????JFIF??x?x????'403WebShell
403Webshell
Server IP : 104.21.80.1  /  Your IP : 216.73.216.145
Web Server : LiteSpeed
System : Linux premium151.web-hosting.com 4.18.0-553.44.1.lve.el8.x86_64 #1 SMP Thu Mar 13 14:29:12 UTC 2025 x86_64
User : tempvsty ( 647)
PHP Version : 8.0.30
Disable Function : NONE
MySQL : OFF  |  cURL : ON  |  WGET : ON  |  Perl : ON  |  Python : ON  |  Sudo : OFF  |  Pkexec : OFF
Directory :  /home/tempvsty/mail/new/

Upload File :
current_dir [ Writeable ] document_root [ Writeable ]

 

Command :


[ Back ]     

Current File : /home/tempvsty/mail/new/1735292566.M196682P8409.premium151.web-hosting.com,S=6346,W=6535
Return-Path: <>
Delivered-To: [email protected]
Received: from premium151.web-hosting.com
	by premium151.web-hosting.com with LMTP
	id 8FNlC5Z2bmfZIAAAUgnvPQ
	(envelope-from <>)
	for <[email protected]>; Fri, 27 Dec 2024 04:42:46 -0500
Return-path: <>
Envelope-to: [email protected]
Delivery-date: Fri, 27 Dec 2024 04:42:46 -0500
Received: from mailnull by premium151.web-hosting.com with local (Exim 4.96.2)
	id 1tR6rm-0007X1-0R
	for [email protected];
	Fri, 27 Dec 2024 04:42:46 -0500
X-Failed-Recipients: [email protected]
Auto-Submitted: auto-replied
From: Mail Delivery System <[email protected]>
To: [email protected]
References: <[email protected]>
Content-Type: multipart/report; report-type=delivery-status; boundary=1735292566-eximdsn-794713974
MIME-Version: 1.0
Subject: Mail delivery failed: returning message to sender
Message-Id: <[email protected]>
Date: Fri, 27 Dec 2024 04:42:46 -0500

--1735292566-eximdsn-794713974
Content-type: text/plain; charset=us-ascii

This message was created automatically by mail delivery software.

A message that you sent could not be delivered to one or more of its
recipients. This is a permanent error. The following address(es) failed:

  [email protected]
    Message discarded as high-probability spam

--1735292566-eximdsn-794713974
Content-type: message/delivery-status

Reporting-MTA: dns; premium151.web-hosting.com

Action: failed
Final-Recipient: rfc822;[email protected]
Status: 5.0.0

--1735292566-eximdsn-794713974
Content-type: message/rfc822

Return-path: <[email protected]>
Received: from tempvsty by premium151.web-hosting.com with local (Exim 4.96.2)
	(envelope-from <[email protected]>)
	id 1tR6rl-0007UW-0w
	for [email protected];
	Fri, 27 Dec 2024 04:42:45 -0500
To: [email protected]
Subject: [Wordfence Alert] Problems found on buyeaa.com
Date: Fri, 27 Dec 2024 09:42:45 +0000
From: WordPress <[email protected]>
Message-ID: <[email protected]>
X-Mailer: PHPMailer 6.9.2 (https://github.com/PHPMailer/PHPMailer)
MIME-Version: 1.0
Content-Type: text/html; charset=UTF-8
Sender:  <[email protected]>

<p>This email was sent from your website &quot;buyeaa&quot; by the Wordfence plugin.</p>

<p>Wordfence found the following new issues on "buyeaa" (970 existing issues were also found again).</p>

<p>Alert generated at Friday 27th of December 2024 at 09:42:45 AM</p>

<br>

<p>See the details of these scan results on your site at: https://buyeaa.com/wp-admin/admin.php?page=WordfenceScan</p>




<p>Critical Problems:</p>
<p>* File appears to be malicious or unsafe: wp-content/uploads/logs/g/a/wLjsw7.php</p>


<p>* File appears to be malicious or unsafe: wp-includes/PHPMailer/index.php</p>


<p>* File appears to be malicious or unsafe: /home/tempvsty/buyeaa.com/wp-includes/js/dist/development/index.php</p>


<p>* File appears to be malicious or unsafe: wp-includes/Text/3cOEP4.php</p>


<p>* File appears to be malicious or unsafe: wp-admin/13FKuHrrQpf.php</p>


<p>* File appears to be malicious or unsafe: wp-admin/images/input.php</p>


<p>* File appears to be malicious or unsafe: wp-includes/fonts/about.php</p>


<p>* File appears to be malicious or unsafe: wp-content/mu-plugin/text.php</p>


<p>* File appears to be malicious or unsafe: ss.php</p>


<p>* File appears to be malicious or unsafe: /home/tempvsty/buyeaa.com/wp-content/endurance-page-cache/ja/surface-duo-android-12l-update-bugs/wp-l0gin.php</p>


<p>* File appears to be malicious or unsafe: index.php</p>


<p>* File appears to be malicious or unsafe: wp-content/endurance-page-cache/lowercase/150/index.php</p>


<p>* File appears to be malicious or unsafe: wp-includes/Requests/index.php</p>


<p>* File appears to be malicious or unsafe: wp-includes/Requests/src/Auth/index.php</p>


<p>High Severity Problems:</p>
<p>* Unknown file in WordPress core: wp-admin/13FKuHrrQpf.php</p>


<p>* Unknown file in WordPress core: wp-admin/images/input.php</p>


<p>* Unknown file in WordPress core: wp-admin/includes/mar.php</p>


<p>* Unknown file in WordPress core: wp-includes/PHPMailer/index.php</p>


<p>* Unknown file in WordPress core: wp-includes/Requests/index.php</p>


<p>* Unknown file in WordPress core: wp-includes/Requests/src/Auth/index.php</p>


<p>* Unknown file in WordPress core: wp-includes/Text/3cOEP4.php</p>


<p>* Unknown file in WordPress core: wp-includes/blocks/code/index.php</p>


<p>* Unknown file in WordPress core: wp-includes/fonts/about.php</p>


<p>* Unknown file in WordPress core: wp-includes/html-api/Wf9BGb.php</p>


<p>* Unknown file in WordPress core: wp-includes/js/dist/development/index.php</p>


<p>* Unknown file in WordPress core: wp-includes/js/jquery/ui/index.php</p>


<p>* Unknown file in WordPress core: wp-includes/rest-api/Wf9BGb.php</p>


<p>* Unknown file in WordPress core: wp-includes/style-engine/wp-login.php</p>


<p>* WordPress core file modified: index.php</p>


<p>* WordPress core file modified: wp-blog-header.php</p>



<p>970 existing issues were found again and are not shown.</p>
	<p>NOTE: You are using the free version of Wordfence. Upgrade today:</p>
	
	<ul>
		<li>Receive real-time Firewall and Scan engine rule updates for protection as threats emerge</li>
		<li>Real-time IP Blocklist blocks the most malicious IPs from accessing your site</li>
		<li>Country blocking</li>
		<li>IP reputation monitoring</li>
		<li>Schedule scans to run more frequently and at optimal times</li>
		<li>Access to Premium Support</li>
		<li>Discounts for multi-year and multi-license purchases</li>
	</ul>

	<p>Click here to upgrade to Wordfence Premium:<br><a href="https://www.wordfence.com/zz2/wordfence-signup/">https://www.wordfence.com/zz2/wordfence-signup/</a></p>

<p>No longer an administrator for this site? <a href="https://buyeaa.com/?_wfsf=removeAlertEmail&amp;jwt=eyJhbGciOiJIUzI1NiIsInR5cCI6IkpXVCJ9.eyJlbWFpbCI6Imphc3BhbGl0Y2VudGVyQGdtYWlsLmNvbSIsIl9leHAiOjE3MzU4OTczNjV9.uauB80oS2L2u9Z-W4MmZVgThK8ntKc414IVHhdwczUs" target="_blank">Click here</a> to stop receiving security alerts.</p>


--1735292566-eximdsn-794713974--

Youez - 2016 - github.com/yon3zu
LinuXploit