Your server is compromised by a backdoor python service which uses a fake apache module mod_auth_form.so Apache module doing SEO cloaking (serves casino/gambling content only to Googlebot, redirects real users via injected JS and returns 206 welcome 131 bytes page.
Unload and delete the fake mod_ath_form module
stop and remove fake ntpd service (the python backdoor)
this is a security problem at the latest cwp version, something with the API. You also need to rotate main passwords (root, mysql, etc)
also you may find that your /root/.ssh/ keys are deleted