspicious image file (hidden script file) # (compressed file: .well-known/pki-validation/phocalongtext.png [depth: 1]) Suspicious image file (hidden script file) # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/livedrawjos.com/orkuti1.josfaction.com.tar' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] # (compressed file: orkuti1.josfaction.com:80.php [depth: 1]) Universal decode regex match = [universal decoder] # (compressed file: orkuti1.josfaction.com.php [depth: 1]) Universal decode regex match = [universal decoder] '/home/tokomrjk/livedrawjos.com/orkuti1.josfaction.com.tar.gz' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] # (compressed file: orkuti1.josfaction.com:80.php [depth: 1]) Universal decode regex match = [universal decoder] # (compressed file: orkuti1.josfaction.com.php [depth: 1]) Universal decode regex match = [universal decoder] '/home/tokomrjk/livedrawjos.com/orkuti1.josfaction.com.zip' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] # (compressed file: orkuti1.josfaction.com:80.php [depth: 1]) Universal decode regex match = [universal decoder] # (compressed file: orkuti1.josfaction.com.php [depth: 1]) Universal decode regex match = [universal decoder] '/home/tokomrjk/livedrawjos.com/padjajaran.josfaction.com.tar' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/livedrawjos.com/padjajaran.josfaction.com.tar.gz' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/livedrawjos.com/padjajaran.josfaction.com.zip' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/livedrawjos.com/pajang1.paussea.com.tar' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/livedrawjos.com/pajang1.paussea.com.tar.gz' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/livedrawjos.com/pajang1.paussea.com.zip' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/livedrawjos.com/pajang2.paussea.com.tar' # (compressed file: cgi-bin/phpthumb.unsharp.png [depth: 1]) Suspicious image file (hidden script file) # (compressed file: cgi-bin/dejavuserif.png [depth: 1]) Suspicious image file (hidden script file) # (compressed file: cgi-bin/class.faq.png [depth: 1]) Suspicious image file (hidden script file) # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] # (compressed file: pajang2.paussea.com.php [depth: 1]) Universal decode regex match = [universal decoder] '/home/tokomrjk/livedrawjos.com/pajang2.paussea.com.tar.gz' # (compressed file: cgi-bin/phpthumb.unsharp.png [depth: 1]) Suspicious image file (hidden script file) # (compressed file: cgi-bin/dejavuserif.png [depth: 1]) Suspicious image file (hidden script file) # (compressed file: cgi-bin/class.faq.png [depth: 1]) Suspicious image file (hidden script file) # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] # (compressed file: pajang2.paussea.com.php [depth: 1]) Universal decode regex match = [universal decoder] '/home/tokomrjk/livedrawjos.com/pajang2.paussea.com.zip' # (compressed file: cgi-bin/phpthumb.unsharp.png [depth: 1]) Suspicious image file (hidden script file) # (compressed file: cgi-bin/dejavuserif.png [depth: 1]) Suspicious image file (hidden script file) # (compressed file: cgi-bin/class.faq.png [depth: 1]) Suspicious image file (hidden script file) # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] # (compressed file: pajang2.paussea.com.php [depth: 1]) Universal decode regex match = [universal decoder] '/home/tokomrjk/livedrawjos.com/pajang3.paussea.com.tar' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/livedrawjos.com/pajang3.paussea.com.tar.gz' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/livedrawjos.com/pajang3.paussea.com.zip' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/livedrawjos.com/palu.kasvalid.com.tar' # (compressed file: file61.php [depth: 2]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/livedrawjos.com/palu.kasvalid.com.tar.gz' # (compressed file: file61.php [depth: 2]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/livedrawjos.com/palu.kasvalid.com.zip' # (compressed file: file61.php [depth: 2]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/livedrawjos.com/pasai.isogoo.com.tar' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] # (compressed file: pasai.isogoo.com.php [depth: 1]) Universal decode regex match = [universal decoder] '/home/tokomrjk/livedrawjos.com/pasai.isogoo.com.tar.gz' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] # (compressed file: pasai.isogoo.com.php [depth: 1]) Universal decode regex match = [universal decoder] '/home/tokomrjk/livedrawjos.com/pasai.isogoo.com.zip' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] # (compressed file: pasai.isogoo.com.php [depth: 1]) Universal decode regex match = [universal decoder] '/home/tokomrjk/livedrawjos.com/pasai1.isogoo.com.tar' # (compressed file: pasai1.isogoo.com:80.php [depth: 1]) Universal decode regex match = [universal decoder] # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/livedrawjos.com/pasai1.isogoo.com.tar.gz' # (compressed file: pasai1.isogoo.com:80.php [depth: 1]) Universal decode regex match = [universal decoder] # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/livedrawjos.com/pasai1.isogoo.com.zip' # (compressed file: pasai1.isogoo.com:80.php [depth: 1]) Universal decode regex match = [universal decoder] # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/livedrawjos.com/paus4dlink.com.tar' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/livedrawjos.com/paus4dlink.com.tar.gz' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/livedrawjos.com/paus4dlink.com.zip' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/livedrawjos.com/paussea.com.tar' # (compressed file: paussea.com:80.php [depth: 1]) Universal decode regex match = [universal decoder] # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/livedrawjos.com/paussea.com.tar.gz' # (compressed file: paussea.com:80.php [depth: 1]) Universal decode regex match = [universal decoder] # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/livedrawjos.com/paussea.com.zip' # (compressed file: paussea.com:80.php [depth: 1]) Universal decode regex match = [universal decoder] # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/livedrawjos.com/pinehearstresearch.com.tar' # (compressed file: pinehearstresearch.com.php [depth: 1]) Universal decode regex match = [universal decoder] # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/livedrawjos.com/pinehearstresearch.com.tar.gz' # (compressed file: pinehearstresearch.com.php [depth: 1]) Universal decode regex match = [universal decoder] # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/livedrawjos.com/pinehearstresearch.com.zip' # (compressed file: pinehearstresearch.com.php [depth: 1]) Universal decode regex match = [universal decoder] # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/livedrawjos.com/pioneerwinetrail.com.tar.gz' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] # (compressed file: www.pioneerwinetrail.com.php [depth: 1]) Universal decode regex match = [universal decoder] '/home/tokomrjk/livedrawjos.com/plesk.tar' # (compressed file: php/8.4/lib64/php/modules/clos_ssa.so [depth: 1]) Linux Binary/Executable [application/x-sharedlib] # (compressed file: php/8.0/lib64/php/modules/clos_ssa.so [depth: 1]) Linux Binary/Executable [application/x-sharedlib] # (compressed file: php/7.4/lib64/php/modules/clos_ssa.so [depth: 1]) Linux Binary/Executable [application/x-sharedlib] # (compressed file: php/5.6/lib64/php/modules/clos_ssa.so [depth: 1]) Linux Binary/Executable [application/x-sharedlib] # (compressed file: php/7.1/lib64/php/modules/clos_ssa.so [depth: 1]) Linux Binary/Executable [application/x-sharedlib] # (compressed file: php/7.0/lib64/php/modules/clos_ssa.so [depth: 1]) Linux Binary/Executable [application/x-sharedlib] # (compressed file: php/8.5/lib64/php/modules/clos_ssa.so [depth: 1]) Linux Binary/Executable [application/x-sharedlib] # (compressed file: php/5.5/lib64/php/modules/clos_ssa.so [depth: 1]) Linux Binary/Executable [application/x-sharedlib] # (compressed file: php/7.3/lib64/php/modules/clos_ssa.so [depth: 1]) Linux Binary/Executable [application/x-sharedlib] # (compressed file: php/5.4/lib64/php/modules/clos_ssa.so [depth: 1]) Linux Binary/Executable [application/x-sharedlib] # (compressed file: php/8.3/lib64/php/modules/clos_ssa.so [depth: 1]) Linux Binary/Executable [application/x-sharedlib] # (compressed file: php/8.1/lib64/php/modules/clos_ssa.so [depth: 1]) Linux Binary/Executable [application/x-sharedlib] # (compressed file: php/7.2/lib64/php/modules/clos_ssa.so [depth: 1]) Linux Binary/Executable [application/x-sharedlib] # (compressed file: php/8.2/lib64/php/modules/clos_ssa.so [depth: 1]) Linux Binary/Executable [application/x-sharedlib] '/home/tokomrjk/livedrawjos.com/plesk.tar.gz' # (compressed file: php/8.4/lib64/php/modules/clos_ssa.so [depth: 1]) Linux Binary/Executable [application/x-sharedlib] # (compressed file: php/8.0/lib64/php/modules/clos_ssa.so [depth: 1]) Linux Binary/Executable [application/x-sharedlib] # (compressed file: php/7.4/lib64/php/modules/clos_ssa.so [depth: 1]) Linux Binary/Executable [application/x-sharedlib] # (compressed file: php/5.6/lib64/php/modules/clos_ssa.so [depth: 1]) Linux Binary/Executable [application/x-sharedlib] # (compressed file: php/7.1/lib64/php/modules/clos_ssa.so [depth: 1]) Linux Binary/Executable [application/x-sharedlib] # (compressed file: php/7.0/lib64/php/modules/clos_ssa.so [depth: 1]) Linux Binary/Executable [application/x-sharedlib] # (compressed file: php/8.5/lib64/php/modules/clos_ssa.so [depth: 1]) Linux Binary/Executable [application/x-sharedlib] # (compressed file: php/5.5/lib64/php/modules/clos_ssa.so [depth: 1]) Linux Binary/Executable [application/x-sharedlib] # (compressed file: php/7.3/lib64/php/modules/clos_ssa.so [depth: 1]) Linux Binary/Executable [application/x-sharedlib] # (compressed file: php/5.4/lib64/php/modules/clos_ssa.so [depth: 1]) Linux Binary/Executable [application/x-sharedlib] # (compressed file: php/8.3/lib64/php/modules/clos_ssa.so [depth: 1]) Linux Binary/Executable [application/x-sharedlib] # (compressed file: php/8.1/lib64/php/modules/clos_ssa.so [depth: 1]) Linux Binary/Executable [application/x-sharedlib] # (compressed file: php/7.2/lib64/php/modules/clos_ssa.so [depth: 1]) Linux Binary/Executable [application/x-sharedlib] # (compressed file: php/8.2/lib64/php/modules/clos_ssa.so [depth: 1]) Linux Binary/Executable [application/x-sharedlib] '/home/tokomrjk/livedrawjos.com/plesk.zip' # (compressed file: php/8.4/lib64/php/modules/clos_ssa.so [depth: 1]) Linux Binary/Executable [application/x-sharedlib] # (compressed file: php/8.0/lib64/php/modules/clos_ssa.so [depth: 1]) Linux Binary/Executable [application/x-sharedlib] # (compressed file: php/7.4/lib64/php/modules/clos_ssa.so [depth: 1]) Linux Binary/Executable [application/x-sharedlib] # (compressed file: php/5.6/lib64/php/modules/clos_ssa.so [depth: 1]) Linux Binary/Executable [application/x-sharedlib] # (compressed file: php/7.1/lib64/php/modules/clos_ssa.so [depth: 1]) Linux Binary/Executable [application/x-sharedlib] # (compressed file: php/7.0/lib64/php/modules/clos_ssa.so [depth: 1]) Linux Binary/Executable [application/x-sharedlib] # (compressed file: php/8.5/lib64/php/modules/clos_ssa.so [depth: 1]) Linux Binary/Executable [application/x-sharedlib] # (compressed file: php/5.5/lib64/php/modules/clos_ssa.so [depth: 1]) Linux Binary/Executable [application/x-sharedlib] # (compressed file: php/7.3/lib64/php/modules/clos_ssa.so [depth: 1]) Linux Binary/Executable [application/x-sharedlib] # (compressed file: php/5.4/lib64/php/modules/clos_ssa.so [depth: 1]) Linux Binary/Executable [application/x-sharedlib] # (compressed file: php/8.3/lib64/php/modules/clos_ssa.so [depth: 1]) Linux Binary/Executable [application/x-sharedlib] # (compressed file: php/8.1/lib64/php/modules/clos_ssa.so [depth: 1]) Linux Binary/Executable [application/x-sharedlib] # (compressed file: php/7.2/lib64/php/modules/clos_ssa.so [depth: 1]) Linux Binary/Executable [application/x-sharedlib] # (compressed file: php/8.2/lib64/php/modules/clos_ssa.so [depth: 1]) Linux Binary/Executable [application/x-sharedlib] '/home/tokomrjk/livedrawjos.com/pola.rtpjos.live.tar' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/livedrawjos.com/pola.rtpjos.live.tar.gz' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/livedrawjos.com/pola.rtpjos.live.zip' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/livedrawjos.com/pola6.asikrtp.xyz.tar.gz' # (compressed file: nc_assets/img/icons/icons.css [depth: 1]) Universal decode regex match = [universal decoder] # (compressed file: nc_assets/img/featured/featured.css [depth: 1]) Universal decode regex match = [universal decoder] # (compressed file: nc_assets/img/featured/600/600.css [depth: 1]) Universal decode regex match = [universal decoder] '/home/tokomrjk/livedrawjos.com/polaasik.xyz.tar' # (compressed file: polaasik.xyz:80.php [depth: 1]) Universal decode regex match = [universal decoder] # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/livedrawjos.com/polaasik.xyz.tar.gz' # (compressed file: polaasik.xyz:80.php [depth: 1]) Universal decode regex match = [universal decoder] # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/livedrawjos.com/polajos.xyz.tar' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/livedrawjos.com/polajos.xyz.tar.gz' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/livedrawjos.com/polajos.xyz.zip' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/livedrawjos.com/polajosgcr.xyz.tar' # (compressed file: polajosgcr.xyz:80.php [depth: 1]) Universal decode regex match = [universal decoder] # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] # (compressed file: polajosgcr.xyz.php [depth: 1]) Universal decode regex match = [universal decoder] '/home/tokomrjk/livedrawjos.com/polajosgcr.xyz.tar.gz' # (compressed file: polajosgcr.xyz:80.php [depth: 1]) Universal decode regex match = [universal decoder] # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] # (compressed file: polajosgcr.xyz.php [depth: 1]) Universal decode regex match = [universal decoder] '/home/tokomrjk/livedrawjos.com/polajosgcr.xyz.zip' # (compressed file: polajosgcr.xyz:80.php [depth: 1]) Universal decode regex match = [universal decoder] # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] # (compressed file: polajosgcr.xyz.php [depth: 1]) Universal decode regex match = [universal decoder] '/home/tokomrjk/livedrawjos.com/polakas.xyz.tar.gz' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/livedrawjos.com/polkit-1.tar' # (compressed file: polkit-agent-helper-1 [depth: 1]) Linux Binary/Executable [application/x-sharedlib] # (compressed file: polkitd [depth: 1]) Linux Binary/Executable [application/x-sharedlib] '/home/tokomrjk/livedrawjos.com/polkit-1.tar.gz' # (compressed file: polkit-agent-helper-1 [depth: 1]) Linux Binary/Executable [application/x-sharedlib] # (compressed file: polkitd [depth: 1]) Linux Binary/Executable [application/x-sharedlib] '/home/tokomrjk/livedrawjos.com/public_html.tar.gz' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/livedrawjos.com/red.sweetvictory.xyz.tar' # (compressed file: file61.php [depth: 2]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/livedrawjos.com/red.sweetvictory.xyz.tar.gz' # (compressed file: file61.php [depth: 2]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/livedrawjos.com/red.sweetvictory.xyz.zip' # (compressed file: file61.php [depth: 2]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/livedrawjos.com/redpuentes.org.tar' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/livedrawjos.com/redpuentes.org.tar.gz' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/livedrawjos.com/redpuentes.org.zip' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/livedrawjos.com/ronmiles.org.tar' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/livedrawjos.com/ronmiles.org.tar.gz' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/livedrawjos.com/rtp.jajanpola.xyz.tar' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/livedrawjos.com/rtp.jajanpola.xyz.tar.gz' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/livedrawjos.com/rtp.jajanpola.xyz.zip' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/livedrawjos.com/rtp.josmart.in.tar.gz' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/livedrawjos.com/rtp2.selerakas.site.tar' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/livedrawjos.com/rtp2.selerakas.site.tar.gz' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/livedrawjos.com/rtp2.selerakas.site.zip' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/livedrawjos.com/rtp4.selerakas.site.tar' # (compressed file: rtpbooster/rtpbooster.css [depth: 1]) Universal decode regex match = [universal decoder] # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/livedrawjos.com/rtp4.selerakas.site.tar.gz' # (compressed file: rtpbooster/rtpbooster.css [depth: 1]) Universal decode regex match = [universal decoder] # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/livedrawjos.com/rtp4.selerakas.site.zip' # (compressed file: rtpbooster/rtpbooster.css [depth: 1]) Universal decode regex match = [universal decoder] # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/livedrawjos.com/rtp5.selerakas.site.tar' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/livedrawjos.com/rtp5.selerakas.site.tar.gz' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/livedrawjos.com/rtp5.selerakas.site.zip' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/livedrawjos.com/rtpjos.live.tar' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/livedrawjos.com/rtpjos.live.tar.gz' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/livedrawjos.com/rtpjos.live.zip' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/livedrawjos.com/saddmussoc.org.tar' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/livedrawjos.com/saddmussoc.org.tar.gz' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/livedrawjos.com/saddmussoc.org.zip' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/livedrawjos.com/scriptasik.xyz.tar' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] # (compressed file: dw-asik/dw-asik.php [depth: 1]) Universal decode regex match = [universal decoder] '/home/tokomrjk/livedrawjos.com/scriptasik.xyz.tar.gz' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] # (compressed file: dw-asik/dw-asik.php [depth: 1]) Universal decode regex match = [universal decoder] '/home/tokomrjk/livedrawjos.com/scriptasik.xyz.zip' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] # (compressed file: dw-asik/dw-asik.php [depth: 1]) Universal decode regex match = [universal decoder] '/home/tokomrjk/livedrawjos.com/scriptjos.xyz.tar' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/livedrawjos.com/scriptjos.xyz.tar.gz' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/livedrawjos.com/scriptjos.xyz.zip' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/livedrawjos.com/scriptkas.xyz.tar' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/livedrawjos.com/scriptkas.xyz.tar.gz' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/livedrawjos.com/scriptkas.xyz.zip' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/livedrawjos.com/sdwatersmartcip.com.tar' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/livedrawjos.com/sdwatersmartcip.com.tar.gz' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/livedrawjos.com/sdwatersmartcip.com.zip' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/livedrawjos.com/selerakas.site.tar' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/livedrawjos.com/selerakas.site.tar.gz' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/livedrawjos.com/selerakas.site.zip' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/livedrawjos.com/shikidrop.com.tar.gz' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/livedrawjos.com/singasari.asikgeng.com.tar' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/livedrawjos.com/singasari.asikgeng.com.tar.gz' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/livedrawjos.com/singasari.asikgeng.com.zip' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/livedrawjos.com/singasari1.asikgeng.com.tar' # (compressed file: singasari1.asikgeng.com:80.php [depth: 1]) Universal decode regex match = [universal decoder] # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/livedrawjos.com/singasari1.asikgeng.com.tar.gz' # (compressed file: singasari1.asikgeng.com:80.php [depth: 1]) Universal decode regex match = [universal decoder] # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/livedrawjos.com/singasari1.asikgeng.com.zip' # (compressed file: singasari1.asikgeng.com:80.php [depth: 1]) Universal decode regex match = [universal decoder] # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/livedrawjos.com/singasari2.asikgeng.com.tar' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/livedrawjos.com/singasari2.asikgeng.com.tar.gz' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/livedrawjos.com/singasari2.asikgeng.com.zip' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/livedrawjos.com/sjcinema.com.tar' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] # (compressed file: sjcinema.com.php [depth: 1]) Universal decode regex match = [universal decoder] '/home/tokomrjk/livedrawjos.com/sjcinema.com.tar.gz' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] # (compressed file: sjcinema.com.php [depth: 1]) Universal decode regex match = [universal decoder] '/home/tokomrjk/livedrawjos.com/sligopride.com.tar.gz' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/livedrawjos.com/solo.isogoo.com.tar' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] # (compressed file: solo.isogoo.com:80.php [depth: 1]) Universal decode regex match = [universal decoder] '/home/tokomrjk/livedrawjos.com/solo.isogoo.com.tar.gz' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] # (compressed file: solo.isogoo.com:80.php [depth: 1]) Universal decode regex match = [universal decoder] '/home/tokomrjk/livedrawjos.com/solo.isogoo.com.zip' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] # (compressed file: solo.isogoo.com:80.php [depth: 1]) Universal decode regex match = [universal decoder] '/home/tokomrjk/livedrawjos.com/soulfullvibes.net.tar' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/livedrawjos.com/soulfullvibes.net.tar.gz' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/livedrawjos.com/sriwijaya.kasvalid.com.tar' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/livedrawjos.com/sriwijaya.kasvalid.com.tar.gz' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/livedrawjos.com/sriwijaya.kasvalid.com.zip' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/livedrawjos.com/sulfurlamp.com.tar' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/livedrawjos.com/sulfurlamp.com.tar.gz' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/livedrawjos.com/sulfurlamp.com.zip' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/livedrawjos.com/suncaneskale.org.tar' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/livedrawjos.com/suncaneskale.org.tar.gz' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/livedrawjos.com/suncaneskale.org.zip' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/livedrawjos.com/taiyotoryo.com.tar' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/livedrawjos.com/taiyotoryo.com.tar.gz' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/livedrawjos.com/taiyotoryo.com.zip' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/livedrawjos.com/tarumanegara.asikgeng.com.tar' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] # (compressed file: tarumanegara.asikgeng.com.php [depth: 1]) Universal decode regex match = [universal decoder] '/home/tokomrjk/livedrawjos.com/tarumanegara.asikgeng.com.tar.gz' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] # (compressed file: tarumanegara.asikgeng.com.php [depth: 1]) Universal decode regex match = [universal decoder] '/home/tokomrjk/livedrawjos.com/tarumanegara.asikgeng.com.zip' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] # (compressed file: tarumanegara.asikgeng.com.php [depth: 1]) Universal decode regex match = [universal decoder] '/home/tokomrjk/livedrawjos.com/taxiplasm.net.tar' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/livedrawjos.com/taxiplasm.net.tar.gz' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/livedrawjos.com/taxiplasm.net.zip' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/livedrawjos.com/templerun.pro.tar.gz' # (compressed file: trampoliner/trampoliner.css [depth: 2]) Universal decode regex match = [universal decoder] # (compressed file: file61.php [depth: 2]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/livedrawjos.com/ternate.sjcinema.com.tar' # (compressed file: ternate.sjcinema.com.php [depth: 1]) Universal decode regex match = [universal decoder] # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/livedrawjos.com/ternate.sjcinema.com.tar.gz' # (compressed file: ternate.sjcinema.com.php [depth: 1]) Universal decode regex match = [universal decoder] # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/livedrawjos.com/theelms.net.tar' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/livedrawjos.com/theelms.net.tar.gz' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/livedrawjos.com/theelms.net.zip' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/livedrawjos.com/theneongroup.org.tar' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/livedrawjos.com/theneongroup.org.tar.gz' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/livedrawjos.com/theneongroup.org.zip' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/livedrawjos.com/tidore.jbchampions.com.tar' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/livedrawjos.com/tidore.jbchampions.com.tar.gz' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/livedrawjos.com/tidore.jbchampions.com.zip' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/livedrawjos.com/tidore1.jbchampions.com.tar' # (compressed file: tidore1.jbchampions.com.php [depth: 1]) Universal decode regex match = [universal decoder] # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] # (compressed file: tidore1.jbchampions.com:80.php [depth: 1]) Universal decode regex match = [universal decoder] '/home/tokomrjk/livedrawjos.com/tidore1.jbchampions.com.tar.gz' # (compressed file: tidore1.jbchampions.com.php [depth: 1]) Universal decode regex match = [universal decoder] # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] # (compressed file: tidore1.jbchampions.com:80.php [depth: 1]) Universal decode regex match = [universal decoder] '/home/tokomrjk/livedrawjos.com/tidore1.jbchampions.com.zip' # (compressed file: tidore1.jbchampions.com.php [depth: 1]) Universal decode regex match = [universal decoder] # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] # (compressed file: tidore1.jbchampions.com:80.php [depth: 1]) Universal decode regex match = [universal decoder] '/home/tokomrjk/livedrawjos.com/trastosdeguerra.com.tar' # (compressed file: trastosdeguerra.com:80.php [depth: 1]) Universal decode regex match = [universal decoder] # (compressed file: trastosdeguerra.com.php [depth: 1]) Universal decode regex match = [universal decoder] # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/livedrawjos.com/trastosdeguerra.com.tar.gz' # (compressed file: trastosdeguerra.com:80.php [depth: 1]) Universal decode regex match = [universal decoder] # (compressed file: trastosdeguerra.com.php [depth: 1]) Universal decode regex match = [universal decoder] # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/livedrawjos.com/trastosdeguerra.com.zip' # (compressed file: trastosdeguerra.com:80.php [depth: 1]) Universal decode regex match = [universal decoder] # (compressed file: trastosdeguerra.com.php [depth: 1]) Universal decode regex match = [universal decoder] # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/livedrawjos.com/truewinner.xyz.tar' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] # (compressed file: truewinner.xyz:80.php [depth: 1]) Universal decode regex match = [universal decoder] '/home/tokomrjk/livedrawjos.com/truewinner.xyz.tar.gz' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] # (compressed file: truewinner.xyz:80.php [depth: 1]) Universal decode regex match = [universal decoder] '/home/tokomrjk/livedrawjos.com/truewinner.xyz.zip' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] # (compressed file: truewinner.xyz:80.php [depth: 1]) Universal decode regex match = [universal decoder] '/home/tokomrjk/livedrawjos.com/uspavilion.com.tar.gz' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/livedrawjos.com/vancouvershinpo.com.tar' # (compressed file: vancouvershinpo.com:80.php [depth: 1]) Universal decode regex match = [universal decoder] # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/livedrawjos.com/vancouvershinpo.com.tar.gz' # (compressed file: vancouvershinpo.com:80.php [depth: 1]) Universal decode regex match = [universal decoder] # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/livedrawjos.com/vancouvershinpo.com.zip' # (compressed file: vancouvershinpo.com:80.php [depth: 1]) Universal decode regex match = [universal decoder] # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/livedrawjos.com/vipsltgcr.site.tar' # (compressed file: vipsltgcr.site.php [depth: 1]) Universal decode regex match = [universal decoder] # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/livedrawjos.com/vipsltgcr.site.tar.gz' # (compressed file: vipsltgcr.site.php [depth: 1]) Universal decode regex match = [universal decoder] # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/livedrawjos.com/vipsltgcr.site.zip' # (compressed file: vipsltgcr.site.php [depth: 1]) Universal decode regex match = [universal decoder] # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/livedrawjos.com/viraltelecast.com.tar' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/livedrawjos.com/viraltelecast.com.tar.gz' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/livedrawjos.com/viraltelecast.com.zip' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/livedrawjos.com/websitepolice.in.tar' # (compressed file: situs-blacklist/situs-blacklist.css [depth: 1]) Universal decode regex match = [universal decoder] # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] # (compressed file: website-aman/website-aman.php [depth: 1]) Universal decode regex match = [universal decoder] # (compressed file: website-tidak-aman/website-tidak-aman.css [depth: 1]) Universal decode regex match = [universal decoder] '/home/tokomrjk/livedrawjos.com/websitepolice.in.tar.gz' # (compressed file: situs-blacklist/situs-blacklist.css [depth: 1]) Universal decode regex match = [universal decoder] # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] # (compressed file: website-aman/website-aman.php [depth: 1]) Universal decode regex match = [universal decoder] # (compressed file: website-tidak-aman/website-tidak-aman.css [depth: 1]) Universal decode regex match = [universal decoder] '/home/tokomrjk/livedrawjos.com/websitepolice.in.zip' # (compressed file: situs-blacklist/situs-blacklist.css [depth: 1]) Universal decode regex match = [universal decoder] # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] # (compressed file: website-aman/website-aman.php [depth: 1]) Universal decode regex match = [universal decoder] # (compressed file: website-tidak-aman/website-tidak-aman.css [depth: 1]) Universal decode regex match = [universal decoder] '/home/tokomrjk/livedrawjos.com/wp-content.zip' # (compressed file: wp-content.css [depth: 1]) Universal decode regex match = [universal decoder] '/home/tokomrjk/livedrawjos.com/www.tar.gz' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/livedrawjos.com/xrial.com.tar' # (compressed file: xrial.com.php [depth: 1]) Universal decode regex match = [universal decoder] # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] # (compressed file: xrial.com:80.php [depth: 1]) Universal decode regex match = [universal decoder] '/home/tokomrjk/livedrawjos.com/xrial.com.tar.gz' # (compressed file: xrial.com.php [depth: 1]) Universal decode regex match = [universal decoder] # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] # (compressed file: xrial.com:80.php [depth: 1]) Universal decode regex match = [universal decoder] '/home/tokomrjk/livedrawjos.com/xrial.com.zip' # (compressed file: xrial.com.php [depth: 1]) Universal decode regex match = [universal decoder] # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] # (compressed file: xrial.com:80.php [depth: 1]) Universal decode regex match = [universal decoder] '/home/tokomrjk/livedrawjos.com/wp-content/wp-content.css' # Universal decode regex match = [universal decoder] '/home/tokomrjk/livedrawjos889.xyz/file61.php' # (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/livedrawjos889.xyz/images.tar.gz' # (compressed file: index.php [depth: 1]) Universal decode regex match = [universal decoder] '/home/tokomrjk/livedrawjos889.xyz/cgi-bin/admin.php' # Universal decode regex match = [universal decoder] # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/livedrawjos889.xyz/images/admin.php' # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/loginjajantogel.com/file61.php' # (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/lp.asikgeng.com/admin.php' # Universal decode regex match = [universal decoder] # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/lp.asikgeng.com/file61.php' # (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/lp.asikgeng.com/lp.asikgeng.com:80.php' # Universal decode regex match = [universal decoder] '/home/tokomrjk/lp.fruitninja.info/admin.php' # Universal decode regex match = [universal decoder] # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/lp.fruitninja.info/file61.php' # (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/lp.fruitninja.info/.well-known/admin.php' # Universal decode regex match = [universal decoder] # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/lp.fruitninja.info/cgi-bin/admin.php' # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/lp.xrial.com/admin.php' # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/lp.xrial.com/file61.php' # (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/lp.xrial.com/lp.xrial.com.php' # Universal decode regex match = [universal decoder] '/home/tokomrjk/lp.xrial.com/lp.xrial.com:80.php' # Universal decode regex match = [universal decoder] '/home/tokomrjk/lscmData/admin.php' # Universal decode regex match = [universal decoder] # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/lscmData/index.php' # ClamAV detected virus = [{HEX}php.generic.malware.501.UNOFFICIAL] '/home/tokomrjk/madjoelancar.xyz/admin.php' # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/madjoelancar.xyz/file61.php' # (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/madjoelancar.xyz/.well-known/admin.php' # Universal decode regex match = [universal decoder] # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/madjoelancar.xyz/cgi-bin/admin.php' # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/madjoelancar.xyz/lp/admin.php' # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/magelang.josfaction.com/admin.php' # Universal decode regex match = [universal decoder] # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/magelang.josfaction.com/file61.php' # (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/magelang.josfaction.com/magelang.josfaction.com:80.php' # Universal decode regex match = [universal decoder] '/home/tokomrjk/magelang.josfaction.com/.well-known/admin.php' # Universal decode regex match = [universal decoder] # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/magelang.josfaction.com/cgi-bin/admin.php' # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/magelang1.josfaction.com/admin.php' # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/magelang1.josfaction.com/file61.php' # (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/magelang1.josfaction.com/magelang1.josfaction.com.php' # Universal decode regex match = [universal decoder] '/home/tokomrjk/magelang1.josfaction.com/.well-known/admin.php' # Universal decode regex match = [universal decoder] # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/magelang1.josfaction.com/cgi-bin/admin.php' # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/mail/admin.php' # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/mail/index.php' # ClamAV detected virus = [{HEX}php.generic.malware.501.UNOFFICIAL] '/home/tokomrjk/mail/.Drafts/admin.php' # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/mail/.Drafts/index.php' # ClamAV detected virus = [{HEX}php.generic.malware.501.UNOFFICIAL] '/home/tokomrjk/mail/.Junk/admin.php' # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/mail/.Junk/index.php' # ClamAV detected virus = [{HEX}php.generic.malware.501.UNOFFICIAL] '/home/tokomrjk/mail/.Sent/admin.php' # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/mail/.Sent/index.php' # ClamAV detected virus = [{HEX}php.generic.malware.501.UNOFFICIAL] '/home/tokomrjk/mail/.Trash/admin.php' # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/mail/.Trash/index.php' # ClamAV detected virus = [{HEX}php.generic.malware.501.UNOFFICIAL] '/home/tokomrjk/mail/cur/admin.php' # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/mail/cur/index.php' # ClamAV detected virus = [{HEX}php.generic.malware.501.UNOFFICIAL] '/home/tokomrjk/mail/new/admin.php' # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/mail/new/index.php' # ClamAV detected virus = [{HEX}php.generic.malware.501.UNOFFICIAL] '/home/tokomrjk/mail/tmp/admin.php' # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/mail/tmp/index.php' # ClamAV detected virus = [{HEX}php.generic.malware.501.UNOFFICIAL] '/home/tokomrjk/mail/tokokue.xyz/admin.php' # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/mail/tokokue.xyz/index.php' # ClamAV detected virus = [{HEX}php.generic.malware.501.UNOFFICIAL] '/home/tokomrjk/majapahit.josfaction.com/admin.php' # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/majapahit.josfaction.com/control.png' # Suspicious image file (hidden script file) '/home/tokomrjk/majapahit.josfaction.com/file61.php' # (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/majapahit.josfaction.com/.well-known/admin.php' # Universal decode regex match = [universal decoder] # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/majapahit.josfaction.com/cgi-bin/admin.php' # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/majapahit.josfaction.com/cgi-bin/adminupevents.png' # Suspicious image file (hidden script file) '/home/tokomrjk/majapahit.josfaction.com/cgi-bin/class.attachment.png' # Suspicious image file (hidden script file) '/home/tokomrjk/majapahit.josfaction.com/cgi-bin/contact.db.png' # Suspicious image file (hidden script file) '/home/tokomrjk/majapahit.josfaction.com/cgi-bin/frontpage.png' # Suspicious image file (hidden script file) '/home/tokomrjk/majapahit1.josfaction.com/admin.php' # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/majapahit1.josfaction.com/file61.php' # (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/majapahit1.josfaction.com/majapahit1.josfaction.com.php' # Universal decode regex match = [universal decoder] '/home/tokomrjk/majumakmur.xyz/admin.php' # Universal decode regex match = [universal decoder] # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/majumakmur.xyz/file61.php' # (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/malang.sjcinema.com/admin.php' # Universal decode regex match = [universal decoder] # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/malang.sjcinema.com/file61.php' # (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/malang.sjcinema.com/.well-known/admin.php' # Universal decode regex match = [universal decoder] # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/malang.sjcinema.com/cgi-bin/admin.php' # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/marincitygov.org/advintageplus.com.tar' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/marincitygov.org/advintageplus.com.tar.gz' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/marincitygov.org/aimfitnessnetwork.com.tar' # (compressed file: aimfitnessnetwork.com.php [depth: 1]) Universal decode regex match = [universal decoder] # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/marincitygov.org/aimfitnessnetwork.com.tar.gz' # (compressed file: aimfitnessnetwork.com.php [depth: 1]) Universal decode regex match = [universal decoder] # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/marincitygov.org/akaiho.com.tar' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] # (compressed file: 3000/3000.php [depth: 1]) Universal decode regex match = [universal decoder] '/home/tokomrjk/marincitygov.org/akaiho.com.tar.gz' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] # (compressed file: 3000/3000.php [depth: 1]) Universal decode regex match = [universal decoder] '/home/tokomrjk/marincitygov.org/akaiho.com.zip' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] # (compressed file: 3000/3000.php [depth: 1]) Universal decode regex match = [universal decoder] '/home/tokomrjk/marincitygov.org/asik.polaasik.xyz.tar' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/marincitygov.org/asik.polaasik.xyz.tar.gz' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/marincitygov.org/asik.polaasik.xyz.zip' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/marincitygov.org/asik1.polaasik.xyz.tar' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/marincitygov.org/asik1.polaasik.xyz.tar.gz' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/marincitygov.org/asik1.polaasik.xyz.zip' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/marincitygov.org/asik2.polaasik.xyz.tar' # (compressed file: nc_assets/nc_assets.css [depth: 1]) Universal decode regex match = [universal decoder] # (compressed file: nc_assets/img/icons/icons.css [depth: 1]) Universal decode regex match = [universal decoder] # (compressed file: nc_assets/img/featured/featured.css [depth: 1]) Universal decode regex match = [universal decoder] # (compressed file: nc_assets/img/featured/600/600.css [depth: 1]) Universal decode regex match = [universal decoder] # (compressed file: nc_assets/img/pictograms/150/150.css [depth: 1]) Universal decode regex match = [universal decoder] # (compressed file: boosterscript/boosterscript.css [depth: 1]) Universal decode regex match = [universal decoder] # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/marincitygov.org/asik2.polaasik.xyz.tar.gz' # (compressed file: nc_assets/nc_assets.css [depth: 1]) Universal decode regex match = [universal decoder] # (compressed file: nc_assets/img/icons/icons.css [depth: 1]) Universal decode regex match = [universal decoder] # (compressed file: nc_assets/img/featured/featured.css [depth: 1]) Universal decode regex match = [universal decoder] # (compressed file: nc_assets/img/featured/600/600.css [depth: 1]) Universal decode regex match = [universal decoder] # (compressed file: nc_assets/img/pictograms/150/150.css [depth: 1]) Universal decode regex match = [universal decoder] # (compressed file: boosterscript/boosterscript.css [depth: 1]) Universal decode regex match = [universal decoder] # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/marincitygov.org/asik3.polaasik.xyz.tar' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/marincitygov.org/asik3.polaasik.xyz.tar.gz' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/marincitygov.org/asik3.polaasik.xyz.zip' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/marincitygov.org/asikrtp.xyz.tar' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/marincitygov.org/asikrtp.xyz.tar.gz' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/marincitygov.org/asikrtp.xyz.zip' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/marincitygov.org/asphalt9.site.tar' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/marincitygov.org/asphalt9.site.tar.gz' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/marincitygov.org/asphalt9.site.zip' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/marincitygov.org/avenuesnepal.com.tar.gz' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/marincitygov.org/baghdadchamber.com.zip' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/marincitygov.org/banten1.kasvalid.com.tar' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/marincitygov.org/banten1.kasvalid.com.tar.gz' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/marincitygov.org/banten1.kasvalid.com.zip' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/marincitygov.org/barttersite.org.tar' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/marincitygov.org/barttersite.org.tar.gz' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/marincitygov.org/boosterscript.css.css.tar.gz' # (compressed file: home/tokomrjk/asik2.polaasik.xyz/boosterscript/boosterscript.css [depth: 1]) Universal decode regex match = [universal decoder] '/home/tokomrjk/marincitygov.org/boosterscript.css.tar' # (compressed file: home/tokomrjk/asik2.polaasik.xyz/boosterscript/boosterscript.css [depth: 1]) Universal decode regex match = [universal decoder] '/home/tokomrjk/marincitygov.org/file61.php' # (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/marincitygov.org/file61.php.php.tar.gz' # (compressed file: home/tokomrjk/marincitygov.org/file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/marincitygov.org/file61.php.tar' # (compressed file: home/tokomrjk/asik3.polaasik.xyz/file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] # (compressed file: home/tokomrjk/tarumanegara1.asikgeng.com/file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/marincitygov.org/jajanscript.xyz.tar' # (compressed file: dw-jajan/dw-jajan.php [depth: 1]) Universal decode regex match = [universal decoder] # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] # (compressed file: layanan-jajan/layanan-jajan.css [depth: 2]) Universal decode regex match = [universal decoder] '/home/tokomrjk/marincitygov.org/jajanscript.xyz.tar.gz' # (compressed file: dw-jajan/dw-jajan.php [depth: 1]) Universal decode regex match = [universal decoder] # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] # (compressed file: layanan-jajan/layanan-jajan.css [depth: 2]) Universal decode regex match = [universal decoder] '/home/tokomrjk/marincitygov.org/kasvalid.com.zip' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/marincitygov.org/magelang1.josfaction.com.tar' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] # (compressed file: magelang1.josfaction.com.php [depth: 1]) Universal decode regex match = [universal decoder] '/home/tokomrjk/marincitygov.org/magelang1.josfaction.com.tar.gz' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] # (compressed file: magelang1.josfaction.com.php [depth: 1]) Universal decode regex match = [universal decoder] '/home/tokomrjk/marincitygov.org/mataram.isogoo.com.tar' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/marincitygov.org/mataram.isogoo.com.tar.gz' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/marincitygov.org/queenlatifahmusic.com.tar' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/marincitygov.org/queenlatifahmusic.com.tar.gz' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/marincitygov.org/queenlatifahmusic.com.zip' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/marincitygov.org/singasari2.asikgeng.com.tar' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/marincitygov.org/singasari2.asikgeng.com.tar.gz' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/marincitygov.org/solo.isogoo.com.tar' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] # (compressed file: solo.isogoo.com:80.php [depth: 1]) Universal decode regex match = [universal decoder] '/home/tokomrjk/marincitygov.org/solo.isogoo.com.tar.gz' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] # (compressed file: solo.isogoo.com:80.php [depth: 1]) Universal decode regex match = [universal decoder] '/home/tokomrjk/marincitygov.org/soulfullvibes.net.tar' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/marincitygov.org/soulfullvibes.net.tar.gz' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/marincitygov.org/taxiplasm.net.zip' # (compressed file: file61.php [depth: 1]) (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/mataram.isogoo.com/admin.php' # Universal decode regex match = [universal decoder] # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/mataram.isogoo.com/file61.php' # (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/mataram.isogoo.com/.well-known/admin.php' # Universal decode regex match = [universal decoder] # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/mataram.isogoo.com/cgi-bin/admin.php' # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/mataram1.isogoo.com/admin.php' # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/mataram1.isogoo.com/file61.php' # (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/mataram1.isogoo.com/mataram1.isogoo.com:80.php' # Universal decode regex match = [universal decoder] '/home/tokomrjk/mataram1.isogoo.com/.well-known/admin.php' # Universal decode regex match = [universal decoder] # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/mataram1.isogoo.com/cgi-bin/admin.php' # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/medang.paussea.com/admin.php' # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/medang.paussea.com/file61.php' # (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/medang.paussea.com/medang.paussea.com.php' # Universal decode regex match = [universal decoder] '/home/tokomrjk/medang.paussea.com/medang.paussea.com:80.php' # Universal decode regex match = [universal decoder] '/home/tokomrjk/medang1.paussea.com/admin.php' # Universal decode regex match = [universal decoder] # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/medang1.paussea.com/file61.php' # (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/medang1.paussea.com/medang1.paussea.com.php' # Universal decode regex match = [universal decoder] '/home/tokomrjk/medang1.paussea.com/medang1.paussea.com:80.php' # Universal decode regex match = [universal decoder] '/home/tokomrjk/misterinusantara.com/file61.php' # (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/mitrabangunan.xyz/admin.php' # Universal decode regex match = [universal decoder] # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/mitrabangunan.xyz/file61.php' # (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/mitrabangunan.xyz/.well-known/admin.php' # Universal decode regex match = [universal decoder] # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/mitrabangunan.xyz/cgi-bin/admin.php' # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/mitrabangunan.xyz/lp/admin.php' # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/mitrabesi.xyz/admin.php' # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/mitrabesi.xyz/file61.php' # (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/musixclan.com/file61.php' # (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/nashvillemuse.com/admin.php' # Universal decode regex match = [universal decoder] # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/nashvillemuse.com/file61.php' # (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/nashvillemuse.com/.well-known/admin.php' # Universal decode regex match = [universal decoder] # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/nashvillemuse.com/cgi-bin/admin.php' # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/newplayerstheatre.com/file61.php' # (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/ngopibareng.xyz/file61.php' # (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/ngopibareng.xyz/ngopibareng.xyz.php' # Universal decode regex match = [universal decoder] '/home/tokomrjk/ngopibareng.xyz/ads/admin.php' # Universal decode regex match = [universal decoder] # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/noblefororegon.com/file61.php' # (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/noobow.com/admin.php' # Universal decode regex match = [universal decoder] # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/noobow.com/file61.php' # (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/noobow.com/noobow.com.php' # Universal decode regex match = [universal decoder] '/home/tokomrjk/noobow.com/.well-known/admin.php' # Universal decode regex match = [universal decoder] # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/noobow.com/assets/admin.php' # Universal decode regex match = [universal decoder] # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/noobow.com/cgi-bin/admin.php' # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/noobow.com/cgi-bin/pc_settings.png' # Suspicious image file (hidden script file) '/home/tokomrjk/noobow.com/cgi-bin/sample.png' # Suspicious image file (hidden script file) '/home/tokomrjk/noobow.com/cgi-bin/servizi.png' # Suspicious image file (hidden script file) '/home/tokomrjk/noobow.com/cgi-bin/validations.png' # Suspicious image file (hidden script file) '/home/tokomrjk/noobow.com/cgi-bin/webdb_views.png' # Suspicious image file (hidden script file) '/home/tokomrjk/noobow.com/images/admin.php' # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/noobow.com/img/admin.php' # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/noobow.com/mu-plugins/admin.php' # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/omgsuse.com/file61.php' # (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/opentheoceans.com/admin.php' # Universal decode regex match = [universal decoder] # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/opentheoceans.com/file61.php' # (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/orkuti.josfaction.com/file61.php' # (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/orkuti.net/admin.php' # Universal decode regex match = [universal decoder] # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/orkuti.net/file61.php' # (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/orkuti.net/.well-known/admin.php' # Universal decode regex match = [universal decoder] # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/orkuti.net/.well-known/pki-validation/phocalongtext.png' # Suspicious image file (hidden script file) '/home/tokomrjk/orkuti.net/cgi-bin/admin.php' # Universal decode regex match = [universal decoder] # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/orkuti.net/cgi-bin/cma_currencies_scheduled.png' # Suspicious image file (hidden script file) '/home/tokomrjk/orkuti.net/cgi-bin/cma_m_scheduled.png' # Suspicious image file (hidden script file) '/home/tokomrjk/orkuti.net/cgi-bin/handlevirus.png' # Suspicious image file (hidden script file) '/home/tokomrjk/orkuti.net/cgi-bin/layout.css.png' # Suspicious image file (hidden script file) '/home/tokomrjk/orkuti.net/cgi-bin/postsidebar_events_inc.png' # Suspicious image file (hidden script file) '/home/tokomrjk/orkuti.net/cgi-bin/senduseremail.png' # Suspicious image file (hidden script file) '/home/tokomrjk/orkuti.net/cgi-bin/table.currencies.png' # Suspicious image file (hidden script file) '/home/tokomrjk/orkuti.net/cgi-bin/cgi-bin/cgi-bin/cgi-bin/mvWuIfXc.tif' # Suspicious image file (hidden script file) '/home/tokomrjk/orkuti.net/images/admin.php' # Universal decode regex match = [universal decoder] # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/orkuti.net/images/images/images/LyImHaKfuX.jpeg' # Suspicious image file (hidden script file) '/home/tokomrjk/orkuti1.josfaction.com/admin.php' # Universal decode regex match = [universal decoder] # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/orkuti1.josfaction.com/file61.php' # (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/orkuti1.josfaction.com/orkuti1.josfaction.com.php' # Universal decode regex match = [universal decoder] '/home/tokomrjk/orkuti1.josfaction.com/orkuti1.josfaction.com:80.php' # Universal decode regex match = [universal decoder] '/home/tokomrjk/padjajaran.josfaction.com/admin.php' # Universal decode regex match = [universal decoder] # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/padjajaran.josfaction.com/file61.php' # (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/padjajaran.josfaction.com/.well-known/admin.php' # Universal decode regex match = [universal decoder] # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/padjajaran.josfaction.com/cgi-bin/admin.php' # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/padjajaran1.josfaction.com/admin.php' # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/padjajaran1.josfaction.com/file61.php' # (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/pajang.paussea.com/file61.php' # (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/pajang1.paussea.com/file61.php' # (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/pajang2.paussea.com/admin.php' # Universal decode regex match = [universal decoder] # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/pajang2.paussea.com/file61.php' # (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/pajang2.paussea.com/pajang2.paussea.com.php' # Universal decode regex match = [universal decoder] '/home/tokomrjk/pajang2.paussea.com/cgi-bin/class.faq.png' # Suspicious image file (hidden script file) '/home/tokomrjk/pajang2.paussea.com/cgi-bin/dejavuserif.png' # Suspicious image file (hidden script file) '/home/tokomrjk/pajang2.paussea.com/cgi-bin/phpthumb.unsharp.png' # Suspicious image file (hidden script file) '/home/tokomrjk/pajang3.paussea.com/file61.php' # (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/palu.kasvalid.com/admin.php' # Universal decode regex match = [universal decoder] # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/palu.kasvalid.com/file61.php' # (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/parroquiasanmigueljerez.org/admin.php' # Universal decode regex match = [universal decoder] # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/parroquiasanmigueljerez.org/file61.php' # (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/parroquiasanmigueljerez.org/parroquiasanmigueljerez.org:80.php' # Universal decode regex match = [universal decoder] '/home/tokomrjk/parroquiasanmigueljerez.org/.well-known/admin.php' # Universal decode regex match = [universal decoder] # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/parroquiasanmigueljerez.org/assets/admin.php' # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/parroquiasanmigueljerez.org/cgi-bin/QuoteLatex.png' # Suspicious image file (hidden script file) '/home/tokomrjk/parroquiasanmigueljerez.org/cgi-bin/admin.php' # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/parroquiasanmigueljerez.org/cgi-bin/adsadvanced.png' # Suspicious image file (hidden script file) '/home/tokomrjk/parroquiasanmigueljerez.org/cgi-bin/alsa_dev' # Linux Binary/Executable [application/x-sharedlib] '/home/tokomrjk/parroquiasanmigueljerez.org/cgi-bin/alsa_seq_dump' # Linux Binary/Executable [application/x-sharedlib] '/home/tokomrjk/parroquiasanmigueljerez.org/cgi-bin/benchmark.png' # Suspicious image file (hidden script file) '/home/tokomrjk/parroquiasanmigueljerez.org/cgi-bin/editfile.png' # Suspicious image file (hidden script file) '/home/tokomrjk/parroquiasanmigueljerez.org/cgi-bin/rateimage.png' # Suspicious image file (hidden script file) '/home/tokomrjk/parroquiasanmigueljerez.org/images/admin.php' # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/parroquiasanmigueljerez.org/img/admin.php' # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/parroquiasanmigueljerez.org/mu-plugins/admin.php' # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/pasai.isogoo.com/admin.php' # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/pasai.isogoo.com/file61.php' # (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/pasai.isogoo.com/pasai.isogoo.com.php' # Universal decode regex match = [universal decoder] '/home/tokomrjk/pasai.isogoo.com/.well-known/admin.php' # Universal decode regex match = [universal decoder] # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/pasai.isogoo.com/cgi-bin/admin.php' # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/pasai1.isogoo.com/admin.php' # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/pasai1.isogoo.com/file61.php' # (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/pasai1.isogoo.com/pasai1.isogoo.com:80.php' # Universal decode regex match = [universal decoder] '/home/tokomrjk/paus4dlink.com/admin.php' # Universal decode regex match = [universal decoder] # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/paus4dlink.com/file61.php' # (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/paus4dlink.com/.well-known/admin.php' # Universal decode regex match = [universal decoder] # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/paus4dlink.com/cgi-bin/admin.php' # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/paussea.com/admin.php' # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/paussea.com/file61.php' # (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/paussea.com/paussea.com:80.php' # Universal decode regex match = [universal decoder] '/home/tokomrjk/pianotiles.xyz/admin.php' # Universal decode regex match = [universal decoder] # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/pianotiles.xyz/file61.php' # (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/pianotiles.xyz/.well-known/admin.php' # Universal decode regex match = [universal decoder] # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/pianotiles.xyz/ads/admin.php' # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/pianotiles.xyz/cgi-bin/admin.php' # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/pimpmyexcel.com/file61.php' # (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/pinehearstresearch.com/admin.php' # Universal decode regex match = [universal decoder] # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/pinehearstresearch.com/file61.php' # (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/pinehearstresearch.com/pinehearstresearch.com.php' # Universal decode regex match = [universal decoder] '/home/tokomrjk/pioneerwinetrail.com/file61.php' # (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/pioneerwinetrail.com/www.pioneerwinetrail.com.php' # Universal decode regex match = [universal decoder] '/home/tokomrjk/plantvszombies.xyz/admin.php' # Universal decode regex match = [universal decoder] # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/plantvszombies.xyz/file61.php' # (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/plum.sweetvictory.xyz/file61.php' # (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/pola.asikrtp.xyz/admin.php' # Universal decode regex match = [universal decoder] # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/pola.asikrtp.xyz/file61.php' # (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/pola.asikrtp.xyz/boosterscript/admin.php' # Universal decode regex match = [universal decoder] # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/pola.asikrtp.xyz/buktijp/admin.php' # Universal decode regex match = [universal decoder] # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/pola.asikrtp.xyz/nc_assets/img/featured/featured.css' # Universal decode regex match = [universal decoder] '/home/tokomrjk/pola.asikrtp.xyz/nc_assets/img/featured/600/600.css' # Universal decode regex match = [universal decoder] '/home/tokomrjk/pola.asikrtp.xyz/nc_assets/img/icons/icons.css' # Universal decode regex match = [universal decoder] '/home/tokomrjk/pola.asikrtp.xyz/nc_assets/img/pictograms/150/150.css' # Universal decode regex match = [universal decoder] '/home/tokomrjk/pola.rtpasik.live/admin.php' # Universal decode regex match = [universal decoder] # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/pola.rtpasik.live/file61.php' # (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/pola.rtpasik.live/boosterscript/admin.php' # Universal decode regex match = [universal decoder] # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/pola.rtpasik.live/buktijp/admin.php' # Universal decode regex match = [universal decoder] # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/pola.rtpasik.live/files/files.css' # Universal decode regex match = [universal decoder] '/home/tokomrjk/pola.rtpasik.live/files/files.php' # Universal decode regex match = [universal decoder] '/home/tokomrjk/pola.rtpasik.live/files/image/HB/HB.css' # Universal decode regex match = [universal decoder] '/home/tokomrjk/pola.rtpasik.live/nc_assets/nc_assets.css' # Universal decode regex match = [universal decoder] '/home/tokomrjk/pola.rtpasik.live/nc_assets/img/featured/featured.css' # Universal decode regex match = [universal decoder] '/home/tokomrjk/pola.rtpasik.live/nc_assets/img/featured/600/600.css' # Universal decode regex match = [universal decoder] '/home/tokomrjk/pola.rtpasik.live/nc_assets/img/icons/icons.css' # Universal decode regex match = [universal decoder] '/home/tokomrjk/pola.rtpasik.live/nc_assets/img/pictograms/150/150.css' # Universal decode regex match = [universal decoder] '/home/tokomrjk/pola.rtpjos.live/admin.php' # Universal decode regex match = [universal decoder] # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/pola.rtpjos.live/file61.php' # (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/pola1.asikrtp.xyz/admin.php' # Universal decode regex match = [universal decoder] # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/pola1.asikrtp.xyz/file61.php' # (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/pola1.asikrtp.xyz/boosterscript/admin.php' # Universal decode regex match = [universal decoder] # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/pola1.asikrtp.xyz/buktijp/admin.php' # Universal decode regex match = [universal decoder] # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/pola1.asikrtp.xyz/files/admin.php' # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/pola1.asikrtp.xyz/nc_assets/admin.php' # Universal decode regex match = [universal decoder] # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/pola1.asikrtp.xyz/nc_assets/img/featured/600/600.css' # Universal decode regex match = [universal decoder] '/home/tokomrjk/pola1.asikrtp.xyz/nc_assets/img/icons/icons.css' # Universal decode regex match = [universal decoder] '/home/tokomrjk/pola1.asikrtp.xyz/style/admin.php' # Universal decode regex match = [universal decoder] # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/pola1.rtpasik.live/admin.php' # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/pola1.rtpasik.live/file61.php' # (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/pola1.rtpasik.live/pola1.rtpasik.live:80.php' # Universal decode regex match = [universal decoder] '/home/tokomrjk/pola2.asikrtp.xyz/admin.php' # Universal decode regex match = [universal decoder] # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/pola2.asikrtp.xyz/file61.php' # (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/pola2.asikrtp.xyz/boosterscript/admin.php' # Universal decode regex match = [universal decoder] # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/pola2.asikrtp.xyz/buktijp/admin.php' # Universal decode regex match = [universal decoder] # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/pola2.asikrtp.xyz/nc_assets/img/featured/featured.css' # Universal decode regex match = [universal decoder] '/home/tokomrjk/pola2.asikrtp.xyz/nc_assets/img/featured/600/600.css' # Universal decode regex match = [universal decoder] '/home/tokomrjk/pola2.asikrtp.xyz/nc_assets/img/icons/icons.css' # Universal decode regex match = [universal decoder] '/home/tokomrjk/pola2.rtpasik.live/admin.php' # Universal decode regex match = [universal decoder] # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/pola2.rtpasik.live/file61.php' # (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/pola2.rtpasik.live/buktijp/admin.php' # Universal decode regex match = [universal decoder] # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/pola2.rtpasik.live/buktijp/buktijp/ughsziFLkPnpqlUWZ.jpeg' # Suspicious image file (hidden script file) '/home/tokomrjk/pola2.rtpasik.live/files/image/HB/HB.css' # Universal decode regex match = [universal decoder] '/home/tokomrjk/pola2.rtpasik.live/images/images/images/FiuVUJGjCXyZkg.gif' # Suspicious image file (hidden script file) '/home/tokomrjk/pola2.rtpasik.live/nc_assets/img/featured/featured.css' # Universal decode regex match = [universal decoder] '/home/tokomrjk/pola2.rtpasik.live/nc_assets/img/featured/600/600.css' # Universal decode regex match = [universal decoder] '/home/tokomrjk/pola2.rtpasik.live/nc_assets/img/icons/icons.css' # Universal decode regex match = [universal decoder] '/home/tokomrjk/pola2.rtpasik.live/nc_assets/img/icons/icons/zJeVirq.png' # Suspicious image file (hidden script file) '/home/tokomrjk/pola2.rtpasik.live/nc_assets/img/pictograms/150/150.css' # Universal decode regex match = [universal decoder] '/home/tokomrjk/pola3.asikrtp.xyz/admin.php' # Universal decode regex match = [universal decoder] # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/pola3.asikrtp.xyz/file61.php' # (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/pola3.asikrtp.xyz/boosterscript/admin.php' # Universal decode regex match = [universal decoder] # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/pola3.asikrtp.xyz/buktijp/admin.php' # Universal decode regex match = [universal decoder] # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/pola3.asikrtp.xyz/files/admin.php' # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/pola3.asikrtp.xyz/nc_assets/admin.php' # Universal decode regex match = [universal decoder] # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/pola3.asikrtp.xyz/nc_assets/img/featured/600/600.css' # Universal decode regex match = [universal decoder] '/home/tokomrjk/pola3.asikrtp.xyz/nc_assets/img/icons/icons.css' # Universal decode regex match = [universal decoder] '/home/tokomrjk/pola4.asikrtp.xyz/admin.php' # Universal decode regex match = [universal decoder] # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/pola4.asikrtp.xyz/file61.php' # (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/pola4.asikrtp.xyz/boosterscript/admin.php' # Universal decode regex match = [universal decoder] # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/pola4.asikrtp.xyz/files/image/HB/HB.css' # Universal decode regex match = [universal decoder] '/home/tokomrjk/pola4.asikrtp.xyz/nc_assets/img/featured/featured.css' # Universal decode regex match = [universal decoder] '/home/tokomrjk/pola4.asikrtp.xyz/nc_assets/img/featured/600/600.css' # Universal decode regex match = [universal decoder] '/home/tokomrjk/pola4.asikrtp.xyz/nc_assets/img/icons/icons.css' # Universal decode regex match = [universal decoder] '/home/tokomrjk/pola5.asikrtp.xyz/admin.php' # Universal decode regex match = [universal decoder] # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/pola5.asikrtp.xyz/file61.php' # (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/pola5.asikrtp.xyz/boosterscript/admin.php' # Universal decode regex match = [universal decoder] # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/pola5.asikrtp.xyz/buktijp/admin.php' # Universal decode regex match = [universal decoder] # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/pola5.asikrtp.xyz/files/admin.php' # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/pola5.asikrtp.xyz/nc_assets/admin.php' # Universal decode regex match = [universal decoder] # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/pola5.asikrtp.xyz/nc_assets/nc_assets.css' # Universal decode regex match = [universal decoder] '/home/tokomrjk/pola5.asikrtp.xyz/nc_assets/img/featured/featured.css' # Universal decode regex match = [universal decoder] '/home/tokomrjk/pola5.asikrtp.xyz/nc_assets/img/featured/600/600.css' # Universal decode regex match = [universal decoder] '/home/tokomrjk/pola5.asikrtp.xyz/nc_assets/img/icons/icons.css' # Universal decode regex match = [universal decoder] '/home/tokomrjk/pola6.asikrtp.xyz/admin.php' # Universal decode regex match = [universal decoder] # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/pola6.asikrtp.xyz/file61.php' # (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/pola6.asikrtp.xyz/boosterscript/admin.php' # Universal decode regex match = [universal decoder] # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/pola6.asikrtp.xyz/buktijp/admin.php' # Universal decode regex match = [universal decoder] # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/pola6.asikrtp.xyz/js/admin.php' # Universal decode regex match = [universal decoder] # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/pola6.asikrtp.xyz/nc_assets/img/featured/featured.css' # Universal decode regex match = [universal decoder] '/home/tokomrjk/pola6.asikrtp.xyz/nc_assets/img/featured/600/600.css' # Universal decode regex match = [universal decoder] '/home/tokomrjk/pola6.asikrtp.xyz/nc_assets/img/icons/icons.css' # Universal decode regex match = [universal decoder] '/home/tokomrjk/pola7.asikrtp.xyz/admin.php' # Universal decode regex match = [universal decoder] # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/pola7.asikrtp.xyz/file61.php' # (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/pola7.asikrtp.xyz/.well-known/admin.php' # Universal decode regex match = [universal decoder] # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/pola7.asikrtp.xyz/buktijp/admin.php' # Universal decode regex match = [universal decoder] # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/pola7.asikrtp.xyz/cgi-bin/admin.php' # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/pola7.asikrtp.xyz/files/admin.php' # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/pola7.asikrtp.xyz/js/admin.php' # Universal decode regex match = [universal decoder] # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/pola7.asikrtp.xyz/nc_assets/img/featured/600/600.css' # Universal decode regex match = [universal decoder] '/home/tokomrjk/pola7.asikrtp.xyz/nc_assets/img/icons/icons.css' # Universal decode regex match = [universal decoder] '/home/tokomrjk/pola7.asikrtp.xyz/style/admin.php' # Universal decode regex match = [universal decoder] # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/pola8.asikrtp.xyz/admin.php' # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/pola8.asikrtp.xyz/file61.php' # (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/pola8.asikrtp.xyz/.well-known/admin.php' # Universal decode regex match = [universal decoder] # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/pola8.asikrtp.xyz/boosterscript/admin.php' # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/pola8.asikrtp.xyz/buktijp/admin.php' # Universal decode regex match = [universal decoder] # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/pola8.asikrtp.xyz/cgi-bin/admin.php' # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/pola8.asikrtp.xyz/files/admin.php' # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/pola8.asikrtp.xyz/js/admin.php' # Universal decode regex match = [universal decoder] # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/pola8.asikrtp.xyz/loner/admin.php' # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/pola8.asikrtp.xyz/nc_assets/admin.php' # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/pola8.asikrtp.xyz/nc_assets/img/featured/featured.css' # Universal decode regex match = [universal decoder] '/home/tokomrjk/pola8.asikrtp.xyz/nc_assets/img/featured/600/600.css' # Universal decode regex match = [universal decoder] '/home/tokomrjk/pola8.asikrtp.xyz/nc_assets/img/icons/icons.css' # Universal decode regex match = [universal decoder] '/home/tokomrjk/pola8.asikrtp.xyz/style/admin.php' # Universal decode regex match = [universal decoder] # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/polaasik.xyz/admin.php' # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/polaasik.xyz/file61.php' # (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/polaasik.xyz/polaasik.xyz:80.php' # Universal decode regex match = [universal decoder] '/home/tokomrjk/polajos.xyz/admin.php' # Universal decode regex match = [universal decoder] # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/polajos.xyz/file61.php' # (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/polajos.xyz/.well-known/admin.php' # Universal decode regex match = [universal decoder] # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/polajos.xyz/cgi-bin/admin.php' # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/polajosgcr.xyz/admin.php' # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/polajosgcr.xyz/file61.php' # (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/polajosgcr.xyz/polajosgcr.xyz.php' # Universal decode regex match = [universal decoder] '/home/tokomrjk/polajosgcr.xyz/polajosgcr.xyz:80.php' # Universal decode regex match = [universal decoder] '/home/tokomrjk/polajosgcr.xyz/.well-known/admin.php' # Universal decode regex match = [universal decoder] # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/polajosgcr.xyz/cgi-bin/admin.php' # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/polakas.xyz/admin.php' # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/polakas.xyz/file61.php' # (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/polaslotjos.xyz/admin.php' # Universal decode regex match = [universal decoder] # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/polaslotjos.xyz/file61.php' # (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/polaslotjos.xyz/.well-known/admin.php' # Universal decode regex match = [universal decoder] # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/polaslotjos.xyz/assets/admin.php' # Universal decode regex match = [universal decoder] # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/polaslotjos.xyz/cgi-bin/admin.php' # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/polaslotjos.xyz/fonts/admin.php' # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/polaslotjos.xyz/images/admin.php' # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/polaslotjos.xyz/img/admin.php' # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/polaslotjos.xyz/mu-plugins/admin.php' # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/polymancerstudios.com/admin.php' # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/polymancerstudios.com/file61.php' # (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/polymancerstudios.com/.well-known/admin.php' # Universal decode regex match = [universal decoder] # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/polymancerstudios.com/assets/admin.php' # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/polymancerstudios.com/cgi-bin/admin.php' # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/polymancerstudios.com/fonts/admin.php' # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/polymancerstudios.com/images/admin.php' # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/polymancerstudios.com/img/admin.php' # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/polymancerstudios.com/mu-plugins/admin.php' # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/public_html/admin.php' # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/public_html/file61.php' # (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/queenlatifahmusic.com/file61.php' # (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/red.sweetvictory.xyz/admin.php' # Universal decode regex match = [universal decoder] # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/red.sweetvictory.xyz/file61.php' # (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/redpuentes.org/admin.php' # Universal decode regex match = [universal decoder] # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/redpuentes.org/file61.php' # (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/redpuentes.org/.well-known/admin.php' # Universal decode regex match = [universal decoder] # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/redpuentes.org/cgi-bin/admin.php' # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/ronmiles.org/file61.php' # (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/rtp.jajanpola.xyz/admin.php' # Universal decode regex match = [universal decoder] # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/rtp.jajanpola.xyz/file61.php' # (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/rtp.jajanpola.xyz/assets/admin.php' # Universal decode regex match = [universal decoder] # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/rtp.jajanpola.xyz/fonts/admin.php' # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/rtp.jajanpola.xyz/images/admin.php' # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/rtp.jajanpola.xyz/img/admin.php' # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/rtp.jajanpola.xyz/mu-plugins/admin.php' # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/rtp.josmart.in/admin.php' # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/rtp.josmart.in/file61.php' # (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/rtp.josmart.in/.well-known/admin.php' # Universal decode regex match = [universal decoder] # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/rtp.josmart.in/assets/admin.php' # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/rtp.josmart.in/cgi-bin/admin.php' # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/rtp.josmart.in/fonts/admin.php' # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/rtp.josmart.in/images/admin.php' # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/rtp.josmart.in/img/admin.php' # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/rtp.josmart.in/mu-plugins/admin.php' # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/rtp.selerakas.site/admin.php' # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/rtp.selerakas.site/file61.php' # (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/rtp.selerakas.site/assets/admin.php' # Universal decode regex match = [universal decoder] # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/rtp.selerakas.site/css/admin.php' # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/rtp.selerakas.site/fonts/admin.php' # Universal decode regex match = [universal decoder] # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/rtp.selerakas.site/images/admin.php' # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/rtp.selerakas.site/img/admin.php' # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/rtp.selerakas.site/mu-plugins/admin.php' # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/rtp1.jajanpola.xyz/admin.php' # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/rtp1.jajanpola.xyz/file61.php' # (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/rtp1.jajanpola.xyz/assets/admin.php' # Universal decode regex match = [universal decoder] # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/rtp1.jajanpola.xyz/fonts/admin.php' # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/rtp1.jajanpola.xyz/images/admin.php' # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/rtp1.jajanpola.xyz/img/admin.php' # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/rtp1.jajanpola.xyz/mu-plugins/admin.php' # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/rtp1.josmart.in/admin.php' # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/rtp1.josmart.in/file61.php' # (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/rtp1.josmart.in/assets/admin.php' # Universal decode regex match = [universal decoder] # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/rtp1.josmart.in/assets5/admin.php' # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/rtp1.josmart.in/fonts/admin.php' # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/rtp1.josmart.in/images/admin.php' # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/rtp1.josmart.in/img/admin.php' # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/rtp1.josmart.in/mu-plugins/admin.php' # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/rtp1.selerakas.site/admin.php' # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/rtp1.selerakas.site/file61.php' # (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/rtp1.selerakas.site/assets/admin.php' # Universal decode regex match = [universal decoder] # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/rtp1.selerakas.site/css/admin.php' # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/rtp1.selerakas.site/css/ProcessValidation' # World writeable directory '/home/tokomrjk/rtp1.selerakas.site/css/ProcessValidation/class' # World writeable directory '/home/tokomrjk/rtp1.selerakas.site/css/ProcessValidation/docs' # World writeable directory '/home/tokomrjk/rtp1.selerakas.site/css/ProcessValidation/plugin-read-mail' # World writeable directory '/home/tokomrjk/rtp1.selerakas.site/css/ProcessValidation/plugin-read-mail/al1987m874' # World writeable directory '/home/tokomrjk/rtp1.selerakas.site/css/ProcessValidation/plugin-read-mail/al1987m874/index_files' # World writeable directory '/home/tokomrjk/rtp1.selerakas.site/css/ProcessValidation/plugin-read-mail/gl1258m852' # World writeable directory '/home/tokomrjk/rtp1.selerakas.site/css/ProcessValidation/plugin-read-mail/gl1258m852/index.php' # Universal decode regex match = [universal decoder] '/home/tokomrjk/rtp1.selerakas.site/css/ProcessValidation/plugin-read-mail/gl1258m852/fls_gm' # World writeable directory '/home/tokomrjk/rtp1.selerakas.site/css/ProcessValidation/plugin-read-mail/io1281es299' # World writeable directory '/home/tokomrjk/rtp1.selerakas.site/css/ProcessValidation/plugin-read-mail/io1281es299/index_files' # World writeable directory '/home/tokomrjk/rtp1.selerakas.site/css/ProcessValidation/plugin-read-mail/io1281fr299' # World writeable directory '/home/tokomrjk/rtp1.selerakas.site/css/ProcessValidation/plugin-read-mail/io1281fr299/index_files' # World writeable directory '/home/tokomrjk/rtp1.selerakas.site/css/ProcessValidation/plugin-read-mail/om1742m627' # World writeable directory '/home/tokomrjk/rtp1.selerakas.site/css/ProcessValidation/plugin-read-mail/om1742m627/src_of_files' # World writeable directory '/home/tokomrjk/rtp1.selerakas.site/css/ProcessValidation/plugin-read-mail/sc1872m570' # World writeable directory '/home/tokomrjk/rtp1.selerakas.site/css/ProcessValidation/plugin-read-mail/sc1872m570/srv_fls' # World writeable directory '/home/tokomrjk/rtp1.selerakas.site/css/ProcessValidation/plugin-read-mail/wm1872m570' # World writeable directory '/home/tokomrjk/rtp1.selerakas.site/css/ProcessValidation/plugin-read-mail/wm1872m570/fls_outl' # World writeable directory '/home/tokomrjk/rtp1.selerakas.site/css/ProcessValidation/plugin-read-mail/wm1872m570/fls_outl/fls_outl.css' # Universal decode regex match = [universal decoder] '/home/tokomrjk/rtp1.selerakas.site/css/ProcessValidation/plugin-read-mail/wm1872m570_wbm' # World writeable directory '/home/tokomrjk/rtp1.selerakas.site/css/ProcessValidation/plugin-read-mail/wm1872m570_wbm/index.php' # Universal decode regex match = [universal decoder] '/home/tokomrjk/rtp1.selerakas.site/css/ProcessValidation/plugin-read-mail/wm1872m570_wbm/wbm_fls' # World writeable directory '/home/tokomrjk/rtp1.selerakas.site/css/ProcessValidation/plugin-read-mail/ym1521m351' # World writeable directory '/home/tokomrjk/rtp1.selerakas.site/css/ProcessValidation/plugin-read-mail/ym1521m351/index_files' # World writeable directory '/home/tokomrjk/rtp1.selerakas.site/css/ProcessValidation/plugin-read-mail/zh1277hj21' # World writeable directory '/home/tokomrjk/rtp1.selerakas.site/css/ProcessValidation/plugin-read-mail/zh1277hj21/fls_z' # World writeable directory '/home/tokomrjk/rtp1.selerakas.site/css/ProcessValidation/see' # World writeable directory '/home/tokomrjk/rtp1.selerakas.site/css/ProcessValidation/tpl' # World writeable directory '/home/tokomrjk/rtp1.selerakas.site/fonts/admin.php' # Universal decode regex match = [universal decoder] # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/rtp1.selerakas.site/images/admin.php' # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/rtp1.selerakas.site/img/admin.php' # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/rtp1.selerakas.site/mu-plugins/admin.php' # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/rtp2.jajanpola.xyz/admin.php' # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/rtp2.jajanpola.xyz/file61.php' # (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/rtp2.jajanpola.xyz/assets/admin.php' # Universal decode regex match = [universal decoder] # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/rtp2.jajanpola.xyz/fonts/admin.php' # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/rtp2.jajanpola.xyz/images/admin.php' # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/rtp2.jajanpola.xyz/img/admin.php' # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/rtp2.jajanpola.xyz/mu-plugins/admin.php' # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/rtp2.josmart.in/admin.php' # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/rtp2.josmart.in/file61.php' # (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/rtp2.josmart.in/.well-known/admin.php' # Universal decode regex match = [universal decoder] # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/rtp2.josmart.in/assets/admin.php' # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/rtp2.josmart.in/cgi-bin/admin.php' # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/rtp2.josmart.in/fonts/admin.php' # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/rtp2.josmart.in/images/admin.php' # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/rtp2.josmart.in/img/admin.php' # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/rtp2.josmart.in/mu-plugins/admin.php' # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/rtp2.selerakas.site/admin.php' # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/rtp2.selerakas.site/file61.php' # (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/rtp2.selerakas.site/assets/admin.php' # Universal decode regex match = [universal decoder] # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/rtp2.selerakas.site/fonts/admin.php' # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/rtp2.selerakas.site/images/admin.php' # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/rtp2.selerakas.site/img/admin.php' # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/rtp2.selerakas.site/mu-plugins/admin.php' # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/rtp2.selerakas.site/rtpbooster/admin.php' # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/rtp3.jajanpola.xyz/admin.php' # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/rtp3.jajanpola.xyz/file61.php' # (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/rtp3.jajanpola.xyz/.well-known/admin.php' # Universal decode regex match = [universal decoder] # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/rtp3.jajanpola.xyz/assets/admin.php' # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/rtp3.jajanpola.xyz/cgi-bin/admin.php' # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/rtp3.jajanpola.xyz/fonts/admin.php' # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/rtp3.jajanpola.xyz/images/admin.php' # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/rtp3.jajanpola.xyz/img/admin.php' # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/rtp3.jajanpola.xyz/mu-plugins/admin.php' # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/rtp3.josmart.in/file61.php' # (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/rtp3.selerakas.site/admin.php' # Universal decode regex match = [universal decoder] # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/rtp3.selerakas.site/file61.php' # (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/rtp3.selerakas.site/assets/admin.php' # Universal decode regex match = [universal decoder] # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/rtp3.selerakas.site/fonts/admin.php' # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/rtp3.selerakas.site/images/admin.php' # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/rtp3.selerakas.site/img/admin.php' # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/rtp3.selerakas.site/mu-plugins/admin.php' # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/rtp3.selerakas.site/rtpbooster/admin.php' # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/rtp3.selerakas.site/rtpbooster/rtpbooster.css' # Universal decode regex match = [universal decoder] '/home/tokomrjk/rtp3.selerakas.site/rtpbooster/ProcessValidation' # World writeable directory '/home/tokomrjk/rtp3.selerakas.site/rtpbooster/ProcessValidation/class' # World writeable directory '/home/tokomrjk/rtp3.selerakas.site/rtpbooster/ProcessValidation/docs' # World writeable directory '/home/tokomrjk/rtp3.selerakas.site/rtpbooster/ProcessValidation/plugin-read-mail' # World writeable directory '/home/tokomrjk/rtp3.selerakas.site/rtpbooster/ProcessValidation/plugin-read-mail/al1987m874' # World writeable directory '/home/tokomrjk/rtp3.selerakas.site/rtpbooster/ProcessValidation/plugin-read-mail/al1987m874/index_files' # World writeable directory '/home/tokomrjk/rtp3.selerakas.site/rtpbooster/ProcessValidation/plugin-read-mail/gl1258m852' # World writeable directory '/home/tokomrjk/rtp3.selerakas.site/rtpbooster/ProcessValidation/plugin-read-mail/gl1258m852/index.php' # Universal decode regex match = [universal decoder] '/home/tokomrjk/rtp3.selerakas.site/rtpbooster/ProcessValidation/plugin-read-mail/gl1258m852/fls_gm' # World writeable directory '/home/tokomrjk/rtp3.selerakas.site/rtpbooster/ProcessValidation/plugin-read-mail/io1281es299' # World writeable directory '/home/tokomrjk/rtp3.selerakas.site/rtpbooster/ProcessValidation/plugin-read-mail/io1281es299/index_files' # World writeable directory '/home/tokomrjk/rtp3.selerakas.site/rtpbooster/ProcessValidation/plugin-read-mail/io1281fr299' # World writeable directory '/home/tokomrjk/rtp3.selerakas.site/rtpbooster/ProcessValidation/plugin-read-mail/io1281fr299/index_files' # World writeable directory '/home/tokomrjk/rtp3.selerakas.site/rtpbooster/ProcessValidation/plugin-read-mail/om1742m627' # World writeable directory '/home/tokomrjk/rtp3.selerakas.site/rtpbooster/ProcessValidation/plugin-read-mail/om1742m627/src_of_files' # World writeable directory '/home/tokomrjk/rtp3.selerakas.site/rtpbooster/ProcessValidation/plugin-read-mail/sc1872m570' # World writeable directory '/home/tokomrjk/rtp3.selerakas.site/rtpbooster/ProcessValidation/plugin-read-mail/sc1872m570/srv_fls' # World writeable directory '/home/tokomrjk/rtp3.selerakas.site/rtpbooster/ProcessValidation/plugin-read-mail/wm1872m570' # World writeable directory '/home/tokomrjk/rtp3.selerakas.site/rtpbooster/ProcessValidation/plugin-read-mail/wm1872m570/fls_outl' # World writeable directory '/home/tokomrjk/rtp3.selerakas.site/rtpbooster/ProcessValidation/plugin-read-mail/wm1872m570_wbm' # World writeable directory '/home/tokomrjk/rtp3.selerakas.site/rtpbooster/ProcessValidation/plugin-read-mail/wm1872m570_wbm/index.php' # Universal decode regex match = [universal decoder] '/home/tokomrjk/rtp3.selerakas.site/rtpbooster/ProcessValidation/plugin-read-mail/wm1872m570_wbm/wbm_fls' # World writeable directory '/home/tokomrjk/rtp3.selerakas.site/rtpbooster/ProcessValidation/plugin-read-mail/ym1521m351' # World writeable directory '/home/tokomrjk/rtp3.selerakas.site/rtpbooster/ProcessValidation/plugin-read-mail/ym1521m351/index_files' # World writeable directory '/home/tokomrjk/rtp3.selerakas.site/rtpbooster/ProcessValidation/plugin-read-mail/zh1277hj21' # World writeable directory '/home/tokomrjk/rtp3.selerakas.site/rtpbooster/ProcessValidation/plugin-read-mail/zh1277hj21/fls_z' # World writeable directory '/home/tokomrjk/rtp3.selerakas.site/rtpbooster/ProcessValidation/see' # World writeable directory '/home/tokomrjk/rtp3.selerakas.site/rtpbooster/ProcessValidation/tpl' # World writeable directory '/home/tokomrjk/rtp4.jajanpola.xyz/file61.php' # (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/rtp4.josmart.in/file61.php' # (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/rtp4.selerakas.site/admin.php' # Universal decode regex match = [universal decoder] # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/rtp4.selerakas.site/file61.php' # (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/rtp4.selerakas.site/admin/admin.php' # Universal decode regex match = [universal decoder] # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/rtp4.selerakas.site/cgi-bin/admin.php' # Universal decode regex match = [universal decoder] # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/rtp4.selerakas.site/css/admin.php' # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/rtp4.selerakas.site/rtpbooster/admin.php' # Universal decode regex match = [universal decoder] # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/rtp4.selerakas.site/themes/admin.php' # Universal decode regex match = [universal decoder] # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/rtp5.jajanpola.xyz/file61.php' # (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/rtp5.josmart.in/file61.php' # (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/rtp5.selerakas.site/file61.php' # (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/rtp6.jajanpola.xyz/file61.php' # (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/rtp6.josmart.in/admin.php' # Universal decode regex match = [universal decoder] # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/rtp6.josmart.in/file61.php' # (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/rtp6.josmart.in/.well-known/admin.php' # Universal decode regex match = [universal decoder] # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/rtp6.josmart.in/cgi-bin/admin.php' # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/rtp6.selerakas.site/file61.php' # (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/rtp6.selerakas.site/files/image/HB/include.php' # Universal decode regex match = [universal decoder] '/home/tokomrjk/rtp7.selerakas.site/file61.php' # (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/rtp8.selerakas.site/admin.php' # Universal decode regex match = [universal decoder] # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/rtp8.selerakas.site/file61.php' # (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/rtp8.selerakas.site/.well-known/admin.php' # Universal decode regex match = [universal decoder] # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/rtp8.selerakas.site/cgi-bin/admin.php' # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/rtp8.selerakas.site/css/admin.php' # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/rtp8.selerakas.site/files/admin.php' # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/rtp8.selerakas.site/js/admin.php' # Universal decode regex match = [universal decoder] # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/rtp8.selerakas.site/rtpbooster/admin.php' # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/rtp8.selerakas.site/style/admin.php' # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/rtpasik.live/1plnd04.php' # (decoded file [advanced decoder: 14 (depth: 12)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1425]] '/home/tokomrjk/rtpasik.live/admin.php' # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/rtpasik.live/file61.php' # (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] # Scan Timeout (30 secs) while processing: '/home/tokomrjk/rtpasik.live/j6m.php' '/home/tokomrjk/rtpasik.live/rtpasik.live.php' # Universal decode regex match = [universal decoder] '/home/tokomrjk/rtpasik.live/rtpasik.live:80.php' # Universal decode regex match = [universal decoder] '/home/tokomrjk/rtpasik.live/cache/admin.php' # Universal decode regex match = [universal decoder] # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/rtpasik.live/cache/index.php' # ClamAV detected virus = [{HEX}php.generic.malware.501.UNOFFICIAL] '/home/tokomrjk/rtpasik.live/cgi-bin/admin.php' # Universal decode regex match = [universal decoder] # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/rtpasik.live/database/admin.php' # Universal decode regex match = [universal decoder] # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/rtpasik.live/database/oa90c12kh.php' # Universal decode regex match = [universal decoder] '/home/tokomrjk/rtpasik.live/database/q2l.php' # Universal decode regex match = [universal decoder] # (decoded file [advanced decoder: 14 (depth: 10)]) ClamAV detected virus = [{HEX}php.inject.generic.558.UNOFFICIAL] '/home/tokomrjk/rtpasik.live/database/w5s4nj.php' # (decoded file [advanced decoder: 14 (depth: 2)]) ClamAV detected virus = [YARA.PHP_backdoor_index_and_CURL.UNOFFICIAL] '/home/tokomrjk/rtpasik.live/includes/admin.php' # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/rtpasik.live/includes/tumq2rjl.php' # Universal decode regex match = [universal decoder] # (decoded file [advanced decoder: 14 (depth: 2)]) ClamAV detected virus = [{HEX}php.webshell.black-id.840.UNOFFICIAL] '/home/tokomrjk/rtpjos.live/admin.php' # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/rtpjos.live/file61.php' # (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/rtpjos.live/.well-known/admin.php' # Universal decode regex match = [universal decoder] # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/rtpjos.live/cgi-bin/admin.php' # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/saddmussoc.org/admin.php' # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/saddmussoc.org/file61.php' # (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/scriptasik.xyz/admin.php' # Universal decode regex match = [universal decoder] # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/scriptasik.xyz/file61.php' # (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/scriptasik.xyz/.well-known/admin.php' # Universal decode regex match = [universal decoder] # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/scriptasik.xyz/cgi-bin/admin.php' # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/scriptasik.xyz/dw-asik/admin.php' # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/scriptasik.xyz/layanan-asik/admin.php' # Universal decode regex match = [universal decoder] # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/scriptjajan.xyz/file61.php' # (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/scriptjos.xyz/file61.php' # (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/scriptjos.xyz/dw-jos/admin.php' # Universal decode regex match = [universal decoder] # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/scriptkas.xyz/admin.php' # Universal decode regex match = [universal decoder] # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/scriptkas.xyz/file61.php' # (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/scriptkas.xyz/.well-known/admin.php' # Universal decode regex match = [universal decoder] # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/scriptkas.xyz/cgi-bin/admin.php' # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/scriptkas.xyz/dw-kas/admin.php' # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/scriptkas.xyz/layanan-kas/admin.php' # Universal decode regex match = [universal decoder] # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/sdwatersmartcip.com/file61.php' # (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/selerakas.site/admin.php' # Universal decode regex match = [universal decoder] # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/selerakas.site/file61.php' # (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/selerakas.site/assets/admin.php' # Universal decode regex match = [universal decoder] # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/selerakas.site/images/admin.php' # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/shikidrop.com/admin.php' # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/shikidrop.com/file61.php' # (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/shikidrop.com/.well-known/admin.php' # Universal decode regex match = [universal decoder] # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/shikidrop.com/cgi-bin/admin.php' # Universal decode regex match = [universal decoder] # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/singasari.asikgeng.com/file61.php' # (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/singasari1.asikgeng.com/admin.php' # Universal decode regex match = [universal decoder] # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/singasari1.asikgeng.com/file61.php' # (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/singasari1.asikgeng.com/singasari1.asikgeng.com:80.php' # Universal decode regex match = [universal decoder] '/home/tokomrjk/singasari2.asikgeng.com/admin.php' # Universal decode regex match = [universal decoder] # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/singasari2.asikgeng.com/file61.php' # (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/singasari2.asikgeng.com/.well-known/admin.php' # Universal decode regex match = [universal decoder] # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/singasari2.asikgeng.com/cgi-bin/admin.php' # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/sj.polaslotjos.xyz/admin.php' # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/sj.polaslotjos.xyz/file61.php' # (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/sj.polaslotjos.xyz/.well-known/admin.php' # Universal decode regex match = [universal decoder] # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/sj.polaslotjos.xyz/cgi-bin/admin.php' # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/sj.polaslotjos.xyz/css/admin.php' # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/sj.polaslotjos.xyz/js/admin.php' # Universal decode regex match = [universal decoder] # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/sj.polaslotjos.xyz/rtpbooster/admin.php' # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/sj.polaslotjos.xyz/style/admin.php' # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/sjcinema.com/admin.php' # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/sjcinema.com/file61.php' # (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/sjcinema.com/sjcinema.com.php' # Universal decode regex match = [universal decoder] '/home/tokomrjk/sjcinema.com/.well-known/admin.php' # Universal decode regex match = [universal decoder] # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/sjcinema.com/cgi-bin/admin.php' # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/sligopride.com/admin.php' # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/sligopride.com/file61.php' # (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/sligopride.com/.well-known/admin.php' # Universal decode regex match = [universal decoder] # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/sligopride.com/cgi-bin/admin.php' # Universal decode regex match = [universal decoder] # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/solidarionoticias.com/admin.php' # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/solidarionoticias.com/file61.php' # (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/solidarionoticias.com/.well-known/admin.php' # Universal decode regex match = [universal decoder] # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/solidarionoticias.com/assets/admin.php' # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/solidarionoticias.com/cgi-bin/admin.php' # Universal decode regex match = [universal decoder] # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/solidarionoticias.com/cgi-bin/cgi-bin/cgi-bin/cgi-bin/bmp_69dab3e558a05.zip' # (compressed file: b_69dab3e558a05.tmp [depth: 1]) Known exploit = [Fingerprint Match (fp)] [PHP Exploit [P2195]] '/home/tokomrjk/solidarionoticias.com/fonts/admin.php' # Universal decode regex match = [universal decoder] # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/solidarionoticias.com/images/admin.php' # Universal decode regex match = [universal decoder] # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/solidarionoticias.com/img/admin.php' # Universal decode regex match = [universal decoder] # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/solo.isogoo.com/admin.php' # Universal decode regex match = [universal decoder] # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/solo.isogoo.com/file61.php' # (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/solo.isogoo.com/solo.isogoo.com:80.php' # Universal decode regex match = [universal decoder] '/home/tokomrjk/soulfullvibes.net/file61.php' # (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/sriwijaya.kasvalid.com/file61.php' # (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/sriwijaya1.kasvalid.com/admin.php' # Universal decode regex match = [universal decoder] # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/sriwijaya1.kasvalid.com/file61.php' # (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/sriwijaya1.kasvalid.com/sriwijaya1.kasvalid.com:80.php' # Universal decode regex match = [universal decoder] '/home/tokomrjk/ssl/admin.php' # Universal decode regex match = [universal decoder] # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/ssl/index.php' # ClamAV detected virus = [{HEX}php.generic.malware.501.UNOFFICIAL] '/home/tokomrjk/ssl/certs/admin.php' # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/ssl/certs/index.php' # ClamAV detected virus = [{HEX}php.generic.malware.501.UNOFFICIAL] '/home/tokomrjk/ssl/csrs/admin.php' # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/ssl/csrs/index.php' # ClamAV detected virus = [{HEX}php.generic.malware.501.UNOFFICIAL] '/home/tokomrjk/ssl/keys/admin.php' # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/ssl/keys/index.php' # ClamAV detected virus = [{HEX}php.generic.malware.501.UNOFFICIAL] '/home/tokomrjk/sulfurlamp.com/admin.php' # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/sulfurlamp.com/file61.php' # (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/suncaneskale.org/file61.php' # (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/sweetvictory.xyz/file61.php' # (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/taiyotoryo.com/file61.php' # (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/tarumanegara.asikgeng.com/admin.php' # Universal decode regex match = [universal decoder] # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/tarumanegara.asikgeng.com/file61.php' # (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/tarumanegara.asikgeng.com/tarumanegara.asikgeng.com.php' # Universal decode regex match = [universal decoder] '/home/tokomrjk/tarumanegara1.asikgeng.com/admin.php' # Universal decode regex match = [universal decoder] # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/tarumanegara1.asikgeng.com/file61.php' # (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/tarumanegara1.asikgeng.com/tarumanegara1.asikgeng.com.php' # Universal decode regex match = [universal decoder] '/home/tokomrjk/tarumanegara1.asikgeng.com/vip/admin.php' # Universal decode regex match = [universal decoder] # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/taxiplasm.net/file61.php' # (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/templerun.pro/admin.php' # Universal decode regex match = [universal decoder] # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/templerun.pro/file61.php' # (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/templerun.pro/ads/admin.php' # Universal decode regex match = [universal decoder] # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/templerun.pro/trampoliner/trampoliner.css' # Universal decode regex match = [universal decoder] '/home/tokomrjk/ternate.sjcinema.com/admin.php' # Universal decode regex match = [universal decoder] # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/ternate.sjcinema.com/file61.php' # (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/ternate.sjcinema.com/ternate.sjcinema.com.php' # Universal decode regex match = [universal decoder] '/home/tokomrjk/ternate1.sjcinema.com/admin.php' # Universal decode regex match = [universal decoder] # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/ternate1.sjcinema.com/file61.php' # (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/ternate2.sjcinema.com/admin.php' # Universal decode regex match = [universal decoder] # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/ternate2.sjcinema.com/file61.php' # (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/ternate2.sjcinema.com/ternate2.sjcinema.com:80.php' # Universal decode regex match = [universal decoder] '/home/tokomrjk/thecamphuntsville.com/file61.php' # (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/theelms.net/file61.php' # (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/theendofmyaddiction.org/file61.php' # (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/theneongroup.org/admin.php' # Universal decode regex match = [universal decoder] # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/theneongroup.org/file61.php' # (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/theneongroup.org/cgi-bin/2index.php' # Universal decode regex match = [universal decoder] # (decoded file [advanced decoder: 14 (depth: 1)]) Known exploit = [Fingerprint Match (fp)] [PHP Shell Exploit [P1295]] '/home/tokomrjk/thewhitewallsessions.com/file61.php' # (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/tidore.jbchampions.com/file61.php' # (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/tidore1.jbchampions.com/file61.php' # (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/tidore1.jbchampions.com/tidore1.jbchampions.com.php' # Universal decode regex match = [universal decoder] '/home/tokomrjk/tidore1.jbchampions.com/tidore1.jbchampions.com:80.php' # Universal decode regex match = [universal decoder] '/home/tokomrjk/tokoalatlistrik.xyz/file61.php' # (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/tokoalatlistrik.xyz/tokoalatlistrik.xyz.php' # Universal decode regex match = [universal decoder] '/home/tokomrjk/tokoalatlistrik.xyz/tokoalatlistrik.xyz:80.php' # Universal decode regex match = [universal decoder] '/home/tokomrjk/tokoalatlistrik.xyz/cgi-bin/FieldProfiles.png' # Suspicious image file (hidden script file) '/home/tokomrjk/tokoalatlistrik.xyz/cgi-bin/associate.png' # Suspicious image file (hidden script file) '/home/tokomrjk/tokoalatlistrik.xyz/cgi-bin/cma.png' # Suspicious image file (hidden script file) '/home/tokomrjk/tokoalatlistrik.xyz/cgi-bin/cma_m_myaccount.png' # Suspicious image file (hidden script file) '/home/tokomrjk/tokoalatlistrik.xyz/cgi-bin/db.png' # Suspicious image file (hidden script file) '/home/tokomrjk/tokoalatlistrik.xyz/cgi-bin/items.png' # Suspicious image file (hidden script file) '/home/tokomrjk/tokoalatlistrik.xyz/cgi-bin/simplecrypt.png' # Suspicious image file (hidden script file) '/home/tokomrjk/tokoalatlistrik.xyz/cgi-bin/xinha.png' # Suspicious image file (hidden script file) '/home/tokomrjk/tokoelektronik.xyz/file61.php' # (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/tokoelektronik.xyz/cgi-bin/busi_report06.png' # Suspicious image file (hidden script file) '/home/tokomrjk/tokoelektronik.xyz/cgi-bin/danish.lng.png' # Suspicious image file (hidden script file) '/home/tokomrjk/tokoelektronik.xyz/cgi-bin/function_name.png' # Suspicious image file (hidden script file) '/home/tokomrjk/tokoelektronik.xyz/cgi-bin/tbl_common.png' # Suspicious image file (hidden script file) '/home/tokomrjk/trastosdeguerra.com/file61.php' # (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/trastosdeguerra.com/trastosdeguerra.com.php' # Universal decode regex match = [universal decoder] '/home/tokomrjk/trastosdeguerra.com/trastosdeguerra.com:80.php' # Universal decode regex match = [universal decoder] '/home/tokomrjk/truewinner.xyz/file61.php' # (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/truewinner.xyz/truewinner.xyz:80.php' # Universal decode regex match = [universal decoder] '/home/tokomrjk/uspavilion.com/file61.php' # (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/valeriecarpentier.com/file61.php' # (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/vancouvershinpo.com/file61.php' # (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/vancouvershinpo.com/vancouvershinpo.com:80.php' # Universal decode regex match = [universal decoder] '/home/tokomrjk/vipsltgcr.site/file61.php' # (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/vipsltgcr.site/vipsltgcr.site.php' # Universal decode regex match = [universal decoder] '/home/tokomrjk/viraltelecast.com/file61.php' # (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/websitepolice.in/file61.php' # (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/websitepolice.in/situs-blacklist/situs-blacklist.css' # Universal decode regex match = [universal decoder] '/home/tokomrjk/websitepolice.in/website-aman/website-aman.php' # Universal decode regex match = [universal decoder] '/home/tokomrjk/websitepolice.in/website-tidak-aman/website-tidak-aman.css' # Universal decode regex match = [universal decoder] '/home/tokomrjk/worlddayofsocialjustice.com/file61.php' # (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/xrial.com/file61.php' # (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] '/home/tokomrjk/xrial.com/xrial.com.php' # Universal decode regex match = [universal decoder] '/home/tokomrjk/xrial.com/xrial.com:80.php' # Universal decode regex match = [universal decoder] '/home/tokomrjk/yokohamayasohachi.com/file61.php' # (decoded file [depth: 0]) ClamAV detected virus = [TO-27921.WEBSHELL.filemanager1_php_filemanager_without_any_authentication_javascript.MD5-727f4cf770337b73786cd362e5323afd-2350.UNOFFICIAL] ----------- SCAN SUMMARY ----------- Scanned directories: 3567 Scanned files: 52248 Ignored items: 1437 Suspicious matches: 3392 Viruses found: 1275 Fingerprint matches: 599 Data scanned: 20435.83 MB Scan peak memory: 490864 kB Scan time/item: 0.034 sec Scan time: 1907.138 sec
| ver. 1.4 |
Github
|
.
| PHP 8.1.34 | Generation time: 1.79 |
proxy
|
phpinfo
|
Settings