suspected phisihing files

Hello,

[root@host ~]# find /home -type d -name '*apple*' -print

/home/virtfs/ account1/usr/local/apache/conf/userdata/ssl/2/ account2/https.www.ap ple.com.us.cgi.bin.webscr.cmd.login.submit.dispatch.id.account2site.com


/home/virtfs/ account3/usr/local/apache/conf/userdata/ssl/2/ account2/https.www.apple.com.us.cgi.bin.webscr.cmd.login .submit.dispatch.id.account2site.com

/home/virtfs/ account4/usr/local/apache/conf/userdata/std/2/ account2/https.www.apple.com.us.cgi.bin.webscr.cmd.login .submit.dispatch.id.account2site.com
there are 4 cpanel accounts mentioned in above samples.
account1, account2, account3 and account4.

i found plenty of phishing subdomains related to apple and removed all in the past. but just found above files still remain.

is this files are still a threat without it's sub doamins present?

 

 

 

 

Top